|
Log-Analyse und Auswertung: Firefox öffnet neue FensterWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
14.03.2010, 18:48 | #1 |
| Firefox öffnet neue Fenster Hallo zusammen Sobald ich Firefox öffne, öffnen sich immer wieder neue Fenster. Ich weiss nicht, wo das Problem ist Hab schon mit CCleaner alles gereinigt und mit Malwarebytes alles durchsucht. kann mir jemand helfen? Malwarebytes' Anti-Malware 1.44 Datenbank Version: 3866 Windows 6.0.6002 Service Pack 2 Internet Explorer 8.0.6001.18882 14.03.2010 18:38:38 mbam-log-2010-03-14 (18-38-38).txt Scan-Methode: Vollständiger Scan (C:\|D:\|E:\|F:\|G:\|H:\|I:\|J:\|) Durchsuchte Objekte: 265501 Laufzeit: 1 hour(s), 36 minute(s), 9 second(s) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 1 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 1 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: HKEY_CURRENT_USER\SOFTWARE\AppDataLow\HavingFunOnline (Adware.BHO.FL) -> Quarantined and deleted successfully. Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: C:\Users\XXX\AppData\Local\Temp\Component Update 577 (Adware.BHO) -> Quarantined and deleted successfully. Logfile of random's system information tool 1.06 (written by random/random) Run by XXX at 2010-03-14 18:40:20 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 55 GB (37%) free of 149 GB Total RAM: 3326 MB (45% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 18:40:54, on 14.03.2010 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18882) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Windows\System32\mobsync.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\AVG\AVG9\avgtray.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe C:\Windows\system32\conime.exe C:\Program Files\iTunes\iTunes.exe C:\Users\XXX\Downloads\RSIT.exe C:\Windows\system32\SearchFilterHost.exe C:\Program Files\trend micro\Benjamin Kurth.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://de.rd.yahoo.com/customize/ycomp/defaults/sp/*http://de.yahoo.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ch/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://de.intl.acer.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.intl.acer.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://de.rd.yahoo.com/customize/ycomp/defaults/su/*http://de.yahoo.com R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Yahoo! Toolbar mit Pop-Up-Blocker - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O1 - Hosts: ::1 localhost O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll O2 - BHO: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll O3 - Toolbar: Yahoo! Toolbar mit Pop-Up-Blocker - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll O3 - Toolbar: LimeWire Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [ Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO O4 - Startup: LimeWire On Startup.lnk.disabled O4 - Startup: VMLoad.lnk.disabled O4 - Global Startup: Empowering Technology Launcher.lnk.disabled O4 - Global Startup: WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe O4 - Global Startup: WDSmartWare.lnk = C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O13 - Gopher Prefix: O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll O20 - AppInit_DLLs: avgrsstx.dll O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe O23 - Service: Bonjour-Dienst (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: iPod-Dienst (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe O23 - Service: WD SmartWare Drive Manager (WDDMService) - WDC - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe O23 - Service: WD SmartWare Background Service (WDSmartWareBackgroundService) - Memeo - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe -- End of file - 8636 bytes ======Scheduled tasks folder====== C:\Windows\tasks\GoogleUpdateTaskMachineCore.job C:\Windows\tasks\GoogleUpdateTaskMachineUA.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}] Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2009-12-18 61888] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}] AVG Safe Search - C:\Program Files\AVG\AVG9\avgssie.dll [2010-03-11 1598744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}] ShowBarObj Class - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll [2008-03-04 312880] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live ID-Anmelde-Hilfsprogramm - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}] AVG Security Toolbar BHO - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] LimeWire Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-03-06 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-03-04 142896] {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar mit Pop-Up-Blocker - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll [2009-11-25 1230080] {D4027C7F-154A-4066-A1AD-4243D8127440} - LimeWire Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184] "GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-01-22 141608] "AVG9_TRAY"=C:\PROGRA~1\AVG\AVG9\avgtray.exe [2010-03-11 2059544] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2009-12-18 40368] " Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2010-01-07 1394000] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-01-07 429392] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480] "ccleaner"=C:\Program Files\CCleaner\ccleaner.exe [2010-02-24 1771320] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Empowering Technology Launcher.lnk.disabled - C:\Acer\Empowering Technology\eAPLauncher.exe WDDMStatus.lnk - C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe WDSmartWare.lnk - C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe C:\Users\XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup LimeWire On Startup.lnk.disabled - C:\Program Files\LimeWire\LimeWire.exe VMLoad.lnk.disabled - C:\Users\Benjamin Kurth\AppData\Roaming\VMLoad\VMLoad.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLS"="avgrsstx.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ab24e405-28aa-11df-a27b-002185d0c989}] shell\AutoRun\command - "G:\WD SmartWare.exe" autoplay=true ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 months====== 2010-03-14 18:40:20 ----D---- C:\rsit 2010-03-14 18:40:20 ----D---- C:\Program Files\trend micro 2010-03-14 17:25:34 ----D---- C:\Program Files\Microsoft Research 2010-03-14 16:57:36 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Malwarebytes 2010-03-14 16:57:24 ----D---- C:\ProgramData\Malwarebytes 2010-03-14 13:02:04 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\AVG9 2010-03-12 16:56:54 ----A---- C:\Windows\system32\XAudio2_6.dll 2010-03-12 16:56:54 ----A---- C:\Windows\system32\XAPOFX1_4.dll 2010-03-12 16:56:54 ----A---- C:\Windows\system32\xactengine3_6.dll 2010-03-12 16:56:54 ----A---- C:\Windows\system32\X3DAudio1_7.dll 2010-03-12 16:56:53 ----A---- C:\Windows\system32\XAudio2_5.dll 2010-03-12 16:56:53 ----A---- C:\Windows\system32\xactengine3_5.dll 2010-03-12 16:56:53 ----A---- C:\Windows\system32\d3dx11_42.dll 2010-03-12 16:56:53 ----A---- C:\Windows\system32\d3dcsx_42.dll 2010-03-12 16:56:53 ----A---- C:\Windows\system32\D3DCompiler_42.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\XAudio2_4.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\XAPOFX1_3.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\xactengine3_4.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\D3DX9_42.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\D3DX9_41.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\d3dx10_42.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\d3dx10_41.dll 2010-03-12 16:56:52 ----A---- C:\Windows\system32\D3DCompiler_41.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\XAudio2_3.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\XAPOFX1_2.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\xactengine3_3.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\X3DAudio1_6.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\X3DAudio1_5.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\D3DX9_40.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\d3dx10_40.dll 2010-03-12 16:56:51 ----A---- C:\Windows\system32\D3DCompiler_40.dll 2010-03-12 16:56:50 ----A---- C:\Windows\system32\XAudio2_2.dll 2010-03-12 16:56:50 ----A---- C:\Windows\system32\XAPOFX1_1.dll 2010-03-12 16:56:50 ----A---- C:\Windows\system32\xactengine3_2.dll 2010-03-12 16:56:50 ----A---- C:\Windows\system32\d3dx10_39.dll 2010-03-12 16:56:50 ----A---- C:\Windows\system32\D3DCompiler_39.dll 2010-03-12 16:56:48 ----A---- C:\Windows\system32\XAudio2_1.dll 2010-03-12 16:56:48 ----A---- C:\Windows\system32\XAPOFX1_0.dll 2010-03-12 16:56:48 ----A---- C:\Windows\system32\xactengine3_1.dll 2010-03-12 16:56:48 ----A---- C:\Windows\system32\X3DAudio1_4.dll 2010-03-12 16:56:48 ----A---- C:\Windows\system32\D3DX9_39.dll 2010-03-12 16:56:47 ----A---- C:\Windows\system32\XAudio2_0.dll 2010-03-12 16:56:47 ----A---- C:\Windows\system32\xactengine3_0.dll 2010-03-12 16:56:47 ----A---- C:\Windows\system32\X3DAudio1_3.dll 2010-03-12 16:56:47 ----A---- C:\Windows\system32\D3DX9_38.dll 2010-03-12 16:56:47 ----A---- C:\Windows\system32\d3dx10_38.dll 2010-03-12 16:56:47 ----A---- C:\Windows\system32\D3DCompiler_38.dll 2010-03-12 16:56:46 ----A---- C:\Windows\system32\d3dx10_37.dll 2010-03-12 16:56:46 ----A---- C:\Windows\system32\D3DCompiler_37.dll 2010-03-12 16:56:45 ----A---- C:\Windows\system32\xactengine2_10.dll 2010-03-12 16:56:45 ----A---- C:\Windows\system32\D3DX9_37.dll 2010-03-12 16:56:44 ----A---- C:\Windows\system32\xactengine2_9.dll 2010-03-12 16:56:44 ----A---- C:\Windows\system32\d3dx9_36.dll 2010-03-12 16:56:44 ----A---- C:\Windows\system32\d3dx10_36.dll 2010-03-12 16:56:44 ----A---- C:\Windows\system32\d3dx10_35.dll 2010-03-12 16:56:44 ----A---- C:\Windows\system32\D3DCompiler_36.dll 2010-03-12 16:56:44 ----A---- C:\Windows\system32\D3DCompiler_35.dll 2010-03-12 16:56:43 ----A---- C:\Windows\system32\d3dx9_35.dll 2010-03-12 16:56:42 ----A---- C:\Windows\system32\xactengine2_8.dll 2010-03-12 16:56:42 ----A---- C:\Windows\system32\X3DAudio1_2.dll 2010-03-12 16:56:34 ----A---- C:\Windows\system32\xinput1_3.dll 2010-03-12 16:56:34 ----A---- C:\Windows\system32\xactengine2_7.dll 2010-03-12 16:56:34 ----A---- C:\Windows\system32\x3daudio1_1.dll 2010-03-12 16:56:34 ----A---- C:\Windows\system32\d3dx9_34.dll 2010-03-12 16:56:34 ----A---- C:\Windows\system32\d3dx10_34.dll 2010-03-12 16:56:34 ----A---- C:\Windows\system32\D3DCompiler_34.dll 2010-03-12 16:56:07 ----A---- C:\Windows\system32\d3dx10_33.dll 2010-03-12 16:56:07 ----A---- C:\Windows\system32\D3DCompiler_33.dll 2010-03-12 16:56:05 ----A---- C:\Windows\system32\xactengine2_6.dll 2010-03-12 16:56:05 ----A---- C:\Windows\system32\xactengine2_5.dll 2010-03-12 16:56:05 ----A---- C:\Windows\system32\d3dx9_33.dll 2010-03-12 16:56:05 ----A---- C:\Windows\system32\d3dx10.dll 2010-03-12 16:56:04 ----A---- C:\Windows\system32\xinput1_2.dll 2010-03-12 16:56:04 ----A---- C:\Windows\system32\xactengine2_4.dll 2010-03-12 16:56:04 ----A---- C:\Windows\system32\xactengine2_3.dll 2010-03-12 16:56:04 ----A---- C:\Windows\system32\xactengine2_2.dll 2010-03-12 16:56:04 ----A---- C:\Windows\system32\d3dx9_32.dll 2010-03-12 16:56:04 ----A---- C:\Windows\system32\d3dx9_31.dll 2010-03-12 16:56:03 ----A---- C:\Windows\system32\xinput1_1.dll 2010-03-12 16:56:03 ----A---- C:\Windows\system32\xactengine2_1.dll 2010-03-12 16:56:02 ----A---- C:\Windows\system32\d3dx9_30.dll 2010-03-12 16:56:01 ----A---- C:\Windows\system32\xactengine2_0.dll 2010-03-12 16:56:01 ----A---- C:\Windows\system32\x3daudio1_0.dll 2010-03-12 16:56:01 ----A---- C:\Windows\system32\d3dx9_29.dll 2010-03-12 16:56:01 ----A---- C:\Windows\system32\d3dx9_28.dll 2010-03-12 16:56:01 ----A---- C:\Windows\system32\d3dx9_27.dll 2010-03-12 16:56:01 ----A---- C:\Windows\system32\d3dx9_26.dll 2010-03-12 16:56:01 ----A---- C:\Windows\system32\d3dx9_25.dll 2010-03-12 16:55:06 ----A---- C:\Windows\system32\d3dx9_24.dll 2010-03-12 16:44:52 ----HD---- C:\Windows\msdownld.tmp 2010-03-12 16:44:49 ----D---- C:\Windows\system32\directx 2010-03-12 16:17:01 ----D---- C:\Program Files\Google 2010-03-11 20:30:39 ----D---- C:\Program Files\Zattoo4 2010-03-11 20:14:25 ----A---- C:\Windows\system32\avgrsstx.dll 2010-03-11 19:01:50 ----D---- C:\ProgramData\Spybot - Search & Destroy 2010-03-11 19:01:50 ----D---- C:\Program Files\Spybot - Search & Destroy 2010-03-10 22:38:29 ----A---- C:\Windows\system32\UIRibbonRes.dll 2010-03-10 22:38:29 ----A---- C:\Windows\system32\UIRibbon.dll 2010-03-10 22:38:29 ----A---- C:\Windows\system32\UIAnimation.dll 2010-03-10 22:38:08 ----A---- C:\Windows\system32\WMPhoto.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\XpsRasterService.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\XpsGdiConverter.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\WindowsCodecs.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\dxdiagn.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\d3d10warp.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\d2d1.dll 2010-03-10 22:38:07 ----A---- C:\Windows\system32\cdd.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\xpsservices.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\XpsPrint.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe 2010-03-10 22:38:06 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\OpcServices.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\FntCache.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\dxgi.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\dxdiag.exe 2010-03-10 22:38:06 ----A---- C:\Windows\system32\DWrite.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\d3d11.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\d3d10level9.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\d3d10core.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\d3d10_1core.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\d3d10_1.dll 2010-03-10 22:38:06 ----A---- C:\Windows\system32\d3d10.dll 2010-03-10 22:37:41 ----A---- C:\Windows\system32\WPDShextAutoplay.exe 2010-03-10 22:37:41 ----A---- C:\Windows\system32\wpdbusenum.dll 2010-03-10 22:37:41 ----A---- C:\Windows\system32\BthMtpContextHandler.dll 2010-03-10 22:37:39 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\WPDSp.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\WPDShServiceObj.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\wpdshext.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\wpd_ci.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\PortableDeviceTypes.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll 2010-03-10 22:37:38 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2010-03-10 22:37:04 ----A---- C:\Windows\system32\oleaccrc.dll 2010-03-10 22:37:03 ----A---- C:\Windows\system32\UIAutomationCore.dll 2010-03-10 22:37:03 ----A---- C:\Windows\system32\oleacc.dll 2010-03-10 22:31:15 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll 2010-03-10 22:31:15 ----A---- C:\Windows\system32\gameux.dll 2010-03-10 22:31:15 ----A---- C:\Windows\system32\Apphlpdm.dll 2010-03-10 22:15:03 ----D---- C:\Windows\system32\eu-ES 2010-03-10 22:15:03 ----D---- C:\Windows\system32\ca-ES 2010-03-10 22:15:01 ----D---- C:\Windows\system32\vi-VN 2010-03-10 21:31:47 ----D---- C:\ProgramData\Messenger Plus! 2010-03-10 21:31:12 ----D---- C:\Program Files\Messenger Plus! Live 2010-03-10 21:21:19 ----D---- C:\Windows\system32\EventProviders 2010-03-10 21:20:54 ----A---- C:\Windows\system32\NlsLexicons0007.dll 2010-03-10 21:20:51 ----A---- C:\Windows\system32\SLsvc.exe 2010-03-10 21:20:51 ----A---- C:\Windows\system32\SLCExt.dll 2010-03-10 21:20:49 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll 2010-03-10 21:20:49 ----A---- C:\Windows\system32\DevicePairingWizard.exe 2010-03-10 21:20:48 ----A---- C:\Windows\system32\NlsLexicons0009.dll 2010-03-10 21:20:46 ----A---- C:\Windows\system32\mssrch.dll 2010-03-10 21:20:44 ----A---- C:\Windows\system32\tquery.dll 2010-03-10 21:20:43 ----A---- C:\Windows\system32\PresentationNative_v0300.dll 2010-03-10 21:20:42 ----A---- C:\Windows\system32\scavenge.dll 2010-03-10 21:20:41 ----A---- C:\Windows\system32\msi.dll 2010-03-10 21:20:41 ----A---- C:\Windows\system32\imapi2fs.dll 2010-03-10 21:20:39 ----A---- C:\Windows\system32\WscEapPr.dll 2010-03-10 21:20:39 ----A---- C:\Windows\system32\wcnwiz2.dll 2010-03-10 21:20:39 ----A---- C:\Windows\system32\sysmain.dll 2010-03-10 21:20:38 ----A---- C:\Windows\system32\icardagt.exe 2010-03-10 21:20:36 ----A---- C:\Windows\system32\EhStorShell.dll 2010-03-10 21:20:36 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll 2010-03-10 21:20:35 ----A---- C:\Windows\system32\spreview.exe 2010-03-10 21:20:35 ----A---- C:\Windows\system32\spinstall.exe 2010-03-10 21:20:35 ----A---- C:\Windows\system32\drmv2clt.dll 2010-03-10 21:20:34 ----A---- C:\Windows\system32\spwizui.dll 2010-03-10 21:20:34 ----A---- C:\Windows\system32\shell32.dll 2010-03-10 21:20:34 ----A---- C:\Windows\system32\SearchIndexer.exe 2010-03-10 21:20:34 ----A---- C:\Windows\system32\p2psvc.dll 2010-03-10 21:20:34 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll 2010-03-10 21:20:33 ----A---- C:\Windows\system32\mssvp.dll 2010-03-10 21:20:33 ----A---- C:\Windows\system32\mscoree.dll 2010-03-10 21:20:32 ----A---- C:\Windows\system32\mssphtb.dll 2010-03-10 21:20:32 ----A---- C:\Windows\system32\mssph.dll 2010-03-10 21:20:32 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL 2010-03-10 21:20:32 ----A---- C:\Windows\system32\imapi2.dll 2010-03-10 21:20:31 ----A---- C:\Windows\system32\sdohlp.dll 2010-03-10 21:20:31 ----A---- C:\Windows\system32\IMJP10K.DLL 2010-03-10 21:20:31 ----A---- C:\Windows\system32\esent.dll 2010-03-10 21:20:31 ----A---- C:\Windows\system32\DevicePairing.dll 2010-03-10 21:20:30 ----A---- C:\Windows\system32\wevtsvc.dll 2010-03-10 21:20:30 ----A---- C:\Windows\system32\sperror.dll 2010-03-10 21:20:30 ----A---- C:\Windows\system32\korwbrkr.dll 2010-03-10 21:20:23 ----A---- C:\Windows\system32\PresentationHostProxy.dll 2010-03-10 21:20:23 ----A---- C:\Windows\system32\IasMigReader.exe 2010-03-10 21:20:22 ----A---- C:\Windows\system32\SLC.dll 2010-03-10 21:20:22 ----A---- C:\Windows\system32\msshsq.dll 2010-03-10 21:20:19 ----A---- C:\Windows\system32\msjet40.dll 2010-03-10 21:20:18 ----A---- C:\Windows\system32\MPSSVC.dll 2010-03-10 21:20:16 ----A---- C:\Windows\system32\Query.dll 2010-03-10 21:20:16 ----A---- C:\Windows\system32\qmgr.dll 2010-03-10 21:20:16 ----A---- C:\Windows\system32\P2PGraph.dll 2010-03-10 21:20:16 ----A---- C:\Windows\system32\ole32.dll 2010-03-10 21:20:16 ----A---- C:\Windows\system32\ntdll.dll 2010-03-10 21:20:16 ----A---- C:\Windows\system32\msexch40.dll 2010-03-10 21:20:16 ----A---- C:\Windows\system32\diagperf.dll 2010-03-10 21:20:15 ----A---- C:\Windows\system32\winload.exe 2010-03-10 21:20:15 ----A---- C:\Windows\system32\uDWM.dll 2010-03-10 21:20:15 ----A---- C:\Windows\system32\srchadmin.dll 2010-03-10 21:20:15 ----A---- C:\Windows\system32\mmc.exe 2010-03-10 21:20:15 ----A---- C:\Windows\system32\mblctr.exe 2010-03-10 21:20:15 ----A---- C:\Windows\system32\EncDec.dll 2010-03-10 21:20:14 ----A---- C:\Windows\system32\riched20.dll 2010-03-10 21:20:14 ----A---- C:\Windows\system32\RacEngn.dll 2010-03-10 21:20:14 ----A---- C:\Windows\system32\IasMigPlugin.dll 2010-03-10 21:20:14 ----A---- C:\Windows\system32\fdBth.dll 2010-03-10 21:20:14 ----A---- C:\Windows\system32\dfsr.exe 2010-03-10 21:20:13 ----A---- C:\Windows\system32\SearchProtocolHost.exe 2010-03-10 21:20:13 ----A---- C:\Windows\system32\SearchFilterHost.exe 2010-03-10 21:20:13 ----A---- C:\Windows\system32\kernel32.dll 2010-03-10 21:20:12 ----A---- C:\Windows\system32\spoolss.dll 2010-03-10 21:20:12 ----A---- C:\Windows\system32\schedsvc.dll 2010-03-10 21:20:12 ----A---- C:\Windows\system32\NaturalLanguage6.dll 2010-03-10 21:20:12 ----A---- C:\Windows\system32\milcore.dll 2010-03-10 21:20:12 ----A---- C:\Windows\system32\EhStorAPI.dll 2010-03-10 21:20:12 ----A---- C:\Windows\system32\CertEnroll.dll 2010-03-10 21:20:10 ----A---- C:\Windows\system32\msvcp60.dll 2010-03-10 21:20:10 ----A---- C:\Windows\system32\msjtes40.dll 2010-03-10 21:20:10 ----A---- C:\Windows\system32\infocardapi.dll 2010-03-10 21:20:10 ----A---- C:\Windows\system32\gpedit.dll 2010-03-10 21:20:10 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll 2010-03-10 21:20:09 ----A---- C:\Windows\system32\WinSAT.exe 2010-03-10 21:20:08 ----A---- C:\Windows\system32\PresentationSettings.exe 2010-03-10 21:20:08 ----A---- C:\Windows\system32\mstext40.dll 2010-03-10 21:20:08 ----A---- C:\Windows\system32\Magnify.exe 2010-03-10 21:20:08 ----A---- C:\Windows\system32\es.dll 2010-03-10 21:20:08 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll 2010-03-10 21:20:08 ----A---- C:\Windows\system32\advapi32.dll 2010-03-10 21:20:07 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll 2010-03-10 21:20:07 ----A---- C:\Windows\system32\WebClnt.dll 2010-03-10 21:20:07 ----A---- C:\Windows\system32\slwmi.dll 2010-03-10 21:20:07 ----A---- C:\Windows\system32\msxbde40.dll 2010-03-10 21:20:07 ----A---- C:\Windows\system32\msexcl40.dll 2010-03-10 21:20:07 ----A---- C:\Windows\system32\comsvcs.dll 2010-03-10 21:20:06 ----A---- C:\Windows\system32\vssapi.dll 2010-03-10 21:20:06 ----A---- C:\Windows\system32\authui.dll 2010-03-10 21:20:05 ----A---- C:\Windows\system32\PresentationHost.exe 2010-03-10 21:20:05 ----A---- C:\Windows\system32\NetProjW.dll 2010-03-10 21:20:05 ----A---- C:\Windows\system32\msrepl40.dll 2010-03-10 21:20:04 ----A---- C:\Windows\system32\propsys.dll 2010-03-10 21:20:04 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2010-03-10 21:20:04 ----A---- C:\Windows\system32\newdev.dll 2010-03-10 21:20:04 ----A---- C:\Windows\system32\iasrecst.dll 2010-03-10 21:20:04 ----A---- C:\Windows\system32\gpsvc.dll 2010-03-10 21:20:04 ----A---- C:\Windows\system32\eudcedit.exe 2010-03-10 21:20:04 ----A---- C:\Windows\system32\crypt32.dll 2010-03-10 21:20:04 ----A---- C:\Windows\explorer.exe 2010-03-10 21:20:03 ----A---- C:\Windows\system32\setupapi.dll 2010-03-10 21:20:03 ----A---- C:\Windows\system32\rpcss.dll 2010-03-10 21:20:03 ----A---- C:\Windows\system32\mspbde40.dll 2010-03-10 21:20:02 ----A---- C:\Windows\system32\msltus40.dll 2010-03-10 21:20:02 ----A---- C:\Windows\system32\mfc42.dll 2010-03-10 21:20:02 ----A---- C:\Windows\system32\davclnt.dll 2010-03-10 21:20:02 ----A---- C:\Windows\system32\d3d9.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\wevtapi.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\shlwapi.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\photowiz.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\nlhtml.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\msrd3x40.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\msdtctm.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\EhStorPwdMgr.