|
Log-Analyse und Auswertung: 100% CPU AuslastungWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
19.05.2014, 19:24 | #1 |
| 100% CPU Auslastung Hallo zusammen Habe seitdem ich mir ein neues Netzteil gekauft habe probleme mit meinem PC undzwar das ich bei jedem kleinen dreck den ich mache meine CPU auslastung mega hoch steigt. Beim starten dauert es erstmal ziemlich lange und bei nem rechtsklick den ich z.b. aufn desktop mache steigt sie schon auf 30% hoch ! bitte leute helft mir weis nicht was ich tun soll und kenne mich auch nicht wirklich mit pcs aus. mfg niclas |
19.05.2014, 19:28 | #2 |
/// Malwareteam | 100% CPU Auslastung Hallo Niclas,
__________________mein Name ist Jonas und ich werde dir bei deiner Bereinigung helfen. Diese kann mit viel Arbeit für dich verbunden sein. Bevor wir anfangen können, lies bitte die Bereinigungsregeln und Hinweise: Regeln zum Ablauf der Bereinigung
Hinweis Wenn du alles gelesen hast, kann es losgehen. Bitte speichere alle Programme auf dem Desktop und führe sie von dort aus.
Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Poste folgende Logfiles in deiner nächsten Antwort:
__________________ |
19.05.2014, 19:46 | #3 |
| 100% CPU AuslastungCode:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:17-05-2014 Ran by Niclas (administrator) on NICLAS-PC on 19-05-2014 20:33:32 Running from C:\Users\Niclas\Downloads Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: German Standard Internet Explorer Version 7 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AOL LLC) C:\Program Files\Common Files\aol\ACS\AOLacsd.exe (APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe () C:\Program Files\Web Assistant\ExtensionUpdaterService.exe () C:\Windows\System32\dmwu.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Windows\System32\PnkBstrA.exe () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe () C:\Program Files\Web Assistant\ExtensionUpdaterService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Auslogics) C:\Program Files\Auslogics\BoostSpeed\BoostSpeed.exe (APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe () C:\Program Files\MP4 Player\Mp4Player.exe (Spotify Ltd) C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe () C:\Windows\System32\jmdp\stij.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Windows\System32\mobsync.exe (Microsoft Corporation) C:\Windows\System32\conime.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (RealNetworks, Inc.) C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe (Microsoft Corporation) C:\Windows\System32\conime.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] => "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [TkBellExe] => c:\program files\real\realplayer\Update\realsched.exe [295512 2013-06-22] (RealNetworks, Inc.) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [ApnTBMon] => C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1758160 2014-02-13] (APN) HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [KPeerNexonEU] => C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe [438272 2011-12-18] (NEXON Inc.) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [monitor@addlyrics.net] => C:\Program Files\AddLyrics\adlmon.exe HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [MP4 Player] => C:\Program Files\MP4 Player\mp4Player.exe [772096 2008-11-06] () HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [Spotify] => C:\Users\Niclas\AppData\Roaming\Spotify\Spotify.exe [6087224 2014-05-07] (Spotify Ltd) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [Spotify Web Helper] => C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171000 2014-05-07] (Spotify Ltd) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [NTRedirect] => C:\Windows\system32\rundll32.exe "C:\Users\Niclas\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449760 2013-10-31] (Sony) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\MountPoints2: {b2835c26-06c0-11e3-8911-00173188a745} - F:\Startme.exe ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=CC6100173188A745&affID=119360&tsp=4966 HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm URLSearchHook: HKCU - (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File URLSearchHook: HKCU - (No Name) - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - No File URLSearchHook: HKCU - (No Name) - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - No File SearchScopes: HKLM - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848 SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848 SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://isearch.babylon.com/?q={searchTerms}&babsrc=SP_ss_Btisdt4&mntrId=CC6100173188A745&affID=119360&tsp=4966 SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://isearch.babylon.com/?q={searchTerms}&babsrc=SP_ss_Btisdt4&mntrId=CC6100173188A745&affID=119360&tsp=4966 SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=crm&q={searchTerms}&locale=de_DE&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=502af735-7fb7-4980-9e89-1eb70a58967e&apn_sauid=90C47A06-CE72-41B3-BBA7-BB7F66D958DE SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848 SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/?a=6OyXaHgLRp&loc=skw&search={searchTerms} BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: IB Updater - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\Web Assistant\Extension32.dll () BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO: Incredibar.com Helper Object - {6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\bh\incredibar.dll No File BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: DealPly Shopping - {9cf699ca-2174-4ed8-bec1-ba82095edce0} - C:\Program Files\DealPly\DealPlyIE.dll (DealPly) BHO: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files\Delta\delta\1.8.22.0\bh\delta.dll (Delta-search.com) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) Toolbar: HKLM - Incredibar Toolbar - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibarTlbr.dll No File Toolbar: HKLM - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files\Delta\delta\1.8.22.0\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - No Name - {5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} - No File Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKCU - No Name - {0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKCU - No Name - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - No File DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Winsock: Catalog9 11 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [257608] (Avira Operations GmbH & Co. KG) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default FF user.js: detected! => C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\user.js FF NewTab: hxxp://mystart.incredibar.com/?a=6OyXaHgLRp&loc=skw FF DefaultSearchEngine: Google FF SearchEngineOrder.1: Delta Search FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.de/ FF Keyword.URL: hxxp://mystart.incredibar.com/?a=6OyXaHgLRp&i=26&loc=skw&search= FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_206.dll () FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin: @real.com/nppl3260;version=16.0.2.32 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprphtml5videoshim;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpplugin;version=16.0.2.32 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=3 - C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd) FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=9 - C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @viewpoint.com/VMP - C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll () FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\askcom.xml FF SearchPlugin: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\BrowserDefender.xml FF SearchPlugin: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\dvdvideosofttb-de-customized-web-search.xml FF SearchPlugin: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\MyStart Search.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\StartWeb.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Delta Toolbar - C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Extensions\ffxtlbr@delta.com [2013-08-06] FF Extension: DealPly Shopping - C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Extensions\{e53a26f5-7199-4a5b-86f5-d2e86854b979} [2013-08-06] FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [2013-10-23] FF Extension: Stylish - C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2012-12-20] FF Extension: Smartest Bookmarks Bar - C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Extensions\{b442f4c0-c292-4998-aabe-48608a73ba75}.xpi [2012-12-20] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\Web Assistant\Firefox FF Extension: IB Updater - C:\Program Files\Web Assistant\Firefox [2012-07-11] FF HKLM\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\Web Assistant\Firefox FF Extension: IB Updater - C:\Program Files\Web Assistant\Firefox [2012-07-11] FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-06-22] FF HKLM\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] FF HKLM\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files\Common Files\DVDVideoSoft\plugins\ff\ FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files\Common Files\DVDVideoSoft\plugins\ff\ [] Chrome: ======= CHR HomePage: hxxp://mystart.incredibar.com/?a=6OyXaHgLRp&loc=skw CHR RestoreOnStartup: "" CHR DefaultSearchKeyword: mystart.incredibar.com/ CHR DefaultSearchProvider: MyStart CHR DefaultSearchURL: hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=CC6100173188A745&affID=119360&tsp=4966 CHR DefaultNewTabURL: CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Extension: (IB Updater) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd [2013-03-10] CHR Extension: (DealPly Shopping) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnmnhkgiphcaeefbaooconkceehicfi [2013-08-06] CHR Extension: (Delta Toolbar) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde [2013-09-03] CHR Extension: (RealDownloader) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-09-03] CHR Extension: (DVDVideoSoft) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2013-09-03] CHR Extension: (Google Wallet) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-16] CHR Extension: (SweetPacks Chrome Extension) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-11-16] CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-02-21] CHR HKLM\...\Chrome\Extension: [aaaangaohdajkgeopjhpbnlpkehbhmbj] - C:\Users\Niclas\AppData\Local\APN\GoogleCRXs\aaaangaohdajkgeopjhpbnlpkehbhmbj_7.15.4.0.crx [2012-08-11] CHR HKLM\...\Chrome\Extension: [blaofbhgbmeikidhlkmjhbkbfohpgekf] - C:\Program Files\Movie2KDownloader.com\Movie2KDownloader10.crx [2012-08-11] CHR HKLM\...\Chrome\Extension: [bmbpbcpokffodhpcdjaoopolhdlbconi] - C:\Users\Niclas\AppData\Local\Temp\tbch.crx [2012-08-11] CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\Web Assistant\source.crx [2012-07-11] CHR HKLM\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\Niclas\AppData\Roaming\BabSolution\CR\Delta.crx [2013-08-06] CHR HKLM\...\Chrome\Extension: [fgfdfcbeamjnjdejakdidpniblllnbpg] - C:\Windows\System32\jmdp\pnte.crx [2013-08-06] CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16] CHR HKLM\...\Chrome\Extension: [ogccgbmabaphcakpiclgcnmcnimhokcj] - C:\Windows\System32\jmdp\SweetNT.crx [2014-04-06] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2013-08-28] ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AOL ACS; C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe [46640 2006-10-23] (AOL LLC) R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) S2 dealplylive; C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [148000 2013-08-06] (DealPly Technologies Ltd) S3 dealplylivem; C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [148000 2013-08-06] (DealPly Technologies Ltd) R2 IB Updater; C:\Program Files\Web Assistant\ExtensionUpdaterService.exe [188760 2013-01-29] () R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [1863984 2014-04-07] () S3 npggsvc; C:\Windows\system32\GameMon.des [4705208 2012-06-25] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2012-09-23] () R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] () S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) R2 Web Assistant Updater; C:\Program Files\Web Assistant\ExtensionUpdaterService.exe [188760 2013-01-29] () S2 BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [X] ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-12-07] (Avira Operations GmbH & Co. KG) S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] () S3 PCASp50; C:\Windows\System32\Drivers\PCASp50.sys [35384 2009-10-28] (Printing Communications Assoc., Inc. (PCAUSA)) R1 prodrv06; C:\Windows\System32\drivers\prodrv06.sys [54272 2004-04-08] (Protection Technology) R0 prohlp02; C:\Windows\System32\drivers\prohlp02.sys [70400 2004-04-08] (Protection Technology) R0 prosync1; C:\Windows\System32\drivers\prosync1.sys [6944 2003-09-06] (Protection Technology) R0 sfhlp01; C:\Windows\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-12-07] (Avira GmbH) R3 wanatw; C:\Windows\System32\DRIVERS\wanatw4.sys [33588 2006-11-30] (America Online, Inc.) S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S3 XDva397; \??\C:\Windows\system32\XDva397.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2099-02-16 23:56 - 2008-01-19 00:42 - 00142904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys 2099-02-16 23:56 - 2008-01-19 00:42 - 00094776 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe 2099-02-16 23:56 - 2008-01-19 00:42 - 00058936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys 2099-02-16 23:56 - 2008-01-19 00:42 - 00057400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00035384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00034360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00031288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00024120 _____ (Microsoft Corporation) C:\Windows\system32\BOOTVID.DLL 2099-02-16 23:56 - 2008-01-19 00:41 - 00017976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00016440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys 2099-02-16 23:56 - 2008-01-19 00:38 - 04595712 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll 2099-02-16 23:56 - 2008-01-19 00:38 - 00155704 _____ (Microsoft Corporation) C:\Windows\system32\dssenh.dll 2099-02-16 23:56 - 2008-01-19 00:38 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL 2099-02-16 23:56 - 2008-01-19 00:38 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 01502208 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\ogldrv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00531456 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\p2pcollab.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\qwave.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\ppcsnap.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\provthrd.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\rgb9rast.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\SmiInstaller.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWiaCompat.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\shrink.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\oledlg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\sdshext.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\ntdsapi.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\olecli32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\olethk32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\rasman.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rasqec.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pnrpnsp.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssocPrx.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\osblprov.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\RegCtrl.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\psbase.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\sfc_os.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\odbcbcp.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\olesvr32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\PlaySndSrv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\procinst.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\sdspres.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 09847296 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04875776 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0009.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04497408 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0019.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0416.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0414.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001d.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0010.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03466752 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0013.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004e.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004c.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004b.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0049.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0047.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0046.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0045.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0039.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0020.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02657280 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0011.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02643456 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000c.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02599936 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0001.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02342912 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000d.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02243072 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0007.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01966592 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0027.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0c1a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData081a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0026.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0024.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001b.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0018.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000f.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0003.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0002.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData003e.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData002a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0022.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0021.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01523712 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0000.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\msvbvm60.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\netprof.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\msidcrl30.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00352256 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\mswmdm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\mycomput.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\msoeacct.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\mssha.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\msrdc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\nlmgp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\NAPMONTR.DLL 2099-02-16 23:56 - 2008-01-19 00:35 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\ndfapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\msoert2.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\msident.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NapiNSP.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\mspatcha.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\napipsec.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\mtxlegih.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\msidle.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 01039360 _____ (Microsoft Corporation) C:\Windows\system32\d3d8.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\d3dim700.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\colorui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00616448 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00614400 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\filemgmt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\dsquery.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\dmdlgs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00384512 _____ (Microsoft Corporation) C:\Windows\system32\d3dim.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\msdtckrm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\msdelta.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\CompatUI.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\comsnap.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\msdt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\mdminst.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\lltdsvc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\mlang.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00178688 _____ (Microsoft Corporation) C:\Windows\system32\dmime.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\dsdmo.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\msdadiag.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\dinput8.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\keymgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\dbnetlib.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\McxDriv.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\msdart.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mprmsg.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\msaatext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\loadperf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iscsiexe.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\comrepl.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\msdtclog.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\efsadu.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\dmscript.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\IPBusEnum.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\loghours.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\EAPQEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\DHCPQEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\dxva2.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\colbact.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\dhcpsapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\eapsvc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\DfsShlEx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\d3dxof.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\dnshc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\dot3dlg.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\mmcss.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dssec.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpclnt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\dmocx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dfdts.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\dmloader.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\esentprf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\dispci.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\dimsjob.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lltdapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\localui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\ktmw32.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\KBDJPN.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\KBDKOR.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\iscsied.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 05714432 _____ (Microsoft Corporation) C:\Windows\system32\logon.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 02585088 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 01405952 _____ (Microsoft Corporation) C:\Windows\system32\ActiveContentWizard.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00879616 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\clbcatq.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00520704 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWGP.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00485376 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\catsrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\shrpubw.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00334336 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\cmipnpinstall.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\NAPSTAT.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\adsnt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00251904 _____ (Microsoft Corporation) C:\Windows\system32\authfwcfg.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\audiodev.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00226816 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\apircl.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\apss.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\p2phost.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00163840 _____ (Microsoft Corp.) C:\Windows\system32\DfrgNtfs.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msdt.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\raserver.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\DpiScaling.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151040 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\CompMgmtLauncher.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00134656 _____ (Microsoft Corporation) C:\Windows\regedit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe |
19.05.2014, 19:47 | #4 |
| 100% CPU AuslastungCode:
ATTFilter 2099-02-16 23:56 - 2008-01-19 00:33 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mtstocom.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\dispdiag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\msscript.ocx 2099-02-16 23:56 - 2008-01-19 00:33 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\msdtc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayApi.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\makecab.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\OptionalFeatures.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00096768 _____ (Microsoft Corp.) C:\Windows\system32\dfrgfat.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\diantz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\btpanui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\dmview.ocx 2099-02-16 23:56 - 2008-01-19 00:33 - 00087552 _____ (Microsoft) C:\Windows\system32\Robocopy.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\ACW.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\cmdl32.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\DFDWiz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\driverquery.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\cmicryptinstall.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\alg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\dfrgifc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00058880 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PushPrinterConnections.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\expand.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\brcplsdw.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\net.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\bcdprov.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\cmutil.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\regini.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\lodctr.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\lnkstub.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\SecEdit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\cmlua.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\shutdown.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AtBroker.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Netplwiz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\at.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\amxread.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\RacAgent.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\capisp.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\convert.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\apilogen.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\setupSNK.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\batt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\avrt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\sbunattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\csrss.exe 2099-02-16 23:56 - 2008-01-19 00:32 - 02249216 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 01370624 _____ (Microsoft Corporation) C:\Windows\system32\Aurora.scr 2099-02-16 23:56 - 2008-01-19 00:32 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\joy.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2099-02-16 23:56 - 2008-01-19 00:31 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll 2099-02-16 23:56 - 2008-01-19 00:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2099-02-16 23:56 - 2008-01-19 00:29 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2099-02-16 23:56 - 2008-01-18 23:01 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll 2099-02-16 23:56 - 2008-01-18 23:01 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPENCDD.sys 2099-02-16 23:56 - 2008-01-18 23:01 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys 2099-02-16 23:56 - 2008-01-18 22:57 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys 2099-02-16 23:56 - 2008-01-18 22:57 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys 2099-02-16 23:56 - 2008-01-18 22:54 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys 2099-02-16 23:56 - 2008-01-18 22:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bdasup.sys 2099-02-16 23:56 - 2008-01-18 22:53 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2099-02-16 23:56 - 2008-01-18 22:52 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys 2099-02-16 23:56 - 2008-01-18 22:50 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serial.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parport.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fdc.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serenum.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parvdm.