Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 04.08.2010, 17:35   #1
SanchezZ
 
Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes - Standard

Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes



Hallo alle zusammen,

leider habe ich auch irgendwie diese schöne "Antivirenprogramm" bekommen.
Hab mir dazu die Threads http://www.trojaner-board.de/85744-d...tfernen-3.html und http://www.trojaner-board.de/85664-d...eder-da-2.html durchgelesen. Hab mir dann "Rkill" (hat zumindestens den Kram schließen können, ist beim Neustart trrotzdem jedes Mal wieder da), Malwarebytes und OTL runtergeladen, geupdatet und die Test gemacht. Hier die Logs dazu:



Malewarebytes:

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Datenbank Version: 4388

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

04.08.2010 17:32:49
mbam-log-2010-08-04 (17-32-49).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|J:\|)
Durchsuchte Objekte: 373953
Laufzeit: 1 Stunde(n), 9 Minute(n), 22 Sekunde(n)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 3
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 14

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\syncman (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wqq8j7usccwd (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\regedit32 (Trojan.Agent) -> Delete on reboot.

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
c:\Users\J-Lakylz\wuaucldt.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\J-Lakylz\AppData\Local\Temp\NS816.tmp (Spyware.Passwords) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\acid\ACID KEY CRACK 4.0.exe (Trojan.Agent) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\NI - Absynth 3.0.1.15\keygen.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\NI - Battery 2.0.0.8\KeyGen - NI - Battery 2.0.0.8.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\Steinberg - Groove Agent\GrooveAgent_InstallCrack.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\Steinberg - Groove Agent\crack\GrooveAgent_InstallCrack.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
J:\Alte Daten\J-Lakylz\Software - Treiber\audition\Adobe Audition v3.0\Keygen.EXE (Trojan.Agent.CK) -> Quarantined and deleted successfully.
J:\vst-plugs\Native.Instruments.Guitar.Rig.v1.0.0.2.Incl.KeyGen-H2O\guitar_rig_keygen.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
J:\vst-plugs\trilogy\kg-trilogy.exe (Backdoor.Hupigon) -> Quarantined and deleted successfully.
C:\Users\J-Lakylz\AppData\Roaming\chrtmp (Malware.Trace) -> Quarantined and deleted successfully.
C:\Users\J-Lakylz\AppData\Local\Temp\m.28619.tmp.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Users\J-Lakylz\AppData\Local\Temp\wrfwe_di.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\J-Lakylz\oashdihasidhasuidhiasdhiashdiuasdhasd (Malware.Trace) -> Quarantined and deleted successfully.


---


OTL:


OTL logfile created on: 04.08.2010 18:03:46 - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\J-Lakylz\Desktop
Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 69,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 228,90 Gb Free Space | 76,79% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive J: | 465,75 Gb Total Space | 250,01 Gb Free Space | 53,68% Space Free | Partition Type: NTFS

Computer Name: STUDIO65
Current User Name: J-Lakylz
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Users\J-Lakylz\Desktop\herbert.exe (OldTimer Tools)
PRC - C:\Windows\System32\Macromed\Flash\FlashUtil10h_ActiveX.exe (Adobe Systems, Inc.)
PRC - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
PRC - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE (Logitech, Inc.)
PRC - C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
PRC - C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
PRC - C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
PRC - C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira GmbH)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - \\?\C:\Windows\System32\wbem\WMIADAP.EXE ()
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conhost.exe (Microsoft Corporation)
PRC - C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation)
PRC - C:\Programme\avmwlanstick\WLanGUI.exe (AVM Berlin)
PRC - C:\Programme\avmwlanstick\WLanNetService.exe (AVM Berlin)
PRC - C:\Program Files\Creative Professional\E-MU PatchMix DSP\EmuPMixDSP.exe (E-MU Systems)
PRC - C:\Windows\System32\CTHELPER.EXE (Creative Technology Ltd)
PRC - C:\Program Files\Syncrosoft\POS\H2O\cledx.exe (Team H2O)


========== Modules (SafeList) ==========

MOD - C:\Users\J-Lakylz\Desktop\herbert.exe (OldTimer Tools)
MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
MOD - C:\Windows\System32\msscript.ocx (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll File not found
SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe File not found
SRV - (Stereo Service) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (LBTServ) -- C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe (Logitech, Inc.)
SRV - (AntiVirService) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Avira GmbH)
SRV - (AntiVirSchedulerService) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira GmbH)
SRV - (SwitchBoard) -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
SRV - (PNRPsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
SRV - (AxInstSV) ActiveX-Installer (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
SRV - (AVM WLAN Connection Service) -- C:\Programme\avmwlanstick\WLanNetService.exe (AVM Berlin)


