Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

 
Alt 14.12.2010, 16:30   #1
morrissey2
 
hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet - Standard

hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet



Hallo,

erst einmal besten Dank für die vielen Anleitungen.

Ich hoffe, ich habe die Maleware in hotfix.exe und dgfdgsdf.bat erfolgreich entfernt (beide Dateien lagen in C:\Users\XXXXX\AppData\Roaming). Zur Sicherheit sind hier noch einmal meine Logfiles von OTL und Anti-Maleware. Ich würde mich sehr freuen, wenn jemand, der sich damit auskennt, mal kurz drauf schauen würde.

(Auswirkungen des Virus zuvor: Suchanfragen in Firefox werden umgeleitet, willkürliches Öffnen von neuen Tabs, ein Komplettabsturz. AntiVir hat nichts erkannt, Kaspersky wenigstens etwas, aber nicht alles!)

Allerbesten Dank!OTL Logfile:
Code:
ATTFilter
OTL logfile created on: 14.12.2010 15:49:38 - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\xxxxx\Desktop
Enterprise Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 62,00% Memory free
3,00 Gb Paging File | 3,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 146,72 Gb Total Space | 115,94 Gb Free Space | 79,02% Space Free | Partition Type: NTFS
Drive D: | 784,79 Gb Total Space | 678,89 Gb Free Space | 86,51% Space Free | Partition Type: NTFS
Drive E: | 372,52 Gb Total Space | 67,55 Gb Free Space | 18,13% Space Free | Partition Type: FAT32
 
Computer Name: xxxxx | User Name: xxxxx | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Users\xxxxx\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Programme\TeamViewer\TeamViewer.exe (TeamViewer GmbH)
PRC - C:\Programme\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
PRC - C:\Programme\TeamViewer\tv_w32.exe (TeamViewer GmbH)
PRC - C:\Programme\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (Logitech, Inc.)
PRC - C:\Programme\Kaspersky Internet Security\avp.exe (Kaspersky Lab ZAO)
PRC - C:\Programme\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
PRC - C:\Programme\Adobe\Acrobat 10.0\Acrobat\acrotray.exe (Adobe Systems Inc.)
PRC - C:\Programme\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
PRC - C:\Programme\Mediafour\MacDrive 8\MacDrive.exe (Mediafour Corporation)
PRC - C:\Programme\Mediafour\MacDrive 8\MacDrive8Service.exe (Mediafour Corporation)
PRC - C:\Programme\Kaspersky Internet Security\klwtblfs.exe (Kaspersky Lab ZAO)
PRC - C:\Programme\Nike\Nike+ Connect\Nike+ Connect daemon.exe (Nike)
PRC - C:\Programme\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Programme\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
PRC - C:\Windows\System32\taskhost.exe (Microsoft Corporation)
PRC - C:\Programme\Windows Sidebar\sidebar.exe (Microsoft Corporation)
PRC - C:\Windows\System32\audiodg.exe (Microsoft Corporation)
PRC - C:\Programme\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
PRC - C:\Programme\3RVX\3RVX.exe (matt.malensek.net)
 
 
========== Modules (SafeList) ==========
 
MOD - C:\Users\xxxxx\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sspicli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\sechost.dll (Microsoft Corporation)
MOD - C:\Windows\System32\samcli.dll (Microsoft Corporation)
MOD - C:\Windows\System32\profapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\netutils.dll (Microsoft Corporation)
MOD - C:\Windows\System32\KernelBase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\dwmapi.dll (Microsoft Corporation)
MOD - C:\Windows\System32\devobj.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cryptbase.dll (Microsoft Corporation)
MOD - C:\Windows\System32\cfgmgr32.dll (Microsoft Corporation)
 
 
========== Win32 Services (SafeList) ==========
 
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Macrovision Europe Ltd.)
SRV - (TeamViewer6) -- C:\Programme\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (AVP) -- C:\Program Files\Kaspersky Internet Security\avp.exe (Kaspersky Lab ZAO)
SRV - (LBTServ) -- C:\Programme\Common Files\LogiShrd\Bluetooth\LBTServ.exe (Logitech, Inc.)
SRV - (Apple Mobile Device) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.)
SRV - (MacDrive8Service) -- C:\Program Files\Mediafour\MacDrive 8\MacDrive8Service.exe (Mediafour Corporation)
SRV - (Microsoft SharePoint Workspace Audit Service) -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE (Microsoft Corporation)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (SwitchBoard) -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
SRV - (WwanSvc) -- C:\Windows\System32\wwansvc.dll (Microsoft Corporation)
SRV - (WbioSrvc) -- C:\Windows\System32\wbiosrvc.dll (Microsoft Corporation)
SRV - (Power) -- C:\Windows\System32\umpo.dll (Microsoft Corporation)
SRV - (Themes) -- C:\Windows\System32\themeservice.dll (Microsoft Corporation)
SRV - (sppuinotify) -- C:\Windows\System32\sppuinotify.dll (Microsoft Corporation)
SRV - (StorSvc) -- C:\Windows\System32\StorSvc.dll (Microsoft Corporation)
SRV - (RpcEptMapper) -- C:\Windows\System32\RpcEpMap.dll (Microsoft Corporation)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (PeerDistSvc) -- C:\Windows\System32\PeerDistSvc.dll (Microsoft Corporation)
SRV - (PNRPsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (p2pimsvc) -- C:\Windows\System32\pnrpsvc.dll (Microsoft Corporation)
SRV - (HomeGroupProvider) -- C:\Windows\System32\provsvc.dll (Microsoft Corporation)
SRV - (PNRPAutoReg) -- C:\Windows\System32\pnrpauto.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Programme\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV - (HomeGroupListener) -- C:\Windows\System32\ListSvc.dll (Microsoft Corporation)
SRV - (FontCache) -- C:\Windows\System32\FntCache.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\System32\dhcpcore.dll (Microsoft Corporation)
SRV - (defragsvc) -- C:\Windows\System32\defragsvc.dll (Microsoft Corporation)
SRV - (BDESVC) -- C:\Windows\System32\bdesvc.dll (Microsoft Corporation)
SRV - (AxInstSV) ActiveX-Installer (AxInstSV) -- C:\Windows\System32\AxInstSv.dll (Microsoft Corporation)
SRV - (AppIDSvc) -- C:\Windows\System32\appidsvc.dll (Microsoft Corporation)
SRV - (sppsvc) -- C:\Windows\System32\sppsvc.exe (Microsoft Corporation)
 