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00005888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00005504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\dmdskres2.dll 2099-02-16 23:56 - 2008-01-18 22:48 - 01291264 _____ (Microsoft Corporation) C:\Windows\system32\comres.dll 2099-02-16 23:56 - 2008-01-18 22:48 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msdtcVSp1res.dll 2099-02-16 23:56 - 2008-01-18 22:43 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\activeds.tlb 2099-02-16 23:56 - 2008-01-18 22:36 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxapi.sys 2099-02-16 23:56 - 2008-01-18 22:30 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys 2099-02-16 23:56 - 2008-01-18 22:30 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys 2099-02-16 23:56 - 2008-01-18 22:28 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys 2099-02-16 23:56 - 2008-01-18 22:27 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys 2099-02-16 23:56 - 2008-01-18 22:27 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\bootstr.dll 2099-02-16 23:56 - 2008-01-05 04:32 - 00120458 _____ () C:\Windows\system32\secpol.msc 2099-02-16 23:56 - 2008-01-05 04:32 - 00001820 _____ () C:\Windows\system32\rasctrnm.h 2099-02-16 23:56 - 2008-01-05 04:31 - 00145455 _____ () C:\Windows\system32\perfmon.msc 2099-02-16 23:55 - 2011-05-05 18:01 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\hcrstco.dll 2099-02-16 23:55 - 2008-01-19 00:42 - 00052792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00021048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spldr.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00017976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00015288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys 2099-02-16 23:55 - 2008-01-19 00:37 - 01675264 _____ (Microsoft Corporation) C:\Windows\system32\xpssvcs.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 01642496 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 01329152 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 01295360 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00767488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\XPSSHHDR.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\xwizards.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\WMASF.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\wmidx.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\wmvdspa.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\xwtpw32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\xactsrv.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\wzcdlg.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wscmisetup.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\wmpcm.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wscproxystub.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\WSHTCPIP.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\wship6.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 02588160 _____ (Microsoft Corporation) C:\Windows\system32\UIHub.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 01298432 _____ (Microsoft Corporation) C:\Windows\system32\TMM.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00913408 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\unbcl.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\sqlceqp30.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00498688 _____ (Microsoft Corporation) C:\Windows\system32\wlandlg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wiashext.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00415744 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00251904 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\verifier.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\uudf.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\WLanHC.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\sstpsvc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\TapiMigPlugin.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\Tabbtn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\ufat.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\txflog.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\wiascanprofiles.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\usbui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\trkwks.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\winethc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\uexfat.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\tbssvc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\TabbtnEx.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\vdmredir.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00041472 _____ (Microsoft) C:\Windows\system32\WlanMmHC.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WinFax.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\srwmi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\txfw32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00890368 _____ (Microsoft Corporation) C:\Windows\system32\FXSST.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMPOSE.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00473088 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\FXSXP32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\hnetcfg.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\FXSUTILITY.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\icsfiltr.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\ieencode.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOM.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\GuidedHelp.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\FXSROUTE.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\HelpPaneProxy.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\fwcfg.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\FXSEXT32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 08139264 _____ (Microsoft Corporation) C:\Windows\system32\ssBranded.scr 2099-02-16 23:55 - 2008-01-19 00:33 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2099-02-16 23:55 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00498176 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr 2099-02-16 23:55 - 2008-01-19 00:33 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgrade.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\WinFXDocObj.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\SoundRecorder.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\verifier.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\vssadmin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TpmInit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\bootcfg.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\systeminfo.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wlanext.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2099-02-16 23:55 - 2008-01-19 00:33 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\getmac.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\gacinstall.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\ucsvc.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\xcopy.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\UI0Detect.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\unattendedjoin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\syskey.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\blb_ps.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\iashost.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\srdelayed.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\fveupdate.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe 2099-02-16 23:55 - 2008-01-19 00:32 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl 2099-02-16 23:55 - 2008-01-19 00:32 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl 2099-02-16 23:55 - 2008-01-19 00:31 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll 2099-02-16 23:55 - 2008-01-19 00:29 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\imagesp1.dll 2099-02-16 23:55 - 2008-01-18 23:15 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WSDPrint.sys 2099-02-16 23:55 - 2008-01-18 23:14 - 00925184 _____ (Microsoft Corporation) C:\Windows\system32\FXSRESM.dll 2099-02-16 23:55 - 2008-01-18 23:14 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\tsddd.dll 2099-02-16 23:55 - 2008-01-18 22:57 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys 2099-02-16 23:55 - 2008-01-18 22:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2099-02-16 23:55 - 2008-01-18 22:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys 2099-02-16 23:55 - 2008-01-18 22:55 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TUNMP.SYS 2099-02-16 23:55 - 2008-01-18 22:53 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys 2099-02-16 23:55 - 2008-01-18 22:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umpass.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\vga256.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vga.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\vga64k.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\framebuf.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\vga.dll 2099-02-16 23:55 - 2008-01-18 22:49 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys 2099-02-16 23:55 - 2008-01-18 22:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys 2099-02-16 23:55 - 2008-01-18 22:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\wertargets.wtl 2099-02-16 23:55 - 2008-01-18 22:33 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\graftabl.com 2099-02-16 23:55 - 2008-01-18 22:31 - 08322048 _____ (Microsoft Corporation) C:\Windows\system32\spwizimg.dll 2099-02-16 23:55 - 2008-01-18 22:30 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll 2099-02-16 23:55 - 2008-01-18 22:28 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys 2099-02-16 23:55 - 2008-01-05 04:34 - 00147439 _____ () C:\Windows\system32\gpedit.msc 2099-02-16 23:55 - 2008-01-05 04:34 - 00015181 _____ () C:\Windows\system32\gatherWirelessInfo.vbs 2099-02-16 23:55 - 2008-01-05 04:23 - 00060124 _____ () C:\Windows\system32\tcpmon.ini 2099-02-16 23:55 - 2008-01-05 04:22 - 00144909 _____ () C:\Windows\system32\fsmgmt.msc 2099-02-16 23:55 - 2008-01-05 04:21 - 00012198 _____ () C:\Windows\system32\gatherWiredInfo.vbs 2099-02-16 23:54 - 2007-12-06 06:04 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\kbd106n.dll 2099-02-16 23:45 - 2099-02-17 00:04 - 00196608 _____ () C:\Windows\SPInstall.etl 2099-02-16 23:44 - 2099-02-16 23:45 - 455611504 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB936330-X86-wave0.exe 2099-02-16 22:53 - 2099-02-16 22:53 - 08531968 _____ () C:\Users\Niclas\Downloads\SteamInstall_German.msi 2099-02-16 21:50 - 2014-05-09 19:33 - 00000000 ____D () C:\Program Files\Common Files\Steam 2099-02-16 21:45 - 2099-02-16 21:45 - 00000000 ____D () C:\Windows\system32\EventProviders 2099-02-16 20:56 - 2099-02-16 21:45 - 365230920 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB948465-X86.exe 2099-02-16 20:47 - 2099-02-16 20:47 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Macromedia 2099-02-16 20:47 - 2014-05-07 21:25 - 00000000 ____D () C:\ProgramData\NVIDIA 2099-02-16 20:47 - 2013-08-31 21:35 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Adobe 2099-02-16 20:44 - 2008-06-18 18:46 - 01079840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpluir.dll 2099-02-16 20:44 - 2008-06-18 18:46 - 00854560 _____ (NVIDIA Corporation) C:\Windows\system32\nvcplui.exe 2099-02-16 20:44 - 2008-06-18 18:46 - 00428576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.cpl 2099-02-16 20:43 - 2099-02-16 20:43 - 65450048 _____ (NVIDIA Corporation ) C:\Users\Niclas\Downloads\177.41_geforce_winvista_32bit_international_whql.exe 2099-02-16 20:43 - 2011-12-31 19:35 - 00000000 ____D () C:\NVIDIA 2099-02-16 20:43 - 2008-06-16 17:34 - 00446464 _____ (NVIDIA Corporation) C:\Windows\system32\NVUNINST.EXE 2099-02-16 20:42 - 2099-02-16 20:42 - 00000000 ____D () C:\Windows\system32\Macromed 2099-02-16 20:42 - 2014-05-19 20:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2099-02-16 20:36 - 2099-02-16 20:37 - 00000000 ____D () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64 2099-02-16 20:36 - 2099-02-16 20:36 - 249660486 _____ () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64.zip 2099-02-16 20:36 - 2011-12-31 16:10 - 00002669 _____ () C:\Users\Public\Desktop\NETGEAR Powerline Utility.lnk 2099-02-16 20:35 - 2099-02-16 20:35 - 00000000 ____D () C:\Users\Niclas\AppData\Local\{06F8A00D-727E-483E-B2EC-21C7EE145549} 2099-02-16 20:34 - 2099-02-16 20:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Powerline 2099-02-16 20:34 - 2099-02-16 20:35 - 11840088 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\NETGEAR_Powerline_Setup_V2.0.0.8_230-10802-04.exe 2099-02-16 20:34 - 2099-02-16 20:35 - 00000000 ____D () C:\Program Files\NETGEAR 2099-02-16 20:34 - 2099-02-16 20:34 - 06535984 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\XAV5001_FW_upgrade_v2.0.0.0.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Downloaded Installations 2099-02-16 20:34 - 2014-01-15 18:29 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2099-02-16 20:34 - 2009-10-28 11:59 - 00035384 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\Windows\system32\Drivers\PcaSp50.sys 2099-02-16 20:32 - 2099-02-16 20:35 - 87132736 _____ () C:\Users\Niclas\Downloads\avira_free_antivirus_de.exe 2099-02-16 20:16 - 2099-02-16 20:16 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Mozilla 2099-02-16 20:16 - 2013-07-16 20:12 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Mozilla 2099-02-16 20:16 - 2012-04-26 17:43 - 00000870 _____ () C:\Users\Niclas\Desktop\Mozilla Firefox.lnk 2099-02-16 20:16 - 2012-04-26 17:43 - 00000858 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2099-02-16 16:05 - 2099-02-16 16:05 - 00000020 ___SH () C:\Users\Niclas\ntuser.ini 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Startmenü 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Netzwerkumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Druckumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Musik 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Bilder 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Local\Verlauf 2099-02-16 16:05 - 2014-05-17 01:33 - 00000680 _____ () C:\Users\Niclas\AppData\Local\d3d9caps.dat 2099-02-16 16:05 - 2014-05-09 20:26 - 00000000 ____D () C:\Users\Niclas\AppData\Local\VirtualStore 2099-02-16 16:05 - 2014-05-09 19:33 - 00000000 ____D () C:\Users\Niclas 2099-02-16 16:05 - 2013-07-28 18:07 - 00049168 _____ () C:\Users\Niclas\AppData\Local\GDIPFONTCACHEV1.DAT 2099-02-16 16:05 - 2011-12-14 18:33 - 00000944 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2099-02-16 16:05 - 2011-12-13 15:21 - 00000949 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2099-02-16 16:05 - 2011-12-13 15:21 - 00000915 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2099-02-16 16:05 - 2006-11-02 14:54 - 00000000 ___RD () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-16 16:05 - 2006-11-02 14:50 - 00000000 ___RD () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Dokumente 2099-02-16 14:49 - 2099-02-16 14:49 - 00000604 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live.lnk 2099-02-16 14:46 - 2099-02-16 14:46 - 00000000 ____D () C:\Windows\CSC 2099-02-16 14:44 - 2012-04-27 14:34 - 00000000 ____D () C:\Windows\Panther 2099-02-16 14:43 - 2099-02-16 14:43 - 00008192 ___RS () C:\BOOTSECT.BAK 2099-02-16 14:43 - 2009-04-11 00:36 - 00333257 __RSH () C:\bootmgr 2014-05-19 20:33 - 2014-05-19 20:34 - 00024544 _____ () C:\Users\Niclas\Downloads\FRST.txt 2014-05-19 20:31 - 2014-05-19 20:33 - 00000000 ____D () C:\FRST 2014-05-19 20:31 - 2014-05-19 20:31 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST.exe 2014-05-17 23:55 - 2014-05-17 23:55 - 01243655 _____ () C:\Users\Niclas\Downloads\ProcessExplorer_16.02.zip 2014-05-09 23:56 - 2014-05-09 23:59 - 00004938 _____ () C:\Windows\DPINST.LOG 2014-05-09 23:03 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Users\Du Lappen\Desktop\svchost.exe 2014-05-09 22:54 - 2014-05-09 22:54 - 00000104 _____ () C:\Users\Du Lappen\Desktop\Computer - Verknüpfung.lnk 2014-05-09 21:35 - 2014-05-09 21:35 - 00000000 ____D () C:\Users\Du Lappen\AppData\Roaming\Avira 2014-05-09 21:28 - 2014-05-09 21:28 - 00000000 ____D () C:\Users\Du Lappen\AppData\Local\NVIDIA 2014-05-09 21:19 - 2014-05-09 21:19 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-09 21:18 - 2014-05-09 21:18 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-09 21:18 - 2014-04-14 20:13 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-05-09 21:18 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-05-09 21:18 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-05-09 21:18 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-05-09 21:16 - 2014-05-09 21:18 - 00006043 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-05-09 21:16 - 2014-05-09 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-09 21:08 - 2014-05-09 21:08 - 00004360 _____ () C:\Windows\PFRO.log 2014-05-09 20:27 - 2014-05-09 20:38 - 00009607 _____ () C:\Users\Niclas\Downloads\hijackthis.log 2014-05-09 20:26 - 2014-05-09 20:26 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics BoostSpeed.lnk 2014-05-09 20:25 - 2014-05-09 20:25 - 17033488 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\boost-speed-setup.exe 2014-05-09 20:08 - 2014-05-09 20:08 - 00388608 _____ (Trend Micro Inc.) C:\Users\Niclas\Downloads\HiJackThis204.exe 2014-05-09 20:00 - 2014-05-09 20:27 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-09 20:00 - 2014-05-09 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics 2014-05-09 20:00 - 2014-05-09 20:26 - 00000000 ____D () C:\Program Files\Auslogics 2014-05-09 20:00 - 2014-05-09 20:00 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics DiskDefrag.lnk 2014-05-09 19:58 - 2014-05-09 19:58 - 06225592 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\disk-defrag-454setup.exe 2014-05-07 21:26 - 2014-05-07 21:26 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-05-07 21:25 - 2014-05-09 19:33 - 00000000 ____D () C:\Users\Niclas\{85ea8232-30ba-4e41-ba0a-6ea33822f4fa} 2014-05-07 21:17 - 2014-03-04 16:29 - 23716640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 10523480 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-07 21:17 - 2014-03-04 16:29 - 09690424 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 02956632 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 02411976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 01049888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233523.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 00894296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233523.dll 2014-05-07 21:16 - 2014-03-04 16:29 - 17559384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-07 21:16 - 2014-03-04 16:29 - 09728064 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-07 21:11 - 2014-05-07 21:11 - 00000000 ____D () C:\Users\Niclas\AppData\Local\AskPartnerNetwork 2014-05-06 23:17 - 2014-04-29 15:10 - 03627520 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 23:17 - 2014-04-29 13:42 - 01383424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 23:17 - 2014-02-06 03:56 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-06 23:02 - 2014-05-06 23:02 - 00000000 ____D () C:\Windows\system32\jmdp ==================== One Month Modified Files and Folders ======= 2099-02-17 00:27 - 2012-09-23 12:26 - 00000000 ___RD () C:\Users\Du Lappen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2012-09-23 12:26 - 00000000 ___RD () C:\Users\Du Lappen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 14:55 - 00001743 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2099-02-17 00:27 - 2006-11-02 14:50 - 00000749 ___RH () C:\Windows\WindowsShell.Manifest 2099-02-17 00:27 - 2006-11-02 14:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades 2099-02-17 00:21 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\DigitalLocker 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ras 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\icsxml 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ias 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\com 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\MSAgent 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\L2Schemas 2099-02-17 00:11 - 2006-11-02 12:32 - 00101888 _____ (Infineon Technologies AG) C:\Windows\system32\ifxcardm.dll 2099-02-17 00:10 - 2006-11-02 12:32 - 00082432 _____ (Gemalto, Inc.) C:\Windows\system32\axaltocm.dll 2099-02-17 00:04 - 2099-02-16 23:45 - 00196608 _____ () C:\Windows\SPInstall.etl 2099-02-16 23:45 - 2099-02-16 23:44 - 455611504 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB936330-X86-wave0.exe 2099-02-16 22:53 - 2099-02-16 22:53 - 08531968 _____ () C:\Users\Niclas\Downloads\SteamInstall_German.msi 2099-02-16 21:45 - 2099-02-16 21:45 - 00000000 ____D () C:\Windows\system32\EventProviders 2099-02-16 21:45 - 2099-02-16 20:56 - 365230920 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB948465-X86.exe 2099-02-16 20:47 - 2099-02-16 20:47 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Macromedia 2099-02-16 20:46 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\rescache 2099-02-16 20:44 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Help 2099-02-16 20:43 - 2099-02-16 20:43 - 65450048 _____ (NVIDIA Corporation ) C:\Users\Niclas\Downloads\177.41_geforce_winvista_32bit_international_whql.exe 2099-02-16 20:42 - 2099-02-16 20:42 - 00000000 ____D () C:\Windows\system32\Macromed 2099-02-16 20:37 - 2099-02-16 20:36 - 00000000 ____D () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64 2099-02-16 20:36 - 2099-02-16 20:36 - 249660486 _____ () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64.zip 2099-02-16 20:36 - 2099-02-16 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Powerline 2099-02-16 20:35 - 2099-02-16 20:35 - 00000000 ____D () C:\Users\Niclas\AppData\Local\{06F8A00D-727E-483E-B2EC-21C7EE145549} 2099-02-16 20:35 - 2099-02-16 20:34 - 11840088 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\NETGEAR_Powerline_Setup_V2.0.0.8_230-10802-04.exe 2099-02-16 20:35 - 2099-02-16 20:34 - 00000000 ____D () C:\Program Files\NETGEAR 2099-02-16 20:35 - 2099-02-16 20:32 - 87132736 _____ () C:\Users\Niclas\Downloads\avira_free_antivirus_de.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 06535984 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\XAV5001_FW_upgrade_v2.0.0.0.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Downloaded Installations 2099-02-16 20:31 - 2006-11-02 14:50 - 00001661 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk 2099-02-16 20:16 - 2099-02-16 20:16 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Mozilla 2099-02-16 17:10 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\system32\restore 2099-02-16 16:05 - 2099-02-16 16:05 - 00000020 ___SH () C:\Users\Niclas\ntuser.ini 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Startmenü 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Netzwerkumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Druckumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Musik 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Bilder 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Dokumente 2099-02-16 16:03 - 2006-11-02 13:18 - 00000000 __RHD () C:\Users\Default 2099-02-16 14:49 - 2099-02-16 14:49 - 00000604 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live.lnk 2099-02-16 14:46 - 2099-02-16 14:46 - 00000000 ____D () C:\Windows\CSC 2099-02-16 14:43 - 2099-02-16 14:43 - 00008192 ___RS () C:\BOOTSECT.BAK 2099-02-16 14:43 - 2006-11-02 14:43 - 00037888 ____H () C:\Windows\system32\config\BCD-Template.LOG 2099-02-16 14:43 - 2006-11-02 14:37 - 00262144 _____ () C:\Windows\system32\config\BCD-Template 2014-05-19 20:34 - 2014-05-19 20:33 - 00024544 _____ () C:\Users\Niclas\Downloads\FRST.txt 2014-05-19 20:33 - 2014-05-19 20:31 - 00000000 ____D () C:\FRST 2014-05-19 20:33 - 2011-12-30 19:07 - 00001963 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 20:33 - 2011-12-30 19:07 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-19 20:31 - 2014-05-19 20:31 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST.exe 2014-05-19 20:18 - 2013-08-06 03:13 - 00000894 _____ () C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job 2014-05-19 20:14 - 2013-08-06 03:13 - 00000294 _____ () C:\Windows\Tasks\Dealply.job 2014-05-19 20:08 - 2099-02-16 20:42 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-05-19 20:08 - 2013-03-20 20:48 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-05-19 20:08 - 2013-03-20 20:48 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-19 20:08 - 2011-12-16 15:15 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\TS3Client 2014-05-19 20:06 - 2013-08-01 01:20 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Spotify 2014-05-19 20:03 - 2006-11-02 14:52 - 02093592 _____ () C:\Windows\WindowsUpdate.log 2014-05-19 20:03 - 2006-11-02 12:33 - 01549708 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-19 19:58 - 2013-08-06 03:13 - 00000890 _____ () C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job 2014-05-19 19:58 - 2011-12-30 19:07 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-19 19:58 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-19 19:58 - 2006-11-02 14:47 - 00004912 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-19 19:58 - 2006-11-02 14:47 - 00004912 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-18 00:05 - 2006-11-02 15:01 - 00032582 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-17 23:55 - 2014-05-17 23:55 - 01243655 _____ () C:\Users\Niclas\Downloads\ProcessExplorer_16.02.zip 2014-05-17 01:33 - 2099-02-16 16:05 - 00000680 _____ () C:\Users\Niclas\AppData\Local\d3d9caps.dat 2014-05-12 15:12 - 2012-11-02 20:26 - 00000000 ____D () C:\Program Files\Warcraft III 2014-05-10 23:12 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-05-09 23:59 - 2014-05-09 23:56 - 00004938 _____ () C:\Windows\DPINST.LOG 2014-05-09 23:06 - 2013-07-16 20:12 - 00000000 ____D () C:\ProgramData\AOL 2014-05-09 22:54 - 2014-05-09 22:54 - 00000104 _____ () C:\Users\Du Lappen\Desktop\Computer - Verknüpfung.lnk 2014-05-09 21:35 - 2014-05-09 21:35 - 00000000 ____D () C:\Users\Du Lappen\AppData\Roaming\Avira 2014-05-09 21:28 - 2014-05-09 21:28 - 00000000 ____D () C:\Users\Du Lappen\AppData\Local\NVIDIA 2014-05-09 21:28 - 2013-04-30 11:37 - 00049168 _____ () C:\Users\Du Lappen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-09 21:19 - 2014-05-09 21:19 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-09 21:18 - 2014-05-09 21:18 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-09 21:18 - 2014-05-09 21:16 - 00006043 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-05-09 21:18 - 2011-12-16 22:55 - 00000000 ____D () C:\Program Files\Java 2014-05-09 21:16 - 2014-05-09 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-09 21:08 - 2014-05-09 21:08 - 00004360 _____ () C:\Windows\PFRO.log 2014-05-09 20:38 - 2014-05-09 20:27 - 00009607 _____ () C:\Users\Niclas\Downloads\hijackthis.log 2014-05-09 20:33 - 2012-06-01 15:01 - 00000000 ____D () C:\Windows\Minidump 2014-05-09 20:27 - 2014-05-09 20:00 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-09 20:26 - 2099-02-16 16:05 - 00000000 ____D () C:\Users\Niclas\AppData\Local\VirtualStore 2014-05-09 20:26 - 2014-05-09 20:26 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics BoostSpeed.lnk 2014-05-09 20:26 - 2014-05-09 20:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics 2014-05-09 20:26 - 2014-05-09 20:00 - 00000000 ____D () C:\Program Files\Auslogics 2014-05-09 20:25 - 2014-05-09 20:25 - 17033488 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\boost-speed-setup.exe 2014-05-09 20:08 - 2014-05-09 20:08 - 00388608 _____ (Trend Micro Inc.) C:\Users\Niclas\Downloads\HiJackThis204.exe 2014-05-09 20:00 - 2014-05-09 20:00 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics DiskDefrag.lnk 2014-05-09 19:58 - 2014-05-09 19:58 - 06225592 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\disk-defrag-454setup.exe 2014-05-09 19:38 - 2013-08-01 01:25 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Spotify 2014-05-09 19:33 - 2099-02-16 21:50 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-05-09 19:33 - 2099-02-16 16:05 - 00000000 ____D () C:\Users\Niclas 2014-05-09 19:33 - 2014-05-07 21:25 - 00000000 ____D () C:\Users\Niclas\{85ea8232-30ba-4e41-ba0a-6ea33822f4fa} 2014-05-09 19:33 - 2013-11-23 23:22 - 00000000 ____D () C:\Riot Games 2014-05-09 19:33 - 2011-12-31 16:29 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-05-09 19:33 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\spool 2014-05-09 19:33 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\registration 2014-05-09 19:33 - 2006-11-02 12:22 - 31719424 _____ () C:\Windows\system32\config\software_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 31719424 _____ () C:\Windows\system32\config\components_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 17825792 _____ () C:\Windows\system32\config\system_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00524288 _____ () C:\Windows\system32\config\default_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\security_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous 2014-05-09 19:32 - 2011-12-30 19:08 - 00000000 ____D () C:\ProgramData\Real 2014-05-09 18:10 - 2013-07-18 22:25 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-09 17:46 - 2013-03-29 17:42 - 00000000 ____D () C:\Program Files\Steam 2014-05-07 21:26 - 2014-05-07 21:26 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-05-07 21:25 - 2099-02-16 20:47 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-07 21:11 - 2014-05-07 21:11 - 00000000 ____D () C:\Users\Niclas\AppData\Local\AskPartnerNetwork 2014-05-07 21:07 - 2013-06-18 13:27 - 00000000 ____D () C:\Users\Niclas\AppData\Local\NVIDIA 2014-05-07 21:06 - 2011-12-31 16:33 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-07 21:05 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-06 23:04 - 2013-11-23 23:22 - 00000000 __SHD () C:\Windows\system32\AI_RecycleBin 2014-05-06 23:02 - 2014-05-06 23:02 - 00000000 ____D () C:\Windows\system32\jmdp 2014-05-06 23:01 - 2012-09-28 16:44 - 00000000 ____D () C:\Windows\system32\WNLT 2014-05-06 23:01 - 2012-09-28 16:44 - 00000000 ____D () C:\Windows\system32\ARFC 2014-04-29 15:10 - 2014-05-06 23:17 - 03627520 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-29 13:42 - 2014-05-06 23:17 - 01383424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb Files to move or delete: ==================== C:\Users\Niclas\AppData\Roaming\swk.ini Some content of TEMP: ==================== C:\Users\Du Lappen\AppData\Local\Temp\AskSLib.dll C:\Users\Du Lappen\AppData\Local\Temp\avgnt.exe C:\Users\Niclas\AppData\Local\Temp\avgnt.exe C:\Users\Niclas\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Niclas\AppData\Local\Temp\uninst.