|
Log-Analyse und Auswertung: Logfile anschauen zur KontrolleWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
19.10.2009, 10:58 | #1 |
| Logfile anschauen zur Kontrolle hallo, wär gut wenn ihr mir sagen könntet, ob etwas nicht stimmt oder so... danke im voraus! Logfile of random's system information tool 1.06 (written by random/random) Run by Administrator at 2009-10-19 11:51:30 Microsoft Windows XP Professional Service Pack 3 System drive C: has 128 GB (64%) free of 200 GB Total RAM: 3327 MB (87% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 11:51:33, on 19.10.2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe C:\Programme\Sandboxie\SbieSvc.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\RTHDCPL.EXE C:\Programme\Razer\DeathAdder\razerhid.exe C:\Programme\Microsoft Office\Office12\GrooveMonitor.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe C:\WINDOWS\system32\ctfmon.exe C:\Programme\Razer\DeathAdder\razertra.exe C:\Programme\Razer\DeathAdder\razerofa.exe C:\Programme\Winamp\winamp.exe C:\WINDOWS\system32\wuauclt.exe C:\Dokumente und Einstellungen\Administrator\Desktop\RSIT.exe C:\Dokumente und Einstellungen\Administrator\Desktop\Administrator.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [DeathAdder] C:\Programme\Razer\DeathAdder\razerhid.exe O4 - HKLM\..\Run: [GrooveMonitor] "C:\Programme\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [nwiz] C:\Programme\NVIDIA Corporation\nView\nwiz.exe /install O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Sandboxie Service (SbieSvc) - tzuk - C:\Programme\Sandboxie\SbieSvc.exe -- End of file - 3952 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-07-03 16876032] "Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344] "DeathAdder"=C:\Programme\Razer\DeathAdder\razerhid.exe [2007-09-07 159744] "GrooveMonitor"=C:\Programme\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016] "nwiz"=C:\Programme\NVIDIA Corporation\nView\nwiz.exe [2009-09-23 1657448] "NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-09-27 13918208] "NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-09-27 86016] "Adobe Reader Speed Launcher"=C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696] "Adobe ARM"=C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SandboxieControl] C:\Programme\Sandboxie\SbieCtrl.exe [2009-09-30 387584] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Programme\Counter-Strike Source\hl2.exe"="C:\Programme\Counter-Strike Source\hl2.exe:*:Enabled:hl2" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\Programme\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Programme\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook" "C:\Programme\Microsoft Office\Office12\GROOVE.EXE"="C:\Programme\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove" "C:\Programme\Microsoft Office\Office12\ONENOTE.EXE"="C:\Programme\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" ======List of files/folders created in the last 1 months====== 2009-10-18 19:08:38 ----D---- C:\WINDOWS\system32\URTTemp 2009-10-18 12:44:55 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\WinRAR 2009-10-18 12:44:38 ----D---- C:\Programme\WinRAR 2009-10-16 10:43:20 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$ 2009-10-16 10:42:50 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$ 2009-10-16 10:42:48 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$ 2009-10-16 10:42:46 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$ 2009-10-16 10:42:43 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$ 2009-10-16 10:42:41 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$ 2009-10-16 10:42:36 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$ 2009-10-16 10:42:33 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$ 2009-10-16 10:42:29 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$ 2009-10-14 16:54:59 ----D---- C:\Programme\Gemeinsame Dateien\Adobe 2009-10-14 16:54:59 ----D---- C:\Programme\Adobe 2009-10-12 21:44:35 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$ 2009-10-11 21:30:38 ----D---- C:\Programme\oZone3D 2009-10-10 11:29:53 ----D---- C:\Programme\Alamoon Watermark 2009-10-10 11:07:37 ----RSD---- C:\WINDOWS\assembly 2009-10-10 11:07:27 ----D---- C:\WINDOWS\Microsoft.NET 2009-10-09 21:05:55 ----D---- C:\WINDOWS\Minidump 2009-10-09 20:50:15 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Help 2009-10-09 18:34:04 ----D---- C:\Programme\CPUID 2009-10-09 17:14:59 ----A---- C:\WINDOWS\system32\msonpmon.dll 2009-10-09 17:14:44 ----D---- C:\Programme\Microsoft Works 2009-10-09 17:14:42 ----D---- C:\Programme\MSBuild 2009-10-09 17:14:34 ----D---- C:\Programme\Microsoft Visual Studio 2009-10-09 17:14:34 ----D---- C:\Programme\Gemeinsame Dateien\DESIGNER 2009-10-09 17:12:29 ----D---- C:\WINDOWS\SHELLNEW 2009-10-09 17:12:11 ----D---- C:\Programme\Microsoft Office 2009-10-09 17:12:10 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft Help 2009-10-09 17:11:50 ----RHD---- C:\MSOCache 2009-10-09 16:58:01 ----A---- C:\WINDOWS\system32\wrap_oal.dll 2009-10-09 16:58:01 ----A---- C:\WINDOWS\system32\OpenAL32.dll 2009-10-09 16:57:19 ----A---- C:\WINDOWS\system32\d3dx9_28.dll 2009-10-09 16:57:01 ----D---- C:\WINDOWS\system32\Futuremark 2009-10-09 16:56:39 ----D---- C:\Programme\Futuremark 2009-10-09 13:17:57 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$ 2009-10-09 13:17:54 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$ 2009-10-09 13:17:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$ 2009-10-09 13:17:48 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$ 2009-10-08 22:58:14 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Adobe 2009-10-08 15:48:58 ----D---- C:\Programme\Lavalys 2009-10-07 11:57:26 ----D---- C:\WINDOWS\Prefetch 2009-10-07 11:27:33 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$ 2009-10-07 11:27:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$ 2009-10-07 11:27:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$ 2009-10-07 11:27:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$ 2009-10-07 11:27:21 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$ 2009-10-07 11:27:18 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$ 2009-10-07 11:27:15 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$ 2009-10-07 11:27:13 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$ 2009-10-07 11:27:10 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$ 2009-10-07 11:27:07 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$ 2009-10-07 11:27:04 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$ 2009-10-07 11:27:01 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$ 2009-10-07 11:26:59 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$ 2009-10-07 11:26:56 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$ 2009-10-07 11:26:53 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$ 2009-10-07 11:26:51 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$ 2009-10-07 11:26:48 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$ 2009-10-07 11:26:46 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$ 2009-10-07 11:26:43 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$ 2009-10-07 11:26:41 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$ 2009-10-07 11:26:38 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$ 2009-10-07 11:26:36 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$ 2009-10-07 11:26:32 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$ 2009-10-07 11:26:29 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$ 2009-10-07 11:26:26 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$ 2009-10-07 11:26:24 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$ 2009-10-07 11:26:21 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$ 2009-10-07 11:26:18 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$ 2009-10-07 11:26:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$ 2009-10-07 11:26:13 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$ 2009-10-07 11:26:10 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$ 2009-10-07 11:26:08 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$ 2009-10-07 11:26:05 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$ 2009-10-07 11:26:03 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$ 2009-10-07 11:26:01 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$ 2009-10-07 11:24:31 ----D---- C:\WINDOWS\system32\de 2009-10-07 11:24:31 ----D---- C:\WINDOWS\system32\bits 2009-10-07 11:24:31 ----D---- C:\WINDOWS\l2schemas 2009-10-07 11:22:38 ----D---- C:\WINDOWS\network diagnostic 2009-10-07 11:20:44 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$ 2009-10-06 18:15:28 ----D---- C:\WINDOWS\ie8updates 2009-10-06 18:15:08 ----D---- C:\WINDOWS\WBEM 2009-10-06 18:14:21 ----HDC---- C:\WINDOWS\ie8 2009-10-06 18:14:21 ----D---- C:\WINDOWS\system32\de-DE 2009-10-06 18:03:22 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$ 2009-10-06 18:03:19 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$ 2009-10-06 18:03:16 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$ 2009-10-06 18:03:13 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$ 2009-10-06 18:03:10 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$ 2009-10-06 18:03:08 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$ 2009-10-06 18:02:47 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2_0$ 2009-10-06 18:02:39 ----HDC---- C:\WINDOWS\$NtUninstallKB972260$ 2009-10-06 18:02:30 ----A---- C:\WINDOWS\system32\MRT.exe 2009-10-06 18:02:26 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$ 2009-10-06 18:01:01 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$ 2009-10-06 18:00:58 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$ 2009-10-06 18:00:55 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$ 2009-10-06 18:00:53 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$ 2009-10-06 18:00:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973346$ 2009-10-06 18:00:42 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$ 2009-10-06 18:00:39 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$ 2009-10-06 18:00:37 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$ 2009-10-06 18:00:34 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2_0$ 2009-10-06 18:00:31 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$ 2009-10-06 18:00:28 