 
========== Driver Services (SafeList) ==========
 
DRV - (KLIF) -- C:\Windows\System32\drivers\klif.sys (Kaspersky Lab)
DRV - (MDFSYSNT) -- C:\Windows\System32\drivers\MDFSYSNT.SYS (Mediafour Corporation)
DRV - (LMouFilt) -- C:\Windows\System32\drivers\LMouFilt.Sys (Logitech, Inc.)
DRV - (LHidFilt) -- C:\Windows\System32\drivers\LHidFilt.Sys (Logitech, Inc.)
DRV - (NVNET) -- C:\Windows\System32\drivers\nvmf6232.sys (NVIDIA Corporation)
DRV - (kl2) -- C:\Windows\System32\drivers\kl2.sys (Kaspersky Lab ZAO)
DRV - (KL1) -- C:\Windows\system32\DRIVERS\kl1.sys (Kaspersky Lab ZAO)
DRV - (MDPMGRNT) -- C:\Windows\System32\drivers\MDPMGRNT.SYS (Mediafour Corporation)
DRV - (CBDisk) -- C:\Windows\System32\drivers\CBDisk.sys (EldoS Corporation)
DRV - (KLIM6) -- C:\Windows\System32\drivers\klim6.sys (Kaspersky Lab ZAO)
DRV - (ElbyCDIO) -- C:\Windows\System32\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV - (KSecPkg) -- C:\Windows\System32\Drivers\ksecpkg.sys (Microsoft Corporation)
DRV - (VIAHdAudAddService) -- C:\Windows\System32\drivers\viahduaa.sys (VIA Technologies, Inc.)
DRV - (klmouflt) -- C:\Windows\System32\drivers\klmouflt.sys (Kaspersky Lab)
DRV - (VClone) -- C:\Windows\System32\drivers\VClone.sys (Elaborate Bytes AG)
DRV - (cmdide) -- C:\Windows\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (adpahci) -- C:\Windows\system32\DRIVERS\adpahci.sys (Adaptec, Inc.)
DRV - (adp94xx) -- C:\Windows\system32\DRIVERS\adp94xx.sys (Adaptec, Inc.)
DRV - (amdsbs) -- C:\Windows\system32\DRIVERS\amdsbs.sys (AMD Technologies Inc.)
DRV - (adpu320) -- C:\Windows\system32\DRIVERS\adpu320.sys (Adaptec, Inc.)
DRV - (arcsas) -- C:\Windows\system32\DRIVERS\arcsas.sys (Adaptec, Inc.)
DRV - (amdsata) -- C:\Windows\system32\DRIVERS\amdsata.sys (Advanced Micro Devices)
DRV - (arc) -- C:\Windows\system32\DRIVERS\arc.sys (Adaptec, Inc.)
DRV - (amdxata) -- C:\Windows\system32\DRIVERS\amdxata.sys (Advanced Micro Devices)
DRV - (aliide) -- C:\Windows\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (nvstor) -- C:\Windows\system32\DRIVERS\nvstor.sys (NVIDIA Corporation)
DRV - (nvraid) -- C:\Windows\system32\DRIVERS\nvraid.sys (NVIDIA Corporation)
DRV - (nfrd960) -- C:\Windows\system32\DRIVERS\nfrd960.sys (IBM Corporation)
DRV - (LSI_SAS) -- C:\Windows\system32\DRIVERS\lsi_sas.sys (LSI Corporation)
DRV - (iaStorV) -- C:\Windows\system32\DRIVERS\iaStorV.sys (Intel Corporation)
DRV - (MegaSR) -- C:\Windows\system32\DRIVERS\MegaSR.sys (LSI Corporation, Inc.)
DRV - (LSI_SCSI) -- C:\Windows\system32\DRIVERS\lsi_scsi.sys (LSI Corporation)
DRV - (LSI_FC) -- C:\Windows\system32\DRIVERS\lsi_fc.sys (LSI Corporation)
DRV - (LSI_SAS2) -- C:\Windows\system32\DRIVERS\lsi_sas2.sys (LSI Corporation)
DRV - (iirsp) -- C:\Windows\system32\DRIVERS\iirsp.sys (Intel Corp./ICP vortex GmbH)
DRV - (megasas) -- C:\Windows\system32\DRIVERS\megasas.sys (LSI Corporation)
DRV - (hwpolicy) -- C:\Windows\System32\drivers\hwpolicy.sys (Microsoft Corporation)
DRV - (elxstor) -- C:\Windows\system32\DRIVERS\elxstor.sys (Emulex)
DRV - (aic78xx) -- C:\Windows\system32\DRIVERS\djsvs.sys (Adaptec, Inc.)
DRV - (HpSAMD) -- C:\Windows\system32\DRIVERS\HpSAMD.sys (Hewlett-Packard Company)
DRV - (FsDepends) -- C:\Windows\System32\drivers\fsdepends.sys (Microsoft Corporation)
DRV - (vsmraid) -- C:\Windows\system32\DRIVERS\vsmraid.sys (VIA Technologies Inc.,Ltd)
DRV - (vmbus) -- C:\Windows\system32\DRIVERS\vmbus.sys (Microsoft Corporation)
DRV - (vhdmp) -- C:\Windows\system32\DRIVERS\vhdmp.sys (Microsoft Corporation)
DRV - (storflt) -- C:\Windows\system32\DRIVERS\vmstorfl.sys (Microsoft Corporation)
DRV - (vdrvroot) -- C:\Windows\system32\DRIVERS\vdrvroot.sys (Microsoft Corporation)
DRV - (storvsc) -- C:\Windows\system32\DRIVERS\storvsc.sys (Microsoft Corporation)
DRV - (WIMMount) -- C:\Windows\System32\drivers\wimmount.sys (Microsoft Corporation)
DRV - (viaide) -- C:\Windows\system32\DRIVERS\viaide.sys (VIA Technologies, Inc.)
DRV - (ql2300) -- C:\Windows\system32\DRIVERS\ql2300.sys (QLogic Corporation)
DRV - (rdyboost) -- C:\Windows\System32\drivers\rdyboost.sys (Microsoft Corporation)
DRV - (ql40xx) -- C:\Windows\system32\DRIVERS\ql40xx.sys (QLogic Corporation)
DRV - (SiSRaid4) -- C:\Windows\system32\DRIVERS\sisraid4.sys (Silicon Integrated Systems)
DRV - (pcw) -- C:\Windows\System32\drivers\pcw.sys (Microsoft Corporation)
DRV - (SiSRaid2) -- C:\Windows\system32\DRIVERS\SiSRaid2.sys (Silicon Integrated Systems Corp.)
DRV - (stexstor) -- C:\Windows\system32\DRIVERS\stexstor.sys (Promise Technology)
DRV - (CNG) -- C:\Windows\System32\Drivers\cng.sys (Microsoft Corporation)
DRV - (Brserid) Brother MFC-Seriellschnittstellentreiber (WDM) -- C:\Windows\System32\Drivers\Brserid.sys (Brother Industries Ltd.)
DRV - (rdpbus) -- C:\Windows\System32\drivers\rdpbus.sys (Microsoft Corporation)
DRV - (RDPREFMP) -- C:\Windows\System32\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\System32\drivers\agilevpn.sys (Microsoft Corporation)
DRV - (WfpLwf) -- C:\Windows\System32\drivers\wfplwf.sys (Microsoft Corporation)
DRV - (NdisCap) -- C:\Windows\System32\drivers\ndiscap.sys (Microsoft Corporation)
DRV - (vwifibus) -- C:\Windows\System32\drivers\vwifibus.sys (Microsoft Corporation)
DRV - (1394ohci) -- C:\Windows\system32\DRIVERS\1394ohci.sys (Microsoft Corporation)
DRV - (UmPass) -- C:\Windows\system32\DRIVERS\umpass.sys (Microsoft Corporation)
DRV - (WinUsb) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
DRV - (mshidkmdf) -- C:\Windows\System32\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV - (MTConfig) -- C:\Windows\system32\DRIVERS\MTConfig.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\drivers\CompositeBus.sys (Microsoft Corporation)
DRV - (AppID) -- C:\Windows\system32\drivers\appid.sys (Microsoft Corporation)
DRV - (scfilter) -- C:\Windows\System32\drivers\scfilter.sys (Microsoft Corporation)
DRV - (s3cap) -- C:\Windows\system32\DRIVERS\vms3cap.sys (Microsoft Corporation)
DRV - (VMBusHID) -- C:\Windows\system32\DRIVERS\VMBusHID.sys (Microsoft Corporation)
DRV - (discache) -- C:\Windows\System32\drivers\discache.sys (Microsoft Corporation)
DRV - (AcpiPmi) -- C:\Windows\system32\DRIVERS\acpipmi.sys (Microsoft Corporation)
DRV - (AmdPPM) -- C:\Windows\System32\drivers\amdppm.sys (Microsoft Corporation)
DRV - (hcw85cir) -- C:\Windows\system32\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BrUsbMdm) Brother MFC-nur-Fax-Modem (USB) -- C:\Windows\System32\Drivers\BrUsbMdm.sys (Brother Industries Ltd.)
DRV - (BrUsbSer) Brother MFC-WDM-Treiber (USB,seriell) -- C:\Windows\System32\Drivers\BrUsbSer.sys (Brother Industries Ltd.)
DRV - (BrSerWdm) Brother WDM-Treiber (seriell) -- C:\Windows\System32\Drivers\BrSerWdm.sys (Brother Industries Ltd.)
DRV - (BrFiltLo) -- C:\Windows\system32\DRIVERS\BrFiltLo.sys (Brother Industries, Ltd.)
DRV - (BrFiltUp) -- C:\Windows\system32\DRIVERS\BrFiltUp.sys (Brother Industries, Ltd.)
DRV - (NVENETFD) -- C:\Windows\System32\drivers\nvm62x32.sys (NVIDIA Corporation)
DRV - (E1G60) Intel(R) -- C:\Windows\System32\drivers\E1G60I32.sys (Intel Corporation)
DRV - (b57nd60x) -- C:\Windows\System32\drivers\b57nd60x.sys (Broadcom Corporation)
DRV - (ebdrv) -- C:\Windows\system32\DRIVERS\evbdx.sys (Broadcom Corporation)
DRV - (b06bdrv) -- C:\Windows\system32\DRIVERS\bxvbdx.sys (Broadcom Corporation)
DRV - (nvstor32) -- C:\Windows\system32\DRIVERS\nvstor32.sys (NVIDIA Corporation)
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
 
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
========== FireFox ==========
 
FF - prefs.js..browser.startup.homepage: "hxxp://www.spiegel.de/"
FF - prefs.js..extensions.enabledItems: foxdie_ext_ocelot@foxdie.us:3.6.4
FF - prefs.js..extensions.enabledItems: {B17C1C5A-04B1-11DB-9804-B622A1EF5492}:1.2.1
FF - prefs.js..extensions.enabledItems: feedly@devhd:4.1
FF - prefs.js..extensions.enabledItems: twitternotifier@naan.net:1.9.7.3
FF - prefs.js..extensions.enabledItems: {35106bca-6c78-48c7-ac28-56df30b51d2a}:1.3.8
FF - prefs.js..extensions.enabledItems: {c666c018-6409-4479-afa3-68e4129e7eff}:1.0.0
FF - prefs.js..extensions.enabledItems: de-DE@dictionaries.addons.mozilla.org:2.0.2
FF - prefs.js..extensions.enabledItems: DeviceDetection@logitech.com:1.20.0.66
FF - prefs.js..extensions.enabledItems: web2pdfextension@web2pdf.adobedotcom:1.0
FF - prefs.js..extensions.enabledItems: KavAntiBanner@Kaspersky.ru:11.0.2.556
FF - prefs.js..extensions.enabledItems: linkfilter@kaspersky.ru:11.0.2.556
FF - prefs.js..extensions.enabledItems: Foxdie@tanjihay.com:3.6.4
 
FF - HKLM\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2010.12.07 11:43:10 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.12.11 12:24:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.12.11 12:24:00 | 000,000,000 | ---D | M]
 