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\EhStorAuthn.dll 2010-03-10 21:20:01 ----A---- C:\Windows\system32\browseui.dll 2010-03-10 21:20:00 ----A---- C:\Windows\system32\win32spl.dll 2010-03-10 21:20:00 ----A---- C:\Windows\system32\WcnNetsh.dll 2010-03-10 21:20:00 ----A---- C:\Windows\system32\user32.dll 2010-03-10 21:20:00 ----A---- C:\Windows\system32\SLCommDlg.dll 2010-03-10 21:20:00 ----A---- C:\Windows\system32\samsrv.dll 2010-03-10 21:20:00 ----A---- C:\Windows\system32\oleaut32.dll 2010-03-10 21:20:00 ----A---- C:\Windows\system32\ci.dll 2010-03-10 21:19:59 ----A---- C:\Windows\system32\netshell.dll 2010-03-10 21:19:59 ----A---- C:\Windows\system32\IKEEXT.DLL 2010-03-10 21:19:59 ----A---- C:\Windows\system32\compcln.exe 2010-03-10 21:19:59 ----A---- C:\Windows\system32\apds.dll 2010-03-10 21:19:58 ----A---- C:\Windows\system32\xmlfilter.dll 2010-03-10 21:19:58 ----A---- C:\Windows\system32\QAGENTRT.DLL 2010-03-10 21:19:58 ----A---- C:\Windows\system32\mswstr10.dll 2010-03-10 21:19:58 ----A---- C:\Windows\system32\msvcrt.dll 2010-03-10 21:19:58 ----A---- C:\Windows\system32\msctf.dll 2010-03-10 21:19:58 ----A---- C:\Windows\system32\gdi32.dll 2010-03-10 21:19:58 ----A---- C:\Windows\system32\emdmgmt.dll 2010-03-10 21:19:58 ----A---- C:\Windows\system32\audiosrv.dll 2010-03-10 21:19:57 ----A---- C:\Windows\system32\VSSVC.exe 2010-03-10 21:19:57 ----A---- C:\Windows\system32\mfc42u.dll 2010-03-10 21:19:57 ----A---- C:\Windows\system32\iphlpsvc.dll 2010-03-10 21:19:56 ----A---- C:\Windows\system32\winresume.exe 2010-03-10 21:19:56 ----A---- C:\Windows\system32\sqlsrv32.dll 2010-03-10 21:19:56 ----A---- C:\Windows\system32\SLUI.exe 2010-03-10 21:19:56 ----A---- C:\Windows\system32\shdocvw.dll 2010-03-10 21:19:56 ----A---- C:\Windows\system32\propdefs.dll 2010-03-10 21:19:56 ----A---- C:\Windows\system32\odbc32.dll 2010-03-10 21:19:56 ----A---- C:\Windows\system32\msrd2x40.dll 2010-03-10 21:19:56 ----A---- C:\Windows\system32\eapphost.dll 2010-03-10 21:19:55 ----A---- C:\Windows\system32\wevtutil.exe 2010-03-10 21:19:55 ----A---- C:\Windows\system32\mssitlb.dll 2010-03-10 21:19:55 ----A---- C:\Windows\system32\dbgeng.dll 2010-03-10 21:19:54 ----A---- C:\Windows\system32\WsmSvc.dll 2010-03-10 21:19:54 ----A---- C:\Windows\system32\swprv.dll 2010-03-10 21:19:54 ----A---- C:\Windows\system32\mmcndmgr.dll 2010-03-10 21:19:53 ----A---- C:\Windows\system32\vds.exe 2010-03-10 21:19:53 ----A---- C:\Windows\system32\usp10.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\Wldap32.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\wcnwiz.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\netlogon.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\msscb.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\msctfp.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\fdBthProxy.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\evr.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\drvinst.exe 2010-03-10 21:19:51 ----A---- C:\Windows\system32\devmgr.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\DevicePairingProxy.dll 2010-03-10 21:19:51 ----A---- C:\Windows\system32\BFE.DLL 2010-03-10 21:19:51 ----A---- C:\Windows\system32\adsldpc.dll 2010-03-10 21:19:50 ----A---- C:\Windows\system32\WMVSDECD.DLL 2010-03-10 21:19:49 ----A---- C:\Windows\system32\wercon.exe 2010-03-10 21:19:49 ----A---- C:\Windows\system32\wcncsvc.dll 2010-03-10 21:19:49 ----A---- C:\Windows\system32\services.exe 2010-03-10 21:19:49 ----A---- C:\Windows\system32\msdtcprx.dll 2010-03-10 21:19:49 ----A---- C:\Windows\system32\mimefilt.dll 2010-03-10 21:19:49 ----A---- C:\Windows\system32\comdlg32.dll 2010-03-10 21:19:49 ----A---- C:\Windows\system32\certcli.dll 2010-03-10 21:19:49 ----A---- C:\Windows\system32\adtschema.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\WMNetMgr.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\w32time.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\umpnpmgr.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\taskeng.exe 2010-03-10 21:19:48 ----A---- C:\Windows\system32\rtffilt.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\rsaenh.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\reg.exe 2010-03-10 21:19:48 ----A---- C:\Windows\system32\mswdat10.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\msshooks.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\msscntrs.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\msjter40.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\msihnd.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\ipsmsnap.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\IPSECSVC.DLL 2010-03-10 21:19:48 ----A---- C:\Windows\system32\dnsapi.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\certutil.exe 2010-03-10 21:19:48 ----A---- C:\Windows\system32\bthserv.dll 2010-03-10 21:19:48 ----A---- C:\Windows\system32\bcrypt.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\wmicmiplugin.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\TsWpfWrp.exe 2010-03-10 21:19:47 ----A---- C:\Windows\system32\termsrv.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\profsvc.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\netapi32.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\mtxclu.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\msstrc.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\mscories.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\MMDevAPI.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\inetpp.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\inetcomm.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\hidserv.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\fundisc.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\dfshim.dll 2010-03-10 21:19:47 ----A---- C:\Windows\system32\cryptsvc.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\wdc.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\spoolsv.exe 2010-03-10 21:19:46 ----A---- C:\Windows\system32\shsvcs.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\rasmans.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\pnidui.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\msiexec.exe 2010-03-10 21:19:46 ----A---- C:\Windows\system32\imapi.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\icardres.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\iassdo.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\chsbrkr.dll 2010-03-10 21:19:46 ----A---- C:\Windows\system32\autofmt.exe 2010-03-10 21:19:45 ----A---- C:\Windows\system32\wersvc.dll 2010-03-10 21:19:45 ----A---- C:\Windows\system32\slmgr.vbs 2010-03-10 21:19:45 ----A---- C:\Windows\system32\scrrun.dll 2010-03-10 21:19:45 ----A---- C:\Windows\system32\PSHED.DLL 2010-03-10 21:19:45 ----A---- C:\Windows\system32\pidgenx.dll 2010-03-10 21:19:45 ----A---- C:\Windows\system32\pdh.dll 2010-03-10 21:19:45 ----A---- C:\Windows\system32\dhcpcsvc.dll 2010-03-10 21:19:45 ----A---- C:\Windows\system32\CertEnrollUI.dll 2010-03-10 21:19:45 ----A---- C:\Windows\system32\azroles.dll 2010-03-10 21:19:44 ----A---- C:\Windows\system32\wmpmde.dll 2010-03-10 21:19:44 ----A---- C:\Windows\system32\winlogon.exe 2010-03-10 21:19:44 ----A---- C:\Windows\system32\SyncCenter.dll 2010-03-10 21:19:43 ----A---- C:\Windows\system32\SLUINotify.dll 2010-03-10 21:19:43 ----A---- C:\Windows\system32\ncrypt.dll 2010-03-10 21:19:43 ----A---- C:\Windows\system32\msjetoledb40.dll 2010-03-10 21:19:43 ----A---- C:\Windows\system32\kd1394.dll 2010-03-10 21:19:43 ----A---- C:\Windows\system32\comuid.dll 2010-03-10 21:19:43 ----A---- C:\Windows\system32\certmgr.dll 2010-03-10 21:17:45 ----A---- C:\Windows\system32\wisptis.exe 2010-03-10 21:17:45 ----A---- C:\Windows\system32\untfs.dll 2010-03-10 21:17:45 ----A---- C:\Windows\system32\taskcomp.dll 2010-03-10 21:17:45 ----A---- C:\Windows\system32\spp.dll 2010-03-10 21:17:45 ----A---- C:\Windows\system32\sethc.exe 2010-03-10 21:17:45 ----A---- C:\Windows\system32\scrobj.dll 2010-03-10 21:17:45 ----A---- C:\Windows\system32\rtutils.dll 2010-03-10 21:17:45 ----A---- C:\Windows\system32\iassam.dll 2010-03-10 21:17:45 ----A---- C:\Windows\system32\dwm.exe 2010-03-10 21:17:44 ----A---- C:\Windows\system32\winsrv.dll 2010-03-10 21:17:44 ----A---- C:\Windows\system32\printui.dll 2010-03-10 21:17:44 ----A---- C:\Windows\system32\iasnap.dll 2010-03-10 21:17:44 ----A---- C:\Windows\system32\autoconv.exe 2010-03-10 21:17:44 ----A---- C:\Windows\system32\autochk.exe 2010-03-10 21:17:43 ----A---- C:\Windows\system32\wow32.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\userenv.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\spcmsg.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\osk.exe 2010-03-10 21:17:43 ----A---- C:\Windows\system32\onex.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\mswsock.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\kdusb.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\kdcom.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\cscript.exe 2010-03-10 21:17:43 ----A---- C:\Windows\system32\basecsp.dll 2010-03-10 21:17:43 ----A---- C:\Windows\system32\audiodg.exe 2010-03-10 21:17:42 ----A---- C:\Windows\system32\WinSCard.dll 2010-03-10 21:17:42 ----A---- C:\Windows\system32\winmm.dll 2010-03-10 21:17:42 ----A---- C:\Windows\system32\WerFaultSecure.exe 2010-03-10 21:17:42 ----A---- C:\Windows\system32\RelMon.dll 2010-03-10 21:17:42 ----A---- C:\Windows\system32\rdpencom.dll 2010-03-10 21:17:42 ----A---- C:\Windows\system32\offfilt.dll 2010-03-10 21:17:42 ----A---- C:\Windows\system32\msftedit.dll 2010-03-10 21:17:42 ----A---- C:\Windows\system32\dnsrslvr.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\wsepno.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\wiaservc.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\WerFault.exe 2010-03-10 21:17:41 ----A---- C:\Windows\system32\Utilman.exe 2010-03-10 21:17:41 ----A---- C:\Windows\system32\sysclass.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\stobject.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\SndVol.exe 2010-03-10 21:17:41 ----A---- C:\Windows\system32\prnntfy.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\msnetobj.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\mscms.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\mfplat.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\mcmde.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\diskraid.exe 2010-03-10 21:17:41 ----A---- C:\Windows\system32\apphelp.dll 2010-03-10 21:17:41 ----A---- C:\Windows\system32\adsmsext.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\wscsvc.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\wscript.exe 2010-03-10 21:17:40 ----A---- C:\Windows\system32\wscntfy.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\WMVENCOD.DLL 2010-03-10 21:17:40 ----A---- C:\Windows\system32\wlangpui.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\vdsdyn.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\ulib.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\rastapi.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\rasapi32.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\pnpsetup.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\odbccp32.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\logman.exe 2010-03-10 21:17:40 ----A---- C:\Windows\system32\ipsecsnp.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\IPHLPAPI.DLL 2010-03-10 21:17:40 ----A---- C:\Windows\system32\iashlpr.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\iasdatastore.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\gpapi.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\fdProxy.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\dsound.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\diskpart.exe 2010-03-10 21:17:40 ----A---- C:\Windows\system32\cryptui.dll 2010-03-10 21:17:40 ----A---- C:\Windows\system32\brcpl.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\zipfldr.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\wusa.exe 2010-03-10 21:17:39 ----A---- C:\Windows\system32\wshext.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\wpccpl.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\regsvc.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\ntprint.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\netcenter.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\mscorier.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\iasrad.dll 2010-03-10 21:17:39 ----A---- C:\Windows\system32\findstr.exe 2010-03-10 21:17:38 ----A---- C:\Windows\system32\wsnmp32.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\wer.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\uxsms.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\themecpl.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\srvsvc.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\slcc.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\scansetting.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\rasdlg.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\ntmarta.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\msutb.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\mstlsapi.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\mssprxy.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\iassvcs.dll 2010-03-10 21:17:38 ----A---- C:\Windows\system32\iasads.dll 2010-03-10 21:17:37 ----A---- C:\Windows\system32\powrprof.dll 2010-03-10 21:17:37 ----A---- C:\Windows\system32\powercpl.dll 2010-03-10 21:17:37 ----A---- C:\Windows\system32\PerfCenterCPL.dll 2010-03-10 21:17:37 ----A---- C:\Windows\system32\newdev.exe 2010-03-10 21:17:37 ----A---- C:\Windows\system32\networkmap.dll 2010-03-10 21:17:37 ----A---- C:\Windows\system32\mstsc.exe 2010-03-10 21:17:37 ----A---- C:\Windows\system32\iasacct.dll 2010-03-10 21:17:37 ----A---- C:\Windows\system32\connect.dll 2010-03-10 21:17:37 ----A---- C:\Windows\system32\authz.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\themeui.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\systemcpl.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\sud.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\samlib.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\pcaui.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\mmci.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\dot3svc.dll 2010-03-10 21:17:36 ----A---- C:\Windows\system32\accessibilitycpl.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\wpcao.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\wlanpref.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\vdsutil.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\usercpl.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\rpchttp.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\regapi.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\qdvd.dll 2010-03-10 21:17:35 ----A---- C:\Windows\system32\msinfo32.exe 2010-03-10 21:17:35 ----A---- C:\Windows\system32\autoplay.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\wscisvif.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\tapisrv.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\sdclt.exe 2010-03-10 21:17:34 ----A---- C:\Windows\system32\scksp.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\scesrv.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\rekeywiz.exe 2010-03-10 21:17:34 ----A---- C:\Windows\system32\psisdecd.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\oleprn.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\ncryptui.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\mpr.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\imm32.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\iaspolcy.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\feclient.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\Faultrep.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\dpapimig.exe 2010-03-10 21:17:34 ----A---- C:\Windows\system32\dot3msm.dll 2010-03-10 21:17:34 ----A---- C:\Windows\system32\DeviceEject.exe 2010-03-10 21:17:34 ----A---- C:\Windows\system32\AudioSes.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\whealogr.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\TSTheme.exe 2010-03-10 21:17:33 ----A---- C:\Windows\system32\tcpmon.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\tcpipcfg.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\srcore.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\spwinsat.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\SnippingTool.exe 2010-03-10 21:17:33 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\scecli.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\SCardSvr.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\rasplap.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\rasgcw.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\raschap.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\qedit.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\PnPUnattend.exe 2010-03-10 21:17:33 ----A---- C:\Windows\system32\pnpui.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\perfdisk.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\hdwwiz.exe 2010-03-10 21:17:33 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2010-03-10 21:17:33 ----A---- C:\Windows\system32\fdWSD.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\conime.exe 2010-03-10 21:17:33 ----A---- C:\Windows\system32\cmmon32.exe 2010-03-10 21:17:33 ----A---- C:\Windows\system32\cmdial32.dll 2010-03-10 21:17:33 ----A---- C:\Windows\system32\certreq.exe 2010-03-10 21:17:32 ----A---- C:\Windows\system32\WMVXENCD.DLL 2010-03-10 21:17:32 ----A---- C:\Windows\system32\wlanui.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\wiaaut.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\shwebsvc.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\shsetup.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\rasppp.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\rasmontr.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\PnPutil.exe 2010-03-10 21:17:32 ----A---- C:\Windows\system32\oobefldr.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\MSVidCtl.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\mscandui.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\modemui.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\fontext.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\dsprop.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\dimsroam.dll 2010-03-10 21:17:32 ----A---- C:\Windows\system32\chtbrkr.dll 2010-03-10 21:17:31 ----A---- C:\Windows\system32\wmdrmsdk.dll 2010-03-10 21:17:31 ----A---- C:\Windows\system32\wlgpclnt.dll 2010-03-10 21:17:31 ----A---- C:\Windows\system32\rdpwsx.dll 2010-03-10 21:17:31 ----A---- C:\Windows\system32\dataclen.dll 2010-03-10 21:17:31 ----A---- C:\Windows\system32\blackbox.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\WSDMon.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\wscapi.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\wpcsvc.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\wmpeffects.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\thawbrkr.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\softkbd.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\smss.exe 2010-03-10 21:17:30 ----A---- C:\Windows\system32\sendmail.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\networkexplorer.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\netplwiz.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\msscp.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\msimtf.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\logagent.exe 2010-03-10 21:17:30 ----A---- C:\Windows\system32\InkEd.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\ifmon.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\gpresult.exe 2010-03-10 21:17:30 ----A---- C:\Windows\system32\credui.dll 2010-03-10 21:17:30 ----A---- C:\Windows\system32\cipher.exe 2010-03-10 21:17:30 ----A---- C:\Windows\system32\certprop.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\wshbth.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\version.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\SLLUA.exe 2010-03-10 21:17:29 ----A---- C:\Windows\system32\puiapi.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\olepro32.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\msisip.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\msctfui.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\mprapi.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\MediaMetadataHandler.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\input.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\fc.exe 2010-03-10 21:17:29 ----A---- C:\Windows\system32\ExplorerFrame.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\drmmgrtn.dll 2010-03-10 21:17:29 ----A---- C:\Windows\system32\dmsynth.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\wsdchngr.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\tscupgrd.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\Storprop.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\SMBHelperClass.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\slcinst.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\rasdial.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\rasdiag.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\PNPXAssoc.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\ocsetup.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\nslookup.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\networkitemfactory.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\msjint40.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\MsCtfMonitor.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\mmcico.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\l2nacp.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\ipconfig.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\hbaapi.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\gpupdate.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\FwRemoteSvr.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\ftp.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\fdWCN.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\fdSSDP.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\fdeploy.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\eappgnui.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\eappcfg.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\eapp3hst.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\dot3cfg.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\dmusic.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\csrstub.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\cscdll.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\cscapi.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\CHxReadingStringIME.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\cbsra.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\bthudtask.exe 2010-03-10 21:17:28 ----A---- C:\Windows\system32\bthci.dll 2010-03-10 21:17:28 ----A---- C:\Windows\system32\bitsigd.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\winrnr.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\vdmdbg.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\slwga.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\odbcconf.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\NcdProp.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\midimap.