|
Log-Analyse und Auswertung: WinXP 32Bit, Bundesamt für Polizei, SperrbildschirmWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
11.09.2013, 15:29 | #1 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Hallo zusammen Wieder einmal einen "Bundesamt für Polizei"-Trojaner eingefangen. Den Sperrbildschirm habe ich nicht wegbekommen und beim Booten in den Safe-Mode stürzt der PC jedesmal ab. Deshalb habe ich mit OTLpe eine Boot-CD erstellt. Nachfolgend die daraus entstanden Log-Files. OTL.txt Code:
ATTFilter OTL logfile created on: 8/17/2013 3:11:42 AM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM Internet Explorer (Version = 8.0.6001.18702) Locale: 00000807 | Country: Schweiz | Language: DES | Date Format: dd.MM.yyyy 991.00 Mb Total Physical Memory | 768.00 Mb Available Physical Memory | 77.00% Memory free 883.00 Mb Paging File | 795.00 Mb Available in Paging File | 90.00% Paging File free Paging file location(s): C:\pagefile.sys 1488 2976 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme Drive C: | 149.05 Gb Total Space | 123.54 Gb Free Space | 82.88% Space Free | Partition Type: NTFS Drive I: | 7.45 Gb Total Space | 3.25 Gb Free Space | 43.63% Space Free | Partition Type: FAT32 Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days Using ControlSet: ControlSet002 ========== Win32 Services (SafeList) ========== SRV - File not found [Auto] -- -- (winmgmt) SRV - File not found [On_Demand] -- -- (AppMgmt) SRV - [2013/07/02 14:36:24 | 000,084,024 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto] -- C:\Programme\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2013/07/02 14:35:49 | 000,108,088 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto] -- C:\Programme\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2013/06/29 08:36:46 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012/11/06 06:54:41 | 000,161,768 | ---- | M] (Oracle Corporation) [Auto] -- C:\Programme\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2012/11/06 06:34:27 | 000,115,168 | ---- | M] (Mozilla Foundation) [On_Demand] -- C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2004/12/12 23:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto] -- C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) SRV - [2003/07/28 06:28:22 | 000,089,136 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE -- (ose) SRV - [2003/06/19 17:25:00 | 000,322,120 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE -- (MDM) ========== Driver Services (SafeList) ========== DRV - File not found [Kernel | On_Demand] -- -- (WDICA) DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP) DRV - File not found [Kernel | System] -- -- (PCIDump) DRV - File not found [Kernel | System] -- -- (lbrtfdc) DRV - File not found [Kernel | System] -- -- (i2omgmt) DRV - File not found [Kernel | System] -- -- (Changer) DRV - [2013/04/09 15:07:13 | 000,135,136 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2013/04/09 15:07:13 | 000,084,744 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2013/04/09 15:07:13 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr) DRV - [2012/08/27 10:50:24 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2006/09/20 09:01:12 | 004,019,072 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM) DRV - [2006/07/11 14:31:02 | 000,084,096 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2005/05/09 09:42:27 | 000,018,003 | ---- | M] (Motive, Inc.) [Kernel | On_Demand] -- C:\Programme\Common Files\Motive\MRENDIS5.sys -- (MRENDIS5) DRV - [2003/07/01 22:42:00 | 000,027,904 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\VIAAGP1.SYS -- (viaagp1) ========== Standard Registry (All) ========== ========== Internet Explorer ========== IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = hxxp://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm IE - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1 IE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.yahoo.com/fsc/ IE - HKU\Administrator_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation) IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\***_ON_C\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKU\***_ON_C\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKU\***_ON_C\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search IE - HKU\***_ON_C\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 IE - HKU\***_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bluewin.ch/index_d.html IE - HKU\***_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation) IE - HKU\***_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\***_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1 IE - HKU\*****_ON_C\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKU\*****_ON_C\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKU\*****_ON_C\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search IE - HKU\*****_ON_C\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 IE - HKU\*****_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.yahoo.com/fsc/ IE - HKU\*****_ON_C\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation) IE - HKU\*****_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/11/26 16:02:34 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Components: C:\Programme\Mozilla Firefox\components [2012/11/06 06:34:35 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2011/03/23 09:51:07 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions [2012/11/06 06:34:35 | 000,000,000 | ---D | M] (Default) -- C:\Programme\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2012/11/06 06:34:33 | 000,261,600 | ---- | M] (Mozilla Foundation) -- C:\Programme\mozilla firefox\components\browsercomps.dll [2012/11/06 06:34:11 | 000,001,392 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml [2012/11/06 06:34:11 | 000,002,465 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\bing.xml [2012/11/06 06:34:11 | 000,001,153 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\eBay-de.xml [2012/11/06 06:34:11 | 000,003,581 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\google.xml [2012/11/06 06:34:11 | 000,006,805 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml [2012/11/06 06:34:11 | 000,001,178 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\wikipedia-de.xml [2012/11/06 06:34:10 | 000,001,105 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml O1 HOSTS File: ([2004/08/04 08:00:00 | 000,000,820 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Yahoo! Companion BHO) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll (Yahoo! Inc.) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O3 - HKLM\..\Toolbar: (Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll (Yahoo! Inc.) O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll (Yahoo! Inc.) O3 - HKU\***_ON_C\..\Toolbar\WebBrowser: (&Adresse) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) O3 - HKU\***_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O3 - HKU\***_ON_C\..\Toolbar\WebBrowser: (Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll (Yahoo! Inc.) O3 - HKU\*****_ON_C\..\Toolbar\WebBrowser: (&Adresse) - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) O3 - HKU\*****_ON_C\..\Toolbar\WebBrowser: (&Links) - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O3 - HKU\*****_ON_C\..\Toolbar\WebBrowser: (Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll (Yahoo! Inc.) O4 - HKLM..\Run: [Adobe ARM] C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [avgnt] C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [QuickTime Task] C:\Programme\QuickTime\qttask.exe (Apple Inc.) O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Sun Microsystems, Inc.) O4 - HKLM..\Run: [VTTimer] C:\WINDOWS\System32\VTTimer.exe (S3 Graphics, Inc.) O4 - HKLM..\Run: [VTTrayp] C:\WINDOWS\System32\VTTrayp.exe (S3 Graphics Co., Ltd.) O4 - HKU\.DEFAULT..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation) O4 - HKU\Administrator_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation) O4 - HKU\LocalService_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation) O4 - HKU\NetworkService_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation) O4 - HKU\***_ON_C..\Run: [] File not found O4 - HKU\***_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation) O4 - HKU\*****_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Microsoft Corporation) O4 - Startup: C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart\btmxvxjsjppnnthdtqc.lnk = X:\I386\SYSTEM32\RUNDLL32.EXE (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\***_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\*****_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O9 - Extra Button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation) O9 - Extra Button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programme\Yahoo!\Messenger\YPager.exe (Yahoo! Inc.) O9 - Extra 'Tools' menuitem : Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Programme\Yahoo!\Messenger\YPager.exe (Yahoo! Inc.) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://www.apple.com/qtactivex/qtplugin.cab (QuickTime Object) O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://go.microsoft.com/fwlink/?linkid=58813 (Office Genuine Advantage Validation Tool) O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://www.extrafilm.ch/ImageUploader5.cab (Image Uploader Control) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1185287105812 (MUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab (Reg Error: Value error.) O16 - DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} hxxp://www.extrafilm.ch/ExtraFilmUploader6.cab (ExtraFilm Uploader Control) O16 - DPF: {CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab (Java Plug-in 1.4.2_19) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation) O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ipp - No CLSID value found O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation) O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation) O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Components\11\OWC11.DLL (Microsoft Corporation) O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation) O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation) O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE11\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation) O20 - HKU\***_ON_C Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKU\***_ON_C Winlogon: Shell - (C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat) - File not found O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation) O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation) O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation) O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation) O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation) O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - C:\WINDOWS\System32\WgaLogon.dll (Microsoft Corporation) O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation) O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation) O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Grüne Idylle.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Grüne Idylle.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation) O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation) O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation) O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation) O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation) O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation) O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006/11/04 01:03:15 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2013/07/22 06:39:17 | 000,000,000 | -HSD | C] -- C:\Config.Msi [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2013/08/16 19:33:13 | 000,233,472 | -H-- | M] () -- C:\Dokumente und Einstellungen\NetworkService\NTUSER.DAT [2013/08/16 19:33:13 | 000,233,472 | -H-- | M] () -- C:\Dokumente und Einstellungen\LocalService\NTUSER.DAT [2013/08/16 19:33:12 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2013/08/16 19:33:07 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2013/08/16 19:33:06 | 003,145,728 | -H-- | M] () -- C:\Dokumente und Einstellungen\***\NTUSER.DAT [2013/08/16 19:33:00 | 000,000,884 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2013/08/16 19:29:45 | 000,000,300 | -HS- | M] () -- C:\Dokumente und Einstellungen\***\ntuser.ini [2013/08/16 19:28:37 | 1039,519,744 | -HS- | M] () -- C:\hiberfil.sys [2013/08/16 18:38:04 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2013/08/14 19:21:59 | 000,000,190 | -HS- | M] () -- C:\Dokumente und Einstellungen\*****\ntuser.ini [2013/08/05 10:50:50 | 000,000,830 | ---- | M] () -- C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart\btmxvxjsjppnnthdtqc.lnk [2013/07/23 06:18:39 | 000,263,824 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013/07/22 06:43:49 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2013/07/22 06:40:43 | 001,038,476 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2013/07/22 06:40:43 | 000,464,300 | ---- | M] () -- C:\WINDOWS\System32\perfh007.dat [2013/07/22 06:40:43 | 000,445,836 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2013/07/22 06:40:43 | 000,086,682 | ---- | M] () -- C:\WINDOWS\System32\perfc007.dat [2013/07/22 06:40:43 | 000,073,042 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] ========== Files Created - No Company Name ========== [2013/08/05 10:50:49 | 000,000,830 | ---- | C] () -- C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart\btmxvxjsjppnnthdtqc.lnk [2012/12/28 08:53:39 | 000,074,752 | ---- | C] () -- C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.dll [2012/08/17 11:57:54 | 000,000,045 | ---- | C] () -- C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.ini [2012/02/15 06:10:02 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2011/12/28 10:04:01 | 000,003,584 | ---- | C] () -- C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011/10/24 07:23:06 | 000,000,127 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI [2011/03/23 09:51:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2011/03/22 17:52:10 | 001,656,336 | -H-- | C] () -- C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Anwendungsdaten\IconCache.db [2011/03/22 17:52:10 | 000,012,328 | ---- | C] () -- C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT [2011/03/22 17:52:10 | 000,000,141 | ---- | C] () -- C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat [2011/03/22 17:52:09 | 000,786,432 | -H-- | C] () -- C:\Dokumente und Einstellungen\Administrator\NTUSER.DAT [2011/03/22 17:52:09 | 000,000,190 | -HS- | C] () -- C:\Dokumente und Einstellungen\Administrator\ntuser.ini [2011/03/04 04:27:31 | 000,012,780 | -HS- | C] () -- C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\3614461715 [2011/03/04 04:27:31 | 000,012,780 | -HS- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\3614461715 [2007/10/27 03:12:23 | 000,000,305 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\addr_file.html [2007/07/24 15:20:44 | 004,840,302 | -H-- | C] () -- C:\Dokumente und Einstellungen\*****\Lokale Einstellungen\Anwendungsdaten\IconCache.db [2007/07/24 15:20:44 | 000,012,328 | ---- | C] () -- C:\Dokumente und Einstellungen\*****\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT [2007/07/24 15:20:44 | 000,000,141 | ---- | C] () -- C:\Dokumente und Einstellungen\*****\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat [2007/07/24 15:20:43 | 000,000,190 | -HS- | C] () -- C:\Dokumente und Einstellungen\*****\ntuser.ini [2007/07/24 15:20:42 | 001,572,864 | -H-- | C] () -- C:\Dokumente und Einstellungen\*****\NTUSER.DAT [2007/07/24 10:15:44 | 000,000,400 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2007/07/12 14:35:40 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\CnxE2FS.bin [2007/07/12 14:31:10 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat [2007/03/05 07:34:28 | 000,676,224 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.DLL [2007/01/27 09:01:29 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini [2007/01/27 09:01:28 | 000,000,425 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI [2007/01/27 09:01:28 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI [2007/01/11 09:52:22 | 000,081,920 | ---- | C] () -- C:\WINDOWS\mws.exe [2007/01/11 09:26:26 | 000,044,437 | ---- | C] () -- C:\WINDOWS\System32\compare.dat [2007/01/11 09:26:01 | 006,947,894 | -H-- | C] () -- C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\IconCache.db [2007/01/11 09:26:01 | 000,068,264 | ---- | C] () -- C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT [2007/01/11 09:26:01 | 000,000,141 | ---- | C] () -- C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat [2007/01/11 09:26:00 | 003,145,728 | -H-- | C] () -- C:\Dokumente und Einstellungen\***\NTUSER.DAT [2007/01/11 09:26:00 | 000,000,300 | -HS- | C] () -- C:\Dokumente und Einstellungen\***\ntuser.ini [2006/11/03 07:01:42 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2006/11/03 07:01:42 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2006/11/03 07:01:42 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2006/11/03 07:01:42 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2006/11/03 07:01:42 | 000,034,032 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2006/11/03 07:01:41 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2006/11/03 07:01:41 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2006/11/03 07:01:41 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2006/11/03 07:01:41 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2006/11/03 07:01:41 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2006/11/03 07:01:41 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2006/11/03 07:01:41 | 000,027,914 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2006/11/03 07:01:41 | 000,004,992 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2006/11/03 07:01:17 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2006/11/03 07:01:17 | 000,009,032 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2006/11/03 07:00:59 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2006/11/03 07:00:59 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2006/11/03 07:00:54 | 001,038,476 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2006/11/03 07:00:54 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2006/11/03 07:00:54 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2006/11/03 07:00:54 | 000,027,055 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2006/11/03 07:00:54 | 000,017,241 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2006/11/03 07:00:54 | 000,014,060 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2006/11/03 07:00:54 | 000,006,287 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2006/11/03 07:00:54 | 000,004,438 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2006/11/03 07:00:54 | 000,004,233 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2006/11/03 07:00:54 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2006/11/03 07:00:54 | 000,003,999 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2006/11/03 07:00:54 | 000,003,776 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini [2006/11/03 07:00:54 | 000,001,783 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2006/11/03 07:00:54 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2006/11/03 07:00:54 | 000,000,849 | ---- | C] () -- C:\WINDOWS\orun32.ini [2006/11/03 07:00:54 | 000,000,778 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2006/11/03 07:00:54 | 000,000,603 | ---- | C] () -- C:\WINDOWS\win.ini [2006/11/03 07:00:54 | 000,000,369 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2006/11/03 07:00:54 | 000,000,231 | ---- | C] () -- C:\WINDOWS\system.ini [2006/11/03 07:00:54 | 000,000,180 | ---- | C] () -- C:\WINDOWS\Option.ini [2006/11/03 07:00:54 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2006/11/03 07:00:54 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2006/11/03 07:00:54 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2006/11/03 07:00:54 | 000,000,020 | -HS- | C] () -- C:\Dokumente und Einstellungen\NetworkService\ntuser.ini [2006/11/03 07:00:54 | 000,000,020 | -HS- | C] () -- C:\Dokumente und Einstellungen\LocalService\ntuser.ini [2006/11/03 07:00:54 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2006/11/03 07:00:37 | 000,011,903 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2006/11/03 07:00:37 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2006/11/03 07:00:36 | 000,003,358 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2006/11/03 07:00:34 | 000,007,084 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2006/11/03 07:00:33 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2006/11/03 07:00:32 | 000,039,546 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2006/11/03 07:00:31 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2006/11/03 07:00:31 | 000,054,128 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2006/11/03 07:00:31 | 000,021,210 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2006/11/03 07:00:31 | 000,013,026 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2006/11/03 07:00:31 | 000,008,584 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2006/11/03 07:00:31 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2006/11/03 07:00:30 | 000,012,610 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2006/11/03 07:00:21 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2006/11/03 07:00:16 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2006/11/03 07:00:04 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2006/11/03 07:00:04 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll [2006/11/03 07:00:03 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2006/11/03 07:00:02 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [2006/11/03 06:59:56 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2006/11/03 06:59:54 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2006/11/03 06:59:54 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2006/11/03 06:59:48 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2006/11/03 06:59:45 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2006/11/03 06:59:40 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatui.dll [2006/11/03 06:59:37 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2006/11/03 06:59:26 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2006/11/03 06:59:25 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2006/11/03 06:59:25 | 000,464,300 | ---- | C] () -- C:\WINDOWS\System32\perfh007.dat [2006/11/03 06:59:25 | 000,445,836 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2006/11/03 06:59:25 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2006/11/03 06:59:25 | 000,269,480 | ---- | C] () -- C:\WINDOWS\System32\perfi007.dat [2006/11/03 06:59:25 | 000,263,824 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2006/11/03 06:59:25 | 000,233,472 | -H-- | C] () -- C:\Dokumente und Einstellungen\NetworkService\NTUSER.DAT [2006/11/03 06:59:25 | 000,233,472 | -H-- | C] () -- C:\Dokumente und Einstellungen\LocalService\NTUSER.DAT [2006/11/03 06:59:25 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2006/11/03 06:59:25 | 000,086,682 | ---- | C] () -- C:\WINDOWS\System32\perfc007.dat [2006/11/03 06:59:25 | 000,073,042 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2006/11/03 06:59:25 | 000,034,478 | ---- | C] () -- C:\WINDOWS\System32\perfd007.dat [2006/11/03 06:59:25 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2006/11/03 06:59:25 | 000,021,740 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2006/11/03 06:59:25 | 000,004,711 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2006/11/03 06:59:25 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2006/11/03 06:59:25 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2006/11/03 06:59:24 | 000,071,022 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2006/11/03 06:59:24 | 000,052,777 | ---- | C] () -- C:\WINDOWS\System32\command.com [2006/11/03 06:59:24 | 000,019,726 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2006/11/03 06:59:24 | 000,014,816 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2006/11/03 06:59:24 | 000,001,273 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2006/11/03 06:59:06 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2006/11/03 06:59:05 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2006/11/03 06:59:04 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin [2006/06/29 09:58:52 | 000,030,808 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont [2006/06/29 09:53:56 | 000,026,489 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont [2006/04/18 10:39:28 | 000,029,779 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSerif.CompositeFont [2006/04/18 10:39:28 | 000,026,040 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont [2003/02/20 11:53:42 | 000,005,702 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI ========== LOP Check ========== [2007/12/24 12:38:36 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\***\Anwendungsdaten\Destinator [2009/09/02 10:38:49 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\***\Anwendungsdaten\InterVideo [2012/10/11 11:43:41 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\*****\Anwendungsdaten\InterVideo [2008/05/16 05:28:23 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\MSScanAppDataDir [2009/09/02 10:38:25 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Ulead Systems ========== Purity Check ========== < End of report > Code:
ATTFilter OTL Extras logfile created on: 8/17/2013 3:11:42 AM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM Internet Explorer (Version = 8.0.6001.18702) Locale: 00000807 | Country: Schweiz | Language: DES | Date Format: dd.MM.yyyy 991.00 Mb Total Physical Memory | 768.00 Mb Available Physical Memory | 77.00% Memory free 883.00 Mb Paging File | 795.00 Mb Available in Paging File | 90.00% Paging File free Paging file location(s): C:\pagefile.sys 1488 2976 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme Drive C: | 149.05 Gb Total Space | 123.54 Gb Free Space | 82.88% Space Free | Partition Type: NTFS Drive I: | 7.45 Gb Total Space | 3.25 Gb Free Space | 43.63% Space Free | Partition Type: FAT32 Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days Using ControlSet: ControlSet002 ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] ========== System Restore Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SrService] "Start" = 2 ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation) "%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation) ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0819E89D-6214-4B6F-A18D-4633CB4E0E4A}" = Softwareupdate für Webordner "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9 "{34F0D55F-C386-4195-9A5B-961D3F6ACD46}" = InterVideo MediaOne Gallery "{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{7148F0A8-6813-11D6-A77B-00B0D0142190}" = Java 2 Runtime Environment, SE v1.4.2_19 "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{91110407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{AC76BA86-7AD7-1031-7B44-AB0000000001}" = Adobe Reader XI (11.0.03) - Deutsch "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5 "{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Avira AntiVir Desktop" = Avira Free Antivirus "IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs "ie8" = Windows Internet Explorer 8 "LGE PC Portal for N10" = LGE PC Portal for N10 "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox 16.0.2 (x86 de)" = Mozilla Firefox 16.0.2 (x86 de) "MozillaMaintenanceService" = Mozilla Maintenance Service "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP "MSNINST" = MSN "NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs "NP_SO_2009" = SolothurnTax 2009 9.2.9 "NP_SO_2010" = SolothurnTax 2010 10.2.8 "NP_SO_2011" = SolothurnTax 2011 11.3.33 "NP_SO_2012" = SolothurnTax 2012 12.3.13 "SolothurnTax 2006 1.3.0" = SolothurnTax 2006 1.3.0 "SolothurnTax 2007 1.2.5" = SolothurnTax 2007 1.2.5 "SolothurnTax 2008 1.2.2" = SolothurnTax 2008 1.2.2 "WIC" = Windows Imaging Component "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 "Windows XP Service Pack" = Windows XP Service Pack 3 "WMFDist11" = Windows Media Format 11 runtime "wmp11" = Windows Media Player 11 "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0 "Yahoo! Companion" = Yahoo! Companion "Yahoo! Messenger" = Yahoo! Messenger < End of report > |
11.09.2013, 15:35 | #2 |
/// the machine /// TB-Ausbilder | WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm hi,
__________________Fixen mit OTL
Code:
ATTFilter :OTL O4 - Startup: C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart\btmxvxjsjppnnthdtqc.lnk = X:\I386\SYSTEM32\RUNDLL32.EXE (Microsoft Corporation) O20 - HKU\***_ON_C Winlogon: Shell - (C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat) - File not found [2013/08/05 10:50:49 | 000,000,830 | ---- | C] () -- C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart\btmxvxjsjppnnthdtqc.lnk [2012/12/28 08:53:39 | 000,074,752 | ---- | C] () -- C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.dll [2012/08/17 11:57:54 | 000,000,045 | ---- | C] () -- C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.ini [2011/03/04 04:27:31 | 000,012,780 | -HS- | C] () -- C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\3614461715 [2011/03/04 04:27:31 | 000,012,780 | -HS- | C] () -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\3614461715 :commands [emptytemp]
Rechner normal starten.
__________________ |
11.09.2013, 16:02 | #3 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Vielen Dank. Der Sperrbildschirm ist weg, und ich konnte normal booten.