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$ 2009-10-06 18:00:26 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$ 2009-10-06 18:00:23 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$ 2009-10-06 18:00:19 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$ 2009-10-06 18:00:15 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$ 2009-10-06 18:00:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$ 2009-10-06 18:00:09 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$ 2009-10-06 18:00:04 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$ 2009-10-06 17:59:45 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$ 2009-10-06 17:59:42 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$ 2009-10-06 17:59:39 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$ 2009-10-06 17:59:34 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$ 2009-10-06 17:59:29 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$ 2009-10-06 17:59:26 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$ 2009-10-06 17:59:23 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$ 2009-10-06 17:59:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$ 2009-10-06 17:59:17 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$ 2009-10-06 17:59:15 ----D---- C:\WINDOWS\ServicePackFiles 2009-10-06 17:59:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$ 2009-10-06 17:59:10 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$ 2009-10-06 17:59:07 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$ 2009-10-06 17:59:04 ----HDC---- C:\WINDOWS\$NtUninstallKB968537_0$ 2009-10-06 17:58:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$ 2009-10-06 17:58:56 ----HDC---- C:\WINDOWS\$NtUninstallKB954600_0$ 2009-10-06 17:58:53 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$ 2009-10-06 17:58:50 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$ 2009-10-06 17:58:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$ 2009-10-06 17:58:40 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$ 2009-10-06 17:58:37 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$ 2009-10-06 17:58:34 ----HDC---- C:\WINDOWS\$NtUninstallKB970653-v3$ 2009-10-06 17:58:08 ----D---- C:\WINDOWS\system32\AGEIA 2009-10-06 17:58:08 ----D---- C:\Programme\AGEIA Technologies 2009-10-06 17:36:16 ----N---- C:\WINDOWS\system32\tzchange.exe 2009-10-06 17:35:55 ----N---- C:\WINDOWS\system32\spmsg.dll 2009-10-06 17:35:55 ----D---- C:\WINDOWS\system32\PreInstall 2009-10-06 17:35:54 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$ 2009-10-06 17:35:54 ----HD---- C:\WINDOWS\$hf_mig$ 2009-10-05 13:32:37 ----RD---- C:\Sandbox 2009-10-05 13:31:28 ----A---- C:\WINDOWS\Sandboxie.ini 2009-10-05 13:31:07 ----D---- C:\Programme\Sandboxie 2009-10-04 21:56:27 ----D---- C:\WINDOWS\system32\SoftwareDistribution 2009-10-04 21:44:15 ----D---- C:\WINDOWS\pss 2009-10-04 12:49:21 ----D---- C:\Programme\Counter-Strike Source 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\vxblock.dll 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxwave.dll 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxsfs.dll 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxmas.dll 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxinsa64.exe 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxhpinst.exe 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxdrv.dll 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxcpya64.exe 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\pxafs.dll 2009-10-04 11:05:53 ----N---- C:\WINDOWS\system32\px.dll 2009-10-04 11:05:53 ----D---- C:\Programme\Winamp 2009-10-04 11:05:53 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Winamp 2009-10-04 01:59:11 ----D---- C:\Programme\The GodFather 2009-10-04 01:44:34 ----D---- C:\Programme\xp-AntiSpy 2009-10-04 01:36:10 ----D---- C:\Programme\CCleaner 2009-10-03 21:42:13 ----D---- C:\Programme\Panda Security 2009-10-03 20:21:35 ----D---- C:\Programme\EVGA Precision 2009-10-03 19:49:49 ----SH---- C:\boot.ini 2009-10-03 19:46:27 ----RSHDC---- C:\WINDOWS\system32\dllcache 2009-10-03 19:46:27 ----RSD---- C:\WINDOWS\Fonts 2009-10-03 19:46:27 ----RD---- C:\WINDOWS\Web 2009-10-03 19:46:27 ----HD---- C:\WINDOWS\inf 2009-10-03 19:46:27 ----D---- C:\WINDOWS\WinSxS 2009-10-03 19:46:27 ----D---- C:\WINDOWS\twain_32 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Temp 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\wins 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\wbem 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\usmt 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\spool 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\ShellExt 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\Setup 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\ras 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\oobe 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\npp 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\mui 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\inetsrv 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\IME 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\icsxml 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\ias 