[2010.12.07 00:42:06 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Extensions
[2010.12.14 13:34:59 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions
[2010.12.07 01:55:42 | 000,000,000 | ---D | M] (Linkification) -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}
[2010.12.07 01:55:43 | 000,000,000 | ---D | M] (Password Exporter) -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}
[2010.12.07 01:55:42 | 000,000,000 | ---D | M] (Leo Search) -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\{c666c018-6409-4479-afa3-68e4129e7eff}
[2010.12.07 01:55:42 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\de-DE@dictionaries.addons.mozilla.org
[2010.12.07 02:08:08 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\DeviceDetection@logitech.com
[2010.12.07 01:55:43 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\feedly@devhd
[2010.12.07 01:42:30 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\Foxdie@tanjihay.com
[2010.12.07 01:42:36 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\foxdie_ext_ocelot@foxdie.us
[2010.12.07 01:43:55 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\FoxdieGraphite@tanjihay.com
[2010.12.12 12:37:26 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\twitternotifier@naan.net
[2010.12.07 01:55:43 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\mozilla\Firefox\Profiles\jsza9e5k.default\extensions\feedly@devhd\content\app\extension
[2010.12.14 13:17:37 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions
[2010.12.14 13:17:37 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru
[2010.12.14 13:17:36 | 000,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
[2010.10.27 06:44:13 | 000,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
[2010.10.27 06:44:13 | 000,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
[2010.10.27 06:44:13 | 000,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
[2010.10.27 06:44:13 | 000,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
[2010.10.27 06:44:13 | 000,001,105 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2010.12.07 11:39:35 | 000,000,854 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Programme\Kaspersky Internet Security\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programme\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programme\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Programme\Kaspersky Internet Security\klwtbbho.dll (Kaspersky Lab ZAO)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programme\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Internet Security\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4 - HKLM..\Run: [Getting started with MacDrive 8] C:\Program Files\Mediafour\MacDrive 8\MDGetStarted.exe (Mediafour Corporation)
O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe (VIA)
O4 - HKLM..\Run: [MacDrive 8 application] C:\Program Files\Mediafour\MacDrive 8\MacDrive.exe (Mediafour Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Nike+ Connect] C:\Program Files\Nike\Nike+ Connect\Nike+ Connect daemon.exe (Nike)
O4 - HKLM..\Run: [SwitchBoard] C:\Programme\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [VIAAUD] C:\Program Files\VIA\VIAudioi\VDeck\VIAAUD.exe File not found
O4 - HKLM..\Run: [VirtualCloneDrive] C:\Program Files\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
O4 - HKCU..\Run: [3RVX] C:\Programme\3RVX\3RVX.exe (matt.malensek.net)
O4 - HKCU..\Run: [Adobe Acrobat Synchronizer] C:\Program Files\Adobe\Acrobat 10.0\Acrobat\AdobeCollabSync.exe (Adobe Systems Incorporated)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 60
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8 - Extra context menu item: An OneNote s&enden - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: An vorhandene PDF-Datei anfügen - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Hinzufügen zu Anti-Banner - C:\Programme\Kaspersky Internet Security\ie_banner_deny.htm ()
O8 - Extra context menu item: In Adobe PDF konvertieren - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Linkziel an vorhandene PDF-Datei anhängen - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Linkziel in Adobe PDF konvertieren - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Nach Microsoft E&xcel exportieren - C:\Programme\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: &Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Programme\Kaspersky Internet Security\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Li&nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Programme\Kaspersky Internet Security\klwtbbho.dll (Kaspersky Lab ZAO)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\mzvkbd3.dll) - C:\Programme\Kaspersky Internet Security\mzvkbd3.dll (Kaspersky Lab ZAO)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\kloehk.dll) - C:\Programme\Kaspersky Internet Security\kloehk.dll (Kaspersky Lab ZAO)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKCU Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\klogon: DllName - C:\Windows\system32\klogon.dll - C:\Windows\System32\klogon.dll (Kaspersky Lab ZAO)
O20 - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - c:\Programme\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Programme\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2009.06.10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{f7ecc725-019a-11e0-acae-002522639bc4}\Shell - "" = AutoRun
O33 - MountPoints2\{f7ecc725-019a-11e0-acae-002522639bc4}\Shell\AutoRun\command - "" = H:\Set-up.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
========== Files/Folders - Created Within 30 Days ==========
 
