Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Windows blockiert mit Verweis auf kostentenpflichtiges Update (https://www.trojaner-board.de/109365-windows-blockiert-verweis-kostentenpflichtiges-update.html)

Robulus 08.02.2012 14:37

Windows blockiert mit Verweis auf kostentenpflichtiges Update
 
Hallo, ich habe das selbe Problem wie viele andere.

Schwarzer Bildschirm(Schwarz-Rot-Gold am oberen bild rand)
und die Meldung: "Durch das Besuchen von Seiten mit infiziertem..."

OTL habe ich heruntergeladen und durchlaufen lassen.

Im Anhang: Die txt-files von OTL

MfG Robin

markusg 08.02.2012 14:53

hi


dieses script sowie evtl. folgende scripts sind nur für den jeweiligen user.
wenn ihr probleme habt, eröffnet eigene topics und wartet auf, für euch angepasste scripts.


• Starte bitte die OTL.exe
• Kopiere nun das Folgende in die Textbox.



Code:

:OTL
O4 - HKCU..\Run: [Firefox helper] C:\Dokumente und Einstellungen\Robulus\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\firefox.exe ()
 :Files
C:\Dokumente und Einstellungen\Robulus\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\firefox.exe
:Commands
[purity]
[EMPTYFLASH]
[emptytemp]
[Reboot]



• Schliesse bitte nun alle Programme.
• Klicke nun bitte auf den Fix Button.
• OTL kann gegebenfalls einen Neustart verlangen. Bitte dies zulassen.
• Nach dem Neustart findest Du ein Textdokument, dessen inhalt in deiner nächsten antwort hier reinkopieren.
starte in den normalen modus.

falls du keine symbole hast, dann rechtsklick, ansicht, desktop symbole einblenden

Drücke bitte die http://larusso.trojaner-board.de/Images/windows.jpg + E Taste.
  • Öffne dein Systemlaufwerk ( meistens C: )
  • Suche nun
    folgenden Ordner: _OTL und öffne diesen.
  • Mache einen Rechtsklick auf den Ordner Movedfiles --> Senden an --> Zip-Komprimierter Ordner

  • Dies wird eine Movedfiles.zip Datei in _OTL erstellen
  • Lade diese bitte in unseren Uploadchannel
    hoch. ( Durchsuchen --> C:\_OTL\Movedfiles.zip )
Teile mir mit ob der Upload problemlos geklappt hat. Danke im voraus :)

Robulus 08.02.2012 17:49

txt:

All processes killed
========== OTL ==========
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Firefox helper deleted successfully.
C:\Dokumente und Einstellungen\Robulus\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\firefox.exe moved successfully.
========== COMMANDS ==========

[EMPTYFLASH]

User: Administrator

User: All Users

User: Default User

User: Gast
->Flash cache emptied: 0 bytes

User: LocalService

User: NetworkService

User: Robulus
->Flash cache emptied: 829 bytes

Total Flash Files Cleaned = 0,00 mb


[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->FireFox cache emptied: 0 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Gast
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Robulus
->Temp folder emptied: 909063 bytes
->Temporary Internet Files folder emptied: 62430 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 23105152 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 32768 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 23,00 mb


OTL by OldTimer - Version 3.2.31.0 log created on 02082012_174031

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...

Robulus 08.02.2012 17:50

Also bis jetzt scheint alles zu funktionieren:D

Upload der .zip Datei ist auch erfolreich.

Vielen Dank schonmal:)

markusg 08.02.2012 18:30

danke für den upload
Combofix darf ausschließlich ausgeführt werden, wenn dies von einem Team Mitglied angewiesen wurde!
Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich
ziehen und eine Bereinigung der Infektion noch erschweren.

Bitte downloade dir Combofix.exe und speichere es unbedingt auf deinem Desktop.
  • Besuche folgende Seite für Downloadlinks und Anweisungen für dieses
    Tool

    Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Hinweis:
    Gehe sicher das all deine Anti Virus und Anti Malware Programme abgeschalten sind, damit diese Combofix nicht bei der Arbeit stören.
  • Poste bitte die C:\Combofix.txt in deiner nächsten Antwort.