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\export 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\drivers 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\dhcp 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\config 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\3com_dmi 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\3076 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\2052 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1054 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1042 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1041 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1037 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1033 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1031 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1028 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32\1025 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system32 2009-10-03 19:46:27 ----D---- C:\WINDOWS\system 2009-10-03 19:46:27 ----D---- C:\WINDOWS\security 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Resources 2009-10-03 19:46:27 ----D---- C:\WINDOWS\repair 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Provisioning 2009-10-03 19:46:27 ----D---- C:\WINDOWS\PeerNet 2009-10-03 19:46:27 ----D---- C:\WINDOWS\pchealth 2009-10-03 19:46:27 ----D---- C:\WINDOWS\mui 2009-10-03 19:46:27 ----D---- C:\WINDOWS\msapps 2009-10-03 19:46:27 ----D---- C:\WINDOWS\msagent 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Media 2009-10-03 19:46:27 ----D---- C:\WINDOWS\java 2009-10-03 19:46:27 ----D---- C:\WINDOWS\ime 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Help 2009-10-03 19:46:27 ----D---- C:\WINDOWS\ehome 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Driver Cache 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Debug 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Cursors 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Connection Wizard 2009-10-03 19:46:27 ----D---- C:\WINDOWS\Config 2009-10-03 19:46:27 ----D---- C:\WINDOWS\AppPatch |
19.10.2009, 10:59 | #2 |
| Logfile anschauen zur Kontrolle teil 2
__________________2009-10-03 19:46:27 ----D---- C:\WINDOWS\addins 2009-10-03 19:46:27 ----D---- C:\WINDOWS 2009-10-03 19:34:54 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Macromedia 2009-10-03 19:34:54 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Adobe 2009-10-03 19:02:25 ----A---- C:\WINDOWS\system32\h323log.txt 2009-10-03 18:56:47 ----A---- C:\WINDOWS\system32\usbui.dll 2009-10-03 18:52:59 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2009-10-03 18:52:58 ----SHD---- C:\WINDOWS\Installer 2009-10-03 18:52:58 ----D---- C:\Programme\Gemeinsame Dateien\ODBC 2009-10-03 18:52:58 ----A---- C:\WINDOWS\ODBCINST.INI 2009-10-03 18:52:56 ----D---- C:\Programme\Gemeinsame Dateien\SpeechEngines 2009-10-03 18:52:55 ----RD---- C:\Programme 2009-10-03 18:52:55 ----D---- C:\Programme\Gemeinsame Dateien\Microsoft Shared 2009-10-03 18:52:55 ----D---- C:\Programme\Gemeinsame Dateien 2009-10-03 18:52:53 ----RA---- C:\WINDOWS\system32\kbdtuq.dll 2009-10-03 18:52:53 ----RA---- C:\WINDOWS\system32\kbdtuf.dll 2009-10-03 18:52:53 ----RA---- C:\WINDOWS\system32\kbdazel.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdycc.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbduzb.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdur.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdtat.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdru1.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdru.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdmon.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdkyr.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdkaz.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdbu.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdblr.dll 2009-10-03 18:52:51 ----RA---- C:\WINDOWS\system32\kbdaze.dll 2009-10-03 18:52:49 ----RA---- C:\WINDOWS\system32\kbdhept.dll 2009-10-03 18:52:49 ----RA---- C:\WINDOWS\system32\kbdhela3.dll 2009-10-03 18:52:49 ----RA---- C:\WINDOWS\system32\kbdhela2.dll 2009-10-03 18:52:49 ----RA---- C:\WINDOWS\system32\kbdhe319.dll 2009-10-03 18:52:49 ----RA---- C:\WINDOWS\system32\kbdhe220.dll 2009-10-03 18:52:49 ----RA---- C:\WINDOWS\system32\kbdhe.dll 2009-10-03 18:52:49 ----RA---- C:\WINDOWS\system32\kbdgkl.dll 2009-10-03 18:52:48 ----RA---- C:\WINDOWS\system32\kbdlt1.dll 2009-10-03 18:52:47 ----RA---- C:\WINDOWS\system32\kbdlv1.dll 2009-10-03 18:52:47 ----RA---- C:\WINDOWS\system32\kbdlv.dll 2009-10-03 18:52:47 ----RA---- C:\WINDOWS\system32\kbdlt.dll 2009-10-03 18:52:47 ----RA---- C:\WINDOWS\system32\kbdest.dll 2009-10-03 18:52:46 ----RA---- C:\WINDOWS\system32\kbdsl1.dll 2009-10-03 18:52:46 ----RA---- C:\WINDOWS\system32\kbdsl.dll 2009-10-03 18:52:46 ----RA---- C:\WINDOWS\system32\kbdro.dll 2009-10-03 18:52:46 ----RA---- C:\WINDOWS\system32\kbdpl1.dll 2009-10-03 18:52:46 ----RA---- C:\WINDOWS\system32\kbdpl.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\kbdycl.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\kbdhu1.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\kbdhu.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\kbdcz2.