![]() |
|
Plagegeister aller Art und deren Bekämpfung: Windows 7 Explorer.exe startet nichtWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #8 |
![]() | ![]() Windows 7 Explorer.exe startet nicht ========== Files - Modified Within 90 Days ========== [2010.09.20 12:11:31 | 001,835,008 | -HS- | M] () -- C:\Users\space\NTUSER.DAT [2010.09.20 11:36:20 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010.09.20 11:36:20 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010.09.20 11:27:39 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010.09.20 11:27:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010.09.20 11:27:30 | 3105,259,520 | -HS- | M] () -- C:\hiberfil.sys [2010.09.20 10:51:30 | 000,001,015 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010.09.20 00:43:24 | 002,355,798 | -H-- | M] () -- C:\Users\space\AppData\Local\IconCache.db [2010.09.19 09:39:45 | 000,000,274 | ---- | M] () -- C:\Windows\Aroey95.ini [2010.09.18 23:57:05 | 000,106,223 | ---- | M] () -- C:\Users\space\Desktop\Belgica.jpg [2010.09.09 16:09:01 | 000,001,274 | ---- | M] () -- C:\Windows\SysNative\ServiceFilter.ini [2010.09.09 16:08:53 | 000,002,144 | ---- | M] () -- C:\Windows\SysNative\AutoRunFilter.ini [2010.09.09 14:22:24 | 000,000,092 | ---- | M] () -- C:\Windows\Kyor.ini [2010.09.09 09:52:21 | 000,001,099 | ---- | M] () -- C:\Users\space\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Yahoo! Widgets.lnk [2010.09.03 14:57:00 | 000,128,936 | ---- | M] () -- C:\Users\space\AppData\Local\GDIPFONTCACHEV1.DAT [2010.09.03 14:56:10 | 000,503,336 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2010.09.03 13:01:58 | 151,343,200 | ---- | M] () -- C:\Users\space\Desktop\OOo_3.2.1_Win_x86_install_de.exe [2010.09.03 12:19:27 | 007,122,826 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010.09.03 12:19:27 | 000,644,310 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2010.09.03 12:19:27 | 000,607,634 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2010.09.03 12:19:27 | 000,126,580 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2010.09.03 12:19:27 | 000,103,754 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2010.09.02 19:12:34 | 000,002,000 | ---- | M] () -- C:\Users\Public\Desktop\League of Legends.lnk [2010.09.01 16:33:28 | 007,024,528 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2010.09.01 07:38:43 | 000,000,572 | ---- | M] () -- C:\Windows\win.ini [2010.09.01 07:35:25 | 000,000,014 | ---- | M] () -- C:\Windows\hpmssnpjt.ini [2010.08.26 08:28:57 | 000,000,024 | ---- | M] () -- C:\Windows\ATKPF.ini [2010.08.18 17:38:35 | 000,000,056 | -H-- | M] () -- C:\Windows\SysWow64\ezsidmv.dat [2010.08.16 18:01:39 | 000,000,825 | ---- | M] () -- C:\Users\Public\Desktop\BENUTZER (2).lnk [2010.08.16 09:03:10 | 000,002,307 | ---- | M] () -- C:\Users\Public\Desktop\T-Online 6.0.lnk [2010.08.15 17:11:59 | 000,000,057 | ---- | M] () -- C:\Windows\ADS.ini [2010.08.15 17:11:58 | 000,002,656 | ---- | M] () -- C:\Windows\Aguninst.inf [2010.08.15 17:11:58 | 000,000,860 | ---- | M] () -- C:\Users\Public\Desktop\SYSTEMCHECK.lnk [2010.08.15 17:11:58 | 000,000,844 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Cockpit.lnk [2010.08.15 17:11:58 | 000,000,843 | ---- | M] () -- C:\Users\Public\Desktop\ZAHLUNG.lnk [2010.08.15 17:11:58 | 000,000,835 | ---- | M] () -- C:\Users\Public\Desktop\AGENDA-TOOLS.lnk [2010.08.15 17:11:58 | 000,000,831 | ---- | M] () -- C:\Users\Public\Desktop\UPDATE.lnk [2010.08.15 17:11:58 | 000,000,830 | ---- | M] () -- C:\Users\Public\Desktop\FERNWARTUNG.lnk [2010.08.15 17:11:58 | 000,000,825 | ---- | M] () -- C:\Users\Public\Desktop\BENUTZER.lnk [2010.08.15 17:11:58 | 000,000,820 | ---- | M] () -- C:\Users\Public\Desktop\COCKPIT.lnk [2010.08.15 17:11:58 | 000,000,808 | ---- | M] () -- C:\Users\Public\Desktop\DELFIN.lnk [2010.08.15 17:11:58 | 000,000,803 | ---- | M] () -- C:\Users\Public\Desktop\ZMIV.lnk [2010.08.15 17:11:58 | 000,000,803 | ---- | M] () -- C:\Users\Public\Desktop\FIBU.lnk [2010.08.15 17:11:58 | 000,000,803 | ---- | M] () -- C:\Users\Public\Desktop\DASI.lnk [2010.08.14 18:38:47 | 000,199,151 | ---- | M] () -- C:\Windows\hppins11.dat [2010.08.14 18:35:39 | 000,002,101 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2010.08.14 18:35:20 | 000,000,608 | -HS- | M] () -- C:\Windows\SysNative\winzvprt5.sys [2010.08.14 18:35:20 | 000,000,234 | ---- | M] () -- C:\Windows\SysNative\hppfaxprinter5.ini [2010.08.14 17:20:52 | 000,000,000 | ---- | M] () -- C:\Windows\tm.ini [2010.08.14 15:34:50 | 000,001,384 | ---- | M] () -- C:\Users\space\Desktop\Aladin.lnk [2010.08.14 15:16:57 | 000,001,015 | ---- | M] () -- C:\Users\space\Desktop\Kyodai 16.2D (DirectX 3.0).lnk [2010.08.14 15:04:31 | 000,001,050 | ---- | M] () -- C:\Users\space\Desktop\ElsterFormular.lnk [2010.08.14 15:04:31 | 000,001,050 | ---- | M] () -- C:\Users\Public\Desktop\ElsterFormular.lnk [2010.08.14 14:51:18 | 000,001,135 | ---- | M] () -- C:\Users\space\Desktop\UNO.lnk [2010.08.14 14:48:32 | 000,060,112 | ---- | M] () -- C:\Windows\SysWow64\NULL [2010.08.14 04:29:53 | 000,052,953 | ---- | M] () -- C:\Windows\SysWow64\license.rtf [2010.08.14 04:29:53 | 000,052,953 | ---- | M] () -- C:\Windows\SysNative\license.rtf [2010.08.13 16:01:47 | 000,000,252 | ---- | M] () -- C:\Windows\system.ini [2010.08.13 15:59:45 | 000,001,726 | ---- | M] () -- C:\Users\space\Desktop\Defraggler.lnk [2010.08.13 15:56:48 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_NuidFltr_01005.Wdf [2010.08.13 15:54:48 | 000,001,945 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2010.08.13 13:58:52 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\drivers\1043_ASUSTeK_K72Jr.alu [2010.08.13 13:47:41 | 000,524,288 | -HS- | M] () -- C:\Users\space\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2010.08.13 13:47:41 | 000,524,288 | -HS- | M] () -- C:\Users\space\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2010.08.13 13:47:41 | 000,065,536 | -HS- | M] () -- C:\Users\space\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2010.08.13 13:46:39 | 000,000,824 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\tmvsthfud.bin [2010.08.13 13:46:36 | 000,000,824 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\tmvsthfss.bin [2010.08.13 13:35:01 | 000,000,020 | ---- | M] () -- C:\Windows\`ú’ [2010.08.13 13:31:56 | 000,000,020 | -HS- | M] () -- C:\Users\space\ntuser.ini [2010.08.13 13:31:26 | 000,000,080 | ---- | M] () -- C:\Windows\SysNative\Defrag.ini [2010.07.29 22:28:00 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\drivers\1043_ASUSTEK_K72JR_V20_WIN7.MRK [2010.07.29 22:24:32 | 000,001,110 | ---- | M] () -- C:\Users\Public\Desktop\Splendid Utility.Lnk [2010.07.29 22:24:28 | 000,001,150 | ---- | M] () -- C:\Users\Public\Desktop\SmartLogon Manager.lnk [2010.07.29 22:24:10 | 000,002,595 | ---- | M] () -- C:\Users\Public\Desktop\AI Recovery Burner.lnk [2010.07.29 22:24:00 | 000,002,617 