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\iscsilog.dll 2010-03-10 21:17:27 ----A---- C:\Windows\system32\inetppui.dll 2010-03-10 21:17:26 ----A---- C:\Windows\system32\msimsg.dll 2010-03-10 21:17:26 ----A---- C:\Windows\system32\f3ahvoas.dll 2010-03-10 21:17:09 ----A---- C:\Windows\system32\SmiEngine.dll 2010-03-10 21:17:02 ----A---- C:\Windows\system32\wdscore.dll 2010-03-10 21:17:02 ----A---- C:\Windows\system32\PkgMgr.exe 2010-03-10 21:16:36 ----A---- C:\Windows\system32\drvstore.dll 2010-03-10 21:14:01 ----D---- C:\ProgramData\MumboJumbo 2010-03-10 21:08:23 ----D---- C:\ProgramData\Arcade Lab 2010-03-10 21:08:17 ----AD---- C:\ProgramData\TEMP 2010-03-10 19:07:00 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\VMLoad 2010-03-10 18:28:03 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\LimeWire 2010-03-10 18:27:39 ----D---- C:\Program Files\Ask.com 2010-03-09 22:28:52 ----A---- C:\Windows\system32\jscript.dll 2010-03-09 22:26:37 ----A---- C:\Windows\system32\nshhttp.dll 2010-03-09 22:26:36 ----A---- C:\Windows\system32\httpapi.dll 2010-03-09 22:06:20 ----D---- C:\PerfLogs 2010-03-09 21:49:57 ----D---- C:\Program Files\Common Files\Windows Live 2010-03-08 21:57:35 ----D---- C:\ProgramData\Office Genuine Advantage 2010-03-08 21:41:21 ----A---- C:\Windows\system32\imagesp1.dll 2010-03-08 21:41:18 ----A---- C:\Windows\system32\sstpsvc.dll 2010-03-08 21:41:17 ----A---- C:\Windows\system32\winrscmd.dll 2010-03-08 21:40:59 ----A---- C:\Windows\system32\xpssvcs.dll 2010-03-08 21:40:49 ----A---- C:\Windows\system32\spwizimg.dll 2010-03-08 21:40:48 ----A---- C:\Windows\bfsvc.exe 2010-03-08 21:40:47 ----A---- C:\Windows\system32\lpremove.exe 2010-03-08 21:40:37 ----A---- C:\Windows\system32\recdisc.exe 2010-03-08 21:40:34 ----A---- C:\Windows\system32\CompMgmtLauncher.exe 2010-03-08 21:40:30 ----A---- C:\Windows\system32\msvbvm60.dll 2010-03-08 21:40:26 ----A---- C:\Windows\system32\MSMPEG2ADEC.DLL 2010-03-08 21:40:25 ----A---- C:\Windows\system32\xolehlp.dll 2010-03-08 21:40:23 ----A---- C:\Windows\system32\SSShim.dll 2010-03-08 21:40:23 ----A---- C:\Windows\system32\nlmgp.dll 2010-03-08 21:40:23 ----A---- C:\Windows\system32\DfsShlEx.dll 2010-03-08 21:40:18 ----A---- C:\Windows\system32\clusapi.dll 2010-03-08 21:40:14 ----A---- C:\Windows\system32\winrsmgr.dll 2010-03-08 21:40:13 ----A---- C:\Windows\system32\vdsbas.dll 2010-03-08 21:40:12 ----A---- C:\Windows\system32\comctl32.dll 2010-03-08 21:40:11 ----A---- C:\Windows\system32\XPSSHHDR.dll 2010-03-08 21:40:11 ----A---- C:\Windows\system32\msdtckrm.dll 2010-03-08 21:40:10 ----A---- C:\Windows\system32\wecutil.exe 2010-03-08 21:40:10 ----A---- C:\Windows\system32\sbe.dll 2010-03-08 21:40:09 ----A---- C:\Windows\system32\sdengin2.dll 2010-03-08 21:40:09 ----A---- C:\Windows\system32\gacinstall.dll 2010-03-08 21:40:09 ----A---- C:\Windows\system32\cmipnpinstall.dll 2010-03-08 21:40:09 ----A---- C:\Windows\system32\cmicryptinstall.dll 2010-03-08 21:40:08 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll 2010-03-08 21:40:07 ----A---- C:\Windows\system32\FirewallAPI.dll 2010-03-08 21:40:06 ----A---- C:\Windows\system32\wecsvc.dll 2010-03-08 21:40:06 ----A---- C:\Windows\system32\sqlceqp30.dll 2010-03-08 21:40:06 ----A---- C:\Windows\system32\lsm.exe 2010-03-08 21:40:05 ----A---- C:\Windows\system32\thumbcache.dll 2010-03-08 21:40:03 ----A---- C:\Windows\system32\authfwcfg.dll 2010-03-08 21:40:02 ----A---- C:\Windows\system32\dmvdsitf.dll 2010-03-08 21:40:00 ----A---- C:\Windows\system32\wevtfwd.dll 2010-03-08 21:40:00 ----A---- C:\Windows\system32\uexfat.dll 2010-03-08 21:39:59 ----A---- C:\Windows\system32\DfrgNtfs.exe 2010-03-08 21:39:58 ----A---- C:\Windows\system32\sqlcese30.dll 2010-03-08 21:39:53 ----A---- C:\Windows\system32\mssha.dll 2010-03-08 21:39:52 ----A---- C:\Windows\system32\WsmAuto.dll 2010-03-08 21:39:52 ----A---- C:\Windows\system32\dfrgui.exe 2010-03-08 21:39:51 ----A---- C:\Windows\system32\nlasvc.dll 2010-03-08 21:39:50 ----A---- C:\Windows\system32\wmdrmdev.dll 2010-03-08 21:39:50 ----A---- C:\Windows\system32\ddraw.dll 2010-03-08 21:39:49 ----A---- C:\Windows\system32\WsmWmiPl.dll 2010-03-08 21:39:48 ----A---- C:\Windows\system32\objsel.dll 2010-03-08 21:39:44 ----A---- C:\Windows\system32\QAGENT.DLL 2010-03-08 21:39:44 ----A---- C:\Windows\system32\dbghelp.dll 2010-03-08 21:39:43 ----A---- C:\Windows\system32\icm32.dll 2010-03-08 21:39:42 ----A---- C:\Windows\system32\wmdrmnet.dll 2010-03-08 21:39:42 ----A---- C:\Windows\system32\iprtrmgr.dll 2010-03-08 21:39:41 ----A---- C:\Windows\system32\taskschd.dll 2010-03-08 21:39:41 ----A---- C:\Windows\system32\bcdedit.exe 2010-03-08 21:39:40 ----A---- C:\Windows\system32\winsta.dll 2010-03-08 21:39:40 ----A---- C:\Windows\system32\netprofm.dll 2010-03-08 21:39:40 ----A---- C:\Windows\system32\AudioEng.dll 2010-03-08 21:39:39 ----A---- C:\Windows\system32\netcfgx.dll 2010-03-08 21:39:39 ----A---- C:\Windows\system32\cdosys.dll 2010-03-08 21:39:38 ----A---- C:\Windows\system32\msdtcuiu.dll 2010-03-08 21:39:38 ----A---- C:\Windows\system32\mprddm.dll 2010-03-08 21:39:38 ----A---- C:\Windows\system32\lpksetup.exe 2010-03-08 21:39:37 ----A---- C:\Windows\system32\eapsvc.dll 2010-03-08 21:39:37 ----A---- C:\Windows\system32\AUDIOKSE.dll 2010-03-08 21:39:36 ----A---- C:\Windows\system32\bcdsrv.dll 2010-03-08 21:39:35 ----A---- C:\Windows\system32\msidcrl30.dll 2010-03-08 21:39:34 ----A---- C:\Windows\system32\WMVDECOD.DLL 2010-03-08 21:39:33 ----A---- C:\Windows\system32\pla.dll 2010-03-08 21:39:32 ----A---- C:\Windows\system32\dot3gpui.dll 2010-03-08 21:39:30 ----A---- C:\Windows\system32\comsnap.dll 2010-03-08 21:39:29 ----A---- C:\Windows\system32\cryptnet.dll 2010-03-08 21:39:26 ----A---- C:\Windows\system32\synceng.dll 2010-03-08 21:39:26 ----A---- C:\Windows\system32\cmifw.dll 2010-03-08 21:39:25 ----A---- C:\Windows\system32\msconfig.exe 2010-03-08 21:39:23 ----A---- C:\Windows\system32\uxtheme.dll 2010-03-08 21:39:23 ----A---- C:\Windows\system32\tdh.dll 2010-03-08 21:39:23 ----A---- C:\Windows\system32\SessEnv.dll 2010-03-08 21:39:23 ----A---- C:\Windows\system32\dot3api.dll 2010-03-08 21:39:23 ----A---- C:\Windows\system32\dmdskmgr.dll 2010-03-08 21:39:23 ----A---- C:\Windows\system32\cmd.exe 2010-03-08 21:39:23 ----A---- C:\Windows\system32\AuthFWSnapin.dll 2010-03-08 21:39:22 ----A---- C:\Windows\system32\wlancfg.dll 2010-03-08 21:39:22 ----A---- C:\Windows\system32\loadperf.dll 2010-03-08 21:39:21 ----A---- C:\Windows\system32\WUDFx.dll 2010-03-08 21:39:21 ----A---- C:\Windows\system32\rdpdd.dll 2010-03-08 21:39:21 ----A---- C:\Windows\system32\msdtcVSp1res.dll 2010-03-08 21:39:21 ----A---- C:\Windows\system32\localsec.dll 2010-03-08 21:39:21 ----A---- C:\Windows\system32\comres.dll 2010-03-08 21:39:20 ----A---- C:\Windows\system32\WinSATAPI.dll 2010-03-08 21:39:20 ----A---- C:\Windows\system32\rstrui.exe 2010-03-08 21:39:20 ----A---- C:\Windows\system32\hnetcfg.dll 2010-03-08 21:39:19 ----A---- C:\Windows\system32\wsqmcons.exe 2010-03-08 21:39:19 ----A---- C:\Windows\system32\WMADMOD.DLL 2010-03-08 21:39:19 ----A---- C:\Windows\system32\NAPMONTR.DLL 2010-03-08 21:39:18 ----A---- C:\Windows\system32\RDPENCDD.dll 2010-03-08 21:39:18 ----A---- C:\Windows\system32\profprov.dll 2010-03-08 21:39:18 ----A---- C:\Windows\system32\filemgmt.dll 2010-03-08 21:39:16 ----A---- C:\Windows\system32\wsecedit.dll 2010-03-08 21:39:16 ----A---- C:\Windows\system32\tracerpt.exe 2010-03-08 21:39:16 ----A---- C:\Windows\system32\MuiUnattend.exe 2010-03-08 21:39:14 ----A---- C:\Windows\system32\dwmredir.dll 2010-03-08 21:39:10 ----A---- C:\Windows\system32\wininit.exe 2010-03-08 21:39:10 ----A---- C:\Windows\system32\occache.dll 2010-03-08 21:39:09 ----A---- C:\Windows\system32\QSHVHOST.DLL 2010-03-08 21:39:09 ----A---- C:\Windows\system32\msfeeds.dll 2010-03-08 21:39:09 ----A---- C:\Windows\system32\jsproxy.dll 2010-03-08 21:39:09 ----A---- C:\Windows\system32\iepeers.dll 2010-03-08 21:39:08 ----A---- C:\Windows\system32\msfeedsbs.dll 2010-03-08 21:39:08 ----A---- C:\Windows\system32\ieui.dll 2010-03-08 21:39:08 ----A---- C:\Windows\system32\azroleui.dll 2010-03-08 21:39:07 ----A---- C:\Windows\system32\wininet.dll 2010-03-08 21:39:07 ----A---- C:\Windows\system32\msfeedssync.exe 2010-03-08 21:39:07 ----A---- C:\Windows\system32\mcbuilder.exe 2010-03-08 21:39:07 ----A---- C:\Windows\system32\iesetup.dll 2010-03-08 21:39:07 ----A---- C:\Windows\system32\iernonce.dll 2010-03-08 21:39:07 ----A---- C:\Windows\system32\ie4uinit.exe 2010-03-08 21:39:07 ----A---- C:\Windows\system32\iashost.exe 2010-03-08 21:39:07 ----A---- C:\Windows\HelpPane.exe 2010-03-08 21:39:06 ----A---- C:\Windows\system32\srrstr.dll 2010-03-08 21:39:06 ----A---- C:\Windows\system32\spwizeng.dll 2010-03-08 21:39:06 ----A---- C:\Windows\system32\ieUnatt.exe 2010-03-08 21:39:06 ----A---- C:\Windows\system32\iesysprep.dll 2010-03-08 21:39:06 ----A---- C:\Windows\system32\iertutil.dll 2010-03-08 21:39:06 ----A---- C:\Windows\system32\iedkcs32.dll 2010-03-08 21:39:05 ----A---- C:\Windows\system32\wecapi.dll 2010-03-08 21:39:05 ----A---- C:\Windows\system32\urlmon.dll 2010-03-08 21:39:05 ----A---- C:\Windows\system32\unbcl.dll 2010-03-08 21:39:05 ----A---- C:\Windows\system32\msra.exe 2010-03-08 21:39:05 ----A---- C:\Windows\system32\lltdsvc.dll 2010-03-08 21:39:04 ----A---- C:\Windows\system32\shrink.dll 2010-03-08 21:39:04 ----A---- C:\Windows\system32\mshtml.dll 2010-03-08 21:39:04 ----A---- C:\Windows\system32\ieframe.dll 2010-03-08 21:38:59 ----A---- C:\Windows\system32\WMPEncEn.dll 2010-03-08 21:38:59 ----A---- C:\Windows\system32\msdri.dll 2010-03-08 21:38:58 ----A---- C:\Windows\system32\framedynos.dll 2010-03-08 21:38:57 ----A---- C:\Windows\system32\vsstrace.dll 2010-03-08 21:38:57 ----A---- C:\Windows\system32\ntvdm.exe 2010-03-08 21:38:57 ----A---- C:\Windows\system32\ntlanman.dll 2010-03-08 21:38:56 ----A---- C:\Windows\system32\netman.dll 2010-03-08 21:38:56 ----A---- C:\Windows\system32\framedyn.dll 2010-03-08 21:38:56 ----A---- C:\Windows\system32\dssenh.dll 2010-03-08 21:38:55 ----A---- C:\Windows\system32\WlanMM.dll 2010-03-08 21:38:55 ----A---- C:\Windows\system32\WLanConn.dll 2010-03-08 21:38:55 ----A---- C:\Windows\system32\sxs.dll 2010-03-08 21:38:55 ----A---- C:\Windows\system32\KMSVC.DLL 2010-03-08 21:38:55 ----A---- C:\Windows\system32\adsnt.dll 2010-03-08 21:38:54 ----A---- C:\Windows\system32\WUDFHost.exe 2010-03-08 21:38:54 ----A---- C:\Windows\system32\WsmProv.dll 2010-03-08 21:38:54 ----A---- C:\Windows\system32\VAN.dll 2010-03-08 21:38:54 ----A---- C:\Windows\system32\umb.dll 2010-03-08 21:38:54 ----A---- C:\Windows\system32\ncsi.dll 2010-03-08 21:38:54 ----A---- C:\Windows\system32\IPBusEnum.dll 2010-03-08 21:38:53 ----A---- C:\Windows\system32\catsrvut.dll 2010-03-08 21:38:52 ----A---- C:\Windows\system32\puiobj.dll 2010-03-08 21:38:52 ----A---- C:\Windows\system32\netid.dll 2010-03-08 21:38:51 ----A---- C:\Windows\system32\MdSched.exe 2010-03-08 21:38:51 ----A---- C:\Windows\system32\dps.dll 2010-03-08 21:38:49 ----A---- C:\Windows\system32\ws2_32.dll 2010-03-08 21:38:49 ----A---- C:\Windows\system32\spbcd.dll 2010-03-08 21:38:49 ----A---- C:\Windows\system32\setbcdlocale.dll 2010-03-08 21:38:48 ----A---- C:\Windows\system32\winrs.exe 2010-03-08 21:38:48 ----A---- C:\Windows\system32\ntdsapi.dll 2010-03-08 21:38:47 ----A---- C:\Windows\system32\odbcjt32.dll 2010-03-08 21:38:47 ----A---- C:\Windows\system32\NAPSTAT.EXE 2010-03-08 21:38:45 ----A---- C:\Windows\system32\schtasks.exe 2010-03-08 21:38:44 ----A---- C:\Windows\system32\netdiagfx.dll 2010-03-08 21:38:44 ----A---- C:\Windows\system32\dmdlgs.dll 2010-03-08 21:38:44 ----A---- C:\Windows\system32\dhcpsapi.dll 2010-03-08 21:38:44 ----A---- C:\Windows\system32\catsrv.dll 2010-03-08 21:38:44 ----A---- C:\Windows\system32\activeds.dll 2010-03-08 21:38:43 ----A---- C:\Windows\system32\wvc.dll 2010-03-08 21:38:43 ----A---- C:\Windows\system32\TSpkg.dll 2010-03-08 21:38:43 ----A---- C:\Windows\system32\FirewallControlPanel.exe Geändert von nicesuprise (14.03.2010 um 19:04 Uhr) |
14.03.2010, 19:06 | #2 |
| Firefox öffnet neue Fenster 2010-03-08 21:38:43 ----A---- C:\Windows\system32\dfrgfat.exe
__________________2010-03-08 21:38:42 ----A---- C:\Windows\system32\winrm.vbs 2010-03-08 21:38:42 ----A---- C:\Windows\system32\qwave.dll 2010-03-08 21:38:41 ----A---- C:\Windows\system32\netcorehc.dll 2010-03-08 21:38:41 ----A---- C:\Windows\system32\NAPHLPR.DLL 2010-03-08 21:38:41 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL 2010-03-08 21:38:41 ----A---- C:\Windows\system32\msacm32.dll 2010-03-08 21:38:40 ----A---- C:\Windows\system32\adsldp.dll 2010-03-08 21:38:39 ----A---- C:\Windows\system32\ntshrui.dll 2010-03-08 21:38:39 ----A---- C:\Windows\system32\msdt.dll 2010-03-08 21:38:39 ----A---- C:\Windows\system32\els.dll 2010-03-08 21:38:38 ----A---- C:\Windows\system32\QUTIL.DLL 2010-03-08 21:38:38 ----A---- C:\Windows\system32\clbcatq.dll 2010-03-08 21:38:37 ----A---- C:\Windows\system32\sdrsvc.dll 2010-03-08 21:38:37 ----A---- C:\Windows\system32\net1.exe 2010-03-08 21:38:37 ----A---- C:\Windows\system32\ipnathlp.dll 2010-03-08 21:38:35 ----A---- C:\Windows\system32\upnphost.dll 2010-03-08 21:38:35 ----A---- C:\Windows\system32\nci.dll 2010-03-08 21:38:35 ----A---- C:\Windows\system32\mprmsg.dll 2010-03-08 21:38:35 ----A---- C:\Windows\system32\Defrag.exe 2010-03-08 21:38:33 ----A---- C:\Windows\system32\rasman.dll 2010-03-08 21:38:33 ----A---- C:\Windows\system32\rascfg.dll 2010-03-08 21:38:33 ----A---- C:\Windows\system32\P2P.dll 2010-03-08 21:38:33 ----A---- C:\Windows\system32\MSAC3ENC.DLL 2010-03-08 21:38:33 ----A---- C:\Windows\system32\fde.dll 2010-03-08 21:38:33 ----A---- C:\Windows\system32\CompatUI.dll 2010-03-08 21:38:33 ----A---- C:\Windows\system32\ActiveContentWizard.dll 2010-03-08 21:38:32 ----A---- C:\Windows\system32\loghours.dll 2010-03-08 21:38:31 ----A---- C:\Windows\system32\Wpc.dll 2010-03-08 21:38:31 ----A---- C:\Windows\system32\MigAutoPlay.exe 2010-03-08 21:38:31 ----A---- C:\Windows\system32\DFDWiz.exe 2010-03-08 21:38:30 ----A---- C:\Windows\system32\setupcl.exe 2010-03-08 21:38:30 ----A---- C:\Windows\system32\rtm.dll 2010-03-08 21:38:30 ----A---- C:\Windows\system32\mprdim.dll 2010-03-08 21:38:24 ----A---- C:\Windows\system32\NAPCRYPT.DLL 2010-03-08 21:38:23 ----A---- C:\Windows\system32\wdi.dll 2010-03-08 21:38:23 ----A---- C:\Windows\system32\ifsutil.dll 2010-03-08 21:38:23 ----A---- C:\Windows\system32\actxprxy.dll 2010-03-08 21:38:22 ----A---- C:\Windows\system32\mswmdm.dll 2010-03-08 21:38:21 ----A---- C:\Windows\system32\usbmon.dll 2010-03-08 21:38:21 ----A---- C:\Windows\system32\BOOTVID.DLL 2010-03-08 21:38:20 ----A---- C:\Windows\system32\vssadmin.exe 2010-03-08 21:38:20 ----A---- C:\Windows\system32\imagehlp.dll 2010-03-08 21:38:19 ----A---- C:\Windows\system32\wlandlg.dll 2010-03-08 21:38:19 ----A---- C:\Windows\system32\uudf.dll 2010-03-08 21:38:19 ----A---- C:\Windows\system32\mycomput.dll 2010-03-08 21:38:18 ----A---- C:\Windows\system32\mspaint.exe 2010-03-08 21:38:17 ----A---- C:\Windows\system32\mstask.dll 2010-03-08 21:38:15 ----A---- C:\Windows\system32\termmgr.dll 2010-03-08 21:38:14 ----A---- C:\Windows\system32\ssdpsrv.dll 2010-03-08 21:38:14 ----A---- C:\Windows\system32\mtxoci.dll 2010-03-08 21:38:14 ----A---- C:\Windows\system32\duser.dll 2010-03-08 21:38:13 ----A---- C:\Windows\system32\Robocopy.exe 2010-03-08 21:38:13 ----A---- C:\Windows\system32\cic.dll 2010-03-08 21:38:13 ----A---- C:\Windows\system32\AzSqlExt.dll 2010-03-08 21:38:11 ----A---- C:\Windows\system32\WUDFPlatform.dll 2010-03-08 21:38:11 ----A---- C:\Windows\system32\verifier.exe 2010-03-08 21:38:11 ----A---- C:\Windows\system32\sdshext.dll 2010-03-08 21:38:11 ----A---- C:\Windows\system32\msdtclog.dll 2010-03-08 21:38:11 ----A---- C:\Windows\system32\msdt.exe 2010-03-08 21:38:11 ----A---- C:\Windows\system32\d3d8.dll 2010-03-08 21:38:10 ----A---- C:\Windows\system32\wintrust.dll 2010-03-08 21:38:10 ----A---- C:\Windows\system32\vdsldr.exe 2010-03-08 21:38:10 ----A---- C:\Windows\system32\oledlg.dll 2010-03-08 21:38:10 ----A---- C:\Windows\system32\clfsw32.dll 2010-03-08 21:38:09 ----A---- C:\Windows\system32\mmcbase.dll 2010-03-08 21:38:09 ----A---- C:\Windows\system32\mlang.dll 2010-03-08 21:38:09 ----A---- C:\Windows\system32\icfupgd.dll 2010-03-08 21:38:08 ----A---- C:\Windows\system32\rasqec.dll 2010-03-08 21:38:08 ----A---- C:\Windows\system32\ncobjapi.dll 2010-03-08 21:38:08 ----A---- C:\Windows\system32\msaatext.dll 2010-03-08 21:38:07 ----A---- C:\Windows\system32\wtsapi32.dll 2010-03-08 21:38:07 ----A---- C:\Windows\system32\unlodctr.exe 2010-03-08 21:38:07 ----A---- C:\Windows\system32\syssetup.dll 2010-03-08 21:38:07 ----A---- C:\Windows\system32\lodctr.exe 2010-03-08 21:38:06 ----A---- C:\Windows\system32\cabinet.dll 2010-03-08 21:38:05 ----A---- C:\Windows\system32\trkwks.dll 2010-03-08 21:38:05 ----A---- C:\Windows\system32\Mcx2Svc.dll 2010-03-08 21:38:04 ----A---- C:\Windows\system32\WSManHTTPConfig.exe 2010-03-08 21:38:04 ----A---- C:\Windows\system32\unattend.dll 2010-03-08 21:38:04 ----A---- C:\Windows\system32\ogldrv.dll 2010-03-08 21:38:04 ----A---- C:\Windows\system32\lnkstub.exe 2010-03-08 21:38:04 ----A---- C:\Windows\system32\cabview.dll 2010-03-08 21:38:03 ----A---- C:\Windows\system32\wermgr.exe 2010-03-08 21:38:03 ----A---- C:\Windows\system32\dfdts.dll 2010-03-08 21:38:01 ----A---- C:\Windows\system32\sdspres.dll 2010-03-08 21:38:01 ----A---- C:\Windows\system32\p2pcollab.dll 2010-03-08 21:38:01 ----A---- C:\Windows\system32\dispdiag.exe 2010-03-08 21:38:01 ----A---- C:\Windows\system32\DHCPQEC.DLL 2010-03-08 21:38:01 ----A---- C:\Windows\system32\basesrv.dll 2010-03-08 21:37:59 ----A---- C:\Windows\system32\verifier.dll 2010-03-08 21:37:59 ----A---- C:\Windows\system32\mmcss.dll 2010-03-08 21:37:59 ----A---- C:\Windows\system32\dsquery.dll 2010-03-08 21:37:58 ----A---- C:\Windows\system32\RstrtMgr.dll 2010-03-08 21:37:58 ----A---- C:\Windows\system32\efsadu.dll 2010-03-08 21:37:57 ----A---- C:\Windows\system32\wercplsupport.dll 2010-03-08 21:37:56 ----A---- C:\Windows\system32\wiascanprofiles.dll 2010-03-08 21:37:56 ----A---- C:\Windows\system32\setupugc.exe 2010-03-08 21:37:56 ----A---- C:\Windows\system32\QSVRMGMT.DLL 2010-03-08 21:37:56 ----A---- C:\Windows\system32\pnrpnsp.dll 2010-03-08 21:37:56 ----A---- C:\Windows\system32\msoeacct.dll 2010-03-08 21:37:56 ----A---- C:\Windows\system32\iscsiexe.dll 2010-03-08 21:37:56 ----A---- C:\Windows\system32\icacls.exe 2010-03-08 21:37:56 ----A---- C:\Windows\system32\consent.exe 2010-03-08 21:37:55 ----A---- C:\Windows\system32\xactsrv.dll 2010-03-08 21:37:55 ----A---- C:\Windows\system32\p2pnetsh.dll 2010-03-08 21:37:55 ----A---- C:\Windows\system32\msrdc.dll 2010-03-08 21:37:55 ----A---- C:\Windows\system32\msdmo.dll 2010-03-08 21:37:54 ----A---- C:\Windows\system32\systeminfo.exe 2010-03-08 21:37:54 ----A---- C:\Windows\system32\PNPXAssocPrx.dll 2010-03-08 21:37:54 ----A---- C:\Windows\system32\pcadm.dll 2010-03-08 21:37:54 ----A---- C:\Windows\system32\netcfg.exe 2010-03-08 21:37:54 ----A---- C:\Windows\system32\eappprxy.dll 2010-03-08 21:37:53 ----A---- C:\Windows\system32\xwizards.dll 2010-03-08 21:37:53 ----A---- C:\Windows\system32\resutils.dll 2010-03-08 21:37:53 ----A---- C:\Windows\system32\DWWIN.EXE 2010-03-08 21:37:53 ----A---- C:\Windows\system32\cmdl32.exe 2010-03-08 21:37:52 ----A---- C:\Windows\system32\netprof.dll 2010-03-08 21:37:52 ----A---- C:\Windows\system32\MFWMAAEC.DLL 2010-03-08 21:37:52 ----A---- C:\Windows\system32\dssec.dll 2010-03-08 21:37:52 ----A---- C:\Windows\system32\dot3ui.dll 2010-03-08 21:37:52 ----A---- C:\Windows\system32\dfrgifc.exe 2010-03-08 21:37:52 ----A---- C:\Windows\system32\dbnetlib.dll 2010-03-08 21:37:52 ----A---- C:\Windows\system32\alg.exe 2010-03-08 21:37:52 ----A---- C:\Windows\regedit.exe 2010-03-08 21:37:51 ----A---- C:\Windows\system32\txflog.dll 2010-03-08 21:37:51 ----A---- C:\Windows\system32\btpanui.dll 2010-03-08 21:37:51 ----A---- C:\Windows\system32\apircl.dll 2010-03-08 21:37:50 ----A---- C:\Windows\system32\tbssvc.dll 2010-03-08 21:37:50 ----A---- C:\Windows\system32\taskkill.exe 2010-03-08 21:37:50 ----A---- C:\Windows\system32\msieftp.dll 2010-03-08 21:37:50 ----A---- C:\Windows\system32\dxva2.dll 2010-03-08 21:37:50 ----A---- C:\Windows\system32\dwmapi.dll 2010-03-08 21:37:50 ----A---- C:\Windows\system32\bcdprov.dll 2010-03-08 21:37:49 ----A---- C:\Windows\system32\RASMM.dll 2010-03-08 21:37:49 ----A---- C:\Windows\system32\ActionQueue.dll 2010-03-08 21:37:48 ----A---- C:\Windows\system32\svchost.exe 2010-03-08 21:37:48 ----A---- C:\Windows\system32\provthrd.dll 2010-03-08 21:37:48 ----A---- C:\Windows\system32\EAPQEC.DLL 2010-03-08 21:37:48 ----A---- C:\Windows\system32\dmocx.dll 2010-03-08 21:37:47 ----A---- C:\Windows\system32\syncui.dll 2010-03-08 21:37:47 ----A---- C:\Windows\system32\aclui.dll 2010-03-08 21:37:46 ----A---- C:\Windows\system32\WMASF.DLL 2010-03-08 21:37:46 ----A---- C:\Windows\system32\raserver.exe 2010-03-08 21:37:46 ----A---- C:\Windows\system32\dnscacheugc.exe 2010-03-08 21:37:46 ----A---- C:\Windows\system32\brcplsdw.dll 2010-03-08 21:37:46 ----A---- C:\Windows\system32\audiodev.dll 2010-03-08 21:37:45 ----A---- C:\Windows\system32\xcopy.exe 2010-03-08 21:37:45 ----A---- C:\Windows\system32\upnp.dll 2010-03-08 21:37:45 ----A---- C:\Windows\system32\UIHub.dll 2010-03-08 21:37:45 ----A---- C:\Windows\system32\taskmgr.exe 2010-03-08 21:37:45 ----A---- C:\Windows\system32\QCLIPROV.DLL 2010-03-08 21:37:45 ----A---- C:\Windows\system32\icsfiltr.dll 2010-03-08 21:37:45 ----A---- C:\Windows\system32\ias.dll 2010-03-08 21:37:45 ----A---- C:\Windows\system32\appinfo.dll 2010-03-08 21:37:44 ----A---- C:\Windows\system32\wlanext.exe 2010-03-08 21:37:44 ----A---- C:\Windows\system32\perfts.dll 2010-03-08 21:37:44 ----A---- C:\Windows\system32\NapiNSP.dll 2010-03-08 21:37:44 ----A---- C:\Windows\system32\msoert2.dll 2010-03-08 21:37:44 ----A---- C:\Windows\system32\mountvol.exe 2010-03-08 21:37:44 ----A---- C:\Windows\system32\mmcshext.dll 2010-03-08 21:37:44 ----A---- C:\Windows\system32\cmstp.exe 2010-03-08 21:37:44 ----A---- C:\Windows\system32\browser.dll 2010-03-08 21:37:44 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll 2010-03-08 21:37:43 ----A---- C:\Windows\system32\inetmib1.dll 2010-03-08 21:37:43 ----A---- C:\Windows\system32\dskquoui.dll 2010-03-08 21:37:42 ----A---- C:\Windows\system32\WUDFCoinstaller.dll 2010-03-08 21:37:42 ----A---- C:\Windows\system32\SoundRecorder.exe 2010-03-08 21:37:42 ----A---- C:\Windows\system32\qcap.dll 2010-03-08 21:37:42 ----A---- C:\Windows\system32\qasf.dll 2010-03-08 21:37:42 ----A---- C:\Windows\system32\PING.EXE 2010-03-08 21:37:42 ----A---- C:\Windows\system32\cewmdm.dll 2010-03-08 21:37:42 ----A---- C:\Windows\system32\bitsadmin.exe 2010-03-08 21:37:41 ----A---- C:\Windows\system32\WUDFSvc.dll 2010-03-08 21:37:41 ----A---- C:\Windows\system32\wmpsrcwp.dll 2010-03-08 21:37:41 ----A---- C:\Windows\system32\SysFxUI.dll 2010-03-08 21:37:41 ----A---- C:\Windows\system32\SecEdit.exe 2010-03-08 21:37:41 ----A---- C:\Windows\system32\dsuiext.dll 2010-03-08 21:37:41 ----A---- C:\Windows\system32\auditpol.exe 2010-03-08 21:37:40 ----A---- C:\Windows\system32\WMVSENCD.DLL 2010-03-08 21:37:40 ----A---- C:\Windows\system32\Sens.dll 2010-03-08 21:37:40 ----A---- C:\Windows\system32\mtstocom.exe 2010-03-08 21:37:40 ----A---- C:\Windows\system32\makecab.exe 2010-03-08 21:37:40 ----A---- C:\Windows\system32\lsmproxy.dll 2010-03-08 21:37:39 ----A---- C:\Windows\system32\xwtpw32.dll 2010-03-08 21:37:39 ----A---- C:\Windows\system32\shimgvw.dll 2010-03-08 21:37:39 ----A---- C:\Windows\system32\sbeio.dll 2010-03-08 21:37:39 ----A---- C:\Windows\system32\dot3gpclnt.dll 2010-03-08 21:37:39 ----A---- C:\Windows\system32\batt.dll 2010-03-08 21:37:38 ----A---- C:\Windows\system32\wzcdlg.dll 2010-03-08 21:37:38 ----A---- C:\Windows\system32\wiashext.dll 2010-03-08 21:37:38 ----A---- C:\Windows\system32\sppnp.dll 2010-03-08 21:37:38 ----A---- C:\Windows\system32\seclogon.dll 2010-03-08 21:37:38 ----A---- C:\Windows\system32\ndfapi.dll 2010-03-08 21:37:38 ----A---- C:\Windows\system32\msdadiag.dll 2010-03-08 21:37:38 ----A---- C:\Windows\system32\apss.dll 2010-03-08 21:37:37 ----A---- C:\Windows\system32\wscmisetup.dll 2010-03-08 21:37:37 ----A---- C:\Windows\system32\wpdwcn.dll 2010-03-08 21:37:37 ----A---- C:\Windows\system32\WMSPDMOE.DLL 2010-03-08 21:37:37 ----A---- C:\Windows\system32\wiadefui.dll 2010-03-08 21:37:37 ----A---- C:\Windows\system32\userinit.exe 2010-03-08 21:37:37 ----A---- C:\Windows\system32\shacct.dll 2010-03-08 21:37:37 ----A---- C:\Windows\system32\perfmon.exe 2010-03-08 21:37:37 ----A---- C:\Windows\system32\p2phost.exe 2010-03-08 21:37:37 ----A---- C:\Windows\system32\napipsec.dll 2010-03-08 21:37:37 ----A---- C:\Windows\system32\msorcl32.dll 2010-03-08 21:37:36 ----A---- C:\Windows\system32\winrshost.exe 2010-03-08 21:37:36 ----A---- C:\Windows\system32\tasklist.exe 2010-03-08 21:37:36 ----A---- C:\Windows\system32\TapiMigPlugin.dll 2010-03-08 21:37:36 ----A---- C:\Windows\system32\sxstrace.exe 2010-03-08 21:37:36 ----A---- C:\Windows\system32\prntvpt.dll 2010-03-08 21:37:36 ----A---- C:\Windows\system32\ktmutil.exe 2010-03-08 21:37:36 ----A---- C:\Windows\system32\keymgr.dll 2010-03-08 21:37:36 ----A---- C:\Windows\system32\HelpPaneProxy.dll 2010-03-08 21:37:36 ----A---- C:\Windows\system32\csrsrv.dll 2010-03-08 21:37:35 ----A---- C:\Windows\system32\notepad.exe 2010-03-08 21:37:35 ----A---- C:\Windows\system32\netiougc.exe 2010-03-08 21:37:35 ----A---- C:\Windows\system32\MP4SDECD.DLL 2010-03-08 21:37:35 ----A---- C:\Windows\system32\fmifs.dll 2010-03-08 21:37:35 ----A---- C:\Windows\system32\d3dim700.dll 2010-03-08 21:37:35 ----A---- C:\Windows\system32\cryptdll.dll 2010-03-08 21:37:35 ----A---- C:\Windows\system32\colorui.dll 2010-03-08 21:37:35 ----A---- C:\Windows\notepad.exe 2010-03-08 21:37:34 ----A---- C:\Windows\system32\wscproxystub.dll 2010-03-08 21:37:34 ----A---- C:\Windows\system32\winethc.dll 2010-03-08 21:37:34 ----A---- C:\Windows\system32\txfw32.dll 2010-03-08 21:37:34 ----A---- C:\Windows\system32\takeown.exe 2010-03-08 21:37:34 ----A---- C:\Windows\system32\pcasvc.dll 2010-03-08 21:37:34 ----A---- C:\Windows\system32\nshipsec.dll 2010-03-08 21:37:34 ----A---- C:\Windows\system32\driverquery.exe 2010-03-08 21:37:33 ----A---- C:\Windows\system32\wmiprop.dll 2010-03-08 21:37:33 ----A---- C:\Windows\system32\pots.dll 2010-03-08 21:37:33 ----A---- C:\Windows\system32\findnetprinters.dll 2010-03-08 21:37:33 ----A---- C:\Windows\system32\capisp.dll 2010-03-08 21:37:32 ----A---- C:\Windows\system32\shrpubw.exe 2010-03-08 21:37:32 ----A---- C:\Windows\system32\sfc_os.dll 2010-03-08 21:37:32 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL 2010-03-08 21:37:32 ----A---- C:\Windows\system32\perfnet.dll 2010-03-08 21:37:32 ----A---- C:\Windows\system32\olecli32.dll 2010-03-08 21:37:32 ----A---- C:\Windows\system32\nsisvc.dll 2010-03-08 21:37:32 ----A---- C:\Windows\system32\luainstall.dll 2010-03-08 21:37:32 ----A---- C:\Windows\system32\fsutil.exe 2010-03-08 21:37:32 ----A---- C:\Windows\system32\dnshc.