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\kbdcz1.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\kbdcz.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\kbdcr.dll 2009-10-03 18:52:45 ----RA---- C:\WINDOWS\system32\KBDAL.DLL 2009-10-03 18:52:44 ----A---- C:\WINDOWS\system32\irclass.dll 2009-10-03 18:52:44 ----A---- C:\WINDOWS\system32\dgsetup.dll 2009-10-03 18:52:44 ----A---- C:\WINDOWS\system32\dgrpsetu.dll 2009-10-03 18:52:43 ----A---- C:\WINDOWS\system32\spxcoins.dll 2009-10-03 18:52:43 ----A---- C:\WINDOWS\system32\EqnClass.Dll 2009-10-03 18:52:41 ----N---- C:\WINDOWS\system32\CONFIG.TMP 2009-10-03 18:52:41 ----A---- C:\WINDOWS\TASKMAN.EXE 2009-10-03 18:52:41 ----A---- C:\WINDOWS\system32\batt.dll 2009-10-03 18:52:41 ----A---- C:\WINDOWS\notepad.exe 2009-10-03 18:52:40 ----A---- C:\WINDOWS\system32\storprop.dll 2009-10-03 18:52:36 ----ASH---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\desktop.ini 2009-10-03 18:50:54 ----RA---- C:\WINDOWS\SET8.tmp 2009-10-03 18:50:52 ----RA---- C:\WINDOWS\SET4.tmp 2009-10-03 18:50:52 ----RA---- C:\WINDOWS\SET3.tmp 2009-10-03 18:50:47 ----D---- C:\WINDOWS\system32\CatRoot2 2009-10-03 18:50:47 ----D---- C:\WINDOWS\system32\CatRoot 2009-10-03 18:50:41 ----SD---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft 2009-10-03 18:50:23 ----SHD---- C:\System Volume Information 2009-10-03 18:50:23 ----D---- C:\Dokumente und Einstellungen 2009-10-03 18:44:59 ----D---- C:\Programme\trend micro 2009-10-03 18:44:58 ----D---- C:\rsit 2009-10-03 18:43:15 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Mozilla 2009-10-03 18:36:39 ----D---- C:\Programme\DIFX 2009-10-03 18:36:29 ----D---- C:\Programme\Razer 2009-10-03 18:36:17 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\InstallShield 2009-10-03 18:34:21 ----RA---- C:\WINDOWS\system32\AsIO.dll 2009-10-03 18:34:21 ----D---- C:\Programme\ASUS 2009-10-03 18:33:29 ----D---- C:\WINDOWS\system32\Atheros_L1e 2009-10-03 18:33:14 ----D---- C:\WINDOWS\system32\Lang 2009-10-03 18:32:14 ----R---- C:\WINDOWS\system32\ChCfg.exe 2009-10-03 18:32:05 ----D---- C:\WINDOWS\system32\RTCOM 2009-10-03 18:32:04 ----A---- C:\WINDOWS\system32\ksuser.dll 2009-10-03 18:31:43 ----A---- C:\WINDOWS\system32\spupdsvc.exe 2009-10-03 18:31:42 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$ 2009-10-03 18:31:39 ----R---- C:\WINDOWS\SoundMan.exe 2009-10-03 18:31:38 ----R---- C:\WINDOWS\SkyTel.exe 2009-10-03 18:31:37 ----R---- C:\WINDOWS\RtlUpd.exe 2009-10-03 18:31:32 ----R---- C:\WINDOWS\RTLCPL.exe 2009-10-03 18:31:21 ----R---- C:\WINDOWS\RTHDCPL.exe 2009-10-03 18:31:20 ----R---- C:\WINDOWS\MicCal.exe 2009-10-03 18:31:15 ----R---- C:\WINDOWS\Alcmtr.exe 2009-10-03 18:31:14 ----R---- C:\WINDOWS\alcwzrd.exe 2009-10-03 18:31:13 ----D---- C:\Programme\Realtek 2009-10-03 18:31:11 ----HD---- C:\Programme\InstallShield Installation Information 2009-10-03 18:31:09 ----R---- C:\WINDOWS\RtlExUpd.dll 2009-10-03 18:31:09 ----A---- C:\WINDOWS\HideWin.exe 2009-10-03 18:31:06 ----D---- C:\Programme\Gemeinsame Dateien\InstallShield 2009-10-03 18:23:17 ----D---- C:\WINDOWS\ASUSInstAll 2009-10-03 18:19:31 ----D---- C:\WINDOWS\system32\ReinstallBackups 2009-10-03 18:19:30 ----DC---- C:\WINDOWS\system32\DRVSTORE 2009-10-03 18:19:29 ----RA---- C:\WINDOWS\system32\CSVer.dll 2009-10-03 18:19:29 ----D---- C:\Programme\Intel 2009-10-03 18:19:14 ----D---- C:\Intel 2009-10-03 18:18:43 ----A---- C:\WINDOWS\Ascd_log.ini 2009-10-03 18:18:26 ----A---- C:\WINDOWS\Ascd_tmp.ini 2009-10-03 18:17:02 ----SHD---- C:\RECYCLER 2009-10-03 18:16:38 ----D---- C:\Programme\Mozilla Firefox 2009-10-03 18:14:54 ----D---- C:\Programme\Gemeinsame Dateien\Wise Installation Wizard 2009-10-03 18:14:23 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ 2009-10-03 18:14:17 ----D---- C:\Programme\NVIDIA Corporation 2009-10-03 18:14:15 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NVIDIA Corporation 2009-10-03 18:12:38 ----D---- C:\NVIDIA 2009-10-03 18:09:02 ----HD---- C:\Programme\Uninstall Information 2009-10-03 18:09:02 ----D---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Identities 2009-10-03 18:08:53 ----ASH---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\desktop.ini 2009-10-03 18:08:52 ----SD---- C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Microsoft 2009-10-03 18:08:50 ----D---- C:\WINDOWS\SoftwareDistribution 2009-10-03 18:08:48 ----SD---- C:\WINDOWS\system32\Microsoft 2009-10-03 18:08:48 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-10-03 18:06:55 ----D---- C:\WINDOWS\system32\xircom 2009-10-03 18:06:55 ----D---- C:\Programme\xerox 2009-10-03 18:06:55 ----D---- C:\Programme\microsoft frontpage 2009-10-03 18:06:32 ----A---- C:\WINDOWS\control.ini 2009-10-03 18:06:32 ----A---- C:\AUTOEXEC.BAT 2009-10-03 18:06:23 ----A---- C:\WINDOWS\system32\mapi32.dll 2009-10-03 18:05:58 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-10-03 18:05:58 ----RD---- C:\WINDOWS\Offline Web Pages 2009-10-03 18:05:58 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest 2009-10-03 18:05:55 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest 2009-10-03 18:05:53 ----HD---- C:\Programme\WindowsUpdate 2009-10-03 18:05:51 ----D---- C:\Programme\Online-Dienste 