__________________Hier der Inhalt der geforderten Datei: Code:
ATTFilter ========== OTL ========== C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart\btmxvxjsjppnnthdtqc.lnk moved successfully. File move failed. X:\I386\SYSTEM32\RUNDLL32.EXE scheduled to be moved on reboot. Registry value HKEY_USERS\***_ON_C\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell:C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat deleted successfully. File C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart\btmxvxjsjppnnthdtqc.lnk not found. C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.dll moved successfully. C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.ini moved successfully. C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\3614461715 moved successfully. C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\3614461715 moved successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temp folder emptied: 327680 bytes ->Temporary Internet Files folder emptied: 32902 bytes ->Flash cache emptied: 607 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32902 bytes ->Flash cache emptied: 499 bytes User: LocalService ->Temp folder emptied: 82513 bytes ->Temporary Internet Files folder emptied: 8182735 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33237 bytes User: *** ->Temp folder emptied: 202208134 bytes ->Temporary Internet Files folder emptied: 164409393 bytes ->Java cache emptied: 9539540 bytes ->FireFox cache emptied: 11645048 bytes ->Flash cache emptied: 1887699 bytes User: ***** ->Temp folder emptied: 1180400 bytes ->Temporary Internet Files folder emptied: 8188744 bytes ->Flash cache emptied: 499 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 19569 bytes %systemroot%\System32 .tmp files removed: 2951 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 149026756 bytes Total Files Cleaned = 531.00 mb OTLPE by OldTimer - Version 3.1.48.0 log created on 08172013_034908 Files\Folders moved on Reboot... File\Folder X:\I386\SYSTEM32\RUNDLL32.EXE not found! Registry entries deleted on Reboot... |
11.09.2013, 19:40 | #4 |
/// the machine /// TB-Ausbilder | WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Kontrollscans im normalen Modus Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.09.2013, 12:17 | #5 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm MBAM-log.txt Code:
ATTFilter Malwarebytes Anti-Malware (Trial) 1.75.0.1300 www.malwarebytes.org Database version: v2013.08.26.03 Windows XP Service Pack 3 x86 FAT32 Internet Explorer 8.0.6001.18702 *** :: **** [administrator] Protection: Enabled 17.08.2013 18:50:26 MBAM-log-2013-08-17 (20-15-36).txt Scan type: Full scan (C:\|) Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 336256 Time elapsed: 1 hour(s), 19 minute(s), 21 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 1 HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon|shell (Trojan.Agent) -> Data: explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat -> No action taken. Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 2 C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\53\5b76db35-2f45f980 (Trojan.Ransom.ED) -> No action taken. C:\_OTL\MovedFiles\08172013_034908\C_Dokumente und Einstellungen\***\wgsdgsdgdsgsd.dll (Trojan.Exploitdrop.WS) -> No action taken. (end) Code:
ATTFilter # AdwCleaner v3.003 - Bericht erstellt am 17/08/2013 um 23:15:58 # Updated 07/09/2013 von Xplode # Betriebssystem : Microsoft Windows XP Service Pack 3 (32 bits) # Benutzername : *** - PATRICK # Gestartet von : C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Dokumente und Einstellungen\LocalService\IECompatCache Ordner Gelöscht : C:\Dokumente und Einstellungen\***\IECompatCache ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{02478D38-C3F9-4EFB-9B51-7695ECA05670} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF99BD32-C1FB-11D2-892F-0090271D4F88} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EF99BD32-C1FB-11D2-892F-0090271D4F88}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EF99BD32-C1FB-11D2-892F-0090271D4F88}] Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar ***** [ Browser ] ***** -\\ Internet Explorer v8.0.6001.18702 -\\ Mozilla Firefox v16.0.2 (de) [ Datei : C:\Dokumente und Einstellungen\***\Anwendungsdaten\Mozilla\Firefox\Profiles\sw7jxd89.default\prefs.js ] ************************* AdwCleaner[R0].txt - [2330 octets] - [17/08/2013 22:48:34] AdwCleaner[S0].txt - [2255 octets] - [17/08/2013 23:15:58] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2315 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.5.9 (09.07.2013:1) OS: Microsoft Windows XP x86 Ran by *** on 17.08.2013 at 23:43:35.65 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339} ~~~ Files ~~~ Folders ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 17.08.2013 at 23:51:22.53 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-09-2013 02 Ran by *** (administrator) on **** on 18-08-2013 00:01:17 Running from C:\Dokumente und Einstellungen\***\Desktop Microsoft Windows XP Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Could not list processes =============== ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\Windows\SOUNDMAN.EXE [577536 2006-08-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [VTTimer] - C:\Windows\system32\VTTimer.exe [53248 2006-08-03] (S3 Graphics, Inc.) HKLM\...\Run: [VTTrayp] - C:\Windows\system32\VTtrayp.exe [180224 2006-08-30] (S3 Graphics Co., Ltd.) HKLM\...\Run: [QuickTime Task] - C:\Programme\QuickTime\qttask.exe [286720 2007-10-27] (Apple Inc.) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [345144 2013-07-02] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) Winlogon\Notify\WgaLogon: WgaLogon.dll (Microsoft Corporation) HKCU\...\Run: [] - C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.exe HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bluewin.ch/index_d.html HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU -&Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://www.apple.com/qtactivex/qtplugin.cab DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://go.microsoft.com/fwlink/?linkid=58813 DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://www.extrafilm.ch/ImageUploader5.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} hxxp://www.extrafilm.ch/ExtraFilmUploader6.cab DPF: {CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\***\Anwendungsdaten\Mozilla\Firefox\Profiles\sw7jxd89.default FF NetworkProxy: "no_proxies_on", "127.0.0.1" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.9.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [84024 2013-07-02] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-02] (Avira Operations GmbH & Co. KG) R2 Brother XP spl Service; C:\WINDOWS\system32\brsvc01a.exe [57344 2002-04-12] (brother Industries Ltd) R2 MBAMScheduler; C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MDM; C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE [322120 2003-06-19] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [115168 2012-11-06] (Mozilla Foundation) S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation) R2 UleadBurningHelper; C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) R2 JavaQuickStarterService; "C:\Programme\Java\jre7\bin\jqs.exe" -service -config "C:\Programme\Java\jre7\lib\deploy\jqs\jqs.conf" S2 winmgmt; C:\DOKUME~1\ALLUSE~1\ANWEND~1\cqtdhtnnppjsjxvxmtb.bfg [x] ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [4019072 2006-09-20] (Realtek Semiconductor Corp.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [84744 2013-04-09] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135136 2013-04-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-04-09] (Avira Operations GmbH & Co. KG) S3 BrScnUsb; C:\Windows\System32\Drivers\BrScnUsb.sys [15263 2003-12-19] (Brother Industries Ltd.) R3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-07-26] (InterVideo, Inc.) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) S3 MRENDIS5; C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [18003 2005-05-09] (Motive, Inc.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) R0 viaagp1; C:\Windows\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.) R3 viagfx; C:\Windows\System32\DRIVERS\vtmini.sys [264704 2006-08-31] (Copyright (C) VIA/S3 Graphics Co, Ltd.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 22:48 - 2013-09-12 07:34 - 01082587 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-17 22:48 - 2013-09-12 07:34 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-08-17 22:48 - 2013-09-12 07:34 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-08-17 22:48 - 2013-09-11 14:47 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-08-17 22:48 - 2013-08-17 23:15 - 00000000 ____D C:\AdwCleaner 2013-08-17 18:48 - 2013-08-17 18:48 - 00000762 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-17 18:48 - 2013-08-17 18:48 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-08-17 18:48 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) C:\OTLPE.exe 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 08:58 - 2013-08-17 09:12 - 00090744 _____ C:\OTL.Txt 2013-08-15 01:16 - 2013-08-15 01:17 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00010892 _____ C:\WINDOWS\KB2834904.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-22 12:43 - 2013-07-22 12:43 - 00012227 _____ C:\WINDOWS\KB2834886.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-22 12:42 - 2013-07-22 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-22 12:41 - 2013-07-22 12:41 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-22 12:29 - 2013-07-22 12:31 - 00014706 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-22 11:52 - 2013-07-22 12:42 - 00020675 _____ C:\WINDOWS\KB2850851.log 2013-07-22 11:52 - 2013-07-22 12:41 - 00019594 _____ C:\WINDOWS\KB2845187.log ==================== One Month Modified Files and Folders ======= 2013-09-12 07:34 - 2013-08-17 22:48 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-09-12 07:34 - 2013-08-17 22:48 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-09-11 14:47 - 2013-08-17 22:48 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 23:42 - 2006-11-03 12:59 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl 2013-08-17 23:33 - 2012-11-06 13:09 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-08-17 23:19 - 2006-11-03 13:00 - 01664186 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-17 23:16 - 2007-01-11 15:26 - 00000300 ___SH C:\Dokumente und Einstellungen\***\ntuser.ini 2013-08-17 23:16 - 2007-01-11 15:26 - 00000000 ____D C:\Dokumente und Einstellungen\*** 2013-08-17 23:16 - 2006-11-03 13:02 - 00032492 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-17 23:16 - 2006-11-03 13:00 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-08-17 23:16 - 2006-11-03 13:00 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-08-17 23:16 - 2006-11-03 12:59 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-08-17 23:15 - 2013-08-17 22:48 - 00000000 ____D C:\AdwCleaner 2013-08-17 20:17 - 2006-11-03 12:58 - 00000000 ___HD C:\WINDOWS\$NtUninstallKB925486$ 2013-08-17 18:48 - 2013-08-17 18:48 - 00000762 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-17 18:48 - 2013-08-17 18:48 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-08-17 18:48 - 2006-11-03 12:58 - 00000000 ___RD C:\Programme 2013-08-17 18:48 - 2006-11-03 12:58 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 09:12 - 2013-08-17 08:58 - 00090744 _____ C:\OTL.Txt 2013-08-17 00:46 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-17 00:28 - 2012-11-12 18:50 - 00000082 _____ C:\WINDOWS\setupact.log 2013-08-17 00:28 - 2012-11-12 18:49 - 00074395 _____ C:\WINDOWS\setupapi.log 2013-08-15 01:21 - 2007-07-24 21:20 - 00000190 ___SH C:\Dokumente und Einstellungen\*****\ntuser.ini 2013-08-15 01:21 - 2007-07-24 21:20 - 00000000 ____D C:\Dokumente und Einstellungen\***** 2013-08-15 01:17 - 2013-08-15 01:16 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-07-23 12:18 - 2006-11-03 12:59 - 00263824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-07-22 12:45 - 2013-07-22 12:45 - 00010892 _____ C:\WINDOWS\KB2834904.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-22 12:45 - 2012-11-24 13:42 - 00215560 _____ C:\WINDOWS\FaxSetup.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00103460 _____ C:\WINDOWS\ocgen.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00082565 _____ C:\WINDOWS\tsoc.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00072430 _____ C:\WINDOWS\comsetup.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00043840 _____ C:\WINDOWS\ntdtcsetup.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00034598 _____ C:\WINDOWS\iis6.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00011970 _____ C:\WINDOWS\ocmsn.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00010815 _____ C:\WINDOWS\msgsocm.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00012227 _____ C:\WINDOWS\KB2834886.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-22 12:43 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-07-22 12:42 - 2013-07-22 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-22 12:42 - 2013-07-22 11:52 - 00020675 _____ C:\WINDOWS\KB2850851.log 2013-07-22 12:41 - 2013-07-22 12:41 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-22 12:41 - 2013-07-22 11:52 - 00019594 _____ C:\WINDOWS\KB2845187.log 2013-07-22 12:40 - 2006-11-03 13:00 - 01038476 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-07-22 12:32 - 2007-07-24 17:50 - 75699896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-07-22 12:31 - 2013-07-22 12:29 - 00014706 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-22 12:30 - 2012-12-13 14:43 - 00019698 _____ C:\WINDOWS\updspapi.log 2013-07-22 12:30 - 2011-03-23 01:48 - 00000000 ____D C:\WINDOWS\ie8updates 2013-07-22 12:24 - 2009-11-19 20:21 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2013-07-22 12:18 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Eigene Dateien\Eigene Bilder Files to move or delete: ==================== C:\DOKUME~1\***\LOKALE~1\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-11-03 13:00] - [2008-04-14 04:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2006-11-03 13:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2006-11-03 13:02] - [2008-04-14 03:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ --- --- --- Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 09-09-2013 02 Ran by *** at 2013-08-18 00:02:40 Running from C:\Dokumente und Einstellungen\***\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 ActiveX (Version: 11.7.700.224) Adobe Flash Player 11 Plugin (Version: 11.7.700.224) Adobe Reader XI (11.0.03) - Deutsch (Version: 11.0.03) Avira Free Antivirus (Version: 13.0.0.3884) Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000) High Definition Audio - KB888111 (Version: 20040219.000000) Hotfix für Windows Media Player 11 (KB939683) Hotfix für Windows XP (KB2158563) (Version: 1) Hotfix für Windows XP (KB2443685) (Version: 1) Hotfix für Windows XP (KB2570791) (Version: 1) Hotfix für Windows XP (KB2633952) (Version: 1) Hotfix für Windows XP (KB2756822) (Version: 1) Hotfix für Windows XP (KB2779562) (Version: 1) Hotfix für Windows XP (KB952287) (Version: 1) Hotfix für Windows XP (KB961118) (Version: 1) Hotfix für Windows XP (KB970653-v3) (Version: 3) Hotfix für Windows XP (KB976098-v2) (Version: 2) Hotfix für Windows XP (KB979306) (Version: 1) Hotfix für Windows XP (KB981793) (Version: 1) InterVideo MediaOne Gallery Java 2 Runtime Environment, SE v1.4.2_19 (Version: 1.4.2_19) Java 7 Update 9 (Version: 7.0.90) Java Auto Updater (Version: 2.1.9.0) LGE PC Portal for N10 Malwarebytes Anti-Malware Version 1.75.0.1300 (Version: 1.75.0.1300) Microsoft .NET Framework 1.1 (Version: 1.1.4322) Microsoft .NET Framework 1.1 Security Update (KB2698023) Microsoft .NET Framework 1.1 Security Update (KB2833941) Microsoft .NET Framework 1.1 Security Update (KB979906) Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729) Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729) Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729) Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1) Microsoft Internationalized Domain Names Mitigation APIs Microsoft National Language Support Downlevel APIs Microsoft Office File Validation Add-In (Version: 14.0.5130.5003) Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1) Microsoft Office Professional Edition 2003 (Version: 11.0.8173.0) Microsoft User-Mode Driver Framework Feature Pack 1.0 Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) Mozilla Firefox 16.0.2 (x86 de) (Version: 16.0.2) Mozilla Maintenance Service (Version: 16.0.2) MSN MSXML 6 Service Pack 2 (KB973686) (Version: 6.20.2003.0) Realtek AC'97 Audio Sicherheitsupdate für Microsoft Windows (KB2564958) Sicherheitsupdate für Step by Step Interactive Training (KB923723) (Version: 20050502.101010) Sicherheitsupdate für Windows Internet Explorer 8 (KB2482017) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2497640) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2510531) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2544521) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2559049) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2586448) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2618444) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2647516) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2675157) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2699988) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2744842) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2761465) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2792100) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2797052) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2799329) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2809289) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2817183) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2829530) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2838727) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2846071) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB2847204) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB971961) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB981332) (Version: 1) Sicherheitsupdate für Windows Internet Explorer 8 (KB982381) (Version: 1) Sicherheitsupdate für Windows Media Player (KB2378111) Sicherheitsupdate für Windows Media Player (KB2834904) Sicherheitsupdate für Windows Media Player (KB911564) Sicherheitsupdate für Windows Media Player (KB952069) Sicherheitsupdate für Windows Media Player (KB954155) Sicherheitsupdate für Windows Media Player (KB968816) Sicherheitsupdate für Windows Media Player (KB973540) Sicherheitsupdate für Windows Media Player (KB975558) Sicherheitsupdate für Windows Media Player (KB978695) Sicherheitsupdate für Windows Media Player 10 (KB917734) Sicherheitsupdate für Windows Media Player 11 (KB936782) Sicherheitsupdate für Windows Media Player 11 (KB954154) Sicherheitsupdate für Windows Media Player 6.4 (KB925398) Sicherheitsupdate für Windows XP (KB2079403) (Version: 1) Sicherheitsupdate für Windows XP (KB2115168) (Version: 1) Sicherheitsupdate für Windows XP (KB2121546) (Version: 1) Sicherheitsupdate für Windows XP (KB2160329) (Version: 1) Sicherheitsupdate für Windows XP (KB2183461) (Version: 1) Sicherheitsupdate für Windows XP (KB2229593) (Version: 1) Sicherheitsupdate für Windows XP (KB2259922) (Version: 1) Sicherheitsupdate für Windows XP (KB2279986) (Version: 1) Sicherheitsupdate für Windows XP (KB2286198) (Version: 1) Sicherheitsupdate für Windows XP (KB2296011) (Version: 1) Sicherheitsupdate für Windows XP (KB2296199) (Version: 1) Sicherheitsupdate für Windows XP (KB2347290) (Version: 1) Sicherheitsupdate für Windows XP (KB2360131) (Version: 1) Sicherheitsupdate für Windows XP (KB2360937) (Version: 1) Sicherheitsupdate für Windows XP (KB2387149) (Version: 1) Sicherheitsupdate für Windows XP (KB2393802) (Version: 1) Sicherheitsupdate für Windows XP (KB2412687) (Version: 1) Sicherheitsupdate für Windows XP (KB2416400) (Version: 1) Sicherheitsupdate für Windows XP (KB2419632) (Version: 1) Sicherheitsupdate für Windows XP (KB2423089) (Version: 1) Sicherheitsupdate für Windows XP (KB2436673) (Version: 1) Sicherheitsupdate für Windows XP (KB2440591) (Version: 1) Sicherheitsupdate für Windows XP (KB2443105) (Version: 1) Sicherheitsupdate für Windows XP (KB2476490) (Version: 1) Sicherheitsupdate für Windows XP (KB2476687) (Version: 1) Sicherheitsupdate für Windows XP (KB2478960) (Version: 1) Sicherheitsupdate für Windows XP (KB2478971) (Version: 1) Sicherheitsupdate für Windows XP (KB2479628) (Version: 1) Sicherheitsupdate für Windows XP (KB2479943) (Version: 1) Sicherheitsupdate für Windows XP (KB2481109) (Version: 1) Sicherheitsupdate für Windows XP (KB2482017) (Version: 1) Sicherheitsupdate für Windows XP (KB2483185) (Version: 1) Sicherheitsupdate für Windows XP (KB2485376) (Version: 1) Sicherheitsupdate für Windows XP (KB2485663) (Version: 1) Sicherheitsupdate für Windows XP (KB2491683) (Version: 1) Sicherheitsupdate für Windows XP (KB2503658) (Version: 1) Sicherheitsupdate für Windows XP (KB2503665) (Version: 1) Sicherheitsupdate für Windows XP (KB2506212) (Version: 1) Sicherheitsupdate für Windows XP (KB2506223) (Version: 1) Sicherheitsupdate für Windows XP (KB2507618) (Version: 1) Sicherheitsupdate für Windows XP (KB2507938) (Version: 1) Sicherheitsupdate für Windows XP (KB2508272) (Version: 1) Sicherheitsupdate für Windows XP (KB2508429) (Version: 1) Sicherheitsupdate für Windows XP (KB2509553) (Version: 1) Sicherheitsupdate für Windows XP (KB2511455) (Version: 1) Sicherheitsupdate für Windows XP (KB2524375) (Version: 1) Sicherheitsupdate für Windows XP (KB2535512) (Version: 1) Sicherheitsupdate für Windows XP (KB2536276) (Version: 1) Sicherheitsupdate für Windows XP (KB2536276-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2544893) (Version: 1) Sicherheitsupdate für Windows XP (KB2544893-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2555917) (Version: 1) Sicherheitsupdate für Windows XP (KB2562937) (Version: 1) Sicherheitsupdate für Windows XP (KB2566454) (Version: 1) Sicherheitsupdate für Windows XP (KB2567053) (Version: 1) Sicherheitsupdate für Windows XP (KB2567680) (Version: 1) Sicherheitsupdate für Windows XP (KB2570222) (Version: 1) Sicherheitsupdate für Windows XP (KB2570947) (Version: 1) Sicherheitsupdate für Windows XP (KB2584146) (Version: 1) Sicherheitsupdate für Windows XP (KB2585542) (Version: 1) Sicherheitsupdate für Windows XP (KB2592799) (Version: 1) Sicherheitsupdate für Windows XP (KB2598479) (Version: 1) Sicherheitsupdate für Windows XP (KB2603381) (Version: 1) Sicherheitsupdate für Windows XP (KB2618451) (Version: 1) Sicherheitsupdate für Windows XP (KB2619339) (Version: 1) Sicherheitsupdate für Windows XP (KB2620712) (Version: 1) Sicherheitsupdate für Windows XP (KB2621440) (Version: 1) Sicherheitsupdate für Windows XP (KB2624667) (Version: 1) Sicherheitsupdate für Windows XP (KB2631813) (Version: 1) Sicherheitsupdate für Windows XP (KB2633171) (Version: 1) Sicherheitsupdate für Windows XP (KB2639417) (Version: 1) Sicherheitsupdate für Windows XP (KB2641653) (Version: 1) Sicherheitsupdate für Windows XP (KB2646524) (Version: 1) Sicherheitsupdate für Windows XP (KB2647518) (Version: 1) Sicherheitsupdate für Windows XP (KB2653956) (Version: 1) Sicherheitsupdate für Windows XP (KB2655992) (Version: 1) Sicherheitsupdate für Windows XP (KB2659262) (Version: 1) Sicherheitsupdate für Windows XP (KB2660465) (Version: 1) Sicherheitsupdate für Windows XP (KB2661637) (Version: 1) Sicherheitsupdate für Windows XP (KB2676562) (Version: 1) Sicherheitsupdate für Windows XP (KB2685939) (Version: 1) Sicherheitsupdate für Windows XP (KB2686509) (Version: 1) Sicherheitsupdate für Windows XP (KB2691442) (Version: 1) Sicherheitsupdate für Windows XP (KB2695962) (Version: 1) Sicherheitsupdate für Windows XP (KB2698365) (Version: 1) Sicherheitsupdate für Windows XP (KB2705219-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2707511) (Version: 1) Sicherheitsupdate für Windows XP (KB2709162) (Version: 1) Sicherheitsupdate für Windows XP (KB2712808) (Version: 1) Sicherheitsupdate für Windows XP (KB2718523) (Version: 1) Sicherheitsupdate für Windows XP (KB2719985) (Version: 1) Sicherheitsupdate für Windows XP (KB2723135-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2724197) (Version: 1) Sicherheitsupdate für Windows XP (KB2727528) (Version: 1) Sicherheitsupdate für Windows XP (KB2731847-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2753842) (Version: 1) Sicherheitsupdate für Windows XP (KB2753842-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB2757638) (Version: 1) Sicherheitsupdate für Windows XP (KB2758857) (Version: 1) Sicherheitsupdate für Windows XP (KB2761226) (Version: 1) Sicherheitsupdate für Windows XP (KB2770660) (Version: 1) Sicherheitsupdate für Windows XP (KB2778344) (Version: 1) Sicherheitsupdate für Windows XP (KB2779030) (Version: 1) Sicherheitsupdate für Windows XP (KB2780091) (Version: 1) Sicherheitsupdate für Windows XP (KB2799494) (Version: 1) Sicherheitsupdate für Windows XP (KB2802968) (Version: 1) Sicherheitsupdate für Windows XP (KB2807986) (Version: 1) Sicherheitsupdate für Windows XP (KB2808735) (Version: 1) Sicherheitsupdate für Windows XP (KB2813170) (Version: 1) Sicherheitsupdate für Windows XP (KB2813345) (Version: 1) Sicherheitsupdate für Windows XP (KB2820197) (Version: 1) Sicherheitsupdate für Windows XP (KB2820917) (Version: 1) Sicherheitsupdate für Windows XP (KB2829361) (Version: 1) Sicherheitsupdate für Windows XP (KB2834886) (Version: 1) Sicherheitsupdate für Windows XP (KB2839229) (Version: 1) Sicherheitsupdate für Windows XP (KB2845187) (Version: 1) Sicherheitsupdate für Windows XP (KB2850851) (Version: 1) Sicherheitsupdate für Windows XP (KB923561) (Version: 1) Sicherheitsupdate für Windows XP (KB923689) Sicherheitsupdate für Windows XP (KB938464) (Version: 1) Sicherheitsupdate für Windows XP (KB941569) Sicherheitsupdate für Windows XP (KB946648) (Version: 1) Sicherheitsupdate für Windows XP (KB950759) (Version: 1) Sicherheitsupdate für Windows XP (KB950760) (Version: 1) Sicherheitsupdate für Windows XP (KB950762) (Version: 1) Sicherheitsupdate für Windows XP (KB950974) (Version: 1) Sicherheitsupdate für Windows XP (KB951066) (Version: 1) Sicherheitsupdate für Windows XP (KB951376) (Version: 1) Sicherheitsupdate für Windows XP (KB951376-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB951698) (Version: 1) Sicherheitsupdate für Windows XP (KB951748) (Version: 1) Sicherheitsupdate für Windows XP (KB952004) (Version: 1) Sicherheitsupdate für Windows XP (KB952954) (Version: 1) Sicherheitsupdate für Windows XP (KB953838) (Version: 1) Sicherheitsupdate für Windows XP (KB953839) (Version: 1) Sicherheitsupdate für Windows XP (KB954211) (Version: 1) Sicherheitsupdate für Windows XP (KB954600) (Version: 1) Sicherheitsupdate für Windows XP (KB955069) (Version: 1) Sicherheitsupdate für Windows XP (KB956390) (Version: 1) Sicherheitsupdate für Windows XP (KB956391) (Version: 1) Sicherheitsupdate für Windows XP (KB956572) (Version: 1) Sicherheitsupdate für Windows XP (KB956744) (Version: 1) Sicherheitsupdate für Windows XP (KB956802) (Version: 1) Sicherheitsupdate für Windows XP (KB956803) (Version: 1) Sicherheitsupdate für Windows XP (KB956841) (Version: 1) Sicherheitsupdate für Windows XP (KB956844) (Version: 1) Sicherheitsupdate für Windows XP (KB957095) (Version: 1) Sicherheitsupdate für Windows XP (KB957097) (Version: 1) Sicherheitsupdate für Windows XP (KB958215) (Version: 1) Sicherheitsupdate für Windows XP (KB958644) (Version: 1) Sicherheitsupdate für Windows XP (KB958687) (Version: 1) Sicherheitsupdate für Windows XP (KB958690) (Version: 1) Sicherheitsupdate für Windows XP (KB958869) (Version: 1) Sicherheitsupdate für Windows XP (KB959426) (Version: 1) Sicherheitsupdate für Windows XP (KB960225) (Version: 1) Sicherheitsupdate für Windows XP (KB960714) (Version: 1) Sicherheitsupdate für Windows XP (KB960715) (Version: 1) Sicherheitsupdate für Windows XP (KB960803) (Version: 1) Sicherheitsupdate für Windows XP (KB960859) (Version: 1) Sicherheitsupdate für Windows XP (KB961371) (Version: 1) Sicherheitsupdate für Windows XP (KB961373) (Version: 1) Sicherheitsupdate für Windows XP (KB961501) (Version: 1) Sicherheitsupdate für Windows XP (KB963027) (Version: 1) Sicherheitsupdate für Windows XP (KB968537) (Version: 1) Sicherheitsupdate für Windows XP (KB969059) (Version: 1) Sicherheitsupdate für Windows XP (KB969897) (Version: 1) Sicherheitsupdate für Windows XP (KB969898) (Version: 1) Sicherheitsupdate für Windows XP (KB969947) (Version: 1) Sicherheitsupdate für Windows XP (KB970238) (Version: 1) Sicherheitsupdate für Windows XP (KB970430) (Version: 1) Sicherheitsupdate für Windows XP (KB971468) (Version: 1) Sicherheitsupdate für Windows XP (KB971486) (Version: 1) Sicherheitsupdate für Windows XP (KB971557) (Version: 1) Sicherheitsupdate für Windows XP (KB971633) (Version: 1) Sicherheitsupdate für Windows XP (KB971657) (Version: 1) Sicherheitsupdate für Windows XP (KB971961) (Version: 1) Sicherheitsupdate für Windows XP (KB972260) (Version: 1) Sicherheitsupdate für Windows XP (KB972270) (Version: 1) Sicherheitsupdate für Windows XP (KB973346) (Version: 1) Sicherheitsupdate für Windows XP (KB973354) (Version: 1) Sicherheitsupdate für Windows XP (KB973507) (Version: 1) Sicherheitsupdate für Windows XP (KB973525) (Version: 1) Sicherheitsupdate für Windows XP (KB973869) (Version: 1) Sicherheitsupdate für Windows XP (KB973904) (Version: 1) Sicherheitsupdate für Windows XP (KB974112) (Version: 1) Sicherheitsupdate für Windows XP (KB974318) (Version: 1) Sicherheitsupdate für Windows XP (KB974392) (Version: 1) Sicherheitsupdate für Windows XP (KB974455) (Version: 1) Sicherheitsupdate für Windows XP (KB974571) (Version: 1) Sicherheitsupdate für Windows XP (KB975025) (Version: 1) Sicherheitsupdate für Windows XP (KB975467) (Version: 1) Sicherheitsupdate für Windows XP (KB975560) (Version: 1) Sicherheitsupdate für Windows XP (KB975561) (Version: 1) Sicherheitsupdate für Windows XP (KB975562) (Version: 1) Sicherheitsupdate für Windows XP (KB975713) (Version: 1) Sicherheitsupdate für Windows XP (KB976325) (Version: 1) Sicherheitsupdate für Windows XP (KB977165-v2) (Version: 2) Sicherheitsupdate für Windows XP (KB977816) (Version: 1) Sicherheitsupdate für Windows XP (KB977914) (Version: 1) Sicherheitsupdate für Windows XP (KB978037) (Version: 1) Sicherheitsupdate für Windows XP (KB978251) (Version: 1) Sicherheitsupdate für Windows XP (KB978262) (Version: 1) Sicherheitsupdate für Windows XP (KB978338) (Version: 1) Sicherheitsupdate für Windows XP (KB978542) (Version: 1) Sicherheitsupdate für Windows XP (KB978601) (Version: 1) Sicherheitsupdate für Windows XP (KB978706) (Version: 1) Sicherheitsupdate für Windows XP (KB979309) (Version: 1) Sicherheitsupdate für Windows XP (KB979482) (Version: 1) Sicherheitsupdate für Windows XP (KB979559) (Version: 1) Sicherheitsupdate für Windows XP (KB979683) (Version: 1) Sicherheitsupdate für Windows XP (KB979687) (Version: 1) Sicherheitsupdate für Windows XP (KB980195) (Version: 1) Sicherheitsupdate für Windows XP (KB980218) (Version: 1) Sicherheitsupdate für Windows XP (KB980232) (Version: 1) Sicherheitsupdate für Windows XP (KB980436) (Version: 1) Sicherheitsupdate für Windows XP (KB981322) (Version: 1) Sicherheitsupdate für Windows XP (KB981349) (Version: 1) Sicherheitsupdate für Windows XP (KB981852) (Version: 1) Sicherheitsupdate für Windows XP (KB981957) (Version: 1) Sicherheitsupdate für Windows XP (KB981997) (Version: 1) Sicherheitsupdate für Windows XP (KB982132) (Version: 1) Sicherheitsupdate für Windows XP (KB982214) (Version: 1) Sicherheitsupdate für Windows XP (KB982381) (Version: 1) Sicherheitsupdate für Windows XP (KB982665) (Version: 1) Sicherheitsupdate für Windows XP (KB982802) (Version: 1) Softwareupdate für Webordner (Version: 9.60.6715.0) SolothurnTax 2006 1.3.0 SolothurnTax 2007 1.2.5 SolothurnTax 2008 1.2.2 SolothurnTax 2009 9.2.9 SolothurnTax 2010 10.2.8 (Version: 10.2.8) SolothurnTax 2011 11.3.33 (Version: 11.3.33) SolothurnTax 2012 12.3.13 (Version: 12.3.13) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1) Update für Windows Internet Explorer 8 (KB2447568) (Version: 1) Update für Windows Internet Explorer 8 (KB976662) (Version: 1) Update für Windows XP (KB2141007) (Version: 1) Update für Windows XP (KB2345886) (Version: 1) Update für Windows XP (KB2467659) (Version: 1) Update für Windows XP (KB2541763) (Version: 1) Update für Windows XP (KB2607712) (Version: 1) Update für Windows XP (KB2616676-v2) (Version: 2) Update für Windows XP (KB2641690) (Version: 1) Update für Windows XP (KB2661254-v2) (Version: 2) Update für Windows XP (KB2718704) (Version: 1) Update für Windows XP (KB2736233) (Version: 1) Update für Windows XP (KB2749655) (Version: 1) Update für Windows XP (KB951072-v2) (Version: 2) Update für Windows XP (KB951978) (Version: 1) Update für Windows XP (KB955759) (Version: 1) Update für Windows XP (KB955839) (Version: 1) Update für Windows XP (KB967715) (Version: 1) Update für Windows XP (KB968389) (Version: 1) Update für Windows XP (KB971029) (Version: 1) Update für Windows XP (KB971737) (Version: 1) Update für Windows XP (KB973687) (Version: 1) Update für Windows XP (KB973815) (Version: 1) Update für Windows XP (KB976749) (Version: 1) Update für Windows XP (KB978207) (Version: 1) Update für Windows XP (KB980182) (Version: 1) WebFldrs XP (Version: 9.50.7523) Wichtiges Update für Windows Media Player 11 (KB959772) Windows Genuine Advantage Notifications (KB905474) (Version: 1.5.0540.0) Windows Genuine Advantage Validation Tool (KB892130) Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2) Windows Imaging Component (Version: 3.0.0.0) Windows Internet Explorer 8 (Version: 20090308.140743) Windows Media Format 11 runtime Windows Media Format SDK Hotfix - KB891122 Windows Media Player 10 Hotfix - KB888656 Windows XP Service Pack 3 (Version: 20080414.031514) Yahoo! Companion Yahoo! Messenger ==================== Restore Points ========================= Could not list Restore Points. ==================== Hosts content: ========================== 2006-11-03 12:58 - 2004-08-04 14:00 - 00000820 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= Could not list Devices. ==================== Event log errors: ========================= Application errors: ================== Error: (08/17/2013 01:30:04 AM) (Source: SecurityCenter) (User: ) Description: Das Windows-Sicherheitscenter konnte keine Ereignisabfragen mit der WMI herstellen, um Antivirus- und Firewallprogramme von Drittanbietern zu überwachen. Error: (07/02/2013 08:37:45 PM) (Source: crypt32) (User: ) Description: Die Extrahierung der Drittanbieterstammlisten aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (07/02/2013 08:37:45 PM) (Source: crypt32) (User: ) Description: Die Extrahierung der Drittanbieterstammlisten aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (01/09/2013 10:54:46 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung iexplore.exe, Version 8.0.6001.18702, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (11/13/2012 01:38:44 PM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: 403 (HTTP-Antwortstatus). Error: (11/06/2012 01:06:29 PM) (Source: Application Error) (User: ) Description: Fehlgeschlagene Anwendung fsc-scr.scr, Version 2.1.0.1, fehlgeschlagenes Modul kernel32.dll, Version 5.1.2600.5781, Fehleradresse 0x00012afb. Das medienspezifische Ereignis für [fsc-scr.scr!ws!] wird verarbeitet. Error: (11/06/2012 00:50:18 PM) (Source: crypt32) (User: ) Description: Die Extrahierung der Drittanbieterstammlisten aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (11/06/2012 00:50:18 PM) (Source: crypt32) (User: ) Description: Die Extrahierung der Drittanbieterstammlisten aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> ist fehlgeschlagen mit dem Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (11/06/2012 00:26:12 PM) (Source: Application Error) (User: ) Description: Fehlgeschlagene Anwendung jaucheck.exe, Version 2.0.3.1, fehlgeschlagenes Modul jaucheck.exe, Version 2.0.3.1, Fehleradresse 0x0000c940. Das medienspezifische Ereignis für [jaucheck.exe!ws!] wird verarbeitet. Error: (10/11/2012 05:42:59 PM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: 403 (HTTP-Antwortstatus). System errors: ============= Error: (08/18/2013 00:03:42 AM) (Source: DCOM) (User: ****) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/18/2013 00:03:12 AM) (Source: DCOM) (User: ****) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/18/2013 00:01:47 AM) (Source: DCOM) (User: ****) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/17/2013 11:48:19 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/17/2013 11:47:49 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/17/2013 11:47:19 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/17/2013 11:46:49 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/17/2013 11:45:49 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/17/2013 11:45:19 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/17/2013 11:44:49 PM) (Source: DCOM) (User: ****) Description: Der Server "{8BC3F05E-D86B-11D0-A075-00C04FB68820}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Microsoft Office Sessions: ========================= Error: (08/17/2013 01:30:04 AM) (Source: SecurityCenter)(User: ) Description: Error: (07/02/2013 08:37:45 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (07/02/2013 08:37:45 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (01/09/2013 10:54:46 PM) (Source: Application Hang)(User: ) Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000 Error: (11/13/2012 01:38:44 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt403 (HTTP-Antwortstatus) Error: (11/06/2012 01:06:29 PM) (Source: Application Error)(User: ) Description: fsc-scr.scr2.1.0.1kernel32.dll5.1.2600.578100012afb Error: (11/06/2012 00:50:18 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (11/06/2012 00:50:18 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabEin erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. Error: (11/06/2012 00:26:12 PM) (Source: Application Error)(User: ) Description: jaucheck.exe2.0.3.1jaucheck.exe2.0.3.10000c940 Error: (10/11/2012 05:42:59 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt403 (HTTP-Antwortstatus) ==================== Memory info =========================== Percentage of memory in use: 42% Total physical RAM: 991.29 MB Available physical RAM: 572.96 MB Total Pagefile: 2388.63 MB Available Pagefile: 1932.52 MB Total Virtual: 2047.88 MB Available Virtual: 1951.02 MB ==================== Drives ================================ Drive c: (466593) (Fixed) (Total:149.05 GB) (Free:129.07 GB) NTFS ==>[Drive with boot components (Windows XP)] Drive j: (JSC2010) (Removable) (Total:7.45 GB) (Free:3.23 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows XP) (Size: 149 GB) (Disk ID: 0A89411A) Partition 1: (Active) - (Size=149 GB) - (Type=07 NTFS) ======================================================== Disk: 6 (Size: 7 GB) (Disk ID: 988EC4CD) Partition 1: (Active) - (Size=7 GB) - (Type=0C) ==================== End Of Log ============================ |