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2010.07.29 22:23:49 | 000,520,192 | ---- | M] (ScreenTime Media) -- C:\Windows\SysWow64\K_Series_ScreenSaver_EN.scr [2010.07.29 22:23:45 | 003,054,136 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe [2010.07.29 22:20:38 | 000,000,834 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2010.07.29 22:13:39 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin [2010.07.29 22:01:46 | 000,002,069 | ---- | M] () -- C:\Users\Public\Desktop\syncables desktop SE.lnk [2010.07.29 22:01:04 | 000,000,033 | ---- | M] () -- C:\Windows\0 [2010.07.29 21:59:16 | 000,000,128 | ---- | M] () -- C:\Users\Public\Desktop\ASUS AP Bank.url [2010.07.23 11:28:29 | 002,626,560 | ---- | M] (Agenda Informationssysteme GmbH) -- C:\Windows\NtLog.dll [2010.07.23 11:27:32 | 003,583,488 | ---- | M] (Agenda Informationssysteme GmbH) -- C:\Windows\Aguninst.exe [2010.07.12 11:10:58 | 006,666,752 | ---- | M] (Agenda Informationssysteme GmbH) -- C:\Windows\Zinit32.exe [2010.07.07 07:55:10 | 000,000,545 | ---- | M] () -- C:\Windows\UC.PIF [2010.07.07 07:55:10 | 000,000,545 | ---- | M] () -- C:\Windows\RAR.PIF [2010.07.07 07:55:10 | 000,000,545 | ---- | M] () -- C:\Windows\PKZIP.PIF [2010.07.07 07:55:10 | 000,000,545 | ---- | M] () -- C:\Windows\PKUNZIP.PIF [2010.07.07 07:55:10 | 000,000,545 | ---- | M] () -- C:\Windows\NOCLOSE.PIF [2010.07.07 07:55:10 | 000,000,545 | ---- | M] () -- C:\Windows\LHA.PIF [2010.07.07 07:55:10 | 000,000,545 | ---- | M] () -- C:\Windows\ARJ.PIF [2010.07.06 13:25:54 | 000,034,624 | ---- | M] (TuneUp Software) -- C:\Windows\SysNative\TURegOpt.exe [2010.07.06 13:20:54 | 000,025,920 | ---- | M] (TuneUp Software) -- C:\Windows\SysNative\authuitu.dll [2010.07.06 13:20:50 | 000,021,312 | ---- | M] (TuneUp Software) -- C:\Windows\SysWow64\authuitu.dll [2010.07.06 13:20:46 | 000,036,160 | ---- | M] (TuneUp Software) -- C:\Windows\SysNative\uxtuneup.dll [2010.07.06 13:20:38 | 000,030,016 | ---- | M] (TuneUp Software) -- C:\Windows\SysWow64\uxtuneup.dll ========== Files Created - No Company Name ========== [2010.09.20 10:51:30 | 000,001,015 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010.09.18 23:57:03 | 000,106,223 | ---- | C] () -- C:\Users\space\Desktop\Belgica.jpg [2010.09.09 09:52:21 | 000,001,099 | ---- | C] () -- C:\Users\space\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Yahoo! Widgets.lnk [2010.09.03 12:58:27 | 151,343,200 | ---- | C] () -- C:\Users\space\Desktop\OOo_3.2.1_Win_x86_install_de.exe [2010.09.03 12:19:27 | 007,122,826 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010.09.02 19:12:34 | 000,002,000 | ---- | C] () -- C:\Users\Public\Desktop\League of Legends.lnk [2010.08.24 16:08:39 | 000,000,014 | ---- | C] () -- C:\Windows\hpmssnpjt.ini [2010.08.18 17:38:35 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat [2010.08.16 18:01:39 | 000,000,825 | ---- | C] () -- C:\Users\Public\Desktop\BENUTZER (2).lnk [2010.08.15 17:12:01 | 000,000,057 | ---- | C] () -- C:\Windows\ADS.ini [2010.08.15 07:45:40 | 000,000,024 | ---- | C] () -- C:\Windows\ATKPF.ini [2010.08.14 19:38:50 | 000,000,092 | ---- | C] () -- C:\Windows\Kyor.ini [2010.08.14 18:35:39 | 000,002,101 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2010.08.14 18:35:20 | 000,000,234 | ---- | C] () -- C:\Windows\SysNative\hppfaxprinter5.ini [2010.08.14 18:31:14 | 000,199,151 | ---- | C] () -- C:\Windows\hppins11.dat [2010.08.14 18:31:14 | 000,005,707 | ---- | C] () -- C:\Windows\hppmdl11.dat [2010.08.14 18:19:18 | 000,000,028 | ---- | C] () -- C:\Windows\stdwin.swa [2010.08.14 17:20:53 | 000,244,984 | ---- | C] () -- C:\Windows\TUTIL32.DLL [2010.08.14 17:20:52 | 000,000,000 | ---- | C] () -- C:\Windows\tm.ini [2010.08.14 17:20:50 | 000,000,860 | ---- | C] () -- C:\Users\Public\Desktop\SYSTEMCHECK.lnk [2010.08.14 17:20:50 | 000,000,843 | ---- | C] () -- C:\Users\Public\Desktop\ZAHLUNG.lnk [2010.08.14 17:20:50 | 000,000,835 | ---- | C] () -- C:\Users\Public\Desktop\AGENDA-TOOLS.lnk [2010.08.14 17:20:50 | 000,000,831 | ---- | C] () -- C:\Users\Public\Desktop\UPDATE.lnk [2010.08.14 17:20:50 | 000,000,830 | ---- | C] () -- C:\Users\Public\Desktop\FERNWARTUNG.lnk [2010.08.14 17:20:50 | 000,000,825 | ---- | C] () -- C:\Users\Public\Desktop\BENUTZER.lnk [2010.08.14 17:20:50 | 000,000,808 | ---- | C] () -- C:\Users\Public\Desktop\DELFIN.lnk [2010.08.14 17:20:50 | 000,000,803 | ---- | C] () -- C:\Users\Public\Desktop\ZMIV.lnk [2010.08.14 17:20:50 | 000,000,803 | ---- | C] () -- C:\Users\Public\Desktop\FIBU.lnk [2010.08.14 17:20:50 | 000,000,803 | ---- | C] () -- C:\Users\Public\Desktop\DASI.lnk [2010.08.14 17:20:49 | 000,000,844 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Cockpit.lnk [2010.08.14 17:20:49 | 000,000,820 | ---- | C] () -- C:\Users\Public\Desktop\COCKPIT.lnk [2010.08.14 17:18:43 | 000,000,274 | ---- | C] () -- C:\Windows\Aroey95.ini [2010.08.14 17:18:10 | 000,002,656 | ---- | C] () -- C:\Windows\Aguninst.inf [2010.08.14 16:22:52 | 000,000,608 | -HS- | C] () -- C:\Windows\SysNative\winzvprt5.sys [2010.08.14 16:14:09 | 000,003,212 | ---- | C] () -- C:\Windows\SysNative\hppls1312.spf [2010.08.14 16:14:09 | 000,000,665 | ---- | C] () -- C:\Windows\SysNative\hppapr11.dat [2010.08.14 15:38:00 | 000,001,840 | ---- | C] () -- C:\ProgramData\hpzinstall.log [2010.08.14 15:34:05 | 000,001,384 | ---- | C] () -- C:\Users\space\Desktop\Aladin.lnk [2010.08.14 15:19:48 | 000,000,356 | ---- | C] () -- C:\Users\space\Desktop\Hearts.lnk [2010.08.14 15:19:30 | 000,000,368 | ---- | C] () -- C:\Users\space\Desktop\Solitaire.lnk [2010.08.14 15:17:50 | 000,001,015 | ---- | C] () -- C:\Users\space\Desktop\Kyodai 16.2D (DirectX 3.0).lnk [2010.08.14 15:09:44 | 000,084,480 | ---- | C] () -- C:\Users\space\Desktop\steuersparen.xls [2010.08.14 15:09:44 | 000,000,472 | ---- | C] () -- C:\Users\space\Desktop\Profi cash.lnk [2010.08.14 15:09:43 | 000,001,050 | ---- | C] () -- C:\Users\space\Desktop\ElsterFormular.lnk [2010.08.14 15:09:43 | 000,000,364 | ---- | C] () -- C:\Users\space\Desktop\Freecell.lnk [2010.08.14 15:04:31 | 000,001,050 | ---- | C] () -- C:\Users\Public\Desktop\ElsterFormular.lnk [2010.08.14 14:51:24 | 000,162,304 | ---- | C] () -- C:\Program Files (x86)\UNWISE.EXE [2010.08.14 14:51:24 | 000,006,855 | ---- | C] () -- C:\Program Files (x86)\UNWISE.INI [2010.08.14 14:51:24 | 000,004,195 | ---- | C] () -- C:\Program Files (x86)\INSTALL.LOG [2010.08.14 14:51:22 | 000,184,832 | ---- | C] () -- C:\Windows\SysWow64\BDEADMIN.CPL [2010.08.14 14:51:18 | 000,001,135 | ---- | C] () -- C:\Users\space\Desktop\UNO.lnk [2010.08.14 14:50:42 | 000,244,984 | ---- | C] () -- C:\Windows\SysWow64\Tutil32.dll [2010.08.14 14:48:31 | 000,060,112 | ---- | C] () -- C:\Windows\SysWow64\NULL [2010.08.14 14:47:34 | 000,002,307 | ---- | C] () -- C:\Users\Public\Desktop\T-Online 6.0.lnk [2010.08.14 04:19:26 | 3105,259,520 | -HS- | C] () -- C:\hiberfil.sys [2010.08.13 