========== Driver Services (SafeList) ==========

DRV - (SetupNTGLM7X) -- E:\NTGLM7X.sys File not found
DRV - (NTACCESS) -- E:\NTACCESS.sys File not found
DRV - (GMSIPCI) -- E:\INSTALL\GMSIPCI.SYS File not found
DRV - (sptd) -- C:\Windows\System32\Drivers\sptd.sys ()
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (LMouFilt) -- C:\Windows\System32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\Windows\System32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (avipbb) -- C:\Windows\System32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\Windows\System32\drivers\avgntflt.sys (Avira GmbH)
DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
DRV - (RDID1027) -- C:\Windows\System32\drivers\Rdwm1027.sys (Roland Corporation)
DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (vmbus) -- C:\Windows\system32\DRIVERS\vmbus.sys (Microsoft Corporation)
DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
DRV - (storflt) -- C:\Windows\system32\DRIVERS\vmstorfl.sys (Microsoft Corporation)
DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
DRV - (storvsc) -- C:\Windows\system32\DRIVERS\storvsc.sys (Microsoft Corporation)
DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
DRV - (Brserid) Brother MFC-Seriellschnittstellentreiber (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
DRV - (rdpbus) -- C:\Windows\System32\drivers\rdpbus.sys (Microsoft Corporation)
DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
DRV - (1394ohci) -- C:\Windows\System32\drivers\1394ohci.sys (Microsoft Corporation)
DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
DRV - (s3cap) -- C:\Windows\system32\DRIVERS\vms3cap.sys (Microsoft Corporation)
DRV - (VMBusHID) -- C:\Windows\system32\DRIVERS\VMBusHID.sys (Microsoft Corporation)
DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
DRV - (HidBatt) -- C:\Windows\system32\DRIVERS\HidBatt.sys (Microsoft Corporation)
DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
DRV - (AmdPPM) -- C:\Windows\system32\DRIVERS\amdppm.sys (Microsoft Corporation)
DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BrUsbMdm) Brother MFC-nur-Fax-Modem (USB) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) Brother MFC-WDM-Treiber (USB,seriell) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (BrSerWdm) Brother WDM-Treiber (seriell) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
DRV - (FETNDIS) -- C:\Windows\System32\drivers\fetnd6.sys (VIA Technologies, Inc. )
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
DRV - (ssmdrv) -- C:\Windows\System32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (fwlanusbn) -- C:\Windows\System32\drivers\fwlanusbn.sys (AVM GmbH)
DRV - (ha10kx2k) -- C:\Windows\System32\drivers\HA10KX2K.SYS (Creative Technology Ltd)
DRV - (emupia) -- C:\Windows\System32\drivers\EMUPIA2K.SYS (Creative Technology Ltd)
DRV - (ctsfm2k) -- C:\Windows\System32\drivers\CTSFM2K.SYS (Creative Technology Ltd)
DRV - (ctprxy2k) -- C:\Windows\System32\drivers\CTPRXY2K.SYS (Creative Technology Ltd)
DRV - (ossrv) -- C:\Windows\System32\drivers\CTOSS2K.SYS (Creative Technology Ltd.)
DRV - (ctaud2k) Creative Audio Driver (WDM) -- C:\Windows\System32\drivers\CTAUD2K.SYS (Creative Technology Ltd)
DRV - (ctac32k) -- C:\Windows\System32\drivers\CTAC32K.SYS (Creative Technology Ltd)
DRV - (CTEXFIFX.SYS) -- C:\Windows\System32\drivers\CTEXFIFX.SYS (Creative Technology Ltd.)
DRV - (CTEXFIFX) -- C:\Windows\System32\drivers\CTEXFIFX.SYS (Creative Technology Ltd.)
DRV - (CTEDSPIO.SYS) -- C:\Windows\System32\drivers\CTEDSPIO.SYS (Creative Technology Ltd)
DRV - (CTEDSPIO) -- C:\Windows\System32\drivers\CTEDSPIO.SYS (Creative Technology Ltd)
DRV - (CTEDSPSY.SYS) -- C:\Windows\System32\drivers\CTEDSPSY.SYS (Creative Technology Ltd)
DRV - (CTEDSPSY) -- C:\Windows\System32\drivers\CTEDSPSY.SYS (Creative Technology Ltd)
DRV - (CTHWIUT.SYS) -- C:\Windows\System32\drivers\CTHWIUT.SYS (Creative Technology Ltd.)
DRV - (CTHWIUT) -- C:\Windows\System32\drivers\CTHWIUT.SYS (Creative Technology Ltd.)
DRV - (CT20XUT.SYS) -- C:\Windows\System32\drivers\CT20XUT.SYS (Creative Technology Ltd.)
DRV - (CT20XUT) -- C:\Windows\System32\drivers\CT20XUT.SYS (Creative Technology Ltd.)
DRV - (CTERFXFX.SYS) -- C:\Windows\System32\drivers\CTERFXFX.SYS (Creative Technology Ltd)
DRV - (CTERFXFX) -- C:\Windows\System32\drivers\CTERFXFX.SYS (Creative Technology Ltd)
DRV - (CTEDSPFX.SYS) -- C:\Windows\System32\drivers\CTEDSPFX.SYS (Creative Technology Ltd)
DRV - (CTEDSPFX) -- C:\Windows\System32\drivers\CTEDSPFX.SYS (Creative Technology Ltd)
DRV - (CTEAPSFX.SYS) -- C:\Windows\System32\drivers\CTEAPSFX.SYS (Creative Technology Ltd)
DRV - (CTEAPSFX) -- C:\Windows\System32\drivers\CTEAPSFX.SYS (Creative Technology Ltd)
DRV - (CTSBLFX.SYS) -- C:\Windows\System32\drivers\CTSBLFX.SYS (Creative Technology Ltd)
DRV - (CTSBLFX) -- C:\Windows\System32\drivers\CTSBLFX.SYS (Creative Technology Ltd)
DRV - (CTAUDFX.SYS) -- C:\Windows\System32\drivers\CTAUDFX.SYS (Creative Technology Ltd)
DRV - (CTAUDFX) -- C:\Windows\System32\drivers\CTAUDFX.SYS (Creative Technology Ltd)
DRV - (COMMONFX.SYS) -- C:\Windows\System32\drivers\COMMONFX.SYS (Creative Technology Ltd)
DRV - (COMMONFX) -- C:\Windows\System32\drivers\COMMONFX.SYS (Creative Technology Ltd)
DRV - (CLEDX) -- C:\Windows\System32\drivers\cledx.sys (Team H2O)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 2D AA 74 20 D1 1D CB 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}: C:\Program Files\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2010.08.04 09:11:30 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems Incorporated.)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office12\GR469A~1.DLL (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems Incorporated.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [AVMWlanClient] C:\Programme\avmwlanstick\WLanGUI.exe (AVM Berlin)
O4 - HKLM..\Run: [CTHelper] C:\Windows\System32\CTHELPER.EXE (Creative Technology Ltd)
O4 - HKLM..\Run: [CTxfiHlp] C:\Windows\System32\CTXFIHLP.EXE (Creative Technology Ltd)
O4 - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe (Team H2O)
O4 - HKLM..\Run: [ Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Desktop Security] C:\Users\J-Lakylz\AppData\Roaming\Desktop Security\Desktop Security 2010.exe ()
O4 - HKCU..\Run: [Regedit32] C:\Windows\System32\regedit.exe File not found
O4 - HKCU..\Run: [SecurityCenter] C:\Users\J-Lakylz\AppData\Roaming\Desktop Security\securitycenter.exe ()
O4 - Startup: C:\Users\J-Lakylz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~2\Office12\GRA32A~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~2\Office12\GR469A~1.DLL (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - Unable to obtain root file information for disk C:\
O32 - Unable to obtain root file information for disk J:\
O33 - MountPoints2\{88ec339e-8a80-11df-af14-001c4afcd072}\Shell - "" = AutoRun
O33 - MountPoints2\{88ec339e-8a80-11df-af14-001c4afcd072}\Shell\AutoRun\command - "" = M:\pushinst.exe -- File not found
O33 - MountPoints2\{e322a0fd-89e0-11df-b2ef-001c4afcd072}\Shell - "" = AutoRun
O33 - MountPoints2\{e322a0fd-89e0-11df-b2ef-001c4afcd072}\Shell\AutoRun\command - "" = K:\Adobe CS5\Set-up.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010.08.04 18:02:16 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Users\J-Lakylz\Desktop\herbert.exe
[2010.08.04 15:25:07 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Malwarebytes
[2010.08.04 15:25:00 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.08.04 15:24:57 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.08.04 15:24:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010.08.04 15:24:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.08.04 14:06:00 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\mp3DirectCut
[2010.08.04 13:50:54 | 000,000,000 | ---D | C] -- C:\Program Files\mp3DirectCut
[2010.08.04 13:43:20 | 000,311,296 | ---- | C] (Koyote Soft - hxxp://www.koyotesoft.com) -- C:\Windows\System32\TubeFinder.exe
[2010.08.04 13:43:17 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6STKIT.DLL
[2010.08.04 13:43:16 | 000,119,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\VB6FR.DLL
[2010.08.04 13:43:16 | 000,084,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PICCLP32.OCX
[2010.08.04 13:43:16 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PCCLPFR.DLL
[2010.08.04 13:43:15 | 000,152,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\COMDLG32.OCX
[2010.08.04 13:43:15 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCMCFR.DLL
[2010.08.04 13:43:15 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CMDLGFR.DLL
[2010.08.04 13:43:15 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\FreeFLVConverter
[2010.08.04 13:43:15 | 000,000,000 | ---D | C] -- C:\Program Files\Free FLV Converter
[2010.08.04 13:41:00 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Application Data
[2010.08.04 13:30:10 | 000,000,000 | ---D | C] -- C:\Downloads
[2010.08.04 13:29:39 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\GetGo Software
[2010.08.04 13:29:16 | 000,000,000 | ---D | C] -- C:\Program Files\GetGo Software
[2010.08.04 11:58:14 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\FlashGet
[2010.08.04 11:58:03 | 000,000,000 | ---D | C] -- C:\Program Files\FlashGet
[2010.08.04 11:53:13 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2010.08.04 11:52:59 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2010.08.04 11:52:52 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live SkyDrive