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\WLanHC.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\wiaacmgr.exe 2010-03-08 21:37:31 ----A---- C:\Windows\system32\TMM.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\shgina.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\runonce.exe 2010-03-08 21:37:31 ----A---- C:\Windows\system32\rshx32.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\RpcPing.exe 2010-03-08 21:37:31 ----A---- C:\Windows\system32\ktmw32.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\fdPHost.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\d3dim.dll 2010-03-08 21:37:31 ----A---- C:\Windows\system32\compstui.dll 2010-03-08 21:37:30 ----A---- C:\Windows\system32\WMADMOE.DLL 2010-03-08 21:37:30 ----A---- C:\Windows\system32\UI0Detect.exe 2010-03-08 21:37:30 ----A---- C:\Windows\system32\net.exe 2010-03-08 21:37:30 ----A---- C:\Windows\system32\mdminst.dll 2010-03-08 21:37:30 ----A---- C:\Windows\system32\getmac.exe 2010-03-08 21:37:30 ----A---- C:\Windows\system32\dsauth.dll 2010-03-08 21:37:30 ----A---- C:\Windows\system32\dimsjob.dll 2010-03-08 21:37:30 ----A---- C:\Windows\system32\cmlua.dll 2010-03-08 21:37:29 ----A---- C:\Windows\system32\wmpshell.dll 2010-03-08 21:37:29 ----A---- C:\Windows\system32\w32tm.exe 2010-03-08 21:37:29 ----A---- C:\Windows\system32\MPG4DECD.DLL 2010-03-08 21:37:29 ----A---- C:\Windows\system32\MP43DECD.DLL 2010-03-08 21:37:28 ----A---- C:\Windows\system32\srdelayed.exe 2010-03-08 21:37:28 ----A---- C:\Windows\system32\sdchange.exe 2010-03-08 21:37:28 ----A---- C:\Windows\system32\PortableDeviceWiaCompat.dll 2010-03-08 21:37:28 ----A---- C:\Windows\system32\pnpts.dll 2010-03-08 21:37:28 ----A---- C:\Windows\system32\migisol.dll 2010-03-08 21:37:28 ----A---- C:\Windows\system32\dispci.dll 2010-03-08 21:37:28 ----A---- C:\Windows\system32\diantz.exe 2010-03-08 21:37:28 ----A---- C:\Windows\system32\cmutil.dll 2010-03-08 21:37:28 ----A---- C:\Windows\system32\ACW.exe 2010-03-08 21:37:27 ----A---- C:\Windows\system32\sfc.exe 2010-03-08 21:37:27 ----A---- C:\Windows\system32\dinput8.dll 2010-03-08 21:37:27 ----A---- C:\Windows\system32\comrepl.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\wmidx.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\vdmredir.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\remotepg.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\pdhui.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\nlaapi.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\fwcfg.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\expand.exe 2010-03-08 21:37:26 ----A---- C:\Windows\system32\EncDump.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\colbact.dll 2010-03-08 21:37:26 ----A---- C:\Windows\system32\cfgbkend.dll 2010-03-08 21:37:25 ----A---- C:\Windows\system32\wmvdspa.dll 2010-03-08 21:37:25 ----A---- C:\Windows\system32\utildll.dll 2010-03-08 21:37:25 ----A---- C:\Windows\system32\TpmInit.exe 2010-03-08 21:37:25 ----A---- C:\Windows\system32\McxDriv.dll 2010-03-08 21:37:25 ----A---- C:\Windows\system32\hlink.dll 2010-03-08 21:37:25 ----A---- C:\Windows\system32\bridgeunattend.exe 2010-03-08 21:37:25 ----A---- C:\Windows\system32\amstream.dll 2010-03-08 21:37:24 ----A---- C:\Windows\system32\sti_ci.dll 2010-03-08 21:37:24 ----A---- C:\Windows\system32\rdrleakdiag.exe 2010-03-08 21:37:24 ----A---- C:\Windows\system32\esentutl.exe 2010-03-08 21:37:24 ----A---- C:\Windows\system32\bootcfg.exe 2010-03-08 21:37:23 ----A---- C:\Windows\system32\waitfor.exe 2010-03-08 21:37:23 ----A---- C:\Windows\system32\vds_ps.dll 2010-03-08 21:37:23 ----A---- C:\Windows\system32\tabcal.exe 2010-03-08 21:37:23 ----A---- C:\Windows\system32\qdv.dll 2010-03-08 21:37:23 ----A---- C:\Windows\system32\osblprov.dll 2010-03-08 21:37:23 ----A---- C:\Windows\system32\iscsium.dll 2010-03-08 21:37:23 ----A---- C:\Windows\system32\dpnet.dll 2010-03-08 21:37:23 ----A---- C:\Windows\system32\cmcfg32.dll 2010-03-08 21:37:22 ----A---- C:\Windows\system32\WsmCl.dll 2010-03-08 21:37:22 ----A---- C:\Windows\system32\wfapigp.dll 2010-03-08 21:37:22 ----A---- C:\Windows\system32\shutdown.exe 2010-03-08 21:37:22 ----A---- C:\Windows\system32\msdtc.exe 2010-03-08 21:37:22 ----A---- C:\Windows\system32\DpiScaling.exe 2010-03-08 21:37:22 ----A---- C:\Windows\system32\cacls.exe 2010-03-08 21:37:21 ----A---- C:\Windows\system32\wpnpinst.exe 2010-03-08 21:37:21 ----A---- C:\Windows\system32\wmpcm.dll 2010-03-08 21:37:21 ----A---- C:\Windows\system32\werdiagcontroller.dll 2010-03-08 21:37:21 ----A---- C:\Windows\system32\rasauto.dll 2010-03-08 21:37:21 ----A---- C:\Windows\system32\olethk32.dll 2010-03-08 21:37:21 ----A---- C:\Windows\system32\olesvr32.dll 2010-03-08 21:37:21 ----A---- C:\Windows\system32\mfvdsp.dll 2010-03-08 21:37:21 ----A---- C:\Windows\system32\iscsiwmi.dll 2010-03-08 21:37:21 ----A---- C:\Windows\system32\COLORCNV.DLL 2010-03-08 21:37:20 ----A---- C:\Windows\system32\wavemsp.dll 2010-03-08 21:37:20 ----A---- C:\Windows\system32\ufat.dll 2010-03-08 21:37:18 ----A---- C:\Windows\system32\sxproxy.dll 2010-03-08 21:37:18 ----A---- C:\Windows\system32\at.exe 2010-03-08 21:37:17 ----A---- C:\Windows\system32\odbctrac.dll 2010-03-08 21:37:16 ----A---- C:\Windows\system32\rgb9rast.dll 2010-03-08 21:37:15 ----A---- C:\Windows\system32\convert.exe 2010-03-08 21:37:14 ----A---- C:\Windows\system32\xmlprovi.dll 2010-03-08 21:37:14 ----A---- C:\Windows\system32\ucsvc.exe 2010-03-08 21:37:14 ----A---- C:\Windows\system32\RegCtrl.dll 2010-03-08 21:37:14 ----A---- C:\Windows\system32\itss.dll 2010-03-08 21:37:13 ----A---- C:\Windows\system32\TimeDateMUICallback.dll 2010-03-08 21:37:13 ----A---- C:\Windows\system32\prevhost.exe 2010-03-08 21:37:13 ----A---- C:\Windows\system32\mobsync.exe 2010-03-08 21:37:12 ----A---- C:\Windows\system32\netbtugc.exe 2010-03-08 21:37:12 ----A---- C:\Windows\system32\iscsied.dll 2010-03-08 21:37:12 ----A---- C:\Windows\system32\dskquota.dll 2010-03-08 21:37:12 ----A---- C:\Windows\system32\AuthFWGP.dll 2010-03-08 21:37:11 ----A---- C:\Windows\system32\unattendedjoin.exe 2010-03-08 21:37:11 ----A---- C:\Windows\system32\tbs.dll 2010-03-08 21:37:11 ----A---- C:\Windows\system32\srclient.dll 2010-03-08 21:37:11 ----A---- C:\Windows\system32\GuidedHelp.dll 2010-03-08 21:37:11 ----A---- C:\Windows\system32\AtBroker.exe 2010-03-08 21:37:10 ----A---- C:\Windows\system32\winnsi.dll 2010-03-08 21:37:10 ----A---- C:\Windows\system32\setupcln.dll 2010-03-08 21:37:10 ----A---- C:\Windows\system32\mydocs.dll 2010-03-08 21:37:10 ----A---- C:\Windows\system32\l2gpstore.dll 2010-03-08 21:37:10 ----A---- C:\Windows\system32\fphc.dll 2010-03-08 21:37:10 ----A---- C:\Windows\system32\dmime.dll 2010-03-08 21:37:10 ----A---- C:\Windows\system32\cmpbk32.dll 2010-03-08 21:37:09 ----A---- C:\Windows\system32\regini.exe 2010-03-08 21:37:09 ----A---- C:\Windows\system32\napdsnap.dll 2010-03-08 21:37:09 ----A---- C:\Windows\system32\dsdmo.dll 2010-03-08 21:37:09 ----A---- C:\Windows\system32\devenum.dll 2010-03-08 21:37:09 ----A---- C:\Windows\system32\apilogen.dll 2010-03-08 21:37:09 ----A---- C:\Windows\system32\amxread.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\wpclsp.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\VIDRESZR.DLL 2010-03-08 21:37:08 ----A---- C:\Windows\system32\usbui.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\RacAgent.exe 2010-03-08 21:37:08 ----A---- C:\Windows\system32\odbccu32.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\odbccr32.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\msident.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\msdart.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\dot3dlg.dll 2010-03-08 21:37:08 ----A---- C:\Windows\system32\cmstplua.dll 2010-03-08 21:37:07 ----A---- C:\Windows\system32\WINSRPC.DLL 2010-03-08 21:37:07 ----A---- C:\Windows\system32\vss_ps.dll 2010-03-08 21:37:07 ----A---- C:\Windows\system32\upnpcont.exe 2010-03-08 21:37:07 ----A---- C:\Windows\system32\srwmi.dll 2010-03-08 21:37:07 ----A---- C:\Windows\system32\nsi.dll 2010-03-08 21:37:07 ----A---- C:\Windows\system32\nbtstat.exe 2010-03-08 21:37:07 ----A---- C:\Windows\system32\mtxlegih.dll 2010-03-08 21:37:07 ----A---- C:\Windows\system32\mtxdm.dll 2010-03-08 21:37:07 ----A---- C:\Windows\system32\mfcsubs.dll 2010-03-08 21:37:07 ----A---- C:\Windows\system32\graftabl.com 2010-03-08 21:37:07 ----A---- C:\Windows\system32\avrt.dll 2010-03-08 21:37:06 ----A---- C:\Windows\system32\vfwwdm32.dll 2010-03-08 21:37:06 ----A---- C:\Windows\system32\syskey.exe 2010-03-08 21:37:06 ----A---- C:\Windows\system32\rasphone.exe 2010-03-08 21:37:05 ----A---- C:\Windows\system32\wsock32.dll 2010-03-08 21:37:05 ----A---- C:\Windows\system32\wiarpc.dll 2010-03-08 21:37:05 ----A---- C:\Windows\system32\WavDest.dll 2010-03-08 21:37:05 ----A---- C:\Windows\system32\odbcbcp.dll 2010-03-08 21:37:05 ----A---- C:\Windows\system32\ndfetw.dll 2010-03-08 21:37:04 ----A---- C:\Windows\system32\procinst.dll 2010-03-08 21:37:04 ----A---- C:\Windows\system32\MP3DMOD.DLL 2010-03-08 21:37:04 ----A---- C:\Windows\system32\extrac32.exe 2010-03-08 21:37:04 ----A---- C:\Windows\system32\eventcls.dll 2010-03-08 21:37:03 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe 2010-03-08 21:37:03 ----A---- C:\Windows\system32\wiadss.dll 2010-03-08 21:37:03 ----A---- C:\Windows\system32\TabbtnEx.dll 2010-03-08 21:37:03 ----A---- C:\Windows\system32\psbase.dll 2010-03-08 21:37:03 ----A---- C:\Windows\system32\dmscript.dll 2010-03-08 21:37:03 ----A---- C:\Windows\system32\d3dxof.dll 2010-03-08 21:37:03 ----A---- C:\Windows\system32\csrss.exe 2010-03-08 21:37:02 ----A---- C:\Windows\system32\WlanMmHC.dll 2010-03-08 21:37:02 ----A---- C:\Windows\system32\Tabbtn.dll 2010-03-08 21:37:02 ----A---- C:\Windows\system32\CertEnrollCtrl.exe 2010-03-08 21:37:01 ----A---- C:\Windows\system32\dmloader.dll 2010-03-08 21:37:01 ----A---- C:\Windows\fveupdate.exe 2010-03-08 21:37:00 ----A---- C:\Windows\system32\wshcon.dll 2010-03-08 21:37:00 ----A---- C:\Windows\system32\Netplwiz.exe 2010-03-08 21:37:00 ----A---- C:\Windows\system32\credssp.dll 2010-03-08 21:36:59 ----A---- C:\Windows\system32\icsunattend.exe 2010-03-08 21:36:58 ----A---- C:\Windows\system32\WsmRes.dll 2010-03-08 21:36:58 ----A---- C:\Windows\system32\PlaySndSrv.dll 2010-03-08 21:36:57 ----A---- C:\Windows\system32\WSHTCPIP.DLL 2010-03-08 21:36:57 ----A---- C:\Windows\system32\wship6.dll 2010-03-08 21:36:57 ----A---- C:\Windows\system32\sxsstore.dll 2010-03-08 21:36:57 ----A---- C:\Windows\system32\localui.dll 2010-03-08 21:36:57 ----A---- C:\Windows\system32\lltdapi.dll 2010-03-08 21:36:57 ----A---- C:\Windows\system32\HotStartUserAgent.dll 2010-03-08 21:36:57 ----A---- C:\Windows\system32\ComputerDefaults.exe 2010-03-08 21:36:56 ----A---- C:\Windows\system32\tcpmon.ini 2010-03-08 21:36:56 ----A---- C:\Windows\system32\setupSNK.exe 2010-03-08 21:36:56 ----A---- C:\Windows\system32\OptionalFeatures.exe 2010-03-08 21:36:56 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll 2010-03-08 21:36:56 ----A---- C:\Windows\system32\icaapi.dll 2010-03-08 21:36:54 ----A---- C:\Windows\system32\sbunattend.exe 2010-03-08 21:36:54 ----A---- C:\Windows\system32\dmutil.dll 2010-03-08 21:36:53 ----A---- C:\Windows\system32\usbperf.dll 2010-03-08 21:36:53 ----A---- C:\Windows\system32\spopk.dll 2010-03-08 21:36:53 ----A---- C:\Windows\system32\serialui.dll 2010-03-08 21:36:51 ----A---- C:\Windows\system32\cofiredm.dll 2010-03-08 21:36:50 ----A---- C:\Windows\system32\rasctrs.dll 2010-03-08 21:36:49 ----A---- C:\Windows\system32\msobjs.dll 2010-03-08 21:36:49 ----A---- C:\Windows\system32\hnetmon.dll 2010-03-08 21:36:47 ----A---- C:\Windows\system32\nlsbres.dll 2010-03-08 21:36:47 ----A---- C:\Windows\system32\LogonUI.exe 2010-03-08 21:36:47 ----A---- C:\Windows\system32\iprtprio.dll 2010-03-08 21:36:47 ----A---- C:\Windows\system32\InfDefaultInstall.exe 2010-03-08 21:36:47 ----A---- C:\Windows\system32\esentprf.dll 2010-03-08 21:36:44 ----A---- C:\Windows\system32\cfgmgr32.dll 2010-03-08 21:36:43 ----A---- C:\Windows\system32\osbaseln.dll 2010-03-08 21:36:40 ----A---- C:\Windows\system32\msmmsp.dll 2010-03-08 21:36:38 ----A---- C:\Windows\system32\winusb.dll 2010-03-08 21:36:38 ----A---- C:\Windows\system32\rdpcfgex.dll 2010-03-08 21:36:38 ----A---- C:\Windows\system32\mshtmler.dll 2010-03-08 21:36:38 ----A---- C:\Windows\system32\mshtmled.dll 2010-03-08 21:36:38 ----A---- C:\Windows\system32\icardie.dll 2010-03-08 21:36:38 ----A---- C:\Windows\system32\dispex.dll 2010-03-08 21:36:38 ----A---- C:\Windows\system32\admparse.dll 2010-03-08 21:36:37 ----A---- C:\Windows\system32\msls31.dll 2010-03-08 21:36:37 ----A---- C:\Windows\system32\imgutil.dll 2010-03-08 21:36:37 ----A---- C:\Windows\system32\ieakeng.dll 2010-03-08 21:36:37 ----A---- C:\Windows\system32\dxtrans.dll 2010-03-08 21:36:37 ----A---- C:\Windows\system32\dxtmsft.dll 2010-03-08 21:36:37 ----A---- C:\Windows\system32\corpol.dll 2010-03-08 21:36:36 ----A---- C:\Windows\system32\webcheck.dll 2010-03-08 21:36:36 ----A---- C:\Windows\system32\msrating.dll 2010-03-08 21:36:36 ----A---- C:\Windows\system32\licmgr10.dll 2010-03-08 21:36:36 ----A---- C:\Windows\system32\inseng.dll 2010-03-08 21:36:36 ----A---- C:\Windows\system32\ieaksie.dll 2010-03-08 21:36:35 ----A---- C:\Windows\system32\WinFXDocObj.exe 2010-03-08 21:36:35 ----A---- C:\Windows\system32\wextract.exe 2010-03-08 21:36:35 ----A---- C:\Windows\system32\pngfilt.dll 2010-03-08 21:36:35 ----A---- C:\Windows\system32\Nlsdl.dll 2010-03-08 21:36:35 ----A---- C:\Windows\system32\mstime.dll 2010-03-08 21:36:35 ----A---- C:\Windows\system32\ieakui.dll 2010-03-08 21:36:35 ----A---- C:\Windows\system32\advpack.dll 2010-03-08 21:36:34 ----A---- C:\Windows\system32\riched32.dll 2010-03-08 21:36:34 ----A---- C:\Windows\system32\msidle.dll 2010-03-08 21:36:34 ----A---- C:\Windows\system32\ieapfltr.dll 2010-03-08 21:36:33 ----A---- C:\Windows\system32\vbscript.dll 2010-03-08 21:36:33 ----A---- C:\Windows\system32\url.dll 2010-03-08 21:36:33 ----A---- C:\Windows\system32\idndl.dll 2010-03-08 21:36:32 ----A---- C:\Windows\system32\mshta.exe 2010-03-08 21:36:32 ----A---- C:\Windows\system32\iexpress.exe 2010-03-08 21:36:31 ----A---- C:\Windows\system32\SetIEInstalledDate.exe 2010-03-08 21:36:31 ----A---- C:\Windows\system32\SetDepNx.exe 2010-03-08 21:36:31 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe 2010-03-08 21:36:31 ----A---- C:\Windows\system32\PDMSetup.exe 2010-03-08 21:36:31 ----A---- C:\Windows\system32\KBDKOR.DLL 2010-03-08 21:36:30 ----A---- C:\Windows\system32\KBDJPN.DLL 2010-03-08 21:36:27 ----A---- C:\Windows\system32\vga256.dll 2010-03-08 21:36:27 ----A---- C:\Windows\system32\tsddd.dll 2010-03-08 21:36:26 ----A---- C:\Windows\system32\framebuf.dll 2010-03-08 21:36:25 ----A---- C:\Windows\system32\vga64k.dll 2010-03-08 21:36:25 ----A---- C:\Windows\system32\vga.dll 2010-03-08 21:36:24 ----A---- C:\Windows\system32\bootstr.dll 2010-03-08 21:36:23 ----A---- C:\Windows\system32\dmdskres2.dll 2010-03-08 21:36:22 ----A---- C:\Windows\system32\spwizres.dll 2010-03-08 21:36:19 ----A---- C:\Windows\system32\gatherWiredInfo.vbs 2010-03-08 21:36:19 ----A---- C:\Windows\system32\fsmgmt.msc 2010-03-08 21:36:13 ----A---- C:\Windows\system32\perfmon.msc 2010-03-08 21:35:25 ----A---- C:\Windows\system32\xmllite.dll 2010-03-08 21:35:24 ----A---- C:\Windows\system32\wbemcomn.dll 2010-03-08 21:35:20 ----A---- C:\Windows\system32\sqmapi.dll 2010-03-08 21:35:20 ----A---- C:\Windows\system32\SmiInstaller.dll 2010-03-08 21:34:58 ----A---- C:\Windows\system32\mspatcha.dll 2010-03-08 21:34:58 ----A---- C:\Windows\system32\msdelta.dll 2010-03-08 21:34:58 ----A---- C:\Windows\system32\dpx.dll 2010-03-08 21:04:10 ----D---- C:\ProgramData\BVRP Software 2010-03-08 21:04:10 ----D---- C:\Program Files\Avanquest update 2010-03-08 21:00:08 ----D---- C:\ProgramData\Sony Ericsson 2010-03-08 20:59:48 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\InstallShield 2010-03-08 18:47:34 ----HD---- C:\$AVG 2010-03-08 18:47:19 ----D---- C:\ProgramData\AVG Security Toolbar 2010-03-08 18:47:16 ----D---- C:\ProgramData\avg9 2010-03-08 18:31:45 ----A---- C:\Windows\system32\winhttp.dll 2010-03-07 16:37:25 ----N---- C:\Windows\system32\MpSigStub.exe 2010-03-07 16:22:57 ----A---- C:\Windows\system32\browserchoice.exe 2010-03-07 16:22:31 ----D---- C:\ProgramData\TuneUpMedia 2010-03-07 16:22:21 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Apple Computer 2010-03-07 16:21:47 ----A---- C:\Windows\system32\kerberos.dll 2010-03-07 16:21:44 ----A---- C:\Windows\system32\schannel.dll 2010-03-06 15:18:04 ----A---- C:\Windows\system32\ntoskrnl.exe 2010-03-06 15:18:04 ----A---- C:\Windows\system32\ntkrnlpa.exe 2010-03-06 14:50:50 ----A---- C:\Windows\system32\GEARAspi.dll 2010-03-06 14:50:49 ----DC---- C:\Windows\system32\DRVSTORE 2010-03-06 14:50:42 ----D---- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD} 2010-03-06 14:49:21 ----D---- C:\ProgramData\Apple Computer 2010-03-06 14:44:52 ----D---- C:\ProgramData\Apple 2010-03-06 14:44:52 ----D---- C:\Program Files\Common Files\Apple 2010-03-06 14:26:45 ----A---- C:\Windows\system32\t2embed.dll 2010-03-06 14:26:45 ----A---- C:\Windows\system32\lpk.dll 2010-03-06 14:26:45 ----A---- C:\Windows\system32\dciman32.dll 2010-03-06 14:26:45 ----A---- C:\Windows\system32\atmlib.dll 2010-03-06 14:26:45 ----A---- C:\Windows\system32\atmfd.dll 2010-03-06 14:26:44 ----A---- C:\Windows\system32\fontsub.dll 2010-03-06 14:22:41 ----A---- C:\Windows\system32\winipsec.dll 2010-03-06 14:22:41 ----A---- C:\Windows\system32\polstore.dll 2010-03-06 14:19:16 ----A---- C:\Windows\system32\TCPSVCS.EXE 2010-03-06 14:19:16 ----A---- C:\Windows\system32\netiohlp.dll 2010-03-06 14:19:16 ----A---- C:\Windows\system32\netevent.dll 2010-03-06 14:19:16 ----A---- C:\Windows\system32\MRINFO.EXE 2010-03-06 14:19:16 ----A---- C:\Windows\system32\HOSTNAME.EXE 2010-03-06 14:19:15 ----A---- C:\Windows\system32\ROUTE.EXE 2010-03-06 14:19:15 ----A---- C:\Windows\system32\NETSTAT.EXE 2010-03-06 14:19:15 ----A---- C:\Windows\system32\finger.exe 2010-03-06 14:19:15 ----A---- C:\Windows\system32\ARP.EXE 2010-03-06 14:17:52 ----A---- C:\Windows\system32\L2SecHC.dll 2010-03-06 14:17:51 ----A---- C:\Windows\system32\wlansvc.dll 2010-03-06 14:17:51 ----A---- C:\Windows\system32\wlanmsm.dll 2010-03-06 14:17:51 ----A---- C:\Windows\system32\wlanhlp.dll 2010-03-06 14:17:51 ----A---- C:\Windows\system32\wlanapi.dll 2010-03-06 14:17:50 ----A---- C:\Windows\system32\wlansec.dll 2010-03-06 14:17:47 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs 2010-03-06 14:16:43 ----A---- C:\Windows\system32\msxml3.dll 2010-03-06 14:16:42 ----A---- C:\Windows\system32\msxml6.dll 2010-03-06 14:16:42 ----A---- C:\Windows\system32\msxml3r.dll 2010-03-06 14:16:41 ----A---- C:\Windows\system32\msxml6r.dll 2010-03-06 14:15:29 ----A---- C:\Windows\system32\wdigest.dll 2010-03-06 14:15:29 ----A---- C:\Windows\system32\secur32.dll 2010-03-06 14:15:29 ----A---- C:\Windows\system32\msv1_0.dll 2010-03-06 14:15:29 ----A---- C:\Windows\system32\lsass.exe 2010-03-06 14:15:29 ----A---- C:\Windows\system32\lsasrv.dll 2010-03-06 14:14:19 ----A---- C:\Windows\system32\rrinstaller.exe 2010-03-06 14:14:19 ----A---- C:\Windows\system32\mfps.dll 2010-03-06 14:14:19 ----A---- C:\Windows\system32\mfpmp.exe 2010-03-06 14:14:19 ----A---- C:\Windows\system32\mferror.dll 2010-03-06 14:14:19 ----A---- C:\Windows\system32\mf.dll 2010-03-06 14:14:17 ----A---- C:\Windows\system32\WMVCORE.DLL 2010-03-06 14:09:26 ----A---- C:\Windows\system32\atl.dll 2010-03-06 14:03:12 ----A---- C:\Windows\system32\wkssvc.dll 2010-03-06 14:02:04 ----A---- C:\Windows\system32\tsgqec.dll 2010-03-06 14:02:04 ----A---- C:\Windows\system32\mstscax.dll 2010-03-06 14:02:04 ----A---- C:\Windows\system32\aaclient.dll 2010-03-06 13:55:38 ----D---- C:\Program Files\7-Zip 2010-03-06 13:55:30 ----D---- C:\Program Files\ZyXEL 2010-03-06 13:55:03 ----D---- C:\Program Files\Zattoo 2010-03-06 13:55:03 ----D---- C:\Program Files\Windows Portable Devices 2010-03-06 13:55:03 ----D---- C:\Program Files\Windows Live SkyDrive 2010-03-06 13:54:52 ----D---- C:\Program Files\Windows Live 2010-03-06 13:54:43 ----D---- C:\Program Files\VS Revo Group 2010-03-06 13:54:43 ----D---- C:\Program Files\VMLoad 2010-03-06 13:54:22 ----D---- C:\Program Files\TuneUpMedia 2010-03-06 13:53:37 ----D---- C:\Program Files\TuneUp Utilities 2009 2010-03-06 13:53:34 ----D---- C:\Program Files\TidySongs 2010-03-06 13:53:34 ----D---- C:\Program Files\Sure Delete 2010-03-06 13:53:27 ----D---- C:\Program Files\SUPERAntiSpyware 