12.09.2013, 17:14 | #6 |
/// the machine /// TB-Ausbilder | WinXP 32Bit, Bundesamt für Polizei, SperrbildschirmESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm |
14.09.2013, 10:36 | #7 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Eset log.txt Code:
ATTFilter # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=b1a165e89cbdab4fa4d9a4601cadd8d6 # engine=15109 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-08-18 11:22:10 # local_time=2013-08-19 01:22:10 (+0100, Westeuropäische Sommerzeit) # country="Switzerland" # lang=1033 # osver=5.1.2600 NT Service Pack 3 # compatibility_mode=1799 16775165 100 97 8457 242287820 1260300 0 # scanned=59500 # found=2 # cleaned=0 # scan_time=7761 sh=A6FD08A7C16E28F15F0BD315A6BAA8A07581DF6E ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\17\60bf9e51-2b88b51d" sh=486326740AA3D28F31695522F6B892501206B371 ft=0 fh=0000000000000000 vn="multiple threats" ac=I fn="C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\5\30035105-39da97eb" Code:
ATTFilter Results of screen317's Security Check version 0.99.73 Windows XP Service Pack 3 x86 Internet Explorer 8 ``````````````Antivirus/Firewall Check:`````````````` Windows Security Center service is not running! This report may not be accurate! Avira Free Antivirus Avira successfully updated! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 9 Java 2 Runtime Environment, SE v1.4.2_19 Java version out of Date! Adobe Flash Player 11.8.800.168 Adobe Reader XI Mozilla Firefox 16.0.2 Firefox out of Date! ````````Process Check: objlist.exe by Laurent```````` `````````````````System Health check````````````````` Total Fragmentation on Drive C:: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-09-2013 01 Ran by *** (administrator) on **** on 19-08-2013 07:35:27 Running from C:\Dokumente und Einstellungen\***\Desktop Microsoft Windows XP Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Could not list processes =============== ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\Windows\SOUNDMAN.EXE [577536 2006-08-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [VTTimer] - C:\Windows\system32\VTTimer.exe [53248 2006-08-03] (S3 Graphics, Inc.) HKLM\...\Run: [VTTrayp] - C:\Windows\system32\VTtrayp.exe [180224 2006-08-30] (S3 Graphics Co., Ltd.) HKLM\...\Run: [QuickTime Task] - C:\Programme\QuickTime\qttask.exe [286720 2007-10-27] (Apple Inc.) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-18] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) Winlogon\Notify\crypt32chain: C:\Windows\system32\crypt32.dll (Microsoft Corporation) Winlogon\Notify\cryptnet: C:\Windows\system32\cryptnet.dll (Microsoft Corporation) Winlogon\Notify\cscdll: C:\Windows\system32\cscdll.dll (Microsoft Corporation) Winlogon\Notify\dimsntfy: C:\Windows\System32\dimsntfy.dll (Microsoft Corporation) Winlogon\Notify\ScCertProp: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\Schedule: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\sclgntfy: C:\Windows\system32\sclgntfy.dll (Microsoft Corporation) Winlogon\Notify\SensLogn: C:\Windows\system32\WlNotify.dll (Microsoft Corporation) Winlogon\Notify\termsrv: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\WgaLogon: C:\Windows\system32\WgaLogon.dll (Microsoft Corporation) Winlogon\Notify\wlballoon: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) HKCU\...\Run: [] - C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.exe HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bluewin.ch/index_d.html HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKCU - {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU -&Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://www.apple.com/qtactivex/qtplugin.cab DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://go.microsoft.com/fwlink/?linkid=58813 DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://www.extrafilm.ch/ImageUploader5.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} hxxp://www.extrafilm.ch/ExtraFilmUploader6.cab DPF: {CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\***\Anwendungsdaten\Mozilla\Firefox\Profiles\sw7jxd89.default FF NetworkProxy: "no_proxies_on", "127.0.0.1" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.9.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [84024 2013-08-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-18] (Avira Operations GmbH & Co. KG) R2 Brother XP spl Service; C:\WINDOWS\system32\brsvc01a.exe [57344 2002-04-12] (brother Industries Ltd) R2 MBAMScheduler; C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MDM; C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE [322120 2003-06-19] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [115168 2012-11-06] (Mozilla Foundation) S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation) R2 UleadBurningHelper; C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) R2 JavaQuickStarterService; "C:\Programme\Java\jre7\bin\jqs.exe" -service -config "C:\Programme\Java\jre7\lib\deploy\jqs\jqs.conf" S2 winmgmt; C:\DOKUME~1\ALLUSE~1\ANWEND~1\cqtdhtnnppjsjxvxmtb.bfg [x] ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [4019072 2006-09-20] (Realtek Semiconductor Corp.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-04-09] (Avira Operations GmbH & Co. KG) S3 BrScnUsb; C:\Windows\System32\Drivers\BrScnUsb.sys [15263 2003-12-19] (Brother Industries Ltd.) R3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-07-26] (InterVideo, Inc.) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) S3 MRENDIS5; C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [18003 2005-05-09] (Motive, Inc.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) R0 viaagp1; C:\Windows\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.) R3 viagfx; C:\Windows\System32\DRIVERS\vtmini.sys [264704 2006-08-31] (Copyright (C) VIA/S3 Graphics Co, Ltd.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-19 07:05 - 2013-08-19 07:05 - 97503480 _____ C:\WINDOWS\system32\ᖯᚲ咜6 2013-08-18 23:27 - 2013-08-18 23:29 - 00007676 _____ C:\WINDOWS\KB2876315.log 2013-08-18 23:27 - 2013-08-18 23:29 - 00007158 _____ C:\WINDOWS\KB2876217.log 2013-08-18 23:27 - 2013-08-18 23:28 - 00007158 _____ C:\WINDOWS\KB2864063.log 2013-08-18 23:27 - 2013-08-18 23:28 - 00007150 _____ C:\WINDOWS\KB2850869.log 2013-08-18 23:26 - 2013-08-18 23:28 - 00007525 _____ C:\WINDOWS\KB2859537.log 2013-08-18 23:25 - 2013-08-18 23:25 - 00000000 ____D C:\WINDOWS\LastGood 2013-08-18 23:02 - 2013-08-18 23:02 - 00000000 ____D C:\Programme\ESET 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 00:02 - 2013-08-18 00:03 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 22:48 - 2013-09-12 07:34 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-08-17 22:48 - 2013-09-12 07:34 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-08-17 22:48 - 2013-09-11 14:47 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-08-17 22:48 - 2013-08-17 23:15 - 00000000 ____D C:\AdwCleaner 2013-08-17 18:48 - 2013-08-17 18:48 - 00000762 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-17 18:48 - 2013-08-17 18:48 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-08-17 18:48 - 2013-08-17 18:48 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2013-08-17 18:48 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) C:\OTLPE.exe 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 08:58 - 2013-08-17 09:12 - 00090744 _____ C:\OTL.Txt 2013-08-15 01:16 - 2013-08-15 01:17 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00010892 _____ C:\WINDOWS\KB2834904.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-22 12:43 - 2013-07-22 12:43 - 00012227 _____ C:\WINDOWS\KB2834886.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-22 12:42 - 2013-07-22 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-22 12:41 - 2013-07-22 12:41 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-22 12:29 - 2013-07-22 12:31 - 00014706 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-22 11:52 - 2013-07-22 12:42 - 00020675 _____ C:\WINDOWS\KB2850851.log 2013-07-22 11:52 - 2013-07-22 12:41 - 00019594 _____ C:\WINDOWS\KB2845187.log ==================== One Month Modified Files and Folders ======= 2013-09-12 07:34 - 2013-08-17 22:48 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-09-12 07:34 - 2013-08-17 22:48 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-09-11 14:47 - 2013-08-17 22:48 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:33 - 2012-11-06 13:09 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-08-19 07:10 - 2006-11-03 13:00 - 01823574 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-19 07:05 - 2013-08-19 07:05 - 97503480 _____ C:\WINDOWS\system32\ᖯᚲ咜6 2013-08-19 00:33 - 2012-11-06 13:09 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-08-19 00:33 - 2012-11-06 13:09 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-08-18 23:29 - 2013-08-18 23:27 - 00007676 _____ C:\WINDOWS\KB2876315.log 2013-08-18 23:29 - 2013-08-18 23:27 - 00007158 _____ C:\WINDOWS\KB2876217.log 2013-08-18 23:28 - 2013-08-18 23:27 - 00007158 _____ C:\WINDOWS\KB2864063.log 2013-08-18 23:28 - 2013-08-18 23:27 - 00007150 _____ C:\WINDOWS\KB2850869.log 2013-08-18 23:28 - 2013-08-18 23:26 - 00007525 _____ C:\WINDOWS\KB2859537.log 2013-08-18 23:25 - 2013-08-18 23:25 - 00000000 ____D C:\WINDOWS\LastGood 2013-08-18 23:04 - 2012-11-06 13:11 - 00002347 _____ C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Adobe Reader XI.lnk 2013-08-18 23:04 - 2006-11-03 12:58 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2013-08-18 23:02 - 2013-08-18 23:02 - 00000000 ____D C:\Programme\ESET 2013-08-18 23:02 - 2006-11-03 12:58 - 00000000 ___RD C:\Programme 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 22:58 - 2012-11-06 12:49 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2013-08-18 22:58 - 2012-11-06 12:49 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2013-08-18 22:58 - 2007-01-11 15:26 - 00000000 ____D C:\Dokumente und Einstellungen\*** 2013-08-18 22:58 - 2006-11-03 12:59 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl 2013-08-18 22:51 - 2006-11-03 13:00 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-08-18 22:51 - 2006-11-03 13:00 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-08-18 22:51 - 2006-11-03 12:59 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-08-18 00:47 - 2007-01-11 15:26 - 00000300 ___SH C:\Dokumente und Einstellungen\***\ntuser.ini 2013-08-18 00:47 - 2006-11-03 13:02 - 00032492 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-18 00:03 - 2013-08-18 00:02 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 23:15 - 2013-08-17 22:48 - 00000000 ____D C:\AdwCleaner 2013-08-17 20:17 - 2006-11-03 12:58 - 00000000 ___HD C:\WINDOWS\$NtUninstallKB925486$ 2013-08-17 18:48 - 2013-08-17 18:48 - 00000762 _____ C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-17 18:48 - 2013-08-17 18:48 - 00000000 ____D C:\Programme\Malwarebytes' Anti-Malware 2013-08-17 18:48 - 2013-08-17 18:48 - 00000000 ____D C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 09:12 - 2013-08-17 08:58 - 00090744 _____ C:\OTL.Txt 2013-08-17 00:46 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-17 00:28 - 2012-11-12 18:50 - 00000082 _____ C:\WINDOWS\setupact.log 2013-08-17 00:28 - 2012-11-12 18:49 - 00074395 _____ C:\WINDOWS\setupapi.log 2013-08-15 01:21 - 2007-07-24 21:20 - 00000190 ___SH C:\Dokumente und Einstellungen\*****\ntuser.ini 2013-08-15 01:21 - 2007-07-24 21:20 - 00000000 ____D C:\Dokumente und Einstellungen\***** 2013-08-15 01:17 - 2013-08-15 01:16 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-07-23 12:18 - 2006-11-03 12:59 - 00263824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-07-22 12:45 - 2013-07-22 12:45 - 00010892 _____ C:\WINDOWS\KB2834904.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-22 12:45 - 2012-11-24 13:42 - 00215560 _____ C:\WINDOWS\FaxSetup.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00103460 _____ C:\WINDOWS\ocgen.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00082565 _____ C:\WINDOWS\tsoc.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00072430 _____ C:\WINDOWS\comsetup.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00043840 _____ C:\WINDOWS\ntdtcsetup.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00034598 _____ C:\WINDOWS\iis6.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00011970 _____ C:\WINDOWS\ocmsn.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00010815 _____ C:\WINDOWS\msgsocm.log 2013-07-22 12:45 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00012227 _____ C:\WINDOWS\KB2834886.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-22 12:43 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-07-22 12:42 - 2013-07-22 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-22 12:42 - 2013-07-22 11:52 - 00020675 _____ C:\WINDOWS\KB2850851.log 2013-07-22 12:41 - 2013-07-22 12:41 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-22 12:41 - 2013-07-22 11:52 - 00019594 _____ C:\WINDOWS\KB2845187.log 2013-07-22 12:40 - 2006-11-03 13:00 - 01038476 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-07-22 12:32 - 2007-07-24 17:50 - 75699896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-07-22 12:31 - 2013-07-22 12:29 - 00014706 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-22 12:30 - 2012-12-13 14:43 - 00019698 _____ C:\WINDOWS\updspapi.log 2013-07-22 12:30 - 2011-03-23 01:48 - 00000000 ____D C:\WINDOWS\ie8updates 2013-07-22 12:24 - 2009-11-19 20:21 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2013-07-22 12:18 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Eigene Dateien\Eigene Bilder Some content of TEMP: ==================== C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Temp\jre-7u40-windows-i586-iftw.exe C:\Dokumente und Einstellungen\***\Lokale Einstellungen\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-11-03 13:00] - [2008-04-14 04:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2006-11-03 13:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2006-11-03 13:02] - [2008-04-14 03:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ --- --- --- --- --- --- Nachtrag: Zur Zeit sind keine System-Probleme ersichtlich. |
14.09.2013, 20:54 | #8 |
/// the machine /// TB-Ausbilder | WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Java updaten. Downloade Dir bitte TFC ( von Oldtimer ) und speichere die Datei auf dem Desktop. Schließe nun alle offenen Programme und trenne Dich von dem Internet. Doppelklick auf die TFC.exe und drücke auf Start. Sollte TFC nicht alle Dateien löschen können wird es einen Neustart verlangen. Dies bitte zulassen. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter :OTL O4 - HKLM..\Run: [cgBXoIziJrRPgl] L:\Users\Sven Haferkorn\AppData\Local\n7MIr9o.exe (Корпорация Майкрософт) O4 - HKU\Sven_Haferkorn_ON_L..\Run: [cgBXoIziJrRPgl] L:\Users\Sven Haferkorn\AppData\Local\n7MIr9o.exe (Корпорация Майкрософт) HKCU\...\Run: [] - C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.exe HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION S2 winmgmt; C:\DOKUME~1\ALLUSE~1\ANWEND~1\cqtdhtnnppjsjxvxmtb.bfg [x] C:\DOKUME~1\ALLUSE~1\ANWEND~1\cqtdhtnnppjsjxvxmtb.bfg C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.exe Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Frisches FRST log bitte. Downloade dir bitte Farbar Service Scanner
Poste bitte den Inhalt hier.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.09.2013, 20:33 | #9 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm fixlog.txt Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 13-09-2013 01 Ran by Pate at 2013-08-21 08:19:48 Run:1 Running from C:\Dokumente und Einstellungen\Pate\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** :OTL O4 - HKLM..\Run: [cgBXoIziJrRPgl] L:\Users\Sven Haferkorn\AppData\Local\n7MIr9o.exe (?????????? ??????????) O4 - HKU\Sven_Haferkorn_ON_L..\Run: [cgBXoIziJrRPgl] L:\Users\Sven Haferkorn\AppData\Local\n7MIr9o.exe (?????????? ??????????) HKCU\...\Run: [] - C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.exe HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION S2 winmgmt; C:\DOKUME~1\ALLUSE~1\ANWEND~1\cqtdhtnnppjsjxvxmtb.bfg [x] C:\DOKUME~1\ALLUSE~1\ANWEND~1\cqtdhtnnppjsjxvxmtb.bfg C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.exe ***************** HKU\O4 - HKU\Sven_Haferkorn_ON_L..\Run: [cgBXoIziJrRPgl] L:\Users\Sven Haferkorn\AppData\Local\n7MIr9o.exe (?????????? ??????????)\Software\Microsoft\Windows\CurrentVersion\Run\\O4 - HKU\Sven_Haferkorn_ON_L..\Run: [cgBXoIziJrRPgl] L:\Users\Sven Haferkorn\AppData\Local\n7MIr9o.exe (?????????? ??????????) => Value not found. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully. HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully. winmgmt => Service restored successfully. "C:\DOKUME~1\ALLUSE~1\ANWEND~1\cqtdhtnnppjsjxvxmtb.bfg" => File/Directory not found. "C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat" => File/Directory not found. "C:\Dokumente und Einstellungen\***\wgsdgsdgdsgsd.exe" => File/Directory not found. ==== End of Fixlog ==== FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-09-2013 01 Ran by *** (administrator) on **** on 21-08-2013 08:21:52 Running from C:\Dokumente und Einstellungen\***\Desktop Microsoft Windows XP Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Could not list processes =============== ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\Windows\SOUNDMAN.EXE [577536 2006-08-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [VTTimer] - C:\Windows\system32\VTTimer.exe [53248 2006-08-03] (S3 Graphics, Inc.) HKLM\...\Run: [VTTrayp] - C:\Windows\system32\VTtrayp.exe [180224 2006-08-30] (S3 Graphics Co., Ltd.) HKLM\...\Run: [QuickTime Task] - C:\Programme\QuickTime\qttask.exe [286720 2007-10-27] (Apple Inc.) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-18] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) Winlogon\Notify\crypt32chain: C:\Windows\system32\crypt32.dll (Microsoft Corporation) Winlogon\Notify\cryptnet: C:\Windows\system32\cryptnet.dll (Microsoft Corporation) Winlogon\Notify\cscdll: C:\Windows\system32\cscdll.dll (Microsoft Corporation) Winlogon\Notify\dimsntfy: C:\Windows\System32\dimsntfy.dll (Microsoft Corporation) Winlogon\Notify\ScCertProp: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\Schedule: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\sclgntfy: C:\Windows\system32\sclgntfy.dll (Microsoft Corporation) Winlogon\Notify\SensLogn: C:\Windows\system32\WlNotify.dll (Microsoft Corporation) Winlogon\Notify\termsrv: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\WgaLogon: C:\Windows\system32\WgaLogon.dll (Microsoft Corporation) Winlogon\Notify\wlballoon: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bluewin.ch/index_d.html HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKCU - {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\j2re1.4.2_19\bin\ssv.dll No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\j2re1.4.2_19\bin\jp2ssv.dll No File Toolbar: HKCU -&Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://www.apple.com/qtactivex/qtplugin.cab DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://go.microsoft.com/fwlink/?linkid=58813 DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://www.extrafilm.ch/ImageUploader5.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} hxxp://www.extrafilm.ch/ExtraFilmUploader6.cab DPF: {CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\***\Anwendungsdaten\Mozilla\Firefox\Profiles\sw7jxd89.default FF NetworkProxy: "no_proxies_on", "127.0.0.1" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [84024 2013-08-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-18] (Avira Operations GmbH & Co. KG) R2 Brother XP spl Service; C:\WINDOWS\system32\brsvc01a.exe [57344 2002-04-12] (brother Industries Ltd) R2 MDM; C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE [322120 2003-06-19] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [115168 2012-11-06] (Mozilla Foundation) S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation) R2 UleadBurningHelper; C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [4019072 2006-09-20] (Realtek Semiconductor Corp.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-04-09] (Avira Operations GmbH & Co. KG) S3 BrScnUsb; C:\Windows\System32\Drivers\BrScnUsb.sys [15263 2003-12-19] (Brother Industries Ltd.) R3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-07-26] (InterVideo, Inc.) S3 MRENDIS5; C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [18003 2005-05-09] (Motive, Inc.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) R0 viaagp1; C:\Windows\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.) R3 viagfx; C:\Windows\System32\DRIVERS\vtmini.sys [264704 2006-08-31] (Copyright (C) VIA/S3 Graphics Co, Ltd.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-21 08:21 - 2013-08-21 08:21 - 00358923 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FSS.exe 2013-08-21 07:53 - 2013-08-21 07:53 - 00448512 _____ (OldTimer Tools) C:\Dokumente und Einstellungen\***\Desktop\TFC.exe 2013-08-19 08:06 - 2013-08-19 08:07 - 00019904 _____ C:\WINDOWS\KB2870699-IE8.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00010991 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$ 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-19 08:01 - 2013-08-19 08:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00010660 _____ C:\WINDOWS\KB2863058.log 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-19 07:47 - 2013-08-19 07:51 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-18 23:27 - 2013-08-19 08:04 - 00021051 _____ C:\WINDOWS\KB2876315.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00020090 _____ C:\WINDOWS\KB2876217.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00019558 _____ C:\WINDOWS\KB2864063.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00018725 _____ C:\WINDOWS\KB2850869.log 2013-08-18 23:26 - 2013-08-19 08:02 - 00020394 _____ C:\WINDOWS\KB2859537.log 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 00:02 - 2013-08-18 00:03 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 22:48 - 2013-09-12 07:34 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-08-17 22:48 - 2013-09-12 07:34 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-08-17 22:48 - 2013-09-11 14:47 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-08-17 22:48 - 2013-08-17 23:15 - 00000000 ____D C:\AdwCleaner 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) C:\OTLPE.exe 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 08:58 - 2013-08-17 09:12 - 00090744 _____ C:\OTL.Txt 2013-08-15 01:16 - 2013-08-15 01:17 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-08-09 03:56 - 2013-08-09 03:56 - 00390656 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\themeui.dll 2013-07-22 12:45 - 2013-07-22 12:45 - 00010892 _____ C:\WINDOWS\KB2834904.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-22 12:43 - 2013-07-22 12:43 - 00012227 _____ C:\WINDOWS\KB2834886.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-22 12:42 - 2013-07-22 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-22 12:41 - 2013-07-22 12:41 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-22 12:29 - 2013-07-22 12:31 - 00014706 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-22 11:52 - 2013-07-22 12:42 - 00020675 _____ C:\WINDOWS\KB2850851.log 2013-07-22 11:52 - 2013-07-22 12:41 - 00019594 _____ C:\WINDOWS\KB2845187.log ==================== One Month Modified Files and Folders ======= 2013-09-12 07:34 - 2013-08-17 22:48 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-09-12 07:34 - 2013-08-17 22:48 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-09-11 14:47 - 2013-08-17 22:48 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-09-01 16:57 - 2007-07-24 17:50 - 76725432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-08-21 08:21 - 2013-08-21 08:21 - 00358923 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FSS.exe 2013-08-21 08:19 - 2006-11-03 12:59 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl 2013-08-21 08:00 - 2006-11-03 13:00 - 01936122 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-21 07:57 - 2006-11-03 13:00 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-08-21 07:57 - 2006-11-03 13:00 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-08-21 07:56 - 2007-01-11 15:26 - 00000300 ___SH C:\Dokumente und Einstellungen\***\ntuser.ini 2013-08-21 07:56 - 2006-11-03 13:02 - 00032492 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-21 07:56 - 2006-11-03 12:59 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-08-21 07:53 - 2013-08-21 07:53 - 00448512 _____ (OldTimer Tools) C:\Dokumente und Einstellungen\***\Desktop\TFC.exe 2013-08-21 07:51 - 2009-12-02 22:07 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Java 2013-08-21 03:33 - 2012-11-06 13:09 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-08-20 02:06 - 2007-01-11 15:26 - 00000000 ____D C:\Dokumente und Einstellungen\*** 2013-08-20 02:06 - 2006-11-03 12:59 - 00263824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-08-20 02:06 - 2006-11-03 12:58 - 00000000 ___RD C:\Programme 2013-08-19 08:07 - 2013-08-19 08:06 - 00019904 _____ C:\WINDOWS\KB2870699-IE8.log 2013-08-19 08:07 - 2012-12-13 14:43 - 00023691 _____ C:\WINDOWS\updspapi.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00270988 _____ C:\WINDOWS\FaxSetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00130064 _____ C:\WINDOWS\ocgen.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00103796 _____ C:\WINDOWS\tsoc.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00090716 _____ C:\WINDOWS\comsetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00054919 _____ C:\WINDOWS\ntdtcsetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00043330 _____ C:\WINDOWS\iis6.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00015048 _____ C:\WINDOWS\ocmsn.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00013596 _____ C:\WINDOWS\msgsocm.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.log 2013-08-19 08:07 - 2012-11-12 18:49 - 00087373 _____ C:\WINDOWS\setupapi.log 2013-08-19 08:07 - 2011-03-23 01:48 - 00000000 ____D C:\WINDOWS\ie8updates 2013-08-19 08:04 - 2013-08-19 08:04 - 00010991 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$ 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-19 08:04 - 2013-08-18 23:27 - 00021051 _____ C:\WINDOWS\KB2876315.log 2013-08-19 08:04 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-19 08:03 - 2013-08-18 23:27 - 00020090 _____ C:\WINDOWS\KB2876217.log 2013-08-19 08:03 - 2013-08-18 23:27 - 00019558 _____ C:\WINDOWS\KB2864063.log 2013-08-19 08:03 - 2013-08-18 23:27 - 00018725 _____ C:\WINDOWS\KB2850869.log 2013-08-19 08:02 - 2013-08-19 08:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-19 08:02 - 2013-08-18 23:26 - 00020394 _____ C:\WINDOWS\KB2859537.log 2013-08-19 08:01 - 2006-11-03 13:00 - 00000603 _____ C:\WINDOWS\win.ini 2013-08-19 08:01 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-19 07:58 - 2013-08-19 07:58 - 00010660 _____ C:\WINDOWS\KB2863058.log 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-19 07:58 - 2007-07-14 11:37 - 00887602 _____ C:\WINDOWS\system32\TZLog.log 2013-08-19 07:56 - 2006-11-03 13:00 - 01038476 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-08-19 07:51 - 2013-08-19 07:47 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-19 07:46 - 2006-11-03 12:58 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-19 00:33 - 2012-11-06 13:09 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-08-19 00:33 - 2012-11-06 13:09 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-08-18 23:04 - 2012-11-06 13:11 - 00002347 _____ C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Adobe Reader XI.lnk 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 22:58 - 2012-11-06 12:49 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2013-08-18 22:58 - 2012-11-06 12:49 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2013-08-18 00:03 - 2013-08-18 00:02 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 23:15 - 2013-08-17 22:48 - 00000000 ____D C:\AdwCleaner 2013-08-17 20:17 - 2006-11-03 12:58 - 00000000 ___HD C:\WINDOWS\$NtUninstallKB925486$ 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 09:12 - 2013-08-17 08:58 - 00090744 _____ C:\OTL.Txt 2013-08-17 00:28 - 2012-11-12 18:50 - 00000082 _____ C:\WINDOWS\setupact.log 2013-08-15 01:21 - 2007-07-24 21:20 - 00000190 ___SH C:\Dokumente und Einstellungen\*****\ntuser.ini 2013-08-15 01:21 - 2007-07-24 21:20 - 00000000 ____D C:\Dokumente und Einstellungen\***** 2013-08-15 01:17 - 2013-08-15 01:16 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-08-09 03:56 - 2013-08-09 03:56 - 00390656 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\themeui.dll 2013-08-09 03:56 - 2006-11-03 13:00 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2013-08-08 08:09 - 2008-10-15 21:06 - 01877888 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\win32k.sys 2013-08-08 08:09 - 2006-11-03 13:02 - 01877888 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2013-08-08 08:05 - 2012-06-17 08:41 - 00522240 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 11113472 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 02006016 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00743424 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00630272 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00247808 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00055296 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2013-08-08 08:05 - 2010-11-05 07:04 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2013-08-08 08:05 - 2010-09-09 16:17 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2013-08-08 08:05 - 2010-04-16 18:06 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2013-08-08 08:05 - 2009-03-08 15:09 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2013-08-08 08:05 - 2009-03-08 05:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2013-08-08 08:05 - 2009-03-08 05:34 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2013-08-08 08:05 - 2009-03-08 05:34 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2013-08-08 08:05 - 2009-03-08 05:34 - 00105984 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2013-08-08 08:05 - 2009-03-08 05:34 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2013-08-08 08:05 - 2009-03-08 05:33 - 00759296 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2013-08-08 08:05 - 2009-03-08 05:33 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2013-08-08 08:05 - 2009-03-08 05:33 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2013-08-08 08:05 - 2009-03-08 05:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2013-08-08 08:05 - 2009-03-08 05:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2013-08-08 08:05 - 2009-03-08 05:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2013-08-08 08:05 - 2008-06-26 10:12 - 01215488 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2013-08-08 08:05 - 2008-04-21 08:42 - 06017536 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2013-08-08 08:05 - 2008-04-21 08:42 - 00920064 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2013-08-08 08:05 - 2006-11-03 12:59 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2013-08-08 05:32 - 2009-03-08 05:32 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2013-08-08 05:32 - 2006-11-03 13:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2013-08-08 02:02 - 2006-11-03 13:00 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2013-08-05 15:30 - 2010-07-16 14:05 - 01289728 ____N (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ole32.dll 2013-08-05 15:30 - 2006-11-03 13:00 - 01289728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2013-08-03 01:48 - 2006-10-18 21:47 - 01543680 ____N (Microsoft Corporation) C:\WINDOWS\system32\wmvdecod.dll 2013-07-22 12:45 - 2013-07-22 12:45 - 00010892 _____ C:\WINDOWS\KB2834904.log 2013-07-22 12:45 - 2013-07-22 12:45 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904_WM11$ 2013-07-22 12:43 - 2013-07-22 12:43 - 00012227 _____ C:\WINDOWS\KB2834886.log 2013-07-22 12:43 - 2013-07-22 12:43 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834886$ 2013-07-22 12:42 - 2013-07-22 12:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850851$ 2013-07-22 12:42 - 2013-07-22 11:52 - 00020675 _____ C:\WINDOWS\KB2850851.log 2013-07-22 12:41 - 2013-07-22 12:41 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2845187$ 2013-07-22 12:41 - 2013-07-22 11:52 - 00019594 _____ C:\WINDOWS\KB2845187.log 2013-07-22 12:31 - 2013-07-22 12:29 - 00014706 _____ C:\WINDOWS\KB2846071-IE8.log 2013-07-22 12:24 - 2009-11-19 20:21 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2013-07-22 12:18 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Eigene Dateien\Eigene Bilder ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-11-03 13:00] - [2008-04-14 04:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2006-11-03 13:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2006-11-03 13:02] - [2008-04-14 03:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ FSS.txt Code:
ATTFilter Farbar Service Scanner Version: 13-09-2013 Ran by *** (administrator) on 21-08-2013 at 08:25:15 Running from "C:\Dokumente und Einstellungen\***\Desktop" Microsoft Windows XP Service Pack 3 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= sharedaccess Service is not running. Checking service configuration: The start type of sharedaccess service is OK. The ImagePath of sharedaccess service is OK. The ServiceDll of sharedaccess service is OK. winmgmt Service is not running. Checking service configuration: The start type of winmgmt service is OK. The ImagePath of winmgmt service is OK. The ServiceDll of winmgmt service is OK. Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Security Center: ============ wscsvc Service is not running. Checking service configuration: The start type of wscsvc service is OK. The ImagePath of wscsvc service is OK. The ServiceDll of wscsvc service is OK. winmgmt Service is not running. Checking service configuration: The start type of winmgmt service is OK. The ImagePath of winmgmt service is OK. The ServiceDll of winmgmt service is OK. Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Other Services: ============== File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll [2006-11-03 12:59] - [2008-04-14 04:22] - 0127488 ____A (Microsoft Corporation) C29A1C9B75BA38FA37F8C44405DEC360 C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit C:\WINDOWS\system32\dnsrslvr.dll [2006-11-03 12:59] - [2009-04-20 19:17] - 0045568 ____A (Microsoft Corporation) 407F3227AC618FD1CA54B335B083DE07 C:\WINDOWS\system32\ipnathlp.dll [2006-11-03 12:59] - [2008-04-14 04:22] - 0334336 ____A (Microsoft Corporation) CAD058D5F8B889A87CA3EB3CF624DCEF C:\WINDOWS\system32\netman.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0198144 ____A (Microsoft Corporation) E6D88F1F6745BF00B57E7855A2AB696C C:\WINDOWS\system32\wbem\WMIsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0145408 ____A (Microsoft Corporation) 6F3F3973D97714CC5F906A19FE883729 C:\WINDOWS\system32\srsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0171520 ____A (Microsoft Corporation) FE77A85495065F3AD59C5C65B6C54182 C:\WINDOWS\system32\Drivers\sr.sys [2006-11-03 13:02] - [2008-04-14 04:02] - 0073472 ____A (Microsoft Corporation) 50FA898F8C032796D3B1B9951BB5A90F C:\WINDOWS\system32\wscsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0080896 ____A (Microsoft Corporation) 300B3E84FAF1A5C1F791C159BA28035D C:\WINDOWS\system32\wbem\WMIsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0145408 ____A (Microsoft Corporation) 6F3F3973D97714CC5F906A19FE883729 C:\WINDOWS\system32\wuauserv.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0006656 ____A (Microsoft Corporation) 7B4FE05202AA6BF9F4DFD0E6A0D8A085 C:\WINDOWS\system32\qmgr.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0409088 ____A (Microsoft Corporation) D6F603772A789BB3228F310D650B8BD1 C:\WINDOWS\system32\es.dll [2006-11-03 12:59] - [2008-07-07 22:26] - 0253952 ____A (Microsoft Corporation) AF4F6B5739D18CA7972AB53E091CBC74 C:\WINDOWS\system32\cryptsvc.dll [2006-11-03 12:59] - [2008-04-14 04:22] - 0062464 ____A (Microsoft Corporation) 611F824E5C703A5A899F84C5F1699E4D C:\WINDOWS\system32\svchost.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0014336 ____A (Microsoft Corporation) 4FBC75B74479C7A6F829E0CA19DF3366 C:\WINDOWS\system32\rpcss.dll [2006-11-03 13:00] - [2009-02-09 12:51] - 0401408 ____A (Microsoft Corporation) 3127AFBF2C1ED0AB14A1BBB7AAECB85B C:\WINDOWS\system32\services.exe [2006-11-03 13:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) A3EDBE9053889FB24AB22492472B39DC Extra List: ======= Gpc(6) IPSec(4) NetBT(5) PSched(7) Tcpip(3) 0x0700000004000000010000000200000003000000050000000600000007000000 IpSec Tag value is correct. **** End of log **** |
16.09.2013, 09:59 | #10 |