[2010.08.04 11:51:23 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2010.08.04 11:50:52 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll
[2010.08.04 11:49:44 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2010.08.04 11:46:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Windows Live
[2010.08.04 11:26:20 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Avira
[2010.08.04 11:14:29 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2010.08.04 11:14:27 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avipbb.sys
[2010.08.04 11:14:27 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\avgntflt.sys
[2010.08.04 11:14:27 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntdd.sys
[2010.08.04 11:14:27 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\Windows\System32\drivers\avgntmgr.sys
[2010.08.04 11:14:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2010.08.04 11:14:26 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2010.08.04 11:04:19 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Desktop Security
[2010.08.04 10:04:38 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1986-12.com.adobe
[2010.08.04 09:54:06 | 000,000,000 | ---D | C] -- C:\ProgramData\ALM
[2010.08.04 09:48:32 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Adobe
[2010.08.04 09:48:00 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Adobe Flash Builder 4
[2010.08.04 09:08:12 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Media Player
[2010.08.04 09:07:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PX Storage Engine
[2010.08.04 09:07:45 | 000,000,000 | ---D | C] -- C:\Program Files\My Company Name
[2010.08.04 09:04:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2010.07.29 13:10:21 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\Diagnostics
[2010.07.29 10:10:50 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Desktop\adobe
[2010.07.25 14:08:50 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\Macromedia
[2010.07.25 14:08:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Macromedia
[2010.07.25 13:44:25 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Documents\Updater
[2010.07.25 13:41:30 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Adobe PDF
[2010.07.25 13:41:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe Systems Shared
[2010.07.23 15:27:32 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Ashampoo
[2010.07.23 15:27:24 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\ashampoo
[2010.07.23 15:27:24 | 000,000,000 | ---D | C] -- C:\ProgramData\ashampoo
[2010.07.23 15:27:09 | 000,000,000 | ---D | C] -- C:\Program Files\Ashampoo Photo Commander 7
[2010.07.23 15:07:05 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Desktop\Videos
[2010.07.22 11:11:42 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Desktop\Bewerbungen 2010
[2010.07.21 18:00:16 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Desktop\100CANON
[2010.07.21 09:20:40 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Desktop\DCIM
[2010.07.21 08:42:26 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Desktop\Samplitude videos
[2010.07.09 12:40:56 | 000,033,792 | ---- | C] (Team H2O) -- C:\Windows\System32\drivers\cledx.sys
[2010.07.09 12:40:46 | 000,401,462 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\temp.004
[2010.07.09 12:40:13 | 000,401,462 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\temp.003
[2010.07.09 12:40:13 | 000,045,056 | ---- | C] (SIA Syncrosoft) -- C:\Windows\System32\Synsopos.exe
[2010.07.09 12:40:11 | 000,708,608 | ---- | C] (SIA Syncrosoft) -- C:\Windows\System32\SYNSOACC.dll
[2010.07.09 12:40:11 | 000,147,456 | ---- | C] (SIA Syncrosoft) -- C:\Windows\System32\SynsoLChk.dll
[2010.07.09 12:40:11 | 000,000,000 | ---D | C] -- C:\Program Files\Syncrosoft
[2010.07.09 12:09:49 | 002,785,792 | ---- | C] (AiR) -- C:\Windows\System32\GuaD.dll
[2010.07.09 12:09:49 | 002,442,752 | ---- | C] (AD and Gouda © 1999-2010) -- C:\Windows\System32\SYNSOEMU.DLL
[2010.07.09 11:04:26 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Hardcore
[2010.07.08 17:50:12 | 000,000,000 | ---D | C] -- C:\Windows\AVM_Driver
[2010.07.08 17:50:09 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AVM_Driver
[2010.07.08 17:14:42 | 000,000,000 | ---D | C] -- C:\Program Files\Spectrasonics
[2010.07.08 17:07:11 | 000,090,112 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2010.07.08 16:37:25 | 000,000,000 | ---D | C] -- C:\Program Files\ASIO4ALL v2
[2010.07.08 16:37:08 | 000,225,280 | ---- | C] (Propellerhead Software AB) -- C:\Windows\System32\rewire.dll
[2010.07.08 16:37:06 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Documents\Image-Line
[2010.07.08 16:37:00 | 001,554,944 | ---- | C] (HMS hxxp://hp.vector.co.jp/authors/VA012897/) -- C:\Windows\System32\vorbis.acm
[2010.07.08 16:36:47 | 000,000,000 | ---D | C] -- C:\Program Files\Image-Line
[2010.07.08 16:36:45 | 000,000,000 | ---D | C] -- C:\Program Files\Outsim
[2010.07.08 14:57:31 | 000,314,368 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUninst.exe
[2010.07.08 14:06:21 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Leadertech
[2010.07.08 14:06:05 | 000,016,400 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LNonPnP.sys
[2010.07.08 14:05:42 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\LogiShrd
[2010.07.08 14:05:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Logishrd
[2010.07.08 14:05:34 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
[2010.07.08 14:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\LogiShrd
[2010.07.08 14:04:31 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Logitech
[2010.07.08 14:04:31 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Logishrd
[2010.07.08 12:36:47 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\EmuPatchMixDSP
[2010.07.08 12:29:06 | 000,086,016 | ---- | C] (Creative Technology Ltd) -- C:\Windows\System32\cttele.dll
[2010.07.08 12:08:30 | 000,000,000 | ---D | C] -- C:\Program Files\Creative Professional
[2010.07.08 11:13:44 | 000,311,296 | ---- | C] (Roland Corporation) -- C:\Windows\System32\RDDP1027.DAT
[2010.07.08 11:13:44 | 000,061,568 | ---- | C] (Roland Corporation) -- C:\Windows\System32\drivers\Rdwm1027.sys
[2010.07.08 11:13:44 | 000,000,000 | ---D | C] -- C:\Program Files\RdDrv001
[2010.07.08 11:05:08 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010.07.08 11:04:40 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\WinRAR
[2010.07.08 07:42:45 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHost.exe
[2010.07.08 07:42:45 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHostProxy.dll
[2010.07.08 07:42:45 | 000,049,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netfxperf.dll
[2010.07.08 07:40:10 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2010.07.08 07:12:09 | 000,032,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msonpmon.dll
[2010.07.08 07:10:25 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works
[2010.07.08 07:09:50 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2010.07.08 07:09:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2010.07.08 07:09:25 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010.07.08 07:09:25 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2010.07.08 07:07:40 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2010.07.08 07:06:55 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\Microsoft Help
[2010.07.08 07:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2010.07.08 07:06:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2010.07.08 07:06:12 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2010.07.08 07:02:26 | 002,614,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2010.07.08 07:02:24 | 001,037,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
[2010.07.08 07:02:24 | 000,133,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ksecpkg.sys
[2010.07.08 07:02:19 | 002,326,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2010.07.08 07:02:16 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2010.07.08 07:02:16 | 001,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CertEnroll.dll
[2010.07.08 07:02:16 | 000,507,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2010.07.08 07:02:16 | 000,442,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winresume.exe
[2010.07.08 07:02:08 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\asycfilt.dll
[2010.07.08 07:02:07 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2010.07.08 07:02:06 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2010.07.08 07:02:06 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2010.07.08 07:02:06 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010.07.08 07:02:06 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2010.07.08 07:02:02 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll
[2010.07.08 07:02:01 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\t2embed.dll
[2010.07.08 07:01:58 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll
[2010.07.08 07:01:58 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2010.07.08 07:01:58 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2010.07.08 07:01:58 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2010.07.08 07:01:57 | 001,328,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2010.07.08 07:01:57 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\avifil32.dll
[2010.07.08 07:01:57 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mciavi32.dll