2010-03-06 13:53:12 ----D---- C:\Program Files\SPAMfighter 2010-03-06 13:52:12 ----D---- C:\Program Files\Sony Ericsson 2010-03-06 13:51:35 ----D---- C:\Program Files\Sony 2010-03-06 13:51:33 ----D---- C:\Program Files\RegCleaner 2010-03-06 13:50:55 ----D---- C:\Program Files\Radiograbber 6 2010-03-06 13:50:23 ----A---- C:\Windows\system32\tzres.dll 2010-03-06 13:49:38 ----D---- C:\Program Files\QuickTime 2010-03-06 13:49:35 ----D---- C:\Program Files\PowerISO 2010-03-06 13:49:26 ----D---- C:\Program Files\PixiePack Codec Pack 2010-03-06 13:49:25 ----D---- C:\Program Files\PDFs 2 One 2 2010-03-06 13:49:24 ----D---- C:\Program Files\PDF Blender 2010-03-06 13:49:19 ----D---- C:\Program Files\MusicBrainz Picard 2010-03-06 13:49:09 ----A---- C:\Windows\system32\localspl.dll 2010-03-06 13:49:02 ----D---- C:\Program Files\Mozilla Thunderbird 2010-03-06 13:48:53 ----A---- C:\Windows\vbaddin.ini 2010-03-06 13:48:43 ----D---- C:\Program Files\Mozilla Firefox 2010-03-06 13:48:35 ----D---- C:\Program Files\Microsoft Silverlight 2010-03-06 13:48:34 ----D---- C:\Program Files\Microsoft 2010-03-06 13:48:33 ----D---- C:\Program Files\meta-iPod 2010-03-06 13:48:33 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2010-03-06 13:48:28 ----D---- C:\Program Files\Magic MP3 Tagger 2010-03-06 13:48:28 ----D---- C:\Program Files\Lyricsnapper 2010-03-06 13:48:27 ----D---- C:\Program Files\Lyrics 2010-03-06 13:48:18 ----D---- C:\Program Files\LimeWire 2010-03-06 13:47:53 ----D---- C:\Program Files\Lavasoft 2010-03-06 13:47:37 ----D---- C:\Program Files\Jthink 2010-03-06 13:47:10 ----A---- C:\Windows\ODBC.INI 2010-03-06 13:44:58 ----D---- C:\Program Files\iTunes 2010-03-06 13:44:54 ----D---- C:\Program Files\iTSfv 2010-03-06 13:44:51 ----D---- C:\Program Files\iPod 2010-03-06 13:44:51 ----D---- C:\Program Files\iLyrics 2010-03-06 13:44:48 ----D---- C:\Program Files\iDump 2010-03-06 13:42:53 ----D---- C:\Program Files\GIMP-2.0 2010-03-06 13:42:40 ----D---- C:\Program Files\Ghostscript 2010-03-06 13:42:36 ----D---- C:\Program Files\FreePDF_XP 2010-03-06 13:42:36 ----D---- C:\Program Files\Free Download Manager 2010-03-06 13:41:15 ----D---- C:\Program Files\EasyTax 2010-03-06 13:41:15 ----D---- C:\Program Files\directx 2010-03-06 13:41:15 ----D---- C:\Program Files\CyberIPod.com 2010-03-06 13:41:10 ----D---- C:\Program Files\CCleaner 2010-03-06 13:41:10 ----D---- C:\Program Files\Bonjour 2010-03-06 13:40:36 ----D---- C:\Program Files\bettunes 2010-03-06 13:40:10 ----A---- C:\Windows\system32\NlsLexicons0045.dll 2010-03-06 13:40:09 ----A---- C:\Windows\system32\NlsLexicons0047.dll 2010-03-06 13:40:09 ----A---- C:\Windows\system32\NlsLexicons0046.dll 2010-03-06 13:40:08 ----A---- C:\Windows\system32\NlsLexicons0049.dll 2010-03-06 13:40:07 ----A---- C:\Windows\system32\NlsLexicons0039.dll 2010-03-06 13:40:07 ----A---- C:\Windows\system32\NlsLexicons0021.dll 2010-03-06 13:40:07 ----A---- C:\Windows\system32\NlsLexicons0020.dll 2010-03-06 13:40:06 ----A---- C:\Windows\system32\NlsLexicons0022.dll 2010-03-06 13:40:05 ----A---- C:\Windows\system32\NlsLexicons0024.dll 2010-03-06 13:40:03 ----A---- C:\Windows\system32\NlsLexicons0027.dll 2010-03-06 13:40:03 ----A---- C:\Windows\system32\NlsLexicons0026.dll 2010-03-06 13:40:02 ----A---- C:\Windows\system32\NlsLexicons0011.dll 2010-03-06 13:40:02 ----A---- C:\Windows\system32\NlsLexicons0010.dll 2010-03-06 13:40:01 ----A---- C:\Windows\system32\NlsLexicons0019.dll 2010-03-06 13:40:01 ----A---- C:\Windows\system32\NlsLexicons0018.dll 2010-03-06 13:40:01 ----A---- C:\Windows\system32\NlsLexicons0013.dll 2010-03-06 13:39:59 ----A---- C:\Windows\system32\NlsLexicons0003.dll 2010-03-06 13:39:59 ----A---- C:\Windows\system32\NlsLexicons0002.dll 2010-03-06 13:39:59 ----A---- C:\Windows\system32\NlsLexicons0001.dll 2010-03-06 13:39:57 ----A---- C:\Windows\system32\NlsLexicons004b.dll 2010-03-06 13:39:57 ----A---- C:\Windows\system32\NlsLexicons004a.dll 2010-03-06 13:39:56 ----A---- C:\Windows\system32\NlsLexicons004e.dll 2010-03-06 13:39:56 ----A---- C:\Windows\system32\NlsLexicons004c.dll 2010-03-06 13:39:56 ----A---- C:\Windows\system32\NlsLexicons003e.dll 2010-03-06 13:39:56 ----A---- C:\Windows\system32\NlsLexicons002a.dll 2010-03-06 13:39:55 ----D---- C:\Program Files\AVG 2010-03-06 13:39:54 ----A---- C:\Windows\system32\NlsLexicons001a.dll 2010-03-06 13:39:52 ----A---- C:\Windows\system32\NlsLexicons001b.dll 2010-03-06 13:39:50 ----A---- C:\Windows\system32\NlsLexicons001d.dll 2010-03-06 13:39:48 ----A---- C:\Windows\system32\NlsLexicons000a.dll 2010-03-06 13:39:47 ----A---- C:\Windows\system32\NlsLexicons000d.dll 2010-03-06 13:39:47 ----A---- C:\Windows\system32\NlsLexicons000c.dll 2010-03-06 13:39:45 ----A---- C:\Windows\system32\NlsLexicons000f.dll 2010-03-06 13:39:44 ----A---- C:\Windows\system32\NlsLexicons0416.dll 2010-03-06 13:39:44 ----A---- C:\Windows\system32\NlsLexicons0414.dll 2010-03-06 13:39:43 ----A---- C:\Windows\system32\NlsLexicons081a.dll 2010-03-06 13:39:43 ----A---- C:\Windows\system32\NlsLexicons0816.dll 2010-03-06 13:39:41 ----A---- C:\Windows\system32\NlsModels0011.dll 2010-03-06 13:39:40 ----A---- C:\Windows\system32\NlsData0045.dll 2010-03-06 13:39:38 ----A---- C:\Windows\system32\NlsData0046.dll 2010-03-06 13:39:37 ----A---- C:\Windows\system32\NlsData0049.dll 2010-03-06 13:39:37 ----A---- C:\Windows\system32\NlsData0047.dll 2010-03-06 13:39:35 ----A---- C:\Windows\system32\NlsData0039.dll 2010-03-06 13:39:34 ----A---- C:\Windows\system32\NlsData0020.dll 2010-03-06 13:39:33 ----A---- C:\Windows\system32\NlsData0022.dll 2010-03-06 13:39:33 ----A---- C:\Windows\system32\NlsData0021.dll 2010-03-06 13:39:32 ----A---- C:\Windows\system32\NlsData0026.dll 2010-03-06 13:39:32 ----A---- C:\Windows\system32\NlsData0024.dll 2010-03-06 13:39:31 ----A---- C:\Windows\system32\NlsData0027.dll 2010-03-06 13:39:30 ----A---- C:\Windows\system32\NlsData0011.dll 2010-03-06 13:39:30 ----A---- C:\Windows\system32\NlsData0010.dll 2010-03-06 13:39:29 ----A---- C:\Windows\system32\NlsData0018.dll 2010-03-06 13:39:29 ----A---- C:\Windows\system32\NlsData0013.dll 2010-03-06 13:39:28 ----A---- C:\Windows\system32\NlsData0019.dll 2010-03-06 13:39:28 ----A---- C:\Windows\system32\NlsData0001.dll 2010-03-06 13:39:28 ----A---- C:\Windows\system32\NlsData0000.dll 2010-03-06 13:39:27 ----A---- C:\Windows\system32\NlsData0007.dll 2010-03-06 13:39:27 ----A---- C:\Windows\system32\NlsData0003.dll 2010-03-06 13:39:27 ----A---- C:\Windows\system32\NlsData0002.dll 2010-03-06 13:39:26 ----A---- C:\Windows\system32\NlsData004a.dll 2010-03-06 13:39:26 ----A---- C:\Windows\system32\NlsData0009.dll 2010-03-06 13:39:25 ----A---- C:\Windows\system32\NlsData004b.dll 2010-03-06 13:39:24 ----A---- C:\Windows\system32\NlsData004e.dll 2010-03-06 13:39:24 ----A---- C:\Windows\system32\NlsData004c.dll 2010-03-06 13:39:23 ----A---- C:\Windows\system32\NlsData003e.dll 2010-03-06 13:39:23 ----A---- C:\Windows\system32\NlsData002a.dll 2010-03-06 13:39:22 ----A---- C:\Windows\system32\NlsData001a.dll 2010-03-06 13:39:21 ----A---- C:\Windows\system32\NlsData001b.dll 2010-03-06 13:39:20 ----A---- C:\Windows\system32\NlsData001d.dll 2010-03-06 13:39:18 ----A---- C:\Windows\system32\NlsData000a.dll 2010-03-06 13:39:17 ----A---- C:\Windows\system32\NlsData000d.dll 2010-03-06 13:39:17 ----A---- C:\Windows\system32\NlsData000c.dll 2010-03-06 13:39:16 ----A---- C:\Windows\system32\NlsData0414.dll 2010-03-06 13:39:16 ----A---- C:\Windows\system32\NlsData000f.dll 2010-03-06 13:39:15 ----A---- C:\Windows\system32\NlsData0416.dll 2010-03-06 13:39:12 ----A---- C:\Windows\system32\NlsLexicons0c1a.dll 2010-03-06 13:39:12 ----A---- C:\Windows\system32\NlsData081a.dll 2010-03-06 13:39:12 ----A---- C:\Windows\system32\NlsData0816.dll 2010-03-06 13:39:11 ----A---- C:\Windows\system32\NlsData0c1a.dll 2010-03-06 13:38:54 ----D---- C:\Program Files\ATI Technologies 2010-03-06 13:38:50 ----D---- C:\Program Files\Apple Software Update 2010-03-06 13:35:02 ----A---- C:\Windows\system32\kbd106n.dll 2010-03-06 13:28:39 ----D---- C:\Program Files\Microsoft Visual Studio 8 2010-03-06 13:28:27 ----D---- C:\Program Files\Microsoft Visual Studio 2010-03-06 13:26:22 ----D---- C:\Program Files\Microsoft Expression 2010-03-06 13:24:03 ----A---- C:\Windows\system32\printcom.dll 2010-03-06 13:21:30 ----A---- C:\Windows\system32\wshrm.dll 2010-03-06 13:20:22 ----A---- C:\Windows\system32\wmpdxm.dll 2010-03-06 13:19:09 ----A---- C:\Windows\system32\secproc_ssp.dll 2010-03-06 13:19:09 ----A---- C:\Windows\system32\RMActivate_ssp.exe 2010-03-06 13:19:09 ----A---- C:\Windows\system32\msdrm.dll 2010-03-06 13:19:08 ----A---- C:\Windows\system32\secproc_ssp_isv.dll 2010-03-06 13:19:08 ----A---- C:\Windows\system32\secproc.dll 2010-03-06 13:19:08 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe 2010-03-06 13:19:08 ----A---- C:\Windows\system32\RMActivate.exe 2010-03-06 13:19:07 ----A---- C:\Windows\system32\secproc_isv.dll 2010-03-06 13:19:07 ----A---- C:\Windows\system32\RMActivate_isv.exe 2010-03-06 12:51:18 ----A---- C:\Windows\system32\netfxperf.dll 2010-03-06 12:37:36 ----D---- C:\Program Files\Adobe 2010-03-06 12:37:29 ----A---- C:\Windows\system32\INETRES.dll 2010-03-06 12:37:13 ----A---- C:\Windows\system32\msasn1.dll 2010-03-06 12:36:20 ----A---- C:\Windows\system32\rpcrt4.dll 2010-03-06 12:35:21 ----A---- C:\Windows\system32\rastls.dll 2010-03-06 12:35:04 ----A---- C:\Windows\system32\WSDApi.dll 2010-03-06 12:33:21 ----A---- C:\Windows\system32\msvidc32.dll 2010-03-06 12:33:21 ----A---- C:\Windows\system32\msvfw32.dll 2010-03-06 12:33:21 ----A---- C:\Windows\system32\msrle32.dll 2010-03-06 12:33:21 ----A---- C:\Windows\system32\mciavi32.dll 2010-03-06 12:33:21 ----A---- C:\Windows\system32\avifil32.dll 2010-03-06 12:33:21 ----A---- C:\Windows\system32\avicap32.dll 2010-03-06 12:33:20 ----A---- C:\Windows\system32\quartz.dll 2010-03-06 12:33:19 ----A---- C:\Windows\system32\tsbyuv.dll 2010-03-06 12:33:19 ----A---- C:\Windows\system32\msyuv.dll 2010-03-06 12:33:19 ----A---- C:\Windows\system32\iyuv_32.dll 2010-03-06 12:32:33 ----A---- C:\Windows\system32\WMSPDMOD.DLL 2010-03-06 12:31:55 ----A---- C:\Windows\system32\unregmp2.exe 2010-03-06 12:31:51 ----A---- C:\Windows\system32\wmploc.DLL 2010-03-06 12:31:47 ----A---- C:\Windows\system32\wmp.dll 2010-03-06 12:31:47 ----A---- C:\Windows\system32\spwmp.dll 2010-03-06 12:31:46 ----A---- C:\Windows\system32\dxmasf.dll 2010-03-06 12:20:30 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Adobe 2010-03-06 12:09:39 ----D---- C:\ProgramData\Sun 2010-03-06 12:09:38 ----D---- C:\Program Files\Common Files\Java 2010-03-06 12:09:08 ----A---- C:\Windows\system32\javaws.exe 2010-03-06 12:09:08 ----A---- C:\Windows\system32\javaw.exe 2010-03-06 12:09:08 ----A---- C:\Windows\system32\java.exe 2010-03-06 12:09:08 ----A---- C:\Windows\system32\deploytk.dll 2010-03-06 12:08:19 ----D---- C:\Program Files\Java 2010-03-06 12:07:29 ----D---- C:\ProgramData\WD_SmartWareCommon 2010-03-06 11:32:11 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Thunderbird 2010-03-06 11:21:08 ----D---- C:\ATI 2010-03-06 11:20:57 ----D---- C:\swsetup 2010-03-06 11:20:53 ----D---- C:\inetpub 2010-03-06 10:43:39 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Mozilla 2010-03-06 10:42:29 ----A---- C:\Windows\system32\wups2.dll 2010-03-06 10:42:29 ----A---- C:\Windows\system32\wucltux.dll 2010-03-06 10:42:29 ----A---- C:\Windows\system32\wuaueng.dll 2010-03-06 10:42:29 ----A---- C:\Windows\system32\wuauclt.exe 2010-03-06 10:42:10 ----A---- C:\Windows\system32\wups.dll 2010-03-06 10:42:10 ----A---- C:\Windows\system32\wudriver.dll 2010-03-06 10:42:10 ----A---- C:\Windows\system32\wuapi.dll 2010-03-06 10:42:00 ----A---- C:\Windows\system32\wuwebv.dll 2010-03-06 10:42:00 ----A---- C:\Windows\system32\wuapp.exe 2010-03-06 10:35:39 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Western Digital 2010-03-06 10:35:35 ----D---- C:\ProgramData\Western Digital 2010-03-06 10:34:42 ----D---- C:\Program Files\Western Digital 2010-03-06 10:27:25 ----D---- C:\Windows\Acer_Wide 2010-03-06 10:27:25 ----D---- C:\Program Files\Acer Inc 2010-03-06 10:27:25 ----A---- C:\Windows\Acer(Wide).ini 2010-03-06 10:27:25 ----A---- C:\Windows\Acer(Normal).ini 2010-03-06 10:27:23 ----D---- C:\Windows\Acer_Normal 2010-03-06 08:57:24 ----A---- C:\Windows\devcon.exe 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerzht.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerzhc.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServertr.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerth.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServersv.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServersl.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServersk.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerru.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerptb.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerpt.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerpl.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerno.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServernl.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerko.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerja.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerit.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerhu.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerhe.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerfr.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerfi.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServeres.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerenu.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServereng.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerel.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerde.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerda.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServercs.dll 2010-03-06 00:16:36 ----A---- C:\Windows\system32\NvRaidServerar.dll 2010-03-06 00:16:35 ----A---- C:\Windows\system32\NvRaidServer.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionzht.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionzhc.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectiontr.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionth.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionsv.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionsl.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionsk.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionru.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionptb.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionpt.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvSataConnectionpl.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardzht.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardzhc.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardtr.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardth.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardsv.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardsl.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardsk.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardru.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardptb.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidWizardpt.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvzht.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvzhc.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvtr.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvth.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvsv.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvsl.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvsk.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvru.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvptb.dll 2010-03-06 00:16:33 ----A---- C:\Windows\system32\NvRaidSvpt.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionno.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionnl.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionko.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionja.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionit.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionhu.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionhe.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionfr.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionfi.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectiones.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionenu.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectioneng.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionel.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionde.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvSataConnectionda.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardpl.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardno.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardnl.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardko.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardja.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardit.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardhu.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardhe.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardfr.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardfi.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardes.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardenu.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardeng.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardel.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardde.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidWizardda.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvpl.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvno.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvnl.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvko.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvja.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvit.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvhu.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvhe.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvfr.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvfi.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSves.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvenu.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSveng.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvel.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvde.dll 2010-03-06 00:16:32 ----A---- C:\Windows\system32\NvRaidSvda.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\NvSataConnectioncs.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\NvSataConnectionar.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\nvsataconnection.exe 2010-03-06 00:16:31 ----A---- C:\Windows\system32\NvRaidWizardcs.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\NvRaidWizardar.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\NvRaidWizard.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\NvRaidSvcs.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\NvRaidSvar.dll 2010-03-06 00:16:31 ----A---- C:\Windows\system32\nvraidservice.exe 2010-03-06 00:14:31 ----A---- C:\Windows\system32\Remove_eRecovery.exe 2010-03-06 00:14:31 ----A---- C:\Windows\system32\LauncheRyAgentUser.exe 2010-03-06 00:14:31 ----A---- C:\Windows\system32\ClearEvent.exe 2010-03-06 00:14:31 ----A---- C:\Windows\system32\CheckD2DSystem.exe 2010-03-06 00:14:31 ----A---- C:\Windows\system32\Acer EULA.txt 2010-03-06 00:14:05 ----D---- C:\Program Files\ATI 2010-03-06 00:13:13 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Macromedia 2010-03-06 00:13:01 ----SHD---- C:\$RECYCLE.BIN 2010-03-06 00:12:41 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Identities 2010-03-06 00:12:09 ----D---- C:\Program Files\Yahoo! 2010-03-06 00:12:05 ----SD---- C:\Users\Benjamin Kurth\AppData\Roaming\Microsoft 2010-03-06 00:12:05 ----D---- C:\Users\Benjamin Kurth\AppData\Roaming\Media Center Programs 2010-03-06 00:09:13 ----SHD---- C:\Programme 2010-03-06 00:09:13 ----SHD---- C:\ProgramData\Vorlagen 2010-03-06 00:09:13 ----SHD---- C:\ProgramData\Startmenü 2010-03-06 00:09:13 ----SHD---- C:\ProgramData\Favoriten 2010-03-06 00:09:13 ----SHD---- C:\ProgramData\Dokumente 2010-03-06 00:09:13 ----SHD---- C:\ProgramData\Anwendungsdaten 2010-03-06 00:09:13 ----SHD---- C:\Program Files\Gemeinsame Dateien 2010-03-06 00:09:13 ----SHD---- C:\Dokumente und Einstellungen 2010-03-06 00:01:31 ----D---- C:\Windows\SoftwareDistribution ======List of files/folders modified in the last 1 months====== 2010-03-14 18:40:43 ----D---- C:\Windows\Prefetch 2010-03-14 18:40:20 ----RD---- C:\Program Files 2010-03-14 17:26:37 ----SHD---- C:\Windows\Installer 2010-03-14 17:26:37 ----D---- C:\Windows\winsxs 2010-03-14 17:20:49 ----SHD---- C:\System Volume Information 2010-03-14 16:57:25 ----D---- C:\Windows\system32\drivers 2010-03-14 16:57:24 ----HD---- C:\ProgramData 2010-03-14 16:57:08 ----D---- C:\Windows\Temp 2010-03-14 16:29:00 ----D---- C:\Windows\Debug 2010-03-14 16:29:00 ----D---- C:\Windows 2010-03-14 12:41:57 ----D---- C:\Windows\System32 2010-03-14 12:41:57 ----D---- C:\Windows\inf 2010-03-14 12:41:57 ----A---- C:\Windows\system32\PerfStringBackup.INI 2010-03-13 20:35:05 ----D---- C:\Windows\Logs 2010-03-12 16:56:03 ----RSD---- C:\Windows\assembly 2010-03-12 16:54:32 ----D---- C:\Windows\Microsoft.NET 2010-03-12 16:17:08 ----D---- C:\Windows\Tasks 2010-03-12 16:17:08 ----D---- C:\Windows\system32\Tasks 2010-03-10 22:41:00 ----D---- C:\Windows\rescache 2010-03-10 22:39:20 ----D---- C:\Windows\system32\de-DE 2010-03-10 22:39:18 ----D---- C:\Windows\system32\wbem 2010-03-10 22:39:17 ----D---- C:\Windows\system32\pt-PT 2010-03-10 22:39:17 ----D---- C:\Windows\system32\pt-BR 2010-03-10 22:39:17 ----D---- C:\Windows\system32\it-IT 2010-03-10 22:39:17 ----D---- C:\Windows\system32\he-IL 2010-03-10 22:39:17 ----D---- C:\Windows\system32\bg-BG 2010-03-10 22:39:16 ----D---- C:\Windows\system32\zh-TW 2010-03-10 22:39:16 ----D---- C:\Windows\system32\zh-HK 2010-03-10 22:39:16 ----D---- C:\Windows\system32\zh-CN 2010-03-10 22:39:16 ----D---- C:\Windows\system32\uk-UA 2010-03-10 22:39:16 ----D---- C:\Windows\system32\tr-TR 2010-03-10 22:39:16 ----D---- C:\Windows\system32\th-TH 2010-03-10 22:39:16 ----D---- C:\Windows\system32\sv-SE 2010-03-10 22:39:16 ----D---- C:\Windows\system32\sr-Latn-CS 2010-03-10 22:39:16 ----D---- C:\Windows\system32\sl-SI 2010-03-10 22:39:16 ----D---- C:\Windows\system32\sk-SK 2010-03-10 22:39:16 ----D---- C:\Windows\system32\ru-RU 2010-03-10 22:39:16 ----D---- C:\Windows\system32\ro-RO 2010-03-10 22:39:16 ----D---- C:\Windows\system32\pl-PL 2010-03-10 22:39:16 ----D---- C:\Windows\system32\nl-NL 2010-03-10 22:39:16 ----D---- C:\Windows\system32\nb-NO 2010-03-10 22:39:16 ----D---- C:\Windows\system32\lv-LV 2010-03-10 22:39:16 ----D---- C:\Windows\system32\lt-LT 2010-03-10 22:39:16 ----D---- C:\Windows\system32\ko-KR 2010-03-10 22:39:16 ----D---- C:\Windows\system32\ja-JP 2010-03-10 22:39:16 ----D---- C:\Windows\system32\hu-HU 2010-03-10 22:39:16 ----D---- C:\Windows\system32\hr-HR 2010-03-10 22:39:16 ----D---- C:\Windows\system32\fr-FR 2010-03-10 22:39:16 ----D---- C:\Windows\system32\fi-FI 2010-03-10 22:39:16 ----D---- C:\Windows\system32\et-EE 2010-03-10 22:39:16 ----D---- C:\Windows\system32\es-ES 2010-03-10 22:39:16 ----D---- C:\Windows\system32\en-US 2010-03-10 22:39:16 ----D---- C:\Windows\system32\el-GR 2010-03-10 22:39:16 ----D---- C:\Windows\system32\da-DK 2010-03-10 22:39:16 ----D---- C:\Windows\system32\cs-CZ 2010-03-10 22:39:16 ----D---- C:\Windows\system32\ar-SA 2010-03-10 22:39:15 ----D---- C:\Windows\AppPatch 2010-03-10 22:38:35 ----D---- C:\Windows\system32\catroot 2010-03-10 22:37:56 ----D---- C:\Windows\system32\catroot2 2010-03-10 22:22:26 ----SHD---- C:\Boot 2010-03-10 22:17:21 ----D---- C:\Program Files\Windows Mail 2010-03-10 22:17:21 ----D---- C:\Program Files\Windows Calendar 2010-03-10 22:17:21 ----D---- C:\Program Files\Movie Maker 2010-03-10 22:17:19 ----D---- C:\Program Files\Windows Sidebar 2010-03-10 22:17:19 ----D---- C:\Program Files\Windows Media Player 2010-03-10 22:17:19 ----D---- C:\Program Files\Internet Explorer 2010-03-10 22:17:18 ----D---- C:\Program Files\Windows Journal 2010-03-10 22:17:18 ----D---- C:\Program Files\Windows Collaboration 2010-03-10 22:17:15 ----D---- C:\Program Files\Windows Photo Gallery 2010-03-10 22:17:15 ----D---- C:\Program Files\Common Files\System 2010-03-10 22:17:09 ----D---- C:\Windows\servicing 2010-03-10 22:17:09 ----D---- C:\Windows\ehome 2010-03-10 22:17:09 ----D---- C:\Program Files\Windows Defender 2010-03-10 22:16:35 ----D---- C:\Windows\IME 2010-03-10 22:16:34 ----D---- C:\Windows\system32\XPSViewer 2010-03-10 22:16:33 ----D---- C:\Windows\system32\oobe 2010-03-10 22:16:33 ----D---- C:\Windows\system32\migration 2010-03-10 22:16:28 ----D---- C:\Windows\system32\AdvancedInstallers 2010-03-10 22:16:27 ----D---- C:\Windows\system32\SLUI 2010-03-10 22:16:27 ----D---- C:\Windows\system32\setup 2010-03-10 22:16:27 ----D---- C:\Windows\system32\manifeststore 2010-03-10 22:16:21 ----D---- C:\Windows\system32\migwiz 2010-03-10 22:15:10 ----RSD---- C:\Windows\Fonts 2010-03-10 22:15:01 ----D---- C:\Windows\system32\Boot 2010-03-10 22:14:18 ----D---- C:\Windows\system32\RTCOM 2010-03-10 21:46:12 ----D---- C:\Program Files\Acer GameZone 2010-03-10 21:44:07 ----D---- C:\Program Files\Common Files 2010-03-10 21:29:47 ----HD---- C:\Program Files\InstallShield Installation Information 2010-03-10 21:19:50 ----D---- C:\Program Files\eSobi 2010-03-10 20:10:11 ----D---- C:\Program Files\Common Files\microsoft shared 2010-03-10 20:02:27 ----D---- C:\ProgramData\Microsoft Help 2010-03-10 19:38:16 ----D---- C:\Windows\PolicyDefinitions 2010-03-09 22:22:35 ----D---- C:\Windows\system32\LogFiles 2010-03-09 22:14:53 ----ASH---- C:\Program Files\desktop.ini 2010-03-09 22:08:27 ----D---- C:\Windows\MSAgent 2010-03-09 22:08:26 ----D---- C:\Windows\L2Schemas 2010-03-09 22:08:26 ----D---- C:\Windows\DigitalLocker 2010-03-09 22:08:25 ----D---- C:\Windows\system32\com 2010-03-09 22:08:22 ----D---- C:\Windows\system32\sysprep 2010-03-09 22:08:17 ----D---- C:\Windows\system32\ias 2010-03-09 22:06:25 ----D---- C:\Windows\Boot 2010-03-09 21:49:56 ----SD---- C:\ProgramData\Microsoft 2010-03-09 20:59:08 ----A---- C:\Windows\system32\ifxcardm.dll 2010-03-09 20:59:07 ----A---- C:\Windows\system32\axaltocm.dll 2010-03-08 21:22:58 ----D---- C:\Program Files\Microsoft Works 2010-03-08 21:21:04 ----A---- C:\Windows\win.ini 2010-03-08 19:21:08 ----D---- C:\Windows\system32\WDI 2010-03-07 23:01:26 ----D---- C:\ProgramData\McAfee 2010-03-07 15:18:07 ----D---- C:\ProgramData\SiteAdvisor 2010-03-06 15:03:51 ----D---- C:\ProgramData\Adobe 2010-03-06 13:41:59 ----D---- C:\Windows\ShellNew 2010-03-06 13:36:54 ----D---- C:\Program Files\MSBuild 2010-03-06 13:35:43 ----D---- C:\Program Files\Microsoft Office 2010-03-06 12:38:05 ----D---- C:\Program Files\Common Files\Adobe 2010-03-06 11:20:53 ----D---- C:\Book 2010-03-06 10:33:08 ----D---- C:\Windows\Registration 2010-03-06 10:30:30 ----A---- C:\Windows\Alaunch.ini 2010-03-06 10:30:03 ----D---- C:\AcerSW 2010-03-06 10:27:07 ----D---- C:\Windows\system32\restore 2010-03-06 08:57:24 ----A---- C:\Windows\CLEANUP.CMD 2010-03-06 00:13:31 ----D---- C:\Acer 2010-03-06 00:12:05 ----RD---- C:\Users 2010-03-06 00:09:13 ----D---- C:\Program Files\Windows NT 2010-03-06 00:04:58 ----D---- C:\Windows\Panther 2010-03-06 00:01:27 ----D---- C:\ProgramData\NVIDIA 2010-03-02 06:30:12 ----A---- C:\Windows\system32\mrt.exe |
14.03.2010, 19:54 | #3 |
| Firefox öffnet neue Fenster Hi,
__________________erst mal nicht auffälliges... Die Askbar würde ich entfernen... ->O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll Gmer: http://www.trojaner-board.de/74908-a...t-scanner.html Den Downloadlink findest Du links oben (http://www.gmer.net/#files), dort dann auf den Button "Download EXE", dabei wird ein zufälliger Name generiert (den und den Pfad wo Du sie gespeichert hast bitte merken). Starte GMER und schaue, ob es schon was meldet. Macht es das, bitte alle Fragen mit "nein" beantworten, auf den Reiter "rootkit" gehen, wiederum die Frage mit "nein" beantworten und mit Hilfe von copy den Bericht in den Thread einfügen. Meldet es so nichts, gehe auf den Reiter Rootkit und mache einen Scan. Ist dieser beendet, wähle Copy und füge den Bericht ein. Prevx: http://www.prevx.com/freescan.asp Falls das Tool was findet, nicht das Log posten sondern einen Screenshot des dann angezeigten Fensters... chris
__________________ |
14.03.2010, 20:35 | #4 |
| Firefox öffnet neue Fenster Hallo Chris C:\Program Files\Ask.com\GenericAskToolbar.dll habe ich gelöscht. Prevx hat nichts gefunden! Gmer: GMER 1.0.15.15281 - http://www.gmer.net Rootkit scan 2010-03-14 20:34:36 Windows 6.0.6002 Service Pack 2 Running: pnjeobuc.exe; Driver: C:\Users\BENJAM~1\AppData\Local\Temp\ugrdipow.sys ---- User code sections - GMER 1.0.15 ---- .text C:\Windows\Explorer.EXE[2176] SHELL32.dll!SHGetFolderPathAndSubDirW + 81C9 7692B364 4 Bytes [50, 26, 00, 10] {PUSH EAX; ADD ES:[EAX], DL} ---- User IAT/EAT - GMER 1.0.15 ---- IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown] [746E7817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage] [7473A86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI] [746EBB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode] [746DF695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup] [746E75E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC] [746DE7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStreamICM] [74718395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStream] [746EDA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight] [746DFFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth] [746DFF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage] [746D71CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFileICM] [7476CAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFile] [7470C8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics] [746DD968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree] [746D6853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc] [746D687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode] [746E2AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] [100027E0] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibraryAndExitThread] [10001B60] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [10002B60] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) IAT C:\Windows\Explorer.EXE[2176] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [100011D0] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) IAT C:\Program Files\iTunes\iTunes.exe[5280] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetProcAddress] [098B2B60] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) IAT C:\Program Files\iTunes\iTunes.exe[5280] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [098B11D0] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) IAT C:\Program Files\iTunes\iTunes.exe[5280] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateThread] [098B27E0] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) IAT C:\Program Files\iTunes\iTunes.exe[5280] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FreeLibraryAndExitThread] [098B1B60] C:\Acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll (Acer eDataSecurity Management PSD DragDrop Protection/Egis Incorporated) ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\tdx \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.) AttachedDevice \Driver\tdx \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.) AttachedDevice \Driver\tdx \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.) ---- Files - GMER 1.0.15 ---- File C:\Program Files\Prevx 0 bytes File C:\Program Files\Prevx\prevx.exe 6300592 bytes executable ---- EOF - GMER 1.0.15 ---- |
14.03.2010, 20:48 | #5 |
| Firefox öffnet neue Fenster Hi, ein Rootkit scheint es nicht zu sein... Passiert das auch bei dem IE oder nur im FF? GooredFix Lade dir bitte GooredFix.exe (http://jpshortstuff.247fixes.com/GooredFix.exe) herunter und speichere es auf deinem Desktop. Führe das Programm per Doppelklick aus (Vista/Win7-User als Admin!) und wähle die Option 1. FF muss komplett geschlossen sein! Ein Log sollte sich öffnen, poste den Inhalt bitte hier. OTL Lade Dir OTL von Oldtimer herunter (http://filepony.de/download-otl/) und speichere es auf Deinem Desktop * Doppelklick auf die OTL.exe * Vista/Win7 User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen * Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output * Unter Extra Registry, wähle bitte Use SafeList * Klicke nun auf Run Scan links oben * Wenn der Scan beendet wurde werden 2 Logfiles erstellt * Poste die Logfiles hier in den Thread. chris
__________________ Don't bring me down Vor dem posten beachten! Spenden (Wer spenden will, kann sich gerne melden ) |
14.03.2010, 21:49 | #6 |
| Firefox öffnet neue Fenster Gute frage. ich benutze eigentlich nnur noch FF. Vondemher kann ich die frage nicht beantworten. GooredFix by jpshortstuff (08.01.10.1) Log created at 21:45 on 14/03/2010 (Benjamin Kurth) Firefox version 3.6 (de) ========== GooredScan ========== ========== GooredLog ========== C:\Program Files\Mozilla Firefox\extensions\ {464F169E-ACE1-4C5F-A778-A433A3DABBAE} [12:48 06/03/2010] {972ce4c6-7e08-4474-a285-3208198ce6fd} [12:48 06/03/2010] {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} [12:48 06/03/2010] {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} [12:48 06/03/2010] {f1eda20e-f0cd-69e5-3aeb-ebd435505a5b} [12:48 06/03/2010] [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{20a82645-c095-46ed-80e3-08825760534b}"="C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\" [12:07 06/03/2010] "{3f963a5b-e555-4543-90e2-c3908898db71}"="C:\Program Files\AVG\AVG9\Firefox" [12:40 06/03/2010] "avg@igeared"="C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared" [17:47 08/03/2010] -=E.O.F=- OTL Extras logfile created on: 14.03.2010 21:27:37 - Run 2 OTL by OldTimer - Version 3.1.37.1 Folder = c:\Users\XXX\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18882) Locale: 00000807 | Country: Schweiz | Language: DES | Date Format: dd.MM.yyyy 3.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 38.00% Memory free 7.00 Gb Paging File | 5.00 Gb Available in Paging File | 68.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 145.29 Gb Total Space | 52.19 Gb Free Space | 35.92% Space Free | Partition Type: NTFS Drive D: | 144.99 Gb Total Space | 113.08 Gb Free Space | 77.99% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded Drive G: | 644.12 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: HOME Current User Name: XXX Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Minimal ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{95D8ABDB-680D-4DEB-BDD7-0B6E3FA7886A}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{A896691E-6AFF-4FBC-9298-686B1EBA8F2F}" = lport=2869 | protocol=6 | dir=in | app=system | "{C41DE5FF-44C4-43CC-848D-AB6D169369EF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{002D24B5-D761-445A-86AD-CFF9C1577FD8}" = dir=in | app=c:\program files\acer arcade live\acer homemedia connect\acer homemedia connect.exe | "{089F9DEB-3DCE-44EA-B8FE-D93D95989A41}" = protocol=6 | dir=in | app=c:\users\XXX\appdata\roaming\vmload\vmload.exe | "{185909C4-58A6-4536-8366-9F8000477B8E}" = dir=in | app=c:\program files\acer arcade live\acer arcade live main page\acer arcade live.exe | "{1AD5A8C0-5B3D-4566-802A-02FF174B1E06}" = dir=in | app=c:\program files\acer arcade live\acer homemedia connect\kernel\dms\clmsserver.exe | "{34A5A4D6-CB8A-4A3A-A43C-A45E2C5A362A}" = protocol=17 | dir=in | app=c:\program files\itunes\itunes.exe | "{399E14E9-4A2E-4B68-B4E0-C5DA43E8B0C3}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{437373C0-277B-4352-AADE-103AAC247230}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{45590368-3C24-429E-9635-1AEACFB17A67}" = protocol=6 | dir=in | app=c:\users\bXX\appdata\roaming\vmload\vmload.jar | "{61E0A7BC-DCCC-4D69-B91D-0374400CA6A3}" = dir=in | app=c:\program files\acer arcade live\acer dvdivine\acer dvdivine.exe | "{6366D2CC-F933-4E65-9691-19308FF68F86}" = dir=in | app=c:\program files\avg\avg9\avgupd.exe | "{707FE54F-6BBD-4FAA-A807-F43D6051759D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{7594969B-B680-451E-A7DA-21C95E9933C4}" = dir=in | app=c:\program files\avg\avg9\avgnsx.exe | "{7ABB0C5D-1F8D-4B7A-A63B-1E03DCB3DD94}" = protocol=17 | dir=in | app=c:\users\bXX\appdata\roaming\vmload\vmload.jar | "{80DAB3BC-95CA-4E71-9706-8418FC3A5663}" = dir=in | app=c:\program files\acer arcade live\acer homemedia\acer homemedia.exe | "{86765C60-FDE2-4477-8A55-B24015474C08}" = protocol=17 | dir=in | app=c:\users\XXX\appdata\roaming\vmload\vmload.exe | "{A4F37CAD-FA8D-4816-A6E7-7073E2ABE428}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{A82B1C8E-AD9D-4198-A771-791E93B61A50}" = dir=in | app=c:\program files\acer arcade live\acer videomagician\acer videomagician.exe | "{BF66000B-F483-46EB-A942-9E590C16B764}" = protocol=17 | dir=in | app=c:\users\XXX\appdata\roaming\vmload\vmloadupdater.jar | "{C4E4586C-F061-47D7-80D8-45DFCABF120D}" = dir=in | app=c:\program files\acer arcade live\acer dv magician\acer dv magician.exe | "{D86838F3-AE84-4F82-9AB1-D703F28349C6}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{E2F69F5F-B790-4CDA-889D-6D8D67AE92F3}" = dir=in | app=c:\program files\acer arcade live\acer slideshow dvd\acer slideshow dvd.exe | "{E79E5D9E-86AF-4AC2-A630-BDD335CBC11C}" = protocol=6 | dir=in | app=c:\users\XXXh\appdata\roaming\vmload\vmloadupdater.jar | "{F5EEAFB5-598F-481E-AFCF-520DC8CD87FA}" = protocol=6 | dir=in | app=c:\program files\itunes\itunes.exe | "{FC887CED-5E7E-44C7-B500-019E71366F86}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{FDDEDA7F-2179-48B0-AC63-CCEC03927B90}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "TCP Query User{2EECE39F-0283-499C-B218-953F1CEA272C}C:\program files\java\jre6\launch4j-tmp\vmload.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\launch4j-tmp\vmload.exe | "TCP Query User{E6B4270F-8A9E-4DB7-B56E-D461BDDA14FB}K:\wd_smartware\programme\zattoo\zattood.exe" = protocol=6 | dir=in | app=k:\wd_smartware\programme\zattoo\zattood.exe | "UDP Query User{41D8BF8F-F112-46D1-951B-3F7156A22BD7}K:\wd_smartware\programme\zattoo\zattood.exe" = protocol=17 | dir=in | app=k:\wd_smartware\programme\zattoo\zattood.exe | "UDP Query User{E04A5AA9-3A1B-4A5F-87A3-73B30D09027C}C:\program files\java\jre6\launch4j-tmp\vmload.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\launch4j-tmp\vmload.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01358C56-44F4-B8B3-8757-06F2A864A863}" = ATI Catalyst Install Manager "{052FDD78-A6EA-3187-8386-C82F4CA3A929}" = Microsoft .NET Framework 3.5 Language Pack SP1 - deu "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{10A44844-4465-456E-8C97-80BDD4F68845}" = Windows Live ID-Anmelde-Assistent "{132888AE-EF67-41C5-BCA2-7D5D2488AB63}" = Acer HomeMedia Connect "{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime "{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker "{1598034D-7147-432C-8CA8-888E0632D124}" = NTI Backup NOW! 4.7 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 18 "{2EAF7E61-068E-11DF-953C-005056806466}" = Google Earth "{2FFE93F0-BB72-4E52-8761-354D1AAA9387}" = Sony Ericsson PC Suite 4.006.00 "{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support "{41581EF5-45A7-11DA-9D78-000129760D75}" = Acer SlideShow DVD "{41E654A9-26D0-4EAC-854B-0FA824FFFABB}" = Windows Live Messenger "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4EA2F95F-A537-4d17-9E7F-6B3FF8D9BBE3}" = Microsoft Works "{5FC68772-6D56-41C6-9DF1-24E868198AE6}" = Windows Live Call "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update "{78E804CC-A148-4C8F-AD46-0B476EFE34C2}" = Microsoft Image Composite Editor "{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}" = Acer ScreenSaver "{81063354-9060-42B2-A000-1EBE96778AA9}" = iTunes "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007 "{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007 "{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007 "{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007 "{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007 "{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007 "{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}_PRJPRO_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}_VISPRO_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}_WebDesigner_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}_PRJPRO_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}_VISPRO_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-040C-0000-0000000FF1CE}_WebDesigner_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007 "{90120000-001F-0410-0000-0000000FF1CE}_HOMESTUDENTR_{322296D4-1EAE-4030-9FBC-D2787EB25FA2}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0C0A-0000-0000000FF1CE}_PRJPRO_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0C0A-0000-0000000FF1CE}_VISPRO_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0C0A-0000-0000000FF1CE}_WebDesigner_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-0026-0000-0000-0000000FF1CE}" = Microsoft Expression Web "{90120000-0026-0000-0000-0000000FF1CE}_WebDesigner_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0026-0000-0000-0000000FF1CE}_WebDesigner_{9037FDA8-8383-4B6F-859D-D49C3C625225}" = Microsoft Expression Web Service Pack 1 (SP1) "{90120000-0026-0409-0000-0000000FF1CE}" = Microsoft Expression Web MUI (English) "{90120000-0026-0409-0000-0000000FF1CE}_WebDesigner_{E1044ED2-E4AD-4B39-B500-31109750F6B4}" = Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2) "{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007 "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-003B-0000-0000-0000000FF1CE}" = Microsoft Office Project Professional 2007 "{90120000-003B-0000-0000-0000000FF1CE}_PRJPRO_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-003B-0000-0000-0000000FF1CE}_PRJPRO_{9E73617F-2F38-4864-BD61-BB2DDFE43323}" = Microsoft Office Project 2007 Service Pack 2 (SP2) "{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007 "{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0051-0000-0000-0000000FF1CE}" = Microsoft Office Visio Professional 2007 "{90120000-0051-0000-0000-0000000FF1CE}_VISPRO_{0FD405D3-CAF8-4CA6-8BFD-911D2F8A6585}" = Microsoft Office Visio 2007 Service Pack 2 (SP2) "{90120000-0051-0000-0000-0000000FF1CE}_VISPRO_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0054-0409-0000-0000000FF1CE}" = Microsoft Office Visio MUI (English) 2007 "{90120000-0054-0409-0000-0000000FF1CE}_VISPRO_{519D9F45-CBF4-4E57-B419-11F196CCA8AE}" = Microsoft Office Visio 2007 Service Pack 2 (SP2) "{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007 "{90120000-006E-0407-0000-0000000FF1CE}_HOMESTUDENTR_{26454C26-D259-4543-AA60-3189E09C5F76}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0409-0000-0000000FF1CE}_PRJPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0409-0000-0000000FF1CE}_VISPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0409-0000-0000000FF1CE}_WebDesigner_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007 "{90120000-00A1-0407-0000-0000000FF1CE}_HOMESTUDENTR_{9BD40163-B95D-4B07-8991-0AB775B6D88B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00B4-0409-0000-0000000FF1CE}" = Microsoft Office Project MUI (English) 2007 "{90120000-00B4-0409-0000-0000000FF1CE}_PRJPRO_{27A9D316-D332-433B-8EB1-1D93EE49F26D}" = Microsoft Office Project 2007 Service Pack 2 (SP2) "{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007 "{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007 "{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0115-0409-0000-0000000FF1CE}_PRJPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0115-0409-0000-0000000FF1CE}_VISPRO_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0115-0409-0000-0000000FF1CE}_WebDesigner_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007 "{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2) "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{94389919-B0AA-4882-9BE8-9F0B004ECA35}" = Acer Tour "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{A5633652-3795-4829-BB0B-644F0279E279}" = Acer eDataSecurity Management "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA4BF92B-2AAF-11DA-9D78-000129760D75}" = Acer HomeMedia "{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support "{AB6097D9-D722-4987-BD9E-A076E2848EE2}" = Acer Empowering Technology "{AC76BA86-7AD7-1031-7B44-A82000000003}" = Adobe Reader 8.2.1 - Deutsch "{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}" = Microsoft Office Live Add-in 1.4 "{B145EC69-66F5-11D8-9D75-000129760D75}" = Acer DVDivine "{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0 "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{CD0DC280-2489-4464-A2FC-16104676394A}" = WD SmartWare "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CE386A4E-D0DA-4208-8235-BCE43275C694}" = LightScribe 1.4.142.1 "{CE65A9A0-9686-45C6-9098-3C9543A412F0}" = Acer eSettings Management "{D462BF9E-0C35-4705-BF9B-3DF9F3816643}" = Acer ePerformance Management "{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform "{EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}" = Acer Arcade Live Main Page "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F6EFFB76-4A07-11DA-9D78-000129760D75}" = Acer DV Magician "{F79A208D-D929-11D9-9D77-000129760D75}" = Acer VideoMagician "{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}" = Windows Live Essentials "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "AVG9Uninstall" = AVG Free 9.0 "CCleaner" = CCleaner "ENTERPRISE" = Microsoft Office Enterprise 2007 "HijackThis" = HijackThis 2.0.2 "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker "InstallShield_{1598034D-7147-432C-8CA8-888E0632D124}" = NTI Backup NOW! 4.7 "LimeWire" = LimeWire 5.5.5 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Messenger Plus! Live" = Messenger Plus! Live "Microsoft .NET Framework 3.5 Language Pack SP1 - deu" = Microsoft .NET Framework 3.5 Language Pack SP1 - DEU "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6)" = Mozilla Firefox (3.6) "Mozilla Thunderbird (3.0.3)" = Mozilla Thunderbird (3.0.3) "NVIDIA Drivers" = NVIDIA Drivers "PRJPRO" = Microsoft Office Project Professional 2007 "ShockwaveFlash" = Adobe Flash Player 9 ActiveX "VISPRO" = Microsoft Office Visio Professional 2007 "VMLoad" = VMLoad "WebDesigner" = Microsoft Expression Web "WinLiveSuite_Wave3" = Windows Live Essentials "Yahoo! Companion" = Yahoo! Toolbar mit Pop-Up-Blocker "Yahoo! Toolbar" = Yahoo! Toolbar "Zattoo4" = Zattoo4 4.0.4 ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 09.03.2010 16:52:43 | Computer Name = Home | Source = MsiInstaller | ID = 11935 Description = Error - 09.03.2010 16:57:28 | Computer Name = Home | Source = MsiInstaller | ID = 11935 Description = Error - 09.03.2010 17:09:40 | Computer Name = Home | Source = WerSvc | ID = 5007 Description = Error - 09.03.2010 17:13:00 | Computer Name = Home | Source = WDSmartWareBackgroundService | ID = 0 Description = Error - 09.03.2010 17:15:29 | Computer Name = Home | Source = ESENT | ID = 215 Description = WinMail (3920) WindowsMail0: Die Sicherung wurde abgebrochen, weil sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen wurde. Error - 09.03.2010 17:22:37 | Computer Name = Home | Source = Customer Experience Improvement Program | ID = 1006 Description = Error - 09.03.2010 17:24:06 | Computer Name = Home | Source = MsiInstaller | ID = 11719 Description = Error - 10.03.2010 13:02:49 | Computer Name = Home | Source = WDSmartWareBackgroundService | ID = 0 Description = Error - 10.03.2010 13:58:09 | Computer Name = Home | Source = Application Error | ID = 1000 Description = Fehlerhafte Anwendung iTunes.exe, Version 9.0.3.15, Zeitstempel 0x4b590a69, fehlerhaftes Modul iTunes.dll, Version 9.0.3.15, Zeitstempel 0x4b590a4b, Ausnahmecode 0xc0000005, Fehleroffset 0x0005a1ca, Prozess-ID 0x1624, Anwendungsstartzeit 01cac073da71b58d. Error - 10.03.2010 14:07:07 | Computer Name = Home | Source = SideBySide | ID = 16842785 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Users\XXX\AppData\Roaming\VMLoad\addin\VMLoad.dll". Die abhängige Assemblierung "Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". [ System Events ] Error - 08.03.2010 13:08:14 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 12, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 08.03.2010 13:08:14 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 13, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 08.03.2010 13:08:50 | Computer Name = Home | Source = Dhcp | ID = 1002 Description = Die IP-Adresslease 192.168.1.102 für die Netzwerkkarte mit der Netzwerkadresse 001349F838B4 wurde durch den DHCP-Server 192.168.1.1 abgelehnt (der DHCP-Server hat eine DHCPNACK-Meldung gesendet). Error - 08.03.2010 14:25:26 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 11, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 08.03.2010 14:25:27 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 12, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 08.03.2010 14:25:27 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 13, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 09.03.2010 15:16:18 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 11, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 09.03.2010 15:16:19 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 12, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 09.03.2010 15:16:19 | Computer Name = Home | Source = ACPI | ID = 327686 Description = IRQARB: ACPI-BIOS enthält keinen IRQ für das Gerät im PCI-Steckplatz 13, Funktion 0. Wenden Sie sich an den Systemhersteller, um technische Unterstützung zu erhalten. Error - 09.03.2010 15:17:20 | Computer Name = Home | Source = Dhcp | ID = 1002 Description = Die IP-Adresslease 192.168.1.102 für die Netzwerkkarte mit der Netzwerkadresse 001349F838B4 wurde durch den DHCP-Server 192.168.1.1 abgelehnt (der DHCP-Server hat eine DHCPNACK-Meldung gesendet). < End of report > |