/// the machine /// TB-Ausbilder | WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Downloade dir bitte Windows Repair (All In One) von hier.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.09.2013, 14:20 | #11 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Besten Dank bis hierhin. Habe die Aufgaben mit Windows Repair (All In One) ausgeführt. Wie geht es weiter? |
16.09.2013, 19:36 | #12 |
/// the machine /// TB-Ausbilder | WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Frisches FSS und FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.09.2013, 07:42 | #13 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Läuft momentan ohne Probleme. FSS Code:
ATTFilter Farbar Service Scanner Version: 13-09-2013 Ran by *** (administrator) on 22-08-2013 at 19:32:43 Running from "C:\Dokumente und Einstellungen\***\Desktop" Microsoft Windows XP Home Edition Service Pack 3 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Security Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Other Services: ============== File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll [2006-11-03 12:59] - [2008-04-14 04:22] - 0127488 ____A (Microsoft Corporation) C29A1C9B75BA38FA37F8C44405DEC360 C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit C:\WINDOWS\system32\dnsrslvr.dll [2006-11-03 12:59] - [2009-04-20 19:17] - 0045568 ____A (Microsoft Corporation) 407F3227AC618FD1CA54B335B083DE07 C:\WINDOWS\system32\ipnathlp.dll [2006-11-03 12:59] - [2008-04-14 04:22] - 0334336 ____A (Microsoft Corporation) CAD058D5F8B889A87CA3EB3CF624DCEF C:\WINDOWS\system32\netman.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0198144 ____A (Microsoft Corporation) E6D88F1F6745BF00B57E7855A2AB696C C:\WINDOWS\system32\wbem\WMIsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0145408 ____A (Microsoft Corporation) 6F3F3973D97714CC5F906A19FE883729 C:\WINDOWS\system32\srsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0171520 ____A (Microsoft Corporation) FE77A85495065F3AD59C5C65B6C54182 C:\WINDOWS\system32\Drivers\sr.sys [2006-11-03 13:02] - [2008-04-14 04:02] - 0073472 ____A (Microsoft Corporation) 50FA898F8C032796D3B1B9951BB5A90F C:\WINDOWS\system32\wscsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0080896 ____A (Microsoft Corporation) 300B3E84FAF1A5C1F791C159BA28035D C:\WINDOWS\system32\wbem\WMIsvc.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0145408 ____A (Microsoft Corporation) 6F3F3973D97714CC5F906A19FE883729 C:\WINDOWS\system32\wuauserv.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0006656 ____A (Microsoft Corporation) 7B4FE05202AA6BF9F4DFD0E6A0D8A085 C:\WINDOWS\system32\qmgr.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0409088 ____A (Microsoft Corporation) D6F603772A789BB3228F310D650B8BD1 C:\WINDOWS\system32\es.dll [2006-11-03 12:59] - [2008-07-07 22:26] - 0253952 ____A (Microsoft Corporation) AF4F6B5739D18CA7972AB53E091CBC74 C:\WINDOWS\system32\cryptsvc.dll [2006-11-03 12:59] - [2008-04-14 04:22] - 0062464 ____A (Microsoft Corporation) 611F824E5C703A5A899F84C5F1699E4D C:\WINDOWS\system32\svchost.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0014336 ____A (Microsoft Corporation) 4FBC75B74479C7A6F829E0CA19DF3366 C:\WINDOWS\system32\rpcss.dll [2006-11-03 13:00] - [2009-02-09 12:51] - 0401408 ____A (Microsoft Corporation) 3127AFBF2C1ED0AB14A1BBB7AAECB85B C:\WINDOWS\system32\services.exe [2006-11-03 13:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) A3EDBE9053889FB24AB22492472B39DC Extra List: ======= Gpc(6) IPSec(4) NetBT(5) PSched(7) Tcpip(3) 0x0700000004000000010000000200000003000000050000000600000007000000 IpSec Tag value is correct. **** End of log **** FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-09-2013 01 Ran by *** (administrator) on **** on 22-08-2013 19:34:55 Running from C:\Dokumente und Einstellungen\***\Desktop Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (brother Industries Ltd) C:\WINDOWS\system32\brsvc01a.exe (brother Industries Ltd) C:\WINDOWS\system32\brss01a.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avguard.exe (Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE (Ulead Systems, Inc.) C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe (Microsoft Corporation) C:\Programme\Windows Media Player\WMPNetwk.exe (Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE (S3 Graphics, Inc.) C:\WINDOWS\system32\VTTimer.exe (S3 Graphics Co., Ltd.) C:\WINDOWS\system32\VTtrayp.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Oracle Corporation) C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\Windows\SOUNDMAN.EXE [577536 2006-08-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [VTTimer] - C:\Windows\system32\VTTimer.exe [53248 2006-08-03] (S3 Graphics, Inc.) HKLM\...\Run: [VTTrayp] - C:\Windows\system32\VTtrayp.exe [180224 2006-08-30] (S3 Graphics Co., Ltd.) HKLM\...\Run: [QuickTime Task] - C:\Programme\QuickTime\qttask.exe [286720 2007-10-27] (Apple Inc.) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-18] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) Winlogon\Notify\crypt32chain: C:\Windows\system32\crypt32.dll (Microsoft Corporation) Winlogon\Notify\cryptnet: C:\Windows\system32\cryptnet.dll (Microsoft Corporation) Winlogon\Notify\cscdll: C:\Windows\system32\cscdll.dll (Microsoft Corporation) Winlogon\Notify\dimsntfy: C:\Windows\System32\dimsntfy.dll (Microsoft Corporation) Winlogon\Notify\ScCertProp: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\Schedule: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\sclgntfy: C:\Windows\system32\sclgntfy.dll (Microsoft Corporation) Winlogon\Notify\SensLogn: C:\Windows\system32\WlNotify.dll (Microsoft Corporation) Winlogon\Notify\termsrv: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\WgaLogon: C:\Windows\system32\WgaLogon.dll (Microsoft Corporation) Winlogon\Notify\wlballoon: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bluewin.ch/index_d.html HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKCU - {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\j2re1.4.2_19\bin\ssv.dll No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\j2re1.4.2_19\bin\jp2ssv.dll No File Toolbar: HKCU -&Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://www.apple.com/qtactivex/qtplugin.cab DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://go.microsoft.com/fwlink/?linkid=58813 DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://www.extrafilm.ch/ImageUploader5.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} hxxp://www.extrafilm.ch/ExtraFilmUploader6.cab DPF: {CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\***\Anwendungsdaten\Mozilla\Firefox\Profiles\sw7jxd89.default FF NetworkProxy: "no_proxies_on", "127.0.0.1" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [84024 2013-08-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-18] (Avira Operations GmbH & Co. KG) R2 Brother XP spl Service; C:\WINDOWS\system32\brsvc01a.exe [57344 2002-04-12] (brother Industries Ltd) R2 MDM; C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE [322120 2003-06-19] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [115168 2012-11-06] (Mozilla Foundation) S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation) R2 UleadBurningHelper; C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.) R2 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [4019072 2006-09-20] (Realtek Semiconductor Corp.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-04-09] (Avira Operations GmbH & Co. KG) S3 BrScnUsb; C:\Windows\System32\Drivers\BrScnUsb.sys [15263 2003-12-19] (Brother Industries Ltd.) S3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-07-26] (InterVideo, Inc.) S3 MRENDIS5; C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [18003 2005-05-09] (Motive, Inc.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) R0 viaagp1; C:\Windows\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.) R3 viagfx; C:\Windows\System32\DRIVERS\vtmini.sys [264704 2006-08-31] (Copyright (C) VIA/S3 Graphics Co, Ltd.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-22 19:32 - 2013-08-22 19:32 - 97922994 _____ C:\WINDOWS\system32\砏-咜6 2013-08-22 01:44 - 2013-08-22 01:44 - 00002410 _____ C:\Dokumente und Einstellungen\***\Desktop\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000963 _____ C:\WINDOWS\system32\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000000 ____D C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme\Zubehör 2013-08-22 01:25 - 2013-08-22 01:44 - 00181064 _____ (Sysinternals) C:\WINDOWS\PSEXESVC.EXE 2013-08-22 01:21 - 2013-08-22 01:21 - 00000000 ____D C:\RegBackup 2013-08-22 01:02 - 2008-04-14 04:22 - 00116736 _____ (Xerox) C:\WINDOWS\system32\dllcache\xrxwiadr.dll 2013-08-22 01:02 - 2008-04-14 04:22 - 00019456 _____ () C:\WINDOWS\system32\dllcache\xrxscnui.dll 2013-08-22 01:02 - 2008-04-14 04:22 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wshirda.dll 2013-08-22 01:02 - 2008-04-13 20:46 - 00019200 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wstcodec.sys 2013-08-22 01:02 - 2004-08-03 22:29 - 00019455 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wvchntxx.sys 2013-08-22 01:02 - 2004-08-03 22:29 - 00012063 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wsiintxx.sys 2013-08-22 01:02 - 2001-08-18 04:55 - 00099865 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\xlog.exe 2013-08-22 01:02 - 2001-08-18 04:55 - 00027648 _____ () C:\WINDOWS\system32\dllcache\xrxftplt.exe 2013-08-22 01:02 - 2001-08-18 04:55 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xrxflnch.exe 2013-08-22 01:02 - 2001-08-18 04:54 - 00023040 _____ (Xerox Corporation) C:\WINDOWS\system32\dllcache\xrxwbtmp.dll 2013-08-22 01:02 - 2001-08-17 12:11 - 00016970 _____ (US Robotics MCD (Megahertz)) C:\WINDOWS\system32\dllcache\xem336n5.sys 2013-08-22 01:01 - 2008-04-14 03:52 - 00032000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wceusbsh.sys 2013-08-22 01:01 - 2008-04-13 20:36 - 00008832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiacpi.sys 2013-08-22 01:01 - 2004-08-03 22:31 - 00154624 _____ (Lucent Technologies) C:\WINDOWS\system32\dllcache\wlluc48.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00033599 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\watv04nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00029311 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\watv01nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00023615 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wch7xxnt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00019551 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\watv02nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00012415 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wadv01nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00012127 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wadv02nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00011775 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wadv05nt.sys 2013-08-22 01:01 - 2001-08-18 04:54 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wiafbdrv.dll 2013-08-22 01:01 - 2001-08-18 04:54 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wiamsmud.dll 2013-08-22 01:01 - 2001-08-18 04:24 - 00035402 _____ (Raytheon Corp.) C:\WINDOWS\system32\dllcache\wlandrv2.sys 2013-08-22 01:01 - 2001-08-17 13:28 - 00771581 _____ (Rockwell) C:\WINDOWS\system32\dllcache\winacisa.sys 2013-08-22 01:01 - 2001-08-17 13:28 - 00701386 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\wdhaalba.sys 2013-08-22 01:01 - 2001-08-17 12:13 - 00019016 _____ (Winbond Electronics Corporation) C:\WINDOWS\system32\dllcache\w926nd.sys 2013-08-22 01:01 - 2001-08-17 12:13 - 00016925 _____ (Winbond Electronics Corporation) C:\WINDOWS\system32\dllcache\w940nd.sys 2013-08-22 01:01 - 2001-08-17 12:10 - 00035871 _____ (Winbond Electronics Corp.) C:\WINDOWS\system32\dllcache\wbfirdma.sys 2013-08-22 01:00 - 2008-04-14 04:22 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vfwwdm32.dll 2013-08-22 01:00 - 2008-04-13 20:45 - 00060032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbaudio.sys 2013-08-22 01:00 - 2008-04-13 20:45 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbser.sys 2013-08-22 01:00 - 2008-04-13 20:45 - 00017152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbohci.sys 2013-08-22 01:00 - 2008-04-13 20:45 - 00015104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbscan.sys 2013-08-22 01:00 - 2001-08-17 13:49 - 00024576 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\dllcache\viairda.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00794654 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usr1801.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00794399 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usr1806v.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00793598 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usr1806.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00765884 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usrti.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00687999 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usrwdxjs.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00604253 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\vmodem.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00397502 _____ (PCtel, Inc.) C:\WINDOWS\system32\dllcache\vpctcom.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00224802 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usr1807a.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00113762 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usrpda.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00064605 _____ (PCtel, Inc.) C:\WINDOWS\system32\dllcache\vvoice.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00007556 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usroslba.sys 2013-08-22 01:00 - 2001-08-17 12:14 - 00249402 _____ (Xircom) C:\WINDOWS\system32\dllcache\vinwm.sys 2013-08-22 01:00 - 2001-08-17 12:13 - 00019528 _____ (Winbond Electronics Corporation) C:\WINDOWS\system32\dllcache\w840nd.sys 2013-08-22 00:59 - 2004-08-04 00:43 - 00032384 _____ (KLSI USA, Inc.) C:\WINDOWS\system32\dllcache\usb101et.sys 2013-08-22 00:59 - 2001-08-18 04:54 - 00525568 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridxp.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00216576 _____ (UMAX Data Systems Inc.) C:\WINDOWS\system32\dllcache\um34scan.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00212480 _____ (UMAX Data Systems Inc.) C:\WINDOWS\system32\dllcache\um54scan.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxud32.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxu12.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00050688 _____ (UMAX DATA SYSTEMS INC.) C:\WINDOWS\system32\dllcache\umaxscan.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxp60.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxcam.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxu40.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxu22.dll 2013-08-22 00:59 - 2001-08-18 04:52 - 00440576 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridkb.dll 2013-08-22 00:59 - 2001-08-17 13:58 - 00022912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxpcls.sys 2013-08-22 00:59 - 2001-08-17 13:52 - 00036736 _____ (Promise Technology, Inc.) C:\WINDOWS\system32\dllcache\ultra.sys 2013-08-22 00:59 - 2001-08-17 13:48 - 00011520 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\twotrack.sys 2013-08-22 00:59 - 2001-08-17 12:51 - 00166784 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridxpm.sys 2013-08-22 00:59 - 2001-08-17 12:51 - 00159232 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridkbm.sys 2013-08-22 00:58 - 2008-04-14 04:23 - 00082944 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\tp4mon.exe 2013-08-22 00:58 - 2008-04-13 20:40 - 00149376 _____ (M-Systems) C:\WINDOWS\system32\dllcache\tffsport.sys 2013-08-22 00:58 - 2001-08-18 04:54 - 00031744 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\tp4.dll 2013-08-22 00:58 - 2001-08-18 04:52 - 00315520 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\trid3d.dll 2013-08-22 00:58 - 2001-08-18 04:52 - 00081408 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tgiul50.dll 2013-08-22 00:58 - 2001-08-18 04:52 - 00043520 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\tp4res.dll 2013-08-22 00:58 - 2001-08-18 04:20 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\toside.sys 2013-08-22 00:58 - 2001-08-17 14:02 - 00230912 _____ (Toshiba Corporation) C:\WINDOWS\system32\dllcache\tosdvd03.sys 2013-08-22 00:58 - 2001-08-17 14:01 - 00241664 _____ (Toshiba Corporation) C:\WINDOWS\system32\dllcache\tosdvd02.sys 2013-08-22 00:58 - 2001-08-17 13:49 - 00030464 _____ (Toshiba Corporation) C:\WINDOWS\system32\dllcache\tbatm155.sys 2013-08-22 00:58 - 2001-08-17 12:51 - 00222336 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\trid3dm.sys 2013-08-22 00:58 - 2001-08-17 12:51 - 00138528 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tgiulnt5.sys 2013-08-22 00:58 - 2001-08-17 12:14 - 00123995 _____ (Tiger Jet Network) C:\WINDOWS\system32\dllcache\tjisdn.sys 2013-08-22 00:58 - 2001-08-17 12:13 - 00037961 _____ (TDK Corporation) C:\WINDOWS\system32\dllcache\tdk100b.sys 2013-08-22 00:58 - 2001-08-17 12:13 - 00017129 _____ (TDK Corporation) C:\WINDOWS\system32\dllcache\tdkcd31.sys 2013-08-22 00:58 - 2001-08-17 12:12 - 00034375 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\tpro4.sys 2013-08-22 00:58 - 2001-08-17 12:10 - 00028232 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\dllcache\tos4mo.sys 2013-08-22 00:57 - 2008-04-13 20:46 - 00015232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\streamip.sys 2013-08-22 00:57 - 2001-08-18 04:54 - 00159744 _____ (Stallion Technologies) C:\WINDOWS\system32\dllcache\stlnprop.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00094293 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\sxports.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sw_wheel.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00053248 _____ (Stallion Technologies) C:\WINDOWS\system32\dllcache\stlncoin.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sw_effct.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swpidflt.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swpdflt2.dll 2013-08-22 00:57 - 2001-08-18 04:52 - 00172768 _____ (Number Nine Visual Technology) C:\WINDOWS\system32\dllcache\t2r4disp.dll 2013-08-22 00:57 - 2001-08-18 04:18 - 00287232 _____ (Stallion Technologies) C:\WINDOWS\system32\dllcache\stlnata.sys 2013-08-22 00:57 - 2001-08-18 04:18 - 00017152 _____ (SCM Microsystems, Inc.) C:\WINDOWS\system32\dllcache\stcusb.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00032640 _____ (LSI Logic) C:\WINDOWS\system32\dllcache\symc8xx.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00030688 _____ (LSI Logic) C:\WINDOWS\system32\dllcache\sym_u3.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00028384 _____ (LSI Logic) C:\WINDOWS\system32\dllcache\sym_hi.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00016256 _____ (Symbios Logic Inc.) C:\WINDOWS\system32\dllcache\symc810.sys 2013-08-22 00:57 - 2001-08-17 14:02 - 00003968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swusbflt.sys 2013-08-22 00:57 - 2001-08-17 13:52 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tandqic.sys 2013-08-22 00:57 - 2001-08-17 13:50 - 00103936 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\sx.sys 2013-08-22 00:57 - 2001-08-17 12:50 - 00036640 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\t2r4mini.sys 2013-08-22 00:56 - 2008-04-13 20:40 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sonyait.sys 2013-08-22 00:56 - 2004-08-04 14:00 - 00143422 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\softkey.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00114688 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonypi.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00110680 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\spdports.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srusd.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00024660 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\spxupchk.dll 2013-08-22 00:56 - 2001-08-18 04:52 - 00147200 _____ (Silicon Motion Inc.) C:\WINDOWS\system32\dllcache\smidispb.dll 2013-08-22 00:56 - 2001-08-18 04:35 - 00035913 _____ (SMC) C:\WINDOWS\system32\dllcache\smcirda.sys 2013-08-22 00:56 - 2001-08-17 14:07 - 00019072 _____ (Adaptec, Inc.) C:\WINDOWS\system32\dllcache\sparrow.sys 2013-08-22 00:56 - 2001-08-17 13:56 - 00007552 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonypvu1.sys 2013-08-22 00:56 - 2001-08-17 13:53 - 00009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sonymc.sys 2013-08-22 00:56 - 2001-08-17 13:53 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snyaitmc.sys 2013-08-22 00:56 - 2001-08-17 13:51 - 00061824 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\speed.sys 2013-08-22 00:56 - 2001-08-17 12:51 - 00058368 _____ (Silicon Motion Inc.) C:\WINDOWS\system32\dllcache\smiminib.sys 2013-08-22 00:56 - 2001-08-17 12:51 - 00037040 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonypi.sys 2013-08-22 00:56 - 2001-08-17 12:51 - 00020752 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonync.sys 2013-08-22 00:56 - 2001-08-17 12:12 - 00025034 _____ (SMC Networks, Inc.) C:\WINDOWS\system32\dllcache\smcpwr2n.sys 2013-08-22 00:56 - 2001-08-17 12:11 - 00048736 _____ (3Com) C:\WINDOWS\system32\dllcache\srwlnd5.sys 2013-08-22 00:55 - 2008-04-13 20:46 - 00011136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\slip.sys 2013-08-22 00:55 - 2008-04-13 20:36 - 00016000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smbbatt.sys 2013-08-22 00:55 - 2008-04-13 20:36 - 00006912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smbclass.sys 2013-08-22 00:55 - 2004-08-03 22:31 - 00063547 _____ (Symbol Technologies) C:\WINDOWS\system32\dllcache\sla30nd5.sys 2013-08-22 00:55 - 2004-08-03 22:31 - 00032768 _____ (SiS Corporation) C:\WINDOWS\system32\dllcache\sisnic.sys 2013-08-22 00:55 - 2001-08-18 04:54 - 00238592 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisgrv.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smb3w.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smb0w.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sma0w.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm91w.dll 2013-08-22 00:55 - 2001-08-18 04:52 - 00252032 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis300iv.dll 2013-08-22 00:55 - 2001-08-18 04:52 - 00157696 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisv256.dll 2013-08-22 00:55 - 2001-08-18 04:52 - 00150144 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis6306v.dll 2013-08-22 00:55 - 2001-08-18 04:35 - 00095178 _____ (SysKonnect GmbH.) C:\WINDOWS\system32\dllcache\sk98xwin.sys 2013-08-22 00:55 - 2001-08-17 13:57 - 00006784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smbhc.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00104064 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisgrp.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00101760 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis300ip.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00068608 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis6306p.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00050432 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisv.sys 2013-08-22 00:55 - 2001-08-17 12:12 - 00091294 _____ (SysKonnect, a business unit of Schneider & Koch & Co. Datensysteme GmbH.) C:\WINDOWS\system32\dllcache\skfpwin.sys 2013-08-22 00:55 - 2001-08-17 12:12 - 00024576 _____ (SMC Networks, Inc.) C:\WINDOWS\system32\dllcache\smc8000n.sys 2013-08-22 00:54 - 2008-04-13 20:45 - 00011520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\scsiscan.sys 2013-08-22 00:54 - 2008-04-13 20:40 - 00043904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sbp2port.sys 2013-08-22 00:54 - 2001-08-18 04:54 - 00495616 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\sblfx.dll 2013-08-22 00:54 - 2001-08-18 04:52 - 00386560 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\sgiul50.dll 2013-08-22 00:54 - 2001-08-18 04:52 - 00245632 _____ (S3 Graphics, Inc.) C:\WINDOWS\system32\dllcache\s3savmx.dll 2013-08-22 00:54 - 2001-08-18 04:35 - 00161888 _____ (Micro Systemation) C:\WINDOWS\system32\dllcache\sgsmusb.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00024192 _____ (OMNIKEY AG) C:\WINDOWS\system32\dllcache\sccmn50m.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00018176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sermouse.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00017792 _____ (SCM Microsystems) C:\WINDOWS\system32\dllcache\scr111.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\scmstcs.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\serscan.sys 2013-08-22 00:54 - 2001-08-17 13:53 - 00006912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\seaddsmc.sys 2013-08-22 00:54 - 2001-08-17 13:52 - 00011648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\scsiprnt.sys 2013-08-22 00:54 - 2001-08-17 13:51 - 00023936 _____ (OMNIKEY AG) C:\WINDOWS\system32\dllcache\sccmusbm.sys 2013-08-22 00:54 - 2001-08-17 12:51 - 00098080 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\sgiulnt5.sys 2013-08-22 00:54 - 2001-08-17 12:50 - 00075392 _____ (S3 Graphics, Inc.) C:\WINDOWS\system32\dllcache\s3savmxm.sys 2013-08-22 00:54 - 2001-08-17 12:19 - 00036480 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\sfmanm.sys 2013-08-22 00:54 - 2001-07-21 14:29 - 00018400 _____ (Micro Systemation) C:\WINDOWS\system32\dllcache\sgsmld.sys 2013-08-22 00:53 - 2008-04-14 04:22 - 00029696 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rw450ext.dll 2013-08-22 00:53 - 2008-04-14 04:22 - 00027648 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rw430ext.dll 2013-08-22 00:53 - 2008-04-14 03:53 - 00079360 _____ (Comtrol Corporation) C:\WINDOWS\system32\dllcache\rocket.sys 2013-08-22 00:53 - 2004-08-03 22:31 - 00020992 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\dllcache\rtl8139.sys 2013-08-22 00:53 - 2001-08-18 04:54 - 00086097 _____ () C:\WINDOWS\system32\dllcache\reslog32.dll 2013-08-22 00:53 - 2001-08-18 04:54 - 00083968 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia450.dll 2013-08-22 00:53 - 2001-08-18 04:54 - 00081408 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia430.dll 2013-08-22 00:53 - 2001-08-18 04:54 - 00010752 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\rsmgrstr.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00210496 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mvirge.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00198400 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav4.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00182272 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mt3d.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00179264 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav3d.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00062496 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mtrio.dll 2013-08-22 00:53 - 2001-08-17 13:57 - 00065664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\s3legacy.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00166720 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3m.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00077824 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav4m.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00061504 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav3dm.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00041216 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mt3d.sys 2013-08-22 00:53 - 2001-08-17 12:19 - 00030720 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\dllcache\rthwcls.sys 2013-08-22 00:53 - 2001-08-17 12:19 - 00003840 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\dllcache\rpfun.sys 2013-08-22 00:53 - 2001-08-17 12:12 - 00037563 _____ (RadioLAN) C:\WINDOWS\system32\dllcache\rlnet5.sys 2013-08-22 00:53 - 2001-08-17 12:12 - 00019017 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\dllcache\rtl8029.sys 2013-08-22 00:52 - 2008-04-14 04:23 - 00033280 _____ C:\WINDOWS\system32\dllcache\psisrndr.ax 2013-08-22 00:52 - 2008-04-14 04:22 - 00363520 _____ C:\WINDOWS\system32\dllcache\psisdecd.dll 2013-08-22 00:52 - 2008-04-14 04:22 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ptpusd.dll 2013-08-22 00:52 - 2008-04-13 20:40 - 00006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qic157.sys 2013-08-22 00:52 - 2001-08-18 04:54 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qvusd.dll 2013-08-22 00:52 - 2001-08-18 04:54 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\psisload.dll 2013-08-22 00:52 - 2001-08-18 04:54 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ptpusb.dll 2013-08-22 00:52 - 2001-08-18 04:33 - 00899658 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\r2mdkxga.sys 2013-08-22 00:52 - 2001-08-18 04:33 - 00715242 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\r2mdmkxx.sys 2013-08-22 00:52 - 2001-08-18 04:32 - 00016384 _____ (SCM Microsystems, Inc.) C:\WINDOWS\system32\dllcache\pscr.sys 2013-08-22 00:52 - 2001-08-17 13:53 - 00003328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qv2kux.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00049024 _____ (QLogic Corporation) C:\WINDOWS\system32\dllcache\ql1280.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00045312 _____ (QLogic Corporation) C:\WINDOWS\system32\dllcache\ql12160.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ql1240.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00040320 _____ (QLogic Corporation) C:\WINDOWS\system32\dllcache\ql1080.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00033152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ql10wnt.sys 2013-08-22 00:52 - 2001-08-17 13:51 - 00019584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rasirda.sys 2013-08-22 00:52 - 2001-08-17 13:28 - 00130942 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\ptserlv.sys 2013-08-22 00:52 - 2001-08-17 13:28 - 00128286 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\ptserli.sys 2013-08-22 00:52 - 2001-08-17 13:28 - 00112574 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\ptserlp.sys 2013-08-22 00:51 - 2008-04-14 04:21 - 00259328 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm3dd.dll 2013-08-22 00:51 - 2008-04-14 04:21 - 00211584 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm2dll.dll 2013-08-22 00:51 - 2008-04-13 20:44 - 00028032 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm3.sys 2013-08-22 00:51 - 2008-04-13 20:44 - 00027904 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm2.sys 2013-08-22 00:51 - 2008-04-13 20:41 - 00017664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ppa3.sys 2013-08-22 00:51 - 2008-04-13 20:40 - 00008832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\powerfil.sys 2013-08-22 00:51 - 2004-08-03 22:31 - 00029502 _____ (Marconi Communications, Inc.) C:\WINDOWS\system32\dllcache\pca200e.sys 2013-08-22 00:51 - 2004-08-03 22:06 - 00169984 _____ (Cisco Systems) C:\WINDOWS\system32\dllcache\pcx500.sys 2013-08-22 00:51 - 2001-08-18 04:55 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phdsext.ax 2013-08-22 00:51 - 2001-08-18 04:55 - 00086016 _____ (PCtel, Inc.) C:\WINDOWS\system32\dllcache\pctspk.exe 2013-08-22 00:51 - 2001-08-18 04:54 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phvfwext.dll 2013-08-22 00:51 - 2001-08-18 04:54 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philcam1.dll 2013-08-22 00:51 - 2001-08-17 14:07 - 00027296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\perc2.sys 2013-08-22 00:51 - 2001-08-17 14:07 - 00019840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philtune.sys 2013-08-22 00:51 - 2001-08-17 14:07 - 00005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\perc2hib.sys 2013-08-22 00:51 - 2001-08-17 14:04 - 00173696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philcam2.sys 2013-08-22 00:51 - 2001-08-17 14:04 - 00092416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phildec.sys 2013-08-22 00:51 - 2001-08-17 14:04 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philcam1.sys 2013-08-22 00:51 - 2001-08-17 13:53 - 00017792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ppa.sys 2013-08-22 00:51 - 2001-08-17 13:53 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pnrmc.sys 2013-08-22 00:51 - 2001-08-17 12:12 - 00026153 _____ (Linksys) C:\WINDOWS\system32\dllcache\pcmlm56.sys 2013-08-22 00:51 - 2001-08-17 12:11 - 00035328 _____ (AMD Inc.) C:\WINDOWS\system32\dllcache\pcntpci5.sys 2013-08-22 00:51 - 2001-08-17 12:11 - 00030282 _____ (AMD Inc.) C:\WINDOWS\system32\dllcache\pcntn5hl.sys 2013-08-22 00:51 - 2001-08-17 12:11 - 00029769 _____ (AMD Inc.) C:\WINDOWS\system32\dllcache\pcntn5m.sys 2013-08-22 00:50 - 2008-04-13 20:46 - 00061696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ohci1394.sys 2013-08-22 00:50 - 2004-08-04 14:00 - 00036927 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs411.dll 2013-08-22 00:50 - 2004-08-04 14:00 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs412.dll 2013-08-22 00:50 - 2001-08-18 04:55 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcoms.exe 2013-08-22 00:50 - 2001-08-18 04:54 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcodec2.dll 2013-08-22 00:50 - 2001-08-18 04:54 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovui2.dll 2013-08-22 00:50 - 2001-08-18 04:54 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovui2rc.dll 2013-08-22 00:50 - 2001-08-18 04:54 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcomc.dll 2013-08-22 00:50 - 2001-08-18 04:52 - 00123776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\dllcache\nv3.dll 2013-08-22 00:50 - 2001-08-18 04:30 - 00054730 _____ (Ositech Communications, Inc.) C:\WINDOWS\system32\dllcache\otcsercb.sys 2013-08-22 00:50 - 2001-08-18 04:30 - 00044105 _____ C:\WINDOWS\system32\dllcache\otceth5.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00351616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcodek2.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00048000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcam2.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00031872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovce.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00028032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcd.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00025216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovsound2.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovca.sys 2013-08-22 00:50 - 2001-08-17 12:50 - 00198144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\dllcache\nv3.sys 2013-08-22 00:50 - 2001-08-17 12:20 - 00054528 _____ (Yamaha Corp.) C:\WINDOWS\system32\dllcache\opl3sax.sys 2013-08-22 00:50 - 2001-08-17 12:12 - 00030495 _____ (Linksys) C:\WINDOWS\system32\dllcache\pc100nds.sys 2013-08-22 00:50 - 2001-08-17 12:12 - 00027209 _____ (Ositech Communications, Inc.) C:\WINDOWS\system32\dllcache\otc06x5.sys 2013-08-22 00:49 - 2008-04-13 20:54 - 00028672 _____ (National Semiconductor Corporation) C:\WINDOWS\system32\dllcache\nscirda.sys 2013-08-22 00:49 - 2008-04-13 20:46 - 00085248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nabtsfec.sys 2013-08-22 00:49 - 2008-04-13 20:46 - 00010880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ndisip.sys 2013-08-22 00:49 - 2004-08-04 00:49 - 00132695 _____ (802.11b) C:\WINDOWS\system32\dllcache\netwlan5.sys 2013-08-22 00:49 - 2001-08-18 04:52 - 00091488 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i3disp.dll 2013-08-22 00:49 - 2001-08-18 04:52 - 00060480 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\neo20xx.dll 2013-08-22 00:49 - 2001-08-18 04:52 - 00059104 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128v2.dll 2013-08-22 00:49 - 2001-08-18 04:52 - 00035392 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128.dll 2013-08-22 00:49 - 2001-08-18 04:27 - 00009472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntapm.sys 2013-08-22 00:49 - 2001-08-18 04:26 - 00065406 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\netflx3.sys 2013-08-22 00:49 - 2001-08-18 04:25 - 00130048 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\n100325.sys 2013-08-22 00:49 - 2001-08-17 13:53 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nsmmc.sys 2013-08-22 00:49 - 2001-08-17 13:49 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ne2000.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00039264 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\neo20xx.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00033088 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128v2.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00027936 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i3d.