[2010.07.08 07:01:56 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2010.07.08 07:01:55 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2010.07.08 07:01:54 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll
[2010.07.08 07:01:54 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc.dll
[2010.07.08 07:01:54 | 000,365,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_isv.dll
[2010.07.08 07:01:54 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_isv.exe
[2010.07.08 07:01:54 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate.exe
[2010.07.08 07:01:54 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp_isv.dll
[2010.07.08 07:01:53 | 000,280,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp.exe
[2010.07.08 07:01:53 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RMActivate_ssp_isv.exe
[2010.07.08 07:01:53 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secproc_ssp.dll
[2010.07.08 07:01:52 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2010.07.08 07:01:43 | 000,293,888 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2010.07.08 07:01:43 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2010.07.08 07:01:43 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2010.07.08 00:43:05 | 000,401,462 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\temp.002
[2010.07.08 00:38:04 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Antares
[2010.07.08 00:38:03 | 000,000,000 | ---D | C] -- C:\Program Files\Antares Audio Technologies
[2010.07.08 00:29:33 | 000,401,462 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\temp.001
[2010.07.08 00:22:26 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Steinberg
[2010.07.08 00:21:57 | 000,016,896 | ---- | C] (SIA Syncrosoft) -- C:\Windows\System32\drivers\synasUSB.sys
[2010.07.08 00:21:20 | 000,401,462 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\temp.000
[2010.07.08 00:20:47 | 000,000,000 | ---D | C] -- C:\Program Files\Steinberg
[2010.07.08 00:05:34 | 000,000,000 | ---D | C] -- C:\Windows\System32\appmgmt
[2010.07.07 23:42:18 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\Xara
[2010.07.07 18:00:05 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010.07.07 17:59:43 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\DAEMON Tools Lite
[2010.07.07 17:59:38 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2010.07.07 14:56:42 | 000,000,000 | ---D | C] -- C:\Windows.old
[2010.07.07 14:52:39 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Documents\My Sessions
[2010.07.07 14:48:30 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2010.07.07 14:47:35 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2010.07.07 14:47:32 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010.07.07 14:46:49 | 015,764,072 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll
[2010.07.07 14:46:49 | 010,888,168 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys
[2010.07.07 14:46:49 | 002,890,856 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvencodemft.dll
[2010.07.07 14:46:49 | 000,795,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpinst.exe
[2010.07.07 14:46:49 | 000,332,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdecodemft.dll
[2010.07.07 14:46:49 | 000,056,936 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
[2010.07.07 14:46:49 | 000,010,920 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd
[2010.07.07 14:46:46 | 010,263,144 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll
[2010.07.07 14:46:46 | 004,513,384 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll
[2010.07.07 14:46:46 | 002,632,296 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll
[2010.07.07 14:46:46 | 002,145,896 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll
[2010.07.07 14:46:46 | 000,232,040 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod1921.dll
[2010.07.07 14:46:46 | 000,232,040 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod.dll
[2010.07.07 14:46:43 | 001,592,424 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll
[2010.07.07 14:46:36 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2010.07.07 14:46:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2010.07.07 14:45:41 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2010.07.07 14:44:13 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\Adobe
[2010.07.07 14:43:15 | 000,000,000 | ---D | C] -- C:\ProgramData\NOS
[2010.07.07 14:41:07 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Macromedia
[2010.07.07 14:41:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010.07.07 14:35:18 | 000,647,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Mscomct2.ocx
[2010.07.07 14:35:17 | 000,041,984 | ---- | C] (Creative Technology Ltd ) -- C:\Windows\Ctregrun.exe
[2010.07.07 14:34:48 | 000,000,000 | ---D | C] -- C:\Windows\Profiles
[2010.07.07 14:34:47 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\Documents\My eBooks
[2010.07.07 14:34:47 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\InterTrust
[2010.07.07 14:34:47 | 000,000,000 | ---D | C] -- C:\Windows\System32\Adobe
[2010.07.07 14:34:47 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Adobe
[2010.07.07 14:34:47 | 000,000,000 | ---D | C] -- C:\Programme\Adobe
[2010.07.07 14:34:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010.07.07 14:34:27 | 000,328,704 | ---- | C] (InstallShield Software Corporation ) -- C:\Windows\IsUn0407.exe
[2010.07.07 14:26:11 | 000,409,600 | ---- | C] (Creative Labs) -- C:\Windows\System32\wrap_oal.dll
[2010.07.07 14:26:11 | 000,114,688 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\System32\OpenAL32.dll
[2010.07.07 14:25:28 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Creative
[2010.07.07 14:25:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\Data
[2010.07.07 14:23:47 | 000,000,000 | -H-D | C] -- C:\Programme\InstallShield Installation Information
[2010.07.07 14:23:44 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010.07.07 14:19:22 | 000,000,000 | ---D | C] -- C:\Programme\avmwlanstick
[2010.07.07 14:19:12 | 000,419,328 | ---- | C] (AVM GmbH) -- C:\Windows\System32\drivers\fwlanusbn.sys
[2010.07.07 14:19:12 | 000,077,824 | ---- | C] (AVM Berlin) -- C:\Windows\System32\fwusbnci.dll
[2010.07.07 14:16:45 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Searches
[2010.07.07 14:16:35 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Identities
[2010.07.07 14:16:29 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Contacts
[2010.07.07 14:16:19 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\VirtualStore
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Vorlagen
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\AppData\Local\Verlauf
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\AppData\Local\Temporary Internet Files
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Startmenü
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\SendTo
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Recent
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Netzwerkumgebung
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Lokale Einstellungen
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Documents\Eigene Videos
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Documents\Eigene Musik
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Eigene Dateien
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Documents\Eigene Bilder
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Druckumgebung
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Cookies
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\AppData\Local\Anwendungsdaten
[2010.07.07 14:16:13 | 000,000,000 | -HSD | C] -- C:\Users\J-Lakylz\Anwendungsdaten
[2010.07.07 14:16:12 | 000,000,000 | --SD | C] -- C:\Users\J-Lakylz\AppData\Roaming\Microsoft
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Videos
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Saved Games
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Pictures
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Music
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Links
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Favorites
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Downloads
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Documents
[2010.07.07 14:16:12 | 000,000,000 | R--D | C] -- C:\Users\J-Lakylz\Desktop
[2010.07.07 14:16:12 | 000,000,000 | -H-D | C] -- C:\Users\J-Lakylz\AppData
[2010.07.07 14:16:12 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\Temp
[2010.07.07 14:16:12 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Local\Microsoft
[2010.07.07 14:16:12 | 000,000,000 | ---D | C] -- C:\Users\J-Lakylz\AppData\Roaming\Media Center Programs
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\Recovery
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\Programme\Gemeinsame Dateien
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\ProgramData\Desktop
[2010.07.07 14:12:36 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2010.07.07 14:07:44 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010.07.07 14:05:32 | 000,000,000 | ---D | C] -- C:\Windows\CSC
[2010.07.07 13:52:44 | 000,000,000 | -HSD | C] -- C:\Boot
[2010.07.07 13:37:31 | 000,000,000 | R--D | C] -- C:\Programme
[2010.07.07 13:36:33 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen
[2010.07.07 13:36:32 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010.07.07 13:12:05 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2008.03.20 15:35:52 | 000,034,816 | ---- | C] ( ) -- C:\Windows\System32\A3D.DLL