14.03.2010, 22:05 | #7 |
| Firefox öffnet neue Fenster OTL logfile created on: 14.03.2010 21:27:37 - Run 2 OTL by OldTimer - Version 3.1.37.1 Folder = c:\Users\XXX\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18882) Locale: 00000807 | Country: Schweiz | Language: DES | Date Format: dd.MM.yyyy 3.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 38.00% Memory free 7.00 Gb Paging File | 5.00 Gb Available in Paging File | 68.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 145.29 Gb Total Space | 52.19 Gb Free Space | 35.92% Space Free | Partition Type: NTFS Drive D: | 144.99 Gb Total Space | 113.08 Gb Free Space | 77.99% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded Drive G: | 644.12 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: XXX Current User Name: XXX Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Minimal ========== Processes (SafeList) ========== PRC - c:\Users\XX\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Programme\AVG\AVG9\avgnsx.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Programme\AVG\AVG9\avgrsx.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Programme\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Programme\AVG\AVG9\avgcsrvx.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Programme\AVG\AVG9\avgchsvx.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Programme\Mozilla Thunderbird\thunderbird.exe (Mozilla Messaging) PRC - C:\Programme\iTunes\iTunes.exe (Apple Inc.) PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation) PRC - C:\Programme\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital) PRC - C:\Programme\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC) PRC - C:\Programme\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe (WDC) PRC - C:\Programme\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe (Memeo) PRC - C:\Windows\explorer.exe (Microsoft Corporation) PRC - C:\Windows\System32\conime.exe (Microsoft Corporation) PRC - C:\Programme\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) PRC - C:\Programme\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) PRC - C:\Programme\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.) PRC - C:\Programme\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.) PRC - C:\Programme\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation) PRC - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe (Egis Incorporated) PRC - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe () PRC - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe (Acer Inc.) PRC - C:\Programme\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe (CyberLink) PRC - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe () ========== Modules (SafeList) ========== MOD - c:\Users\XXX\Downloads\OTL.exe (OldTimer Tools) MOD - C:\Windows\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.) MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll (Microsoft Corporation) ========== Win32 Services (SafeList) ========== SRV - (avg9wd) -- C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) SRV - (WDDMService) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe (WDC) SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation) SRV - (WinHttpAutoProxySvc) -- winhttp.dll (Microsoft Corporation) SRV - (WDSmartWareBackgroundService) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe (Memeo) SRV - (wlidsvc) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) SRV - (SBSDWSCService) -- C:\Programme\Spybot - Search & Destroy\SDWinSec.exe (Safer Networking Ltd.) SRV - (eDataSecurity Service) -- C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe (Egis Incorporated) SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV - (eSettingsService) -- C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe () SRV - (eRecoveryService) -- C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe (Acer Inc.) SRV - (Acer HomeMedia Connect Service) -- C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe (CyberLink) SRV - (AcerMemUsageCheckService) -- C:\Acer\Empowering Technology\ePerformance\MemCheck.exe () ========== Driver Services (SafeList) ========== DRV - (pxscan) -- File not found DRV - (pxrts) -- C:\Windows\System32\drivers\pxrts.sys (Prevx) DRV - (pxkbf) -- C:\Windows\System32\drivers\pxkbf.sys (Prevx) DRV - (AvgTdiX) -- C:\Windows\System32\Drivers\avgtdix.sys (AVG Technologies CZ, s.r.o.) DRV - (AvgMfx86) -- C:\Windows\System32\Drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.) DRV - (AvgLdx86) -- C:\Windows\System32\Drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.) DRV - (WDC_SAM) -- C:\Windows\System32\drivers\wdcsam.sys (Western Digital Technologies) DRV - (NTIDrvr) -- C:\Windows\System32\drivers\NTIDrvr.sys (NewTech Infosystems, Inc.) DRV - (psdvdisk) -- C:\Windows\System32\drivers\PSDVdisk.sys (Egis Incorporated) DRV - (PSDNServ) -- C:\Windows\System32\drivers\PSDNServ.sys (Egis Incorporated) DRV - (PSDFilter) -- C:\Windows\system32\DRIVERS\psdfilter.sys (Egis Incorporated) DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation) DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvmfdx32.sys (NVIDIA Corporation) DRV - (zntport) -- C:\Windows\System32\drivers\zntport.sys (Zeal SoftStudio) DRV - (tvicport) -- C:\Windows\System32\drivers\TVicPort.sys (EnTech Taiwan) DRV - (IntcAzAudAddService) Service for Realtek HD Audio (WDM) -- C:\Windows\System32\drivers\RTKVHDA.sys (Realtek Semiconductor Corp.) DRV - (nvrd32) -- C:\Windows\system32\drivers\nvrd32.sys (NVIDIA Corporation) DRV - (nvstor32) -- C:\Windows\system32\drivers\nvstor32.sys (NVIDIA Corporation) DRV - (NVHDA) -- C:\Windows\System32\drivers\nvhda32v.sys (NVIDIA Corporation) DRV - (nvsmu) -- C:\Windows\System32\drivers\nvsmu.sys (NVIDIA Corporation) DRV - (int15) -- C:\Acer\Empowering Technology\eRecovery\int15.sys (Acer, Inc.) DRV - (RTL85n86) -- C:\Windows\System32\drivers\RTL85n86.sys (Realtek) DRV - (ql2300) -- C:\Windows\system32\drivers\ql2300.sys (QLogic Corporation) DRV - (adp94xx) -- C:\Windows\system32\drivers\adp94xx.sys (Adaptec, Inc.) DRV - (elxstor) -- C:\Windows\system32\drivers\elxstor.sys (Emulex) DRV - (adpahci) -- C:\Windows\system32\drivers\adpahci.sys (Adaptec, Inc.) DRV - (uliahci) -- C:\Windows\system32\drivers\uliahci.sys (ULi Electronics Inc.) DRV - (iaStorV) -- C:\Windows\system32\drivers\iastorv.sys (Intel Corporation) DRV - (adpu320) -- C:\Windows\system32\drivers\adpu320.sys (Adaptec, Inc.) DRV - (ulsata2) -- C:\Windows\system32\drivers\ulsata2.sys (Promise Technology, Inc.) DRV - (vsmraid) -- C:\Windows\system32\drivers\vsmraid.sys (VIA Technologies Inc.,Ltd) DRV - (ql40xx) -- C:\Windows\system32\drivers\ql40xx.sys (QLogic Corporation) DRV - (UlSata) -- C:\Windows\system32\drivers\ulsata.sys (Promise Technology, Inc.) DRV - (adpu160m) -- C:\Windows\system32\drivers\adpu160m.sys (Adaptec, Inc.) DRV - (nvraid) -- C:\Windows\system32\drivers\nvraid.sys (NVIDIA Corporation) DRV - (nfrd960) -- C:\Windows\system32\drivers\nfrd960.sys (IBM Corporation) DRV - (iirsp) -- C:\Windows\system32\drivers\iirsp.sys (Intel Corp./ICP vortex GmbH) DRV - (SiSRaid4) -- C:\Windows\system32\drivers\sisraid4.sys (Silicon Integrated Systems) DRV - (nvstor) -- C:\Windows\system32\drivers\nvstor.sys (NVIDIA Corporation) DRV - (aic78xx) -- C:\Windows\system32\drivers\djsvs.sys (Adaptec, Inc.) DRV - (arcsas) -- C:\Windows\system32\drivers\arcsas.sys (Adaptec, Inc.) DRV - (LSI_SCSI) -- C:\Windows\system32\drivers\lsi_scsi.sys (LSI Logic) DRV - (SiSRaid2) -- C:\Windows\system32\drivers\sisraid2.sys (Silicon Integrated Systems Corp.) DRV - (HpCISSs) -- C:\Windows\system32\drivers\hpcisss.sys (Hewlett-Packard Company) DRV - (arc) -- C:\Windows\system32\drivers\arc.sys (Adaptec, Inc.) DRV - (iteraid) -- C:\Windows\system32\drivers\iteraid.sys (Integrated Technology Express, Inc.) DRV - (iteatapi) -- C:\Windows\system32\drivers\iteatapi.sys (Integrated Technology Express, Inc.) DRV - (LSI_SAS) -- C:\Windows\system32\drivers\lsi_sas.sys (LSI Logic) DRV - (Symc8xx) -- C:\Windows\system32\drivers\symc8xx.sys (LSI Logic) DRV - (LSI_FC) -- C:\Windows\system32\drivers\lsi_fc.sys (LSI Logic) DRV - (Sym_u3) -- C:\Windows\system32\drivers\sym_u3.sys (LSI Logic) DRV - (Mraid35x) -- C:\Windows\system32\drivers\mraid35x.sys (LSI Logic Corporation) DRV - (Sym_hi) -- C:\Windows\system32\drivers\sym_hi.sys (LSI Logic) DRV - (megasas) -- C:\Windows\system32\drivers\megasas.sys (LSI Logic Corporation) DRV - (viaide) -- C:\Windows\system32\drivers\viaide.sys (VIA Technologies, Inc.) DRV - (cmdide) -- C:\Windows\system32\drivers\cmdide.sys (CMD Technology, Inc.) DRV - (aliide) -- C:\Windows\system32\drivers\aliide.sys (Acer Laboratories Inc.) DRV - (Brserid) Brother MFC Serial Port Interface Driver (WDM) -- C:\Windows\system32\drivers\brserid.sys (Brother Industries Ltd.) DRV - (BrUsbSer) -- C:\Windows\system32\drivers\brusbser.sys (Brother Industries Ltd.) DRV - (BrFiltUp) -- C:\Windows\system32\drivers\brfiltup.sys (Brother Industries, Ltd.) DRV - (BrFiltLo) -- C:\Windows\system32\drivers\brfiltlo.sys (Brother Industries, Ltd.) DRV - (BrSerWdm) -- C:\Windows\system32\drivers\brserwdm.sys (Brother Industries Ltd.) DRV - (BrUsbMdm) -- C:\Windows\system32\drivers\brusbmdm.sys (Brother Industries Ltd.) DRV - (ntrigdigi) -- C:\Windows\system32\drivers\ntrigdigi.sys (N-trig Innovative Technologies) DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://de.intl.acer.yahoo.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://de.intl.acer.yahoo.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SEARCH PAGE = http://de.rd.yahoo.com/customize/ycomp/defaults/sp/*http://de.yahoo.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ch/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG9\Toolbar\IEToolbar.dll () IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "4.6.6.2" FF - prefs.js..browser.search.defaulturl: "4.6.6.2" FF - prefs.js..browser.search.selectedEngine: "4.6.6.2" FF - prefs.js..extensions.enabledItems: {f1eda20e-f0cd-69e5-3aeb-ebd435505a5b}:4.6.6.2 FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.783 FF - prefs.js..extensions.enabledItems: avg@igeared:3.011.025.005 FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.6.6.117 FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20091028 FF - prefs.js..keyword.URL: "4.6.6.2" FF - user.js..browser.search.defaultenginename: "4.6.6.2" FF - user.js..browser.search.defaulturl: "4.6.6.2" FF - user.js..browser.search.selectedEngine: "4.6.6.2" FF - user.js..keyword.URL: "4.6.6.2" FF - user.js..keyword.enabled: true FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG9\Firefox [2010.03.11 20:34:22 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared [2010.03.08 18:47:19 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.03.07 09:31:13 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.03.07 09:31:11 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.3\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2010.03.07 16:31:46 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.0.3\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2010.03.10 18:28:25 | 000,000,000 | ---D | M] -- C:\Users\XXX\AppData\Roaming\mozilla\Extensions [2010.03.06 12:08:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\XXXAppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2010.03.10 18:28:25 | 000,000,000 | ---D | M] -- C:\Users\XXXAppData\Roaming\mozilla\Extensions\mozswing@mozswing.org [2010.03.14 17:02:08 | 000,000,000 | ---D | M] -- C:\Users\XXXX\AppData\Roaming\mozilla\Firefox\Profiles\ug2m9zbw.default\extensions [2010.03.07 16:22:36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\XXAppData\Roaming\mozilla\Firefox\Profiles\ug2m9zbw.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010.03.10 21:02:39 | 000,000,000 | ---D | M] (FoxyTunes) -- C:\Users\XXX\AppData\Roaming\mozilla\Firefox\Profiles\ug2m9zbw.default\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374} [2010.03.14 12:53:20 | 000,000,000 | ---D | M] (NoScript) -- C:\Users\XX\AppData\Roaming\mozilla\Firefox\Profiles\ug2m9zbw.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232} [2010.03.11 19:03:21 | 000,000,000 | ---D | M] (WOT) -- C:\Users\BxXX\AppData\Roaming\mozilla\Firefox\Profiles\ug2m9zbw.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2010.03.10 18:29:29 | 000,000,000 | ---D | M] -- C:\UsersXXX\AppData\Roaming\mozilla\Firefox\Profiles\ug2m9zbw.default\extensions\toolbar@ask.com [2010.03.13 19:50:51 | 000,000,215 | ---- | M] () -- C:\Users\XXX\AppData\Roaming\Mozilla\FireFox\Profiles\ug2m9zbw.default\searchplugins\4.6.6.2.xml [2010.03.07 15:29:43 | 000,000,219 | ---- | M] () -- C:\Users\XXX\AppData\Roaming\Mozilla\FireFox\Profiles\ug2m9zbw.default\searchplugins\precisead.xml [2010.03.10 18:30:29 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions [2010.03.06 13:48:52 | 000,000,000 | ---D | M] (VMLoad) -- C:\Programme\Mozilla Firefox\extensions\{464F169E-ACE1-4C5F-A778-A433A3DABBAE} [2010.03.06 13:48:53 | 000,000,000 | ---D | M] (z) -- C:\Programme\Mozilla Firefox\extensions\{f1eda20e-f0cd-69e5-3aeb-ebd435505a5b} [2009.08.03 15:07:42 | 000,373,104 | ---- | M] (Microsoft Corporation) -- C:\Programme\Mozilla Firefox\plugins\npOGAPlugin.dll [2010.01.16 02:15:29 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml [2010.01.16 02:15:29 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml [2010.01.16 02:15:29 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml [2010.01.16 02:15:29 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml [2010.01.16 02:15:29 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml O1 HOSTS File: ([2010.03.11 20:03:21 | 000,380,663 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 1-2005-search.com O1 - Hosts: 13115 more lines... O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (ShowBarObj Class) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll (Egis) O2 - BHO: (Windows Live ID-Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Programme\AVG\AVG9\Toolbar\IEToolbar.dll () O2 - BHO: (LimeWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programme\AVG\AVG9\Toolbar\IEToolbar.dll () O3 - HKLM\..\Toolbar: (LimeWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found O3 - HKLM\..\Toolbar: (Yahoo! Toolbar mit Pop-Up-Blocker) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programme\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Programme\AVG\AVG9\Toolbar\IEToolbar.dll () O3 - HKCU\..\Toolbar\WebBrowser: (LimeWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AVG9_TRAY] C:\Programme\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [ Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4 - HKCU..\Run: [ccleaner] C:\Program Files\CCleaner\ccleaner.exe (Piriform Ltd) O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Programme\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.) O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - Startup: C:\Users\XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LimeWire On Startup.lnk.disabled () O4 - Startup: C:\Users\XXX\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\VMLoad.lnk.disabled () O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 195.186.1.162 195.186.4.162 O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programme\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Programme\Common Files\microsoft shared\Information Retrieval\msitss.dll (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - AppInit_DLLs: (avgrsstx.dll) - avgrsstx.dll (AVG Technologies CZ, s.r.o.) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img20.jpg O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img20.jpg O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006.09.18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2009.06.18 22:12:18 | 000,000,088 | ---- | M] () - G:\autorun.inf -- [ UDF ] O33 - MountPoints2\{ab24e405-28aa-11df-a27b-002185d0c989}\Shell - "" = AutoRun O33 - MountPoints2\{ab24e405-28aa-11df-a27b-002185d0c989}\Shell\AutoRun\command - "" = G:\WD SmartWare.exe -- [2009.10.14 22:28:45 | 003,271,968 | ---- | M] (Western Digital) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2010.03.14 20:11:24 | 000,055,184 | ---- | C] (Prevx) -- C:\Windows\System32\PxSecure.dll-28002397 [2010.03.14 20:11:24 | 000,050,504 | ---- | C] (Prevx) -- C:\Windows\System32\drivers\pxrts.sys [2010.03.14 20:11:23 | 000,024,368 | ---- | C] (Prevx) -- C:\Windows\System32\drivers\pxkbf.sys [2010.03.14 18:40:20 | 000,000,000 | ---D | C] -- C:\Programme\trend micro [2010.03.14 18:40:20 | 000,000,000 | ---D | C] -- C:\rsit [2010.03.14 17:25:34 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Research [2010.03.14 16:57:36 | 000,000,000 | ---D | C] -- C:\Users\BXX\AppData\Roaming\Malwarebytes [2010.03.14 16:57:25 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2010.03.14 16:57:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2010.03.14 16:57:23 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2010.03.14 13:02:04 | 000,000,000 | ---D | C] -- C:\Users\XXX\AppData\Roaming\AVG9 [2010.03.12 16:56:54 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_6.dll [2010.03.12 16:56:54 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_6.dll [2010.03.12 16:56:54 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_4.dll [2010.03.12 16:56:54 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_7.dll [2010.03.12 16:56:53 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dcsx_42.dll [2010.03.12 16:56:53 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_42.dll [2010.03.12 16:56:53 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_5.dll [2010.03.12 16:56:53 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_5.dll [2010.03.12 16:56:53 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_42.dll [2010.03.12 16:56:52 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_41.dll [2010.03.12 16:56:52 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_42.dll [2010.03.12 16:56:52 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_41.dll [2010.03.12 16:56:52 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_4.dll [2010.03.12 16:56:52 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll [2010.03.12 16:56:52 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_41.dll [2010.03.12 16:56:52 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_4.dll [2010.03.12 16:56:52 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll [2010.03.12 16:56:51 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_40.dll [2010.03.12 16:56:51 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_40.dll [2010.03.12 16:56:51 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_3.dll [2010.03.12 16:56:51 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_40.dll [2010.03.12 16:56:51 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_3.dll [2010.03.12 16:56:51 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_2.dll [2010.03.12 16:56:51 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_5.dll [2010.03.12 16:56:51 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_6.dll [2010.03.12 16:56:50 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll [2010.03.12 16:56:50 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_2.dll [2010.03.12 16:56:50 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll [2010.03.12 16:56:50 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_2.dll [2010.03.12 16:56:50 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_1.dll [2010.03.12 16:56:48 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll [2010.03.12 16:56:48 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_1.dll [2010.03.12 16:56:48 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_1.dll [2010.03.12 16:56:48 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_0.dll [2010.03.12 16:56:48 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_4.dll [2010.03.12 16:56:47 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_38.dll [2010.03.12 16:56:47 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_38.dll [2010.03.12 16:56:47 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_0.dll [2010.03.12 16:56:47 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_38.dll [2010.03.12 16:56:47 