2009-10-03 18:05:39 ----D---- C:\WINDOWS\system32\DirectX 2009-10-03 18:05:20 ----A---- C:\WINDOWS\system32\atrace.dll 2009-10-03 18:05:18 ----A---- C:\WINDOWS\system32\desktop.ini 2009-10-03 18:05:18 ----A---- C:\WINDOWS\desktop.ini 2009-10-03 18:05:12 ----A---- C:\WINDOWS\system32\nmevtmsg.dll 2009-10-03 18:05:11 ----A---- C:\WINDOWS\system32\acctres.dll 2009-10-03 18:05:10 ----D---- C:\Programme\Gemeinsame Dateien\Dienste 2009-10-03 18:05:08 ----SD---- C:\WINDOWS\Tasks 2009-10-03 18:05:08 ----A---- C:\WINDOWS\system32\icfgnt5.dll 2009-10-03 18:05:07 ----D---- C:\Programme\Gemeinsame Dateien\MSSoap 2009-10-03 18:05:04 ----D---- C:\WINDOWS\srchasst 2009-10-03 18:05:03 ----D---- C:\WINDOWS\system32\Macromed 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wuweb.dll 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wups.dll 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wucltui.dll 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wuauserv.dll 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wuaueng1.dll 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wuaueng.dll 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wuauclt1.exe 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wuauclt.exe 2009-10-03 18:05:00 ----A---- C:\WINDOWS\system32\wuapi.dll 2009-10-03 18:04:59 ----A---- C:\WINDOWS\system32\qmgrprxy.dll 2009-10-03 18:04:59 ----A---- C:\WINDOWS\system32\qmgr.dll 2009-10-03 18:04:59 ----A---- C:\WINDOWS\system32\bitsprx3.dll 2009-10-03 18:04:59 ----A---- C:\WINDOWS\system32\bitsprx2.dll 2009-10-03 18:04:56 ----D---- C:\Programme\Movie Maker 2009-10-03 18:04:52 ----A---- C:\WINDOWS\system32\safrslv.dll 2009-10-03 18:04:52 ----A---- C:\WINDOWS\system32\safrdm.dll 2009-10-03 18:04:52 ----A---- C:\WINDOWS\system32\safrcdlg.dll 2009-10-03 18:04:52 ----A---- C:\WINDOWS\system32\racpldlg.dll 2009-10-03 18:04:49 ----D---- C:\WINDOWS\system32\Restore 2009-10-03 18:04:49 ----A---- C:\WINDOWS\system32\srsvc.dll 2009-10-03 18:04:49 ----A---- C:\WINDOWS\system32\srrstr.dll 2009-10-03 18:04:49 ----A---- C:\WINDOWS\system32\srclient.dll 2009-10-03 18:04:49 ----A---- C:\WINDOWS\system32\fltmc.exe 2009-10-03 18:04:49 ----A---- C:\WINDOWS\system32\fltlib.dll 2009-10-03 18:04:48 ----A---- C:\WINDOWS\system32\nmmkcert.dll 2009-10-03 18:04:48 ----A---- C:\WINDOWS\system32\msconf.dll 2009-10-03 18:04:48 ----A---- C:\WINDOWS\system32\mnmsrvc.exe 2009-10-03 18:04:48 ----A---- C:\WINDOWS\system32\mnmdd.dll 2009-10-03 18:04:48 ----A---- C:\WINDOWS\system32\isrdbg32.dll 2009-10-03 18:04:48 ----A---- C:\WINDOWS\system32\ils.dll 2009-10-03 18:04:45 ----D---- C:\Programme\NetMeeting 2009-10-03 18:04:45 ----A---- C:\WINDOWS\system32\msoert2.dll 2009-10-03 18:04:45 ----A---- C:\WINDOWS\system32\msoeacct.dll 2009-10-03 18:04:44 ----A---- C:\WINDOWS\system32\inetres.dll 2009-10-03 18:04:44 ----A---- C:\WINDOWS\system32\inetcomm.dll 2009-10-03 18:04:42 ----D---- C:\Programme\Outlook Express 2009-10-03 18:04:42 ----A---- C:\WINDOWS\system32\schedsvc.dll 2009-10-03 18:04:42 ----A---- C:\WINDOWS\system32\mstinit.exe 2009-10-03 18:04:42 ----A---- C:\WINDOWS\system32\mstask.dll 2009-10-03 18:04:41 ----A---- C:\WINDOWS\system32\isign32.dll 2009-10-03 18:04:41 ----A---- C:\WINDOWS\system32\inetcfg.dll 2009-10-03 18:04:41 ----A---- C:\WINDOWS\system32\icwphbk.dll 2009-10-03 18:04:41 ----A---- C:\WINDOWS\system32\icwdial.dll 2009-10-03 18:04:36 ----D---- C:\Programme\Gemeinsame Dateien\System 2009-10-03 18:04:35 ----D---- C:\Programme\Internet Explorer 2009-10-03 18:04:16 ----D---- C:\Programme\ComPlus Applications 2009-10-03 18:04:15 ----A---- C:\WINDOWS\vbaddin.ini 2009-10-03 18:04:15 ----A---- C:\WINDOWS\vb.ini 2009-10-03 18:04:12 ----D---- C:\WINDOWS\Registration 2009-10-03 18:04:06 ----D---- C:\Programme\Windows Media Player 2009-10-03 18:04:03 ----D---- C:\Programme\Messenger 2009-10-03 18:04:00 ----D---- C:\Programme\MSN Gaming Zone 2009-10-03 18:04:00 ----A---- C:\WINDOWS\system32\write.exe 2009-10-03 18:03:52 ----A---- C:\WINDOWS\system32\sndvol32.exe 2009-10-03 18:03:52 ----A---- C:\WINDOWS\system32\hticons.dll 2009-10-03 18:03:52 ----A---- C:\WINDOWS\system32\avwav.dll 2009-10-03 18:03:51 ----A---- C:\WINDOWS\system32\winchat.exe 2009-10-03 18:03:51 ----A---- C:\WINDOWS\system32\avtapi.dll 2009-10-03 18:03:51 ----A---- C:\WINDOWS\system32\avmeter.dll 2009-10-03 18:03:44 ----A---- C:\WINDOWS\system32\sol.exe 2009-10-03 18:03:44 ----A---- C:\WINDOWS\system32\getuname.dll 2009-10-03 18:03:44 ----A---- C:\WINDOWS\system32\charmap.exe 2009-10-03 18:03:44 ----A---- C:\WINDOWS\system32\calc.exe 2009-10-03 18:03:43 ----A---- C:\WINDOWS\system32\winmine.exe 2009-10-03 18:03:43 ----A---- C:\WINDOWS\system32\usrlogon.cmd 2009-10-03 18:03:43 ----A---- C:\WINDOWS\system32\tskill.exe 2009-10-03 18:03:43 ----A---- C:\WINDOWS\system32\reset.exe 2009-10-03 18:03:43 ----A---- C:\WINDOWS\system32\mshearts.exe 2009-10-03 18:03:43 ----A---- C:\WINDOWS\system32\freecell.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\tsshutdn.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\tslabels.ini 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\tsdiscon.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\tscon.