========== Files - Modified Within 30 Days ==========

[2010.08.04 18:03:14 | 001,472,002 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010.08.04 18:03:14 | 000,643,628 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2010.08.04 18:03:14 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.08.04 18:03:14 | 000,126,188 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2010.08.04 18:03:14 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.08.04 18:02:22 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\J-Lakylz\Desktop\herbert.exe
[2010.08.04 17:56:59 | 001,835,008 | -HS- | M] () -- C:\Users\J-Lakylz\NTUSER.DAT
[2010.08.04 17:56:15 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.08.04 17:56:11 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.08.04 17:56:06 | 1610,260,480 | -HS- | M] () -- C:\hiberfil.sys
[2010.08.04 17:55:26 | 000,011,564 | ---- | M] () -- C:\Windows\System32\DVCState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.08.04 17:55:26 | 000,001,404 | ---- | M] () -- C:\Windows\System32\BMXCtrlState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.08.04 17:55:26 | 000,001,404 | ---- | M] () -- C:\Windows\System32\BMXBkpCtrlState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.08.04 17:55:26 | 000,000,064 | ---- | M] () -- C:\Windows\System32\BMXStateBkp-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.08.04 17:55:26 | 000,000,064 | ---- | M] () -- C:\Windows\System32\BMXState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.08.04 17:55:14 | 000,936,585 | -H-- | M] () -- C:\Users\J-Lakylz\AppData\Local\IconCache.db
[2010.08.04 16:13:00 | 060,621,828 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Mein Film.wmv
[2010.08.04 16:05:05 | 002,541,468 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Mein Film-mail.wmv
[2010.08.04 15:25:02 | 000,000,983 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.08.04 15:21:39 | 000,363,520 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\rkill.com
[2010.08.04 15:06:12 | 000,017,503 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Mein Film.wlmp
[2010.08.04 14:49:26 | 002,591,073 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\lane100.mp3
[2010.08.04 13:45:32 | 020,155,233 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\[YOUTUBE]-YouTube_-_Swing_Bop_@_Nation_of_Gondwana_2009.mp3
[2010.08.04 11:45:37 | 000,109,392 | ---- | M] () -- C:\Users\J-Lakylz\AppData\Local\GDIPFONTCACHEV1.DAT
[2010.08.04 11:06:12 | 003,766,232 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.07.31 02:13:19 | 000,009,584 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.07.31 02:13:19 | 000,009,584 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.07.28 10:24:23 | 000,001,620 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Photoshop - Verknüpfung.lnk
[2010.07.25 13:41:46 | 000,001,343 | ---- | M] () -- C:\Users\J-Lakylz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk
[2010.07.23 15:28:51 | 000,008,704 | ---- | M] () -- C:\Users\J-Lakylz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.07.23 15:27:23 | 000,000,976 | ---- | M] () -- C:\Users\Public\Desktop\Ashampoo Photo Commander 7.lnk
[2010.07.23 02:37:16 | 000,311,296 | ---- | M] (Koyote Soft - hxxp://www.koyotesoft.com) -- C:\Windows\System32\TubeFinder.exe
[2010.07.14 20:25:19 | 003,486,004 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Porti - Perspektivlos.mp3
[2010.07.10 15:27:44 | 002,753,922 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Aroganter Klugscheißer.mp3
[2010.07.10 01:17:11 | 003,465,524 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Taulend durch Club.mp3
[2010.07.09 14:31:43 | 003,478,274 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\So Sodicksaft.mp3
[2010.07.09 14:30:12 | 002,356,806 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Brust Raus.mp3
[2010.07.09 12:39:10 | 000,000,824 | ---- | M] () -- C:\Users\Public\Desktop\Hypersonic.exe.lnk
[2010.07.09 12:36:48 | 000,272,409 | ---- | M] () -- C:\Windows\System32\TmpA7940296
[2010.07.09 12:11:38 | 000,272,409 | ---- | M] () -- C:\Windows\System32\TmpA6430453
[2010.07.09 01:25:02 | 003,402,504 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - 40 Bars.mp3
[2010.07.09 01:24:38 | 006,690,171 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - Denkmal.mp3
[2010.07.09 01:23:48 | 007,963,274 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - Nie mehr.mp3
[2010.07.09 01:22:52 | 005,561,681 | ---- | M] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - Wie er.mp3
[2010.07.08 16:37:07 | 000,000,767 | ---- | M] () -- C:\Users\Public\Desktop\FL Studio 9.lnk
[2010.07.08 14:06:05 | 000,016,400 | ---- | M] (Logitech, Inc.) -- C:\Windows\System32\drivers\LNonPnP.sys
[2010.07.08 13:04:37 | 004,958,588 | ---- | M] () -- C:\Windows\{00000003-00000000-00000001-00001102-00000004-40011102}.CDF
[2010.07.08 13:03:15 | 000,409,600 | ---- | M] (Creative Labs) -- C:\Windows\System32\wrap_oal.dll
[2010.07.08 13:03:15 | 000,114,688 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\System32\OpenAL32.dll
[2010.07.08 12:36:51 | 000,002,222 | ---- | M] () -- C:\Users\Public\Desktop\PatchMix DSP Application.lnk
[2010.07.08 07:07:18 | 000,000,478 | ---- | M] () -- C:\Windows\win.ini
[2010.07.08 00:11:22 | 000,000,689 | ---- | M] () -- C:\Users\Public\Desktop\Samplitude 11.lnk
[2010.07.07 18:00:27 | 000,691,696 | ---- | M] () -- C:\Windows\System32\drivers\sptd.sys
[2010.07.07 15:02:13 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2010.07.07 15:02:12 | 000,000,355 | RHS- | M] () -- C:\Boot.ini.saved
[2010.07.07 14:49:14 | 000,524,288 | -HS- | M] () -- C:\Users\J-Lakylz\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.07.07 14:49:14 | 000,524,288 | -HS- | M] () -- C:\Users\J-Lakylz\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.07.07 14:49:14 | 000,065,536 | -HS- | M] () -- C:\Users\J-Lakylz\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.07.07 14:16:13 | 000,000,020 | -HS- | M] () -- C:\Users\J-Lakylz\ntuser.ini
[2010.07.07 14:07:57 | 000,057,050 | ---- | M] () -- C:\Windows\System32\license.rtf
[2010.07.07 14:06:42 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.07.07 13:52:36 | 000,000,098 | RHS- | M] () -- C:\autorun.inf
[2010.07.07 12:45:51 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010.07.07 12:45:51 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010.07.07 12:41:25 | 000,000,211 | -H-- | M] () -- C:\Boot.BAK