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-19 20:06 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:17-05-2014 Ran by Niclas at 2014-05-19 20:36:03 Running from C:\Users\Niclas\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Adobe Flash Player 13 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 13.0.0.206 - Adobe Systems Incorporated) Adobe Reader X (10.1.7) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.7 - Adobe Systems Incorporated) AOL Deinstallation (HKLM\...\AOL Deinstallation) (Version: - ) Auslogics BoostSpeed (HKLM\...\{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1) (Version: 6.5.6.0 - Auslogics Labs Pty Ltd) Auslogics DiskDefrag (HKLM\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.4.0 - Auslogics Labs Pty Ltd) Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira) Avira SearchFree Toolbar (HKLM\...\{41564952-412D-5637-00A7-A758B70C0A03}) (Version: 12.10.3.4489 - APN, LLC) BrowserDefender (HKLM\...\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}) (Version: - Bit89 Inc) <==== ATTENTION CCleaner (HKLM\...\CCleaner) (Version: 3.18 - Piriform) Combat Arms EU (HKLM\...\Combat Arms EU) (Version: - ) Counter-Strike (HKLM\...\Steam App 10) (Version: - Valve) Dealply (HKCU\...\Dealply) (Version: - ) <==== ATTENTION DealPly (remove only) (HKLM\...\DealPly) (Version: 4.8.7.3 - DealPly Technologies Ltd.) <==== ATTENTION Delta Chrome Toolbar (HKLM\...\Delta Chrome Toolbar) (Version: - Visual Tools) <==== ATTENTION Delta toolbar (HKLM\...\delta) (Version: 1.8.22.0 - Delta) <==== ATTENTION Free YouTube Download version 3.2.12.827 (HKLM\...\Free YouTube Download_is1) (Version: 3.2.12.827 - DVDVideoSoft Ltd.) Free YouTube to MP3 Converter version 3.11.33.1005 (HKLM\...\Free YouTube to MP3 Converter_is1) (Version: 3.11.33.1005 - DVDVideoSoft Ltd.) Google Chrome (HKLM\...\Google Chrome) (Version: 34.0.1847.137 - Google Inc.) Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden IB Updater 2.0.0.578 (HKLM\...\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1) (Version: 2.0.0.578 - IncrediBar) <==== ATTENTION IB Updater Service (HKLM\...\WNLT) (Version: 5.0.8.6 - ) <==== ATTENTION Incredibar Toolbar on IE (HKLM\...\incredibar) (Version: - ) <==== ATTENTION Java 7 Update 55 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.550 - Oracle) Java Auto Updater (Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 30 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216030FF}) (Version: 6.0.300 - Oracle) Learn2 Player (Uninstall Only) (HKLM\...\StreetPlugin) (Version: - ) Microsoft .NET Framework 3.5 Language Pack SP1 - DEU (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - deu) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 Language Pack SP1 - deu (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Office Excel Viewer (HKLM\...\{95120000-003F-0409-0000-0000000FF1CE}) (Version: 12.0.6219.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) MinecraftAlpha (HKLM\...\MinecraftAlpha) (Version: - ) Mozilla Firefox 27.0.1 (x86 de) (HKLM\...\Mozilla Firefox 27.0.1 (x86 de)) (Version: 27.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla) MP4 Player (HKLM\...\MP4 Player) (Version: - ) NETGEAR Powerline Utility (HKLM\...\InstallShield_{2753B568-6F85-4E31-A114-A7F8D8606DDD}) (Version: 2.0.0.8 - Ihr Firmenname) NETGEAR Powerline Utility (Version: 2.0.0.8 - Ihr Firmenname) Hidden Nexon Game Manager (HKLM\...\{289AC7E0-0AEE-4a7b-913C-709D9803D23E}) (Version: - ) NVIDIA 3D Vision Controller-Treiber 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 320.49 - NVIDIA Corporation) NVIDIA GeForce Experience 2.0.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.151.1095 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA PhysX (Version: 9.13.0604 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Systemsteuerung 335.23 (Version: 335.23 - NVIDIA Corporation) Hidden NVIDIA Update 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden NVIDIA Update Core (Version: 12.4.67 - NVIDIA Corporation) Hidden Pando Media Booster (HKLM\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.) PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) RealDownloader (Version: 1.3.2 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM\...\RealPlayer 16.0) (Version: 16.0.2 - RealNetworks) RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden Sony Ericsson Update Engine (HKLM\...\Update Engine) (Version: 2.13.9.201308081522 - Sony Ericsson Communications AB) Sony PC Companion 2.10.188 (HKLM\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.188 - Sony) Spotify (HKCU\...\Spotify) (Version: 0.9.8.296.g91f68827 - Spotify AB) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited) Steam (HKLM\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.11.1 - TeamSpeak Systems GmbH) TeamViewer 8 (HKLM\...\TeamViewer 8) (Version: 8.0.19617 - TeamViewer) TmNationsForever (HKLM\...\TmNationsForever_is1) (Version: - Nadeo) Ubisoft Game Launcher (HKLM\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation) Viewpoint Media Player (HKLM\...\ViewpointMediaPlayer) (Version: - ) Warcraft III (HKLM\...\Warcraft III) (Version: - Blizzard Entertainment) WinRAR 4.20 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) XAV5001 Firmware Upgrade Tool (HKLM\...\InstallShield_{42EDB969-3CE5-4E38-843B-A318824A737F}) (Version: 2.0.0.0 - Ihr Firmenname) XAV5001 Firmware Upgrade Tool (Version: 2.0.0.0 - Ihr Firmenname) Hidden ==================== Restore Points ========================= 09-05-2014 17:22:18 Wiederherstellungsvorgang 09-05-2014 19:10:47 Sony PC Companion 09-05-2014 19:15:18 Installed Java 7 Update 55 09-05-2014 19:21:54 Windows-Modulinstallation 09-05-2014 21:56:33 Sony PC Companion 09-05-2014 21:57:05 Gerätetreiber-Paketinstallation: Sony ==================== Hosts content: ========================== 2006-11-02 12:23 - 2006-09-18 23:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {0EC7CA60-0BF9-46DC-8DBF-D6CD7A96CF0C} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1136760724-3360318724-1241145457-1000 => C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe [2013-04-16] (RealNetworks, Inc.) Task: {155723BA-60E2-4354-93AF-84EAC8D3C2D8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-05] () Task: {1B119E2B-A806-4C2D-BDFA-6E597E9931A3} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {201B6EEA-A739-482E-9156-56CC958B1B01} - System32\Tasks\BrowserDefendert => Sc.exe start BrowserDefendert <==== ATTENTION Task: {25E441A1-822A-4A55-AEFC-408A5AFD900A} - System32\Tasks\DealPlyLiveUpdateTaskMachineUA => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [2013-08-06] (DealPly Technologies Ltd) <==== ATTENTION Task: {2DE18FE4-6467-484F-8431-206702EC5546} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-19] (Microsoft Corporation) Task: {2E5B7D97-F14C-4CFF-864E-620AABA892D1} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {31D77964-3A91-4B47-893A-B00646AE1D3A} - System32\Tasks\DealPlyUpdate => C:\Program <==== ATTENTION Task: {38E511A1-60FD-47B9-B98A-4B710ED9B091} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\VistaSP1CEIP => C:\Windows\servicing\vsp1ceip.exe [2008-01-19] (Microsoft Corporation) Task: {44C9926B-8BC0-4E41-9033-FF819C3F05E1} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1136760724-3360318724-1241145457-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {4D72741E-769C-45DB-8604-CB8EBDADAA29} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {635810C4-BE0F-4032-95DE-83B80D171219} - System32\Tasks\Dealply => C:\Users\Niclas\AppData\Roaming\Dealply\UpdateProc\UpdateTask.exe [2013-04-12] () <==== ATTENTION Task: {6397D7F6-8B94-4FBC-9EE3-E1625BB269E8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2011-12-30] (Google Inc.) Task: {709C548C-EA2B-4D5D-96FC-B69FF4040FF9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-19] (Adobe Systems Incorporated) Task: {8A8EED80-2C7D-4233-8CAD-80E3518336F2} - System32\Tasks\DealPlyLiveUpdateTaskMachineCore => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [2013-08-06] (DealPly Technologies Ltd) <==== ATTENTION Task: {94C92DAC-93ED-41E6-A45F-CE62AF5EC1E3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2011-12-30] (Google Inc.) Task: {964C6A51-596B-454C-B1E6-A33F1D917340} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1136760724-3360318724-1241145457-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {B1403465-CC47-417D-9043-BF97731AEE7C} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1136760724-3360318724-1241145457-1000 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {B72BF78A-ED94-4344-81F7-9F58DC643A46} - System32\Tasks\EPUpdater => C:\Users\Niclas\AppData\Roaming\BabSolution\Shared\BabMaint.exe [2013-08-04] () <==== ATTENTION Task: {C0CBA25B-4E6D-4616-AC36-0F09727341A5} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1136760724-3360318724-1241145457-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {C6CE6CF3-2C2C-4BD3-BC00-DC50A471DA3B} - System32\Tasks\{65F5F42A-4C58-46A8-9194-A19A08CE1183} => Firefox.exe hxxp://ui.skype.com/ui/0/5.6.0.110/de/go/help.faq.installer?LastError=1618 Task: {D4E0AB5D-63A1-46FE-B192-AB7BFF94B846} - System32\Tasks\Auslogics\BoostSpeed\Start BoostSpeed оn Niclas logon => C:\Program Files\Auslogics\BoostSpeed\BoostSpeed.exe [2014-05-08] (Auslogics) Task: {E2F1C8C8-6F9E-452C-B98B-2DA32DA14B9B} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1136760724-3360318724-1241145457-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {EFD47923-2561-4329-A30F-0F0130C67D3A} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation) Task: {F7556D4F-1C87-4206-8697-2494FADDB9B4} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1136760724-3360318724-1241145457-1000 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Dealply.job => C:\Users\Niclas\AppData\Roaming\Dealply\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2009-04-07 05:32 - 2009-04-07 05:32 - 00022723 _____ () C:\Windows\System32\cl31cl3.dll 2013-12-08 15:12 - 2013-12-07 18:15 - 00394808 _____ () C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll 2012-07-11 21:24 - 2013-01-29 15:30 - 00188760 _____ () C:\Program Files\Web Assistant\ExtensionUpdaterService.exe 2012-09-28 16:44 - 2014-04-07 16:57 - 01863984 _____ () C:\Windows\system32\dmwu.exe 2012-09-23 00:20 - 2012-09-23 01:26 - 00076888 _____ () C:\Windows\system32\PnkBstrA.exe 2013-04-16 03:07 - 2013-04-16 03:07 - 00039056 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe 2008-11-06 19:23 - 2008-11-06 19:23 - 00772096 _____ () C:\Program Files\MP4 Player\Mp4Player.exe 2013-08-28 17:54 - 2013-08-22 12:02 - 00187888 _____ () C:\Users\Niclas\AppData\Roaming\BabSolution\Shared\enhancedNT.dll 2011-12-18 03:29 - 2013-08-15 23:24 - 01992328 _____ () C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe 2014-04-07 16:57 - 2014-04-07 16:57 - 01100592 _____ () C:\Windows\System32\jmdp\stij.exe 2014-04-07 16:57 - 2014-04-07 16:57 - 01266992 _____ () C:\Windows\System32\jmdp\lmrn.dll 2014-02-14 19:47 - 2014-02-14 19:47 - 03578992 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll 2014-05-07 17:08 - 2014-05-07 17:08 - 16351920 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_206.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Niclas\Downloads\Installer_Grand Theft Auto: San Andreas Patch.zip ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: HostManager => C:\Program Files\Common Files\AOL\1377892218\ee\AOLSoftware.exe MSCONFIG\startupreg: MRT => "C:\Windows\system32\MRT.exe" /R MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: TkBellExe => "C:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot MSCONFIG\startupreg: Windows Defender => %ProgramFiles%\Windows Defender\MSASCui.exe -hide MSCONFIG\startupreg: WMPNSCFG => C:\Program Files\Windows Media Player\WMPNSCFG.exe ==================== Faulty Device Manager Devices ============= Name: Microsoft-ISATAP-Adapter Description: Microsoft-ISATAP-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Event log errors: ========================= Application errors: ================== Error: (05/17/2014 00:26:23 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Warcraft III.exe, Version 1.0.0.1 arbeitet nicht mehr mit Windows zusammen und wurde beendet. Überprüfen Sie den Problemverlauf im Applet "Lösungen für Probleme" in der Systemsteuerung, um nach weiteren Informationen über das Problem zu suchen. Prozess-ID: 11d0 Anfangszeit: 01cf7155cf41c484 Zeitpunkt der Beendigung: 50 Error: (05/10/2014 10:34:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Fehlerhafte Anwendung firefox.exe, Version 27.0.1.5156, Zeitstempel 0x52fc0faa, fehlerhaftes Modul xul.dll, Version 27.0.1.5156, Zeitstempel 0x52fc0f79, Ausnahmecode 0xc0000005, Fehleroffset 0x001560c7, Prozess-ID 0xfe8, Anwendungsstartzeit firefox.exe0. Error: (05/09/2014 11:54:17 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"1". Die abhängige Assemblierung "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (05/09/2014 11:54:17 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"1". Die abhängige Assemblierung "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (05/09/2014 11:07:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Fehlerhafte Anwendung aolunins_de.exe, Version 13.0.0.0, Zeitstempel 0x3708dfbe, fehlerhaftes Modul ntdll.dll, Version 6.0.6002.18881, Zeitstempel 0x51da3e27, Ausnahmecode 0xc0000005, Fehleroffset 0x00066609, Prozess-ID 0xb78, Anwendungsstartzeit aolunins_de.exe0. Error: (05/09/2014 10:22:47 PM) (Source: Avira Antivirus) (EventID: 4117) (User: NT-AUTORITÄT) Description: Die Lizenzdatei enthält keine gültige Lizenz. Der Dienst wird beendet! Error: (05/09/2014 09:59:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Fehlerhafte Anwendung ENGINE.EXE, Version 0.0.0.37878, Zeitstempel 0x5358b33a, fehlerhaftes Modul EHSvc.dll, Version 5.6.34.449, Zeitstempel 0x52dcfd19, Ausnahmecode 0xc0000005, Fehleroffset 0x0006f20c, Prozess-ID 0xe90, Anwendungsstartzeit ENGINE.EXE0. Error: (05/09/2014 09:27:37 PM) (Source: Avira Antivirus) (EventID: 4117) (User: NT-AUTORITÄT) Description: Die Lizenzdatei enthält keine gültige Lizenz. Der Dienst wird beendet! Error: (05/09/2014 09:08:35 PM) (Source: Avira Antivirus) (EventID: 4117) (User: NT-AUTORITÄT) Description: Die Lizenzdatei enthält keine gültige Lizenz. Der Dienst wird beendet! Error: (05/09/2014 08:01:46 PM) (Source: PerfNet) (EventID: 2005) (User: ) Description: System errors: ============= Error: (05/19/2014 08:37:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:36:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:35:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:34:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:33:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:32:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:31:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:30:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:29:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Error: (05/19/2014 08:28:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: BrowserDefendert%%3 Microsoft Office Sessions: ========================= Error: (05/17/2014 00:26:23 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Warcraft III.exe1.0.0.111d001cf7155cf41c48450 Error: (05/10/2014 10:34:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: firefox.exe27.0.1.515652fc0faaxul.dll27.0.1.515652fc0f79c0000005001560c7fe801cf6c8f05330eb9 Error: (05/09/2014 11:54:17 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"C:\Windows\Installer\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}\recordingmanager.exe Error: (05/09/2014 11:54:17 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"C:\Windows\Installer\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}\recordingmanager.exe Error: (05/09/2014 11:07:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: aolunins_de.exe13.0.0.03708dfbentdll.dll6.0.6002.1888151da3e27c000000500066609b7801cf6bca9e8b1cc6 Error: (05/09/2014 10:22:47 PM) (Source: Avira Antivirus) (EventID: 4117) (User: NT-AUTORITÄT) Description: 0x0 Error: (05/09/2014 09:59:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: ENGINE.EXE0.0.0.378785358b33aEHSvc.dll5.6.34.44952dcfd19c00000050006f20ce9001cf6bc04a0d149f Error: (05/09/2014 09:27:37 PM) (Source: Avira Antivirus) (EventID: 4117) (User: NT-AUTORITÄT) Description: 0x0 Error: (05/09/2014 09:08:35 PM) (Source: Avira Antivirus) (EventID: 4117) (User: NT-AUTORITÄT) Description: 0x0 Error: (05/09/2014 08:01:46 PM) (Source: PerfNet) (EventID: 2005) (User: ) Description: ==================== Memory info =========================== Percentage of memory in use: 54% Total physical RAM: 2046.5 MB Available physical RAM: 929.36 MB Total Pagefile: 4344.28 MB Available Pagefile: 2921.36 MB Total Virtual: 2047.88 MB Available Virtual: 1924.68 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:156.25 GB) (Free:55.01 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Daten) (Fixed) (Total:76.63 GB) (Free:76.54 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: 03360335) Partition 1: (Active) - (Size=156 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=77 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
20.05.2014, 18:53 | #5 |
/// Malwareteam | 100% CPU Auslastung Du hast einiges an Adware und PUPs gesammelt, kein Wunder, dass der Rechner so langsam läuft. So gehts erstmal los: Schritt 1 Bitte deinstalliere folgende Programme:
Windows XP: Start -> Systemsteuerung -> Kategorieansicht auswählen (falls nicht voreingestellt) -> Softwareund wähle die angegeben Programme aus. Drücke Entfernen (Windows XP) oder Deinstallieren (Windows Vista/7/8). Schritt 2 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4 Starte noch einmal FRST.
Poste folgende Logfiles in deiner nächsten Antwort:
__________________ Gruß, Jonas |
20.05.2014, 19:41 | #6 |
| 100% CPU AuslastungCode:
ATTFilter # AdwCleaner v3.210 - Bericht erstellt am 20/05/2014 um 20:11:54 # Aktualisiert 19/05/2014 von Xplode # Betriebssystem : Windows Vista (TM) Business Service Pack 2 (32 bits) # Benutzername : Niclas - NICLAS-PC # Gestartet von : C:\Users\Niclas\Downloads\adwcleaner_3.210.exe # Option : Löschen ***** [ Dienste ] ***** [#] Dienst Gelöscht : BrowserDefendert [#] Dienst Gelöscht : dealplylive [#] Dienst Gelöscht : dealplylivem Dienst Gelöscht : Web Assistant Updater ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\ProgramData\DealPlyLive Ordner Gelöscht : C:\ProgramData\Viewpoint Ordner Gelöscht : C:\Program Files\AVG Secure Search Ordner Gelöscht : C:\Program Files\Conduit Ordner Gelöscht : C:\Program Files\DealPly Ordner Gelöscht : C:\Program Files\DealPlyLive Ordner Gelöscht : C:\Program Files\Uniblue Ordner Gelöscht : C:\Program Files\Viewpoint Ordner Gelöscht : C:\Program Files\Web Assistant Ordner Gelöscht : C:\Program Files\Common Files\DVDVideoSoft\TB Ordner Gelöscht : C:\Windows\system32\jmdp Ordner Gelöscht : C:\Users\Du Lappen\AppData\LocalLow\AskToolbar Ordner Gelöscht : C:\Users\Du Lappen\AppData\LocalLow\Conduit Ordner Gelöscht : C:\Users\Du Lappen\AppData\LocalLow\incredibar.com Ordner Gelöscht : C:\Users\Du Lappen\AppData\Roaming\Iminent Ordner Gelöscht : C:\Users\Niclas\AppData\Local\AskToolbar Ordner Gelöscht : C:\Users\Niclas\AppData\Local\Conduit Ordner Gelöscht : C:\Users\Niclas\AppData\Local\DealPlyLive Ordner Gelöscht : C:\Users\Niclas\AppData\Local\PutLockerDownloader Ordner Gelöscht : C:\Users\Niclas\AppData\Local\Temp\OCS Ordner Gelöscht : C:\Users\Niclas\AppData\LocalLow\AskToolbar Ordner Gelöscht : C:\Users\Niclas\AppData\LocalLow\BabylonToolbar Ordner Gelöscht : C:\Users\Niclas\AppData\LocalLow\Conduit Ordner Gelöscht : C:\Users\Niclas\AppData\LocalLow\Delta Ordner Gelöscht : C:\Users\Niclas\AppData\LocalLow\incredibar.com Ordner Gelöscht : C:\Users\Niclas\AppData\LocalLow\Toolbar4 Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\BabSolution Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\Babylon Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\DealPly Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\dvdvideosoftiehelpers Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\OpenCandy Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\Systweak Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\Uniblue Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserDefender Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Movie2KDownloader.com Ordner Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Smartbar Ordner Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde Ordner Gelöscht : C:\Users\Du Lappen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj Ordner Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj Datei Gelöscht : C:\Windows\system32\roboot.exe Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\bprotector_extensions.sqlite Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\bprotector_prefs.js Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\invalidprefs.js Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\Askcom.xml Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\Babylon.xml Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\BrowserDefender.xml Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\dvdvideosofttb-de-customized-web-search.xml Datei Gelöscht : C:\Users\Du Lappen\AppData\Roaming\Mozilla\Firefox\Profiles\7ftmem4h.default\searchplugins\MyStart Search.xml Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\searchplugins\MyStart Search.xml Datei Gelöscht : C:\Program Files\Mozilla Firefox\browser\searchplugins\StartWeb.xml Datei Gelöscht : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\user.js Datei Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data Datei Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences Datei Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eooncjejnppfjjklapaamhcdmjbilmde_0.localstorage Datei Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage Datei Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_f.dealply.com_0.localstorage Datei Gelöscht : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_f.dealply.com_0.localstorage-journal Datei Gelöscht : C:\Windows\System32\Tasks\BrowserDefendert Datei Gelöscht : C:\Windows\Tasks\Dealply.job Datei Gelöscht : C:\Windows\System32\Tasks\Dealply Datei Gelöscht : C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job Datei Gelöscht : C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineCore Datei Gelöscht : C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job Datei Gelöscht : C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403a-B9D2-65C292C39087}] Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{ACAA314B-EEBA-48E4-AD47-84E31C44796C}] Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{FE1DEEEA-DB6D-44B8-83F0-34FC0F9D1052}] Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\blaofbhgbmeikidhlkmjhbkbfohpgekf Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\fgfdfcbeamjnjdejakdidpniblllnbpg [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{201B6EEA-A739-482E-9156-56CC958B1B01} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{201B6EEA-A739-482E-9156-56CC958B1B01} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{635810C4-BE0F-4032-95DE-83B80D171219} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25E441A1-822A-4A55-AEFC-408A5AFD900A} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{635810C4-BE0F-4032-95DE-83B80D171219} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A8EED80-2C7D-4233-8CAD-80E3518336F2} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8A8EED80-2C7D-4233-8CAD-80E3518336F2} [#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{25E441A1-822A-4A55-AEFC-408A5AFD900A} Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope] Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [monitor@addlyrics.net] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\dealplylive.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtl.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AxMetaStream.MetaStreamCtlSecondary.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLive.OneClickCtrl.9 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLive.OneClickProcessLauncherMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLive.OneClickProcessLauncherMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLive.Update3WebControl.3 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.CoCreateAsync Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.CoCreateAsync.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.coreclass Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.CoreClass.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.CoreMachineClass Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.CoreMachineClass.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.credentialdialogmachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.credentialdialogmachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.ondemandcomclassmachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.ondemandcomclassmachinefallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.ondemandcomclassmachinefallback.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassSvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.ondemandcomclasssvc.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.ProcessLauncher Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.ProcessLauncher.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.Update3COMClassService Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DealPlyLiveUpdate.Update3COMClassService.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.update3webmachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.update3webmachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.update3webmachinefallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.update3webmachinefallback.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.update3websvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\dealplyliveupdate.update3websvc.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.IncredibarESrvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.IncredibarESrvc.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\I Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Incredibar.dskBnd Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Incredibar.dskBnd.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Incredibar.IncredibarHlpr Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Incredibar.IncredibarHlpr.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IncredibarApp.appCore Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IncredibarApp.appCore.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Movie2KDownloader Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\speedupmypc Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs [bProtectTabs] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dealplylive.exe Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3 Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9 Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP Schlüssel Gelöscht : HKCU\Software\855d8d8b069e845 Schlüssel Gelöscht : HKLM\SOFTWARE\855d8d8b069e845 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2304157 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2625848 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{CFE8AAFD-A0F3-4329-84E9-6B679EC93EC2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{F48FC5B2-094A-44C7-B48C-289738C9582D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{03F998B2-0E00-11D3-A498-00104B6EB52E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{0D89DE71-3D99-4288-84DC-F18F1047A7D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1B00725B-C455-4DE6-BFB6-AD540AD427CD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1E0C9B2A-6447-452C-B012-2314A0C29412} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{34A8CEB6-89BB-49F1-B5E4-0D0D6C21F3B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3A4DBD3A-98CC-41CE-AD21-352D42B6F754} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4F8A50F6-69DE-4BE3-A33A-A1079B9AC0DB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{501CB57A-D4E2-4855-96AD-EDB0A9083395} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6FF2C4DD-77A4-4BB5-BA4C-B42DEFBF9137} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7F1796B2-BEC6-427B-B734-F9C75ED94A80} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80FABB17-63AF-4655-9F07-B6509EE37AF2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{83ABA270-8390-4CA6-AE48-FC089F55629E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8B218A5F-1A3D-4347-94EF-A79575EB8094} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9BDB5E09-4BBA-4422-8C2B-529B281C32B8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C1545464-C77C-4130-A572-1C619E2895FE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C536F080-57B7-46D6-8894-C647553F2889} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CA5D945F-E738-4D0B-A0B5-25AC51C64659} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{ED0E67AD-926C-4008-87E5-03CF72AA2A7E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EF7FEC6D-451B-4452-9D26-7E10C6B5DB6E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F48FC5B2-094A-44C7-B48C-289738C9582D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F7698761-4ABA-45C2-A5BB-D2163922C725} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F9639E4A-801B-4843-AEE3-03D9DA199E77} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FFCC53E6-2655-47FC-A89B-54E8D7F305D1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{22B0769F-794B-4422-AC84-47B123C8986D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{255E0B2A-D747-4EEF-B7CE-159D73A3656D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{28ED590D-F5ED-4E05-A87F-1D759F1C6169} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{45D5B93F-E2ED-4AF2-915E-DCDDBDA8C33C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{771B99AB-636F-4A11-9039-8DFEB927B061} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A8321AA2-2227-40C7-8525-6C2F4E1B0EBE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AA41A731-6814-4A70-A6F1-C0A20FBBFBD5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ABBB8A9E-D8AF-40D1-94BE-5175077465FC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BF737694-56F6-46FA-9FDC-FA99A5B25FAD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{CFCD164E-8AC9-478E-9ECC-B616A932016C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D5961CC0-B442-4567-8030-67E241EF4CC2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E450067F-1C93-41A7-928E-07E5C2EEC680} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F977D9F2-4BDC-44A6-B508-7C0284C61EED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{48C9C8B0-A546-46C1-A81F-47A31E623E9D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{CFE8AAFD-A0F3-4329-84E9-6B679EC93EC2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{336D0C35-8A85-403A-B9D2-65C292C39087} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58124A0B-DC32-4180-9BFF-E0E21AE34026} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{977AE9CC-AF83-45E8-9E03-E2798216E2D5} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9CF699CA-2174-4ED8-BEC1-BA82095EDCE0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B40720CF-4DDD-40DC-86EA-26404E77C1E8} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9639E4A-801B-4843-AEE3-03D9DA199E77} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F1796B2-BEC6-427B-B734-F9C75ED94A80} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74C36554-31F0-49DD-8857-ED6A64DF45BE} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F1796B2-BEC6-427B-B734-F9C75ED94A80} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C536F080-57B7-46D6-8894-C647553F2889} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47C0-9269-B4C6572FD61A} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{F9639E4A-801B-4843-AEE3-03D9DA199E77}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}] Schlüssel Gelöscht : HKCU\Software\1ClickDownload Schlüssel Gelöscht : HKCU\Software\Ask.com Schlüssel Gelöscht : HKCU\Software\AskToolbar Schlüssel Gelöscht : HKCU\Software\BabSolution Schlüssel Gelöscht : HKCU\Software\DataMngr [#] Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar Schlüssel Gelöscht : HKCU\Software\DealPlyLive Schlüssel Gelöscht : HKCU\Software\delta LTD Schlüssel Gelöscht : HKCU\Software\Delta Schlüssel Gelöscht : HKCU\Software\IGearSettings Schlüssel Gelöscht : HKCU\Software\IM Schlüssel Gelöscht : HKCU\Software\ImInstaller Schlüssel Gelöscht : HKCU\Software\incredibar.com Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\AskToolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\ConduitSearchScopes Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\lyrixeeker Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\superlyrics Schlüssel Gelöscht : HKLM\Software\BabylonToolbar Schlüssel Gelöscht : HKLM\Software\Conduit Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\DealPlyLive Schlüssel Gelöscht : HKLM\Software\Delta Schlüssel Gelöscht : HKLM\Software\IB Updater Schlüssel Gelöscht : HKLM\Software\Iminent Schlüssel Gelöscht : HKLM\Software\incredibar.com Schlüssel Gelöscht : HKLM\Software\MetaStream Schlüssel Gelöscht : HKLM\Software\systweak Schlüssel Gelöscht : HKLM\Software\Uniblue Schlüssel Gelöscht : HKLM\Software\Viewpoint Schlüssel Gelöscht : HKLM\Software\Web Assistant Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ViewpointMediaPlayer Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1 Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{A76AA284-E52D-47E6-9E4F-B85DBF8E35C3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\addlyrics@addlyrics.net Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ViewpointMediaPlayer Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59 Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF ***** [ Browser ] ***** -\\ Internet Explorer v7.0.6002.18005 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [bProtectTabs] -\\ Mozilla Firefox v29.0.1 (de) [ Datei : C:\Users\Du Lappen\AppData\Roaming\Mozilla\Firefox\Profiles\7ftmem4h.default\prefs.js ] Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://search.avira.com/?l=dis&o=APN10395&gct=hp&dc=EU&locale=de_DE"); Zeile gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", ""); [ Datei : C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\prefs.js ] Zeile gelöscht : user_pref("CT2625848.1000082.isDisplayHidden", "true"); Zeile gelöscht : user_pref("CT2625848.1000082.muteState", "off"); Zeile gelöscht : user_pref("CT2625848.