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_0.dll [2010.03.12 16:56:47 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_3.dll [2010.03.12 16:56:46 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_37.dll [2010.03.12 16:56:46 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_37.dll [2010.03.12 16:56:45 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll [2010.03.12 16:56:45 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_10.dll [2010.03.12 16:56:44 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_36.dll [2010.03.12 16:56:44 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_36.dll [2010.03.12 16:56:44 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_35.dll [2010.03.12 16:56:44 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_36.dll [2010.03.12 16:56:44 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_35.dll [2010.03.12 16:56:44 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_9.dll [2010.03.12 16:56:43 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll [2010.03.12 16:56:42 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_8.dll [2010.03.12 16:56:42 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_2.dll [2010.03.12 16:56:34 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll [2010.03.12 16:56:34 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_34.dll [2010.03.12 16:56:34 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_34.dll [2010.03.12 16:56:34 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll [2010.03.12 16:56:34 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll [2010.03.12 16:56:34 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll [2010.03.12 16:56:07 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_33.dll [2010.03.12 16:56:07 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_33.dll [2010.03.12 16:56:05 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll [2010.03.12 16:56:05 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10.dll [2010.03.12 16:56:05 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll [2010.03.12 16:56:05 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll [2010.03.12 16:56:04 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll [2010.03.12 16:56:04 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll [2010.03.12 16:56:04 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll [2010.03.12 16:56:04 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll [2010.03.12 16:56:04 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll [2010.03.12 16:56:04 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll [2010.03.12 16:56:03 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll [2010.03.12 16:56:03 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll [2010.03.12 16:56:02 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll [2010.03.12 16:56:01 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll [2010.03.12 16:56:01 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll [2010.03.12 16:56:01 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll [2010.03.12 16:56:01 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll [2010.03.12 16:56:01 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll [2010.03.12 16:56:01 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll [2010.03.12 16:56:01 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll [2010.03.12 16:55:06 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll [2010.03.12 16:44:52 | 000,000,000 | -H-D | C] -- C:\Windows\msdownld.tmp [2010.03.12 16:44:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\directx [2010.03.12 16:17:01 | 000,000,000 | ---D | C] -- C:\Programme\Google [2010.03.12 16:16:58 | 000,000,000 | ---D | C] -- C:\Users\XXX\AppData\Local\Google [2010.03.11 20:30:39 | 000,000,000 | ---D | C] -- C:\Programme\Zattoo4 [2010.03.11 20:14:25 | 000,012,464 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\avgrsstx.dll [2010.03.11 19:01:50 | 000,000,000 | ---D | C] -- C:\Programme\Spybot - Search & Destroy [2010.03.11 19:01:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy [2010.03.11 17:27:04 | 000,000,000 | ---D | C] -- C:\Users\XXXDocuments\Meine empfangenen Dateien [2010.03.10 22:38:29 | 003,023,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbon.dll [2010.03.10 22:38:29 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbonRes.dll [2010.03.10 22:38:29 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll [2010.03.10 22:38:08 | 000,369,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll [2010.03.10 22:38:07 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecs.dll [2010.03.10 22:38:07 | 000,829,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll [2010.03.10 22:38:07 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll [2010.03.10 22:38:07 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll [2010.03.10 22:38:07 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiagn.dll [2010.03.10 22:38:07 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll [2010.03.10 22:38:07 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsRasterService.dll [2010.03.10 22:38:07 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdd.dll [2010.03.10 22:38:07 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelineprxy.dll [2010.03.10 22:38:06 | 001,554,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xpsservices.dll [2010.03.10 22:38:06 | 001,064,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll [2010.03.10 22:38:06 | 001,030,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll [2010.03.10 22:38:06 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OpcServices.dll [2010.03.10 22:38:06 | 000,793,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FntCache.dll [2010.03.10 22:38:06 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelinesvc.exe [2010.03.10 22:38:06 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll [2010.03.10 22:38:06 | 000,486,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll [2010.03.10 22:38:06 | 000,481,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll [2010.03.10 22:38:06 | 000,351,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll [2010.03.10 22:38:06 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PhotoMetadataHandler.dll [2010.03.10 22:38:06 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiag.exe [2010.03.10 22:38:06 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll [2010.03.10 22:38:06 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll [2010.03.10 22:38:06 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll [2010.03.10 22:37:41 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\BthMtpContextHandler.dll [2010.03.10 22:37:41 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDShextAutoplay.exe [2010.03.10 22:37:39 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceConnectApi.dll [2010.03.10 22:37:38 | 000,546,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpd_ci.dll [2010.03.10 22:37:38 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDSp.dll [2010.03.10 22:37:38 | 000,334,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceApi.dll [2010.03.10 22:37:38 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceWMDRM.dll [2010.03.10 22:37:38 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceTypes.dll [2010.03.10 22:37:38 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceClassExtension.dll [2010.03.10 22:37:04 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\oleaccrc.dll [2010.03.10 22:37:03 | 000,555,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAutomationCore.dll [2010.03.10 22:31:15 | 004,240,384 | ---- | C] (Microsoft) -- C:\Windows\System32\GameUXLegacyGDFs.dll [2010.03.10 22:31:15 | 001,696,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll [2010.03.10 22:31:15 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Apphlpdm.dll [2010.03.10 22:25:23 | 000,000,000 | ---D | C] -- C:\Users\XXX\Documents\Sony Ericsson [2010.03.10 22:15:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\eu-ES [2010.03.10 22:15:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\ca-ES [2010.03.10 22:15:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\vi-VN [2010.03.10 21:31:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Messenger Plus! [2010.03.10 21:31:12 | 000,000,000 | ---D | C] -- C:\Programme\Messenger Plus! Live [2010.03.10 21:21:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders [2010.03.10 21:20:54 | 012,240,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0007.dll [2010.03.10 21:20:51 | 001,081,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLCExt.dll [2010.03.10 21:20:49 | 002,134,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FunctionDiscoveryFolder.dll [2010.03.10 21:20:49 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DevicePairingWizard.exe [2010.03.10 21:20:48 | 002,644,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NlsLexicons0009.dll [2010.03.10 21:20:46 | 001,480,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssrch.dll [2010.03.10 21:20:45 | 000,684,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\spsys.sys [2010.03.10 21:20:44 | 001,576,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tquery.dll [2010.03.10 21:20:43 | 000,779,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationNative_v0300.dll [2010.03.10 21:20:42 | 000,928,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scavenge.dll [2010.03.10 21:20:41 | 002,241,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msi.dll [2010.03.10 21:20:41 | 000,677,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imapi2fs.dll [2010.03.10 21:20:39 | 000,968,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wcnwiz2.dll [2010.03.10 21:20:39 | 000,291,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WscEapPr.dll [2010.03.10 21:20:38 | 000,619,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\icardagt.exe [2010.03.10 21:20:36 | 001,216,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayCpl.dll [2010.03.10 21:20:36 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EhStorShell.dll [2010.03.10 21:20:35 | 000,978,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmv2clt.dll [2010.03.10 21:20:35 | 000,289,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spinstall.exe [2010.03.10 21:20:35 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spreview.exe [2010.03.10 21:20:34 | 000,438,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mcupdate_GenuineIntel.dll [2010.03.10 21:20:34 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwizui.dll [2010.03.10 21:20:33 | 000,670,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssvp.dll [2010.03.10 21:20:32 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSMPEG2VDEC.DLL [2010.03.10 21:20:32 | 000,378,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imapi2.dll [2010.03.10 21:20:32 | 000,351,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssph.dll [2010.03.10 21:20:32 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssphtb.dll [2010.03.10 21:20:31 | 001,459,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\esent.dll [2010.03.10 21:20:31 | 000,729,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IMJP10K.DLL [2010.03.10 21:20:31 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DevicePairing.dll [2010.03.10 21:20:31 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sdohlp.dll [2010.03.10 21:20:30 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sperror.dll [2010.03.10 21:20:30 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\korwbrkr.dll [2010.03.10 21:20:23 | 000,463,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IasMigReader.exe [2010.03.10 21:20:23 | 000,041,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHostProxy.dll [2010.03.10 21:20:22 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msshsq.dll [2010.03.10 21:20:22 | 000,228,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLC.dll [2010.03.10 21:20:19 | 001,589,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjet40.dll [2010.03.10 21:20:16 | 001,381,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Query.dll [2010.03.10 21:20:16 | 001,078,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\diagperf.dll [2010.03.10 21:20:16 | 000,883,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IMJP10.IME [2010.03.10 21:20:16 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msexch40.dll [2010.03.10 21:20:16 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\P2PGraph.dll [2010.03.10 21:20:15 | 001,792,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mmc.exe [2010.03.10 21:20:15 | 000,986,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe [2010.03.10 21:20:15 | 000,950,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mblctr.exe [2010.03.10 21:20:15 | 000,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll [2010.03.10 21:20:15 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srchadmin.dll [2010.03.10 21:20:15 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\uDWM.dll [2010.03.10 21:20:14 | 000,880,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RacEngn.dll [2010.03.10 21:20:14 | 000,466,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\riched20.dll [2010.03.10 21:20:14 | 000,454,144 | ---- | C] (Microsoft) -- C:\Windows\System32\IasMigPlugin.dll [2010.03.10 21:20:14 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdBth.dll [2010.03.10 21:20:12 | 002,012,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\milcore.dll [2010.03.10 21:20:12 | 001,112,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll [2010.03.10 21:20:12 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NaturalLanguage6.dll [2010.03.10 21:20:12 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spoolss.dll [2010.03.10 21:20:12 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EhStorAPI.dll [2010.03.10 21:20:10 | 000,950,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gpedit.dll [2010.03.10 21:20:10 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msvcp60.dll [2010.03.10 21:20:10 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msjtes40.dll [2010.03.10 21:20:10 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayDriverLib.dll [2010.03.10 21:20:10 | 000,099,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\infocardapi.dll [2010.03.10 21:20:09 | 003,217,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinSAT.exe [2010.03.10 21:20:08 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Magnify.exe [2010.03.10 21:20:08 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstext40.dll [2010.03.10 21:20:08 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationSettings.exe [2010.03.10 21:20:08 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AuxiliaryDisplayServices.dll [2010.03.10 21:20:07 | 001,524,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsAnytimeUpgradeCPL.dll [2010.03.10 21:20:07 | 001,209,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\comsvcs.dll [2010.03.10 21:20:07 | 000,454,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxbde40.dll [2010.03.10 21:20:07 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msexcl40.dll [2010.03.10 21:20:07 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisrndr.ax [2010.03.10 21:20:07 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\slwmi.dll [2010.03.10 21:20:06 | 001,985,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\authui.dll [2010.03.10 21:20:05 | 001,086,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\NetProjW.dll [2010.03.10 21:20:05 | 000,643,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrepl40.dll [2010.03.10 21:20:05 | 000,323,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHost.exe [2010.03.10 21:20:04 | 002,926,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe [2010.03.10 21:20:04 | 000,640,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\bthprops.cpl [2010.03.10 21:20:04 | 000,469,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\newdev.dll [2010.03.10 21:20:04 | 000,205,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eudcedit.exe [2010.03.10 21:20:04 | 000,119,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iasrecst.dll [2010.03.10 21:20:04 | 000,102,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll [2010.03.10 21:20:03 | 000,368,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mspbde40.dll [2010.03.10 21:20:02 | 001,788,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d9.dll [2010.03.10 21:20:02 | 001,135,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42.dll [2010.03.10 21:20:02 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msltus40.dll [2010.03.10 21:20:02 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\davclnt.dll [2010.03.10 21:20:01 | 001,053,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdtctm.dll [2010.03.10 21:20:01 | 000,344,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrd3x40.dll [2010.03.10 21:20:01 | 000,250,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wevtapi.dll [2010.03.10 21:20:01 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nlhtml.dll [2010.03.10 21:20:01 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EhStorPwdMgr.dll [2010.03.10 21:20:00 | 000,614,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ci.dll [2010.03.10 21:20:00 | 000,582,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLCommDlg.dll [2010.03.10 21:20:00 | 000,483,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\samsrv.dll [2010.03.10 21:20:00 | 000,443,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32spl.dll [2010.03.10 21:20:00 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WcnNetsh.dll [2010.03.10 21:19:59 | 001,730,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\apds.dll [2010.03.10 21:19:59 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\compcln.exe [2010.03.10 21:19:58 | 000,618,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mswstr10.dll [2010.03.10 21:19:58 | 000,223,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys [2010.03.10 21:19:58 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xmlfilter.dll [2010.03.10 21:19:57 | 001,160,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42u.dll [2010.03.10 21:19:56 | 000,926,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe [2010.03.10 21:19:56 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sqlsrv32.dll [2010.03.10 21:19:56 | 000,409,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbc32.dll [2010.03.10 21:19:56 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SLUI.exe [2010.03.10 21:19:56 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrd2x40.dll [2010.03.10 21:19:56 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\eapphost.dll [2010.03.10 21:19:56 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\propdefs.dll [2010.03.10 21:19:55 | 001,856,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dbgeng.dll [2010.03.10 21:19:55 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wevtutil.exe [2010.03.10 21:19:55 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssitlb.dll [2010.03.10 21:19:54 | 002,167,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mmcndmgr.dll [2010.03.10 21:19:51 | 001,533,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wcnwiz.dll [2010.03.10 21:19:51 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netlogon.dll [2010.03.10 21:19:51 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\evr.dll [2010.03.10 21:19:51 | 000,378,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\devmgr.dll [2010.03.10 21:19:51 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adsldpc.dll [2010.03.10 21:19:51 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drvinst.exe [2010.03.10 21:19:51 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msctfp.dll [2010.03.10 21:19:51 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DevicePairingProxy.dll [2010.03.10 21:19:51 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscb.dll [2010.03.10 21:19:51 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fdBthProxy.dll [2010.03.10 21:19:50 | 001,382,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVSDECD.DLL [2010.03.10 21:19:50 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quick.ime [2010.03.10 21:19:50 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\phon.ime [2010.03.10 21:19:50 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cintlgnt.ime [2010.03.10 21:19:50 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\chajei.ime [2010.03.10 21:19:49 | 001,143,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wercon.exe [2010.03.10 21:19:49 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adtschema.dll [2010.03.10 21:19:49 | 000,560,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdtcprx.dll [2010.03.10 21:19:49 | 000,323,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certcli.dll [2010.03.10 21:19:49 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qintlgnt.ime [2010.03.10 21:19:49 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mimefilt.dll [2010.03.10 21:19:48 | 000,996,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMNetMgr.dll [2010.03.10 21:19:48 | 000,856,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mswdat10.dll [2010.03.10 21:19:48 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certutil.exe [2010.03.10 21:19:48 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PhotoScreensaver.scr [2010.03.10 21:19:48 | 000,396,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ipsmsnap.dll [2010.03.10 21:19:48 | 000,332,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msihnd.dll [2010.03.10 21:19:48 | 000,274,432 | ---- | C] (Microsoft Corporation) -- |
14.03.2010, 22:15 | #8 |
| Firefox öffnet neue Fenster So hab beide dateien im anhang. |
15.03.2010, 07:42 | #9 |
| Firefox öffnet neue Fenster Hi, die Aksbar existiert noch als FF-Plugin: FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.6.6.117
Code:
ATTFilter O2 - BHO: (LimeWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found O3 - HKLM\..\Toolbar: (LimeWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found O3 - HKCU\..\Toolbar\WebBrowser: (LimeWire Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found [2010.03.10 18:30:50 | 000,000,000 | ---D | C] -- C:\Users\xXX\AppData\Local\AskToolbar :Commands [emptytemp] [Reboot]
Arbeite alles was unter dem Link angegeben ist ab und berichte dann im Thread! Erstmal keine PlugIns installieren und das gemachte Backup von Firefox nicht einspielen. http://www.trojaner-board.de/411645-post19.html chris
__________________ Don't bring me down Vor dem posten beachten! Spenden (Wer spenden will, kann sich gerne melden ) |
15.03.2010, 18:15 | #10 |
| Firefox öffnet neue Fenster hey! Scheint geklappt zu haben!! Danke vielmals!! Hab noch eine kleine Frage. AVG findet ständig atdmt cookies. Ist das normal? |
16.03.2010, 07:28 | #11 |
| Firefox öffnet neue Fenster Hi, die Cookies können alles mögliches sein, werden normalerweise zur Identifikation des Users benutzt... chris
__________________ Don't bring me down Vor dem posten beachten! Spenden (Wer spenden will, kann sich gerne melden ) |
Themen zu Firefox öffnet neue Fenster |
anti-malware, appdatalow, ask toolbar, ask.com, avg free, avg security toolbar, bösartige, ccleaner, current, dateien, explorer, fenster, finds, firefox, gefunde, gereinigt, gupdate, home premium, local, local\temp, malwarebytes, minute, neue, notepad.exe, online, plug-in, pop-up-blocker, problem, programdata, safer networking, service, software, start menu, temp, update, users, version, verzeichnisse, vollständiger, wscript.exe, öffnen, öffnet |