========== Files Created - No Company Name ==========

[2010.08.04 16:05:22 | 060,621,828 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Mein Film.wmv
[2010.08.04 16:04:19 | 002,541,468 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Mein Film-mail.wmv
[2010.08.04 16:01:03 | 002,591,073 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\lane100.mp3
[2010.08.04 16:00:22 | 000,017,503 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Mein Film.wlmp
[2010.08.04 15:25:02 | 000,000,983 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.08.04 15:21:34 | 000,363,520 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\rkill.com
[2010.08.04 13:44:26 | 020,155,233 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\[YOUTUBE]-YouTube_-_Swing_Bop_@_Nation_of_Gondwana_2009.mp3
[2010.08.04 13:43:16 | 000,364,544 | ---- | C] () -- C:\Windows\System32\PropertyGrid.ocx
[2010.08.04 13:43:16 | 000,208,500 | ---- | C] () -- C:\Windows\System32\ReyXpBasics.tlb
[2010.08.04 13:43:15 | 000,024,576 | ---- | C] () -- C:\Windows\System32\ControlSubX.ocx
[2010.07.28 10:24:23 | 000,001,620 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Photoshop - Verknüpfung.lnk
[2010.07.25 13:41:46 | 000,001,343 | ---- | C] () -- C:\Users\J-Lakylz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk
[2010.07.23 15:28:47 | 000,008,704 | ---- | C] () -- C:\Users\J-Lakylz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.07.23 15:27:23 | 000,000,976 | ---- | C] () -- C:\Users\Public\Desktop\Ashampoo Photo Commander 7.lnk
[2010.07.17 20:19:40 | 002,243,673 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\0guitar.mp3
[2010.07.17 20:16:39 | 004,944,000 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Cypress Hill- Armada Latina (Featuring Marc Anthony & Pitbull - Prod. by Jim Jonsin)(Lyrics).mp3
[2010.07.17 20:10:08 | 003,541,227 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\mixed strings.mp3
[2010.07.17 20:10:08 | 003,313,962 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\kiez.mp3
[2010.07.17 20:10:08 | 003,177,080 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\fizzzzzo.mp3
[2010.07.17 20:10:08 | 002,353,179 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\bpm 100.mp3
[2010.07.14 20:24:42 | 003,486,004 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Porti - Perspektivlos.mp3
[2010.07.10 01:16:53 | 003,465,524 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Taulend durch Club.mp3
[2010.07.09 14:33:39 | 007,963,274 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - Nie mehr.mp3
[2010.07.09 14:33:39 | 005,561,681 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - Wie er.mp3
[2010.07.09 14:33:38 | 006,690,171 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - Denkmal.mp3
[2010.07.09 14:33:38 | 003,402,504 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Kool Savas - 40 Bars.mp3
[2010.07.09 12:40:28 | 000,147,425 | ---- | C] () -- C:\Windows\System32\SYNSOACC-Aide.chm
[2010.07.09 12:40:27 | 000,120,468 | ---- | C] () -- C:\Windows\System32\SYNSOACC-Hilfe.chm
[2010.07.09 12:40:27 | 000,114,279 | ---- | C] () -- C:\Windows\System32\SYNSOACC-Help.chm
[2010.07.09 12:39:10 | 000,000,824 | ---- | C] () -- C:\Users\Public\Desktop\Hypersonic.exe.lnk
[2010.07.09 12:36:48 | 000,272,409 | ---- | C] () -- C:\Windows\System32\TmpA7940296
[2010.07.09 12:11:38 | 000,272,409 | ---- | C] () -- C:\Windows\System32\TmpA6430453
[2010.07.09 00:55:39 | 003,478,274 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\So Sodicksaft.mp3
[2010.07.08 23:04:05 | 002,753,922 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Aroganter Klugscheißer.mp3
[2010.07.08 23:02:07 | 002,356,806 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\Brust Raus.mp3
[2010.07.08 17:46:52 | 003,786,880 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\50 cent tony yayo so seductive INSTRUMENTAL.mp3
[2010.07.08 16:37:08 | 000,000,767 | ---- | C] () -- C:\Users\Public\Desktop\FL Studio 9.lnk
[2010.07.08 13:04:37 | 004,958,588 | ---- | C] () -- C:\Windows\{00000003-00000000-00000001-00001102-00000004-40011102}.CDF
[2010.07.08 13:03:39 | 000,011,564 | ---- | C] () -- C:\Windows\System32\DVCState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.07.08 13:03:39 | 000,001,404 | ---- | C] () -- C:\Windows\System32\BMXCtrlState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.07.08 13:03:39 | 000,001,404 | ---- | C] () -- C:\Windows\System32\BMXBkpCtrlState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.07.08 13:03:39 | 000,000,064 | ---- | C] () -- C:\Windows\System32\BMXStateBkp-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.07.08 13:03:39 | 000,000,064 | ---- | C] () -- C:\Windows\System32\BMXState-{00000003-00000000-00000001-00001102-00000004-40011102}.rfx
[2010.07.08 12:36:51 | 000,002,222 | ---- | C] () -- C:\Users\Public\Desktop\PatchMix DSP Application.lnk
[2010.07.08 11:38:40 | 000,002,560 | ---- | C] () -- C:\Windows\CTXFIRES.DLL
[2010.07.08 11:13:44 | 000,061,440 | ---- | C] () -- C:\Windows\System32\RDCP1027.CPL
[2010.07.08 11:13:44 | 000,007,168 | ---- | C] () -- C:\Windows\System32\RdCi1027.dll
[2010.07.08 00:32:01 | 000,220,117 | ---- | C] () -- C:\Users\J-Lakylz\Desktop\BEATMAST.EXE
[2010.07.08 00:11:22 | 000,000,689 | ---- | C] () -- C:\Users\Public\Desktop\Samplitude 11.lnk
[2010.07.07 18:00:27 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2010.07.07 15:02:12 | 000,000,211 | -H-- | C] () -- C:\Boot.BAK
[2010.07.07 14:46:49 | 000,009,633 | ---- | C] () -- C:\Windows\System32\nvinfo.pb
[2010.07.07 14:34:37 | 000,000,355 | RHS- | C] () -- C:\Boot.ini.saved
[2010.07.07 14:25:04 | 000,044,091 | R--- | C] () -- C:\Windows\System32\e10kxwdm.ini
[2010.07.07 14:19:27 | 000,012,976 | R--- | C] () -- C:\Windows\instwcli.inf
[2010.07.07 14:19:12 | 000,015,917 | ---- | C] () -- C:\Windows\System32\drivers\fwlanusbn.bin
[2010.07.07 14:16:13 | 000,524,288 | -HS- | C] () -- C:\Users\J-Lakylz\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms
[2010.07.07 14:16:13 | 000,524,288 | -HS- | C] () -- C:\Users\J-Lakylz\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms
[2010.07.07 14:16:13 | 000,262,144 | -HS- | C] () -- C:\Users\J-Lakylz\ntuser.dat.LOG1
[2010.07.07 14:16:13 | 000,065,536 | -HS- | C] () -- C:\Users\J-Lakylz\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf
[2010.07.07 14:16:13 | 000,000,020 | -HS- | C] () -- C:\Users\J-Lakylz\ntuser.ini
[2010.07.07 14:16:13 | 000,000,000 | -HS- | C] () -- C:\Users\J-Lakylz\ntuser.dat.LOG2
[2010.07.07 14:16:12 | 001,835,008 | -HS- | C] () -- C:\Users\J-Lakylz\NTUSER.DAT
[2010.07.07 14:06:42 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.07.07 14:05:03 | 1610,260,480 | -HS- | C] () -- C:\hiberfil.sys
[2010.07.07 13:52:48 | 000,008,192 | RHS- | C] () -- C:\BOOTSECT.BAK
[2010.07.07 13:52:44 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2010.07.07 13:00:19 | 000,000,098 | RHS- | C] () -- C:\autorun.inf
[2010.07.07 12:45:51 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010.07.07 12:45:51 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2009.07.14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2008.03.20 16:02:24 | 000,097,461 | ---- | C] () -- C:\Windows\System32\instwdm.ini
[2008.03.20 16:02:24 | 000,000,054 | ---- | C] () -- C:\Windows\System32\ctzapxx.ini
[2008.03.20 15:36:48 | 000,043,520 | ---- | C] () -- C:\Windows\System32\CTBURST.DLL
[2007.04.18 23:07:00 | 000,053,248 | ---- | C] () -- C:\Windows\System32\mgxasio2.dll
[2006.10.02 17:25:18 | 000,000,307 | ---- | C] () -- C:\Windows\System32\KILL.INI
[2005.06.16 18:17:16 | 000,071,680 | ---- | C] () -- C:\Windows\System32\CTMMACTL.DLL
< End of report >

---

OTL Extra:


OTL Extras logfile created on: 04.08.2010 18:03:46 - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\J-Lakylz\Desktop
Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 69,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 228,90 Gb Free Space | 76,79% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive J: | 465,75 Gb Total Space | 250,01 Gb Free Space | 53,68% Space Free | Partition Type: NTFS