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description\":\"California Rock\",\"url\":\"hxxp://feedlive.net/california.asx\"}"); Zeile gelöscht : user_pref("CT2625848.2625848a129894023611240511000000paramsGK1", "eyJ1cGRhdGVSZXFUaW1lIjoxMzQ5OTkyMTkzMTU1LCJ1cGRhdGVSZXNwVGltZSI6MTM0OTk5MjE5MzY1MCwiZGF0YSI6eyJzZXR0aW5ncyI6eyJpY29uIjoiaHR0cDovL3N0b3[...] Zeile gelöscht : user_pref("CT2625848.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT2625848.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT2625848.FirstTime", "true"); Zeile gelöscht : user_pref("CT2625848.FirstTimeFF3", "true"); Zeile gelöscht : user_pref("CT2625848.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2625848&SearchSource=2&q="); Zeile gelöscht : user_pref("CT2625848.UserID", "UN49924740560583386"); Zeile gelöscht : user_pref("CT2625848.addressBarTakeOverEnabledInHidden", "true"); Zeile gelöscht : user_pref("CT2625848.autoDisableScopes", 0); Zeile gelöscht : user_pref("CT2625848.browser.search.defaultthis.engineName", true); Zeile gelöscht : user_pref("CT2625848.defaultSearch", "true"); Zeile gelöscht : user_pref("CT2625848.embeddedsData", "[{\"appId\":\"129181467799155027\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"getSearchTerm\":true,\"insta[...] Zeile gelöscht : user_pref("CT2625848.enableAlerts", "false"); Zeile gelöscht : user_pref("CT2625848.enableSearchFromAddressBar", "true"); Zeile gelöscht : user_pref("CT2625848.firstTimeDialogOpened", "true"); Zeile gelöscht : user_pref("CT2625848.fixPageNotFoundError", "true"); Zeile gelöscht : user_pref("CT2625848.fixPageNotFoundErrorInHidden", "true"); Zeile gelöscht : user_pref("CT2625848.fixUrls", true); Zeile gelöscht : user_pref("CT2625848.installId", "ConduitNSISIntegration"); Zeile gelöscht : user_pref("CT2625848.installType", "ConduitNSISIntegration"); Zeile gelöscht : user_pref("CT2625848.isCheckedStartAsHidden", true); Zeile gelöscht : user_pref("CT2625848.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT2625848.isFirstTimeToolbarLoading", "false"); Zeile gelöscht : user_pref("CT2625848.isNewTabEnabled", true); Zeile gelöscht : user_pref("CT2625848.isPerformedSmartBarTransition", "true"); Zeile gelöscht : user_pref("CT2625848.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}"); Zeile gelöscht : user_pref("CT2625848.keyword", true); Zeile gelöscht : user_pref("CT2625848.migrateAppsAndComponents", true); Zeile gelöscht : user_pref("CT2625848.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fus.yhs4.search.yahoo.com%2Fyhs%2Fsearch%3Ffr%3Daltavista%26itag%3Dody%26q%3Dhxxp%3A%2F%2Fus.[...] Zeile gelöscht : user_pref("CT2625848.openThankYouPage", "false"); Zeile gelöscht : user_pref("CT2625848.openUninstallPage", "true"); Zeile gelöscht : user_pref("CT2625848.search.searchAppId", "129181467799155027"); Zeile gelöscht : user_pref("CT2625848.search.searchCount", "0"); Zeile gelöscht : user_pref("CT2625848.searchInNewTabEnabledInHidden", "true"); Zeile gelöscht : user_pref("CT2625848.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT2625848.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2625848\"}"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://DVDVideoSoftTBDE.OurToolbar.com//xpi\"}"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"DVDVideoSoftTB DE\"}"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1352719340430"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_appsMetadata_lastUpdate", "1352719340430"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1351781052396"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_login_10.13.1.89_lastUpdate", "1352719340463"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_optimizer_lastUpdate", "1352041222455"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1351781052496"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_searchAPI_lastUpdate", "1352719340462"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_serviceMap_lastUpdate", "1352719340382"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_toolbarContextMenu_lastUpdate", "1351781052442"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_toolbarSettings_lastUpdate", "1352719340431"); Zeile gelöscht : user_pref("CT2625848.serviceLayer_services_translation_lastUpdate", "1352719340409"); Zeile gelöscht : user_pref("CT2625848.settingsINI", true); Zeile gelöscht : user_pref("CT2625848.shouldFirstTimeDialog", "false"); Zeile gelöscht : user_pref("CT2625848.smartbar.CTID", "CT2625848"); Zeile gelöscht : user_pref("CT2625848.smartbar.Uninstall", "0"); Zeile gelöscht : user_pref("CT2625848.smartbar.homepage", true); Zeile gelöscht : user_pref("CT2625848.smartbar.toolbarName", "DVDVideoSoftTB DE "); Zeile gelöscht : user_pref("CT2625848.toolbarBornServerTime", "12-10-2012"); Zeile gelöscht : user_pref("CT2625848.toolbarCurrentServerTime", "4-11-2012"); Zeile gelöscht : user_pref("CT2625848_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1352719444659,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]"); Zeile gelöscht : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2625848&SearchSource=13"); Zeile gelöscht : user_pref("Smartbar.ConduitSearchEngineList", "DVDVideoSoftTB DE Customized Web Search"); Zeile gelöscht : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2625848&SearchSource=2&q="); Zeile gelöscht : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10395&locale=de_DE&apn_uid=502af735-7fb7-4980-9e89-1eb70a58967e&apn_ptnrs=^ABT&apn_[...] Zeile gelöscht : user_pref("Smartbar.keywordURLSelectedCTID", "CT2625848"); Zeile gelöscht : user_pref("browser.babylon.HPOnNewTab", "search.babylon.com"); Zeile gelöscht : user_pref("extensions.AVIRA-V7.AUC_clientCache", "{\"AUC_CACHE\":{\"avira.com\":{\"c\":[1],\"ttl\":1387113407},\"computerbild.de\":{\"c\":[1],\"ttl\":1401132235},\"facebook.com\":{\"c\":[1],\"ttl\":14[...] Zeile gelöscht : user_pref("extensions.AVIRA-V7.apn.tldcache", "{\"date\":1399410734872,\"domainList\":[\"ac\",\"com.ac\",\"edu.ac\",\"gov.ac\",\"net.ac\",\"mil.ac\",\"org.ac\",\"ad\",\"nom.ad\",\"ae\",\"co.ae\",\"net[...] Zeile gelöscht : user_pref("extensions.BabylonToolbar.admin", false); Zeile gelöscht : user_pref("extensions.BabylonToolbar.aflt", "babsst"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.babExt", ""); Zeile gelöscht : user_pref("extensions.BabylonToolbar.babTrack", "affID=109867"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.bbDpng", 20); Zeile gelöscht : user_pref("extensions.BabylonToolbar.dfltSrch", false); Zeile gelöscht : user_pref("extensions.BabylonToolbar.hmpg", false); Zeile gelöscht : user_pref("extensions.BabylonToolbar.id", "cc614e4400000000000000173188a745"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.instlDay", "15390"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.instlRef", "sst"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.lastDP", 20); Zeile gelöscht : user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.5.3.171:43:18"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.mntrFFxVrsn", "10.0"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.newTab", true); Zeile gelöscht : user_pref("extensions.BabylonToolbar.newTabUrl", "hxxp://search.babylon.com/?babsrc=NT_bb"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.noFFXTlbr", false); Zeile gelöscht : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.propectorlck", 68298402); Zeile gelöscht : user_pref("extensions.BabylonToolbar.prtkDS", 1); Zeile gelöscht : user_pref("extensions.BabylonToolbar.prtkHmpg", 1); Zeile gelöscht : user_pref("extensions.BabylonToolbar.prtnrId", "babylon"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.ptch_0717", true); Zeile gelöscht : user_pref("extensions.BabylonToolbar.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.srcExt", "ss"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.tlbrId", "base"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.vrsn", "1.5.3.17"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.vrsnTs", "1.5.3.171:43:18"); Zeile gelöscht : user_pref("extensions.BabylonToolbar.vrsni", "1.5.3.17"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.aflt", "babsst"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.babExt", ""); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=109867"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.hardId", "cc614e4400000000000000173188a745"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.id", "cc614e4400000000000000173188a745"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.instlDay", "15390"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.instlRef", "sst"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.newTab", true); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://search.babylon.com/?AF=109867&babsrc=NT_ss&mntrId=cc614e4400000000000000173188a745"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.prdct", "BabylonToolbar"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.prtnrId", "babylon"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.srcExt", "ss"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.tlbrId", "base"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.vrsn", "1.5.3.17"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.5.3.171:43:18"); Zeile gelöscht : user_pref("extensions.BabylonToolbar_i.vrsni", "1.5.3.17"); Zeile gelöscht : user_pref("extensions.asktb.InstallDir", "C:\\Program Files\\Ask.com\\"); Zeile gelöscht : user_pref("extensions.asktb.OOBEVersion", "1"); Zeile gelöscht : user_pref("extensions.asktb.apn_dbr", "ff_14.0.1"); Zeile gelöscht : user_pref("extensions.asktb.autofill-text-highlight-enabled", true); Zeile gelöscht : user_pref("extensions.asktb.cbid", "^ABT"); Zeile gelöscht : user_pref("extensions.asktb.config-updated", true); Zeile gelöscht : user_pref("extensions.asktb.cr-o", "APN10395"); Zeile gelöscht : user_pref("extensions.asktb.crumb", "2012.08.11+05.23.18-toolbar006iad-DE-TWFubmhlaW0sR2VybWFueQ%3D%3D"); Zeile gelöscht : user_pref("extensions.asktb.default-channel-url-mask", "hxxp://avira-int.ask.com/web?q={query}&qsrc={qsrc}&o={o}&l={l}&gct=bar&locale={locale}"); Zeile gelöscht : user_pref("extensions.asktb.domain", "avira-int.ask.com"); Zeile gelöscht : user_pref("extensions.asktb.domainName", "avira-int.ask.com"); Zeile gelöscht : user_pref("extensions.asktb.dtid", "^YYYYYY^YY^DE"); Zeile gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", "hxxp://search.babylon.com/?AF=109867&babsrc=adbartrp&mntrId=cc614e4400000000000000173188a745&q="); Zeile gelöscht : user_pref("extensions.asktb.fresh-install", false); Zeile gelöscht : user_pref("extensions.asktb.guid", "502af735-7fb7-4980-9e89-1eb70a58967e"); Zeile gelöscht : user_pref("extensions.asktb.hpr", "YES"); Zeile gelöscht : user_pref("extensions.asktb.hxxp-header-whitelist-hosts", "[\"static-dev.en.dev.ask.com\", \"ask.com\", \"www.facebook.com\", \"www.playsushi.com\", \"WWW.google.com\", \"hxxps://websearch.ask.com\", [...] Zeile gelöscht : user_pref("extensions.asktb.if", "first"); Zeile gelöscht : user_pref("extensions.asktb.keyword-toggled-in-session", false); Zeile gelöscht : user_pref("extensions.asktb.l", "dis"); Zeile gelöscht : user_pref("extensions.asktb.last-config-req", "1366984795438"); Zeile gelöscht : user_pref("extensions.asktb.locale", "de_DE"); Zeile gelöscht : user_pref("extensions.asktb.localePref", true); Zeile gelöscht : user_pref("extensions.asktb.location", "Mannheim,Germany"); Zeile gelöscht : user_pref("extensions.asktb.notification-shown", true); Zeile gelöscht : user_pref("extensions.asktb.nthp", "YES"); Zeile gelöscht : user_pref("extensions.asktb.nthp_prev", "1"); Zeile gelöscht : user_pref("extensions.asktb.nthp_stw", "1"); Zeile gelöscht : user_pref("extensions.asktb.o", "APN10395"); Zeile gelöscht : user_pref("extensions.asktb.overlay-reloaded-using-restart", true); Zeile gelöscht : user_pref("extensions.asktb.qsrc", "2871"); Zeile gelöscht : user_pref("extensions.asktb.r", "20"); Zeile gelöscht : user_pref("extensions.asktb.sa", "YES"); Zeile gelöscht : user_pref("extensions.asktb.saguid", "90C47A06-CE72-41B3-BBA7-BB7F66D958DE"); Zeile gelöscht : user_pref("extensions.asktb.search-suggestions-enabled", true); Zeile gelöscht : user_pref("extensions.asktb.silent-upgrade", true); Zeile gelöscht : user_pref("extensions.asktb.silent-upgrade-from-pre-newtabs-build", false); Zeile gelöscht : user_pref("extensions.asktb.socialmini-native-on", true); Zeile gelöscht : user_pref("extensions.asktb.themeid", ""); Zeile gelöscht : user_pref("extensions.asktb.timeinstalled", "11.08.2012 14:26:52"); Zeile gelöscht : user_pref("extensions.asktb.to", ""); Zeile gelöscht : user_pref("extensions.asktb.v", "3.15.18.100015"); Zeile gelöscht : user_pref("extensions.asktb.version", "5.15.18.37268"); Zeile gelöscht : user_pref("extensions.delta.admin", false); Zeile gelöscht : user_pref("extensions.delta.aflt", "babsst"); Zeile gelöscht : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); Zeile gelöscht : user_pref("extensions.delta.autoRvrt", "false"); Zeile gelöscht : user_pref("extensions.delta.bbDpng", "20"); Zeile gelöscht : user_pref("extensions.delta.cntry", "DE"); Zeile gelöscht : user_pref("extensions.delta.dfltLng", "de"); Zeile gelöscht : user_pref("extensions.delta.excTlbr", false); Zeile gelöscht : user_pref("extensions.delta.ffxUnstlRst", true); Zeile gelöscht : user_pref("extensions.delta.hdrMd5", "EFF8F3FF618CF2A99C2AA4BAD88F2231"); Zeile gelöscht : user_pref("extensions.delta.id", "cc614e4400000000000000173188a745"); Zeile gelöscht : user_pref("extensions.delta.instlDay", "15923"); Zeile gelöscht : user_pref("extensions.delta.instlRef", "sst"); Zeile gelöscht : user_pref("extensions.delta.lastVrsnTs", "1.8.22.03:14:05"); Zeile gelöscht : user_pref("extensions.delta.newTab", false); Zeile gelöscht : user_pref("extensions.delta.prdct", "delta"); Zeile gelöscht : user_pref("extensions.delta.prtnrId", "delta"); Zeile gelöscht : user_pref("extensions.delta.rvrt", "false"); Zeile gelöscht : user_pref("extensions.delta.sg", "azb"); Zeile gelöscht : user_pref("extensions.delta.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.delta.tlbrId", "base"); Zeile gelöscht : user_pref("extensions.delta.tlbrSrchUrl", ""); Zeile gelöscht : user_pref("extensions.delta.vrsn", "1.8.22.0"); Zeile gelöscht : user_pref("extensions.delta.vrsnTs", "1.8.22.03:14:05"); Zeile gelöscht : user_pref("extensions.delta.vrsni", "1.8.22.0"); Zeile gelöscht : user_pref("extensions.delta_i.babExt", ""); Zeile gelöscht : user_pref("extensions.delta_i.babTrack", "affID=119360&tsp=4966"); Zeile gelöscht : user_pref("extensions.delta_i.srcExt", "ss"); Zeile gelöscht : user_pref("extensions.incredibar.admin", false); Zeile gelöscht : user_pref("extensions.incredibar.aflt", "orgnl"); Zeile gelöscht : user_pref("extensions.incredibar.cntry", "DE"); Zeile gelöscht : user_pref("extensions.incredibar.dfltLng", ""); Zeile gelöscht : user_pref("extensions.incredibar.dfltSrch", false); Zeile gelöscht : user_pref("extensions.incredibar.did", "10643"); Zeile gelöscht : user_pref("extensions.incredibar.envrmnt", "production"); Zeile gelöscht : user_pref("extensions.incredibar.excTlbr", false); Zeile gelöscht : user_pref("extensions.incredibar.hdrMd5", "2B48156134FECD903A3DA52008CC89B5"); Zeile gelöscht : user_pref("extensions.incredibar.hmpg", false); Zeile gelöscht : user_pref("extensions.incredibar.id", "cc614e4400000000000000173188a745"); Zeile gelöscht : user_pref("extensions.incredibar.installerproductid", "26"); Zeile gelöscht : user_pref("extensions.incredibar.instlDay", "15705"); Zeile gelöscht : user_pref("extensions.incredibar.instlRef", ""); Zeile gelöscht : user_pref("extensions.incredibar.isDcmntCmplt", false); Zeile gelöscht : user_pref("extensions.incredibar.lastVrsnTs", "1.5.11.143:43:06"); Zeile gelöscht : user_pref("extensions.incredibar.mntrvrsn", "1.2.0"); Zeile gelöscht : user_pref("extensions.incredibar.newTab", false); Zeile gelöscht : user_pref("extensions.incredibar.noFFXTlbr", false); Zeile gelöscht : user_pref("extensions.incredibar.ppd", "1"); Zeile gelöscht : user_pref("extensions.incredibar.prdct", "incredibar"); Zeile gelöscht : user_pref("extensions.incredibar.productid", "26"); Zeile gelöscht : user_pref("extensions.incredibar.prtnrId", "Incredibar"); Zeile gelöscht : user_pref("extensions.incredibar.sg", "none"); Zeile gelöscht : user_pref("extensions.incredibar.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.incredibar.tlbrId", "base"); Zeile gelöscht : user_pref("extensions.incredibar.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyXaHgLRp&loc=IB_TB&i=26&search="); Zeile gelöscht : user_pref("extensions.incredibar.upn2", "6OyXaHgLRp"); Zeile gelöscht : user_pref("extensions.incredibar.upn2n", "92262620468044635"); Zeile gelöscht : user_pref("extensions.incredibar.vrsn", "1.5.11.14"); Zeile gelöscht : user_pref("extensions.incredibar.vrsnTs", "1.5.11.143:43:06"); Zeile gelöscht : user_pref("extensions.incredibar.vrsni", "1.5.11.14"); Zeile gelöscht : user_pref("extensions.incredibar_i.aflt", "orgnl"); Zeile gelöscht : user_pref("extensions.incredibar_i.dfltLng", ""); Zeile gelöscht : user_pref("extensions.incredibar_i.did", "10643"); Zeile gelöscht : user_pref("extensions.incredibar_i.excTlbr", false); Zeile gelöscht : user_pref("extensions.incredibar_i.id", "cc614e4400000000000000173188a745"); Zeile gelöscht : user_pref("extensions.incredibar_i.installerproductid", "26"); Zeile gelöscht : user_pref("extensions.incredibar_i.instlDay", "15705"); Zeile gelöscht : user_pref("extensions.incredibar_i.instlRef", ""); Zeile gelöscht : user_pref("extensions.incredibar_i.ms_url_id", ""); Zeile gelöscht : user_pref("extensions.incredibar_i.newTab", false); Zeile gelöscht : user_pref("extensions.incredibar_i.ppd", "1"); Zeile gelöscht : user_pref("extensions.incredibar_i.prdct", "incredibar"); Zeile gelöscht : user_pref("extensions.incredibar_i.productid", "26"); Zeile gelöscht : user_pref("extensions.incredibar_i.prtnrId", "Incredibar"); Zeile gelöscht : user_pref("extensions.incredibar_i.smplGrp", "none"); Zeile gelöscht : user_pref("extensions.incredibar_i.tlbrId", "base"); Zeile gelöscht : user_pref("extensions.incredibar_i.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyXaHgLRp&loc=IB_TB&i=26&search="); Zeile gelöscht : user_pref("extensions.incredibar_i.upn2", "6OyXaHgLRp"); Zeile gelöscht : user_pref("extensions.incredibar_i.upn2n", "92262620468044635"); Zeile gelöscht : user_pref("extensions.incredibar_i.vrsn", "1.5.11.14"); Zeile gelöscht : user_pref("extensions.incredibar_i.vrsnTs", "1.5.11.143:43:06"); Zeile gelöscht : user_pref("extensions.incredibar_i.vrsni", "1.5.11.14"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.LayoutId", "1"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.BHPCode", "01"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultEvent", "000"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultWebSite", "000"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.IminentClientCode", "11"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.SmartFavCode", "02"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.ShowThankyouPixel", "0"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent109", "1363909565881"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent111", "1363909565888"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent112", "1363909585833"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent122", "1363909565894"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent134", "1373065128631"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.LayoutId", "1"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.BHPCode", "01"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultEvent", "000"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultWebSite", "000"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.IminentClientCode", "11"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.SmartFavCode", "02"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.ShowThankyouPixel", "0"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.displayFavLinks", "1"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent109", "1373040054573"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent110", "1373040058156"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent111", "1373040054585"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent112", "1373040058107"); Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent122", "1373040054595"); Zeile gelöscht : user_pref("plugin.blocklisted.npviewpoint", true); Zeile gelöscht : user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_whiteList", "{\"search.babylon.com\":\"q\",\"search.sweetim.com\":\"q\",\"search.imesh.net\":\"q\",\"www.search-results.com\":\"q\",\"h[...] Zeile gelöscht : user_pref("{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_blackList", "form=CONTLB|babsrc=toolbar|babsrc=tb_ss|invocationType=tb50-ie-aolsoftonic-tbsbox-en-us|invocationType=tb50-ff-aolsoftonic[...] Zeile gelöscht : user_pref("{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_referrer", "hxxp://start.iminent.com/StartWeb/1031/homepage/|||8641369165456431"); Zeile gelöscht : user_pref("{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_temp_referer", "hxxp://start.iminent.com/StartWeb/1031/homepage/|#|old_value|||8641371214713581"); Zeile gelöscht : user_pref("{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_whiteList", "{\"search.babylon.com\":\"q\",\"search.imesh.net\":\"q\",\"www.search-results.com\":\"q\",\"home.mywebsearch.com\":\"searc[...] -\\ Google Chrome v34.0.1847.137 [ Datei : C:\Users\Du Lappen\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Search Provider] : hxxp://search.incredibar.com/?q={searchTerms}&lang=german&cid=1&source=365503&u=92544255151613979&a=6PQVvyVE39&gc=de&i=26 Gelöscht [Search Provider] : hxxp://mystart.incredibar.com/?a=6PQVvyVE39&i=26&loc=skw&search={searchTerms} Gelöscht [Extension] : ogccgbmabaphcakpiclgcnmcnimhokcj [ Datei : C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Search Provider] : hxxp://mystart.incredibar.com/?a=6OyXaHgLRp&i=26&loc=skw&search={searchTerms} Gelöscht [Search Provider] : hxxp://isearch.avg.com/search?cid={B1B85243-D665-407B-9B29-C9C6BE1239BF}&mid=&lang=&ds=&pr=&d=&v=&sap=dsp&q={searchTerms} Gelöscht [Search Provider] : hxxp://search.conduit.com/Results.aspx?q={searchTerms}&hl=en&SelfSearch=1&SearchSource=49&ctid=CT2304157 Gelöscht [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-3&o=APN10395&locale=de_DE&apn_uid=502af735-7fb7-4980-9e89-1eb70a58967e&apn_ptnrs=%5EABT&apn_sauid=90C47A06-CE72-41B3-BBA7-BB7F66D958DE&apn_dtid=%5EYYYYYY%5EYY%5EDE&q={searchTerms} Gelöscht [Search Provider] : hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=CC6100173188A745&affID=119360&tsp=4966 Gelöscht [Search Provider] : hxxp://isearch.babylon.com/?q={searchTerms}&babsrc=SP_ss_Btisdt4&mntrId=CC6100173188A745&affID=119360&tsp=4966 Gelöscht [Search Provider] : hxxp://search.incredibar.com/?q={searchTerms}&lang=german&cid=1&source=365503&u=92262620468044635&a=6OyXaHgLRp&gc=de Gelöscht [Homepage] : hxxp://www.doko-search.com/?babsrc=HP_ss_mib2&mntrId=CC6100173188A745&affID=119360&tsp=4966 Gelöscht [Extension] : aaaangaohdajkgeopjhpbnlpkehbhmbj Gelöscht [Extension] : eooncjejnppfjjklapaamhcdmjbilmde Gelöscht [Extension] : ogccgbmabaphcakpiclgcnmcnimhokcj ************************* AdwCleaner[R0].txt - [58799 octets] - [20/05/2014 20:10:00] AdwCleaner[S0].txt - [58147 octets] - [20/05/2014 20:11:54] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [58208 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows Vista (TM) Business x86 Ran by Niclas on 20.05.2014 at 20:33:41,55 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\apntbmon Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL Successfully deleted [Registry Value] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\\bProtectTabs ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1136760724-3360318724-1241145457-1000\Software\ib updater Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1136760724-3360318724-1241145457-1000\Software\sweetim Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1136760724-3360318724-1241145457-1000\Software\web assistant ~~~ Files Successfully deleted: [File] "C:\Users\Niclas\appdata\locallow\SkwConfig.bin" ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\apn" Successfully deleted: [Folder] "C:\Windows\system32\ai_recyclebin" ~~~ FireFox Successfully deleted: [File] C:\user.js Successfully deleted: [File] C:\Users\Niclas\AppData\Roaming\mozilla\firefox\profiles\m9m0uyj2.default\extensions\toolbar_avira-v7@apn.ask.com.xpi Successfully deleted the following from C:\Users\Niclas\AppData\Roaming\mozilla\firefox\profiles\m9m0uyj2.default\prefs.js user_pref("extensions.AVIRA-V7.com.avira.dnt.rules", "\"{\\\"Version\\\":42,\\\"Companies\\\":[{\\\"company\\\":\\\"Google Inc\\\",\\\"rules\\\":[{\\\"name\\\":\\\"Google Anal user_pref("extensions.AVIRA-V7.domain", "\"avira.search.ask.com\""); Emptied folder: C:\Users\Niclas\AppData\Roaming\mozilla\firefox\profiles\m9m0uyj2.default\minidumps [265 files] ~~~ Chrome Successfully deleted: [Folder] C:\Users\Niclas\appdata\local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\aaaaacalgebmfelllfiaoknifldpngjh ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.05.2014 at 20:40:17,87 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
20.05.2014, 19:47 | #7 |