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00013664 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128.sys 2013-08-22 00:49 - 2001-08-17 12:49 - 00051552 _____ (Kensington Technology Group) C:\WINDOWS\system32\dllcache\ntgrip.sys 2013-08-22 00:49 - 2001-08-17 12:20 - 00126080 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\nm5a2wdm.sys 2013-08-22 00:49 - 2001-08-17 12:20 - 00087040 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\nm6wdm.sys 2013-08-22 00:49 - 2001-08-17 12:12 - 00032840 _____ (NETGEAR Corporation.) C:\WINDOWS\system32\dllcache\ngrpci.sys 2013-08-22 00:48 - 2008-04-14 04:23 - 00056832 _____ C:\WINDOWS\system32\dllcache\msdvbnp.ax 2013-08-22 00:48 - 2008-04-13 20:54 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msircomm.sys 2013-08-22 00:48 - 2008-04-13 20:46 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdv.sys 2013-08-22 00:48 - 2008-04-13 20:46 - 00049024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstape.sys 2013-08-22 00:48 - 2008-04-13 20:46 - 00015232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mpe.sys 2013-08-22 00:48 - 2008-04-13 20:39 - 00005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstee.sys 2013-08-22 00:48 - 2004-08-04 14:00 - 01875968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.lex 2013-08-22 00:48 - 2004-08-04 14:00 - 00229439 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\multibox.dll 2013-08-22 00:48 - 2004-08-04 14:00 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.dll 2013-08-22 00:48 - 2001-08-18 04:54 - 00020480 _____ (Moxa Technologies Co., Ltd) C:\WINDOWS\system32\dllcache\mxicfg.dll 2013-08-22 00:48 - 2001-08-18 04:54 - 00007168 _____ (Moxa Technologies Co., Ltd) C:\WINDOWS\system32\dllcache\mxport.dll 2013-08-22 00:48 - 2001-08-18 04:25 - 00076288 _____ (Moxa Technologies Co., Ltd.) C:\WINDOWS\system32\dllcache\mxport.sys 2013-08-22 00:48 - 2001-08-18 04:25 - 00053279 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\n1000nt5.sys 2013-08-22 00:48 - 2001-08-18 04:25 - 00022144 _____ (Moxa Technologies Co., Ltd.) C:\WINDOWS\system32\dllcache\mxcard.sys 2013-08-22 00:48 - 2001-08-17 14:02 - 00035200 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msgame.sys 2013-08-22 00:48 - 2001-08-17 14:00 - 00002944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msmpu401.sys 2013-08-22 00:48 - 2001-08-17 13:57 - 00016128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\modemcsa.sys 2013-08-22 00:48 - 2001-08-17 13:52 - 00017280 _____ (American Megatrends Inc.) C:\WINDOWS\system32\dllcache\mraid35x.sys 2013-08-22 00:48 - 2001-08-17 13:49 - 00019968 _____ (Macronix International Co., Ltd. ) C:\WINDOWS\system32\dllcache\mxnic.sys 2013-08-22 00:48 - 2001-08-17 13:48 - 00012416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msriffwv.sys 2013-08-22 00:48 - 2001-08-17 13:48 - 00006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfsio.sys 2013-08-22 00:48 - 2001-08-17 12:50 - 00103296 _____ (Matrox Graphics Inc) C:\WINDOWS\system32\dllcache\mtxvideo.sys 2013-08-22 00:47 - 2008-04-13 20:41 - 00026112 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\memstpci.sys 2013-08-22 00:47 - 2008-04-13 20:40 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ltotape.sys 2013-08-22 00:47 - 2004-08-04 00:47 - 00607196 _____ (LT) C:\WINDOWS\system32\dllcache\ltmdmnt.sys 2013-08-22 00:47 - 2004-08-04 00:47 - 00422016 _____ (LT) C:\WINDOWS\system32\dllcache\ltmdmntt.sys 2013-08-22 00:47 - 2004-08-03 22:39 - 00020864 _____ (Logitech Inc.) C:\WINDOWS\system32\dllcache\lwadihid.sys 2013-08-22 00:47 - 2001-08-18 04:53 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\m3092dc.dll 2013-08-22 00:47 - 2001-08-18 04:53 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\m3091dc.dll 2013-08-22 00:47 - 2001-08-18 04:53 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\memgrp.dll 2013-08-22 00:47 - 2001-08-18 04:52 - 00235648 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\mgaud.dll 2013-08-22 00:47 - 2001-08-18 04:22 - 00320384 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\mgaum.sys 2013-08-22 00:47 - 2001-08-18 04:21 - 00164970 _____ (Madge Networks Ltd) C:\WINDOWS\system32\dllcache\mdgndis5.sys 2013-08-22 00:47 - 2001-08-18 04:20 - 00728298 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\ltck000c.sys 2013-08-22 00:47 - 2001-08-18 04:20 - 00577226 _____ (LT) C:\WINDOWS\system32\dllcache\ltmdmntl.sys 2013-08-22 00:47 - 2001-08-17 13:58 - 00008320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\memcard.sys 2013-08-22 00:47 - 2001-08-17 13:53 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\loop.sys 2013-08-22 00:47 - 2001-08-17 13:52 - 00007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mammoth.sys 2013-08-22 00:47 - 2001-08-17 13:52 - 00006528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\miniqic.sys 2013-08-22 00:47 - 2001-08-17 13:28 - 00802683 _____ (Lucent Technologies) C:\WINDOWS\system32\dllcache\ltsm.sys 2013-08-22 00:47 - 2001-08-17 13:28 - 00797500 _____ (LT) C:\WINDOWS\system32\dllcache\ltsmt.sys 2013-08-22 00:47 - 2001-08-17 12:49 - 00022848 _____ (Logitech Inc.) C:\WINDOWS\system32\dllcache\lwusbhid.sys 2013-08-22 00:47 - 2001-08-17 12:19 - 00048768 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\maestro.sys 2013-08-22 00:47 - 2001-08-17 12:12 - 00070730 _____ (Linksys Group, Inc.) C:\WINDOWS\system32\dllcache\lne100tx.sys 2013-08-22 00:47 - 2001-08-17 12:12 - 00020573 _____ (The Linksts Group ) C:\WINDOWS\system32\dllcache\lne100.sys 2013-08-22 00:46 - 2008-04-14 04:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kswdmcap.ax 2013-08-22 00:46 - 2008-04-14 04:23 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kstvtune.ax 2013-08-22 00:46 - 2008-04-14 04:23 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksxbar.ax 2013-08-22 00:46 - 2008-04-14 04:23 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ipsink.ax 2013-08-22 00:46 - 2008-04-14 04:22 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kdsusd.dll 2013-08-22 00:46 - 2008-04-14 04:22 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irftp.exe 2013-08-22 00:46 - 2008-04-14 04:22 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kdsui.dll 2013-08-22 00:46 - 2008-04-14 04:22 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irmon.dll 2013-08-22 00:46 - 2008-04-14 04:20 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd106.dll 2013-08-22 00:46 - 2008-04-13 20:54 - 00088192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irda.sys 2013-08-22 00:46 - 2008-04-13 20:40 - 00034688 _____ (Toshiba Corp.) C:\WINDOWS\system32\dllcache\lbrtfdc.sys 2013-08-22 00:46 - 2004-08-04 14:00 - 01158818 _____ C:\WINDOWS\system32\dllcache\korwbrkr.lex 2013-08-22 00:46 - 2004-08-04 14:00 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\korwbrkr.dll 2013-08-22 00:46 - 2001-08-18 04:53 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kousd.dll 2013-08-22 00:46 - 2001-08-18 04:53 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdjpn.dll 2013-08-22 00:46 - 2001-08-18 04:53 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdkor.dll 2013-08-22 00:46 - 2001-08-18 04:19 - 00026506 _____ (SMSC) C:\WINDOWS\system32\dllcache\lanepic5.sys 2013-08-22 00:46 - 2001-08-18 04:19 - 00016256 _____ (Litronic Industries) C:\WINDOWS\system32\dllcache\lit220p.sys 2013-08-22 00:46 - 2001-08-17 14:55 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101c.dll 2013-08-22 00:46 - 2001-08-17 14:55 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101b.dll 2013-08-22 00:46 - 2001-08-17 14:55 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd103.dll 2013-08-22 00:46 - 2001-08-17 13:51 - 00018688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irsir.sys 2013-08-22 00:46 - 2001-08-17 13:49 - 00026624 _____ (SigmaTel, Inc.) C:\WINDOWS\system32\dllcache\irstusb.sys 2013-08-22 00:46 - 2001-08-17 13:49 - 00023552 _____ (MKNet Corporation) C:\WINDOWS\system32\dllcache\irmk7.sys 2013-08-22 00:46 - 2001-08-17 12:12 - 00045632 _____ (Interphase (R) Corporation a Windows (R) 2000 DDK Driver Provider) C:\WINDOWS\system32\dllcache\ip5515.sys 2013-08-22 00:46 - 2001-08-17 12:12 - 00019016 _____ (Kingston Technology Company ) C:\WINDOWS\system32\dllcache\ktc111.sys 2013-08-22 00:46 - 2001-08-17 12:11 - 00025065 _____ (D-Link) C:\WINDOWS\system32\dllcache\lmndis3.sys 2013-08-22 00:45 - 2008-04-14 04:22 - 00702845 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\i81xdnt5.dll 2013-08-22 00:45 - 2008-04-14 03:57 - 00005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\intelide.sys 2013-08-22 00:45 - 2004-08-04 14:00 - 00471102 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskdic.dll 2013-08-22 00:45 - 2004-08-04 14:00 - 00311359 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsv.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00134339 _____ C:\WINDOWS\system32\dllcache\imekr.lex 2013-08-22 00:45 - 2004-08-04 14:00 - 00102463 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsm.dll 2013-08-22 00:45 - 2004-08-04 14:00 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imkrinst.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00057398 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdadm.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00045109 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpuex.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrmig.exe 2013-08-22 00:45 - 2004-08-03 22:29 - 00161020 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\i81xnt5.sys 2013-08-22 00:45 - 2001-08-18 04:53 - 00372824 _____ (Xircom) C:\WINDOWS\system32\dllcache\iconf32.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam4com.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00090200 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\io8ports.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam4ext.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam5com.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam3ext.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam5ext.dll 2013-08-22 00:45 - 2001-08-18 04:51 - 00010240 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\ibmsgnet.dll 2013-08-22 00:45 - 2001-08-18 04:18 - 00013440 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inport.sys 2013-08-22 00:45 - 2001-08-17 14:06 - 00154496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam4usb.sys 2013-08-22 00:45 - 2001-08-17 14:06 - 00100992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam5usb.sys 2013-08-22 00:45 - 2001-08-17 14:06 - 00038528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ibmvcap.sys 2013-08-22 00:45 - 2001-08-17 14:05 - 00141056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam3.sys 2013-08-22 00:45 - 2001-08-17 13:52 - 00016000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ini910u.sys 2013-08-22 00:45 - 2001-08-17 13:50 - 00038784 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\io8.sys 2013-08-22 00:45 - 2001-08-17 12:12 - 00109085 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\ibmtrp.sys 2013-08-22 00:45 - 2001-08-17 12:12 - 00100936 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\ibmtok.sys 2013-08-22 00:45 - 2001-08-17 12:11 - 00028700 _____ (IBM Corp.) C:\WINDOWS\system32\dllcache\ibmexmp.sys 2013-08-22 00:44 - 2008-04-13 20:41 - 00018560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\i2omp.sys 2013-08-22 00:44 - 2008-04-13 20:41 - 00008576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\i2omgmt.sys 2013-08-22 00:44 - 2004-08-04 14:00 - 10129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxkor.dll 2013-08-22 00:44 - 2004-08-04 14:00 - 10096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxcht.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpojwia.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00165888 _____ () C:\WINDOWS\system32\dllcache\hpgt53.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00068608 _____ (Avisioin) C:\WINDOWS\system32\dllcache\hpgt53tk.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgtmcro.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgt42tk.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hr1w.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpsjmcro.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00009759 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_inst.dll 2013-08-22 00:44 - 2001-08-18 04:52 - 00353184 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\i740dnt5.dll 2013-08-22 00:44 - 2001-08-17 14:07 - 00025952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpn.sys 2013-08-22 00:44 - 2001-08-17 13:52 - 00005760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpt4qic.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00542879 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_msft.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00488383 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_v124.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00391199 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_k56k.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00289887 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_fall.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00199711 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_faxx.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00150239 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_amos.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00115807 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_fsks.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00073279 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_spkp.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00067167 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_bsc2.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00057471 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_samp.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00050751 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_tone.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00044863 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_soar.sys 2013-08-22 00:44 - 2001-08-17 12:49 - 00058592 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\i740nt5.sys 2013-08-22 00:43 - 2008-04-14 03:54 - 00028672 _____ (Gemplus) C:\WINDOWS\system32\dllcache\grserial.sys 2013-08-22 00:43 - 2008-04-13 20:45 - 00059136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gckernel.sys 2013-08-22 00:43 - 2008-04-13 20:45 - 00010624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gameenum.sys 2013-08-22 00:43 - 2008-04-13 20:36 - 00020352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidbatt.sys 2013-08-22 00:43 - 2004-08-04 14:00 - 00108827 _____ C:\WINDOWS\system32\dllcache\hanja.lex 2013-08-22 00:43 - 2004-08-04 14:00 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hanjadic.dll 2013-08-22 00:43 - 2004-08-03 22:31 - 00034173 _____ (Marconi Communications, Inc.) C:\WINDOWS\system32\dllcache\forehe.sys 2013-08-22 00:43 - 2001-08-18 04:53 - 00126976 _____ (Hewlett Packard) C:\WINDOWS\system32\dllcache\hpgt34tk.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgt21tk.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpdigwia.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00101376 _____ () C:\WINDOWS\system32\dllcache\hpgt34.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00093696 _____ () C:\WINDOWS\system32\dllcache\hpgt42.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fuusd.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00089088 _____ () C:\WINDOWS\system32\dllcache\hpgt33.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00083968 _____ () C:\WINDOWS\system32\dllcache\hpgt21.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fnfilter.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgt33tk.dll 2013-08-22 00:43 - 2001-08-18 04:52 - 01733120 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g400d.dll 2013-08-22 00:43 - 2001-08-18 04:52 - 00470144 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g200d.dll 2013-08-22 00:43 - 2001-08-18 04:33 - 00908352 _____ (Conexant) C:\WINDOWS\system32\dllcache\hcf_msft.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00322432 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g400m.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00320384 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g200m.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00082560 _____ (Gemplus) C:\WINDOWS\system32\dllcache\grclass.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00017792 _____ (Gemplus) C:\WINDOWS\system32\dllcache\gpr400.sys 2013-08-22 00:43 - 2001-08-17 14:02 - 00008576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidgame.sys 2013-08-22 00:43 - 2001-08-17 14:02 - 00002688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidswvd.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00455680 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fus2base.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00455296 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fusbbase.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00454912 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fxusbase.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00442240 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fpnpbase.sys 2013-08-22 00:43 - 2001-08-17 12:14 - 00444416 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fpcibase.sys 2013-08-22 00:43 - 2001-08-17 12:14 - 00441728 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fpcmbase.sys 2013-08-22 00:42 - 2004-08-03 22:32 - 00137088 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\essm2e.sys 2013-08-22 00:42 - 2001-08-18 04:54 - 00062464 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqnloop.exe 2013-08-22 00:42 - 2001-08-18 04:54 - 00053760 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqndiag.exe 2013-08-22 00:42 - 2001-08-18 04:54 - 00052224 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqnlogr.exe 2013-08-22 00:42 - 2001-08-18 04:53 - 00046080 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esunib.dll 2013-08-22 00:42 - 2001-08-18 04:53 - 00046080 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esuni.dll 2013-08-22 00:42 - 2001-08-18 04:53 - 00043008 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esucm.dll 2013-08-22 00:42 - 2001-08-18 04:53 - 00034816 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esuimg.dll 2013-08-22 00:42 - 2001-08-18 04:31 - 00629952 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqn.sys 2013-08-22 00:42 - 2001-08-18 04:31 - 00595999 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es56cvmp.sys 2013-08-22 00:42 - 2001-08-18 04:31 - 00594558 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es56hpi.sys 2013-08-22 00:42 - 2001-08-18 04:31 - 00347870 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es56tpi.sys 2013-08-22 00:42 - 2001-08-17 13:52 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\exabyte2.sys 2013-08-22 00:42 - 2001-08-17 13:50 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\epcfw2k.sys 2013-08-22 00:42 - 2001-08-17 13:50 - 00114944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\epstw2k.sys 2013-08-22 00:42 - 2001-08-17 13:46 - 00006400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\enum1394.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00174464 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es198x.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00072192 _____ (ESS Technology Inc.) C:\WINDOWS\system32\dllcache\es1969.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00063360 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\ess.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00040704 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\es1371mp.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00037120 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\es1370mp.sys 2013-08-22 00:42 - 2001-08-17 12:13 - 00027165 _____ (VIA Technologies, Inc. ) C:\WINDOWS\system32\dllcache\fetnd5.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00024618 _____ (NETGEAR) C:\WINDOWS\system32\dllcache\fa410nd5.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00018503 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\epro4.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00016998 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\ex10.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00016074 _____ (NETGEAR Corp.) C:\WINDOWS\system32\dllcache\fa312nd5.sys 2013-08-22 00:42 - 2001-08-17 12:11 - 00012362 _____ (FUJITSU LIMITED) C:\WINDOWS\system32\dllcache\f3ab18xi.sys 2013-08-22 00:42 - 2001-08-17 12:11 - 00011850 _____ (FUJITSU LIMITED) C:\WINDOWS\system32\dllcache\f3ab18xj.sys 2013-08-22 00:42 - 2001-08-17 12:10 - 00022090 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\fem556n5.sys 2013-08-22 00:41 - 2008-04-14 04:23 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dshowext.ax 2013-08-22 00:41 - 2008-04-13 20:40 - 00008320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dlttape.sys 2013-08-22 00:41 - 2008-04-13 20:39 - 00206976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4.sys 2013-08-22 00:41 - 2001-08-18 04:54 - 00236060 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\ditrace.exe 2013-08-22 00:41 - 2001-08-18 04:53 - 00038985 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\disrvsu.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00037962 _____ C:\WINDOWS\system32\dllcache\divaprop.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00031817 _____ C:\WINDOWS\system32\dllcache\disrvpp.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00029768 _____ C:\WINDOWS\system32\dllcache\divasu.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00006729 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\disrvci.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00006216 _____ C:\WINDOWS\system32\dllcache\divaci.dll 2013-08-22 00:41 - 2001-08-18 04:30 - 00634198 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656ct5.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00455711 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el985n51.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00241270 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656se5.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00176128 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el99xn51.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00153631 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el90xnd5.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00044103 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el515.sys 2013-08-22 00:41 - 2001-08-18 04:29 - 00117760 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\e100b325.sys 2013-08-22 00:41 - 2001-08-18 04:29 - 00051743 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\e1000nt5.sys 2013-08-22 00:41 - 2001-08-18 04:26 - 00023936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4usb.sys 2013-08-22 00:41 - 2001-08-17 14:07 - 00020192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dpti2o.sys 2013-08-22 00:41 - 2001-08-17 13:53 - 00007296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\elmsmc.sys 2013-08-22 00:41 - 2001-08-17 13:47 - 00012928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4prt.sys 2013-08-22 00:41 - 2001-08-17 13:47 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4scan.sys 2013-08-22 00:41 - 2001-08-17 12:20 - 00334208 _____ (Yamaha Corp.) C:\WINDOWS\system32\dllcache\ds1wdm.sys 2013-08-22 00:41 - 2001-08-17 12:19 - 00283904 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\emu10k1m.sys 2013-08-22 00:41 - 2001-08-17 12:14 - 00952007 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\diwan.sys 2013-08-22 00:41 - 2001-08-17 12:13 - 00091305 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\dimaint.sys 2013-08-22 00:41 - 2001-08-17 12:12 - 00028062 _____ (National Semiconductor Coproration) C:\WINDOWS\system32\dllcache\dp83820.sys 2013-08-22 00:41 - 2001-08-17 12:12 - 00019594 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\e100isa4.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00077386 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656nd5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00070174 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el98xn5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00069194 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656cd5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00066591 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el90xbc5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00029696 _____ (CNet Technology, Inc. ) C:\WINDOWS\system32\dllcache\dm9pci5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00026698 _____ (D-Link Corporation) C:\WINDOWS\system32\dllcache\dlh5xnd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00069692 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el575nd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00055999 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el556nd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00026141 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el589nd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00025159 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\elnk3.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00024653 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el574nd4.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00019996 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\em556n4.sys 2013-08-22 00:40 - 2008-04-14 04:22 - 00252928 _____ (Comtrol® Corporation) C:\WINDOWS\system32\dllcache\ctmasetp.dll 2013-08-22 00:40 - 2004-08-03 22:32 - 00048640 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwrwdm.sys 2013-08-22 00:40 - 2001-08-18 04:54 - 00626717 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiview.exe 2013-08-22 00:40 - 2001-08-18 04:54 - 00024064 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\devldr32.exe 2013-08-22 00:40 - 2001-08-18 04:53 - 00424477 _____ (Digi International) C:\WINDOWS\system32\dllcache\dgconfig.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00256512 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\devcon32.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00229462 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digifwrk.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00159828 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digihlc.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00135252 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digidbp.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc260usd.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00110621 _____ (Digi International, Inc.) C:\WINDOWS\system32\dllcache\digirlpt.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00102484 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiinf.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc240usd.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc210usd.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00065622 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiasyn.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00041046 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiisdn.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyycoins.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyyports.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyzports.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyzcoins.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc210_32.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00004096 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\ctwdm32.dll 2013-08-22 00:40 - 2001-08-18 04:26 - 00103524 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digidxb.sys 2013-08-22 00:40 - 2001-08-18 04:26 - 00090717 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digifep5.sys 2013-08-22 00:40 - 2001-08-18 04:26 - 00042880 _____ (Digi International, Inc.) C:\WINDOWS\system32\dllcache\digirlpt.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00117760 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\d100ib5.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00051072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyyport.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00050816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyzport.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00038087 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiasyn.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00029851 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\dgapci.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyclad-z.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00015104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyclom-y.sys 2013-08-22 00:40 - 2001-08-17 13:52 - 00179584 _____ (Mylex Corporation) C:\WINDOWS\system32\dllcache\dac2w2k.sys 2013-08-22 00:40 - 2001-08-17 13:52 - 00014720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dac960nt.sys 2013-08-22 00:40 - 2001-08-17 13:52 - 00007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ddsmc.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00111872 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwcspud.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00096256 _____ (Copyright (C) Creative Technology Ltd. 1994-2001) C:\WINDOWS\system32\dllcache\ctlsb16.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00093952 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwcwdm.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00072832 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwbwdm.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00006912 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\ctlfacem.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003712 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\ctljystk.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003584 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwcosnt5.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003072 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwbmidi.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003072 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwbase.sys 2013-08-22 00:40 - 2001-08-17 12:14 - 00021606 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiisdn.sys 2013-08-22 00:40 - 2001-08-17 12:12 - 00063208 _____ (Intel Corporation.) C:\WINDOWS\system32\dllcache\dc21x4.sys 2013-08-22 00:40 - 2001-08-17 12:11 - 00024649 _____ (D-Link) C:\WINDOWS\system32\dllcache\dfe650d.sys 2013-08-22 00:40 - 2001-08-17 12:11 - 00024648 _____ (D-Link) C:\WINDOWS\system32\dllcache\dfe650.sys 2013-08-22 00:40 - 2001-08-17 12:11 - 00020928 _____ (Digital Networks, LLC) C:\WINDOWS\system32\dllcache\defpa.sys 2013-08-22 00:39 - 2008-04-14 04:22 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext30.dll 2013-08-22 00:39 - 2008-04-13 20:46 - 00017024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ccdecode.sys 2013-08-22 00:39 - 2008-04-13 20:40 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\changer.sys 2013-08-22 00:39 - 2008-04-13 20:36 - 00013952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cmbatt.sys 2013-08-22 00:39 - 2008-04-13 20:36 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\compbatt.sys 2013-08-22 00:39 - 2004-08-04 14:00 - 01677824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chsbrkr.dll 2013-08-22 00:39 - 2004-08-04 14:00 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtbrkr.dll 2013-08-22 00:39 - 2001-08-18 04:55 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext20.ax 2013-08-22 00:39 - 2001-08-18 04:55 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext30.ax 2013-08-22 00:39 - 2001-08-18 04:55 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camexo20.ax 2013-08-22 00:39 - 2001-08-18 04:53 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext20.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00216576 _____ (COMPAQ Inc.) C:\WINDOWS\system32\dllcache\cpscan.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\csamsp.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camexo20.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cnusd.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00032256 _____ (Eicon Technology Corporation) C:\WINDOWS\system32\dllcache\diapi2NT.dll 2013-08-22 00:39 - 2001-08-18 04:52 - 00170880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cl546x.dll 2013-08-22 00:39 - 2001-08-18 04:52 - 00111232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cl5465.dll 2013-08-22 00:39 - 2001-08-18 04:52 - 00091264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cirrus.dll 2013-08-22 00:39 - 2001-08-18 04:24 - 00061130 _____ (Compaq Computer Corp.) C:\WINDOWS\system32\dllcache\cpqtrnd5.sys 2013-08-22 00:39 - 2001-08-18 04:24 - 00022045 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\cpqndis5.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00980034 _____ (Xircom) C:\WINDOWS\system32\dllcache\cicap.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00272640 _____ (RAVISENT Technologies Inc.) C:\WINDOWS\system32\dllcache\cinemclc.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00020864 _____ (OMNIKEY AG) C:\WINDOWS\system32\dllcache\cmbp0wdm.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00006656 _____ (CMD Technology, Inc.) C:\WINDOWS\system32\dllcache\cmdide.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00715210 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cbmdmkxx.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00049182 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cem56n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00027164 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\ce3n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00022556 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cem33n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00022556 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cem28n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00021530 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\ce2n5.sys 2013-08-22 00:39 - 2001-08-17 14:05 - 00314752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camdro21.sys 2013-08-22 00:39 - 2001-08-17 14:04 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camdrv21.sys 2013-08-22 00:39 - 2001-08-17 14:04 - 00171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camdrv30.sys 2013-08-22 00:39 - 2001-08-17 13:57 - 00248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cl546xm.sys 2013-08-22 00:39 - 2001-08-17 13:57 - 00045696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cirrus.sys 2013-08-22 00:39 - 2001-08-17 13:52 - 00014976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cpqarray.sys 2013-08-22 00:39 - 2001-08-17 13:52 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cd20xrnt.sys 2013-08-22 00:39 - 2001-08-17 12:19 - 00042112 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\dllcache\crtaud.sys 2013-08-22 00:39 - 2001-08-17 12:13 - 00164923 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\diapi2.sys 2013-08-22 00:39 - 2001-08-17 12:13 - 00046108 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cben5.sys 2013-08-22 00:39 - 2001-08-17 12:12 - 00039680 _____ (Silicom Ltd.) C:\WINDOWS\system32\dllcache\cb325.sys 2013-08-22 00:39 - 2001-08-17 12:12 - 00037916 _____ (Fast Ethernet Controller Provider) C:\WINDOWS\system32\dllcache\cb102.sys 2013-08-22 00:39 - 2001-08-17 12:11 - 00039936 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\dllcache\cnxt1803.sys 2013-08-22 00:38 - 2008-04-14 04:23 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bdaplgin.ax 2013-08-22 00:38 - 2008-04-14 03:52 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\battc.sys 2013-08-22 00:38 - 2008-04-13 20:46 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avc.sys 2013-08-22 00:38 - 2008-04-13 20:46 - 00013696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avcstrm.sys 2013-08-22 00:38 - 2008-04-13 20:46 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bdasup.sys 2013-08-22 00:38 - 2004-08-03 22:31 - 00036224 _____ (ADMtek Incorporated.) C:\WINDOWS\system32\dllcache\an983.sys 2013-08-22 00:38 - 2001-08-18 04:54 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\atievxx.exe 2013-08-22 00:38 - 2001-08-18 04:54 - 00032256 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmfrsmg.exe 2013-08-22 00:38 - 2001-08-18 04:53 - 00144384 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\avmenum.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\binlsvc.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00087552 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\avmcoxp.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\brmfcwia.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00041472 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmfusb.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00029696 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmflpt.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00019456 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brbidiif.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00015360 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmfbidi.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00012800 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brevif.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00009728 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brserif.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00009728 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brcoinst.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00005120 _____ (Brother Industries,Ltd.) C:\WINDOWS\system32\dllcache\brscnrsm.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00382592 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atidrab.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00342336 _____ (3Dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\banshee.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00268160 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atidvai.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00137216 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atidrae.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00104832 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atiraged.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ati.dll 2013-08-22 00:38 - 2001-08-18 04:21 - 00039808 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brparwdm.sys 2013-08-22 00:38 - 2001-08-18 04:21 - 00014208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bulltlp3.sys 2013-08-22 00:38 - 2001-08-18 04:20 - 00097440 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\b57xp32.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00289920 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atimpab.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00281728 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atimtai.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00077824 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\dllcache\ati.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00075392 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atimpae.