Robulus 09.02.2012 01:26

Code:

ComboFix 12-02-08.02 - Robulus 09.02.2012  1:15.1.2 - x86
Microsoft Windows XP Professional  5.1.2600.3.1252.49.1031.18.3327.2481 [GMT 1:00]
ausgeführt von:: c:\dokumente und einstellungen\Robulus\Eigene Dateien\Downloads\ComboFix.exe
AV: AntiVir Desktop *Disabled/Outdated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((((((((((  Weitere Löschungen  ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\1.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\a.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\b.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\c.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\d.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\e.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\f.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\g.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\h.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\i.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\j.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\k.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\l.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\m.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\mru.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\n.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\o.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\p.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\q.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\r.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\s.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\t.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\u.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\v.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\w.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\x.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\y.xml
c:\dokumente und einstellungen\Robulus\Anwendungsdaten\PriceGong\Data\z.xml
c:\dokumente und einstellungen\Robulus\Eigene Dateien\Downloads\The Legend of Zelda OSTs(APE+FLAC)\The Legend of Zelda - Sound and Drama(FLAC)\_desktop.ini
c:\dokumente und einstellungen\Robulus\Eigene Dateien\Downloads\The Legend of Zelda OSTs(APE+FLAC)\The Legend of Zelda - Sound and Drama(FLAC)\Legend of Zelda - Sound and Drama CD 1\_desktop.ini
c:\dokumente und einstellungen\Robulus\Eigene Dateien\Downloads\The Legend of Zelda OSTs(APE+FLAC)\The Legend of Zelda - Sound and Drama(FLAC)\Legend of Zelda - Sound and Drama CD 2\_desktop.ini
c:\dokumente und einstellungen\Robulus\Eigene Dateien\Downloads\The Legend of Zelda OSTs(APE+FLAC)\The Legend of Zelda ~ Ocarina of Time - Hyrule Symphony(FLAC)\_desktop.ini
c:\dokumente und einstellungen\Robulus\Eigene Dateien\Downloads\The Legend of Zelda OSTs(APE+FLAC)\The Legend of Zelda ~ Ocarina of Time - Re-Arranged Album(FLAC)\_desktop.ini
c:\dokumente und einstellungen\Robulus\Eigene Dateien\Downloads\The Legend of Zelda OSTs(APE+FLAC)\The Legend of Zelda ~ Ocarina of Time Original Soundtrack(FLAC)\_desktop.ini
C:\Recycle.Bin
c:\windows\system32\2468475517.dat
c:\windows\system32\drivers\etc\lmhosts
.
.
(((((((((((((((((((((((  Dateien erstellt von 2012-01-09 bis 2012-02-09  ))))))))))))))))))))))))))))))
.
.
2012-02-08 13:30 . 2012-02-08 13:30        --------        d-----w-        c:\dokumente und einstellungen\Robulus\Anwendungsdaten\Malwarebytes
2012-02-08 13:29 . 2012-02-08 13:29        --------        d-----w-        c:\programme\Malwarebytes' Anti-Malware
2012-02-08 13:29 . 2012-02-08 13:29        --------        d-----w-        c:\dokumente und einstellungen\All Users\Anwendungsdaten\Malwarebytes
2012-02-08 13:29 . 2011-12-10 14:24        20464        ----a-w-        c:\windows\system32\drivers\mbam.sys
2012-02-08 12:01 . 2012-02-08 16:48        --------        d-----w-        C:\_OTL
2012-02-08 10:32 . 2012-02-08 10:37        --------        d-----w-        C:\My Music
2012-02-08 10:31 . 2012-02-08 12:34        --------        d-----w-        c:\programme\AudioConverter Studio
2012-02-06 14:40 . 2012-02-06 14:40        --------        d-----w-        c:\dokumente und einstellungen\Robulus\Anwendungsdaten\Juce VST Host
2012-02-06 14:27 . 2012-02-08 12:34        --------        d-----w-        c:\dokumente und einstellungen\Administrator
2012-01-19 15:02 . 2012-01-19 15:02        --------        d-----w-        c:\dokumente und einstellungen\All Users\Anwendungsdaten\nView_Profiles
2012-01-19 00:13 . 2012-01-19 00:13        --------        d-----w-        c:\dokumente und einstellungen\Robulus\Lokale Einstellungen\Anwendungsdaten\Skyrim
2012-01-19 00:12 . 2012-01-19 00:12        --------        d-----w-        C:\e0304302501499612f
2012-01-19 00:07 . 2010-02-04 09:01        74072        ----a-w-        c:\windows\system32\XAPOFX1_4.dll
2012-01-19 00:07 . 2010-02-04 09:01        528216        ----a-w-        c:\windows\system32\XAudio2_6.dll