[2010.12.14 15:42:11 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\xxxxx\Desktop\OTL.exe
[2010.12.14 14:55:14 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Malwarebytes
[2010.12.14 14:55:04 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.12.14 14:55:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.12.14 14:55:00 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010.12.14 14:55:00 | 000,000,000 | ---D | C] -- C:\Programme\Anti-Malware
[2010.12.14 13:16:47 | 000,000,000 | ---D | C] -- C:\Programme\Kaspersky Internet Security
[2010.12.14 13:16:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2010.12.14 13:16:36 | 000,488,536 | ---- | C] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys
[2010.12.14 13:12:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab Setup Files
[2010.12.13 15:41:20 | 000,000,000 | ---D | C] -- C:\Programme\VueScan
[2010.12.13 15:03:35 | 000,339,968 | ---- | C] (CANON INC.) -- C:\Windows\System32\N067UFW.DLL
[2010.12.13 15:03:35 | 000,036,864 | ---- | C] (CANON INC.) -- C:\Windows\System32\CNQU70.DLL
[2010.12.13 14:52:19 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\ElevatedDiagnostics
[2010.12.13 14:25:31 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\com.adobe.DC3Module.AdobeADC
[2010.12.13 14:21:00 | 000,389,180 | ---- | C] (Canon) -- C:\Windows\System32\UCS32P.DLL
[2010.12.10 02:36:56 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Google
[2010.12.09 13:01:02 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\Documents\Ableton
[2010.12.09 13:01:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Ableton
[2010.12.09 13:01:01 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Ableton
[2010.12.09 13:00:06 | 000,368,640 | ---- | C] (Propellerhead Software AB) -- C:\Windows\System32\ReWire.dll
[2010.12.09 13:00:06 | 000,233,472 | ---- | C] (Propellerhead Software AB) -- C:\Windows\System32\REX Shared Library.dll
[2010.12.09 12:58:51 | 000,000,000 | ---D | C] -- C:\Programme\Ableton
[2010.12.09 12:31:31 | 000,000,000 | ---D | C] -- C:\Windows\it-IT
[2010.12.09 12:31:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\it-IT
[2010.12.09 12:31:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\0410
[2010.12.09 12:31:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\it
[2010.12.09 12:29:01 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\volsnap.sys.mui
[2010.12.09 12:29:01 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\usbport.sys.mui
[2010.12.09 12:29:01 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\usbhub.sys.mui
[2010.12.09 12:29:01 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\vhdmp.sys.mui
[2010.12.09 12:29:01 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\tpm.sys.mui
[2010.12.09 12:29:01 | 000,003,584 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\it-IT\pscr.sys.mui
[2010.12.09 12:29:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\portcls.sys.mui
[2010.12.09 12:29:01 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\umbus.sys.mui
[2010.12.09 12:29:01 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\serscan.sys.mui
[2010.12.09 12:29:01 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\wd.sys.mui
[2010.12.09 12:29:00 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\mpio.sys.mui
[2010.12.09 12:29:00 | 000,033,280 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\it-IT\yk62x86.sys.mui
[2010.12.09 12:29:00 | 000,022,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\it-IT\e1y6032.sys.mui
[2010.12.09 12:29:00 | 000,022,016 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\it-IT\e1e6032.sys.mui
[2010.12.09 12:29:00 | 000,018,944 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\it-IT\E1G60I32.sys.mui
[2010.12.09 12:29:00 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\it-IT\k57nd60x.sys.mui
[2010.12.09 12:29:00 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\it-IT\b57nd60x.sys.mui
[2010.12.09 12:29:00 | 000,011,776 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\it-IT\e1q6032.sys.mui
[2010.12.09 12:29:00 | 000,011,776 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\it-IT\e1k6032.sys.mui
[2010.12.09 12:29:00 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\serial.sys.mui
[2010.12.09 12:29:00 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\i8042prt.sys.mui
[2010.12.09 12:29:00 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\msdsm.sys.mui
[2010.12.09 12:29:00 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\sermouse.sys.mui
[2010.12.09 12:29:00 | 000,005,632 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\it-IT\bcm4sbxp.sys.mui
[2010.12.09 12:29:00 | 000,005,120 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\it-IT\e100b325.sys.mui
[2010.12.09 12:29:00 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\mouclass.sys.mui
[2010.12.09 12:29:00 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\pcmcia.sys.mui
[2010.12.09 12:29:00 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\parport.sys.mui
[2010.12.09 12:29:00 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ataport.sys.mui
[2010.12.09 12:29:00 | 000,003,072 | ---- | C] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\it-IT\getn62.sys.mui
[2010.12.09 12:29:00 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\scsiport.sys.mui
[2010.12.09 12:29:00 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\rndismpx.sys.mui
[2010.12.09 12:29:00 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\rndismp6.sys.mui
[2010.12.09 12:29:00 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\vwifibus.sys.mui
[2010.12.09 12:29:00 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\parvdm.sys.mui
[2010.12.09 12:29:00 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\MTConfig.sys.mui
[2010.12.09 12:29:00 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\mouhid.sys.mui
[2010.12.09 12:29:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\amdide.sys.mui
[2010.12.09 12:28:59 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\bfe.dll.mui
[2010.12.09 12:28:59 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\afd.sys.mui
[2010.12.09 12:28:59 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\tunnel.sys.mui
[2010.12.09 12:28:59 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\modem.sys.mui
[2010.12.09 12:28:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\wdf01000.sys.mui
[2010.12.09 12:28:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\usbrpm.sys.mui
[2010.12.09 12:28:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ws2ifsl.sys.mui
[2010.12.09 12:28:58 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\tcpip.sys.mui
[2010.12.09 12:28:58 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\srv.sys.mui
[2010.12.09 12:28:57 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\pacer.sys.mui
[2010.12.09 12:28:57 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\fvevol.sys.mui
[2010.12.09 12:28:57 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\rdbss.sys.mui
[2010.12.09 12:28:57 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\RNDISMP.sys.mui
[2010.12.09 12:28:57 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\scfilter.sys.mui
[2010.12.09 12:28:57 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\qwavedrv.sys.mui
[2010.12.09 12:28:56 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ntfs.sys.mui
[2010.12.09 12:28:56 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ndis.sys.mui
[2010.12.09 12:28:56 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\nwifi.sys.mui
[2010.12.09 12:28:56 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ndisuio.sys.mui
[2010.12.09 12:28:56 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\partmgr.sys.mui
[2010.12.09 12:28:55 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ndiscap.sys.mui
[2010.12.09 12:28:54 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\luafv.sys.mui
[2010.12.09 12:28:54 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ipnat.sys.mui
[2010.12.09 12:28:54 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\mountmgr.sys.mui
[2010.12.09 12:28:52 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\http.sys.mui
[2010.12.09 12:28:50 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\fltmgr.sys.mui
[2010.12.09 12:28:49 | 000,011,264 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\it-IT\BrSerIb.sys.mui
[2010.12.09 12:28:49 | 000,011,264 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\it-IT\ltmdmnt.sys.mui
[2010.12.09 12:28:49 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\pci.sys.mui
[2010.12.09 12:28:49 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\vdrvroot.sys.mui
[2010.12.09 12:28:49 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\isapnp.sys.mui
[2010.12.09 12:28:49 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\mssmbios.sys.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\volmgrx.sys.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\VIAAGP.SYS.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ULIAGPKX.SYS.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\SISAGP.SYS.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\pnpmem.sys.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\NV_AGP.SYS.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\AMDAGP.SYS.mui
[2010.12.09 12:28:49 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\AGP440.sys.mui
[2010.12.09 12:28:48 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\viac7.sys.mui
[2010.12.09 12:28:48 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\processr.sys.mui
[2010.12.09 12:28:48 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\intelppm.sys.mui
[2010.12.09 12:28:48 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\amdppm.sys.mui
[2010.12.09 12:28:48 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\amdk8.sys.mui
[2010.12.09 12:28:48 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\ohci1394.sys.mui
[2010.12.09 12:28:48 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\1394ohci.sys.mui
[2010.12.09 12:28:48 | 000,011,264 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\it-IT\BrSerId.sys.mui
[2010.12.09 12:28:48 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\acpi.sys.mui
[2010.12.09 12:28:48 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\battc.sys.mui
[2010.12.09 12:28:48 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\bthport.sys.mui
[2010.12.09 12:28:48 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\IPMIDrv.sys.mui
[2010.12.09 12:28:48 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\kbdclass.sys.mui
[2010.12.09 12:28:48 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\bthpan.sys.mui
[2010.12.09 12:28:48 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\wacompen.sys.mui
[2010.12.09 12:28:48 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\hdaudbus.sys.mui
[2010.12.09 12:28:48 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\HdAudio.sys.mui
[2010.12.09 12:28:48 | 000,003,584 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\it-IT\atikmdag.sys.mui
[2010.12.09 12:28:48 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\hidbth.sys.mui
[2010.12.09 12:28:48 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\UAGP35.SYS.mui
[2010.12.09 12:28:48 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\kbdhid.sys.mui
[2010.12.09 12:28:48 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\GAGP30KX.SYS.mui
[2010.12.09 12:28:48 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\Dot4usb.sys.mui
[2010.12.09 12:28:48 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\disk.sys.mui
[2010.12.09 12:28:48 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\BTHUSB.SYS.mui
[2010.12.09 12:28:48 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\it-IT\BrParwdm.sys.mui
[2010.12.09 12:28:48 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\cdrom.sys.mui
[2010.12.09 12:28:48 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\it-IT\bthenum.sys.mui
[2010.12.09 12:27:40 | 000,000,000 | ---D | C] -- C:\Windows\fr-FR
[2010.12.09 12:27:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\fr-FR
[2010.12.09 12:27:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\fr
[2010.12.09 12:27:33 | 000,000,000 | ---D | C] -- C:\Windows\System32\040C
[2010.12.09 12:24:57 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\volsnap.sys.mui
[2010.12.09 12:24:57 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\usbport.sys.mui
[2010.12.09 12:24:57 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\usbhub.sys.mui
[2010.12.09 12:24:57 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\fr-FR\pscr.sys.mui
[2010.12.09 12:24:57 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\vhdmp.sys.mui
[2010.12.09 12:24:57 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\tpm.sys.mui
[2010.12.09 12:24:57 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\portcls.sys.mui
[2010.12.09 12:24:57 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\umbus.sys.mui
[2010.12.09 12:24:57 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\serscan.sys.mui
[2010.12.09 12:24:57 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\wd.sys.mui
[2010.12.09 12:24:56 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\pcmcia.sys.mui
[2010.12.09 12:24:55 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\mpio.sys.mui
[2010.12.09 12:24:55 | 000,033,280 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\fr-FR\yk62x86.sys.mui
[2010.12.09 12:24:55 | 000,023,552 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\fr-FR\e1y6032.sys.mui
[2010.12.09 12:24:55 | 000,023,552 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\fr-FR\e1e6032.sys.mui
[2010.12.09 12:24:55 | 000,019,968 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\fr-FR\E1G60I32.sys.mui
[2010.12.09 12:24:55 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\afd.sys.mui
[2010.12.09 12:24:55 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\fr-FR\k57nd60x.sys.mui
[2010.12.09 12:24:55 | 000,012,800 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\fr-FR\b57nd60x.sys.mui
[2010.12.09 12:24:55 | 000,012,288 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\fr-FR\e1q6032.sys.mui
[2010.12.09 12:24:55 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\serial.sys.mui
[2010.12.09 12:24:55 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\i8042prt.sys.mui
[2010.12.09 12:24:55 | 000,011,776 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\fr-FR\e1k6032.sys.mui
[2010.12.09 12:24:55 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\msdsm.sys.mui
[2010.12.09 12:24:55 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\sermouse.sys.mui
[2010.12.09 12:24:55 | 000,005,632 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\fr-FR\e100b325.sys.mui
[2010.12.09 12:24:55 | 000,005,632 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\fr-FR\bcm4sbxp.sys.mui
[2010.12.09 12:24:55 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\mouclass.sys.mui
[2010.12.09 12:24:55 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\parport.sys.mui
[2010.12.09 12:24:55 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ataport.sys.mui