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00070784 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atiragem.sys 2013-08-22 00:38 - 2001-08-17 14:01 - 00036096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avcaudio.sys 2013-08-22 00:38 - 2001-08-17 13:52 - 00026496 _____ (Advanced System Products, Inc.) C:\WINDOWS\system32\dllcache\asc.sys 2013-08-22 00:38 - 2001-08-17 13:52 - 00022400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asc3350p.sys 2013-08-22 00:38 - 2001-08-17 13:52 - 00012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\amsint.sys 2013-08-22 00:38 - 2001-08-17 13:51 - 00014848 _____ (Advanced System Products, Inc.) C:\WINDOWS\system32\dllcache\asc3550.sys 2013-08-22 00:38 - 2001-08-17 13:47 - 00006272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\apmbatt.sys 2013-08-22 00:38 - 2001-08-17 13:28 - 00871388 _____ (BCM) C:\WINDOWS\system32\dllcache\bcmdm.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00060416 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brserwdm.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00012160 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brfiltlo.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00011008 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brusbmdm.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00010368 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brusbscn.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00003968 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brfiltup.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00003168 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brparimg.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00002944 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brfilt.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00049920 _____ C:\WINDOWS\system32\dllcache\atirtcap.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00046464 _____ C:\WINDOWS\system32\dllcache\atibt829.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00026880 _____ C:\WINDOWS\system32\dllcache\atirtsnd.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00026624 _____ C:\WINDOWS\system32\dllcache\ativxbar.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00023552 _____ C:\WINDOWS\system32\dllcache\atixbar.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00019456 _____ C:\WINDOWS\system32\dllcache\ativttxx.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00017152 _____ C:\WINDOWS\system32\dllcache\atitvsnd.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00017152 _____ C:\WINDOWS\system32\dllcache\atitunep.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00010240 _____ C:\WINDOWS\system32\dllcache\atipcxxx.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00009472 _____ C:\WINDOWS\system32\dllcache\ativmdcd.sys 2013-08-22 00:38 - 2001-08-17 12:48 - 00036128 _____ (3Dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\banshee.sys 2013-08-22 00:38 - 2001-08-17 12:19 - 00036992 _____ (Aztech Systems Ltd) C:\WINDOWS\system32\dllcache\aztw2320.sys 2013-08-22 00:38 - 2001-08-17 12:13 - 00089952 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\b1cbase.sys 2013-08-22 00:38 - 2001-08-17 12:13 - 00037568 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\avmwan.sys 2013-08-22 00:38 - 2001-08-17 12:12 - 00097354 _____ (Bay Networks, Inc.) C:\WINDOWS\system32\dllcache\aspndis3.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00066557 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\bcm42u.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00054271 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\bcm42xx5.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00031529 _____ (BreezeCOM) C:\WINDOWS\system32\dllcache\brzwlan.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00026568 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\bcm4e5.sys 2013-08-22 00:37 - 2008-04-13 20:46 - 00053376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\1394bus.sys 2013-08-22 00:37 - 2008-04-13 20:46 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\61883.sys 2013-08-22 00:37 - 2008-04-13 20:40 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\4mmdat.sys 2013-08-22 00:37 - 2004-08-03 22:32 - 00231552 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\ac97ali.sys 2013-08-22 00:37 - 2004-08-03 22:32 - 00084480 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\dllcache\ac97via.sys 2013-08-22 00:37 - 2004-08-03 22:32 - 00010880 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\admjoy.sys 2013-08-22 00:37 - 2001-08-18 04:55 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agcgauge.ax 2013-08-22 00:37 - 2001-08-18 04:52 - 00689216 _____ (3dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\3dfxvs.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00462848 _____ (Aureal Inc.) C:\WINDOWS\system32\dllcache\a3dapi.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00098304 _____ (Aureal Semiconductor) C:\WINDOWS\system32\dllcache\a3d.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\s3legacy.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00061952 _____ (Farb-Flachbett-Scanner) C:\WINDOWS\system32\dllcache\acerscad.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\8514a.dll 2013-08-22 00:37 - 2001-08-17 14:07 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adpu160m.sys 2013-08-22 00:37 - 2001-08-17 14:07 - 00056960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aic78xx.sys 2013-08-22 00:37 - 2001-08-17 14:07 - 00055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aic78u2.sys 2013-08-22 00:37 - 2001-08-17 14:06 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\1394vdbg.sys 2013-08-22 00:37 - 2001-08-17 13:53 - 00007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adicvls.sys 2013-08-22 00:37 - 2001-08-17 13:52 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\abp480n5.sys 2013-08-22 00:37 - 2001-08-17 13:52 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aha154x.sys 2013-08-22 00:37 - 2001-08-17 13:51 - 00005248 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\aliide.sys 2013-08-22 00:37 - 2001-08-17 13:49 - 00026624 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\alifir.sys 2013-08-22 00:37 - 2001-08-17 13:28 - 00762780 _____ (3Com, Inc.) C:\WINDOWS\system32\dllcache\3cwmcru.sys 2013-08-22 00:37 - 2001-08-17 12:48 - 00148352 _____ (3dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\3dfxvsm.sys 2013-08-22 00:37 - 2001-08-17 12:20 - 00297728 _____ (Silicon Integrated Systems Corp.) C:\WINDOWS\system32\dllcache\ac97sis.sys 2013-08-22 00:37 - 2001-08-17 12:20 - 00096256 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\ac97intc.sys 2013-08-22 00:37 - 2001-08-17 12:19 - 00747392 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\adm8830.sys 2013-08-22 00:37 - 2001-08-17 12:19 - 00584448 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\adm8810.sys 2013-08-22 00:37 - 2001-08-17 12:19 - 00553984 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\adm8820.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00046112 _____ (Adaptec, Inc ) C:\WINDOWS\system32\dllcache\adptsf50.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00027678 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\ali5261.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00020160 _____ (ADMtek Incorporated) C:\WINDOWS\system32\dllcache\adm8511.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00016969 _____ (AmbiCom, Inc.) C:\WINDOWS\system32\dllcache\amb8002.sys 2013-08-22 00:06 - 2013-08-22 00:06 - 00001790 _____ C:\Dokumente und Einstellungen\***\Desktop\Tweaking.com - Windows Repair (All in One).lnk 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Programme\Tweaking.com 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Dokumente und Einstellungen\***\Startmenü\Programme\Tweaking.com 2013-08-22 00:05 - 2013-08-22 00:05 - 05369204 _____ C:\Dokumente und Einstellungen\***\Desktop\tweaking.com_windows_repair_aio_setup.exe 2013-08-21 08:25 - 2013-08-22 19:34 - 00003677 _____ C:\Dokumente und Einstellungen\***\Desktop\FSS.txt 2013-08-21 08:21 - 2013-08-21 08:21 - 00358923 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FSS.exe 2013-08-21 07:53 - 2013-08-21 07:53 - 00448512 _____ (OldTimer Tools) C:\Dokumente und Einstellungen\***\Desktop\TFC.exe 2013-08-19 08:06 - 2013-08-19 08:07 - 00019904 _____ C:\WINDOWS\KB2870699-IE8.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00010991 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$ 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-19 08:01 - 2013-08-19 08:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00010660 _____ C:\WINDOWS\KB2863058.log 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-19 07:47 - 2013-08-19 07:51 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-18 23:27 - 2013-08-19 08:04 - 00021051 _____ C:\WINDOWS\KB2876315.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00020090 _____ C:\WINDOWS\KB2876217.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00019558 _____ C:\WINDOWS\KB2864063.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00018725 _____ C:\WINDOWS\KB2850869.log 2013-08-18 23:26 - 2013-08-19 08:02 - 00020394 _____ C:\WINDOWS\KB2859537.log 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 00:02 - 2013-08-18 00:03 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 22:48 - 2013-09-12 07:34 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-08-17 22:48 - 2013-09-12 07:34 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-08-17 22:48 - 2013-09-11 14:47 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-08-17 22:48 - 2013-08-17 23:15 - 00000000 ____D C:\AdwCleaner 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) C:\OTLPE.exe 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 08:58 - 2013-08-17 09:12 - 00090744 _____ C:\OTL.Txt 2013-08-15 01:16 - 2013-08-15 01:17 - 00000531 _____ C:\WINDOWS\wmsetup.log ==================== One Month Modified Files and Folders ======= 2013-09-12 07:34 - 2013-08-17 22:48 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-09-12 07:34 - 2013-08-17 22:48 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-09-11 14:47 - 2013-08-17 22:48 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-09-01 16:57 - 2007-07-24 17:50 - 76725432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-08-22 19:34 - 2013-08-21 08:25 - 00003677 _____ C:\Dokumente und Einstellungen\***\Desktop\FSS.txt 2013-08-22 19:33 - 2012-11-06 13:09 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-08-22 19:32 - 2013-08-22 19:32 - 97922994 _____ C:\WINDOWS\system32\砏-咜6 2013-08-22 02:13 - 2006-11-03 13:00 - 01958910 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-22 02:10 - 2006-11-03 12:59 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl 2013-08-22 02:09 - 2006-11-03 13:00 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-08-22 02:09 - 2006-11-03 13:00 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-08-22 02:09 - 2006-11-03 12:59 - 00263824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-08-22 02:09 - 2006-11-03 12:59 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-08-22 02:08 - 2007-01-11 15:26 - 00000300 ___SH C:\Dokumente und Einstellungen\***\ntuser.ini 2013-08-22 02:08 - 2006-11-03 13:02 - 00032492 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-22 01:44 - 2013-08-22 01:44 - 00002410 _____ C:\Dokumente und Einstellungen\***\Desktop\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000963 _____ C:\WINDOWS\system32\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000000 ____D C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme\Zubehör 2013-08-22 01:44 - 2013-08-22 01:25 - 00181064 _____ (Sysinternals) C:\WINDOWS\PSEXESVC.EXE 2013-08-22 01:44 - 2011-03-23 16:06 - 00000000 ____D C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme 2013-08-22 01:44 - 2006-11-03 13:02 - 00023392 _____ C:\WINDOWS\system32\nscompat.tlb 2013-08-22 01:44 - 2006-11-03 13:02 - 00016832 _____ C:\WINDOWS\system32\amcompat.tlb 2013-08-22 01:42 - 2006-11-03 13:00 - 01085076 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-08-22 01:21 - 2013-08-22 01:21 - 00000000 ____D C:\RegBackup 2013-08-22 01:21 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\repair 2013-08-22 01:21 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\Registration 2013-08-22 00:49 - 2012-11-12 18:49 - 00088311 _____ C:\WINDOWS\setupapi.log 2013-08-22 00:06 - 2013-08-22 00:06 - 00001790 _____ C:\Dokumente und Einstellungen\***\Desktop\Tweaking.com - Windows Repair (All in One).lnk 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Programme\Tweaking.com 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Dokumente und Einstellungen\***\Startmenü\Programme\Tweaking.com 2013-08-22 00:06 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Startmenü\Programme 2013-08-22 00:06 - 2006-11-03 12:58 - 00000000 ___RD C:\Programme 2013-08-22 00:05 - 2013-08-22 00:05 - 05369204 _____ C:\Dokumente und Einstellungen\***\Desktop\tweaking.com_windows_repair_aio_setup.exe 2013-08-21 08:21 - 2013-08-21 08:21 - 00358923 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FSS.exe 2013-08-21 07:53 - 2013-08-21 07:53 - 00448512 _____ (OldTimer Tools) C:\Dokumente und Einstellungen\***\Desktop\TFC.exe 2013-08-21 07:51 - 2009-12-02 22:07 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Java 2013-08-20 02:06 - 2007-01-11 15:26 - 00000000 ____D C:\Dokumente und Einstellungen\*** 2013-08-19 08:07 - 2013-08-19 08:06 - 00019904 _____ C:\WINDOWS\KB2870699-IE8.log 2013-08-19 08:07 - 2012-12-13 14:43 - 00023691 _____ C:\WINDOWS\updspapi.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00270988 _____ C:\WINDOWS\FaxSetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00130064 _____ C:\WINDOWS\ocgen.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00103796 _____ C:\WINDOWS\tsoc.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00090716 _____ C:\WINDOWS\comsetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00054919 _____ C:\WINDOWS\ntdtcsetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00043330 _____ C:\WINDOWS\iis6.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00015048 _____ C:\WINDOWS\ocmsn.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00013596 _____ C:\WINDOWS\msgsocm.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.log 2013-08-19 08:07 - 2011-03-23 01:48 - 00000000 ____D C:\WINDOWS\ie8updates 2013-08-19 08:04 - 2013-08-19 08:04 - 00010991 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$ 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-19 08:04 - 2013-08-18 23:27 - 00021051 _____ C:\WINDOWS\KB2876315.log 2013-08-19 08:04 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-19 08:03 - 2013-08-18 23:27 - 00020090 _____ C:\WINDOWS\KB2876217.log 2013-08-19 08:03 - 2013-08-18 23:27 - 00019558 _____ C:\WINDOWS\KB2864063.log 2013-08-19 08:03 - 2013-08-18 23:27 - 00018725 _____ C:\WINDOWS\KB2850869.log 2013-08-19 08:02 - 2013-08-19 08:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-19 08:02 - 2013-08-18 23:26 - 00020394 _____ C:\WINDOWS\KB2859537.log 2013-08-19 08:01 - 2006-11-03 13:00 - 00000603 _____ C:\WINDOWS\win.ini 2013-08-19 08:01 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-19 07:58 - 2013-08-19 07:58 - 00010660 _____ C:\WINDOWS\KB2863058.log 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-19 07:58 - 2007-07-14 11:37 - 00887602 _____ C:\WINDOWS\system32\TZLog.log 2013-08-19 07:51 - 2013-08-19 07:47 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-19 07:46 - 2006-11-03 12:58 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-19 00:33 - 2012-11-06 13:09 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-08-19 00:33 - 2012-11-06 13:09 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-08-18 23:04 - 2012-11-06 13:11 - 00002347 _____ C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Adobe Reader XI.lnk 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 22:58 - 2012-11-06 12:49 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2013-08-18 22:58 - 2012-11-06 12:49 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2013-08-18 00:03 - 2013-08-18 00:02 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 23:15 - 2013-08-17 22:48 - 00000000 ____D C:\AdwCleaner 2013-08-17 20:17 - 2006-11-03 12:58 - 00000000 ___HD C:\WINDOWS\$NtUninstallKB925486$ 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 09:12 - 2013-08-17 08:58 - 00090744 _____ C:\OTL.Txt 2013-08-17 00:28 - 2012-11-12 18:50 - 00000082 _____ C:\WINDOWS\setupact.log 2013-08-15 01:21 - 2007-07-24 21:20 - 00000190 ___SH C:\Dokumente und Einstellungen\*****\ntuser.ini 2013-08-15 01:21 - 2007-07-24 21:20 - 00000000 ____D C:\Dokumente und Einstellungen\***** 2013-08-15 01:17 - 2013-08-15 01:16 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-08-09 03:56 - 2006-11-03 13:00 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2013-08-09 03:56 - 2006-11-03 13:00 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\themeui.dll 2013-08-08 08:09 - 2006-11-03 13:02 - 01877888 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2013-08-08 08:09 - 2006-11-03 13:02 - 01877888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\win32k.sys 2013-08-08 08:05 - 2012-06-17 08:41 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2013-08-08 08:05 - 2009-03-08 05:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2013-08-08 08:05 - 2009-03-08 05:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2013-08-08 08:05 - 2009-03-08 05:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2013-08-08 08:05 - 2009-03-08 05:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 01469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2013-08-08 08:05 - 2006-11-03 12:59 - 01469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2013-08-08 08:05 - 2006-11-03 12:59 - 00611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2013-08-08 05:32 - 2006-11-03 13:00 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2013-08-08 05:32 - 2006-11-03 13:00 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2013-08-08 02:02 - 2006-11-03 13:00 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2013-08-05 15:30 - 2006-11-03 13:00 - 01289728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2013-08-05 15:30 - 2006-11-03 13:00 - 01289728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ole32.dll 2013-08-03 01:48 - 2006-10-18 21:47 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmvdecod.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-11-03 13:00] - [2008-04-14 04:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2006-11-03 13:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2006-11-03 13:02] - [2008-04-14 03:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
17.09.2013, 13:14 | #14 |
/// the machine /// TB-Ausbilder | WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.ini Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.09.2013, 14:14 | #15 |
| WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm Fixlist.log Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 13-09-2013 01 Ran by *** at 2013-08-23 02:07:28 Run:3 Running from C:\Dokumente und Einstellungen\***\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.ini ***************** HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully. "C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat" => File/Directory not found. "C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.ini" => File/Directory not found. ==== End of Fixlog ==== FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-09-2013 01 Ran by *** (administrator) on **** on 23-08-2013 02:09:51 Running from C:\Dokumente und Einstellungen\***\Desktop Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (brother Industries Ltd) C:\WINDOWS\system32\brsvc01a.exe (brother Industries Ltd) C:\WINDOWS\system32\brss01a.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avguard.exe (Microsoft Corporation) C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE (Ulead Systems, Inc.) C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Microsoft Corporation) C:\Programme\Windows Media Player\WMPNetwk.exe (Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE (S3 Graphics, Inc.) C:\WINDOWS\system32\VTTimer.exe (S3 Graphics Co., Ltd.) C:\WINDOWS\system32\VTtrayp.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Oracle Corporation) C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Programme\Internet Explorer\iexplore.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\Windows\SOUNDMAN.EXE [577536 2006-08-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [VTTimer] - C:\Windows\system32\VTTimer.exe [53248 2006-08-03] (S3 Graphics, Inc.) HKLM\...\Run: [VTTrayp] - C:\Windows\system32\VTtrayp.exe [180224 2006-08-30] (S3 Graphics Co., Ltd.) HKLM\...\Run: [QuickTime Task] - C:\Programme\QuickTime\qttask.exe [286720 2007-10-27] (Apple Inc.) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-18] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) Winlogon\Notify\crypt32chain: C:\Windows\system32\crypt32.dll (Microsoft Corporation) Winlogon\Notify\cryptnet: C:\Windows\system32\cryptnet.dll (Microsoft Corporation) Winlogon\Notify\cscdll: C:\Windows\system32\cscdll.dll (Microsoft Corporation) Winlogon\Notify\dimsntfy: C:\Windows\System32\dimsntfy.dll (Microsoft Corporation) Winlogon\Notify\ScCertProp: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\Schedule: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\sclgntfy: C:\Windows\system32\sclgntfy.dll (Microsoft Corporation) Winlogon\Notify\SensLogn: C:\Windows\system32\WlNotify.dll (Microsoft Corporation) Winlogon\Notify\termsrv: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) Winlogon\Notify\WgaLogon: C:\Windows\system32\WgaLogon.dll (Microsoft Corporation) Winlogon\Notify\wlballoon: C:\Windows\system32\wlnotify.dll (Microsoft Corporation) HKCU\...\Winlogon: [Shell] explorer.exe,C:\Dokumente und Einstellungen\***\Anwendungsdaten\msconfig.dat <==== ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bluewin.ch/index_d.html HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 SearchScopes: HKCU - {8FEC2579-852C-4872-B9D2-C74780B6C6C4} URL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\j2re1.4.2_19\bin\ssv.dll No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\j2re1.4.2_19\bin\jp2ssv.dll No File Toolbar: HKCU -&Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://www.apple.com/qtactivex/qtplugin.cab DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} hxxp://go.microsoft.com/fwlink/?linkid=58813 DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://www.extrafilm.ch/ImageUploader5.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {B60CEFE7-2DD0-4B78-951A-509D951DB1F0} hxxp://www.extrafilm.ch/ExtraFilmUploader6.cab DPF: {CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.4.2/jinstall-1_4_2_19-windows-i586.cab DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\***\Anwendungsdaten\Mozilla\Firefox\Profiles\sw7jxd89.default FF NetworkProxy: "no_proxies_on", "127.0.0.1" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [84024 2013-08-18] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-18] (Avira Operations GmbH & Co. KG) R2 Brother XP spl Service; C:\WINDOWS\system32\brsvc01a.exe [57344 2002-04-12] (brother Industries Ltd) R2 MDM; C:\Programme\Gemeinsame Dateien\Microsoft Shared\VS7DEBUG\MDM.EXE [322120 2003-06-19] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [115168 2012-11-06] (Mozilla Foundation) S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation) R2 UleadBurningHelper; C:\Programme\Gemeinsame Dateien\Ulead Systems\DVD\ULCDRSvr.exe [49152 2004-12-13] (Ulead Systems, Inc.) R2 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [4019072 2006-09-20] (Realtek Semiconductor Corp.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-08-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-04-09] (Avira Operations GmbH & Co. KG) S3 BrScnUsb; C:\Windows\System32\Drivers\BrScnUsb.sys [15263 2003-12-19] (Brother Industries Ltd.) S3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-07-26] (InterVideo, Inc.) S3 MRENDIS5; C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [18003 2005-05-09] (Motive, Inc.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) R0 viaagp1; C:\Windows\System32\DRIVERS\viaagp1.sys [27904 2003-07-02] (VIA Technologies, Inc.) R3 viagfx; C:\Windows\System32\DRIVERS\vtmini.sys [264704 2006-08-31] (Copyright (C) VIA/S3 Graphics Co, Ltd.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-23 02:05 - 2013-08-23 02:05 - 97949955 _____ C:\WINDOWS\system32\駵咜6 2013-08-22 01:44 - 2013-08-22 01:44 - 00002410 _____ C:\Dokumente und Einstellungen\***\Desktop\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000963 _____ C:\WINDOWS\system32\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000000 ____D C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme\Zubehör 2013-08-22 01:25 - 2013-08-22 01:44 - 00181064 _____ (Sysinternals) C:\WINDOWS\PSEXESVC.EXE 2013-08-22 01:21 - 2013-08-22 01:21 - 00000000 ____D C:\RegBackup 2013-08-22 01:02 - 2008-04-14 04:22 - 00116736 _____ (Xerox) C:\WINDOWS\system32\dllcache\xrxwiadr.dll 2013-08-22 01:02 - 2008-04-14 04:22 - 00019456 _____ () C:\WINDOWS\system32\dllcache\xrxscnui.dll 2013-08-22 01:02 - 2008-04-14 04:22 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wshirda.dll 2013-08-22 01:02 - 2008-04-13 20:46 - 00019200 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wstcodec.sys 2013-08-22 01:02 - 2004-08-03 22:29 - 00019455 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wvchntxx.sys 2013-08-22 01:02 - 2004-08-03 22:29 - 00012063 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wsiintxx.sys 2013-08-22 01:02 - 2001-08-18 04:55 - 00099865 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\xlog.exe 2013-08-22 01:02 - 2001-08-18 04:55 - 00027648 _____ () C:\WINDOWS\system32\dllcache\xrxftplt.exe 2013-08-22 01:02 - 2001-08-18 04:55 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xrxflnch.exe 2013-08-22 01:02 - 2001-08-18 04:54 - 00023040 _____ (Xerox Corporation) C:\WINDOWS\system32\dllcache\xrxwbtmp.dll 2013-08-22 01:02 - 2001-08-17 12:11 - 00016970 _____ (US Robotics MCD (Megahertz)) C:\WINDOWS\system32\dllcache\xem336n5.sys 2013-08-22 01:01 - 2008-04-14 03:52 - 00032000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wceusbsh.sys 2013-08-22 01:01 - 2008-04-13 20:36 - 00008832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wmiacpi.sys 2013-08-22 01:01 - 2004-08-03 22:31 - 00154624 _____ (Lucent Technologies) C:\WINDOWS\system32\dllcache\wlluc48.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00033599 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\watv04nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00029311 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\watv01nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00023615 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wch7xxnt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00019551 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\watv02nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00012415 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wadv01nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00012127 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wadv02nt.sys 2013-08-22 01:01 - 2004-08-03 22:29 - 00011775 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\wadv05nt.sys 2013-08-22 01:01 - 2001-08-18 04:54 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wiafbdrv.dll 2013-08-22 01:01 - 2001-08-18 04:54 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wiamsmud.dll 2013-08-22 01:01 - 2001-08-18 04:24 - 00035402 _____ (Raytheon Corp.) C:\WINDOWS\system32\dllcache\wlandrv2.sys 2013-08-22 01:01 - 2001-08-17 13:28 - 00771581 _____ (Rockwell) C:\WINDOWS\system32\dllcache\winacisa.sys 2013-08-22 01:01 - 2001-08-17 13:28 - 00701386 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\wdhaalba.sys 2013-08-22 01:01 - 2001-08-17 12:13 - 00019016 _____ (Winbond Electronics Corporation) C:\WINDOWS\system32\dllcache\w926nd.sys 2013-08-22 01:01 - 2001-08-17 12:13 - 00016925 _____ (Winbond Electronics Corporation) C:\WINDOWS\system32\dllcache\w940nd.sys 2013-08-22 01:01 - 2001-08-17 12:10 - 00035871 _____ (Winbond Electronics Corp.) C:\WINDOWS\system32\dllcache\wbfirdma.sys 2013-08-22 01:00 - 2008-04-14 04:22 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vfwwdm32.dll 2013-08-22 01:00 - 2008-04-13 20:45 - 00060032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbaudio.sys 2013-08-22 01:00 - 2008-04-13 20:45 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbser.sys 2013-08-22 01:00 - 2008-04-13 20:45 - 00017152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbohci.sys 2013-08-22 01:00 - 2008-04-13 20:45 - 00015104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbscan.sys 2013-08-22 01:00 - 2001-08-17 13:49 - 00024576 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\dllcache\viairda.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00794654 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usr1801.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00794399 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usr1806v.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00793598 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usr1806.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00765884 _____ (U.S. Robotics, Inc.) C:\WINDOWS\system32\dllcache\usrti.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00687999 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usrwdxjs.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00604253 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\vmodem.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00397502 _____ (PCtel, Inc.) C:\WINDOWS\system32\dllcache\vpctcom.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00224802 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usr1807a.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00113762 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usrpda.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00064605 _____ (PCtel, Inc.) C:\WINDOWS\system32\dllcache\vvoice.sys 2013-08-22 01:00 - 2001-08-17 13:28 - 00007556 _____ (U.S. Robotics Corporation) C:\WINDOWS\system32\dllcache\usroslba.sys 2013-08-22 01:00 - 2001-08-17 12:14 - 00249402 _____ (Xircom) C:\WINDOWS\system32\dllcache\vinwm.sys 2013-08-22 01:00 - 2001-08-17 12:13 - 00019528 _____ (Winbond Electronics Corporation) C:\WINDOWS\system32\dllcache\w840nd.sys 2013-08-22 00:59 - 2004-08-04 00:43 - 00032384 _____ (KLSI USA, Inc.) C:\WINDOWS\system32\dllcache\usb101et.sys 2013-08-22 00:59 - 2001-08-18 04:54 - 00525568 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridxp.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00216576 _____ (UMAX Data Systems Inc.) C:\WINDOWS\system32\dllcache\um34scan.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00212480 _____ (UMAX Data Systems Inc.) C:\WINDOWS\system32\dllcache\um54scan.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxud32.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxu12.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00050688 _____ (UMAX DATA SYSTEMS INC.) C:\WINDOWS\system32\dllcache\umaxscan.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxp60.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxcam.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxu40.dll 2013-08-22 00:59 - 2001-08-18 04:54 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxu22.dll 2013-08-22 00:59 - 2001-08-18 04:52 - 00440576 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridkb.dll 2013-08-22 00:59 - 2001-08-17 13:58 - 00022912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\umaxpcls.sys 2013-08-22 00:59 - 2001-08-17 13:52 - 00036736 _____ (Promise Technology, Inc.) C:\WINDOWS\system32\dllcache\ultra.sys 2013-08-22 00:59 - 2001-08-17 13:48 - 00011520 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\twotrack.sys 2013-08-22 00:59 - 2001-08-17 12:51 - 00166784 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridxpm.sys 2013-08-22 00:59 - 2001-08-17 12:51 - 00159232 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tridkbm.sys 2013-08-22 00:58 - 2008-04-14 04:23 - 00082944 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\tp4mon.exe 2013-08-22 00:58 - 2008-04-13 20:40 - 00149376 _____ (M-Systems) C:\WINDOWS\system32\dllcache\tffsport.sys 2013-08-22 00:58 - 2001-08-18 04:54 - 00031744 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\tp4.dll 2013-08-22 00:58 - 2001-08-18 04:52 - 00315520 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\trid3d.dll 2013-08-22 00:58 - 2001-08-18 04:52 - 00081408 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tgiul50.dll 2013-08-22 00:58 - 2001-08-18 04:52 - 00043520 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\tp4res.dll 2013-08-22 00:58 - 2001-08-18 04:20 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\toside.sys 2013-08-22 00:58 - 2001-08-17 14:02 - 00230912 _____ (Toshiba Corporation) C:\WINDOWS\system32\dllcache\tosdvd03.sys 2013-08-22 00:58 - 2001-08-17 14:01 - 00241664 _____ (Toshiba Corporation) C:\WINDOWS\system32\dllcache\tosdvd02.sys 2013-08-22 00:58 - 2001-08-17 13:49 - 00030464 _____ (Toshiba Corporation) C:\WINDOWS\system32\dllcache\tbatm155.sys 2013-08-22 00:58 - 2001-08-17 12:51 - 00222336 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\trid3dm.sys 2013-08-22 00:58 - 2001-08-17 12:51 - 00138528 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\tgiulnt5.sys 2013-08-22 00:58 - 2001-08-17 12:14 - 00123995 _____ (Tiger Jet Network) C:\WINDOWS\system32\dllcache\tjisdn.sys 2013-08-22 00:58 - 2001-08-17 12:13 - 00037961 _____ (TDK Corporation) C:\WINDOWS\system32\dllcache\tdk100b.sys 2013-08-22 00:58 - 2001-08-17 12:13 - 00017129 _____ (TDK Corporation) C:\WINDOWS\system32\dllcache\tdkcd31.sys 2013-08-22 00:58 - 2001-08-17 12:12 - 00034375 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\tpro4.sys 2013-08-22 00:58 - 2001-08-17 12:10 - 00028232 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\dllcache\tos4mo.sys 2013-08-22 00:57 - 2008-04-13 20:46 - 00015232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\streamip.sys 2013-08-22 00:57 - 2001-08-18 04:54 - 00159744 _____ (Stallion Technologies) C:\WINDOWS\system32\dllcache\stlnprop.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00094293 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\sxports.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sw_wheel.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00053248 _____ (Stallion Technologies) C:\WINDOWS\system32\dllcache\stlncoin.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sw_effct.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swpidflt.dll 2013-08-22 00:57 - 2001-08-18 04:54 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swpdflt2.dll 2013-08-22 00:57 - 2001-08-18 04:52 - 00172768 _____ (Number Nine Visual Technology) C:\WINDOWS\system32\dllcache\t2r4disp.dll 2013-08-22 00:57 - 2001-08-18 04:18 - 00287232 _____ (Stallion Technologies) C:\WINDOWS\system32\dllcache\stlnata.sys 2013-08-22 00:57 - 2001-08-18 04:18 - 00017152 _____ (SCM Microsystems, Inc.) C:\WINDOWS\system32\dllcache\stcusb.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00032640 _____ (LSI Logic) C:\WINDOWS\system32\dllcache\symc8xx.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00030688 _____ (LSI Logic) C:\WINDOWS\system32\dllcache\sym_u3.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00028384 _____ (LSI Logic) C:\WINDOWS\system32\dllcache\sym_hi.sys 2013-08-22 00:57 - 2001-08-17 14:07 - 00016256 _____ (Symbios Logic Inc.) C:\WINDOWS\system32\dllcache\symc810.sys 2013-08-22 00:57 - 2001-08-17 14:02 - 00003968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swusbflt.sys 2013-08-22 00:57 - 2001-08-17 13:52 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\tandqic.sys 2013-08-22 00:57 - 2001-08-17 13:50 - 00103936 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\sx.sys 2013-08-22 00:57 - 2001-08-17 12:50 - 00036640 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\t2r4mini.sys 2013-08-22 00:56 - 2008-04-13 20:40 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sonyait.sys 2013-08-22 00:56 - 2004-08-04 14:00 - 00143422 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\softkey.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00114688 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonypi.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00110680 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\spdports.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\srusd.dll 2013-08-22 00:56 - 2001-08-18 04:54 - 00024660 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\spxupchk.dll 2013-08-22 00:56 - 2001-08-18 04:52 - 00147200 _____ (Silicon Motion Inc.) C:\WINDOWS\system32\dllcache\smidispb.dll 2013-08-22 00:56 - 2001-08-18 04:35 - 00035913 _____ (SMC) C:\WINDOWS\system32\dllcache\smcirda.sys 2013-08-22 00:56 - 2001-08-17 14:07 - 00019072 _____ (Adaptec, Inc.) C:\WINDOWS\system32\dllcache\sparrow.sys 2013-08-22 00:56 - 2001-08-17 13:56 - 00007552 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonypvu1.sys 2013-08-22 00:56 - 2001-08-17 13:53 - 00009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sonymc.sys 2013-08-22 00:56 - 2001-08-17 13:53 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\snyaitmc.sys 2013-08-22 00:56 - 2001-08-17 13:51 - 00061824 _____ (Perle Systems Ltd.) C:\WINDOWS\system32\dllcache\speed.sys 2013-08-22 00:56 - 2001-08-17 12:51 - 00058368 _____ (Silicon Motion Inc.) C:\WINDOWS\system32\dllcache\smiminib.sys 2013-08-22 00:56 - 2001-08-17 12:51 - 00037040 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonypi.sys 2013-08-22 00:56 - 2001-08-17 12:51 - 00020752 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\sonync.sys 2013-08-22 00:56 - 2001-08-17 12:12 - 00025034 _____ (SMC Networks, Inc.) C:\WINDOWS\system32\dllcache\smcpwr2n.sys 2013-08-22 00:56 - 2001-08-17 12:11 - 00048736 _____ (3Com) C:\WINDOWS\system32\dllcache\srwlnd5.sys 2013-08-22 00:55 - 2008-04-13 20:46 - 00011136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\slip.sys 2013-08-22 00:55 - 2008-04-13 20:36 - 00016000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smbbatt.sys 2013-08-22 00:55 - 2008-04-13 20:36 - 00006912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smbclass.sys 2013-08-22 00:55 - 2004-08-03 22:31 - 00063547 _____ (Symbol Technologies) C:\WINDOWS\system32\dllcache\sla30nd5.sys 2013-08-22 00:55 - 2004-08-03 22:31 - 00032768 _____ (SiS Corporation) C:\WINDOWS\system32\dllcache\sisnic.sys 2013-08-22 00:55 - 2001-08-18 04:54 - 00238592 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisgrv.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smb3w.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smb0w.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sma0w.dll 2013-08-22 00:55 - 2001-08-18 04:54 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sm91w.dll 2013-08-22 00:55 - 2001-08-18 04:52 - 00252032 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis300iv.dll 2013-08-22 00:55 - 2001-08-18 04:52 - 00157696 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisv256.dll 2013-08-22 00:55 - 2001-08-18 04:52 - 00150144 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis6306v.dll 2013-08-22 00:55 - 2001-08-18 04:35 - 00095178 _____ (SysKonnect GmbH.) C:\WINDOWS\system32\dllcache\sk98xwin.sys 2013-08-22 00:55 - 2001-08-17 13:57 - 00006784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\smbhc.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00104064 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisgrp.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00101760 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis300ip.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00068608 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sis6306p.sys 2013-08-22 00:55 - 2001-08-17 12:50 - 00050432 _____ (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\dllcache\sisv.sys 2013-08-22 00:55 - 2001-08-17 12:12 - 00091294 _____ (SysKonnect, a business unit of Schneider & Koch & Co. Datensysteme GmbH.) C:\WINDOWS\system32\dllcache\skfpwin.sys 2013-08-22 00:55 - 2001-08-17 12:12 - 00024576 _____ (SMC Networks, Inc.) C:\WINDOWS\system32\dllcache\smc8000n.sys 2013-08-22 00:54 - 2008-04-13 20:45 - 00011520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\scsiscan.sys 2013-08-22 00:54 - 2008-04-13 20:40 - 00043904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sbp2port.sys 2013-08-22 00:54 - 2001-08-18 04:54 - 00495616 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\sblfx.dll 2013-08-22 00:54 - 2001-08-18 04:52 - 00386560 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\sgiul50.dll 2013-08-22 00:54 - 2001-08-18 04:52 - 00245632 _____ (S3 Graphics, Inc.) C:\WINDOWS\system32\dllcache\s3savmx.dll 2013-08-22 00:54 - 2001-08-18 04:35 - 00161888 _____ (Micro Systemation) C:\WINDOWS\system32\dllcache\sgsmusb.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00024192 _____ (OMNIKEY AG) C:\WINDOWS\system32\dllcache\sccmn50m.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00018176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sermouse.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00017792 _____ (SCM Microsystems) C:\WINDOWS\system32\dllcache\scr111.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\scmstcs.sys 2013-08-22 00:54 - 2001-08-18 04:34 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\serscan.sys 2013-08-22 00:54 - 2001-08-17 13:53 - 00006912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\seaddsmc.sys 2013-08-22 00:54 - 2001-08-17 13:52 - 00011648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\scsiprnt.sys 2013-08-22 00:54 - 2001-08-17 13:51 - 00023936 _____ (OMNIKEY AG) C:\WINDOWS\system32\dllcache\sccmusbm.sys 2013-08-22 00:54 - 2001-08-17 12:51 - 00098080 _____ (Trident Microsystems Inc.) C:\WINDOWS\system32\dllcache\sgiulnt5.sys 2013-08-22 00:54 - 2001-08-17 12:50 - 00075392 _____ (S3 Graphics, Inc.) C:\WINDOWS\system32\dllcache\s3savmxm.sys 2013-08-22 00:54 - 2001-08-17 12:19 - 00036480 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\sfmanm.sys 2013-08-22 00:54 - 2001-07-21 14:29 - 00018400 _____ (Micro Systemation) C:\WINDOWS\system32\dllcache\sgsmld.sys 2013-08-22 00:53 - 2008-04-14 04:22 - 00029696 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rw450ext.dll 2013-08-22 00:53 - 2008-04-14 04:22 - 00027648 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rw430ext.dll 2013-08-22 00:53 - 2008-04-14 03:53 - 00079360 _____ (Comtrol Corporation) C:\WINDOWS\system32\dllcache\rocket.sys 2013-08-22 00:53 - 2004-08-03 22:31 - 00020992 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\dllcache\rtl8139.sys 2013-08-22 00:53 - 2001-08-18 04:54 - 00086097 _____ () C:\WINDOWS\system32\dllcache\reslog32.dll 2013-08-22 00:53 - 2001-08-18 04:54 - 00083968 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia450.dll 2013-08-22 00:53 - 2001-08-18 04:54 - 00081408 _____ (Ricoh Co., Ltd.) C:\WINDOWS\system32\dllcache\rwia430.dll 2013-08-22 00:53 - 2001-08-18 04:54 - 00010752 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\rsmgrstr.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00210496 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mvirge.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00198400 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav4.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00182272 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mt3d.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00179264 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav3d.dll 2013-08-22 00:53 - 2001-08-18 04:52 - 00062496 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mtrio.dll 2013-08-22 00:53 - 2001-08-17 13:57 - 00065664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\s3legacy.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00166720 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3m.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00077824 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav4m.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00061504 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3sav3dm.sys 2013-08-22 00:53 - 2001-08-17 12:50 - 00041216 _____ (S3 Incorporated) C:\WINDOWS\system32\dllcache\s3mt3d.sys 2013-08-22 00:53 - 2001-08-17 12:19 - 00030720 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\dllcache\rthwcls.sys 2013-08-22 00:53 - 2001-08-17 12:19 - 00003840 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\dllcache\rpfun.sys 2013-08-22 00:53 - 2001-08-17 12:12 - 00037563 _____ (RadioLAN) C:\WINDOWS\system32\dllcache\rlnet5.sys 2013-08-22 00:53 - 2001-08-17 12:12 - 00019017 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\dllcache\rtl8029.sys 2013-08-22 00:52 - 2008-04-14 04:23 - 00033280 _____ C:\WINDOWS\system32\dllcache\psisrndr.ax 2013-08-22 00:52 - 2008-04-14 04:22 - 00363520 _____ C:\WINDOWS\system32\dllcache\psisdecd.dll 2013-08-22 00:52 - 2008-04-14 04:22 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ptpusd.dll 2013-08-22 00:52 - 2008-04-13 20:40 - 00006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qic157.sys 2013-08-22 00:52 - 2001-08-18 04:54 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qvusd.dll 2013-08-22 00:52 - 2001-08-18 04:54 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\psisload.dll 2013-08-22 00:52 - 2001-08-18 04:54 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ptpusb.dll 2013-08-22 00:52 - 2001-08-18 04:33 - 00899658 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\r2mdkxga.sys 2013-08-22 00:52 - 2001-08-18 04:33 - 00715242 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\r2mdmkxx.sys 2013-08-22 00:52 - 2001-08-18 04:32 - 00016384 _____ (SCM Microsystems, Inc.) C:\WINDOWS\system32\dllcache\pscr.sys 2013-08-22 00:52 - 2001-08-17 13:53 - 00003328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\qv2kux.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00049024 _____ (QLogic Corporation) C:\WINDOWS\system32\dllcache\ql1280.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00045312 _____ (QLogic Corporation) C:\WINDOWS\system32\dllcache\ql12160.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ql1240.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00040320 _____ (QLogic Corporation) C:\WINDOWS\system32\dllcache\ql1080.sys 2013-08-22 00:52 - 2001-08-17 13:52 - 00033152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ql10wnt.sys 2013-08-22 00:52 - 2001-08-17 13:51 - 00019584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\rasirda.sys 2013-08-22 00:52 - 2001-08-17 13:28 - 00130942 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\ptserlv.sys 2013-08-22 00:52 - 2001-08-17 13:28 - 00128286 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\ptserli.sys 2013-08-22 00:52 - 2001-08-17 13:28 - 00112574 _____ (PCTEL, INC.) C:\WINDOWS\system32\dllcache\ptserlp.sys 2013-08-22 00:51 - 2008-04-14 04:21 - 00259328 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm3dd.dll 2013-08-22 00:51 - 2008-04-14 04:21 - 00211584 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm2dll.dll 2013-08-22 00:51 - 2008-04-13 20:44 - 00028032 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm3.sys 2013-08-22 00:51 - 2008-04-13 20:44 - 00027904 _____ (Microsoft Corp., 3Dlabs Inc. Ltd.) C:\WINDOWS\system32\dllcache\perm2.sys 2013-08-22 00:51 - 2008-04-13 20:41 - 00017664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ppa3.sys 2013-08-22 00:51 - 2008-04-13 20:40 - 00008832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\powerfil.sys 2013-08-22 00:51 - 2004-08-03 22:31 - 00029502 _____ (Marconi Communications, Inc.) C:\WINDOWS\system32\dllcache\pca200e.sys 2013-08-22 00:51 - 2004-08-03 22:06 - 00169984 _____ (Cisco Systems) C:\WINDOWS\system32\dllcache\pcx500.sys 2013-08-22 00:51 - 2001-08-18 04:55 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phdsext.ax 2013-08-22 00:51 - 2001-08-18 04:55 - 00086016 _____ (PCtel, Inc.) C:\WINDOWS\system32\dllcache\pctspk.exe 2013-08-22 00:51 - 2001-08-18 04:54 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phvfwext.dll 2013-08-22 00:51 - 2001-08-18 04:54 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philcam1.dll 2013-08-22 00:51 - 2001-08-17 14:07 - 00027296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\perc2.sys 2013-08-22 00:51 - 2001-08-17 14:07 - 00019840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philtune.sys 2013-08-22 00:51 - 2001-08-17 14:07 - 00005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\perc2hib.sys 2013-08-22 00:51 - 2001-08-17 14:04 - 00173696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philcam2.sys 2013-08-22 00:51 - 2001-08-17 14:04 - 00092416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\phildec.sys 2013-08-22 00:51 - 2001-08-17 14:04 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\philcam1.sys 2013-08-22 00:51 - 2001-08-17 13:53 - 00017792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ppa.sys 2013-08-22 00:51 - 2001-08-17 13:53 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\pnrmc.sys 2013-08-22 00:51 - 2001-08-17 12:12 - 00026153 _____ (Linksys) C:\WINDOWS\system32\dllcache\pcmlm56.sys 2013-08-22 00:51 - 2001-08-17 12:11 - 00035328 _____ (AMD Inc.) C:\WINDOWS\system32\dllcache\pcntpci5.sys 2013-08-22 00:51 - 2001-08-17 12:11 - 00030282 _____ (AMD Inc.) C:\WINDOWS\system32\dllcache\pcntn5hl.sys 2013-08-22 00:51 - 2001-08-17 12:11 - 00029769 _____ (AMD Inc.) C:\WINDOWS\system32\dllcache\pcntn5m.sys 2013-08-22 00:50 - 2008-04-13 20:46 - 00061696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ohci1394.sys 2013-08-22 00:50 - 2004-08-04 14:00 - 00036927 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs411.dll 2013-08-22 00:50 - 2004-08-04 14:00 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\padrs412.dll 2013-08-22 00:50 - 2001-08-18 04:55 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcoms.exe 2013-08-22 00:50 - 2001-08-18 04:54 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcodec2.dll 2013-08-22 00:50 - 2001-08-18 04:54 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovui2.dll 2013-08-22 00:50 - 2001-08-18 04:54 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovui2rc.dll 2013-08-22 00:50 - 2001-08-18 04:54 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcomc.dll 2013-08-22 00:50 - 2001-08-18 04:52 - 00123776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\dllcache\nv3.dll 2013-08-22 00:50 - 2001-08-18 04:30 - 00054730 _____ (Ositech Communications, Inc.) C:\WINDOWS\system32\dllcache\otcsercb.sys 2013-08-22 00:50 - 2001-08-18 04:30 - 00044105 _____ C:\WINDOWS\system32\dllcache\otceth5.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00351616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcodek2.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00048000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcam2.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00031872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovce.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00028032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovcd.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00025216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovsound2.sys 2013-08-22 00:50 - 2001-08-17 14:05 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ovca.sys 2013-08-22 00:50 - 2001-08-17 12:50 - 00198144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\dllcache\nv3.sys 2013-08-22 00:50 - 2001-08-17 12:20 - 00054528 _____ (Yamaha Corp.) C:\WINDOWS\system32\dllcache\opl3sax.sys 2013-08-22 00:50 - 2001-08-17 12:12 - 00030495 _____ (Linksys) C:\WINDOWS\system32\dllcache\pc100nds.sys 2013-08-22 00:50 - 2001-08-17 12:12 - 00027209 _____ (Ositech Communications, Inc.) C:\WINDOWS\system32\dllcache\otc06x5.sys 2013-08-22 00:49 - 2008-04-13 20:54 - 00028672 _____ (National Semiconductor Corporation) C:\WINDOWS\system32\dllcache\nscirda.sys 2013-08-22 00:49 - 2008-04-13 20:46 - 00085248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nabtsfec.sys 2013-08-22 00:49 - 2008-04-13 20:46 - 00010880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ndisip.sys 2013-08-22 00:49 - 2004-08-04 00:49 - 00132695 _____ (802.11b) C:\WINDOWS\system32\dllcache\netwlan5.sys 2013-08-22 00:49 - 2001-08-18 04:52 - 00091488 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i3disp.dll 2013-08-22 00:49 - 2001-08-18 04:52 - 00060480 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\neo20xx.dll 2013-08-22 00:49 - 2001-08-18 04:52 - 00059104 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128v2.dll 2013-08-22 00:49 - 2001-08-18 04:52 - 00035392 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128.dll 2013-08-22 00:49 - 2001-08-18 04:27 - 00009472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ntapm.sys 2013-08-22 00:49 - 2001-08-18 04:26 - 00065406 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\netflx3.sys 2013-08-22 00:49 - 2001-08-18 04:25 - 00130048 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\n100325.sys 2013-08-22 00:49 - 2001-08-17 13:53 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\nsmmc.sys 2013-08-22 00:49 - 2001-08-17 13:49 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ne2000.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00039264 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\neo20xx.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00033088 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128v2.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00027936 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i3d.sys 2013-08-22 00:49 - 2001-08-17 12:50 - 00013664 _____ (Number Nine Visual Technology Corp.) C:\WINDOWS\system32\dllcache\n9i128.sys 2013-08-22 00:49 - 2001-08-17 12:49 - 00051552 _____ (Kensington Technology Group) C:\WINDOWS\system32\dllcache\ntgrip.sys 2013-08-22 00:49 - 2001-08-17 12:20 - 00126080 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\nm5a2wdm.sys 2013-08-22 00:49 - 2001-08-17 12:20 - 00087040 _____ (NeoMagic Corporation) C:\WINDOWS\system32\dllcache\nm6wdm.sys 2013-08-22 00:49 - 2001-08-17 12:12 - 00032840 _____ (NETGEAR Corporation.) C:\WINDOWS\system32\dllcache\ngrpci.sys 2013-08-22 00:48 - 2008-04-14 04:23 - 00056832 _____ C:\WINDOWS\system32\dllcache\msdvbnp.ax 2013-08-22 00:48 - 2008-04-13 20:54 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msircomm.sys 2013-08-22 00:48 - 2008-04-13 20:46 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msdv.sys 2013-08-22 00:48 - 2008-04-13 20:46 - 00049024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstape.sys 2013-08-22 00:48 - 2008-04-13 20:46 - 00015232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mpe.sys 2013-08-22 00:48 - 2008-04-13 20:39 - 00005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstee.sys 2013-08-22 00:48 - 2004-08-04 14:00 - 01875968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.lex 2013-08-22 00:48 - 2004-08-04 14:00 - 00229439 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\multibox.dll 2013-08-22 00:48 - 2004-08-04 14:00 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msir3jp.dll 2013-08-22 00:48 - 2001-08-18 04:54 - 00020480 _____ (Moxa Technologies Co., Ltd) C:\WINDOWS\system32\dllcache\mxicfg.dll 2013-08-22 00:48 - 2001-08-18 04:54 - 00007168 _____ (Moxa Technologies Co., Ltd) C:\WINDOWS\system32\dllcache\mxport.dll 2013-08-22 00:48 - 2001-08-18 04:25 - 00076288 _____ (Moxa Technologies Co., Ltd.) C:\WINDOWS\system32\dllcache\mxport.sys 2013-08-22 00:48 - 2001-08-18 04:25 - 00053279 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\n1000nt5.sys 2013-08-22 00:48 - 2001-08-18 04:25 - 00022144 _____ (Moxa Technologies Co., Ltd.) C:\WINDOWS\system32\dllcache\mxcard.sys 2013-08-22 00:48 - 2001-08-17 14:02 - 00035200 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msgame.sys 2013-08-22 00:48 - 2001-08-17 14:00 - 00002944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msmpu401.sys 2013-08-22 00:48 - 2001-08-17 13:57 - 00016128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\modemcsa.sys 2013-08-22 00:48 - 2001-08-17 13:52 - 00017280 _____ (American Megatrends Inc.) C:\WINDOWS\system32\dllcache\mraid35x.sys 2013-08-22 00:48 - 2001-08-17 13:49 - 00019968 _____ (Macronix International Co., Ltd. ) C:\WINDOWS\system32\dllcache\mxnic.sys 2013-08-22 00:48 - 2001-08-17 13:48 - 00012416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msriffwv.sys 2013-08-22 00:48 - 2001-08-17 13:48 - 00006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfsio.sys 2013-08-22 00:48 - 2001-08-17 12:50 - 00103296 _____ (Matrox Graphics Inc) C:\WINDOWS\system32\dllcache\mtxvideo.sys 2013-08-22 00:47 - 2008-04-13 20:41 - 00026112 _____ (Sony Corporation) C:\WINDOWS\system32\dllcache\memstpci.sys 2013-08-22 00:47 - 2008-04-13 20:40 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ltotape.sys 2013-08-22 00:47 - 2004-08-04 00:47 - 00607196 _____ (LT) C:\WINDOWS\system32\dllcache\ltmdmnt.sys 2013-08-22 00:47 - 2004-08-04 00:47 - 00422016 _____ (LT) C:\WINDOWS\system32\dllcache\ltmdmntt.sys 2013-08-22 00:47 - 2004-08-03 22:39 - 00020864 _____ (Logitech Inc.) C:\WINDOWS\system32\dllcache\lwadihid.sys 2013-08-22 00:47 - 2001-08-18 04:53 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\m3092dc.dll 2013-08-22 00:47 - 2001-08-18 04:53 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\m3091dc.dll 2013-08-22 00:47 - 2001-08-18 04:53 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\memgrp.dll 2013-08-22 00:47 - 2001-08-18 04:52 - 00235648 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\mgaud.dll 2013-08-22 00:47 - 2001-08-18 04:22 - 00320384 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\mgaum.sys 2013-08-22 00:47 - 2001-08-18 04:21 - 00164970 _____ (Madge Networks Ltd) C:\WINDOWS\system32\dllcache\mdgndis5.sys 2013-08-22 00:47 - 2001-08-18 04:20 - 00728298 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\ltck000c.sys 2013-08-22 00:47 - 2001-08-18 04:20 - 00577226 _____ (LT) C:\WINDOWS\system32\dllcache\ltmdmntl.sys 2013-08-22 00:47 - 2001-08-17 13:58 - 00008320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\memcard.sys 2013-08-22 00:47 - 2001-08-17 13:53 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\loop.sys 2013-08-22 00:47 - 2001-08-17 13:52 - 00007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mammoth.sys 2013-08-22 00:47 - 2001-08-17 13:52 - 00006528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\miniqic.sys 2013-08-22 00:47 - 2001-08-17 13:28 - 00802683 _____ (Lucent Technologies) C:\WINDOWS\system32\dllcache\ltsm.sys 2013-08-22 00:47 - 2001-08-17 13:28 - 00797500 _____ (LT) C:\WINDOWS\system32\dllcache\ltsmt.sys 2013-08-22 00:47 - 2001-08-17 12:49 - 00022848 _____ (Logitech Inc.) C:\WINDOWS\system32\dllcache\lwusbhid.sys 2013-08-22 00:47 - 2001-08-17 12:19 - 00048768 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\maestro.sys 2013-08-22 00:47 - 2001-08-17 12:12 - 00070730 _____ (Linksys Group, Inc.) C:\WINDOWS\system32\dllcache\lne100tx.sys 2013-08-22 00:47 - 2001-08-17 12:12 - 00020573 _____ (The Linksts Group ) C:\WINDOWS\system32\dllcache\lne100.sys 2013-08-22 00:46 - 2008-04-14 04:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kswdmcap.ax 2013-08-22 00:46 - 2008-04-14 04:23 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kstvtune.ax 2013-08-22 00:46 - 2008-04-14 04:23 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksxbar.ax 2013-08-22 00:46 - 2008-04-14 04:23 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ipsink.ax 2013-08-22 00:46 - 2008-04-14 04:22 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kdsusd.dll 2013-08-22 00:46 - 2008-04-14 04:22 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irftp.exe 2013-08-22 00:46 - 2008-04-14 04:22 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kdsui.dll 2013-08-22 00:46 - 2008-04-14 04:22 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irmon.dll 2013-08-22 00:46 - 2008-04-14 04:20 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd106.dll 2013-08-22 00:46 - 2008-04-13 20:54 - 00088192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irda.sys 2013-08-22 00:46 - 2008-04-13 20:40 - 00034688 _____ (Toshiba Corp.) C:\WINDOWS\system32\dllcache\lbrtfdc.sys 2013-08-22 00:46 - 2004-08-04 14:00 - 01158818 _____ C:\WINDOWS\system32\dllcache\korwbrkr.lex 2013-08-22 00:46 - 2004-08-04 14:00 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\korwbrkr.dll 2013-08-22 00:46 - 2001-08-18 04:53 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kousd.dll 2013-08-22 00:46 - 2001-08-18 04:53 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdjpn.dll 2013-08-22 00:46 - 2001-08-18 04:53 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbdkor.dll 2013-08-22 00:46 - 2001-08-18 04:19 - 00026506 _____ (SMSC) C:\WINDOWS\system32\dllcache\lanepic5.sys 2013-08-22 00:46 - 2001-08-18 04:19 - 00016256 _____ (Litronic Industries) C:\WINDOWS\system32\dllcache\lit220p.sys 2013-08-22 00:46 - 2001-08-17 14:55 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101c.dll 2013-08-22 00:46 - 2001-08-17 14:55 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd101b.dll 2013-08-22 00:46 - 2001-08-17 14:55 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kbd103.dll 2013-08-22 00:46 - 2001-08-17 13:51 - 00018688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\irsir.sys 2013-08-22 00:46 - 2001-08-17 13:49 - 00026624 _____ (SigmaTel, Inc.) C:\WINDOWS\system32\dllcache\irstusb.sys 2013-08-22 00:46 - 2001-08-17 13:49 - 00023552 _____ (MKNet Corporation) C:\WINDOWS\system32\dllcache\irmk7.sys 2013-08-22 00:46 - 2001-08-17 12:12 - 00045632 _____ (Interphase (R) Corporation a Windows (R) 2000 DDK Driver Provider) C:\WINDOWS\system32\dllcache\ip5515.sys 2013-08-22 00:46 - 2001-08-17 12:12 - 00019016 _____ (Kingston Technology Company ) C:\WINDOWS\system32\dllcache\ktc111.sys 2013-08-22 00:46 - 2001-08-17 12:11 - 00025065 _____ (D-Link) C:\WINDOWS\system32\dllcache\lmndis3.sys 2013-08-22 00:45 - 2008-04-14 04:22 - 00702845 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\i81xdnt5.dll 2013-08-22 00:45 - 2008-04-14 03:57 - 00005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\intelide.sys 2013-08-22 00:45 - 2004-08-04 14:00 - 00471102 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imskdic.dll 2013-08-22 00:45 - 2004-08-04 14:00 - 00311359 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsv.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00134339 _____ C:\WINDOWS\system32\dllcache\imekr.lex 2013-08-22 00:45 - 2004-08-04 14:00 - 00102463 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imepadsm.dll 2013-08-22 00:45 - 2004-08-04 14:00 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imkrinst.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00057398 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpdadm.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00045109 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imjpuex.exe 2013-08-22 00:45 - 2004-08-04 14:00 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imekrmig.exe 2013-08-22 00:45 - 2004-08-03 22:29 - 00161020 _____ (Intel(R) Corporation) C:\WINDOWS\system32\dllcache\i81xnt5.sys 2013-08-22 00:45 - 2001-08-18 04:53 - 00372824 _____ (Xircom) C:\WINDOWS\system32\dllcache\iconf32.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam4com.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00090200 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\io8ports.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam4ext.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam5com.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam3ext.dll 2013-08-22 00:45 - 2001-08-18 04:53 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam5ext.dll 2013-08-22 00:45 - 2001-08-18 04:51 - 00010240 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\ibmsgnet.dll 2013-08-22 00:45 - 2001-08-18 04:18 - 00013440 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inport.sys 2013-08-22 00:45 - 2001-08-17 14:06 - 00154496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam4usb.sys 2013-08-22 00:45 - 2001-08-17 14:06 - 00100992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam5usb.sys 2013-08-22 00:45 - 2001-08-17 14:06 - 00038528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ibmvcap.sys 2013-08-22 00:45 - 2001-08-17 14:05 - 00141056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\icam3.sys 2013-08-22 00:45 - 2001-08-17 13:52 - 00016000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ini910u.sys 2013-08-22 00:45 - 2001-08-17 13:50 - 00038784 _____ (Perle Systems Ltd. ) C:\WINDOWS\system32\dllcache\io8.sys 2013-08-22 00:45 - 2001-08-17 12:12 - 00109085 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\ibmtrp.sys 2013-08-22 00:45 - 2001-08-17 12:12 - 00100936 _____ (IBM Corporation) C:\WINDOWS\system32\dllcache\ibmtok.sys 2013-08-22 00:45 - 2001-08-17 12:11 - 00028700 _____ (IBM Corp.) C:\WINDOWS\system32\dllcache\ibmexmp.sys 2013-08-22 00:44 - 2008-04-13 20:41 - 00018560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\i2omp.sys 2013-08-22 00:44 - 2008-04-13 20:41 - 00008576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\i2omgmt.sys 2013-08-22 00:44 - 2004-08-04 14:00 - 10129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxkor.dll 2013-08-22 00:44 - 2004-08-04 14:00 - 10096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hwxcht.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpojwia.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00165888 _____ () C:\WINDOWS\system32\dllcache\hpgt53.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00068608 _____ (Avisioin) C:\WINDOWS\system32\dllcache\hpgt53tk.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgtmcro.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgt42tk.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hr1w.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpsjmcro.dll 2013-08-22 00:44 - 2001-08-18 04:53 - 00009759 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_inst.dll 2013-08-22 00:44 - 2001-08-18 04:52 - 00353184 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\i740dnt5.dll 2013-08-22 00:44 - 2001-08-17 14:07 - 00025952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpn.sys 2013-08-22 00:44 - 2001-08-17 13:52 - 00005760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpt4qic.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00542879 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_msft.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00488383 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_v124.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00391199 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_k56k.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00289887 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_fall.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00199711 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_faxx.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00150239 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_amos.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00115807 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_fsks.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00073279 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_spkp.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00067167 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_bsc2.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00057471 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_samp.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00050751 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_tone.sys 2013-08-22 00:44 - 2001-08-17 13:28 - 00044863 _____ (Conexant) C:\WINDOWS\system32\dllcache\hsf_soar.sys 2013-08-22 00:44 - 2001-08-17 12:49 - 00058592 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\i740nt5.sys 2013-08-22 00:43 - 2008-04-14 03:54 - 00028672 _____ (Gemplus) C:\WINDOWS\system32\dllcache\grserial.sys 2013-08-22 00:43 - 2008-04-13 20:45 - 00059136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gckernel.sys 2013-08-22 00:43 - 2008-04-13 20:45 - 00010624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\gameenum.sys 2013-08-22 00:43 - 2008-04-13 20:36 - 00020352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidbatt.sys 2013-08-22 00:43 - 2004-08-04 14:00 - 00108827 _____ C:\WINDOWS\system32\dllcache\hanja.lex 2013-08-22 00:43 - 2004-08-04 14:00 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hanjadic.dll 2013-08-22 00:43 - 2004-08-03 22:31 - 00034173 _____ (Marconi Communications, Inc.) C:\WINDOWS\system32\dllcache\forehe.sys 2013-08-22 00:43 - 2001-08-18 04:53 - 00126976 _____ (Hewlett Packard) C:\WINDOWS\system32\dllcache\hpgt34tk.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgt21tk.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpdigwia.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00101376 _____ () C:\WINDOWS\system32\dllcache\hpgt34.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00093696 _____ () C:\WINDOWS\system32\dllcache\hpgt42.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fuusd.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00089088 _____ () C:\WINDOWS\system32\dllcache\hpgt33.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00083968 _____ () C:\WINDOWS\system32\dllcache\hpgt21.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\fnfilter.dll 2013-08-22 00:43 - 2001-08-18 04:53 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hpgt33tk.dll 2013-08-22 00:43 - 2001-08-18 04:52 - 01733120 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g400d.dll 2013-08-22 00:43 - 2001-08-18 04:52 - 00470144 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g200d.dll 2013-08-22 00:43 - 2001-08-18 04:33 - 00908352 _____ (Conexant) C:\WINDOWS\system32\dllcache\hcf_msft.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00322432 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g400m.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00320384 _____ (Matrox Graphics Inc.) C:\WINDOWS\system32\dllcache\g200m.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00082560 _____ (Gemplus) C:\WINDOWS\system32\dllcache\grclass.sys 2013-08-22 00:43 - 2001-08-18 04:33 - 00017792 _____ (Gemplus) C:\WINDOWS\system32\dllcache\gpr400.sys 2013-08-22 00:43 - 2001-08-17 14:02 - 00008576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidgame.sys 2013-08-22 00:43 - 2001-08-17 14:02 - 00002688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidswvd.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00455680 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fus2base.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00455296 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fusbbase.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00454912 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fxusbase.sys 2013-08-22 00:43 - 2001-08-17 12:15 - 00442240 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fpnpbase.sys 2013-08-22 00:43 - 2001-08-17 12:14 - 00444416 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fpcibase.sys 2013-08-22 00:43 - 2001-08-17 12:14 - 00441728 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\fpcmbase.sys 2013-08-22 00:42 - 2004-08-03 22:32 - 00137088 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\essm2e.sys 2013-08-22 00:42 - 2001-08-18 04:54 - 00062464 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqnloop.exe 2013-08-22 00:42 - 2001-08-18 04:54 - 00053760 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqndiag.exe 2013-08-22 00:42 - 2001-08-18 04:54 - 00052224 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqnlogr.exe 2013-08-22 00:42 - 2001-08-18 04:53 - 00046080 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esunib.dll 2013-08-22 00:42 - 2001-08-18 04:53 - 00046080 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esuni.dll 2013-08-22 00:42 - 2001-08-18 04:53 - 00043008 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esucm.dll 2013-08-22 00:42 - 2001-08-18 04:53 - 00034816 _____ (SEIKO EPSON CORP.) C:\WINDOWS\system32\dllcache\esuimg.dll 2013-08-22 00:42 - 2001-08-18 04:31 - 00629952 _____ (Equinox Systems Inc.) C:\WINDOWS\system32\dllcache\eqn.sys 2013-08-22 00:42 - 2001-08-18 04:31 - 00595999 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es56cvmp.sys 2013-08-22 00:42 - 2001-08-18 04:31 - 00594558 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es56hpi.sys 2013-08-22 00:42 - 2001-08-18 04:31 - 00347870 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es56tpi.sys 2013-08-22 00:42 - 2001-08-17 13:52 - 00007040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\exabyte2.sys 2013-08-22 00:42 - 2001-08-17 13:50 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\epcfw2k.sys 2013-08-22 00:42 - 2001-08-17 13:50 - 00114944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\epstw2k.sys 2013-08-22 00:42 - 2001-08-17 13:46 - 00006400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\enum1394.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00174464 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\es198x.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00072192 _____ (ESS Technology Inc.) C:\WINDOWS\system32\dllcache\es1969.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00063360 _____ (ESS Technology, Inc.) C:\WINDOWS\system32\dllcache\ess.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00040704 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\es1371mp.sys 2013-08-22 00:42 - 2001-08-17 12:19 - 00037120 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\es1370mp.sys 2013-08-22 00:42 - 2001-08-17 12:13 - 00027165 _____ (VIA Technologies, Inc. ) C:\WINDOWS\system32\dllcache\fetnd5.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00024618 _____ (NETGEAR) C:\WINDOWS\system32\dllcache\fa410nd5.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00018503 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\epro4.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00016998 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\ex10.sys 2013-08-22 00:42 - 2001-08-17 12:12 - 00016074 _____ (NETGEAR Corp.) C:\WINDOWS\system32\dllcache\fa312nd5.sys 2013-08-22 00:42 - 2001-08-17 12:11 - 00012362 _____ (FUJITSU LIMITED) C:\WINDOWS\system32\dllcache\f3ab18xi.sys 2013-08-22 00:42 - 2001-08-17 12:11 - 00011850 _____ (FUJITSU LIMITED) C:\WINDOWS\system32\dllcache\f3ab18xj.sys 2013-08-22 00:42 - 2001-08-17 12:10 - 00022090 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\fem556n5.sys 2013-08-22 00:41 - 2008-04-14 04:23 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dshowext.ax 2013-08-22 00:41 - 2008-04-13 20:40 - 00008320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dlttape.sys 2013-08-22 00:41 - 2008-04-13 20:39 - 00206976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4.sys 2013-08-22 00:41 - 2001-08-18 04:54 - 00236060 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\ditrace.exe 2013-08-22 00:41 - 2001-08-18 04:53 - 00038985 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\disrvsu.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00037962 _____ C:\WINDOWS\system32\dllcache\divaprop.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00031817 _____ C:\WINDOWS\system32\dllcache\disrvpp.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00029768 _____ C:\WINDOWS\system32\dllcache\divasu.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00006729 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\disrvci.dll 2013-08-22 00:41 - 2001-08-18 04:53 - 00006216 _____ C:\WINDOWS\system32\dllcache\divaci.dll 2013-08-22 00:41 - 2001-08-18 04:30 - 00634198 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656ct5.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00455711 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el985n51.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00241270 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656se5.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00176128 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el99xn51.