| 100% CPU AuslastungCode:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:17-05-2014 Ran by Niclas (administrator) on NICLAS-PC on 20-05-2014 20:42:57 Running from C:\Users\Niclas\Downloads Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: German Standard Internet Explorer Version 7 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AOL LLC) C:\Program Files\Common Files\aol\ACS\AOLacsd.exe (APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Windows\System32\PnkBstrA.exe () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe (Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe () C:\Program Files\MP4 Player\Mp4Player.exe (Spotify Ltd) C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Auslogics) C:\Program Files\Auslogics\BoostSpeed\BoostSpeed.exe () C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Windows\System32\conime.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (RealNetworks, Inc.) C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe (Farbar) C:\Users\Niclas\Downloads\FRST(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] => "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [TkBellExe] => c:\program files\real\realplayer\Update\realsched.exe [295512 2013-06-22] (RealNetworks, Inc.) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [KPeerNexonEU] => C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe [438272 2011-12-18] (NEXON Inc.) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [MP4 Player] => C:\Program Files\MP4 Player\mp4Player.exe [772096 2008-11-06] () HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [Spotify] => C:\Users\Niclas\AppData\Roaming\Spotify\Spotify.exe [6170168 2014-05-19] (Spotify Ltd) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [Spotify Web Helper] => C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1176632 2014-05-19] (Spotify Ltd) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [Sony PC Companion] => C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449760 2013-10-31] (Sony) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\MountPoints2: {b2835c26-06c0-11e3-8911-00173188a745} - F:\Startme.exe ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm URLSearchHook: HKCU - (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File URLSearchHook: HKCU - (No Name) - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - No File URLSearchHook: HKCU - (No Name) - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - No File SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Toolbar: HKCU - No Name - {5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} - No File Toolbar: HKCU - No Name - {0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - No File DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin: @real.com/nppl3260;version=16.0.2.32 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprphtml5videoshim;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpplugin;version=16.0.2.32 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Stylish - C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2012-12-20] FF Extension: Smartest Bookmarks Bar - C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\m9m0uyj2.default\Extensions\{b442f4c0-c292-4998-aabe-48608a73ba75}.xpi [2012-12-20] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-06-22] FF HKLM\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "hxxp://www.doko-search.com/?babsrc=HP_ss_mib2&mntrId=CC6100173188A745&affID=119360&tsp=4966" CHR DefaultSearchKeyword: mystart.incredibar.com/ CHR DefaultSearchProvider: MyStart CHR DefaultSearchURL: hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=CC6100173188A745&affID=119360&tsp=4966 CHR DefaultNewTabURL: CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.) CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll No File CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll No File CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll No File CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) CHR Plugin: (RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (RealDownloader) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-09-03] CHR Extension: (DVDVideoSoft) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2013-09-03] CHR Extension: (Google Wallet) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-16] CHR Extension: (No Name) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-11-16] CHR HKLM\...\Chrome\Extension: [bmbpbcpokffodhpcdjaoopolhdlbconi] - C:\Users\Niclas\AppData\Local\Temp\tbch.crx [2013-11-16] CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2013-08-28] ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AOL ACS; C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe [46640 2006-10-23] (AOL LLC) R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) S3 npggsvc; C:\Windows\system32\GameMon.des [4705208 2012-06-25] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2012-09-23] () R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] () S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-12-07] (Avira Operations GmbH & Co. KG) S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] () S3 PCASp50; C:\Windows\System32\Drivers\PCASp50.sys [35384 2009-10-28] (Printing Communications Assoc., Inc. (PCAUSA)) R1 prodrv06; C:\Windows\System32\drivers\prodrv06.sys [54272 2004-04-08] (Protection Technology) R0 prohlp02; C:\Windows\System32\drivers\prohlp02.sys [70400 2004-04-08] (Protection Technology) R0 prosync1; C:\Windows\System32\drivers\prosync1.sys [6944 2003-09-06] (Protection Technology) R0 sfhlp01; C:\Windows\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-12-07] (Avira GmbH) R3 wanatw; C:\Windows\System32\DRIVERS\wanatw4.sys [33588 2006-11-30] (America Online, Inc.) S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S3 XDva397; \??\C:\Windows\system32\XDva397.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2099-02-16 23:56 - 2008-01-19 00:42 - 00142904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys 2099-02-16 23:56 - 2008-01-19 00:42 - 00094776 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe 2099-02-16 23:56 - 2008-01-19 00:42 - 00058936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys 2099-02-16 23:56 - 2008-01-19 00:42 - 00057400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00035384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00034360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00031288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00024120 _____ (Microsoft Corporation) C:\Windows\system32\BOOTVID.DLL 2099-02-16 23:56 - 2008-01-19 00:41 - 00017976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00016440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys 2099-02-16 23:56 - 2008-01-19 00:38 - 04595712 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll 2099-02-16 23:56 - 2008-01-19 00:38 - 00155704 _____ (Microsoft Corporation) C:\Windows\system32\dssenh.dll 2099-02-16 23:56 - 2008-01-19 00:38 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL 2099-02-16 23:56 - 2008-01-19 00:38 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 01502208 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\ogldrv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00531456 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\p2pcollab.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\qwave.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\ppcsnap.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\provthrd.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\rgb9rast.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\SmiInstaller.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWiaCompat.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\shrink.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\oledlg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\sdshext.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\ntdsapi.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\olecli32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\olethk32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\rasman.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rasqec.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pnrpnsp.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssocPrx.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\osblprov.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\RegCtrl.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\psbase.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\sfc_os.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\odbcbcp.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\olesvr32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\PlaySndSrv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\procinst.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\sdspres.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 09847296 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04875776 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0009.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04497408 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0019.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0416.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0414.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001d.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0010.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03466752 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0013.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004e.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004c.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004b.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0049.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0047.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0046.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0045.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0039.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0020.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02657280 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0011.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02643456 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000c.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02599936 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0001.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02342912 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000d.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02243072 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0007.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01966592 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0027.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0c1a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData081a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0026.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0024.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001b.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0018.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000f.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0003.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0002.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData003e.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData002a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0022.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0021.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01523712 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0000.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\msvbvm60.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\netprof.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\msidcrl30.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00352256 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\mswmdm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\mycomput.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\msoeacct.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\mssha.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\msrdc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\nlmgp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\NAPMONTR.DLL 2099-02-16 23:56 - 2008-01-19 00:35 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\ndfapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\msoert2.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\msident.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NapiNSP.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\mspatcha.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\napipsec.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\mtxlegih.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\msidle.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 01039360 _____ (Microsoft Corporation) C:\Windows\system32\d3d8.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\d3dim700.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\colorui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00616448 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00614400 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\filemgmt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\dsquery.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\dmdlgs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00384512 _____ (Microsoft Corporation) C:\Windows\system32\d3dim.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\msdtckrm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\msdelta.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\CompatUI.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\comsnap.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\msdt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\mdminst.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\lltdsvc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\mlang.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00178688 _____ (Microsoft Corporation) C:\Windows\system32\dmime.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\dsdmo.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\msdadiag.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\dinput8.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\keymgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\dbnetlib.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\McxDriv.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\msdart.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mprmsg.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\msaatext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\loadperf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iscsiexe.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\comrepl.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\msdtclog.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\efsadu.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\dmscript.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\IPBusEnum.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\loghours.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\EAPQEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\DHCPQEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\dxva2.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\colbact.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\dhcpsapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\eapsvc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\DfsShlEx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\d3dxof.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\dnshc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\dot3dlg.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\mmcss.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dssec.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpclnt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\dmocx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dfdts.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\dmloader.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\esentprf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\dispci.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\dimsjob.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lltdapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\localui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\ktmw32.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\KBDJPN.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\KBDKOR.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\iscsied.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 05714432 _____ (Microsoft Corporation) C:\Windows\system32\logon.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 02585088 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 01405952 _____ (Microsoft Corporation) C:\Windows\system32\ActiveContentWizard.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00879616 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\clbcatq.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00520704 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWGP.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00485376 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\catsrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\shrpubw.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00334336 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\cmipnpinstall.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\NAPSTAT.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\adsnt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00251904 _____ (Microsoft Corporation) C:\Windows\system32\authfwcfg.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\audiodev.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00226816 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\apircl.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\apss.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\p2phost.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00163840 _____ (Microsoft Corp.) C:\Windows\system32\DfrgNtfs.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msdt.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\raserver.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\DpiScaling.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151040 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\CompMgmtLauncher.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00134656 _____ (Microsoft Corporation) C:\Windows\regedit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mtstocom.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\dispdiag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\msscript.ocx 2099-02-16 23:56 - 2008-01-19 00:33 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\msdtc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayApi.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\makecab.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\OptionalFeatures.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00096768 _____ (Microsoft Corp.) C:\Windows\system32\dfrgfat.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\diantz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\btpanui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\dmview.ocx 2099-02-16 23:56 - 2008-01-19 00:33 - 00087552 _____ (Microsoft) C:\Windows\system32\Robocopy.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\ACW.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\cmdl32.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\DFDWiz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\driverquery.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\cmicryptinstall.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\alg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\dfrgifc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00058880 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PushPrinterConnections.exe |
20.05.2014, 19:47 | #8 |
| 100% CPU AuslastungCode:
ATTFilter 2099-02-16 23:56 - 2008-01-19 00:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\expand.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\brcplsdw.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\net.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\bcdprov.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\cmutil.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\regini.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\lodctr.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\lnkstub.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\SecEdit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\cmlua.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\shutdown.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AtBroker.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Netplwiz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\at.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\amxread.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\RacAgent.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\capisp.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\convert.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\apilogen.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\setupSNK.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\batt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\avrt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\sbunattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\csrss.exe 2099-02-16 23:56 - 2008-01-19 00:32 - 02249216 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 01370624 _____ (Microsoft Corporation) C:\Windows\system32\Aurora.scr 2099-02-16 23:56 - 2008-01-19 00:32 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\joy.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2099-02-16 23:56 - 2008-01-19 00:31 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll 2099-02-16 23:56 - 2008-01-19 00:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2099-02-16 23:56 - 2008-01-19 00:29 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2099-02-16 23:56 - 2008-01-18 23:01 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll 2099-02-16 23:56 - 2008-01-18 23:01 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPENCDD.sys 2099-02-16 23:56 - 2008-01-18 23:01 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys 2099-02-16 23:56 - 2008-01-18 22:57 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys 2099-02-16 23:56 - 2008-01-18 22:57 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys 2099-02-16 23:56 - 2008-01-18 22:54 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys 2099-02-16 23:56 - 2008-01-18 22:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bdasup.sys 2099-02-16 23:56 - 2008-01-18 22:53 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2099-02-16 23:56 - 2008-01-18 22:52 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys 2099-02-16 23:56 - 2008-01-18 22:50 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serial.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parport.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fdc.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serenum.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parvdm.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00005888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00005504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\dmdskres2.dll 2099-02-16 23:56 - 2008-01-18 22:48 - 01291264 _____ (Microsoft Corporation) C:\Windows\system32\comres.dll 2099-02-16 23:56 - 2008-01-18 22:48 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msdtcVSp1res.dll 2099-02-16 23:56 - 2008-01-18 22:43 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\activeds.tlb 2099-02-16 23:56 - 2008-01-18 22:36 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxapi.sys 2099-02-16 23:56 - 2008-01-18 22:30 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys 2099-02-16 23:56 - 2008-01-18 22:30 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys 2099-02-16 23:56 - 2008-01-18 22:28 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys 2099-02-16 23:56 - 2008-01-18 22:27 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys 2099-02-16 23:56 - 2008-01-18 22:27 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\bootstr.dll 2099-02-16 23:56 - 2008-01-05 04:32 - 00120458 _____ () C:\Windows\system32\secpol.msc 2099-02-16 23:56 - 2008-01-05 04:32 - 00001820 _____ () C:\Windows\system32\rasctrnm.h 2099-02-16 23:56 - 2008-01-05 04:31 - 00145455 _____ () C:\Windows\system32\perfmon.msc 2099-02-16 23:55 - 2011-05-05 18:01 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\hcrstco.dll 2099-02-16 23:55 - 2008-01-19 00:42 - 00052792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00021048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spldr.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00017976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00015288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys 2099-02-16 23:55 - 2008-01-19 00:37 - 01675264 _____ (Microsoft Corporation) C:\Windows\system32\xpssvcs.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 01642496 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 01329152 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 01295360 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00767488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\XPSSHHDR.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\xwizards.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\WMASF.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\wmidx.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\wmvdspa.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\xwtpw32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\xactsrv.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\wzcdlg.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wscmisetup.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\wmpcm.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wscproxystub.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\WSHTCPIP.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\wship6.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 02588160 _____ (Microsoft Corporation) C:\Windows\system32\UIHub.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 01298432 _____ (Microsoft Corporation) C:\Windows\system32\TMM.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00913408 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\unbcl.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\sqlceqp30.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00498688 _____ (Microsoft Corporation) C:\Windows\system32\wlandlg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wiashext.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00415744 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00251904 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\verifier.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\uudf.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\WLanHC.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\sstpsvc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\TapiMigPlugin.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\Tabbtn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\ufat.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\txflog.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\wiascanprofiles.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\usbui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\trkwks.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\winethc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\uexfat.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\tbssvc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\TabbtnEx.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\vdmredir.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00041472 _____ (Microsoft) C:\Windows\system32\WlanMmHC.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WinFax.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\srwmi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\txfw32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00890368 _____ (Microsoft Corporation) C:\Windows\system32\FXSST.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMPOSE.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00473088 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\FXSXP32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\hnetcfg.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\FXSUTILITY.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\icsfiltr.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\ieencode.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOM.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\GuidedHelp.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\FXSROUTE.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\HelpPaneProxy.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\fwcfg.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\FXSEXT32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 08139264 _____ (Microsoft Corporation) C:\Windows\system32\ssBranded.scr 2099-02-16 23:55 - 2008-01-19 00:33 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2099-02-16 23:55 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00498176 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr 2099-02-16 23:55 - 2008-01-19 00:33 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgrade.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\WinFXDocObj.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\SoundRecorder.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\verifier.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\vssadmin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TpmInit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\bootcfg.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\systeminfo.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wlanext.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2099-02-16 23:55 - 2008-01-19 00:33 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\getmac.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\gacinstall.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\ucsvc.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\xcopy.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\UI0Detect.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\unattendedjoin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\syskey.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\blb_ps.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\iashost.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\srdelayed.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\fveupdate.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe 2099-02-16 23:55 - 2008-01-19 00:32 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl 2099-02-16 23:55 - 2008-01-19 00:32 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl 2099-02-16 23:55 - 2008-01-19 00:31 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll 2099-02-16 23:55 - 2008-01-19 00:29 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\imagesp1.dll 2099-02-16 23:55 - 2008-01-18 23:15 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WSDPrint.sys 2099-02-16 23:55 - 2008-01-18 23:14 - 00925184 _____ (Microsoft Corporation) C:\Windows\system32\FXSRESM.dll 2099-02-16 23:55 - 2008-01-18 23:14 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\tsddd.dll 2099-02-16 23:55 - 2008-01-18 22:57 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys 2099-02-16 23:55 - 2008-01-18 22:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2099-02-16 23:55 - 2008-01-18 22:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys 2099-02-16 23:55 - 2008-01-18 22:55 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TUNMP.SYS 2099-02-16 23:55 - 2008-01-18 22:53 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys 2099-02-16 23:55 - 2008-01-18 22:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umpass.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\vga256.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vga.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\vga64k.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\framebuf.