[2010.12.09 12:24:55 | 000,003,072 | ---- | C] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\fr-FR\getn62.sys.mui
[2010.12.09 12:24:55 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\scsiport.sys.mui
[2010.12.09 12:24:55 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\rndismpx.sys.mui
[2010.12.09 12:24:55 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\rndismp6.sys.mui
[2010.12.09 12:24:55 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\parvdm.sys.mui
[2010.12.09 12:24:55 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\mouhid.sys.mui
[2010.12.09 12:24:55 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\vwifibus.sys.mui
[2010.12.09 12:24:55 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\MTConfig.sys.mui
[2010.12.09 12:24:55 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\amdide.sys.mui
[2010.12.09 12:24:54 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\tcpip.sys.mui
[2010.12.09 12:24:54 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\bfe.dll.mui
[2010.12.09 12:24:54 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\tunnel.sys.mui
[2010.12.09 12:24:54 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\modem.sys.mui
[2010.12.09 12:24:54 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\wdf01000.sys.mui
[2010.12.09 12:24:54 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\usbrpm.sys.mui
[2010.12.09 12:24:54 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ws2ifsl.sys.mui
[2010.12.09 12:24:53 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\fvevol.sys.mui
[2010.12.09 12:24:53 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\srv.sys.mui
[2010.12.09 12:24:53 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\scfilter.sys.mui
[2010.12.09 12:24:50 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\pacer.sys.mui
[2010.12.09 12:24:50 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\rdbss.sys.mui
[2010.12.09 12:24:50 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\RNDISMP.sys.mui
[2010.12.09 12:24:50 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\qwavedrv.sys.mui
[2010.12.09 12:24:50 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\partmgr.sys.mui
[2010.12.09 12:24:49 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ntfs.sys.mui
[2010.12.09 12:24:49 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ndis.sys.mui
[2010.12.09 12:24:49 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\nwifi.sys.mui
[2010.12.09 12:24:49 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ndisuio.sys.mui
[2010.12.09 12:24:48 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ndiscap.sys.mui
[2010.12.09 12:24:47 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\mountmgr.sys.mui
[2010.12.09 12:24:45 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\luafv.sys.mui
[2010.12.09 12:24:45 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ipnat.sys.mui
[2010.12.09 12:24:44 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\http.sys.mui
[2010.12.09 12:24:42 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\fltmgr.sys.mui
[2010.12.09 12:24:41 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\volmgrx.sys.mui
[2010.12.09 12:24:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\viac7.sys.mui
[2010.12.09 12:24:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\processr.sys.mui
[2010.12.09 12:24:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\intelppm.sys.mui
[2010.12.09 12:24:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\amdppm.sys.mui
[2010.12.09 12:24:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\amdk8.sys.mui
[2010.12.09 12:24:40 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ohci1394.sys.mui
[2010.12.09 12:24:40 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\1394ohci.sys.mui
[2010.12.09 12:24:40 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\fr-FR\BrSerId.sys.mui
[2010.12.09 12:24:40 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\fr-FR\BrSerIb.sys.mui
[2010.12.09 12:24:40 | 000,011,264 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\fr-FR\ltmdmnt.sys.mui
[2010.12.09 12:24:40 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\acpi.sys.mui
[2010.12.09 12:24:40 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\battc.sys.mui
[2010.12.09 12:24:40 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\pci.sys.mui
[2010.12.09 12:24:40 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\bthport.sys.mui
[2010.12.09 12:24:40 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\IPMIDrv.sys.mui
[2010.12.09 12:24:40 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\kbdclass.sys.mui
[2010.12.09 12:24:40 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\bthpan.sys.mui
[2010.12.09 12:24:40 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\wacompen.sys.mui
[2010.12.09 12:24:40 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\vdrvroot.sys.mui
[2010.12.09 12:24:40 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\isapnp.sys.mui
[2010.12.09 12:24:40 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\hdaudbus.sys.mui
[2010.12.09 12:24:40 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\HdAudio.sys.mui
[2010.12.09 12:24:40 | 000,003,584 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\fr-FR\atikmdag.sys.mui
[2010.12.09 12:24:40 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\mssmbios.sys.mui
[2010.12.09 12:24:40 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\hidbth.sys.mui
[2010.12.09 12:24:40 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\Dot4usb.sys.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\VIAAGP.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\ULIAGPKX.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\UAGP35.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\SISAGP.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\pnpmem.sys.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\NV_AGP.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\kbdhid.sys.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\GAGP30KX.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\disk.sys.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\BTHUSB.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\AMDAGP.SYS.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\AGP440.sys.mui
[2010.12.09 12:24:40 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\fr-FR\BrParwdm.sys.mui
[2010.12.09 12:24:40 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\cdrom.sys.mui
[2010.12.09 12:24:40 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\fr-FR\bthenum.sys.mui
[2010.12.09 12:23:33 | 000,000,000 | ---D | C] -- C:\Windows\en-US
[2010.12.09 12:23:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\en-US
[2010.12.09 12:23:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\en
[2010.12.09 12:23:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\0409
[2010.12.09 12:20:31 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\usbport.sys.mui
[2010.12.09 12:20:31 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\volsnap.sys.mui
[2010.12.09 12:20:31 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\usbhub.sys.mui
[2010.12.09 12:20:31 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\tpm.sys.mui
[2010.12.09 12:20:31 | 000,003,584 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\System32\drivers\en-US\pscr.sys.mui
[2010.12.09 12:20:31 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\vhdmp.sys.mui
[2010.12.09 12:20:31 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\portcls.sys.mui
[2010.12.09 12:20:31 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\umbus.sys.mui
[2010.12.09 12:20:31 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\serscan.sys.mui
[2010.12.09 12:20:31 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\wd.sys.mui
[2010.12.09 12:20:30 | 000,032,256 | ---- | C] (Marvell) -- C:\Windows\System32\drivers\en-US\yk62x86.sys.mui
[2010.12.09 12:20:30 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\pcmcia.sys.mui
[2010.12.09 12:20:30 | 000,003,072 | ---- | C] (VIA Technologies, Inc. ) -- C:\Windows\System32\drivers\en-US\getn62.sys.mui
[2010.12.09 12:20:30 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\rndismpx.sys.mui
[2010.12.09 12:20:30 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\rndismp6.sys.mui
[2010.12.09 12:20:30 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\vwifibus.sys.mui
[2010.12.09 12:20:29 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\mpio.sys.mui
[2010.12.09 12:20:29 | 000,019,968 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\en-US\e1y6032.sys.mui
[2010.12.09 12:20:29 | 000,019,968 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\en-US\e1e6032.sys.mui
[2010.12.09 12:20:29 | 000,016,896 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\en-US\E1G60I32.sys.mui
[2010.12.09 12:20:29 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\afd.sys.mui
[2010.12.09 12:20:29 | 000,010,752 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\en-US\e1q6032.sys.mui
[2010.12.09 12:20:29 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\serial.sys.mui
[2010.12.09 12:20:29 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\i8042prt.sys.mui
[2010.12.09 12:20:29 | 000,010,240 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\en-US\e1k6032.sys.mui
[2010.12.09 12:20:29 | 000,009,728 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\en-US\k57nd60x.sys.mui
[2010.12.09 12:20:29 | 000,009,728 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\en-US\b57nd60x.sys.mui
[2010.12.09 12:20:29 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\msdsm.sys.mui
[2010.12.09 12:20:29 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\sermouse.sys.mui
[2010.12.09 12:20:29 | 000,005,120 | ---- | C] (Intel Corporation) -- C:\Windows\System32\drivers\en-US\e100b325.sys.mui
[2010.12.09 12:20:29 | 000,005,120 | ---- | C] (Broadcom Corporation) -- C:\Windows\System32\drivers\en-US\bcm4sbxp.sys.mui
[2010.12.09 12:20:29 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\mouclass.sys.mui
[2010.12.09 12:20:29 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\parport.sys.mui
[2010.12.09 12:20:29 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\scsiport.sys.mui
[2010.12.09 12:20:29 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ataport.sys.mui
[2010.12.09 12:20:29 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\parvdm.sys.mui
[2010.12.09 12:20:29 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\MTConfig.sys.mui
[2010.12.09 12:20:29 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\mouhid.sys.mui
[2010.12.09 12:20:29 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\amdide.sys.mui
[2010.12.09 12:20:28 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\tcpip.sys.mui
[2010.12.09 12:20:28 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\bfe.dll.mui
[2010.12.09 12:20:28 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\tunnel.sys.mui
[2010.12.09 12:20:28 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\modem.sys.mui
[2010.12.09 12:20:28 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
[2010.12.09 12:20:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ws2ifsl.sys.mui
[2010.12.09 12:20:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\usbrpm.sys.mui
[2010.12.09 12:20:27 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\fvevol.sys.mui
[2010.12.09 12:20:27 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\srv.sys.mui
[2010.12.09 12:20:27 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\scfilter.sys.mui
[2010.12.09 12:20:20 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\pacer.sys.mui
[2010.12.09 12:20:20 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\rdbss.sys.mui
[2010.12.09 12:20:20 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\RNDISMP.sys.mui
[2010.12.09 12:20:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\qwavedrv.sys.mui
[2010.12.09 12:20:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\partmgr.sys.mui
[2010.12.09 12:20:18 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ntfs.sys.mui
[2010.12.09 12:20:18 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ndis.sys.mui
[2010.12.09 12:20:18 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\nwifi.sys.mui
[2010.12.09 12:20:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ndiscap.sys.mui
[2010.12.09 12:20:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ndisuio.sys.mui
[2010.12.09 12:20:17 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\luafv.sys.mui
[2010.12.09 12:20:17 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ipnat.sys.mui
[2010.12.09 12:20:17 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\mountmgr.sys.mui
[2010.12.09 12:20:16 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\http.sys.mui
[2010.12.09 12:20:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\fltmgr.sys.mui
[2010.12.09 12:20:14 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\volmgrx.sys.mui
[2010.12.09 12:20:13 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\viac7.sys.mui
[2010.12.09 12:20:13 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\processr.sys.mui
[2010.12.09 12:20:13 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\intelppm.sys.mui
[2010.12.09 12:20:13 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\amdppm.sys.mui
[2010.12.09 12:20:13 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\amdk8.sys.mui
[2010.12.09 12:20:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ohci1394.sys.mui
[2010.12.09 12:20:13 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\1394ohci.sys.mui
[2010.12.09 12:20:13 | 000,010,240 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\en-US\BrSerId.sys.mui
[2010.12.09 12:20:13 | 000,010,240 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\en-US\BrSerIb.sys.mui
[2010.12.09 12:20:13 | 000,009,728 | ---- | C] (Agere Systems) -- C:\Windows\System32\drivers\en-US\ltmdmnt.sys.mui
[2010.12.09 12:20:13 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\acpi.sys.mui
[2010.12.09 12:20:13 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\pci.sys.mui
[2010.12.09 12:20:13 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\bthport.sys.mui
[2010.12.09 12:20:13 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\battc.sys.mui
[2010.12.09 12:20:13 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\IPMIDrv.sys.mui
[2010.12.09 12:20:13 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\bthpan.sys.mui
[2010.12.09 12:20:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\wacompen.sys.mui
[2010.12.09 12:20:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\kbdclass.sys.mui
[2010.12.09 12:20:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\hdaudbus.sys.mui
[2010.12.09 12:20:13 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\vdrvroot.sys.mui
[2010.12.09 12:20:13 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\isapnp.sys.mui
[2010.12.09 12:20:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\mssmbios.sys.mui
[2010.12.09 12:20:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\hidbth.sys.mui
[2010.12.09 12:20:13 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\HdAudio.sys.mui