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\shadow.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\rwinsta.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\regini.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\rdpcfgex.dll 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\qwinsta.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\qappsrv.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\msg.exe 2009-10-03 18:03:42 ----A---- C:\WINDOWS\system32\logoff.exe 2009-10-03 18:03:41 ----A---- C:\WINDOWS\system32\mtxlegih.dll 2009-10-03 18:03:41 ----A---- C:\WINDOWS\system32\msdtcprf.ini 2009-10-03 18:03:41 ----A---- C:\WINDOWS\system32\dcomcnfg.exe 2009-10-03 18:03:41 ----A---- C:\WINDOWS\system32\cdmodem.dll 2009-10-03 18:03:40 ----A---- C:\WINDOWS\system32\stclient.dll 2009-10-03 18:03:40 ----A---- C:\WINDOWS\system32\mtxex.dll 2009-10-03 18:03:40 ----A---- C:\WINDOWS\system32\mtxdm.dll 2009-10-03 18:03:40 ----A---- C:\WINDOWS\system32\comsnap.dll 2009-10-03 18:03:40 ----A---- C:\WINDOWS\system32\comrepl.dll 2009-10-03 18:03:40 ----A---- C:\WINDOWS\system32\comaddin.dll 2009-10-03 18:03:35 ----A---- C:\WINDOWS\system32\wmimgmt.msc 2009-10-03 18:03:29 ----D---- C:\Programme\MSN 2009-10-03 18:03:29 ----A---- C:\WINDOWS\system32\accwiz.exe 2009-10-03 18:03:28 ----D---- C:\Programme\Windows NT 2009-10-03 18:03:28 ----A---- C:\WINDOWS\system32\sndrec32.exe 2009-10-03 18:03:28 ----A---- C:\WINDOWS\system32\mplay32.exe 2009-10-03 18:03:28 ----A---- C:\WINDOWS\system32\hypertrm.dll 2009-10-03 18:03:27 ----A---- C:\WINDOWS\system32\spider.exe 2009-10-03 18:03:27 ----A---- C:\WINDOWS\system32\mspaint.exe 2009-10-03 18:03:27 ----A---- C:\WINDOWS\system32\clipbrd.exe 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\tscfgwmi.dll 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\sessmgr.exe 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\remotepg.dll 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\rdshost.exe 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\rdsaddin.exe 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\rdchost.dll 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\mstscax.dll 2009-10-03 18:03:26 ----A---- C:\WINDOWS\system32\mstsc.exe 2009-10-03 18:03:25 ----D---- C:\WINDOWS\system32\MsDtc 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\tscupgrd.exe 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\termsrv.dll 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\rdpwsx.dll 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\rdpsnd.dll 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\rdpclip.exe 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\qprocess.exe 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\msdtcuiu.dll 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\icaapi.dll 2009-10-03 18:03:25 ----A---- C:\WINDOWS\system32\cfgbkend.dll 2009-10-03 18:03:24 ----A---- C:\WINDOWS\system32\xolehlp.dll 2009-10-03 18:03:24 ----A---- C:\WINDOWS\system32\mtxoci.dll 2009-10-03 18:03:24 ----A---- C:\WINDOWS\system32\msdtctm.dll 2009-10-03 18:03:24 ----A---- C:\WINDOWS\system32\msdtcprx.dll 2009-10-03 18:03:24 ----A---- C:\WINDOWS\system32\msdtclog.dll 2009-10-03 18:03:24 ----A---- C:\WINDOWS\system32\msdtc.exe 2009-10-03 18:03:23 ----D---- C:\WINDOWS\system32\Com 2009-10-03 18:03:23 ----A---- C:\WINDOWS\system32\colbact.dll 2009-10-03 18:03:23 ----A---- C:\WINDOWS\system32\clbcatex.dll 2009-10-03 18:03:23 ----A---- C:\WINDOWS\system32\catsrvps.dll 2009-10-03 18:03:22 ----A---- C:\WINDOWS\system32\comuid.dll 2009-10-03 18:03:22 ----A---- C:\WINDOWS\system32\comsvcs.dll 2009-10-03 18:03:22 ----A---- C:\WINDOWS\system32\catsrvut.dll 2009-10-03 18:03:22 ----A---- C:\WINDOWS\system32\catsrv.dll 2009-10-03 18:03:21 ----A---- C:\WINDOWS\system32\clbcatq.dll 2009-10-03 18:03:17 ----A---- C:\WINDOWS\system32\servdeps.dll 2009-10-03 18:03:16 ----A---- C:\WINDOWS\system32\mmfutil.dll 2009-10-03 18:03:16 ----A---- C:\WINDOWS\system32\licwmi.dll 2009-10-03 18:03:16 ----A---- C:\WINDOWS\system32\cmprops.dll 2009-09-27 18:20:06 ----A---- C:\WINDOWS\system32\nvcpluir.dll 2009-09-27 18:20:04 ----A---- C:\WINDOWS\system32\nvcplui.exe 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrszht.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrszhc.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrstr.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrsth.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrssv.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrssl.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrssk.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrsru.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrsptb.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrspt.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrspl.dll 2009-09-27 18:20:02 ----A---- C:\WINDOWS\system32\nvrsno.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvwddi.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsnl.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsko.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsja.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsit.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrshu.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrshe.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsfr.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsfi.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsesm.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrses.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrseng.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsel.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsde.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsda.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrscs.dll 2009-09-27 18:20:00 ----A---- C:\WINDOWS\system32\nvrsar.dll 2009-09-27 18:19:52 ----A---- C:\WINDOWS\system32\nvwssr.dll 2009-09-27 18:19:52 ----A---- C:\WINDOWS\system32\nvwss.dll 2009-09-27 18:19:50 ----A---- C:\WINDOWS\system32\nvvitvsr.dll 2009-09-27 18:19:50 ----A---- C:\WINDOWS\system32\nvvitvs.dll 2009-09-27 18:19:48 ----A---- C:\WINDOWS\system32\nvmoblsr.dll 2009-09-27 18:19:48 ----A---- C:\WINDOWS\system32\nvmobls.dll 2009-09-27 18:19:48 ----A---- C:\WINDOWS\system32\nvmccssr.dll 2009-09-27 18:19:48 ----A---- C:\WINDOWS\system32\nvmccss.dll 2009-09-27 18:19:48 ----A---- C:\WINDOWS\system32\nvgamesr.dll 2009-09-27 18:19:48 ----A---- C:\WINDOWS\system32\nvgames.dll 2009-09-27 18:19:46 ----A---- C:\WINDOWS\system32\nvsvc32.exe 2009-09-27 18:19:46 ----A---- C:\WINDOWS\system32\nvmctray.dll 2009-09-27 18:19:46 ----A---- C:\WINDOWS\system32\nvdispsr.dll 2009-09-27 18:19:46 ----A---- C:\WINDOWS\system32\nvdisps.dll 2009-09-27 18:19:46 ----A---- C:\WINDOWS\system32\nvcpl.dll 2009-09-27 18:19:46 ----A---- C:\WINDOWS\system32\nvcolor.exe 2009-09-27 18:19:40 ----A---- C:\WINDOWS\system32\nvmccs.dll 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nvoglnt.dll 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nvcuvid.dll 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nvcuvenc.dll 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nvcuda.dll 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nvcodins.dll 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nvcod.dll 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nvapi.dll ======List of files/folders modified in the last 1 months====== 2009-10-09 23:16:05 ----A---- C:\WINDOWS\win.ini 2009-10-09 23:16:05 ----A---- C:\WINDOWS\system.ini 2009-09-27 16:12:22 ----A---- C:\WINDOWS\system32\nv4_disp.dll ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2007-12-17 12400] R1 intelppm;Intel-Prozessortreiber; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40448] R1 kbdhid;Tastatur-HID-Treiber; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720] R2 cpuz132;cpuz132; \??\C:\WINDOWS\system32\drivers\cpuz132_x32.sys [] R3 Arp1394;1394-ARP-Clientprotokoll; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800] R3 DAdderFltr;DeathAdder Mouse; C:\WINDOWS\system32\drivers\dadder.sys [2007-08-02 22784] R3 HDAudBus;Microsoft UAA-Bustreiber für High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384] R3 hidusb;Microsoft HID Class-Treiber; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-07-03 4745216] R3 L1e;Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\l1e51x86.sys [2008-09-23 38400] R3 mouhid;Maus-HID-Treiber; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-11-11 12288] R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810] R3 NIC1394;1394-Netzwerktreiber; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824] R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-09-27 7655872] R3 SbieDrv;SbieDrv; \??\C:\Programme\Sandboxie\SbieDrv.sys [] R3 usbehci;Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208] R3 usbhub;Microsoft USB-Standardhubtreiber; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520] R3 usbuhci;Miniporttreiber für universellen Microsoft USB-Hostcontroller; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608] S3 ENTECH;ENTECH; \??\C:\WINDOWS\system32\DRIVERS\ENTECH.sys [] S3 RTCore32;RTCore32; \??\C:\Programme\EVGA Precision\RTCore32.sys [] S3 USBSTOR;USB-Massenspeichertreiber; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240] R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-09-27 172100] R2 SbieSvc;Sandboxie Service; C:\Programme\Sandboxie\SbieSvc.exe [2009-09-30 65024] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Programme\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824] S3 odserv;Microsoft Office Diagnostics Service; C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136] S3 ose;Office Source Engine; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-11-11 38912] -----------------EOF----------------- |
19.10.2009, 11:16 | #3 |
| Logfile anschauen zur Kontrolle ach ja noch was:
__________________seit ich gestern den PC hochgefahren hab, kam der anmeldungsbildschrim von windows. ich hab aber nix geändert in den benutzerkonten-einstellungen und der war vorher nie da. |
Themen zu Logfile anschauen zur Kontrolle |
administrator, adobe, bho, browser, counter-strike source, dateien, desktop, dll, einstellungen, explorer, hijack, hijackthis, internet, internet explorer, logfile, messenger, nvidia, pdf, programme, registry, rundll, senden, software, system, windows, windows xp |