2012-01-19 00:07 . 2010-02-04 09:01        238936        ----a-w-        c:\windows\system32\xactengine3_6.dll
2012-01-19 00:07 . 2010-02-04 09:01        22360        ----a-w-        c:\windows\system32\X3DAudio1_7.dll
.
.
.
((((((((((((((((((((((((((((((((((((  Find3M Bericht  ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-11-29 12:01 . 2011-11-29 12:01        404640        ----a-w-        c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-25 21:57 . 2004-08-04 12:00        293888        ----a-w-        c:\windows\system32\winsrv.dll
2011-11-23 14:40 . 2004-08-04 12:00        1859712        ----a-w-        c:\windows\system32\win32k.sys
2011-11-20 06:12 . 2004-08-04 12:00        61952        ----a-w-        c:\windows\system32\packager.exe
2011-11-16 14:21 . 2004-08-04 12:00        354816        ----a-w-        c:\windows\system32\winhttp.dll
2011-11-16 14:21 . 2004-08-04 12:00        152064        ----a-w-        c:\windows\system32\schannel.dll
2012-01-29 16:12 . 2012-02-06 14:47        134104        ----a-w-        c:\programme\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\atapi.sys
[-] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
.
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\asyncmac.sys
[-] 2004-08-04 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys
.
[-] 2004-08-04 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2004-08-04 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
.
[-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys
[-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\kbdclass.sys
[-] 2004-08-04 . B128FC0A5CD83F669D5DE4B58F77C7D6 . 25216 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys
.
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ndis.sys
[-] 2004-08-04 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys
.
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ntfs.sys
[-] 2004-08-04 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntfs.sys
.
[-] 2004-08-04 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2004-08-04 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
.
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[-] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\tcpip.sys
[-] 2004-08-04 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
.
[-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\browser.dll
[-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\browser.dll
[-] 2004-08-04 . D8653DCD80CF2EBB333FC4FCC43A7DEF . 77312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\browser.dll
.
[-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe
[-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\lsass.exe
[-] 2004-08-04 . 183805EB05BCA5A1E4AAAED4D2BE3690 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe
.
[-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll
[-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\netman.dll
[-] 2004-08-04 . CDF4DA6B518105343FE9E8AFBBF8FBF4 . 198144 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netman.dll
.
[-] 2008-04-14 06:52 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 06:52 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[-] 2008-04-14 02:22 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\comres.dll
[-] 2004-08-04 12:00 . 4B9D9E2708019763C5A72DA776DB1158 . 846848 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll
.
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\qmgr.dll
[-] 2004-08-04 . 3A5E54A9AB96EF2D273B58136FB58EFE . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll
.
[-] 2009-02-09 . D3D765E8455A961AE567B408F767D4F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3GDR\rpcss.dll
[-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . D45BBCDDC74A1B0259A0C4B00C190D20 . 399360 . . [5.1.2600.3520] . . c:\windows\$NtServicePackUninstall$\rpcss.dll
[-] 2009-02-09 . 8AFBC2E1E5555A1C29953AF854F0FCA5 . 401408 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB956572\SP2QFE\rpcss.dll
[-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
[-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rpcss.dll
[-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\rpcss.dll
[-] 2004-08-04 . 9F28FF58D6D67B123272869D89D14004 . 395776 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB956572_0$\rpcss.dll
.
[-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3GDR\services.exe
[-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-09 . F0A7D59AF279326528715B206669B86C . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2009-02-09 . 65F6B774819BD727358157CEDEA67B8E . 111104 . . [5.1.2600.3520] . . c:\windows\$NtServicePackUninstall$\services.exe
[-] 2009-02-09 . A07CA23EA361A01E627D911CF139B950 . 111104 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB956572\SP2QFE\services.exe
[-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