Computer Name: STUDIO65
Current User Name: J-Lakylz
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~2\Office12\ONENOTE.EXE "%L" File not found
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{024521CF-C07E-4F8E-8481-0D75695E03AF}" = PxMergeModule
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{236BB7C4-4419-42FD-0407-2E257A25E34D}" = Adobe Photoshop CS2
"{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}" = Windows Live Communications Platform
"{359FC4B0-29ED-4CA8-AD66-CF436931F492}" = Adobe Flash Player 10 Plugin
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{586509F0-350D-48B5-B763-9CC2F8D96C4C}" = Windows Live Sync
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{786C5747-0C40-4930-9AFE-113BCE553101}" = Adobe Stock Photos 1.0
"{7FF0ACFE-4346-4D9D-B822-C69B99AAE1FC}" = Microsoft_VC80_MFCLOC_x86
"{850C7BD3-9F3F-46AD-9396-E7985B38C55E}" = Windows Live Fotogalerie
"{8AE28FB8-B8AE-4B58-A5FE-77F45E462BAE}" = Microsoft_VC80_MFC_x86
"{8EDBA74D-0686-4C99-BFDD-F894678E5101}" = Adobe Common File Installer
"{90120000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2007
"{90120000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2007
"{90120000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2007
"{90120000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2007
"{90120000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2007
"{90120000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2007
"{90120000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2007
"{90120000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2007
"{90120000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2007
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{952D88D2-3E6F-4E40-8553-8070FEFCE5CD}" = Adobe Creative Suite 5 Master Collection
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A7496F46-78AE-4DB2-BCF5-95F210FA6F96}" = Windows Live Movie Maker
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{AB85EE3E-1791-4A85-BD60-CD1349ECBD6C}" = Samplitude 11
"{AC76BA86-7AD7-1031-7B44-A93000000001}" = Adobe Reader 9.3.3 - Deutsch
"{AF890091-2603-C1C6-DCD6-B8799D4FB464}" = Adobe Community Help
"{B4F3A360-E1E2-479D-ADE7-9BE3B07F4539}" = NVIDIA PhysX
"{B74D4E10-6884-0000-0000-000000000101}" = Adobe Bridge 1.0
"{CAFA57E8-8927-4912-AFCF-B0AA3837E989}" = Windows Live Essentials
"{CB07E706-5DD7-4093-83A1-1430D5B6FA75}" = Microsoft_VC80_ATL_x86
"{D7BF3B76-EEF9-4868-9B2B-42ABF60B279A}" = Microsoft_VC80_CRT_x86
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E9787678-119F-4D52-B551-6739B2B22101}" = Adobe Help Center 1.0
"{EFB786FD-D916-416B-A23A-1EBEAF4A9DDC}" = Adobe Flash Player 10 ActiveX
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"Adobe Acrobat 5.0" = Adobe Acrobat 5.0
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-2E257A25E34D}" = Adobe Photoshop CS2
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Antares Autotune DX v4.12" = Antares Autotune DX v4.12
"Antares Autotune VST_is1" = Antares Autotune VST v5.09
"Ashampoo Photo Commander 7_is1" = Ashampoo Photo Commander 7.50
"ASIO4ALL" = ASIO4ALL
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"AVMWLANCLI" = AVM FRITZ!WLAN
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Edirol HQ Orchestral VSTi v1.03" = Edirol HQ Orchestral VSTi v1.03
"E-MU Audio Drivers Hotfix" = E-MU Audio Drivers
"EMU PatchMix DSP" = E-muPatchMix DSP
"ENTERPRISE" = Microsoft Office Enterprise 2007
"FL Studio 9" = FL Studio 9
"Free FLV Converter_is1" = Free FLV Converter V 6.91.0
"Hardcore" = Hardcore
"HS2_is1" = Steinberg Hypersonic 2
"IL Download Manager" = IL Download Manager
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"PoiZone" = PoiZone
"RolandRDID0027" = PCR-Treiber
"Sakura" = Sakura
"Sawer" = Sawer
"SP6" = Logitech SetPoint 6.1
"StylusRMX" = StylusRMX
"SyncroSoft Emu" = SyncroSoft Emu (Remove only)
"Syncrosoft's License Control" = Syncrosofts Lizenz Kontrolle
"Toxic Biohazard" = Toxic Biohazard
"Waves Diamond Bundle v5.0" = Waves Diamond Bundle v5.0
"Waves L3 Multimaximizer v1.0" = Waves L3 Multimaximizer v1.0
"WinLiveSuite_Wave3" = Windows Live Essentials
"WinRAR archiver" = WinRAR

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Desktop Security" = Desktop Security

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 24.07.2010 05:23:42 | Computer Name = Studio65 | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: iexplore.exe, Version: 8.0.7600.16385,
Zeitstempel: 0x4a5bc69e Name des fehlerhaften Moduls: nvd3dum.dll, Version: 8.17.12.5721,
Zeitstempel: 0x4c0d6f2f Ausnahmecode: 0xc0000005 Fehleroffset: 0x00351943 ID des fehlerhaften
Prozesses: 0xe08 Startzeit der fehlerhaften Anwendung: 0x01cb2b1117f3854b Pfad der
fehlerhaften Anwendung: C:\Program Files\Internet Explorer\iexplore.exe Pfad des
fehlerhaften Moduls: C:\Windows\system32\nvd3dum.dll Berichtskennung: 263470e3-9705-11df-9e7b-001c4afcd072

Error - 26.07.2010 03:07:14 | Computer Name = Studio65 | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: Sam.exe, Version: 11.0.0.0, Zeitstempel:
0x4a320c99 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16559, Zeitstempel:
0x4ba9b21e Ausnahmecode: 0xc0000374 Fehleroffset: 0x000c2913 ID des fehlerhaften Prozesses:
0xe60 Startzeit der fehlerhaften Anwendung: 0x01cb2c8e9e13b1ae Pfad der fehlerhaften
Anwendung: J:\Studio\MAGIX\Samplitude 11\Sam.exe Pfad des fehlerhaften Moduls: C:\Windows\SYSTEM32\ntdll.dll
Berichtskennung:
6a8e8e20-9884-11df-9ac1-001c4afcd072

Error - 30.07.2010 04:54:13 | Computer Name = Studio65 | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: iexplore.exe, Version: 8.0.7600.16385,
Zeitstempel: 0x4a5bc69e Name des fehlerhaften Moduls: nvd3dum.dll, Version: 8.17.12.5721,
Zeitstempel: 0x4c0d6f2f Ausnahmecode: 0xc0000005 Fehleroffset: 0x00351943 ID des fehlerhaften
Prozesses: 0x56c Startzeit der fehlerhaften Anwendung: 0x01cb2fc46c23c5c8 Pfad der
fehlerhaften Anwendung: C:\Program Files\Internet Explorer\iexplore.exe Pfad des
fehlerhaften Moduls: C:\Windows\system32\nvd3dum.dll Berichtskennung: 06289067-9bb8-11df-81bf-001c4afcd072

Error - 30.07.2010 12:50:43 | Computer Name = Studio65 | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: WlanNetService.exe, Version: 1.1.0.10,
Zeitstempel: 0x48ca455f Name des fehlerhaften Moduls: netcfgx.dll_unloaded, Version:
0.0.0.0, Zeitstempel: 0x4a5bda86 Ausnahmecode: 0xc0000005 Fehleroffset: 0x707421c8
ID
des fehlerhaften Prozesses: 0x6f4 Startzeit der fehlerhaften Anwendung: 0x01cb300245a2e5c4
Pfad
der fehlerhaften Anwendung: C:\Program Files\avmwlanstick\WlanNetService.exe Pfad
des fehlerhaften Moduls: netcfgx.dll Berichtskennung: 973fa645-9bfa-11df-8746-001c4afcd072

Error - 31.07.2010 19:49:26 | Computer Name = Studio65 | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: Sam.exe, Version: 11.0.0.0, Zeitstempel:
0x4a320c99 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16559, Zeitstempel:
0x4ba9b21e Ausnahmecode: 0xc0000374 Fehleroffset: 0x000c2913 ID des fehlerhaften Prozesses:
0x278 Startzeit der fehlerhaften Anwendung: 0x01cb3105f14663b0 Pfad der fehlerhaften
Anwendung: J:\Studio\MAGIX\Samplitude 11\Sam.exe Pfad des fehlerhaften Moduls: C:\Windows\SYSTEM32\ntdll.dll
Berichtskennung:
40594d3e-9cfe-11df-b4f2-001c4afcd072

Error - 04.08.2010 05:08:38 | Computer Name = Studio65 | Source = Application Hang | ID = 1002
Description = Programm m.28619.tmp.exe, Version 0.0.0.0 kann nicht mehr unter Windows
ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: ca0 Startzeit:
01cb33b4551644e6 Endzeit: 0 Anwendungspfad: C:\Users\J-Lakylz\AppData\Local\Temp\m.28619.tmp.exe

Berichts-ID:


Error - 04.08.2010 05:12:55 | Computer Name = Studio65 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Users\J-Lakylz\AppData\Local\Temp\RarSFX0\redist.dll".
Die
abhängige Assemblierung "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.30729.4148""
konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm
"sxstrace.exe".