[2010.12.09 12:20:13 | 000,003,072 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\System32\drivers\en-US\atikmdag.sys.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\VIAAGP.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\ULIAGPKX.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\UAGP35.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\SISAGP.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\pnpmem.sys.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\NV_AGP.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\kbdhid.sys.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\GAGP30KX.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\Dot4usb.sys.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\BTHUSB.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\AMDAGP.SYS.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\AGP440.sys.mui
[2010.12.09 12:20:13 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\System32\drivers\en-US\BrParwdm.sys.mui
[2010.12.09 12:20:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\disk.sys.mui
[2010.12.09 12:20:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\cdrom.sys.mui
[2010.12.09 12:20:13 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\en-US\bthenum.sys.mui
[2010.12.08 14:28:09 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\Documents\Shutdown
[2010.12.08 13:08:03 | 000,000,000 | ---D | C] -- C:\Programme\Nvidia
[2010.12.08 13:04:56 | 000,000,000 | ---D | C] -- C:\Programme\SystemRequirementsLab
[2010.12.08 11:05:59 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Kerio
[2010.12.08 11:04:08 | 000,000,000 | ---D | C] -- C:\Programme\Kerio
[2010.12.08 11:03:36 | 000,000,000 | ---D | C] -- C:\Programme\My Company Name
[2010.12.07 18:25:40 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Documents\Scanned Documents
[2010.12.07 18:25:40 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\Documents\Fax
[2010.12.07 17:44:26 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\WinRAR
[2010.12.07 17:42:12 | 000,000,000 | ---D | C] -- C:\Programme\WinRAR
[2010.12.07 17:38:36 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2010.12.07 17:37:39 | 000,641,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2010.12.07 17:37:39 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdri.dll
[2010.12.07 17:37:39 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
[2010.12.07 17:37:39 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2010.12.07 17:37:22 | 000,026,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Diskdump.sys
[2010.12.07 17:24:01 | 000,000,000 | ---D | C] -- C:\Programme\TeamViewer
[2010.12.07 17:22:24 | 000,000,000 | ---D | C] -- C:\Programme\CDBurnerXP
[2010.12.07 17:20:54 | 000,057,800 | ---- | C] (EldoS Corporation) -- C:\Windows\System32\drivers\CBDisk.sys
[2010.12.07 17:20:51 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Mediafour
[2010.12.07 17:20:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Mediafour
[2010.12.07 17:20:19 | 000,000,000 | ---D | C] -- C:\Programme\Mediafour
[2010.12.07 17:20:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Nike
[2010.12.07 17:20:05 | 000,000,000 | ---D | C] -- C:\Programme\Nike
[2010.12.07 16:56:02 | 000,000,000 | ---D | C] -- C:\Programme\Adobe Media Player
[2010.12.07 16:54:47 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Adobe AIR
[2010.12.07 16:46:19 | 000,000,000 | ---D | C] -- C:\ProgramData\ALM
[2010.12.07 16:45:47 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\vlc
[2010.12.07 16:45:13 | 000,000,000 | ---D | C] -- C:\Programme\VLC
[2010.12.07 16:41:37 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Macrovision Shared
[2010.12.07 12:30:05 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\Documents\Outlook-Dateien
[2010.12.07 12:05:50 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Synchronization Services
[2010.12.07 12:05:49 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\DESIGNER
[2010.12.07 12:05:29 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2010.12.07 12:05:29 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Sync Framework
[2010.12.07 12:05:29 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft SQL Server Compact Edition
[2010.12.07 12:04:38 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Visual Studio 8
[2010.12.07 12:03:58 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Analysis Services
[2010.12.07 12:03:38 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Microsoft Help
[2010.12.07 12:03:33 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Office
[2010.12.07 12:03:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2010.12.07 12:03:25 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2010.12.07 11:45:08 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1986-12.com.adobe
[2010.12.07 11:44:04 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Adobe
[2010.12.07 11:42:18 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Adobe
[2010.12.07 11:42:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2010.12.07 11:42:17 | 000,000,000 | ---D | C] -- C:\Programme\Adobe
[2010.12.07 02:31:35 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\matt.malensek.net
[2010.12.07 02:30:32 | 000,000,000 | ---D | C] -- C:\Programme\3RVX
[2010.12.07 02:24:20 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Apple Computer
[2010.12.07 02:24:20 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Apple Computer
[2010.12.07 02:24:16 | 000,107,368 | ---- | C] (GEAR Software Inc.) -- C:\Windows\System32\GEARAspi.dll
[2010.12.07 02:24:16 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2010.12.07 02:23:58 | 000,000,000 | ---D | C] -- C:\Programme\iPod
[2010.12.07 02:23:57 | 000,000,000 | ---D | C] -- C:\Programme\iTunes
[2010.12.07 02:23:57 | 000,000,000 | ---D | C] -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2010.12.07 02:23:25 | 000,000,000 | ---D | C] -- C:\Programme\QuickTime
[2010.12.07 02:23:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2010.12.07 02:23:15 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Apple
[2010.12.07 02:23:13 | 000,000,000 | ---D | C] -- C:\Programme\Apple Software Update
[2010.12.07 02:22:54 | 000,000,000 | ---D | C] -- C:\Programme\Bonjour
[2010.12.07 02:22:45 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\Apple
[2010.12.07 02:22:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2010.12.07 02:21:31 | 000,000,000 | ---D | C] -- C:\Programme\VirtualCloneDrive
[2010.12.07 02:15:21 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Leadertech
[2010.12.07 02:15:06 | 000,016,400 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LNonPnP.sys
[2010.12.07 02:14:46 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\LogiShrd
[2010.12.07 02:14:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Logishrd
[2010.12.07 02:14:40 | 000,000,000 | ---D | C] -- C:\Programme\Logitech
[2010.12.07 02:13:56 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\LogiShrd
[2010.12.07 02:13:52 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Logitech
[2010.12.07 02:13:52 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Logishrd
[2010.12.07 01:49:41 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Macromedia
[2010.12.07 01:49:41 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Adobe
[2010.12.07 01:49:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2010.12.07 01:03:16 | 000,372,768 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvraiins.dll
[2010.12.07 01:03:16 | 000,372,768 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvraidco.dll
[2010.12.07 01:03:16 | 000,212,000 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvstor32.sys
[2010.12.07 01:03:16 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoPtb.dll
[2010.12.07 01:03:16 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoIt.dll
[2010.12.07 01:03:16 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoFr.dll
[2010.12.07 01:03:16 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoEsm.dll
[2010.12.07 01:03:16 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoEs.dll
[2010.12.07 01:03:16 | 000,017,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoDe.dll
[2010.12.07 01:03:16 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoSv.dll
[2010.12.07 01:03:16 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoRu.dll
[2010.12.07 01:03:16 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoNo.dll
[2010.12.07 01:03:16 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoNl.dll
[2010.12.07 01:03:16 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoFi.dll
[2010.12.07 01:03:16 | 000,016,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoENU.dll
[2010.12.07 01:03:16 | 000,016,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoEng.dll
[2010.12.07 01:03:16 | 000,015,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoKo.dll
[2010.12.07 01:03:16 | 000,015,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoJa.dll
[2010.12.07 01:03:16 | 000,014,880 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoZht.dll
[2010.12.07 01:03:16 | 000,014,880 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoZhc.dll
[2010.12.07 01:03:00 | 000,017,440 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvRCoDa.dll
[2010.12.07 01:02:48 | 000,000,000 | ---D | C] -- C:\Programme\InstallShield Installation Information
[2010.12.07 01:02:30 | 001,108,480 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\drivers\viahduaa.sys
[2010.12.07 01:02:30 | 000,868,352 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\VIAPropPageExt.dll
[2010.12.07 01:02:30 | 000,524,288 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMAPO32.DLL
[2010.12.07 01:02:30 | 000,502,784 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\VIASysFx.dll
[2010.12.07 01:02:30 | 000,211,456 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\Dts2APO.dll
[2010.12.07 01:02:30 | 000,181,248 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\ViaMicArrayAPO.dll
[2010.12.07 01:02:30 | 000,076,288 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\System32\nQPropPageExt.dll
[2010.12.07 01:02:30 | 000,075,776 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\System32\Dts2PropPageExt.dll
[2010.12.07 01:02:30 | 000,071,680 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\System32\nQAPO.dll
[2010.12.07 01:02:30 | 000,068,608 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\System32\ViaMicArrayPropPageExt.dll
[2010.12.07 01:02:30 | 000,062,464 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMWRP32.DLL
[2010.12.07 01:02:30 | 000,047,104 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMPPLD32.DLL
[2010.12.07 01:02:30 | 000,044,032 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\VMPPCN32.DLL
[2010.12.07 01:01:50 | 000,000,000 | ---D | C] -- C:\Programme\VIA
[2010.12.07 01:01:37 | 000,000,000 | ---D | C] -- C:\Programme\Common Files\InstallShield
[2010.12.07 01:00:22 | 000,000,000 | ---D | C] -- C:\Programme\NVIDIA Corporation
[2010.12.07 01:00:13 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2010.12.07 00:59:39 | 000,151,552 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod157.dll
[2010.12.07 00:59:26 | 000,795,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpinst.exe
[2010.12.07 00:58:44 | 000,898,048 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\fdco1.dll
[2010.12.07 00:58:44 | 000,240,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvconrm.dll
[2010.12.07 00:58:30 | 000,457,248 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvunrm.exe
[2010.12.07 00:44:56 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\foobar2000
[2010.12.07 00:44:50 | 000,000,000 | ---D | C] -- C:\Programme\foobar
[2010.12.07 00:42:01 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Mozilla
[2010.12.07 00:42:01 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Mozilla
[2010.12.07 00:41:56 | 000,000,000 | ---D | C] -- C:\Programme\Mozilla Firefox
[2010.12.07 00:19:43 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2010.12.07 00:18:35 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Searches
[2010.12.07 00:18:28 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Identities
[2010.12.07 00:18:26 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Contacts
[2010.12.07 00:18:22 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\VirtualStore
[2010.12.07 00:18:21 | 000,000,000 | --SD | C] -- C:\Users\xxxxx\AppData\Roaming\Microsoft
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Videos
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Saved Games
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Pictures
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Music
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Links
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Favorites
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Downloads
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Documents
[2010.12.07 00:18:21 | 000,000,000 | R--D | C] -- C:\Users\xxxxx\Desktop
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Vorlagen
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\AppData\Local\Verlauf
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\AppData\Local\Temporary Internet Files
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Startmenü
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\SendTo
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Recent
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Netzwerkumgebung
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Lokale Einstellungen
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Documents\Eigene Videos
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Documents\Eigene Musik
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Eigene Dateien
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Documents\Eigene Bilder
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Druckumgebung
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Cookies
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\AppData\Local\Anwendungsdaten
[2010.12.07 00:18:21 | 000,000,000 | -HSD | C] -- C:\Users\xxxxx\Anwendungsdaten
[2010.12.07 00:18:21 | 000,000,000 | -H-D | C] -- C:\Users\xxxxx\AppData
[2010.12.07 00:18:21 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Temp
[2010.12.07 00:18:21 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Local\Microsoft
[2010.12.07 00:18:21 | 000,000,000 | ---D | C] -- C:\Users\xxxxx\AppData\Roaming\Media Center Programs
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\Recovery
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\Programme
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\Programme\Gemeinsame Dateien
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\ProgramData\Desktop
[2010.12.07 00:18:09 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2010.12.07 00:14:07 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010.12.07 00:14:05 | 000,000,000 | ---D | C] -- C:\Windows\CSC
[2010.12.07 00:13:03 | 000,000,000 | -HSD | C] -- C:\Boot
[2010.08.25 07:50:00 | 006,189,712 | ---- | C] (Hamrick Software) -- C:\Users\xxxxx\AppData\Roaming\vuescan_v8.6.53.exe
 