15:59:45 | 000,001,726 | ---- | C] () -- C:\Users\space\Desktop\Defraggler.lnk [2010.08.13 15:56:48 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_NuidFltr_01005.Wdf [2010.08.13 15:56:08 | 000,000,545 | ---- | C] () -- C:\Windows\UC.PIF [2010.08.13 15:56:08 | 000,000,545 | ---- | C] () -- C:\Windows\RAR.PIF [2010.08.13 15:56:08 | 000,000,545 | ---- | C] () -- C:\Windows\PKZIP.PIF [2010.08.13 15:56:08 | 000,000,545 | ---- | C] () -- C:\Windows\PKUNZIP.PIF [2010.08.13 15:56:08 | 000,000,545 | ---- | C] () -- C:\Windows\NOCLOSE.PIF [2010.08.13 15:56:08 | 000,000,545 | ---- | C] () -- C:\Windows\LHA.PIF [2010.08.13 15:56:08 | 000,000,545 | ---- | C] () -- C:\Windows\ARJ.PIF [2010.08.13 15:54:48 | 000,001,945 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2010.08.13 13:58:52 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\drivers\1043_ASUSTeK_K72Jr.alu [2010.08.13 13:35:01 | 000,000,020 | ---- | C] () -- C:\Windows\`ú’ [2010.08.13 13:31:56 | 000,524,288 | -HS- | C] () -- C:\Users\space\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2010.08.13 13:31:56 | 000,524,288 | -HS- | C] () -- C:\Users\space\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2010.08.13 13:31:56 | 000,262,144 | -HS- | C] () -- C:\Users\space\ntuser.dat.LOG1 [2010.08.13 13:31:56 | 000,065,536 | -HS- | C] () -- C:\Users\space\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2010.08.13 13:31:56 | 000,000,020 | -HS- | C] () -- C:\Users\space\ntuser.ini [2010.08.13 13:31:56 | 000,000,000 | -HS- | C] () -- C:\Users\space\ntuser.dat.LOG2 [2010.08.13 13:31:55 | 001,835,008 | -HS- | C] () -- C:\Users\space\NTUSER.DAT [2010.07.29 22:28:00 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\drivers\1043_ASUSTEK_K72JR_V20_WIN7.MRK [2010.07.29 22:24:32 | 000,001,110 | ---- | C] () -- C:\Users\Public\Desktop\Splendid Utility.Lnk [2010.07.29 22:24:28 | 000,001,150 | ---- | C] () -- C:\Users\Public\Desktop\SmartLogon Manager.lnk [2010.07.29 22:24:10 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\LogonStart.dll [2010.07.29 22:24:10 | 000,003,116 | ---- | C] () -- C:\Windows\SysNative\wimfltr.inf [2010.07.29 22:24:10 | 000,002,595 | ---- | C] () -- C:\Users\Public\Desktop\AI Recovery Burner.lnk [2010.07.29 22:24:02 | 000,002,144 | ---- | C] () -- C:\Windows\SysNative\AutoRunFilter.ini [2010.07.29 22:24:02 | 000,001,274 | ---- | C] () -- C:\Windows\SysNative\ServiceFilter.ini [2010.07.29 22:24:02 | 000,000,105 | ---- | C] () -- C:\Windows\SysNative\FastBoot.ini [2010.07.29 22:24:02 | 000,000,080 | ---- | C] () -- C:\Windows\SysNative\Defrag.ini [2010.07.29 22:24:02 | 000,000,052 | ---- | C] () -- C:\Windows\SysNative\RemoveFont.ini [2010.07.29 22:24:02 | 000,000,015 | ---- | C] () -- C:\Windows\SysNative\BootTime.ini [2010.07.29 22:24:00 | 000,002,617 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2010.07.29 22:20:03 | 000,000,834 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2010.07.29 22:13:39 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2010.07.29 22:01:46 | 000,002,069 | ---- | C] () -- C:\Users\Public\Desktop\syncables desktop SE.lnk [2010.07.29 22:01:07 | 000,001,072 | ---- | C] () -- C:\Users\Public\Desktop\ASUS ACCESS.lnk [2010.07.29 22:01:04 | 000,000,033 | ---- | C] () -- C:\Windows\0 [2010.07.29 21:59:39 | 000,131,368 | ---- | C] () -- C:\ProgramData\FullRemove.exe [2010.07.29 21:59:16 | 000,000,128 | ---- | C] () -- C:\Users\Public\Desktop\ASUS AP Bank.url [2010.07.29 21:55:38 | 000,000,105 | ---- | C] () -- C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log [2010.07.29 21:55:16 | 000,000,107 | ---- | C] () -- C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log [2010.02.09 09:07:38 | 000,000,269 | ---- | C] () -- C:\Windows\OOBEPlayer.ini [2009.07.29 07:20:40 | 000,000,010 | ---- | C] () -- C:\Windows\SysWow64\ABLKSR.ini [2009.07.14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009.07.13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2006.05.19 05:39:57 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini ========== LOP Check ========== [2010.08.13 16:05:35 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\ACD Systems [2010.08.13 15:51:36 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Asus WebStorage [2010.08.14 18:17:20 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\elsterformular [2010.09.03 07:55:15 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\LolClient [2010.09.18 09:57:42 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Mount&Blade Warband [2010.08.13 15:58:39 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\NetSpeedMonitor [2010.08.15 07:42:45 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\OpenOffice.org [2010.08.14 15:31:58 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\T-DSL SpeedManager [2010.08.14 14:47:56 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\T-Online [2010.09.01 16:35:37 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\TeamViewer [2010.09.03 12:19:57 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\TP [2010.08.14 15:26:47 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\TuneUp Software [2009.07.14 07:08:49 | 000,030,598 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT ========== Purity Check ========== ========== Custom Scans ========== < %ALLUSERSPROFILE%\Application Data\*. > < %ALLUSERSPROFILE%\Application Data\*.exe /s > < %APPDATA%\*. > [2010.08.13 16:05:35 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\ACD Systems [2010.09.02 19:12:49 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Adobe [2010.08.13 15:51:36 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Asus WebStorage [2010.08.13 13:40:37 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\ATI [2010.08.14 18:59:50 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Avira [2010.09.03 15:13:28 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\DivX [2010.08.14 18:17:20 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\elsterformular [2010.08.13 13:45:32 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Google [2010.08.13 13:39:56 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Identities [2010.09.03 07:55:15 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\LolClient [2010.08.14 15:28:48 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Macromedia [2010.09.20 10:51:34 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Malwarebytes [2009.07.14 09:44:38 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Media Center Programs [2010.09.02 19:15:17 | 000,000,000 | --SD | M] -- C:\Users\space\AppData\Roaming\Microsoft [2010.09.18 09:57:42 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Mount&Blade Warband [2010.08.14 17:11:53 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Mozilla [2010.08.13 15:58:39 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\NetSpeedMonitor [2010.08.15 07:42:45 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\OpenOffice.org [2010.09.20 00:40:35 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\Skype [2010.09.20 00:06:04 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\skypePM [2010.08.14 15:31:58 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\T-DSL SpeedManager [2010.08.14 14:47:56 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\T-Online [2010.09.01 16:35:37 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\TeamViewer [2010.09.03 12:19:57 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\TP [2010.08.14 15:26:47 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\TuneUp Software [2010.09.19 18:04:03 | 000,000,000 | ---D | M] -- C:\Users\space\AppData\Roaming\WinRAR < %APPDATA%\*.exe /s > [2010.09.18 09:52:48 | 000,188,152 | ---- | M] () -- C:\Users\space\AppData\Roaming\Mozilla\Firefox\Profiles\yzh58dx9.default\FlashGot.exe < %SYSTEMDRIVE%\*.exe > < MD5 for: AGP440.SYS > [2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysWow64\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys [2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys < MD5 for: ATAPI.SYS > [2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysWow64\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys [2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys < MD5 for: CNGAUDIT.DLL > [2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll [2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll [2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll [2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll < MD5 for: EXPLORER.EXE > [2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe [2010.07.29 22:22:28 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\SysWOW64\explorer.exe [2010.07.29 22:22:28 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\SysWOW64\explorer.exe [2010.07.29 22:22:28 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe [2010.07.29 22:22:28 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=48BC1031376F43A05C2801EDA6BD9629 -- C:\Windows\explorer.exe [2010.07.29 22:08:47 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe [2010.07.29 22:22:28 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe [2010.07.29 22:08:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe [2010.07.29 22:22:28 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe [2010.07.29 22:08:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe [2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe [2010.07.29 22:22:28 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe [2010.07.29 22:08:47 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe < MD5 for: IASTOR.SYS > [2009.08.06 23:24:13 | 000,408,600 | ---- | M] (Intel Corporation) MD5=BBB3B6DF1ABB0FE35802EDE85CC1C011 -- C:\Windows\SysWow64\DriverStore\FileRepository\iaahci.inf_amd64_neutral_4fa22a1c88c09097\iaStor.sys < MD5 for: IASTORV.SYS > [2009.07.14 03:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\SysWow64\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys [2009.07.14 03:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys < MD5 for: NETLOGON.DLL > [2009.07.14 03:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll [2009.07.14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll [2009.07.14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll [2009.07.14 03:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll < MD5 for: NVSTOR.SYS > [2009.07.14 03:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\SysWow64\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvstor.sys [2009.07.14 03:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys < MD5 for: SCECLI.DLL > [2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll [2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll [2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll [2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll < MD5 for: USER32.DLL > [2009.07.14 03:41:56 | 001,008,640 | ---- | M] (Microsoft Corporation) MD5=72D7B3EA16946E8F0CF7458150031CC6 -- C:\Windows\winsxs\amd64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_292d5de8870d85d9\user32.dll [2009.07.14 03:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=E8B0FFC209E504CB7E79FC24E6C085F0 -- C:\Windows\SysWOW64\user32.dll [2009.07.14 03:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=E8B0FFC209E504CB7E79FC24E6C085F0 -- C:\Windows\SysWOW64\user32.dll [2009.07.14 03:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) MD5=E8B0FFC209E504CB7E79FC24E6C085F0 -- C:\Windows\winsxs\wow64_microsoft-windows-user32_31bf3856ad364e35_6.1.7600.16385_none_3382083abb6e47d4\user32.dll < MD5 for: USERINIT.EXE > [2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe [2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe [2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe [2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe < MD5 for: WININIT.EXE > [2009.07.14 03:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=5071C9ED17E74FF7456646B60410B556 -- C:\Windows\SysWOW64\wininit.exe [2009.07.14 03:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=5071C9ED17E74FF7456646B60410B556 -- C:\Windows\SysWOW64\wininit.exe [2009.07.14 03:39:52 | 000,129,024 | ---- | M] (Microsoft Corporation) MD5=94355C28C1970635A31B3FE52EB7CEBA -- C:\Windows\winsxs\amd64_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_8ce7aa761e01ad49\wininit.exe [2009.07.14 03:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 -- C:\Windows\winsxs\x86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13\wininit.exe < MD5 for: WINLOGON.EXE > [2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe [2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe [2010.07.29 22:22:28 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe [2010.07.29 22:22:28 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe [2010.07.29 22:22:28 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe [2010.07.29 22:22:28 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe < MD5 for: WS2IFSL.SYS > [2009.07.14 02:10:33 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=6BCC1D7D2FD2453957C5479A32364E52 -- C:\Windows\winsxs\amd64_microsoft-windows-w..rastructure-ws2ifsl_31bf3856ad364e35_6.1.7600.16385_none_ab7b927be17eace8\ws2ifsl.sys < %systemroot%\system32\drivers\*.sys /lockedfiles > < %systemroot%\System32\config\*.sav > < %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles > ========== Alternate Data Streams ========== @Alternate Data Stream - 129 bytes -> C:\ProgramData\Temp:4CF61E54 @Alternate Data Stream - 122 bytes -> C:\ProgramData\Temp:A724744F < End of report > |
Themen zu Windows 7 Explorer.exe startet nicht |
andere, anderen, asus, ausser, dienste, download, erscheint, explorer.exe, firefox, hallo zusammen, heute, laufen, morgen, notebook, prima, schei, starte, startet, startet nicht, taskmanager, win, win7, windows, windows 7, wlan, zusammen |