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\vga.dll 2099-02-16 23:55 - 2008-01-18 22:49 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys 2099-02-16 23:55 - 2008-01-18 22:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys 2099-02-16 23:55 - 2008-01-18 22:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\wertargets.wtl 2099-02-16 23:55 - 2008-01-18 22:33 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\graftabl.com 2099-02-16 23:55 - 2008-01-18 22:31 - 08322048 _____ (Microsoft Corporation) C:\Windows\system32\spwizimg.dll 2099-02-16 23:55 - 2008-01-18 22:30 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll 2099-02-16 23:55 - 2008-01-18 22:28 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys 2099-02-16 23:55 - 2008-01-05 04:34 - 00147439 _____ () C:\Windows\system32\gpedit.msc 2099-02-16 23:55 - 2008-01-05 04:34 - 00015181 _____ () C:\Windows\system32\gatherWirelessInfo.vbs 2099-02-16 23:55 - 2008-01-05 04:23 - 00060124 _____ () C:\Windows\system32\tcpmon.ini 2099-02-16 23:55 - 2008-01-05 04:22 - 00144909 _____ () C:\Windows\system32\fsmgmt.msc 2099-02-16 23:55 - 2008-01-05 04:21 - 00012198 _____ () C:\Windows\system32\gatherWiredInfo.vbs 2099-02-16 23:54 - 2007-12-06 06:04 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\kbd106n.dll 2099-02-16 23:45 - 2099-02-17 00:04 - 00196608 _____ () C:\Windows\SPInstall.etl 2099-02-16 23:44 - 2099-02-16 23:45 - 455611504 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB936330-X86-wave0.exe 2099-02-16 22:53 - 2099-02-16 22:53 - 08531968 _____ () C:\Users\Niclas\Downloads\SteamInstall_German.msi 2099-02-16 21:50 - 2014-05-09 19:33 - 00000000 ____D () C:\Program Files\Common Files\Steam 2099-02-16 21:45 - 2099-02-16 21:45 - 00000000 ____D () C:\Windows\system32\EventProviders 2099-02-16 20:56 - 2099-02-16 21:45 - 365230920 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB948465-X86.exe 2099-02-16 20:47 - 2099-02-16 20:47 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Macromedia 2099-02-16 20:47 - 2014-05-07 21:25 - 00000000 ____D () C:\ProgramData\NVIDIA 2099-02-16 20:47 - 2013-08-31 21:35 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Adobe 2099-02-16 20:44 - 2008-06-18 18:46 - 01079840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpluir.dll 2099-02-16 20:44 - 2008-06-18 18:46 - 00854560 _____ (NVIDIA Corporation) C:\Windows\system32\nvcplui.exe 2099-02-16 20:44 - 2008-06-18 18:46 - 00428576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.cpl 2099-02-16 20:43 - 2099-02-16 20:43 - 65450048 _____ (NVIDIA Corporation ) C:\Users\Niclas\Downloads\177.41_geforce_winvista_32bit_international_whql.exe 2099-02-16 20:43 - 2011-12-31 19:35 - 00000000 ____D () C:\NVIDIA 2099-02-16 20:43 - 2008-06-16 17:34 - 00446464 _____ (NVIDIA Corporation) C:\Windows\system32\NVUNINST.EXE 2099-02-16 20:42 - 2099-02-16 20:42 - 00000000 ____D () C:\Windows\system32\Macromed 2099-02-16 20:42 - 2014-05-19 21:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2099-02-16 20:36 - 2099-02-16 20:37 - 00000000 ____D () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64 2099-02-16 20:36 - 2099-02-16 20:36 - 249660486 _____ () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64.zip 2099-02-16 20:36 - 2011-12-31 16:10 - 00002669 _____ () C:\Users\Public\Desktop\NETGEAR Powerline Utility.lnk 2099-02-16 20:35 - 2099-02-16 20:35 - 00000000 ____D () C:\Users\Niclas\AppData\Local\{06F8A00D-727E-483E-B2EC-21C7EE145549} 2099-02-16 20:34 - 2099-02-16 20:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Powerline 2099-02-16 20:34 - 2099-02-16 20:35 - 11840088 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\NETGEAR_Powerline_Setup_V2.0.0.8_230-10802-04.exe 2099-02-16 20:34 - 2099-02-16 20:35 - 00000000 ____D () C:\Program Files\NETGEAR 2099-02-16 20:34 - 2099-02-16 20:34 - 06535984 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\XAV5001_FW_upgrade_v2.0.0.0.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Downloaded Installations 2099-02-16 20:34 - 2014-01-15 18:29 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2099-02-16 20:34 - 2009-10-28 11:59 - 00035384 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\Windows\system32\Drivers\PcaSp50.sys 2099-02-16 20:32 - 2099-02-16 20:35 - 87132736 _____ () C:\Users\Niclas\Downloads\avira_free_antivirus_de.exe 2099-02-16 20:16 - 2099-02-16 20:16 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Mozilla 2099-02-16 20:16 - 2013-07-16 20:12 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Mozilla 2099-02-16 20:16 - 2012-04-26 17:43 - 00000870 _____ () C:\Users\Niclas\Desktop\Mozilla Firefox.lnk 2099-02-16 20:16 - 2012-04-26 17:43 - 00000858 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2099-02-16 16:05 - 2099-02-16 16:05 - 00000020 ___SH () C:\Users\Niclas\ntuser.ini 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Startmenü 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Netzwerkumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Druckumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Musik 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Bilder 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Local\Verlauf 2099-02-16 16:05 - 2014-05-17 01:33 - 00000680 _____ () C:\Users\Niclas\AppData\Local\d3d9caps.dat 2099-02-16 16:05 - 2014-05-09 20:26 - 00000000 ____D () C:\Users\Niclas\AppData\Local\VirtualStore 2099-02-16 16:05 - 2014-05-09 19:33 - 00000000 ____D () C:\Users\Niclas 2099-02-16 16:05 - 2013-07-28 18:07 - 00049168 _____ () C:\Users\Niclas\AppData\Local\GDIPFONTCACHEV1.DAT 2099-02-16 16:05 - 2011-12-14 18:33 - 00000944 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2099-02-16 16:05 - 2011-12-13 15:21 - 00000949 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2099-02-16 16:05 - 2011-12-13 15:21 - 00000915 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2099-02-16 16:05 - 2006-11-02 14:54 - 00000000 ___RD () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-16 16:05 - 2006-11-02 14:50 - 00000000 ___RD () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Dokumente 2099-02-16 14:49 - 2099-02-16 14:49 - 00000604 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live.lnk 2099-02-16 14:46 - 2099-02-16 14:46 - 00000000 ____D () C:\Windows\CSC 2099-02-16 14:44 - 2012-04-27 14:34 - 00000000 ____D () C:\Windows\Panther 2099-02-16 14:43 - 2099-02-16 14:43 - 00008192 ___RS () C:\BOOTSECT.BAK 2099-02-16 14:43 - 2009-04-11 00:36 - 00333257 __RSH () C:\bootmgr 2014-05-20 20:42 - 2014-05-20 20:42 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(1).exe 2014-05-20 20:40 - 2014-05-20 20:40 - 00003039 _____ () C:\Users\Niclas\Desktop\JRT.txt 2014-05-20 20:33 - 2014-05-20 20:33 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT(1).exe 2014-05-20 20:33 - 2014-05-20 20:33 - 00000000 ____D () C:\Windows\ERUNT 2014-05-20 20:22 - 2014-05-20 20:23 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT.exe 2014-05-20 20:11 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll 2014-05-20 20:09 - 2014-05-20 20:16 - 00000000 ____D () C:\AdwCleaner 2014-05-20 20:08 - 2014-05-20 20:09 - 01326389 _____ () C:\Users\Niclas\Downloads\adwcleaner_3.210.exe 2014-05-19 21:13 - 2014-05-19 21:14 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-19 20:36 - 2014-05-19 20:37 - 00024039 _____ () C:\Users\Niclas\Downloads\Addition.txt 2014-05-19 20:33 - 2014-05-20 20:42 - 00017658 _____ () C:\Users\Niclas\Downloads\FRST.txt 2014-05-19 20:31 - 2014-05-20 20:42 - 00000000 ____D () C:\FRST 2014-05-19 20:31 - 2014-05-19 20:31 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST.exe 2014-05-17 23:55 - 2014-05-17 23:55 - 01243655 _____ () C:\Users\Niclas\Downloads\ProcessExplorer_16.02.zip 2014-05-09 23:56 - 2014-05-09 23:59 - 00004938 _____ () C:\Windows\DPINST.LOG 2014-05-09 23:03 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Users\Du Lappen\Desktop\svchost.exe 2014-05-09 22:54 - 2014-05-09 22:54 - 00000104 _____ () C:\Users\Du Lappen\Desktop\Computer - Verknüpfung.lnk 2014-05-09 21:35 - 2014-05-09 21:35 - 00000000 ____D () C:\Users\Du Lappen\AppData\Roaming\Avira 2014-05-09 21:28 - 2014-05-09 21:28 - 00000000 ____D () C:\Users\Du Lappen\AppData\Local\NVIDIA 2014-05-09 21:19 - 2014-05-09 21:19 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-09 21:18 - 2014-05-09 21:18 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-09 21:18 - 2014-04-14 20:13 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-05-09 21:18 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-05-09 21:18 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-05-09 21:18 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-05-09 21:16 - 2014-05-09 21:18 - 00006043 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-05-09 21:16 - 2014-05-09 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-09 21:08 - 2014-05-20 20:18 - 00007524 _____ () C:\Windows\PFRO.log 2014-05-09 20:27 - 2014-05-09 20:38 - 00009607 _____ () C:\Users\Niclas\Downloads\hijackthis.log 2014-05-09 20:26 - 2014-05-09 20:26 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics BoostSpeed.lnk 2014-05-09 20:25 - 2014-05-09 20:25 - 17033488 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\boost-speed-setup.exe 2014-05-09 20:08 - 2014-05-09 20:08 - 00388608 _____ (Trend Micro Inc.) C:\Users\Niclas\Downloads\HiJackThis204.exe 2014-05-09 20:00 - 2014-05-09 20:27 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-09 20:00 - 2014-05-09 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics 2014-05-09 20:00 - 2014-05-09 20:26 - 00000000 ____D () C:\Program Files\Auslogics 2014-05-09 20:00 - 2014-05-09 20:00 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics DiskDefrag.lnk 2014-05-09 19:58 - 2014-05-09 19:58 - 06225592 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\disk-defrag-454setup.exe 2014-05-07 21:26 - 2014-05-07 21:26 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-05-07 21:25 - 2014-05-09 19:33 - 00000000 ____D () C:\Users\Niclas\{85ea8232-30ba-4e41-ba0a-6ea33822f4fa} 2014-05-07 21:17 - 2014-03-04 16:29 - 23716640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 10523480 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-07 21:17 - 2014-03-04 16:29 - 09690424 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 02956632 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 02411976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 01049888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233523.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 00894296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233523.dll 2014-05-07 21:16 - 2014-03-04 16:29 - 17559384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-07 21:16 - 2014-03-04 16:29 - 09728064 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-07 21:11 - 2014-05-07 21:11 - 00000000 ____D () C:\Users\Niclas\AppData\Local\AskPartnerNetwork 2014-05-06 23:17 - 2014-04-29 15:10 - 03627520 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 23:17 - 2014-04-29 13:42 - 01383424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 23:17 - 2014-02-06 03:56 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll ==================== One Month Modified Files and Folders ======= 2099-02-17 00:27 - 2012-09-23 12:26 - 00000000 ___RD () C:\Users\Du Lappen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2012-09-23 12:26 - 00000000 ___RD () C:\Users\Du Lappen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 14:55 - 00001743 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2099-02-17 00:27 - 2006-11-02 14:50 - 00000749 ___RH () C:\Windows\WindowsShell.Manifest 2099-02-17 00:27 - 2006-11-02 14:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades 2099-02-17 00:21 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\DigitalLocker 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ras 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\icsxml 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ias 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\com 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\MSAgent 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\L2Schemas 2099-02-17 00:11 - 2006-11-02 12:32 - 00101888 _____ (Infineon Technologies AG) C:\Windows\system32\ifxcardm.dll 2099-02-17 00:10 - 2006-11-02 12:32 - 00082432 _____ (Gemalto, Inc.) C:\Windows\system32\axaltocm.dll 2099-02-17 00:04 - 2099-02-16 23:45 - 00196608 _____ () C:\Windows\SPInstall.etl 2099-02-16 23:45 - 2099-02-16 23:44 - 455611504 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB936330-X86-wave0.exe 2099-02-16 22:53 - 2099-02-16 22:53 - 08531968 _____ () C:\Users\Niclas\Downloads\SteamInstall_German.msi 2099-02-16 21:45 - 2099-02-16 21:45 - 00000000 ____D () C:\Windows\system32\EventProviders 2099-02-16 21:45 - 2099-02-16 20:56 - 365230920 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB948465-X86.exe 2099-02-16 20:47 - 2099-02-16 20:47 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Macromedia 2099-02-16 20:46 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\rescache 2099-02-16 20:44 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Help 2099-02-16 20:43 - 2099-02-16 20:43 - 65450048 _____ (NVIDIA Corporation ) C:\Users\Niclas\Downloads\177.41_geforce_winvista_32bit_international_whql.exe 2099-02-16 20:42 - 2099-02-16 20:42 - 00000000 ____D () C:\Windows\system32\Macromed 2099-02-16 20:37 - 2099-02-16 20:36 - 00000000 ____D () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64 2099-02-16 20:36 - 2099-02-16 20:36 - 249660486 _____ () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64.zip 2099-02-16 20:36 - 2099-02-16 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Powerline 2099-02-16 20:35 - 2099-02-16 20:35 - 00000000 ____D () C:\Users\Niclas\AppData\Local\{06F8A00D-727E-483E-B2EC-21C7EE145549} 2099-02-16 20:35 - 2099-02-16 20:34 - 11840088 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\NETGEAR_Powerline_Setup_V2.0.0.8_230-10802-04.exe 2099-02-16 20:35 - 2099-02-16 20:34 - 00000000 ____D () C:\Program Files\NETGEAR 2099-02-16 20:35 - 2099-02-16 20:32 - 87132736 _____ () C:\Users\Niclas\Downloads\avira_free_antivirus_de.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 06535984 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\XAV5001_FW_upgrade_v2.0.0.0.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Downloaded Installations 2099-02-16 20:31 - 2006-11-02 14:50 - 00001661 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk 2099-02-16 20:16 - 2099-02-16 20:16 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Mozilla 2099-02-16 17:10 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\system32\restore 2099-02-16 16:05 - 2099-02-16 16:05 - 00000020 ___SH () C:\Users\Niclas\ntuser.ini 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Startmenü 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Netzwerkumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Druckumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Musik 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Bilder 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Dokumente 2099-02-16 16:03 - 2006-11-02 13:18 - 00000000 __RHD () C:\Users\Default 2099-02-16 14:49 - 2099-02-16 14:49 - 00000604 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live.lnk 2099-02-16 14:46 - 2099-02-16 14:46 - 00000000 ____D () C:\Windows\CSC 2099-02-16 14:43 - 2099-02-16 14:43 - 00008192 ___RS () C:\BOOTSECT.BAK 2099-02-16 14:43 - 2006-11-02 14:43 - 00037888 ____H () C:\Windows\system32\config\BCD-Template.LOG 2099-02-16 14:43 - 2006-11-02 14:37 - 00262144 _____ () C:\Windows\system32\config\BCD-Template 2014-05-20 20:44 - 2014-05-19 20:33 - 00017658 _____ () C:\Users\Niclas\Downloads\FRST.txt 2014-05-20 20:42 - 2014-05-20 20:42 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(1).exe 2014-05-20 20:42 - 2014-05-19 20:31 - 00000000 ____D () C:\FRST 2014-05-20 20:40 - 2014-05-20 20:40 - 00003039 _____ () C:\Users\Niclas\Desktop\JRT.txt 2014-05-20 20:33 - 2014-05-20 20:33 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT(1).exe 2014-05-20 20:33 - 2014-05-20 20:33 - 00000000 ____D () C:\Windows\ERUNT 2014-05-20 20:23 - 2014-05-20 20:22 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT.exe 2014-05-20 20:23 - 2006-11-02 14:52 - 01055989 _____ () C:\Windows\WindowsUpdate.log 2014-05-20 20:22 - 2011-12-30 19:07 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-20 20:21 - 2013-08-01 01:20 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Spotify 2014-05-20 20:19 - 2011-12-30 19:07 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-20 20:18 - 2014-05-09 21:08 - 00007524 _____ () C:\Windows\PFRO.log 2014-05-20 20:18 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-20 20:18 - 2006-11-02 14:47 - 00004912 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-20 20:18 - 2006-11-02 14:47 - 00004912 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-20 20:16 - 2014-05-20 20:09 - 00000000 ____D () C:\AdwCleaner 2014-05-20 20:16 - 2006-11-02 15:01 - 00032582 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-20 20:09 - 2014-05-20 20:08 - 01326389 _____ () C:\Users\Niclas\Downloads\adwcleaner_3.210.exe 2014-05-20 20:08 - 2013-03-20 20:48 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-20 19:59 - 2012-11-02 20:26 - 00000000 ____D () C:\Program Files\Warcraft III 2014-05-20 19:24 - 2011-12-16 15:15 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\TS3Client 2014-05-20 12:09 - 2012-04-26 17:43 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-19 21:14 - 2014-05-19 21:13 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-19 21:10 - 2013-08-01 01:25 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Spotify 2014-05-19 21:08 - 2099-02-16 20:42 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-05-19 21:08 - 2013-03-20 20:48 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-05-19 20:37 - 2014-05-19 20:36 - 00024039 _____ () C:\Users\Niclas\Downloads\Addition.txt 2014-05-19 20:33 - 2011-12-30 19:07 - 00001963 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 20:31 - 2014-05-19 20:31 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST.exe 2014-05-19 20:03 - 2006-11-02 12:33 - 01549708 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-17 23:55 - 2014-05-17 23:55 - 01243655 _____ () C:\Users\Niclas\Downloads\ProcessExplorer_16.02.zip 2014-05-17 01:33 - 2099-02-16 16:05 - 00000680 _____ () C:\Users\Niclas\AppData\Local\d3d9caps.dat 2014-05-10 23:12 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-05-09 23:59 - 2014-05-09 23:56 - 00004938 _____ () C:\Windows\DPINST.LOG 2014-05-09 23:06 - 2013-07-16 20:12 - 00000000 ____D () C:\ProgramData\AOL 2014-05-09 22:54 - 2014-05-09 22:54 - 00000104 _____ () C:\Users\Du Lappen\Desktop\Computer - Verknüpfung.lnk 2014-05-09 21:35 - 2014-05-09 21:35 - 00000000 ____D () C:\Users\Du Lappen\AppData\Roaming\Avira 2014-05-09 21:28 - 2014-05-09 21:28 - 00000000 ____D () C:\Users\Du Lappen\AppData\Local\NVIDIA 2014-05-09 21:28 - 2013-04-30 11:37 - 00049168 _____ () C:\Users\Du Lappen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-09 21:19 - 2014-05-09 21:19 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-09 21:18 - 2014-05-09 21:18 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-09 21:18 - 2014-05-09 21:16 - 00006043 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-05-09 21:18 - 2011-12-16 22:55 - 00000000 ____D () C:\Program Files\Java 2014-05-09 21:16 - 2014-05-09 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-09 20:38 - 2014-05-09 20:27 - 00009607 _____ () C:\Users\Niclas\Downloads\hijackthis.log 2014-05-09 20:33 - 2012-06-01 15:01 - 00000000 ____D () C:\Windows\Minidump 2014-05-09 20:27 - 2014-05-09 20:00 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-09 20:26 - 2099-02-16 16:05 - 00000000 ____D () C:\Users\Niclas\AppData\Local\VirtualStore 2014-05-09 20:26 - 2014-05-09 20:26 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics BoostSpeed.lnk 2014-05-09 20:26 - 2014-05-09 20:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics 2014-05-09 20:26 - 2014-05-09 20:00 - 00000000 ____D () C:\Program Files\Auslogics 2014-05-09 20:25 - 2014-05-09 20:25 - 17033488 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\boost-speed-setup.exe 2014-05-09 20:08 - 2014-05-09 20:08 - 00388608 _____ (Trend Micro Inc.) C:\Users\Niclas\Downloads\HiJackThis204.exe 2014-05-09 20:00 - 2014-05-09 20:00 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics DiskDefrag.lnk 2014-05-09 19:58 - 2014-05-09 19:58 - 06225592 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\disk-defrag-454setup.exe 2014-05-09 19:33 - 2099-02-16 21:50 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-05-09 19:33 - 2099-02-16 16:05 - 00000000 ____D () C:\Users\Niclas 2014-05-09 19:33 - 2014-05-07 21:25 - 00000000 ____D () C:\Users\Niclas\{85ea8232-30ba-4e41-ba0a-6ea33822f4fa} 2014-05-09 19:33 - 2013-11-23 23:22 - 00000000 ____D () C:\Riot Games 2014-05-09 19:33 - 2011-12-31 16:29 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-05-09 19:33 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\spool 2014-05-09 19:33 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\registration 2014-05-09 19:33 - 2006-11-02 12:22 - 31719424 _____ () C:\Windows\system32\config\software_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 31719424 _____ () C:\Windows\system32\config\components_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 17825792 _____ () C:\Windows\system32\config\system_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00524288 _____ () C:\Windows\system32\config\default_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\security_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous 2014-05-09 19:32 - 2011-12-30 19:08 - 00000000 ____D () C:\ProgramData\Real 2014-05-09 18:10 - 2013-07-18 22:25 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-09 17:46 - 2013-03-29 17:42 - 00000000 ____D () C:\Program Files\Steam 2014-05-07 21:26 - 2014-05-07 21:26 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-05-07 21:25 - 2099-02-16 20:47 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-07 21:11 - 2014-05-07 21:11 - 00000000 ____D () C:\Users\Niclas\AppData\Local\AskPartnerNetwork 2014-05-07 21:07 - 2013-06-18 13:27 - 00000000 ____D () C:\Users\Niclas\AppData\Local\NVIDIA 2014-05-07 21:06 - 2011-12-31 16:33 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-07 21:05 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-04-29 15:10 - 2014-05-06 23:17 - 03627520 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-29 13:42 - 2014-05-06 23:17 - 01383424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb Files to move or delete: ==================== C:\Users\Niclas\AppData\Roaming\swk.ini Some content of TEMP: ==================== C:\Users\Du Lappen\AppData\Local\Temp\AskSLib.dll C:\Users\Du Lappen\AppData\Local\Temp\avgnt.exe C:\Users\Niclas\AppData\Local\Temp\avgnt.exe C:\Users\Niclas\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Niclas\AppData\Local\Temp\Quarantine.exe C:\Users\Niclas\AppData\Local\Temp\uninst.dll C:\Users\Niclas\AppData\Local\Temp\uninst1.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-20 20:27 ==================== End Of Log ============================ |
21.05.2014, 15:44 | #9 |
/// Malwareteam | 100% CPU Auslastung Ok, dann fixen wir noch den Rest und führen Kontrollscans durch: Schritt 1 Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) (APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe (APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe () C:\Program Files\MP4 Player\Mp4Player.exe HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [MP4 Player] => C:\Program Files\MP4 Player\mp4Player.exe [772096 2008-11-06] () C:\Program Files\AskPartnerNetwork C:\Users\Niclas\AppData\Local\AskPartnerNetwork C:\Program Files\MP4 Player ProxyEnable: Internet Explorer proxy is enabled. URLSearchHook: HKCU - (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File URLSearchHook: HKCU - (No Name) - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - No File URLSearchHook: HKCU - (No Name) - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - No File SearchScopes: HKLM - DefaultScope value is missing. BHO: No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Toolbar: HKLM - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Toolbar: HKCU - No Name - {5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} - No File Toolbar: HKCU - No Name - {0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - No File CHR Extension: (No Name) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-11-16] CHR HKLM\...\Chrome\Extension: [bmbpbcpokffodhpcdjaoopolhdlbconi] - C:\Users\Niclas\AppData\Local\Temp\tbch.crx [2013-11-16] C:\Users\Niclas\AppData\Roaming\swk.ini Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schritt 2 Öffne Google Chrome.
Schritt 3 Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 4 ESET Online Scanner
Schritt 5 Starte noch einmal FRST.
Ist dein Rechner noch genauso langsam? Gibs noch Probleme mit dem Browser, bzw. dem Rechner allgemein? Poste folgende Logfiles in deiner nächsten Antwort:
__________________ Gruß, Jonas |
22.05.2014, 17:50 | #10 |
| 100% CPU AuslastungCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:17-05-2014 Ran by Niclas at 2014-05-22 17:58:35 Run:1 Running from C:\Users\Niclas\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** R2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) (APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe (APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe () C:\Program Files\MP4 Player\Mp4Player.exe HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [MP4 Player] => C:\Program Files\MP4 Player\mp4Player.exe [772096 2008-11-06] () C:\Program Files\AskPartnerNetwork C:\Users\Niclas\AppData\Local\AskPartnerNetwork C:\Program Files\MP4 Player ProxyEnable: Internet Explorer proxy is enabled. URLSearchHook: HKCU - (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File URLSearchHook: HKCU - (No Name) - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - No File URLSearchHook: HKCU - (No Name) - {0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} - No File SearchScopes: HKLM - DefaultScope value is missing. BHO: No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Toolbar: HKLM - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Toolbar: HKCU - No Name - {5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} - No File Toolbar: HKCU - No Name - {0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} - No File CHR Extension: (No Name) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-11-16] CHR HKLM\...\Chrome\Extension: [bmbpbcpokffodhpcdjaoopolhdlbconi] - C:\Users\Niclas\AppData\Local\Temp\tbch.crx [2013-11-16] C:\Users\Niclas\AppData\Roaming\swk.ini ***************** APNMCP => Service stopped successfully. APNMCP => Service deleted successfully. [1804] C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe => Process closed successfully. C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe => No running process found [3628] C:\Program Files\MP4 Player\Mp4Player.exe => Process closed successfully. HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\Software\Microsoft\Windows\CurrentVersion\Run\\MP4 Player => Value deleted successfully. C:\Program Files\AskPartnerNetwork => Moved successfully. C:\Users\Niclas\AppData\Local\AskPartnerNetwork => Moved successfully. C:\Program Files\MP4 Player => Moved successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{5e5ab302-7f65-44cd-8211-c1d4caaccea3} => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{0027da2d-c9f2-4b0b-ae05-e2cd1bdb6cff} => Value deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} => Key deleted successfully. HKCR\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{41564952-412D-5637-00A7-7A786E7484D7} => Value deleted successfully. HKCR\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} => Value deleted successfully. HKCR\CLSID\{5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} => Value deleted successfully. HKCR\CLSID\{0027DA2D-C9F2-4B0B-AE05-E2CD1BDB6CFF} => Key not found. C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj => Moved successfully. HKLM\SOFTWARE\Google\Chrome\Extensions\bmbpbcpokffodhpcdjaoopolhdlbconi => Key deleted successfully. "C:\Users\Niclas\AppData\Local\Temp\tbch.crx" => File/Directory not found. C:\Users\Niclas\AppData\Roaming\swk.ini => Moved successfully. ==== End of Fixlog ==== Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Protection, 22.05.2014 18:04:35, SYSTEM, NICLAS-PC, Protection, Malware Protection, Starting, Protection, 22.05.2014 18:04:35, SYSTEM, NICLAS-PC, Protection, Malware Protection, Started, Protection, 22.05.2014 18:04:35, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Starting, Update, 22.05.2014 18:04:52, SYSTEM, NICLAS-PC, Manual, Rootkit Database, 2014.2.20.1, 2014.5.21.1, Update, 22.05.2014 18:05:00, SYSTEM, NICLAS-PC, Manual, Malware Database, 2014.3.4.9, 2014.5.22.7, Protection, 22.05.2014 18:05:20, SYSTEM, NICLAS-PC, Protection, Refresh, Starting, Protection, 22.05.2014 18:05:21, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Started, Protection, 22.05.2014 18:05:22, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Stopping, Protection, 22.05.2014 18:05:24, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Stopped, Protection, 22.05.2014 18:05:41, SYSTEM, NICLAS-PC, Protection, Refresh, Success, Protection, 22.05.2014 18:05:42, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Starting, Protection, 22.05.2014 18:05:44, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Started, Detection, 22.05.2014 18:10:16, SYSTEM, NICLAS-PC, Protection, Malware Protection, File, Trojan.InstallMonetizer, C:\Users\Niclas\Downloads\asfasfasf.JPG.exe, Quarantine, [501fd87c285362d4ad171bfd41c0f30d] Detection, 22.05.2014 18:10:19, SYSTEM, NICLAS-PC, Protection, Malware Protection, File, Trojan.InstallMonetizer, c:\users\niclas\downloads\asfasfasf.jpg.exe, Quarantine, [501fd87c285362d4ad171bfd41c0f30d] Protection, 22.05.2014 18:10:19, SYSTEM, NICLAS-PC, Protection, SDKQuarantine, 1, Failed, c:\users\niclas\downloads\asfasfasf.jpg.exe, Error, 22.05.2014 18:10:19, SYSTEM, NICLAS-PC, Protection, SDKQuarantine, 1, Failed, c:\users\niclas\downloads\asfasfasf.jpg.exe, Detection, 22.05.2014 18:10:48, SYSTEM, NICLAS-PC, Protection, Malware Protection, File, Trojan.InstallMonetizer, c:\users\niclas\downloads\asfasfasf.jpg.exe, Quarantine, [501fd87c285362d4ad171bfd41c0f30d] Protection, 22.05.2014 18:10:49, SYSTEM, NICLAS-PC, Protection, SDKQuarantine, 1, Failed, c:\users\niclas\downloads\asfasfasf.jpg.exe, Error, 22.05.2014 18:10:49, SYSTEM, NICLAS-PC, Protection, SDKQuarantine, 1, Failed, c:\users\niclas\downloads\asfasfasf.jpg.exe, Detection, 22.05.2014 18:11:18, SYSTEM, NICLAS-PC, Protection, Malware Protection, File, Trojan.InstallMonetizer, c:\users\niclas\downloads\asfasfasf.jpg.exe, Quarantine, [501fd87c285362d4ad171bfd41c0f30d] Protection, 22.05.2014 18:11:19, SYSTEM, NICLAS-PC, Protection, SDKQuarantine, 1, Failed, c:\users\niclas\downloads\asfasfasf.jpg.exe, Error, 22.05.2014 18:11:19, SYSTEM, NICLAS-PC, Protection, SDKQuarantine, 1, Failed, c:\users\niclas\downloads\asfasfasf.jpg.exe, Detection, 22.05.2014 18:37:24, SYSTEM, NICLAS-PC, Protection, Malware Protection, File, PUP.Optional.Vid, C:\Users\Niclas\Downloads\iLividSetup-r887-n-bf.exe, Quarantine, [71fe361e94e7f2447c70a068e9183ec2] Protection, 22.05.2014 18:43:15, SYSTEM, NICLAS-PC, Protection, Malware Protection, Starting, Protection, 22.05.2014 18:43:15, SYSTEM, NICLAS-PC, Protection, Malware Protection, Started, Protection, 22.05.2014 18:43:15, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Starting, Protection, 22.05.2014 18:45:42, SYSTEM, NICLAS-PC, Protection, Malicious Website Protection, Started, (end) |
23.05.2014, 14:01 | #11 |
/// Malwareteam | 100% CPU Auslastung Hi, das ist das falsche Log von MBAM. Wenn du die Anleitung befolgt hast, müsstest du eine mbam.txt haben, bitte poste die. Außerdem noch die restlichen Schritte und dann gehts weiter .