========== Files - Modified Within 30 Days ==========
 
[2010.12.14 15:47:09 | 000,012,048 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.12.14 15:47:09 | 000,012,048 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.12.14 15:42:12 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\xxxxx\Desktop\OTL.exe
[2010.12.14 15:39:10 | 000,697,136 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
[2010.12.14 15:39:10 | 000,691,814 | ---- | M] () -- C:\Windows\System32\perfh010.dat
[2010.12.14 15:39:10 | 000,657,438 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2010.12.14 15:39:10 | 000,618,714 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010.12.14 15:39:10 | 000,130,810 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2010.12.14 15:39:10 | 000,130,786 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
[2010.12.14 15:39:10 | 000,127,790 | ---- | M] () -- C:\Windows\System32\perfc010.dat
[2010.12.14 15:39:10 | 000,107,034 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010.12.14 15:34:43 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.12.14 15:34:41 | 1408,737,280 | -HS- | M] () -- C:\hiberfil.sys
[2010.12.14 14:55:04 | 000,000,969 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.12.14 13:22:23 | 000,114,243 | ---- | M] () -- C:\Windows\System32\drivers\klin.dat
[2010.12.14 13:22:23 | 000,097,859 | ---- | M] () -- C:\Windows\System32\drivers\klick.dat
[2010.12.14 13:16:36 | 000,488,536 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys
[2010.12.14 04:23:24 | 000,001,456 | ---- | M] () -- C:\Users\xxxxx\AppData\Local\Adobe Für Web speichern 12.0 Prefs
[2010.12.13 15:04:42 | 000,000,017 | ---- | M] () -- C:\Users\xxxxx\AppData\Local\resmon.resmoncfg
[2010.12.09 12:31:13 | 000,335,478 | ---- | M] () -- C:\Windows\System32\perfi010.dat
[2010.12.09 12:31:13 | 000,037,534 | ---- | M] () -- C:\Windows\System32\perfd010.dat
[2010.12.09 12:27:22 | 000,344,522 | ---- | M] () -- C:\Windows\System32\perfi00C.dat
[2010.12.09 12:27:22 | 000,038,160 | ---- | M] () -- C:\Windows\System32\perfd00C.dat
[2010.12.08 14:51:30 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.12.07 18:28:01 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2010.12.07 17:31:15 | 003,961,008 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010.12.07 02:15:06 | 000,016,400 | ---- | M] (Logitech, Inc.) -- C:\Windows\System32\drivers\LNonPnP.sys
[2010.12.07 00:50:12 | 000,000,670 | ---- | M] () -- C:\Users\xxxxx\Desktop\Neue Musik.lnk
[2010.12.07 00:50:05 | 000,000,631 | ---- | M] () -- C:\Users\xxxxx\Desktop\Musik.lnk
[2010.12.07 00:44:51 | 000,000,959 | ---- | M] () -- C:\Users\Public\Desktop\foobar.lnk
[2010.12.07 00:41:58 | 000,001,885 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010.12.07 00:15:55 | 000,000,751 | ---- | M] () -- C:\Windows\System32\license.rtf
[2010.12.07 00:13:04 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2010.11.29 17:42:18 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010.11.29 17:42:06 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
 
========== Files Created - No Company Name ==========
 
[2010.12.14 14:55:04 | 000,000,969 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.12.14 13:17:29 | 000,114,243 | ---- | C] () -- C:\Windows\System32\drivers\klin.dat
[2010.12.14 13:17:29 | 000,097,859 | ---- | C] () -- C:\Windows\System32\drivers\klick.dat
[2010.12.14 04:23:24 | 000,001,456 | ---- | C] () -- C:\Users\xxxxx\AppData\Local\Adobe Für Web speichern 12.0 Prefs
[2010.12.13 15:04:42 | 000,000,017 | ---- | C] () -- C:\Users\xxxxx\AppData\Local\resmon.resmoncfg
[2010.12.09 12:32:04 | 000,691,814 | ---- | C] () -- C:\Windows\System32\perfh010.dat
[2010.12.09 12:32:04 | 000,335,478 | ---- | C] () -- C:\Windows\System32\perfi010.dat
[2010.12.09 12:32:04 | 000,127,790 | ---- | C] () -- C:\Windows\System32\perfc010.dat
[2010.12.09 12:32:04 | 000,037,534 | ---- | C] () -- C:\Windows\System32\perfd010.dat
[2010.12.09 12:28:16 | 000,697,136 | ---- | C] () -- C:\Windows\System32\perfh00C.dat
[2010.12.09 12:28:16 | 000,344,522 | ---- | C] () -- C:\Windows\System32\perfi00C.dat
[2010.12.09 12:28:16 | 000,130,786 | ---- | C] () -- C:\Windows\System32\perfc00C.dat
[2010.12.09 12:28:16 | 000,038,160 | ---- | C] () -- C:\Windows\System32\perfd00C.dat
[2010.12.08 14:51:30 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2010.12.07 18:28:01 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2010.12.07 01:51:11 | 001,171,378 | ---- | C] () -- C:\Users\xxxxx\Desktop\springer.pdf
[2010.12.07 01:51:07 | 020,934,656 | ---- | C] () -- C:\Users\xxxxx\Desktop\PR-Feature.mp3
[2010.12.07 00:58:45 | 000,704,512 | R--- | C] () -- C:\Windows\System32\cohelper.dll
[2010.12.07 00:58:45 | 000,005,940 | R--- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2010.12.07 00:58:29 | 000,006,076 | ---- | C] () -- C:\Windows\System32\nvnrm.nvu
[2010.12.07 00:50:12 | 000,000,670 | ---- | C] () -- C:\Users\xxxxx\Desktop\Neue Musik.lnk
[2010.12.07 00:50:05 | 000,000,631 | ---- | C] () -- C:\Users\xxxxx\Desktop\Musik.lnk
[2010.12.07 00:44:51 | 000,000,959 | ---- | C] () -- C:\Users\Public\Desktop\foobar.lnk
[2010.12.07 00:41:58 | 000,001,885 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010.12.07 00:13:40 | 1408,737,280 | -HS- | C] () -- C:\hiberfil.sys
[2010.12.07 00:13:04 | 000,008,192 | RHS- | C] () -- C:\BOOTSECT.BAK
[2010.12.07 00:13:03 | 000,383,562 | RHS- | C] () -- C:\bootmgr
[2009.07.14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
 
========== LOP Check ==========
 
[2010.12.09 13:01:02 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\Ableton
[2010.12.13 14:25:31 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\com.adobe.DC3Module.AdobeADC
[2010.12.14 12:12:03 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\foobar2000
[2010.12.07 02:15:21 | 000,000,000 | ---D | M] -- C:\Users\xxxxx\AppData\Roaming\Leadertech
[2010.12.14 12:57:47 | 000,009,952 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
 
========== Purity Check ==========
 
 
 
< End of report >
         
--- --- ---


----------------------------------------------OTL Logfile:
Code:
ATTFilter
OTL Extras logfile created on: 14.12.2010 15:49:38 - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\xxxxxxel\Desktop
Enterprise Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 62,00% Memory free
3,00 Gb Paging File | 3,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 146,72 Gb Total Space | 115,94 Gb Free Space | 79,02% Space Free | Partition Type: NTFS
Drive D: | 784,79 Gb Total Space | 678,89 Gb Free Space | 86,51% Space Free | Partition Type: NTFS
Drive E: | 372,52 Gb Total Space | 67,55 Gb Free Space | 18,13% Space Free | Partition Type: FAT32
 
Computer Name: xxxxxx | User Name: xxxxxx | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
========== Shell Spawning ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
https [open] -- "C:\Program Files\Mozilla Firefox\firefox.exe" -requestPending -osint -url "%1" (Mozilla Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
 