[-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\services.exe
[-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\services.exe
[-] 2004-08-04 . EDB6B81761BD60F32F740BBC40AFB676 . 108544 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB956572_0$\services.exe
.
[-] 2010-08-17 . 258DD5D4283FD9F9A7166BE9AE45CE73 . 58880 . . [5.1.2600.6024] . . c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\dllcache\spoolsv.exe
[-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB2347290$\spoolsv.exe
[-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\spoolsv.exe
[-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\spoolsv.exe
[-] 2004-08-04 . 54E7113A4BD696E430919BCAF5C65E06 . 57856 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\spoolsv.exe
.
[-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\winlogon.exe
[-] 2004-08-04 . 2B6A0BAF33A9918F09442D873848FF72 . 507392 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ipsec.sys
[-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[-] 2010-08-23 . 2B6ADE29F8D00EEFA5FA2250CBE094AD . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
[-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\$NtUninstallKB2296011$\comctl32.dll
[-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2008-04-14 . 3C93CE6C6985C55952B7BE6673E9FD15 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
[-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\comctl32.dll
[-] 2008-04-14 . 3C93CE6C6985C55952B7BE6673E9FD15 . 1054208 . . [6.0] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\asms\60\msft\windows\common\controls\comctl32.dll
[-] 2004-08-04 . 2CF914215226B3F7FA1AE4A47E4D261C . 611328 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[-] 2004-08-04 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
[-] 2004-08-04 . 9D0F57B9C65BF8A07DB655A9ED6EB2EE . 1050624 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
.
[-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll
[-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\cryptsvc.dll
[-] 2004-08-04 . 1A5F9DB98DF7955B4C7CBDBF2C638238 . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll
.
[-] 2008-07-07 20:30 . D68ED3908C7A0DB446111D34AC40DC18 . 253952 . . [2001.12.4414.320] . . c:\windows\$NtServicePackUninstall$\es.dll
[-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
[-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:23 . ADA7241C16F3F42C7F210539FAD5F3AA . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-07-07 20:16 . 3912BEF896D1D687B6053409E5F5F2A6 . 253952 . . [2001.12.4414.320] . . c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
[-] 2008-04-14 06:52 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 06:52 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll
[-] 2008-04-14 02:22 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\es.dll
[-] 2004-08-04 12:00 . 4E1A8645EE77CB9454FFE53C59620A25 . 243200 . . [2001.12.4414.258] . . c:\windows\$NtUninstallKB950974_0$\es.dll
.
[-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll
[-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\imm32.dll
[-] 2004-08-04 . 94101D13A1818A9D08337EEC12ED277A . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll
.
[-] 2009-03-21 . A6F4977F9D2C9506050BFF0EF0B574B5 . 1059840 . . [5.1.2600.3541] . . c:\windows\$NtServicePackUninstall$\kernel32.dll
[-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3GDR\kernel32.dll
[-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
[-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll
[-] 2009-03-21 . 3EB703BFC2ED26A3D8ACB8626AB2C006 . 1065472 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
[-] 2009-03-21 . B6053A5FA67EAC4A292A44F585881FFF . 1062912 . . [5.1.2600.3541] . . c:\windows\$hf_mig$\KB959426\SP2QFE\kernel32.dll
[-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll
[-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kernel32.dll
[-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\kernel32.dll
[-] 2004-08-04 . E6CD85D0D37416CF138F01F4BB0FC872 . 1057280 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB959426_0$\kernel32.dll
.
[-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll
[-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\linkinfo.dll
[-] 2004-08-04 . 3898FFF548E2968CB3AC5A71D7F4E425 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll
.
[-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll
[-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\lpk.dll
[-] 2004-08-04 . B4AD65C79F85C61D32C015B11E03CAAD . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll
.
[-] 2011-11-03 . A5422905C24FDA0F76CE08A1771AEC8E . 3108352 . . [6.00.2900.6169] . . c:\windows\system32\mshtml.dll
[-] 2011-11-03 . A5422905C24FDA0F76CE08A1771AEC8E . 3108352 . . [6.00.2900.6169] . . c:\windows\system32\dllcache\mshtml.dll
[-] 2011-11-03 . C27D3210AA6C0AE77CE4A3C64E952F7A . 3108864 . . [6.00.2900.6169] . . c:\windows\$hf_mig$\KB2618444\SP3QFE\mshtml.dll