__________________ Gruß, Jonas |
23.05.2014, 15:42 | #12 |
| 100% CPU AuslastungCode:
ATTFilter C:\$Recycle.Bin\S-1-5-21-1136760724-3360318724-1241145457-1000\$RSWJGX0.com\incredibar\1.5.11.14\incredibarApp.dll Variante von Win32/Toolbar.Montiera.A evtl. unerwünschte Anwendung C:\$Recycle.Bin\S-1-5-21-1136760724-3360318724-1241145457-1000\$RSWJGX0.com\incredibar\1.5.11.14\incredibarsrv.exe Variante von Win32/Toolbar.Montiera.A evtl. unerwünschte Anwendung C:\$Recycle.Bin\S-1-5-21-1136760724-3360318724-1241145457-1000\$RSWJGX0.com\incredibar\1.5.11.14\incredibarTlbr.dll Variante von Win32/Toolbar.Montiera.F evtl. unerwünschte Anwendung C:\$Recycle.Bin\S-1-5-21-1136760724-3360318724-1241145457-1000\$RSWJGX0.com\incredibar\1.5.11.14\bh\incredibar.dll Variante von Win32/Toolbar.Escort.A evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir Win32/Toolbar.Conduit evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\Conduit\Community Alerts\Alert.dll.vir Win32/Toolbar.Conduit.Y evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\DealPlyLive.exe.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\DealPlyLive.exe.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\DealPlyLiveBroker.exe.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\DealPlyLiveHandler.exe.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\DealPlyLiveOnDemand.exe.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\goopdate.dll.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\goopdateres_ru.dll.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\DealPlyLive\Update\1.3.23.0\psmachine.dll.vir Win32/DealPly.N evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\Uniblue\SpeedUpMyPC\sump.exe.vir Win32/SpeedUpMyPC evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\ExtensionUpdaterService.exe.vir Variante von Win32/Toolbar.BitCocktail.B evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Users\Niclas\AppData\Local\Temp\OCS\ocs_v71b.exe.vir Variante von Win32/DownloadSponsor.A evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Users\Niclas\AppData\Roaming\BabSolution\Shared\enhancedNT.dll.vir Variante von Win32/Toolbar.Babylon.W evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Users\Niclas\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe.vir Win32/DealPly.F evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Users\Niclas\AppData\Roaming\OpenCandy\9E6FB5297E6D4446AA86A673FB23BC9B\speedupmypcDE.exe.vir Win32/SpeedUpMyPC evtl. unerwünschte Anwendung C:\FRST\Quarantine\C\Program Files\MP4 Player\Mp4Player.exe Win32/Ivefound evtl. unerwünschte Anwendung C:\Users\Du Lappen\AppData\LocalLow\DVDVideoSoftTB_DE\ldrtbDVDV.dll Variante von Win32/Toolbar.Conduit.P evtl. unerwünschte Anwendung C:\Users\Du Lappen\AppData\LocalLow\DVDVideoSoftTB_DE\tbDVDV.dll Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung C:\Users\Niclas\Downloads\disk-defrag-454setup.exe Win32/MyPCBackup.A evtl. unerwünschte Anwendung C:\Users\Niclas\Downloads\FreeYouTubeToMP3Converter33.exe Win32/Toolbar.Conduit evtl. unerwünschte Anwendung C:\Users\Niclas\Downloads\grand_theft_auto_san_andreas_patch.exe Win32/Toggle.D.Gen evtl. unerwünschte Anwendung C:\Users\Niclas\Downloads\Mp4PlayerSetup.exe Win32/Ivefound evtl. unerwünschte Anwendung C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9BARLFZV\update[1] Variante von Win32/Toolbar.Perion.A evtl. unerwünschte Anwendung C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9BARLFZV\WSSetup[1].exe Variante von Win32/Toolbar.Perion.G evtl. unerwünschte Anwendung C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F003RKZE\WSSetup[1].exe Variante von Win32/Toolbar.Perion.G evtl. unerwünschte Anwendung Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 22.05.2014 Suchlauf-Zeit: 18:10:41 Logdatei: mbam.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.05.22.07 Rootkit Datenbank: v2014.05.21.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Self-protection: Deaktiviert Betriebssystem: Windows Vista Service Pack 2 CPU: x86 Dateisystem: NTFS Benutzer: Niclas Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 265358 Verstrichene Zeit: 26 Min, 7 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 16 PUP.Optional.HomePageProtector.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{336D0C35-8A85-403A-B9D2-65C292C39087}, Löschen bei Neustart, [a5ca0351225989ad8efe6cbf748e8e72], PUP.Optional.HomePageProtector.A, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{336D0C35-8A85-403A-B9D2-65C292C39087}, Löschen bei Neustart, [a5ca0351225989ad8efe6cbf748e8e72], PUP.Optional.Incredibar, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}, Löschen bei Neustart, [a1ce3a1a43387bbbc832e1825ba7f808], PUP.Optional.Incredibar, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{6E13DDE1-2B6E-46CE-8B66-DC8BF36F6B99}, Löschen bei Neustart, [a1ce3a1a43387bbbc832e1825ba7f808], PUP.Optional.Delta.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{82E1477C-B154-48D3-9891-33D83C26BCD3}, Löschen bei Neustart, [b5badf75df9ccd697557ca9604feeb15], PUP.Optional.Delta.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}, Löschen bei Neustart, [d8977cd8d9a234025e6d7be5ba48c040], PUP.Optional.Incredibar, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{F9639E4A-801B-4843-AEE3-03D9DA199E77}, Löschen bei Neustart, [db94c4909ae1c472916a194aa062d927], PUP.Optional.Incredibar, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{F9639E4A-801B-4843-AEE3-03D9DA199E77}, Löschen bei Neustart, [db94c4909ae1c472916a194aa062d927], PUP.Optional.Incredibar.A, HKLM\SOFTWARE\WOW6432NODE\IB Updater, In Quarantäne, [acc3e07417646fc7adaf028e9d654eb2], PUP.Optional.Incredibar.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\dlnembnfbcpjnepmfjmngjenhhajpdfd, In Quarantäne, [79f6c094e596e155acae92fe55ade41c], PUP.Optional.Incredibar.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\INCREDIBAR.COM\incredibar, Löschen bei Neustart, [9ad51e3681fa84b21d5da9e931d1659b], PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\WNLT, Löschen bei Neustart, [59161e36bac1bd79df925d63e122c838], PUP.Optional.DealPly.A, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\DealPlyLive, Löschen bei Neustart, [3d320a4a9cdfcc6a50717b3f27dcb050], PUP.Optional.Iminent.A, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\Iminent, Löschen bei Neustart, [0f60252f3645ef47db6a2b796d95fb05], PUP.Optional.Incredibar.A, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\INCREDIBAR.COM\incredibar, Löschen bei Neustart, [9ad574e0e299ac8a5d1d1e74639f0ff1], PUP.Optional.InstallBrain.A, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\WNLT, Löschen bei Neustart, [88e7fa5a97e48aac125f348c8c777d83], Registrierungswerte: 5 PUP.Optional.HomePageProtector.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{336D0C35-8A85-403A-B9D2-65C292C39087}, C:\Program Files\Web Assistant\Firefox, In Quarantäne, [a5ca0351225989ad8efe6cbf748e8e72] PUP.Optional.HomePageProtector.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS\{336D0C35-8A85-403a-B9D2-65C292C39087}, In Quarantäne, [a2cde371f487f73f8b01bb707e849c64], PUP.Optional.Incredibar, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}, C:\Program Files\Web Assistant\Firefox, In Quarantäne, [6708aba90a71f44213d5d5ef01023ec2] PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\WNLT|URL, MYSTART, Löschen bei Neustart, [59161e36bac1bd79df925d63e122c838] PUP.Optional.InstallBrain.A, HKU\S-1-5-21-1136760724-3360318724-1241145457-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\WNLT|URL, MYSTART, Löschen bei Neustart, [88e7fa5a97e48aac125f348c8c777d83] Registrierungsdaten: 0 (No malicious items detected) Ordner: 1 PUP.Optional.WhiteSmoke.A, C:\Users\Du Lappen\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj, In Quarantäne, [6a0595bf81fa76c0c7a2f485aa58c33d], Dateien: 16 PUP.Optional.RegCleanerPro, C:\Users\Niclas\Downloads\rcpsetup_matomy_my77231.exe, In Quarantäne, [caa5f95bcdae3501fb31b9526e9351af], PUP.Optional.Softonic, C:\Users\Niclas\Downloads\SoftonicDownloader_for_killing-floor(1).exe, In Quarantäne, [5b1495bf27547db9f4feab5927dac23e], PUP.Optional.Softonic, C:\Users\Niclas\Downloads\SoftonicDownloader_for_killing-floor.exe, In Quarantäne, [185776decead56e0da18db29ab56ee12], PUP.Optional.Softonic, C:\Users\Niclas\Downloads\SoftonicDownloader_for_warcraft-iii-the-frozen-throne.exe, In Quarantäne, [d09f5df7e7943cfa0ee44bb950b10ef2], PUP.Optional.Conduit.A, C:\Users\Niclas\Downloads\LF2_v20a_Install.exe, In Quarantäne, [93dc88cc3843181edb9c9ea0a45c758b], PUP.Optional.Softonic.A, C:\Users\Niclas\Downloads\SoftonicDownloader_fuer_gta-iv-san-andreas.exe, In Quarantäne, [f57a015348333afcfc55cc549e63ae52], PUP.Optional.Softonic.A, C:\Users\Niclas\Downloads\SoftonicDownloader_fuer_hamachi(1).exe, In Quarantäne, [a2cda5afabd0ff373b16b769e41db050], PUP.Optional.Softonic.A, C:\Users\Niclas\Downloads\SoftonicDownloader_fuer_hamachi.exe, In Quarantäne, [7af5c78dbcbf87af054cf828976a0ff1], PUP.Optional.Softonic, C:\Users\Niclas\Downloads\SoftonicDownloader_fuer_warcraft-iii-the-frozen-throne(1).exe, In Quarantäne, [2c4380d43348b482d71b659fbf425ea2], PUP.Optional.Softonic, C:\Users\Niclas\Downloads\SoftonicDownloader_fuer_warcraft-iii-the-frozen-throne.exe, In Quarantäne, [c5aae3716c0f20163bb792722ed357a9], PUP.Optional.Vid, C:\Users\Niclas\Downloads\iLividSetup-r887-n-bf.exe, In Quarantäne, [0d62c292f388fb3b777530d8c140f20e], PUP.Optional.VIT, C:\Users\Niclas\Downloads\installer_warcraft_iii_the_frozen_throne_beta_Deutsch.exe, In Quarantäne, [3837d28287f47db9c33427ed917049b7], PUP.Optional.Incredibar.A, C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstorage, In Quarantäne, [640b292bd5a6ab8bd782b4dc7b8748b8], PUP.Optional.Incredibar.A, C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstorage-journal, In Quarantäne, [a9c63e16e398a78f0e4b3060877bbc44], Heuristics.Reserved.Word.Exploit, C:\Users\Du Lappen\Desktop\svchost.exe, In Quarantäne, [9fd04311314ace68a061c293b0544bb5], PUP.Optional.DokoSearch.A, C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "startup_urls": [ "hxxp://www.doko-search.com/?babsrc=HP_ss_mib2&mntrId=CC6100173188A745&affID=119360&tsp=4966" ],), Ersetzt,[0f60530122593ef865fc8ef33cc88e72] Physische Sektoren: 0 (No malicious items detected) (end) Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:17-05-2014 Ran by Niclas (administrator) on NICLAS-PC on 23-05-2014 14:31:25 Running from C:\Users\Niclas\Desktop Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) OS Language: German Standard Internet Explorer Version 7 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AOL LLC) C:\Program Files\Common Files\aol\ACS\AOLacsd.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Windows\System32\PnkBstrA.exe () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Auslogics) C:\Program Files\Auslogics\BoostSpeed\BoostSpeed.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Spotify Ltd) C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe () C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Spotify Ltd) C:\Users\Niclas\AppData\Roaming\Spotify\spotify.exe () C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Microsoft Corporation) C:\Windows\System32\conime.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] => "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [TkBellExe] => c:\program files\real\realplayer\Update\realsched.exe [295512 2013-06-22] (RealNetworks, Inc.) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [KPeerNexonEU] => C:\Nexon\NEXON_EU_Downloader\nxEULauncher.exe [438272 2011-12-18] (NEXON Inc.) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\Run: [Spotify Web Helper] => C:\Users\Niclas\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1176632 2014-05-19] (Spotify Ltd) HKU\S-1-5-21-1136760724-3360318724-1241145457-1000\...\MountPoints2: {b2835c26-06c0-11e3-8911-00173188a745} - F:\Startme.exe ==================== Internet (Whitelisted) ==================== HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Niclas\AppData\Roaming\Mozilla\Firefox\Profiles\4xptvoy4.default-1400775672571 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin: @real.com/nppl3260;version=16.0.2.32 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.2 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprphtml5videoshim;version=15.0.6.14 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpplugin;version=16.0.2.32 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-06-22] FF HKLM\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.) CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll No File CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll No File CHR Plugin: (RealPlayer(tm) HTML5VideoShim Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) CHR Plugin: (RealJukebox NS Plugin) - C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll No File CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) CHR Plugin: (RealNetworks(tm) Chrome Background Extension Plug-In (32-bit) ) - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.) CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (RealDownloader) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-09-03] CHR Extension: (DVDVideoSoft) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2013-09-03] CHR Extension: (Google Wallet) - C:\Users\Niclas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-16] CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2013-08-28] ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AOL ACS; C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe [46640 2006-10-23] (AOL LLC) S2 MBAMScheduler; C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation) S3 npggsvc; C:\Windows\system32\GameMon.des [4705208 2012-06-25] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2012-09-23] () R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] () S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135648 2013-12-18] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-12-07] (Avira Operations GmbH & Co. KG) S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-05-12] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-05-12] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] () S3 PCASp50; C:\Windows\System32\Drivers\PCASp50.sys [35384 2009-10-28] (Printing Communications Assoc., Inc. (PCAUSA)) R1 prodrv06; C:\Windows\System32\drivers\prodrv06.sys [54272 2004-04-08] (Protection Technology) R0 prohlp02; C:\Windows\System32\drivers\prohlp02.sys [70400 2004-04-08] (Protection Technology) R0 prosync1; C:\Windows\System32\drivers\prosync1.sys [6944 2003-09-06] (Protection Technology) R0 sfhlp01; C:\Windows\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-12-07] (Avira GmbH) R3 wanatw; C:\Windows\System32\DRIVERS\wanatw4.sys [33588 2006-11-30] (America Online, Inc.) S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S3 XDva397; \??\C:\Windows\system32\XDva397.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2099-02-16 23:56 - 2008-01-19 00:42 - 00142904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys 2099-02-16 23:56 - 2008-01-19 00:42 - 00094776 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe 2099-02-16 23:56 - 2008-01-19 00:42 - 00058936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys 2099-02-16 23:56 - 2008-01-19 00:42 - 00057400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00035384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00034360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00031288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00024120 _____ (Microsoft Corporation) C:\Windows\system32\BOOTVID.DLL 2099-02-16 23:56 - 2008-01-19 00:41 - 00017976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys 2099-02-16 23:56 - 2008-01-19 00:41 - 00016440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys 2099-02-16 23:56 - 2008-01-19 00:38 - 04595712 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll 2099-02-16 23:56 - 2008-01-19 00:38 - 00155704 _____ (Microsoft Corporation) C:\Windows\system32\dssenh.dll 2099-02-16 23:56 - 2008-01-19 00:38 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL 2099-02-16 23:56 - 2008-01-19 00:38 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 01502208 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\ogldrv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00975360 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00531456 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\p2pcollab.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\qwave.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\ppcsnap.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\provthrd.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\rgb9rast.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\SmiInstaller.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWiaCompat.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\shrink.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\oledlg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\sdshext.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\ntdsapi.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\olecli32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\olethk32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\rasman.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rasqec.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL 2099-02-16 23:56 - 2008-01-19 00:36 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pnrpnsp.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssocPrx.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\osblprov.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\RegCtrl.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\psbase.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\sfc_os.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\odbcbcp.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\olesvr32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\PlaySndSrv.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\procinst.dll 2099-02-16 23:56 - 2008-01-19 00:36 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\sdspres.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 09847296 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04875776 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0009.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04497408 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0019.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0416.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0414.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001d.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 04495360 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0010.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03466752 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0013.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004e.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004c.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004b.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0049.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0047.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0046.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0045.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0039.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 03104768 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0020.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02657280 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0011.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02643456 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000c.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02599936 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0001.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02342912 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000d.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 02243072 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0007.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01966592 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0027.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0c1a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData081a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0026.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0024.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001b.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0018.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000f.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0003.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01965056 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0002.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData003e.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData002a.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0022.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01801216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0021.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01523712 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0000.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\msvbvm60.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\netprof.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\msidcrl30.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00352256 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\mswmdm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\mycomput.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\msoeacct.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\mssha.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\msrdc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\nlmgp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\NAPMONTR.DLL 2099-02-16 23:56 - 2008-01-19 00:35 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\ndfapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\msoert2.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\msident.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NapiNSP.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\mspatcha.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\napipsec.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\mtxlegih.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\msidle.dll 2099-02-16 23:56 - 2008-01-19 00:35 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 01039360 _____ (Microsoft Corporation) C:\Windows\system32\d3d8.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\d3dim700.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\colorui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00616448 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00614400 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\filemgmt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\dsquery.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\dmdlgs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00384512 _____ (Microsoft Corporation) C:\Windows\system32\d3dim.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\msdtckrm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\msdelta.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\CompatUI.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\comsnap.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\msdt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\mdminst.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\lltdsvc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\mlang.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00178688 _____ (Microsoft Corporation) C:\Windows\system32\dmime.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\dsdmo.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\msdadiag.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\dinput8.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\keymgr.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\dbnetlib.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\McxDriv.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\msdart.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mprmsg.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\msaatext.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\loadperf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iscsiexe.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\comrepl.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\msdtclog.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\efsadu.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\dmscript.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\IPBusEnum.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\loghours.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\EAPQEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\DHCPQEC.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\dxva2.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\colbact.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\dhcpsapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\eapsvc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\DfsShlEx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\d3dxof.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\dnshc.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\dot3dlg.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\mmcss.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dssec.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpclnt.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\dmocx.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dfdts.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\dmloader.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\esentprf.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\dispci.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\dimsjob.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lltdapi.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\localui.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\ktmw32.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\KBDJPN.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\KBDKOR.DLL 2099-02-16 23:56 - 2008-01-19 00:34 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\iscsied.dll 2099-02-16 23:56 - 2008-01-19 00:34 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 05714432 _____ (Microsoft Corporation) C:\Windows\system32\logon.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 02585088 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 01405952 _____ (Microsoft Corporation) C:\Windows\system32\ActiveContentWizard.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00879616 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\clbcatq.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00520704 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWGP.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00485376 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\catsrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\shrpubw.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00334336 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\cmipnpinstall.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\NAPSTAT.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\adsnt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00251904 _____ (Microsoft Corporation) C:\Windows\system32\authfwcfg.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\audiodev.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00226816 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr 2099-02-16 23:56 - 2008-01-19 00:33 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\apircl.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\apss.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\p2phost.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00163840 _____ (Microsoft Corp.) C:\Windows\system32\DfrgNtfs.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msdt.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\raserver.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\DpiScaling.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00151040 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\CompMgmtLauncher.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00134656 _____ (Microsoft Corporation) C:\Windows\regedit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mtstocom.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\dispdiag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\msscript.ocx 2099-02-16 23:56 - 2008-01-19 00:33 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\msdtc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayApi.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\makecab.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\OptionalFeatures.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00096768 _____ (Microsoft Corp.) C:\Windows\system32\dfrgfat.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\diantz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\btpanui.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\dmview.ocx 2099-02-16 23:56 - 2008-01-19 00:33 - 00087552 _____ (Microsoft) C:\Windows\system32\Robocopy.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\ACW.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\cmdl32.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\DFDWiz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\driverquery.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\cmicryptinstall.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\alg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\dfrgifc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00058880 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PushPrinterConnections.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\expand.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\brcplsdw.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\net.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\bcdprov.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\cmutil.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\regini.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax 2099-02-16 23:56 - 2008-01-19 00:33 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\lodctr.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\lnkstub.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\SecEdit.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\cmlua.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\shutdown.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AtBroker.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Netplwiz.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\at.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\amxread.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\RacAgent.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\capisp.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\convert.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\apilogen.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\setupSNK.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\batt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\avrt.dll 2099-02-16 23:56 - 2008-01-19 00:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\sbunattend.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe 2099-02-16 23:56 - 2008-01-19 00:33 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\csrss.exe 2099-02-16 23:56 - 2008-01-19 00:32 - 02249216 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 01370624 _____ (Microsoft Corporation) C:\Windows\system32\Aurora.scr 2099-02-16 23:56 - 2008-01-19 00:32 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\joy.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2099-02-16 23:56 - 2008-01-19 00:32 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2099-02-16 23:56 - 2008-01-19 00:31 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll 2099-02-16 23:56 - 2008-01-19 00:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2099-02-16 23:56 - 2008-01-19 00:29 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2099-02-16 23:56 - 2008-01-18 23:01 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll 2099-02-16 23:56 - 2008-01-18 23:01 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPENCDD.sys 2099-02-16 23:56 - 2008-01-18 23:01 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys 2099-02-16 23:56 - 2008-01-18 22:57 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys 2099-02-16 23:56 - 2008-01-18 22:57 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys 2099-02-16 23:56 - 2008-01-18 22:56 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys 2099-02-16 23:56 - 2008-01-18 22:55 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys 2099-02-16 23:56 - 2008-01-18 22:54 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys 2099-02-16 23:56 - 2008-01-18 22:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bdasup.sys 2099-02-16 23:56 - 2008-01-18 22:53 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2099-02-16 23:56 - 2008-01-18 22:52 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys |
23.05.2014, 15:43 | #13 |
| 100% CPU AuslastungCode:
ATTFilter 2099-02-16 23:56 - 2008-01-18 22:50 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serial.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parport.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fdc.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serenum.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parvdm.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00005888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00005504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys 2099-02-16 23:56 - 2008-01-18 22:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\dmdskres2.dll 2099-02-16 23:56 - 2008-01-18 22:48 - 01291264 _____ (Microsoft Corporation) C:\Windows\system32\comres.dll 2099-02-16 23:56 - 2008-01-18 22:48 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msdtcVSp1res.dll 2099-02-16 23:56 - 2008-01-18 22:43 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\activeds.tlb 2099-02-16 23:56 - 2008-01-18 22:36 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxapi.sys 2099-02-16 23:56 - 2008-01-18 22:30 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys 2099-02-16 23:56 - 2008-01-18 22:30 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys 2099-02-16 23:56 - 2008-01-18 22:28 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys 2099-02-16 23:56 - 2008-01-18 22:27 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys 2099-02-16 23:56 - 2008-01-18 22:27 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\bootstr.dll 2099-02-16 23:56 - 2008-01-05 04:32 - 00120458 _____ () C:\Windows\system32\secpol.msc 2099-02-16 23:56 - 2008-01-05 04:32 - 00001820 _____ () C:\Windows\system32\rasctrnm.h 2099-02-16 23:56 - 2008-01-05 04:31 - 00145455 _____ () C:\Windows\system32\perfmon.msc 2099-02-16 23:55 - 2011-05-05 18:01 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\hcrstco.dll 2099-02-16 23:55 - 2008-01-19 00:42 - 00052792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00021048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spldr.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00017976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys 2099-02-16 23:55 - 2008-01-19 00:41 - 00015288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys 2099-02-16 23:55 - 2008-01-19 00:37 - 01675264 _____ (Microsoft Corporation) C:\Windows\system32\xpssvcs.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 01642496 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 01329152 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 01295360 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00767488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\XPSSHHDR.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\xwizards.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\WMASF.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\wmidx.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\wmvdspa.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\xwtpw32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\xactsrv.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\wzcdlg.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wscmisetup.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\wmpcm.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wscproxystub.dll 2099-02-16 23:55 - 2008-01-19 00:37 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\WSHTCPIP.DLL 2099-02-16 23:55 - 2008-01-19 00:37 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\wship6.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 02588160 _____ (Microsoft Corporation) C:\Windows\system32\UIHub.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 01298432 _____ (Microsoft Corporation) C:\Windows\system32\TMM.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00913408 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\unbcl.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\sqlceqp30.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00498688 _____ (Microsoft Corporation) C:\Windows\system32\wlandlg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wiashext.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00415744 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00383488 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00251904 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\verifier.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\uudf.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\WLanHC.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\sstpsvc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\TapiMigPlugin.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\Tabbtn.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\ufat.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\txflog.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\wiascanprofiles.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\usbui.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\trkwks.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\winethc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\uexfat.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\tbssvc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\TabbtnEx.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\vdmredir.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00041472 _____ (Microsoft) C:\Windows\system32\WlanMmHC.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WinFax.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\srwmi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL 2099-02-16 23:55 - 2008-01-19 00:36 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll 2099-02-16 23:55 - 2008-01-19 00:36 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\txfw32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00890368 _____ (Microsoft Corporation) C:\Windows\system32\FXSST.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMPOSE.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00473088 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\FXSXP32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\hnetcfg.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\FXSUTILITY.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\icsfiltr.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\ieencode.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOM.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\GuidedHelp.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\FXSROUTE.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\HelpPaneProxy.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\fwcfg.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\FXSEXT32.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll 2099-02-16 23:55 - 2008-01-19 00:34 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 08139264 _____ (Microsoft Corporation) C:\Windows\system32\ssBranded.scr 2099-02-16 23:55 - 2008-01-19 00:33 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2099-02-16 23:55 - 2008-01-19 00:33 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00498176 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr 2099-02-16 23:55 - 2008-01-19 00:33 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgrade.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\WinFXDocObj.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\SoundRecorder.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\verifier.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\vssadmin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TpmInit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\bootcfg.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\systeminfo.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wlanext.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2099-02-16 23:55 - 2008-01-19 00:33 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\getmac.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\gacinstall.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\ucsvc.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\xcopy.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\UI0Detect.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax 2099-02-16 23:55 - 2008-01-19 00:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\unattendedjoin.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\syskey.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\blb_ps.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\iashost.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll 2099-02-16 23:55 - 2008-01-19 00:33 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\srdelayed.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\fveupdate.exe 2099-02-16 23:55 - 2008-01-19 00:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe 2099-02-16 23:55 - 2008-01-19 00:32 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl 2099-02-16 23:55 - 2008-01-19 00:32 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl 2099-02-16 23:55 - 2008-01-19 00:31 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll 2099-02-16 23:55 - 2008-01-19 00:29 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\imagesp1.dll 2099-02-16 23:55 - 2008-01-18 23:15 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WSDPrint.sys 2099-02-16 23:55 - 2008-01-18 23:14 - 00925184 _____ (Microsoft Corporation) C:\Windows\system32\FXSRESM.dll 2099-02-16 23:55 - 2008-01-18 23:14 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys 2099-02-16 23:55 - 2008-01-18 23:01 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\tsddd.dll 2099-02-16 23:55 - 2008-01-18 22:57 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys 2099-02-16 23:55 - 2008-01-18 22:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2099-02-16 23:55 - 2008-01-18 22:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys 2099-02-16 23:55 - 2008-01-18 22:55 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TUNMP.SYS 2099-02-16 23:55 - 2008-01-18 22:53 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys 2099-02-16 23:55 - 2008-01-18 22:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umpass.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\vga256.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vga.sys 2099-02-16 23:55 - 2008-01-18 22:52 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\vga64k.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\framebuf.dll 2099-02-16 23:55 - 2008-01-18 22:52 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\vga.dll 2099-02-16 23:55 - 2008-01-18 22:49 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys 2099-02-16 23:55 - 2008-01-18 22:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys 2099-02-16 23:55 - 2008-01-18 22:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\wertargets.wtl 2099-02-16 23:55 - 2008-01-18 22:33 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\graftabl.com 2099-02-16 23:55 - 2008-01-18 22:31 - 08322048 _____ (Microsoft Corporation) C:\Windows\system32\spwizimg.dll 2099-02-16 23:55 - 2008-01-18 22:30 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll 2099-02-16 23:55 - 2008-01-18 22:28 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys 2099-02-16 23:55 - 2008-01-05 04:34 - 00147439 _____ () C:\Windows\system32\gpedit.msc 2099-02-16 23:55 - 2008-01-05 04:34 - 00015181 _____ () C:\Windows\system32\gatherWirelessInfo.vbs 2099-02-16 23:55 - 2008-01-05 04:23 - 00060124 _____ () C:\Windows\system32\tcpmon.ini 2099-02-16 23:55 - 2008-01-05 04:22 - 00144909 _____ () C:\Windows\system32\fsmgmt.msc 2099-02-16 23:55 - 2008-01-05 04:21 - 00012198 _____ () C:\Windows\system32\gatherWiredInfo.vbs 2099-02-16 23:54 - 2007-12-06 06:04 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\kbd106n.dll 2099-02-16 23:45 - 2099-02-17 00:04 - 00196608 _____ () C:\Windows\SPInstall.etl 2099-02-16 23:44 - 2099-02-16 23:45 - 455611504 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB936330-X86-wave0.exe 2099-02-16 22:53 - 2099-02-16 22:53 - 08531968 _____ () C:\Users\Niclas\Downloads\SteamInstall_German.msi 2099-02-16 21:50 - 2014-05-09 19:33 - 00000000 ____D () C:\Program Files\Common Files\Steam 2099-02-16 21:45 - 2099-02-16 21:45 - 00000000 ____D () C:\Windows\system32\EventProviders 2099-02-16 20:56 - 2099-02-16 21:45 - 365230920 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB948465-X86.exe 2099-02-16 20:47 - 2099-02-16 20:47 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Macromedia 2099-02-16 20:47 - 2014-05-07 21:25 - 00000000 ____D () C:\ProgramData\NVIDIA 2099-02-16 20:47 - 2013-08-31 21:35 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Adobe 2099-02-16 20:44 - 2008-06-18 18:46 - 01079840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpluir.dll 2099-02-16 20:44 - 2008-06-18 18:46 - 00854560 _____ (NVIDIA Corporation) C:\Windows\system32\nvcplui.exe 2099-02-16 20:44 - 2008-06-18 18:46 - 00428576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.cpl 2099-02-16 20:43 - 2099-02-16 20:43 - 65450048 _____ (NVIDIA Corporation ) C:\Users\Niclas\Downloads\177.41_geforce_winvista_32bit_international_whql.exe 2099-02-16 20:43 - 2011-12-31 19:35 - 00000000 ____D () C:\NVIDIA 2099-02-16 20:43 - 2008-06-16 17:34 - 00446464 _____ (NVIDIA Corporation) C:\Windows\system32\NVUNINST.EXE 2099-02-16 20:42 - 2099-02-16 20:42 - 00000000 ____D () C:\Windows\system32\Macromed 2099-02-16 20:42 - 2014-05-19 21:08 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2099-02-16 20:36 - 2099-02-16 20:37 - 00000000 ____D () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64 2099-02-16 20:36 - 2099-02-16 20:36 - 249660486 _____ () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64.zip 2099-02-16 20:36 - 2011-12-31 16:10 - 00002669 _____ () C:\Users\Public\Desktop\NETGEAR Powerline Utility.lnk 2099-02-16 20:35 - 2099-02-16 20:35 - 00000000 ____D () C:\Users\Niclas\AppData\Local\{06F8A00D-727E-483E-B2EC-21C7EE145549} 2099-02-16 20:34 - 2099-02-16 20:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Powerline 2099-02-16 20:34 - 2099-02-16 20:35 - 11840088 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\NETGEAR_Powerline_Setup_V2.0.0.8_230-10802-04.exe 2099-02-16 20:34 - 2099-02-16 20:35 - 00000000 ____D () C:\Program Files\NETGEAR 2099-02-16 20:34 - 2099-02-16 20:34 - 06535984 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\XAV5001_FW_upgrade_v2.0.0.0.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Downloaded Installations 2099-02-16 20:34 - 2014-01-15 18:29 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2099-02-16 20:34 - 2009-10-28 11:59 - 00035384 _____ (Printing Communications Assoc., Inc. (PCAUSA)) C:\Windows\system32\Drivers\PcaSp50.sys 2099-02-16 20:32 - 2099-02-16 20:35 - 87132736 _____ () C:\Users\Niclas\Downloads\avira_free_antivirus_de.exe 2099-02-16 20:16 - 2099-02-16 20:16 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Mozilla 2099-02-16 20:16 - 2013-07-16 20:12 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Mozilla 2099-02-16 20:16 - 2012-04-26 17:43 - 00000870 _____ () C:\Users\Niclas\Desktop\Mozilla Firefox.lnk 2099-02-16 20:16 - 2012-04-26 17:43 - 00000858 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2099-02-16 16:05 - 2099-02-16 16:05 - 00000020 ___SH () C:\Users\Niclas\ntuser.ini 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Startmenü 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Netzwerkumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Druckumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Musik 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Bilder 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Local\Verlauf 2099-02-16 16:05 - 2014-05-17 01:33 - 00000680 _____ () C:\Users\Niclas\AppData\Local\d3d9caps.dat 2099-02-16 16:05 - 2014-05-09 20:26 - 00000000 ____D () C:\Users\Niclas\AppData\Local\VirtualStore 2099-02-16 16:05 - 2014-05-09 19:33 - 00000000 ____D () C:\Users\Niclas 2099-02-16 16:05 - 2013-07-28 18:07 - 00049168 _____ () C:\Users\Niclas\AppData\Local\GDIPFONTCACHEV1.DAT 2099-02-16 16:05 - 2011-12-14 18:33 - 00000944 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2099-02-16 16:05 - 2011-12-13 15:21 - 00000949 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2099-02-16 16:05 - 2011-12-13 15:21 - 00000915 _____ () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2099-02-16 16:05 - 2006-11-02 14:54 - 00000000 ___RD () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-16 16:05 - 2006-11-02 14:50 - 00000000 ___RD () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Dokumente 2099-02-16 14:49 - 2099-02-16 14:49 - 00000604 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live.lnk 2099-02-16 14:46 - 2099-02-16 14:46 - 00000000 ____D () C:\Windows\CSC 2099-02-16 14:44 - 2012-04-27 14:34 - 00000000 ____D () C:\Windows\Panther 2099-02-16 14:43 - 2099-02-16 14:43 - 00008192 ___RS () C:\BOOTSECT.BAK 2099-02-16 14:43 - 2009-04-11 00:36 - 00333257 __RSH () C:\bootmgr 2014-05-23 14:31 - 2014-05-23 14:31 - 00015471 _____ () C:\Users\Niclas\Desktop\FRST.txt 2014-05-23 07:01 - 2014-05-23 07:01 - 00004519 _____ () C:\Users\Niclas\Desktop\datei eset.txt 2014-05-22 18:52 - 2014-05-22 18:52 - 02347384 _____ (ESET) C:\Users\Niclas\Downloads\esetsmartinstaller_deu.exe 2014-05-22 18:49 - 2014-05-22 18:49 - 00003501 _____ () C:\mbam.txt 2014-05-22 18:04 - 2014-05-23 13:40 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-22 18:03 - 2014-05-22 18:03 - 00000899 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-22 18:03 - 2014-05-22 18:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-22 18:03 - 2014-05-22 18:03 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-22 18:03 - 2014-05-22 18:03 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-22 18:03 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-22 18:03 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-22 18:03 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-22 18:02 - 2014-05-22 18:02 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Niclas\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-22 17:50 - 2014-05-22 17:50 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(3).exe 2014-05-22 17:43 - 2014-05-22 17:43 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(2).exe 2014-05-20 20:42 - 2014-05-20 20:42 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(1).exe 2014-05-20 20:40 - 2014-05-20 20:40 - 00003039 _____ () C:\Users\Niclas\Desktop\JRT.txt 2014-05-20 20:33 - 2014-05-20 20:33 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT(1).exe 2014-05-20 20:33 - 2014-05-20 20:33 - 00000000 ____D () C:\Windows\ERUNT 2014-05-20 20:22 - 2014-05-20 20:23 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT.exe 2014-05-20 20:11 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll 2014-05-20 20:09 - 2014-05-20 20:16 - 00000000 ____D () C:\AdwCleaner 2014-05-20 20:08 - 2014-05-20 20:09 - 01326389 _____ () C:\Users\Niclas\Downloads\adwcleaner_3.210.exe 2014-05-19 21:13 - 2014-05-19 21:14 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-19 20:36 - 2014-05-19 20:37 - 00024039 _____ () C:\Users\Niclas\Downloads\Addition.txt 2014-05-19 20:33 - 2014-05-20 20:45 - 00131735 _____ () C:\Users\Niclas\Downloads\FRST.txt 2014-05-19 20:31 - 2014-05-23 14:31 - 00000000 ____D () C:\FRST 2014-05-19 20:31 - 2014-05-19 20:31 - 01056768 _____ (Farbar) C:\Users\Niclas\Desktop\FRST.exe 2014-05-17 23:55 - 2014-05-17 23:55 - 01243655 _____ () C:\Users\Niclas\Downloads\ProcessExplorer_16.02.zip 2014-05-09 23:56 - 2014-05-09 23:59 - 00004938 _____ () C:\Windows\DPINST.LOG 2014-05-09 22:54 - 2014-05-09 22:54 - 00000104 _____ () C:\Users\Du Lappen\Desktop\Computer - Verknüpfung.lnk 2014-05-09 21:35 - 2014-05-09 21:35 - 00000000 ____D () C:\Users\Du Lappen\AppData\Roaming\Avira 2014-05-09 21:28 - 2014-05-09 21:28 - 00000000 ____D () C:\Users\Du Lappen\AppData\Local\NVIDIA 2014-05-09 21:19 - 2014-05-09 21:19 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-09 21:18 - 2014-05-09 21:18 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-09 21:18 - 2014-04-14 20:13 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-05-09 21:18 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-05-09 21:18 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-05-09 21:18 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-05-09 21:16 - 2014-05-09 21:18 - 00006043 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-05-09 21:16 - 2014-05-09 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-09 21:08 - 2014-05-22 18:42 - 00012408 _____ () C:\Windows\PFRO.log 2014-05-09 20:27 - 2014-05-09 20:38 - 00009607 _____ () C:\Users\Niclas\Downloads\hijackthis.log 2014-05-09 20:26 - 2014-05-09 20:26 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics BoostSpeed.lnk 2014-05-09 20:25 - 2014-05-09 20:25 - 17033488 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\boost-speed-setup.exe 2014-05-09 20:08 - 2014-05-09 20:08 - 00388608 _____ (Trend Micro Inc.) C:\Users\Niclas\Downloads\HiJackThis204.exe 2014-05-09 20:00 - 2014-05-09 20:27 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-09 20:00 - 2014-05-09 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics 2014-05-09 20:00 - 2014-05-09 20:26 - 00000000 ____D () C:\Program Files\Auslogics 2014-05-09 20:00 - 2014-05-09 20:00 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics DiskDefrag.lnk 2014-05-09 19:58 - 2014-05-09 19:58 - 06225592 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\disk-defrag-454setup.exe 2014-05-07 21:26 - 2014-05-07 21:26 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-05-07 21:25 - 2014-05-09 19:33 - 00000000 ____D () C:\Users\Niclas\{85ea8232-30ba-4e41-ba0a-6ea33822f4fa} 2014-05-07 21:17 - 2014-03-04 16:29 - 23716640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 10523480 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-05-07 21:17 - 2014-03-04 16:29 - 09690424 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 02956632 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 02411976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 01049888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233523.dll 2014-05-07 21:17 - 2014-03-04 16:29 - 00894296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233523.dll 2014-05-07 21:16 - 2014-03-04 16:29 - 17559384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-05-07 21:16 - 2014-03-04 16:29 - 09728064 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-05-06 23:17 - 2014-04-29 15:10 - 03627520 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 23:17 - 2014-04-29 13:42 - 01383424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 23:17 - 2014-02-06 03:56 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll ==================== One Month Modified Files and Folders ======= 2099-02-17 00:27 - 2012-09-23 12:26 - 00000000 ___RD () C:\Users\Du Lappen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2012-09-23 12:26 - 00000000 ___RD () C:\Users\Du Lappen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 14:55 - 00001743 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2099-02-17 00:27 - 2006-11-02 14:50 - 00000749 ___RH () C:\Windows\WindowsShell.Manifest 2099-02-17 00:27 - 2006-11-02 14:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2099-02-17 00:27 - 2006-11-02 13:18 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades 2099-02-17 00:21 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\DigitalLocker 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ras 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\icsxml 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ias 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\com 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\MSAgent 2099-02-17 00:21 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\L2Schemas 2099-02-17 00:11 - 2006-11-02 12:32 - 00101888 _____ (Infineon Technologies AG) C:\Windows\system32\ifxcardm.dll 2099-02-17 00:10 - 2006-11-02 12:32 - 00082432 _____ (Gemalto, Inc.) C:\Windows\system32\axaltocm.dll 2099-02-17 00:04 - 2099-02-16 23:45 - 00196608 _____ () C:\Windows\SPInstall.etl 2099-02-16 23:45 - 2099-02-16 23:44 - 455611504 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB936330-X86-wave0.exe 2099-02-16 22:53 - 2099-02-16 22:53 - 08531968 _____ () C:\Users\Niclas\Downloads\SteamInstall_German.msi 2099-02-16 21:45 - 2099-02-16 21:45 - 00000000 ____D () C:\Windows\system32\EventProviders 2099-02-16 21:45 - 2099-02-16 20:56 - 365230920 _____ (Microsoft Corporation) C:\Users\Niclas\Downloads\Windows6.0-KB948465-X86.exe 2099-02-16 20:47 - 2099-02-16 20:47 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Macromedia 2099-02-16 20:46 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\rescache 2099-02-16 20:44 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Help 2099-02-16 20:43 - 2099-02-16 20:43 - 65450048 _____ (NVIDIA Corporation ) C:\Users\Niclas\Downloads\177.41_geforce_winvista_32bit_international_whql.exe 2099-02-16 20:42 - 2099-02-16 20:42 - 00000000 ____D () C:\Windows\system32\Macromed 2099-02-16 20:37 - 2099-02-16 20:36 - 00000000 ____D () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64 2099-02-16 20:36 - 2099-02-16 20:36 - 249660486 _____ () C:\Users\Niclas\Downloads\Nvidia_VGA_Driver_v285.76_winvista_win7_64.zip 2099-02-16 20:36 - 2099-02-16 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Powerline 2099-02-16 20:35 - 2099-02-16 20:35 - 00000000 ____D () C:\Users\Niclas\AppData\Local\{06F8A00D-727E-483E-B2EC-21C7EE145549} 2099-02-16 20:35 - 2099-02-16 20:34 - 11840088 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\NETGEAR_Powerline_Setup_V2.0.0.8_230-10802-04.exe 2099-02-16 20:35 - 2099-02-16 20:34 - 00000000 ____D () C:\Program Files\NETGEAR 2099-02-16 20:35 - 2099-02-16 20:32 - 87132736 _____ () C:\Users\Niclas\Downloads\avira_free_antivirus_de.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 06535984 _____ (NETGEAR Powerline ) C:\Users\Niclas\Downloads\XAV5001_FW_upgrade_v2.0.0.0.exe 2099-02-16 20:34 - 2099-02-16 20:34 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Downloaded Installations 2099-02-16 20:31 - 2006-11-02 14:50 - 00001661 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk 2099-02-16 20:16 - 2099-02-16 20:16 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Mozilla 2099-02-16 17:10 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\system32\restore 2099-02-16 16:05 - 2099-02-16 16:05 - 00000020 ___SH () C:\Users\Niclas\ntuser.ini 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Startmenü 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Netzwerkumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Druckumgebung 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Musik 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\Documents\Eigene Bilder 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:05 - 2099-02-16 16:05 - 00000000 _SHDL () C:\Users\Niclas\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Startmenü 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2099-02-16 16:03 - 2099-02-16 16:03 - 00000000 _SHDL () C:\ProgramData\Dokumente 2099-02-16 16:03 - 2006-11-02 13:18 - 00000000 __RHD () C:\Users\Default 2099-02-16 14:49 - 2099-02-16 14:49 - 00000604 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live.lnk 2099-02-16 14:46 - 2099-02-16 14:46 - 00000000 ____D () C:\Windows\CSC 2099-02-16 14:43 - 2099-02-16 14:43 - 00008192 ___RS () C:\BOOTSECT.BAK 2099-02-16 14:43 - 2006-11-02 14:43 - 00037888 ____H () C:\Windows\system32\config\BCD-Template.LOG 2099-02-16 14:43 - 2006-11-02 14:37 - 00262144 _____ () C:\Windows\system32\config\BCD-Template 2014-05-23 14:31 - 2014-05-23 14:31 - 00015471 _____ () C:\Users\Niclas\Desktop\FRST.txt 2014-05-23 14:31 - 2014-05-19 20:31 - 00000000 ____D () C:\FRST 2014-05-23 14:30 - 2012-11-02 20:26 - 00000000 ____D () C:\Program Files\Warcraft III 2014-05-23 14:25 - 2011-12-30 19:07 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-23 14:08 - 2013-03-20 20:48 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-23 13:44 - 2013-08-01 01:20 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\Spotify 2014-05-23 13:42 - 2006-11-02 14:52 - 01113095 _____ () C:\Windows\WindowsUpdate.log 2014-05-23 13:40 - 2014-05-22 18:04 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-23 13:39 - 2011-12-30 19:07 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-23 13:38 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-23 13:38 - 2006-11-02 14:47 - 00004912 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-23 13:38 - 2006-11-02 14:47 - 00004912 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-23 07:03 - 2006-11-02 15:01 - 00032582 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-23 07:01 - 2014-05-23 07:01 - 00004519 _____ () C:\Users\Niclas\Desktop\datei eset.txt 2014-05-22 18:52 - 2014-05-22 18:52 - 02347384 _____ (ESET) C:\Users\Niclas\Downloads\esetsmartinstaller_deu.exe 2014-05-22 18:49 - 2014-05-22 18:49 - 00003501 _____ () C:\mbam.txt 2014-05-22 18:42 - 2014-05-09 21:08 - 00012408 _____ () C:\Windows\PFRO.log 2014-05-22 18:42 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Web 2014-05-22 18:03 - 2014-05-22 18:03 - 00000899 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-22 18:03 - 2014-05-22 18:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-22 18:03 - 2014-05-22 18:03 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-22 18:03 - 2014-05-22 18:03 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-22 18:02 - 2014-05-22 18:02 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Niclas\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-22 17:50 - 2014-05-22 17:50 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(3).exe 2014-05-22 17:43 - 2014-05-22 17:43 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(2).exe 2014-05-21 14:27 - 2013-08-01 01:25 - 00000000 ____D () C:\Users\Niclas\AppData\Local\Spotify 2014-05-21 14:03 - 2011-12-16 15:15 - 00000000 ____D () C:\Users\Niclas\AppData\Roaming\TS3Client 2014-05-20 20:45 - 2014-05-19 20:33 - 00131735 _____ () C:\Users\Niclas\Downloads\FRST.txt 2014-05-20 20:42 - 2014-05-20 20:42 - 01056768 _____ (Farbar) C:\Users\Niclas\Downloads\FRST(1).exe 2014-05-20 20:40 - 2014-05-20 20:40 - 00003039 _____ () C:\Users\Niclas\Desktop\JRT.txt 2014-05-20 20:33 - 2014-05-20 20:33 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT(1).exe 2014-05-20 20:33 - 2014-05-20 20:33 - 00000000 ____D () C:\Windows\ERUNT 2014-05-20 20:23 - 2014-05-20 20:22 - 01016261 _____ (Thisisu) C:\Users\Niclas\Downloads\JRT.exe 2014-05-20 20:16 - 2014-05-20 20:09 - 00000000 ____D () C:\AdwCleaner 2014-05-20 20:09 - 2014-05-20 20:08 - 01326389 _____ () C:\Users\Niclas\Downloads\adwcleaner_3.210.exe 2014-05-20 12:09 - 2012-04-26 17:43 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-19 21:14 - 2014-05-19 21:13 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-19 21:08 - 2099-02-16 20:42 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-05-19 21:08 - 2013-03-20 20:48 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-05-19 20:37 - 2014-05-19 20:36 - 00024039 _____ () C:\Users\Niclas\Downloads\Addition.txt 2014-05-19 20:33 - 2011-12-30 19:07 - 00001963 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 20:31 - 2014-05-19 20:31 - 01056768 _____ (Farbar) C:\Users\Niclas\Desktop\FRST.exe 2014-05-19 20:03 - 2006-11-02 12:33 - 01549708 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-17 23:55 - 2014-05-17 23:55 - 01243655 _____ () C:\Users\Niclas\Downloads\ProcessExplorer_16.02.zip 2014-05-17 01:33 - 2099-02-16 16:05 - 00000680 _____ () C:\Users\Niclas\AppData\Local\d3d9caps.dat 2014-05-12 07:26 - 2014-05-22 18:03 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-12 07:25 - 2014-05-22 18:03 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-12 07:25 - 2014-05-22 18:03 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-10 23:12 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-05-09 23:59 - 2014-05-09 23:56 - 00004938 _____ () C:\Windows\DPINST.LOG 2014-05-09 23:06 - 2013-07-16 20:12 - 00000000 ____D () C:\ProgramData\AOL 2014-05-09 22:54 - 2014-05-09 22:54 - 00000104 _____ () C:\Users\Du Lappen\Desktop\Computer - Verknüpfung.lnk 2014-05-09 21:35 - 2014-05-09 21:35 - 00000000 ____D () C:\Users\Du Lappen\AppData\Roaming\Avira 2014-05-09 21:28 - 2014-05-09 21:28 - 00000000 ____D () C:\Users\Du Lappen\AppData\Local\NVIDIA 2014-05-09 21:28 - 2013-04-30 11:37 - 00049168 _____ () C:\Users\Du Lappen\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-09 21:19 - 2014-05-09 21:19 - 00000000 ____D () C:\ProgramData\Oracle 2014-05-09 21:18 - 2014-05-09 21:18 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-09 21:18 - 2014-05-09 21:16 - 00006043 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-05-09 21:18 - 2011-12-16 22:55 - 00000000 ____D () C:\Program Files\Java 2014-05-09 21:16 - 2014-05-09 21:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-09 20:38 - 2014-05-09 20:27 - 00009607 _____ () C:\Users\Niclas\Downloads\hijackthis.log 2014-05-09 20:33 - 2012-06-01 15:01 - 00000000 ____D () C:\Windows\Minidump 2014-05-09 20:27 - 2014-05-09 20:00 - 00000000 ____D () C:\ProgramData\Auslogics 2014-05-09 20:26 - 2099-02-16 16:05 - 00000000 ____D () C:\Users\Niclas\AppData\Local\VirtualStore 2014-05-09 20:26 - 2014-05-09 20:26 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics BoostSpeed.lnk 2014-05-09 20:26 - 2014-05-09 20:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics 2014-05-09 20:26 - 2014-05-09 20:00 - 00000000 ____D () C:\Program Files\Auslogics 2014-05-09 20:25 - 2014-05-09 20:25 - 17033488 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\boost-speed-setup.exe 2014-05-09 20:08 - 2014-05-09 20:08 - 00388608 _____ (Trend Micro Inc.) C:\Users\Niclas\Downloads\HiJackThis204.exe 2014-05-09 20:00 - 2014-05-09 20:00 - 00000962 _____ () C:\Users\Niclas\Desktop\Auslogics DiskDefrag.lnk 2014-05-09 19:58 - 2014-05-09 19:58 - 06225592 _____ (Auslogics Labs Pty Ltd ) C:\Users\Niclas\Downloads\disk-defrag-454setup.exe 2014-05-09 19:33 - 2099-02-16 21:50 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-05-09 19:33 - 2099-02-16 16:05 - 00000000 ____D () C:\Users\Niclas 2014-05-09 19:33 - 2014-05-07 21:25 - 00000000 ____D () C:\Users\Niclas\{85ea8232-30ba-4e41-ba0a-6ea33822f4fa} 2014-05-09 19:33 - 2013-11-23 23:22 - 00000000 ____D () C:\Riot Games 2014-05-09 19:33 - 2011-12-31 16:29 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-05-09 19:33 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\spool 2014-05-09 19:33 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\registration 2014-05-09 19:33 - 2006-11-02 12:22 - 31719424 _____ () C:\Windows\system32\config\software_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 31719424 _____ () C:\Windows\system32\config\components_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 17825792 _____ () C:\Windows\system32\config\system_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00524288 _____ () C:\Windows\system32\config\default_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\security_previous 2014-05-09 19:33 - 2006-11-02 12:22 - 00262144 _____ () C:\Windows\system32\config\sam_previous 2014-05-09 19:32 - 2011-12-30 19:08 - 00000000 ____D () C:\ProgramData\Real 2014-05-09 18:10 - 2013-07-18 22:25 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-09 17:46 - 2013-03-29 17:42 - 00000000 ____D () C:\Program Files\Steam 2014-05-07 21:26 - 2014-05-07 21:26 - 00000000 ____D () C:\Program Files\AGEIA Technologies 2014-05-07 21:25 - 2099-02-16 20:47 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-07 21:07 - 2013-06-18 13:27 - 00000000 ____D () C:\Users\Niclas\AppData\Local\NVIDIA 2014-05-07 21:06 - 2011-12-31 16:33 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-07 21:05 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-04-29 15:10 - 2014-05-06 23:17 - 03627520 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-04-29 13:42 - 2014-05-06 23:17 - 01383424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb Some content of TEMP: ==================== C:\Users\Du Lappen\AppData\Local\Temp\AskSLib.dll C:\Users\Du Lappen\AppData\Local\Temp\avgnt.exe C:\Users\Niclas\AppData\Local\Temp\avgnt.exe C:\Users\Niclas\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Niclas\AppData\Local\Temp\Quarantine.exe C:\Users\Niclas\AppData\Local\Temp\uninst.dll C:\Users\Niclas\AppData\Local\Temp\uninst1.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-23 13:45 ==================== End Of Log ============================ |
23.05.2014, 18:12 | #14 | ||||||||
/// Malwareteam | 100% CPU Auslastung Wenn du keine Probleme mit den Browsern oder dem PC und keine Fragen mehr hast, sind wir fertig . Schritt 1 Lade dir TFC (TempFileCleaner von Oldtimer) herunter und speichere es auf den Desktop.
Updates Deinstallieren veralteter Software
Windows XP: Start -> Systemsteuerung -> Kategorieansicht auswählen (falls nicht voreingestellt) -> Softwareund wähle die angegeben Programme aus. Drücke Entfernen (Windows XP) oder Deinstallieren (Windows Vista/7/8). Internet Explorer 9
Adobe Reader Version XI (11.0.06)
Cleanup Falls du Malwarebytes Anti-Malware und den ESET Online Scanner nicht mehr behalten möchtest, kannst du diese über die Systemsteuerung deinstallieren. Ich empfehle dir, mindestens ein Programm zu behalten (näheres in den Tipps). Windows XP: Start --> Systemsteuerung --> Kategorieansicht auswählen (falls nicht voreingestellt) --> SoftwareDie Reihenfolge ist hier entscheidend.
In deinen Logfiles sehe ich im Moment keine schädlichen Einträge mehr, du bist in meinen Augen Clean. Für die Zukunft habe ich dir Tipps aufgeschrieben, damit du uns in nächster Zeit nicht mehr brauchst . Tipps - Frequently Asked Questions (FAQ)/Häufig gestellte Fragen Welcher Antivirenscanner ist der beste?
Aber Updates muss ich immer installieren, oder?
Ok, muss ich auf etwas achten, wenn ich im Internet surfe?
Welche Programme sollte ich nicht verwenden?
Gibt es noch weitere Tipps, um mich zu schützen? Wenn dich das Thema Computersicherheit interessiert und du noch mehr Tipps und Tricks zum Schutz deines Rechners haben willst, ist der Emsisoft Blog genau richtig für dich .
Wenn du die Arbeit des Trojaner-Boards unterstützen möchtest, kannst du gerne spenden . Ich wünsche dir eine schöne und malwarefreie Zeit .
__________________ Gruß, Jonas |
23.05.2014, 21:04 | #15 |
| 100% CPU Auslastung geht aufjedenfall schonmal schneller das ganze aber ich sobald ich teamspeak3 und combat arms ( free2play internet spiel) hängt sich der pc wieder auf... drecksteil ich glaub da is vielleicht was mit der hardware net ganz inordnung... egal danke für deine hilfe jonas sone kacke man ich könnt austicken dann geht echt nichtsmehr |