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00153631 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el90xnd5.sys 2013-08-22 00:41 - 2001-08-18 04:30 - 00044103 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el515.sys 2013-08-22 00:41 - 2001-08-18 04:29 - 00117760 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\e100b325.sys 2013-08-22 00:41 - 2001-08-18 04:29 - 00051743 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\e1000nt5.sys 2013-08-22 00:41 - 2001-08-18 04:26 - 00023936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4usb.sys 2013-08-22 00:41 - 2001-08-17 14:07 - 00020192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dpti2o.sys 2013-08-22 00:41 - 2001-08-17 13:53 - 00007296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\elmsmc.sys 2013-08-22 00:41 - 2001-08-17 13:47 - 00012928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4prt.sys 2013-08-22 00:41 - 2001-08-17 13:47 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dot4scan.sys 2013-08-22 00:41 - 2001-08-17 12:20 - 00334208 _____ (Yamaha Corp.) C:\WINDOWS\system32\dllcache\ds1wdm.sys 2013-08-22 00:41 - 2001-08-17 12:19 - 00283904 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\emu10k1m.sys 2013-08-22 00:41 - 2001-08-17 12:14 - 00952007 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\diwan.sys 2013-08-22 00:41 - 2001-08-17 12:13 - 00091305 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\dimaint.sys 2013-08-22 00:41 - 2001-08-17 12:12 - 00028062 _____ (National Semiconductor Coproration) C:\WINDOWS\system32\dllcache\dp83820.sys 2013-08-22 00:41 - 2001-08-17 12:12 - 00019594 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\e100isa4.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00077386 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656nd5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00070174 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el98xn5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00069194 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el656cd5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00066591 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el90xbc5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00029696 _____ (CNet Technology, Inc. ) C:\WINDOWS\system32\dllcache\dm9pci5.sys 2013-08-22 00:41 - 2001-08-17 12:11 - 00026698 _____ (D-Link Corporation) C:\WINDOWS\system32\dllcache\dlh5xnd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00069692 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el575nd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00055999 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el556nd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00026141 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el589nd5.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00025159 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\elnk3.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00024653 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\el574nd4.sys 2013-08-22 00:41 - 2001-08-17 12:10 - 00019996 _____ (3Com Corporation) C:\WINDOWS\system32\dllcache\em556n4.sys 2013-08-22 00:40 - 2008-04-14 04:22 - 00252928 _____ (Comtrol® Corporation) C:\WINDOWS\system32\dllcache\ctmasetp.dll 2013-08-22 00:40 - 2004-08-03 22:32 - 00048640 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwrwdm.sys 2013-08-22 00:40 - 2001-08-18 04:54 - 00626717 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiview.exe 2013-08-22 00:40 - 2001-08-18 04:54 - 00024064 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\devldr32.exe 2013-08-22 00:40 - 2001-08-18 04:53 - 00424477 _____ (Digi International) C:\WINDOWS\system32\dllcache\dgconfig.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00256512 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\devcon32.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00229462 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digifwrk.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00159828 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digihlc.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00135252 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digidbp.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc260usd.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00110621 _____ (Digi International, Inc.) C:\WINDOWS\system32\dllcache\digirlpt.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00102484 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiinf.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc240usd.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc210usd.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00065622 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiasyn.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00041046 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiisdn.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyycoins.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyyports.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyzports.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyzcoins.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dc210_32.dll 2013-08-22 00:40 - 2001-08-18 04:53 - 00004096 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\ctwdm32.dll 2013-08-22 00:40 - 2001-08-18 04:26 - 00103524 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digidxb.sys 2013-08-22 00:40 - 2001-08-18 04:26 - 00090717 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digifep5.sys 2013-08-22 00:40 - 2001-08-18 04:26 - 00042880 _____ (Digi International, Inc.) C:\WINDOWS\system32\dllcache\digirlpt.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00117760 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\d100ib5.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00051072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyyport.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00050816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyzport.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00038087 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiasyn.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00029851 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\dgapci.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyclad-z.sys 2013-08-22 00:40 - 2001-08-18 04:25 - 00015104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cyclom-y.sys 2013-08-22 00:40 - 2001-08-17 13:52 - 00179584 _____ (Mylex Corporation) C:\WINDOWS\system32\dllcache\dac2w2k.sys 2013-08-22 00:40 - 2001-08-17 13:52 - 00014720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dac960nt.sys 2013-08-22 00:40 - 2001-08-17 13:52 - 00007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ddsmc.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00111872 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwcspud.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00096256 _____ (Copyright (C) Creative Technology Ltd. 1994-2001) C:\WINDOWS\system32\dllcache\ctlsb16.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00093952 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwcwdm.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00072832 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwbwdm.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00006912 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\ctlfacem.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003712 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\dllcache\ctljystk.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003584 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwcosnt5.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003072 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwbmidi.sys 2013-08-22 00:40 - 2001-08-17 12:19 - 00003072 _____ (Crystal Semiconductor Corp.) C:\WINDOWS\system32\dllcache\cwbase.sys 2013-08-22 00:40 - 2001-08-17 12:14 - 00021606 _____ (Digi International Inc.) C:\WINDOWS\system32\dllcache\digiisdn.sys 2013-08-22 00:40 - 2001-08-17 12:12 - 00063208 _____ (Intel Corporation.) C:\WINDOWS\system32\dllcache\dc21x4.sys 2013-08-22 00:40 - 2001-08-17 12:11 - 00024649 _____ (D-Link) C:\WINDOWS\system32\dllcache\dfe650d.sys 2013-08-22 00:40 - 2001-08-17 12:11 - 00024648 _____ (D-Link) C:\WINDOWS\system32\dllcache\dfe650.sys 2013-08-22 00:40 - 2001-08-17 12:11 - 00020928 _____ (Digital Networks, LLC) C:\WINDOWS\system32\dllcache\defpa.sys 2013-08-22 00:39 - 2008-04-14 04:22 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext30.dll 2013-08-22 00:39 - 2008-04-13 20:46 - 00017024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ccdecode.sys 2013-08-22 00:39 - 2008-04-13 20:40 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\changer.sys 2013-08-22 00:39 - 2008-04-13 20:36 - 00013952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cmbatt.sys 2013-08-22 00:39 - 2008-04-13 20:36 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\compbatt.sys 2013-08-22 00:39 - 2004-08-04 14:00 - 01677824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chsbrkr.dll 2013-08-22 00:39 - 2004-08-04 14:00 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\chtbrkr.dll 2013-08-22 00:39 - 2001-08-18 04:55 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext20.ax 2013-08-22 00:39 - 2001-08-18 04:55 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext30.ax 2013-08-22 00:39 - 2001-08-18 04:55 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camexo20.ax 2013-08-22 00:39 - 2001-08-18 04:53 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camext20.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00216576 _____ (COMPAQ Inc.) C:\WINDOWS\system32\dllcache\cpscan.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\csamsp.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camexo20.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cnusd.dll 2013-08-22 00:39 - 2001-08-18 04:53 - 00032256 _____ (Eicon Technology Corporation) C:\WINDOWS\system32\dllcache\diapi2NT.dll 2013-08-22 00:39 - 2001-08-18 04:52 - 00170880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cl546x.dll 2013-08-22 00:39 - 2001-08-18 04:52 - 00111232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cl5465.dll 2013-08-22 00:39 - 2001-08-18 04:52 - 00091264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cirrus.dll 2013-08-22 00:39 - 2001-08-18 04:24 - 00061130 _____ (Compaq Computer Corp.) C:\WINDOWS\system32\dllcache\cpqtrnd5.sys 2013-08-22 00:39 - 2001-08-18 04:24 - 00022045 _____ (Compaq Computer Corporation) C:\WINDOWS\system32\dllcache\cpqndis5.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00980034 _____ (Xircom) C:\WINDOWS\system32\dllcache\cicap.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00272640 _____ (RAVISENT Technologies Inc.) C:\WINDOWS\system32\dllcache\cinemclc.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00020864 _____ (OMNIKEY AG) C:\WINDOWS\system32\dllcache\cmbp0wdm.sys 2013-08-22 00:39 - 2001-08-18 04:22 - 00006656 _____ (CMD Technology, Inc.) C:\WINDOWS\system32\dllcache\cmdide.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00715210 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cbmdmkxx.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00049182 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cem56n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00027164 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\ce3n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00022556 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cem33n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00022556 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cem28n5.sys 2013-08-22 00:39 - 2001-08-18 04:21 - 00021530 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\ce2n5.sys 2013-08-22 00:39 - 2001-08-17 14:05 - 00314752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camdro21.sys 2013-08-22 00:39 - 2001-08-17 14:04 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camdrv21.sys 2013-08-22 00:39 - 2001-08-17 14:04 - 00171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\camdrv30.sys 2013-08-22 00:39 - 2001-08-17 13:57 - 00248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cl546xm.sys 2013-08-22 00:39 - 2001-08-17 13:57 - 00045696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cirrus.sys 2013-08-22 00:39 - 2001-08-17 13:52 - 00014976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cpqarray.sys 2013-08-22 00:39 - 2001-08-17 13:52 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\cd20xrnt.sys 2013-08-22 00:39 - 2001-08-17 12:19 - 00042112 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\dllcache\crtaud.sys 2013-08-22 00:39 - 2001-08-17 12:13 - 00164923 _____ (Eicon Technology) C:\WINDOWS\system32\dllcache\diapi2.sys 2013-08-22 00:39 - 2001-08-17 12:13 - 00046108 _____ (Xircom, Inc.) C:\WINDOWS\system32\dllcache\cben5.sys 2013-08-22 00:39 - 2001-08-17 12:12 - 00039680 _____ (Silicom Ltd.) C:\WINDOWS\system32\dllcache\cb325.sys 2013-08-22 00:39 - 2001-08-17 12:12 - 00037916 _____ (Fast Ethernet Controller Provider) C:\WINDOWS\system32\dllcache\cb102.sys 2013-08-22 00:39 - 2001-08-17 12:11 - 00039936 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\dllcache\cnxt1803.sys 2013-08-22 00:38 - 2008-04-14 04:23 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bdaplgin.ax 2013-08-22 00:38 - 2008-04-14 03:52 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\battc.sys 2013-08-22 00:38 - 2008-04-13 20:46 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avc.sys 2013-08-22 00:38 - 2008-04-13 20:46 - 00013696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avcstrm.sys 2013-08-22 00:38 - 2008-04-13 20:46 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bdasup.sys 2013-08-22 00:38 - 2004-08-03 22:31 - 00036224 _____ (ADMtek Incorporated.) C:\WINDOWS\system32\dllcache\an983.sys 2013-08-22 00:38 - 2001-08-18 04:54 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\atievxx.exe 2013-08-22 00:38 - 2001-08-18 04:54 - 00032256 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmfrsmg.exe 2013-08-22 00:38 - 2001-08-18 04:53 - 00144384 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\avmenum.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\binlsvc.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00087552 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\avmcoxp.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\brmfcwia.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00041472 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmfusb.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00029696 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmflpt.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00019456 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brbidiif.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00015360 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brmfbidi.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00012800 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brevif.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00009728 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brserif.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00009728 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brcoinst.dll 2013-08-22 00:38 - 2001-08-18 04:53 - 00005120 _____ (Brother Industries,Ltd.) C:\WINDOWS\system32\dllcache\brscnrsm.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00382592 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atidrab.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00342336 _____ (3Dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\banshee.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00268160 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atidvai.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00137216 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atidrae.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00104832 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atiraged.dll 2013-08-22 00:38 - 2001-08-18 04:52 - 00096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ati.dll 2013-08-22 00:38 - 2001-08-18 04:21 - 00039808 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brparwdm.sys 2013-08-22 00:38 - 2001-08-18 04:21 - 00014208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\bulltlp3.sys 2013-08-22 00:38 - 2001-08-18 04:20 - 00097440 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\b57xp32.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00289920 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atimpab.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00281728 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atimtai.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00077824 _____ (ATI Technologies, Inc.) C:\WINDOWS\system32\dllcache\ati.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00075392 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atimpae.sys 2013-08-22 00:38 - 2001-08-18 04:19 - 00070784 _____ (ATI Technologies Inc.) C:\WINDOWS\system32\dllcache\atiragem.sys 2013-08-22 00:38 - 2001-08-17 14:01 - 00036096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\avcaudio.sys 2013-08-22 00:38 - 2001-08-17 13:52 - 00026496 _____ (Advanced System Products, Inc.) C:\WINDOWS\system32\dllcache\asc.sys 2013-08-22 00:38 - 2001-08-17 13:52 - 00022400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\asc3350p.sys 2013-08-22 00:38 - 2001-08-17 13:52 - 00012032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\amsint.sys 2013-08-22 00:38 - 2001-08-17 13:51 - 00014848 _____ (Advanced System Products, Inc.) C:\WINDOWS\system32\dllcache\asc3550.sys 2013-08-22 00:38 - 2001-08-17 13:47 - 00006272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\apmbatt.sys 2013-08-22 00:38 - 2001-08-17 13:28 - 00871388 _____ (BCM) C:\WINDOWS\system32\dllcache\bcmdm.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00060416 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brserwdm.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00012160 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brfiltlo.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00011008 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brusbmdm.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00010368 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brusbscn.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00003968 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\dllcache\brfiltup.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00003168 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brparimg.sys 2013-08-22 00:38 - 2001-08-17 13:12 - 00002944 _____ (Brother Industries Ltd.) C:\WINDOWS\system32\dllcache\brfilt.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00049920 _____ C:\WINDOWS\system32\dllcache\atirtcap.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00046464 _____ C:\WINDOWS\system32\dllcache\atibt829.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00026880 _____ C:\WINDOWS\system32\dllcache\atirtsnd.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00026624 _____ C:\WINDOWS\system32\dllcache\ativxbar.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00023552 _____ C:\WINDOWS\system32\dllcache\atixbar.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00019456 _____ C:\WINDOWS\system32\dllcache\ativttxx.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00017152 _____ C:\WINDOWS\system32\dllcache\atitvsnd.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00017152 _____ C:\WINDOWS\system32\dllcache\atitunep.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00010240 _____ C:\WINDOWS\system32\dllcache\atipcxxx.sys 2013-08-22 00:38 - 2001-08-17 12:49 - 00009472 _____ C:\WINDOWS\system32\dllcache\ativmdcd.sys 2013-08-22 00:38 - 2001-08-17 12:48 - 00036128 _____ (3Dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\banshee.sys 2013-08-22 00:38 - 2001-08-17 12:19 - 00036992 _____ (Aztech Systems Ltd) C:\WINDOWS\system32\dllcache\aztw2320.sys 2013-08-22 00:38 - 2001-08-17 12:13 - 00089952 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\b1cbase.sys 2013-08-22 00:38 - 2001-08-17 12:13 - 00037568 _____ (AVM GmbH) C:\WINDOWS\system32\dllcache\avmwan.sys 2013-08-22 00:38 - 2001-08-17 12:12 - 00097354 _____ (Bay Networks, Inc.) C:\WINDOWS\system32\dllcache\aspndis3.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00066557 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\bcm42u.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00054271 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\bcm42xx5.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00031529 _____ (BreezeCOM) C:\WINDOWS\system32\dllcache\brzwlan.sys 2013-08-22 00:38 - 2001-08-17 12:11 - 00026568 _____ (Broadcom Corporation) C:\WINDOWS\system32\dllcache\bcm4e5.sys 2013-08-22 00:37 - 2008-04-13 20:46 - 00053376 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\1394bus.sys 2013-08-22 00:37 - 2008-04-13 20:46 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\61883.sys 2013-08-22 00:37 - 2008-04-13 20:40 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\4mmdat.sys 2013-08-22 00:37 - 2004-08-03 22:32 - 00231552 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\ac97ali.sys 2013-08-22 00:37 - 2004-08-03 22:32 - 00084480 _____ (VIA Technologies, Inc.) C:\WINDOWS\system32\dllcache\ac97via.sys 2013-08-22 00:37 - 2004-08-03 22:32 - 00010880 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\admjoy.sys 2013-08-22 00:37 - 2001-08-18 04:55 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\agcgauge.ax 2013-08-22 00:37 - 2001-08-18 04:52 - 00689216 _____ (3dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\3dfxvs.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00462848 _____ (Aureal Inc.) C:\WINDOWS\system32\dllcache\a3dapi.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00098304 _____ (Aureal Semiconductor) C:\WINDOWS\system32\dllcache\a3d.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\s3legacy.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00061952 _____ (Farb-Flachbett-Scanner) C:\WINDOWS\system32\dllcache\acerscad.dll 2013-08-22 00:37 - 2001-08-18 04:52 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\8514a.dll 2013-08-22 00:37 - 2001-08-17 14:07 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adpu160m.sys 2013-08-22 00:37 - 2001-08-17 14:07 - 00056960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aic78xx.sys 2013-08-22 00:37 - 2001-08-17 14:07 - 00055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aic78u2.sys 2013-08-22 00:37 - 2001-08-17 14:06 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\1394vdbg.sys 2013-08-22 00:37 - 2001-08-17 13:53 - 00007424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\adicvls.sys 2013-08-22 00:37 - 2001-08-17 13:52 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\abp480n5.sys 2013-08-22 00:37 - 2001-08-17 13:52 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aha154x.sys 2013-08-22 00:37 - 2001-08-17 13:51 - 00005248 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\aliide.sys 2013-08-22 00:37 - 2001-08-17 13:49 - 00026624 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\alifir.sys 2013-08-22 00:37 - 2001-08-17 13:28 - 00762780 _____ (3Com, Inc.) C:\WINDOWS\system32\dllcache\3cwmcru.sys 2013-08-22 00:37 - 2001-08-17 12:48 - 00148352 _____ (3dfx Interactive, Inc.) C:\WINDOWS\system32\dllcache\3dfxvsm.sys 2013-08-22 00:37 - 2001-08-17 12:20 - 00297728 _____ (Silicon Integrated Systems Corp.) C:\WINDOWS\system32\dllcache\ac97sis.sys 2013-08-22 00:37 - 2001-08-17 12:20 - 00096256 _____ (Intel Corporation) C:\WINDOWS\system32\dllcache\ac97intc.sys 2013-08-22 00:37 - 2001-08-17 12:19 - 00747392 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\adm8830.sys 2013-08-22 00:37 - 2001-08-17 12:19 - 00584448 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\adm8810.sys 2013-08-22 00:37 - 2001-08-17 12:19 - 00553984 _____ (Aureal, Inc.) C:\WINDOWS\system32\dllcache\adm8820.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00046112 _____ (Adaptec, Inc ) C:\WINDOWS\system32\dllcache\adptsf50.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00027678 _____ (Acer Laboratories Inc.) C:\WINDOWS\system32\dllcache\ali5261.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00020160 _____ (ADMtek Incorporated) C:\WINDOWS\system32\dllcache\adm8511.sys 2013-08-22 00:37 - 2001-08-17 12:11 - 00016969 _____ (AmbiCom, Inc.) C:\WINDOWS\system32\dllcache\amb8002.sys 2013-08-22 00:06 - 2013-08-22 00:06 - 00001790 _____ C:\Dokumente und Einstellungen\***\Desktop\Tweaking.com - Windows Repair (All in One).lnk 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Programme\Tweaking.com 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Dokumente und Einstellungen\***\Startmenü\Programme\Tweaking.com 2013-08-22 00:05 - 2013-08-22 00:05 - 05369204 _____ C:\Dokumente und Einstellungen\***\Desktop\tweaking.com_windows_repair_aio_setup.exe 2013-08-21 08:25 - 2013-08-22 19:34 - 00003677 _____ C:\Dokumente und Einstellungen\***\Desktop\FSS.txt 2013-08-21 08:21 - 2013-08-21 08:21 - 00358923 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FSS.exe 2013-08-21 07:53 - 2013-08-21 07:53 - 00448512 _____ (OldTimer Tools) C:\Dokumente und Einstellungen\***\Desktop\TFC.exe 2013-08-19 08:06 - 2013-08-19 08:07 - 00019904 _____ C:\WINDOWS\KB2870699-IE8.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00010991 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$ 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-19 08:01 - 2013-08-19 08:02 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00010660 _____ C:\WINDOWS\KB2863058.log 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-19 07:47 - 2013-08-19 07:51 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-18 23:27 - 2013-08-19 08:04 - 00021051 _____ C:\WINDOWS\KB2876315.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00020090 _____ C:\WINDOWS\KB2876217.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00019558 _____ C:\WINDOWS\KB2864063.log 2013-08-18 23:27 - 2013-08-19 08:03 - 00018725 _____ C:\WINDOWS\KB2850869.log 2013-08-18 23:26 - 2013-08-19 08:02 - 00020394 _____ C:\WINDOWS\KB2859537.log 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 00:02 - 2013-08-18 00:03 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 22:48 - 2013-09-12 07:34 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-08-17 22:48 - 2013-09-12 07:34 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-08-17 22:48 - 2013-09-11 14:47 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-08-17 22:48 - 2013-08-17 23:15 - 00000000 ____D C:\AdwCleaner 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) C:\OTLPE.exe 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 08:58 - 2013-08-17 09:12 - 00090744 _____ C:\OTL.Txt 2013-08-15 01:16 - 2013-08-15 01:17 - 00000531 _____ C:\WINDOWS\wmsetup.log ==================== One Month Modified Files and Folders ======= 2013-09-12 07:34 - 2013-08-17 22:48 - 01037278 _____ C:\Dokumente und Einstellungen\***\Desktop\adwcleaner(1).exe 2013-09-12 07:34 - 2013-08-17 22:48 - 01029490 _____ (Thisisu) C:\Dokumente und Einstellungen\***\Desktop\JRT.exe 2013-09-11 14:47 - 2013-08-17 22:48 - 00050477 _____ C:\Dokumente und Einstellungen\***\Desktop\Defogger.exe 2013-09-01 16:57 - 2007-07-24 17:50 - 76725432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-08-23 02:09 - 2006-11-03 13:00 - 01972712 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-23 02:05 - 2013-08-23 02:05 - 97949955 _____ C:\WINDOWS\system32\駵咜6 2013-08-23 02:04 - 2006-11-03 12:59 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl 2013-08-23 02:02 - 2006-11-03 13:00 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-08-23 02:02 - 2006-11-03 13:00 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-08-23 02:01 - 2006-11-03 12:59 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-08-22 19:38 - 2007-01-11 15:26 - 00000300 ___SH C:\Dokumente und Einstellungen\***\ntuser.ini 2013-08-22 19:38 - 2007-01-11 15:26 - 00000000 ____D C:\Dokumente und Einstellungen\*** 2013-08-22 19:38 - 2006-11-03 13:02 - 00032492 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-22 19:34 - 2013-08-21 08:25 - 00003677 _____ C:\Dokumente und Einstellungen\***\Desktop\FSS.txt 2013-08-22 19:33 - 2012-11-06 13:09 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-08-22 02:09 - 2006-11-03 12:59 - 00263824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-08-22 01:44 - 2013-08-22 01:44 - 00002410 _____ C:\Dokumente und Einstellungen\***\Desktop\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000963 _____ C:\WINDOWS\system32\reset.log 2013-08-22 01:44 - 2013-08-22 01:44 - 00000000 ____D C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme\Zubehör 2013-08-22 01:44 - 2013-08-22 01:25 - 00181064 _____ (Sysinternals) C:\WINDOWS\PSEXESVC.EXE 2013-08-22 01:44 - 2011-03-23 16:06 - 00000000 ____D C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme 2013-08-22 01:44 - 2006-11-03 13:02 - 00023392 _____ C:\WINDOWS\system32\nscompat.tlb 2013-08-22 01:44 - 2006-11-03 13:02 - 00016832 _____ C:\WINDOWS\system32\amcompat.tlb 2013-08-22 01:42 - 2006-11-03 13:00 - 01085076 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-08-22 01:21 - 2013-08-22 01:21 - 00000000 ____D C:\RegBackup 2013-08-22 01:21 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\repair 2013-08-22 01:21 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\Registration 2013-08-22 00:49 - 2012-11-12 18:49 - 00088311 _____ C:\WINDOWS\setupapi.log 2013-08-22 00:06 - 2013-08-22 00:06 - 00001790 _____ C:\Dokumente und Einstellungen\***\Desktop\Tweaking.com - Windows Repair (All in One).lnk 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Programme\Tweaking.com 2013-08-22 00:06 - 2013-08-22 00:06 - 00000000 ____D C:\Dokumente und Einstellungen\***\Startmenü\Programme\Tweaking.com 2013-08-22 00:06 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Startmenü\Programme 2013-08-22 00:06 - 2006-11-03 12:58 - 00000000 ___RD C:\Programme 2013-08-22 00:05 - 2013-08-22 00:05 - 05369204 _____ C:\Dokumente und Einstellungen\***\Desktop\tweaking.com_windows_repair_aio_setup.exe 2013-08-21 08:21 - 2013-08-21 08:21 - 00358923 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FSS.exe 2013-08-21 07:53 - 2013-08-21 07:53 - 00448512 _____ (OldTimer Tools) C:\Dokumente und Einstellungen\***\Desktop\TFC.exe 2013-08-21 07:51 - 2009-12-02 22:07 - 00000000 ____D C:\Programme\Gemeinsame Dateien\Java 2013-08-19 08:07 - 2013-08-19 08:06 - 00019904 _____ C:\WINDOWS\KB2870699-IE8.log 2013-08-19 08:07 - 2012-12-13 14:43 - 00023691 _____ C:\WINDOWS\updspapi.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00270988 _____ C:\WINDOWS\FaxSetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00130064 _____ C:\WINDOWS\ocgen.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00103796 _____ C:\WINDOWS\tsoc.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00090716 _____ C:\WINDOWS\comsetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00054919 _____ C:\WINDOWS\ntdtcsetup.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00043330 _____ C:\WINDOWS\iis6.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00015048 _____ C:\WINDOWS\ocmsn.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00013596 _____ C:\WINDOWS\msgsocm.log 2013-08-19 08:07 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.log 2013-08-19 08:07 - 2011-03-23 01:48 - 00000000 ____D C:\WINDOWS\ie8updates 2013-08-19 08:04 - 2013-08-19 08:04 - 00010991 _____ C:\WINDOWS\KB2834904-v2.log 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876315$ 2013-08-19 08:04 - 2013-08-19 08:04 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2834904-v2_WM11$ 2013-08-19 08:04 - 2013-08-18 23:27 - 00021051 _____ C:\WINDOWS\KB2876315.log 2013-08-19 08:04 - 2012-11-24 13:42 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876217$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2864063$ 2013-08-19 08:03 - 2013-08-19 08:03 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2850869$ 2013-08-19 08:03 - 2013-08-18 23:27 - 00020090 _____ C:\WINDOWS\KB2876217.log 2013-08-19 08:03 - 2013-08-18 23:27 - 00019558 _____ C:\WINDOWS\KB2864063.log 2013-08-19 08:03 - 2013-08-18 23:27 - 00018725 _____ C:\WINDOWS\KB2850869.log 2013-08-19 08:02 - 2013-08-19 08:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2859537$ 2013-08-19 08:02 - 2013-08-18 23:26 - 00020394 _____ C:\WINDOWS\KB2859537.log 2013-08-19 08:01 - 2006-11-03 13:00 - 00000603 _____ C:\WINDOWS\win.ini 2013-08-19 08:01 - 2006-11-03 12:58 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-19 07:58 - 2013-08-19 07:58 - 00010660 _____ C:\WINDOWS\KB2863058.log 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2863058$ 2013-08-19 07:58 - 2013-08-19 07:58 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2849470$ 2013-08-19 07:58 - 2007-07-14 11:37 - 00887602 _____ C:\WINDOWS\system32\TZLog.log 2013-08-19 07:51 - 2013-08-19 07:47 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-19 07:46 - 2006-11-03 12:58 - 00000000 ___RD C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2013-08-19 07:35 - 2013-08-19 07:35 - 01082693 _____ (Farbar) C:\Dokumente und Einstellungen\***\Desktop\FRST.exe 2013-08-19 07:09 - 2013-08-19 07:09 - 00891144 _____ C:\Dokumente und Einstellungen\***\Desktop\SecurityCheck.exe 2013-08-19 00:33 - 2012-11-06 13:09 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-08-19 00:33 - 2012-11-06 13:09 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-08-18 23:04 - 2012-11-06 13:11 - 00002347 _____ C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Adobe Reader XI.lnk 2013-08-18 22:58 - 2013-08-18 22:58 - 00000000 __SHD C:\Dokumente und Einstellungen\***\IECompatCache 2013-08-18 22:58 - 2012-11-06 12:49 - 00136672 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2013-08-18 22:58 - 2012-11-06 12:49 - 00088840 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2013-08-18 00:03 - 2013-08-18 00:02 - 00031200 _____ C:\Dokumente und Einstellungen\***\Desktop\Addition.txt 2013-08-18 00:01 - 2013-08-18 00:01 - 00000000 ____D C:\FRST 2013-08-17 23:51 - 2013-08-17 23:51 - 00000687 _____ C:\Dokumente und Einstellungen\***\Desktop\JRT.txt 2013-08-17 23:43 - 2013-08-17 23:43 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-17 23:15 - 2013-08-17 22:48 - 00000000 ____D C:\AdwCleaner 2013-08-17 20:17 - 2006-11-03 12:58 - 00000000 ___HD C:\WINDOWS\$NtUninstallKB925486$ 2013-08-17 09:49 - 2013-08-17 09:49 - 00000000 ____D C:\_OTL 2013-08-17 09:49 - 2007-01-11 15:26 - 00000000 ___RD C:\Dokumente und Einstellungen\***\Startmenü\Programme\Autostart 2013-08-17 09:12 - 2013-08-17 09:12 - 00018664 _____ C:\Extras.Txt 2013-08-17 09:12 - 2013-08-17 08:58 - 00090744 _____ C:\OTL.Txt 2013-08-17 00:28 - 2012-11-12 18:50 - 00000082 _____ C:\WINDOWS\setupact.log 2013-08-15 01:21 - 2007-07-24 21:20 - 00000190 ___SH C:\Dokumente und Einstellungen\*****\ntuser.ini 2013-08-15 01:21 - 2007-07-24 21:20 - 00000000 ____D C:\Dokumente und Einstellungen\***** 2013-08-15 01:17 - 2013-08-15 01:16 - 00000531 _____ C:\WINDOWS\wmsetup.log 2013-08-09 03:56 - 2006-11-03 13:00 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2013-08-09 03:56 - 2006-11-03 13:00 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\themeui.dll 2013-08-08 08:09 - 2006-11-03 13:02 - 01877888 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2013-08-08 08:09 - 2006-11-03 13:02 - 01877888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\win32k.sys 2013-08-08 08:05 - 2012-06-17 08:41 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2013-08-08 08:05 - 2011-03-23 01:47 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2013-08-08 08:05 - 2009-03-08 05:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2013-08-08 08:05 - 2009-03-08 05:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2013-08-08 08:05 - 2009-03-08 05:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2013-08-08 08:05 - 2009-03-08 05:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 01215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2013-08-08 08:05 - 2006-11-03 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 06017536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 01469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2013-08-08 08:05 - 2006-11-03 12:59 - 01469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2013-08-08 08:05 - 2006-11-03 12:59 - 00611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2013-08-08 08:05 - 2006-11-03 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2013-08-08 05:32 - 2006-11-03 13:00 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2013-08-08 05:32 - 2006-11-03 13:00 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2013-08-08 02:02 - 2006-11-03 13:00 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2013-08-05 15:30 - 2006-11-03 13:00 - 01289728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2013-08-05 15:30 - 2006-11-03 13:00 - 01289728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ole32.dll 2013-08-03 01:48 - 2006-10-18 21:47 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmvdecod.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-11-03 13:00] - [2008-04-14 04:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\Windows\System32\winlogon.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\Windows\System32\svchost.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\Windows\System32\services.exe [2006-11-03 13:00] - [2009-02-09 13:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\Windows\System32\User32.dll [2006-11-03 13:00] - [2008-04-14 04:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\Windows\System32\userinit.exe [2006-11-03 13:00] - [2008-04-14 04:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\Windows\System32\Drivers\volsnap.sys [2006-11-03 13:02] - [2008-04-14 03:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
Themen zu WinXP 32Bit, Bundesamt für Polizei, Sperrbildschirm |
adobe, adobe reader xi, antivir, avira, bho, desktop, einstellungen, firefox, flash player, ftp, homepage, mozilla, object, plug-in, registry, rundll, schannel.dll, security, software, trojan.agent, trojan.exploitdrop.ws, trojan.ransom.ed, windows, windows xp |