Error - 04.08.2010 05:23:43 | Computer Name = Studio65 | Source = Application Hang | ID = 1002
Description = Programm m.28619.tmp.exe, Version 0.0.0.0 kann nicht mehr unter Windows
ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung,
um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 8a4 Startzeit:
01cb33b67fcf8704 Endzeit: 0 Anwendungspfad: C:\Users\J-Lakylz\AppData\Local\Temp\m.28619.tmp.exe

Berichts-ID:


Error - 04.08.2010 05:50:06 | Computer Name = Studio65 | Source = VSS | ID = 8194
Description =

Error - 04.08.2010 09:13:36 | Computer Name = Studio65 | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: WlanNetService.exe, Version: 1.1.0.10,
Zeitstempel: 0x48ca455f Name des fehlerhaften Moduls: avmsysnet.dll, Version: 1.14.0.0,
Zeitstempel: 0x4534dbdd Ausnahmecode: 0xc0000005 Fehleroffset: 0x000029ba ID des fehlerhaften
Prozesses: 0x710 Startzeit der fehlerhaften Anwendung: 0x01cb33d6c10c0740 Pfad der
fehlerhaften Anwendung: C:\Program Files\avmwlanstick\WlanNetService.exe Pfad des
fehlerhaften Moduls: C:\Program Files\avmwlanstick\avmsysnet.dll Berichtskennung:
16b3da60-9fca-11df-87d8-001c4afcd072

[ System Events ]
Error - 03.08.2010 02:30:36 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Nsynas32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 03.08.2010 02:30:37 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "sppsvc" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 03.08.2010 15:15:54 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Nsynas32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 03.08.2010 15:15:54 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "sppsvc" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 04.08.2010 01:31:04 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Nsynas32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 04.08.2010 01:31:04 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "sppsvc" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 04.08.2010 05:06:24 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Nsynas32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 04.08.2010 05:06:24 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "sppsvc" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 04.08.2010 05:21:59 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Nsynas32" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2

Error - 04.08.2010 05:21:59 | Computer Name = Studio65 | Source = Service Control Manager | ID = 7000
Description = Der Dienst "sppsvc" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2


< End of report >


---



Ich hoffe ihr koennt mir helfen... Danke schonmal im Voraus!

Alt 04.08.2010, 18:41   #2
nochdigger
 
Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes - Standard

Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes



Hallo

Zitat:
leider habe ich auch irgendwie diese schöne "Antivirenprogramm" bekommen.
und das wundert dich
Zitat:
J:\Alte Daten\D\$$$Studio$$$\acid\ACID KEY CRACK 4.0.exe (Trojan.Agent) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\NI - Absynth 3.0.1.15\keygen.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\NI - Battery 2.0.0.8\KeyGen - NI - Battery 2.0.0.8.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\Steinberg - Groove Agent\GrooveAgent_InstallCrack.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
J:\Alte Daten\D\$$$Studio$$$\dan vst\VSTI SETUPS\Steinberg - Groove Agent\crack\GrooveAgent_InstallCrack.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
J:\Alte Daten\J-Lakylz\Software - Treiber\audition\Adobe Audition v3.0\Keygen.EXE (Trojan.Agent.CK) -> Quarantined and deleted successfully.
J:\vst-plugs\Native.Instruments.Guitar.Rig.v1.0.0.2.Incl.KeyGen-H2O\guitar_rig_keygen.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
Zitat:
Ich hoffe ihr koennt mir helfen...
Hier ist nur so zu
helfen

Ändere nach der Neuinstallation oder von einem sauberen System aus alle deine Pass- und Kennwörter.
Wenn du eine Sicherung deiner Daten durchführen möchtest,
lass die Finger von ausführbare Dateien
und Dateien aus unsicheren Quellen wie P2P.
Musik, Videos, Bilder und Officedateien können i.d.R. problemlos gesichert werden,
sollten aber vor dem wiederverwenden mit einem aktuellem Antivirenprogramm überprüft werden.

MFG
__________________

__________________

Antwort

Themen zu Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes
acroiehelper.dll, adobe, autorun, avgntflt.sys, avira, backdoor.hupigon, bho, browser, conhost.exe, corp./icp, defender, desktop, desktop security 2010, error, excel, firefox, flash player, fontcache, format, gen 2, helper.exe, iexplore.exe, install.exe, installation, koyote, langs, local\temp, location, logfile, media center, microsoft office word, mozilla, nicht gefunden, ntdll.dll, nvlddmkm.sys, nvstor.sys, object, oldtimer, photoshop, programdata, programm, rarsfx0, registry, rkill, rundll, saver, sched.exe, security, securitycenter.exe, senden, shell32.dll, software, sptd.sys, start menu, stick, studio, taskhost.exe, webcheck




Ähnliche Themen: Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes


  1. Desktop Security 2010 nicht entfernbar
    Plagegeister aller Art und deren Bekämpfung - 23.09.2010 (42)
  2. "Microsoft Security Essential Alert" blockiert WinXP nach Neustart trotz MalwareBytes-Scan
    Plagegeister aller Art und deren Bekämpfung - 13.09.2010 (2)
  3. Desktop Security 2010 Agent es wurde mir auch angezeigt das meine Firewall deaktiviert sei
    Log-Analyse und Auswertung - 27.08.2010 (15)
  4. Desktop Security 2010, Fragen zum Löschen
    Plagegeister aller Art und deren Bekämpfung - 09.08.2010 (2)
  5. Desktop Security 2010 lässt sich nicht löschen
    Plagegeister aller Art und deren Bekämpfung - 08.08.2010 (3)
  6. Desktop Security 2010 plagt meinen Laptop.Alles versuche vergeblich, kommt nach Neustart wieder.
    Plagegeister aller Art und deren Bekämpfung - 06.08.2010 (2)
  7. ‚Desktop Security 2010‘ Agent Bombardement mit ‚RKILL‘ gestoppt,was jetzt?
    Plagegeister aller Art und deren Bekämpfung - 10.07.2010 (34)
  8. Desktop Security 2010 nach Entfernen mit Malwarebytes wieder da!
    Plagegeister aller Art und deren Bekämpfung - 04.06.2010 (17)
  9. Desktop Security 2010 komme nicht weiter
    Plagegeister aller Art und deren Bekämpfung - 16.05.2010 (21)
  10. Desktop Security 2010 lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 14.05.2010 (21)
  11. Desktop security 2010 nicht zu entfernen?
    Plagegeister aller Art und deren Bekämpfung - 13.05.2010 (11)
  12. Desktop Security 2010 - erfolglose Bekämpfung auch durch malwarebytes
    Plagegeister aller Art und deren Bekämpfung - 11.05.2010 (3)
  13. Desktop Security 2010 installiert sich immer wieder neu
    Plagegeister aller Art und deren Bekämpfung - 09.05.2010 (4)
  14. Nach Desktop Security 2010 Löschung kommt nun TR/Crypt.ZPACK.Gen immer wieder
    Plagegeister aller Art und deren Bekämpfung - 07.05.2010 (2)
  15. Desktop Security 2010 entfernen
    Plagegeister aller Art und deren Bekämpfung - 03.05.2010 (1)
  16. Desktop Security 2010 entfernen
    Anleitungen, FAQs & Links - 29.03.2010 (2)
  17. XP Internet Security 2010 / Antivirus Vista 2010 / Win 7 Antispyware 2010 entfernen
    Anleitungen, FAQs & Links - 22.02.2010 (2)

Zum Thema Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes - Hallo alle zusammen, leider habe ich auch irgendwie diese schöne "Antivirenprogramm" bekommen. Hab mir dazu die Threads http://www.trojaner-board.de/85744-d...tfernen-3.html und http://www.trojaner-board.de/85664-d...eder-da-2.html durchgelesen. Hab mir dann "Rkill" (hat zumindestens den Kram schließen - Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes...
Archiv
Du betrachtest: Desktop Security 2010 immer weider bei Neustart trotz Malwarebytes auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.