========== Authorized Applications List ==========
 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
"{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}" = Adobe WinSoft Linguistics Plugin
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
"{29E5EA97-5F74-4A57-B8B2-D4F169117183}" = Adobe Stock Photos CS3
"{2A981294-F14C-4F0F-9627-D793270922F8}" = Bonjour
"{308B6AEA-DE50-4666-996D-0FA461719D6B}" = Apple Mobile Device Support
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = eReg
"{40D32C77-B711-4047-96C6-A968DB2DEDDA}" = Kerio Outlook Connector (Offline Edition)
"{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{66BB5D8F-D9BD-4799-A9FA-5731B3B7839A}" = 3RVX
"{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Internet Security 2011
"{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
"{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
"{73B5D990-04EA-4751-B10F-5534770B91F2}" = Adobe Color EU Recommended Settings
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{802771A9-A856-4A41-ACF7-1450E523C923}" = Adobe XMP Panels CS3
"{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
"{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2010
"{90140000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2010
"{90140000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2010
"{90140000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2010
"{90140000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2010
"{90140000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2010
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010
"{90140000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2010
"{90140000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2010
"{90140000-0044-0407-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (German) 2010
"{90140000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2010
"{90140000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2010
"{90140000-00BA-0407-0000-0000000FF1CE}" = Microsoft Office Groove MUI (German) 2010
"{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
"{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}" = PDF Settings
"{AC76BA86-1033-F400-7760-000000000005}" = Adobe Acrobat X Pro - English, Français, Deutsch
"{AF346D59-7F5B-4CA2-9302-7F4AC3C09C10}" = MacDrive 8
"{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
"{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
"{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
"{C41300B9-185D-475E-BFEC-39EF732F19B1}" = Apple Software Update
"{C8D7A672-F697-4572-AC62-C856053A8DBC}" = Adobe Illustrator CS3
"{CEA791BB-6F54-48ED-BC2A-F78157C1D558}" = Adobe Setup
"{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
"{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}" = Adobe Color JA Extra Settings
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
"{E7004147-2CCA-431C-AA05-2AB166B9785D}" = QuickTime
"{EE6097DD-05F4-4178-9719-D3170BF098E8}" = Apple Application Support
"{F750C986-5310-3A5A-95F8-4EC71C8AC01C}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{FAE36873-1941-4076-A9A5-48812B5EA0B7}" = iTunes
"{FF29A7E2-FF40-4D07-B7E4-2093DE59E10A}" = Adobe Color NA Extra Settings
"Adobe AIR" = Adobe AIR
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe_c015d5ef39552390a753ee735d16041" = Adobe Illustrator CS3
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"foobar2000" = foobar2000 v1.1.1
"InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Plattform-Geräte-Manager
"InstallWIX_{66F1F013-008F-4875-B283-5A814B820347}" = Kaspersky Internet Security 2011
"Live 8.2.1" = Live 8.2.1
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
"Nike+ Connect" = Nike+ Connect
"NVIDIA Drivers" = NVIDIA Drivers
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"sp6" = Logitech SetPoint 6.20
"SystemRequirementsLab" = System Requirements Lab
"TeamViewer 6" = TeamViewer 6
"VirtualCloneDrive" = VirtualCloneDrive
"VLC media player" = VLC media player 1.1.5
"VueScan" = VueScan
"WinRAR archiver" = WinRAR
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
 
========== Last 10 Event Log Errors ==========
 
[ Application Events ]
Error - 12.12.2010 14:07:08 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1969
 
Error - 12.12.2010 14:07:10 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
 
Error - 12.12.2010 14:07:10 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 3953
 
Error - 12.12.2010 14:07:10 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 3953
 
Error - 12.12.2010 14:07:12 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
 
Error - 12.12.2010 14:07:12 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 5906
 
Error - 12.12.2010 14:07:12 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 5906
 
Error - 12.12.2010 15:56:08 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
 
Error - 12.12.2010 15:56:08 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 1969
 
Error - 12.12.2010 15:56:08 | Computer Name = xxxxxx | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1969
 
[ System Events ]
Error - 07.12.2010 07:19:18 | Computer Name = xxxxxx | Source = Schannel | ID = 36888
Description = Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus
lautet: 10.
 
Error - 07.12.2010 07:19:18 | Computer Name = xxxxxx | Source = Schannel | ID = 36888
Description = Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus
lautet: 10.
 
Error - 07.12.2010 07:19:18 | Computer Name = xxxxxx | Source = Schannel | ID = 36888
Description = Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus
lautet: 10.
 
Error - 07.12.2010 07:50:38 | Computer Name = xxxxxx | Source = Service Control Manager | ID = 7043
Description = Der Dienst Gruppenrichtlinienclient konnte nach dem Empfang eines 
Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
 
Error - 07.12.2010 07:50:39 | Computer Name = xxxxxx | Source = Service Control Manager | ID = 7016
Description = Der Dienst "NVIDIA Display Driver Service" hat einen ungültigen aktuellen
Status gemeldet: 32
 
Error - 07.12.2010 12:30:14 | Computer Name = xxxxxx | Source = Service Control Manager | ID = 7016
Description = Der Dienst "NVIDIA Display Driver Service" hat einen ungültigen aktuellen
Status gemeldet: 32
 
Error - 07.12.2010 17:17:03 | Computer Name = xxxxxx | Source = Service Control Manager | ID = 7011
Description = Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung
von Dienst lmhosts erreicht.
 
Error - 07.12.2010 17:17:03 | Computer Name = xxxxxx | Source = Service Control Manager | ID = 7011
Description = Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung
von Dienst nvsvc erreicht.
 
Error - 08.12.2010 08:53:41 | Computer Name = xxxxxx | Source = Microsoft-Windows-Application-Experience | ID = 205
Description = Der Dienst "Programmkompatibilitäts-Assistent" konnte Phase 2 nicht
initialisieren.
 
Error - 10.12.2010 14:50:45 | Computer Name = xxxxxx | Source = Service Control Manager | ID = 7011
Description = Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung
von Dienst lmhosts erreicht.
 
 
< End of report >
         
--- --- ---


-----------------------------------------------------------------

Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org

Datenbank Version: 5311

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

14.12.2010 14:56:39
mbam-log-2010-12-14 (14-56-39).txt

Art des Suchlaufs: Quick-Scan
Durchsuchte Objekte: 41510
Laufzeit: 1 Minute(n), 0 Sekunde(n)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
(Keine bösartigen Objekte gefunden)

 

Themen zu hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet
analysis, antivir, audiodg.exe, avp.exe, bho, bonjour, canon, corp./icp, dgfdgsdf.bat, document, error, excel.exe, firefox, firefox.exe, flash player, fontcache, format, frage, gruppe, helper, hotfix.exe, hängen, install.exe, installation, kaspersky, location, maleware, media center, microsoft office word, mozilla, nvlddmkm.sys, nvmf6232.sys, nvstor.sys, oldtimer, otl.exe, programdata, registry, richtlinie, rundll, saver, scan, searchplugins, security, senden, shell32.dll, software, studio, taskhost.exe, tastatur, url-umleitungen, usb, vdeck.exe, virus, visual studio, vlc media player, warnung, webcheck, windows




Ähnliche Themen: hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet


  1. ColdFusion-Hotfix: Angreifer können beliebige Dateien auslesen
    Nachrichten - 28.08.2015 (0)
  2. WIN7 Suchanfragen werden auf Werbesuchseiten umgeleitet, Laptop bootet extrem langsam
    Log-Analyse und Auswertung - 02.06.2015 (23)
  3. Freak Attack: Hotfix legt Windows Update lahm
    Nachrichten - 07.03.2015 (0)
  4. Suchanfragen und angeklickte Links werden umgeleitet....sehr merkwürdig..unerwünschte Pop up fenster öffnen plötzlich
    Plagegeister aller Art und deren Bekämpfung - 13.02.2014 (25)
  5. Windows 7: Google-Suchanfragen werden umgeleitet (Ihavenet, Newsbusters)
    Log-Analyse und Auswertung - 09.09.2013 (7)
  6. Probleme mit FF und IE die Suchanfragen bei google werden auf http://click.sureonlinefind.com umgeleitet
    Plagegeister aller Art und deren Bekämpfung - 18.08.2013 (29)
  7. Hotfix stopft kritische Lücken in Adobes ColdFusion
    Nachrichten - 16.01.2013 (0)
  8. Hotfix für ColdFusion 10
    Nachrichten - 19.11.2012 (0)
  9. Suchanfragen werden umgeleitet
    Log-Analyse und Auswertung - 04.07.2011 (3)
  10. Suchanfragen (Google, Yahoo, etc.) werden umgeleitet (Firefox)
    Log-Analyse und Auswertung - 03.07.2011 (7)
  11. Suchanfragen werden umgeleitet
    Plagegeister aller Art und deren Bekämpfung - 12.05.2011 (16)
  12. Hotfix behebt PowerPoint-2003-Problem
    Nachrichten - 27.04.2011 (0)
  13. Google Suchanfragen werden umgeleitet
    Log-Analyse und Auswertung - 17.11.2010 (19)
  14. Google - Suchanfragen werden umgeleitet, manipulierte TCP/IP-Einstellungen
    Log-Analyse und Auswertung - 14.11.2010 (19)
  15. Recommended Hotfix/SED.exe Bitte um Hilfe
    Log-Analyse und Auswertung - 15.12.2004 (2)
  16. W32/Nachi trotz Hotfix?
    Plagegeister aller Art und deren Bekämpfung - 07.11.2003 (1)
  17. Win2000 hotfix Q328310 per KAV-Autoupdater für Win98
    Antiviren-, Firewall- und andere Schutzprogramme - 04.05.2003 (0)

Zum Thema hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet - Hallo, erst einmal besten Dank für die vielen Anleitungen. Ich hoffe, ich habe die Maleware in hotfix.exe und dgfdgsdf.bat erfolgreich entfernt (beide Dateien lagen in C:\Users\XXXXX\AppData\Roaming). Zur Sicherheit sind hier - hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet...
Archiv
Du betrachtest: hotfix.exe und dgfdgsdf.bat - Suchanfragen umgeleitet auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.