[-] 2011-09-05 . A09B036C4996DF8A260610E406424FEE . 3107328 . . [6.00.2900.6148] . . c:\windows\$NtUninstallKB2618444$\mshtml.dll
[-] 2011-09-05 . 378A362C7DCF8899B2942F8B549FBC25 . 3107840 . . [6.00.2900.6148] . . c:\windows\$hf_mig$\KB2586448\SP3QFE\mshtml.dll
[-] 2011-06-28 . A6D644815A45A8AA148161E56687F4BA . 3106304 . . [6.00.2900.6129] . . c:\windows\$hf_mig$\KB2559049\SP3QFE\mshtml.dll
[-] 2011-06-27 . 39CAB716B66F591E9F9EF94C0A931DF5 . 3105792 . . [6.00.2900.6129] . . c:\windows\$NtUninstallKB2586448$\mshtml.dll
[-] 2011-04-25 . 6B73A4BDD27BE437C071381EF6FB3102 . 3100672 . . [6.00.2900.6104] . . c:\windows\$NtUninstallKB2559049$\mshtml.dll
[-] 2011-04-25 . 3250D1FC3F92771EE92D8AD9A9938807 . 3101184 . . [6.00.2900.6104] . . c:\windows\$hf_mig$\KB2530548\SP3QFE\mshtml.dll
[-] 2011-02-17 . D7CDCE52498742BEC353972E6B787783 . 3099648 . . [6.00.2900.6082] . . c:\windows\$NtUninstallKB2530548$\mshtml.dll
[-] 2011-02-17 . 4BD23F7AF946AF64CC63260BB3ED07CB . 3099648 . . [6.00.2900.6082] . . c:\windows\$hf_mig$\KB2497640\SP3QFE\mshtml.dll
[-] 2010-12-20 . 3B9EA538E6D16868D21758A693FD2E36 . 3099136 . . [6.00.2900.6058] . . c:\windows\$NtUninstallKB2497640$\mshtml.dll
[-] 2010-12-20 . 87A4128A80271940E3CD542342A2AEA2 . 3099136 . . [6.00.2900.6058] . . c:\windows\$hf_mig$\KB2482017\SP3QFE\mshtml.dll
[-] 2010-04-16 . 164B4195439F7A0919A6CA7BDEC238AC . 3094016 . . [6.00.2900.5969] . . c:\windows\$hf_mig$\KB982381\SP3GDR\mshtml.dll
[-] 2010-04-16 . 164B4195439F7A0919A6CA7BDEC238AC . 3094016 . . [6.00.2900.5969] . . c:\windows\$NtUninstallKB2482017$\mshtml.dll
[-] 2010-04-16 . 65E4FEB30D4307C1425F8635EE75200D . 3094528 . . [6.00.2900.5969] . . c:\windows\$hf_mig$\KB982381\SP3QFE\mshtml.dll
[-] 2010-04-16 . F78A7680EC0A14F1D601364DD4635D7B . 3086336 . . [6.00.2900.3698] . . c:\windows\$NtServicePackUninstall$\mshtml.dll
[-] 2010-04-16 . 61244206F4B9840DE7AD5BF8DE5B9A49 . 3094016 . . [6.00.2900.3698] . . c:\windows\$hf_mig$\KB982381\SP2QFE\mshtml.dll
[-] 2008-04-14 . 72AE55A9FFBC60650339CB12E35C7DD5 . 3066880 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB982381$\mshtml.dll
[-] 2008-04-14 . 72AE55A9FFBC60650339CB12E35C7DD5 . 3066880 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\mshtml.dll
[-] 2008-04-14 . 72AE55A9FFBC60650339CB12E35C7DD5 . 3066880 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\mshtml.dll
[-] 2004-08-04 . CAC51AD576713E5F0CE2251ED3A7FE82 . 3003392 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB982381_0$\mshtml.dll
.
[-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll
[-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . C536AAD8A71608FE33CD956214EDD366 . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll
[-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\msvcrt.dll
[-] 2008-04-14 . C536AAD8A71608FE33CD956214EDD366 . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\asms\70\msft\windows\mswincrt\msvcrt.dll
[-] 2004-08-04 . B30BAA48E5063E71C76280E34E7E4802 . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll
[-] 2004-08-04 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
[-] 2004-08-04 . 365B3C43810E1CF41B3BE1E7180F583B . 343040 . . [7.0.2600.2180] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll
.
[-] 2008-06-20 . ACD8BD448A74F344D46FCAF21BAB92AF . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
[-] 2008-06-20 . ACD8BD448A74F344D46FCAF21BAB92AF . 247296 . . [5.1.2600.5625] . . c:\windows\$NtUninstallKB2509553$\mswsock.dll
[-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\mswsock.dll
[-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-06-20 . 774274C487493452DF3B0126DBE7FF3B . 247296 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\mswsock.dll
[-] 2008-06-20 . EB55B1D9978B61E9913EDCD27EEC4C7C . 247296 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
[-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll
[-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\mswsock.dll
[-] 2004-08-04 . B36E08F680BAE4DFC5C24D00A2DFC9E7 . 247296 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\mswsock.dll
.
[-] 2009-02-06 . ED4BBAD725A21632FB205452749FC8F5 . 408064 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[-] 2009-02-06 . ED4BBAD725A21632FB205452749FC8F5 . 408064 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll
[-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\netlogon.dll
[-] 2004-08-04 . D27395EDCD3416AFD125A9370DCB585C . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll
.
[-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll
[-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\powrprof.dll
[-] 2004-08-04 . 5604574D490B798BD9A946B021A766AD . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll
.
[-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll
[-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\scecli.dll
[-] 2004-08-04 . 64DC26B3CF7BCCAD431CE360A4C625D5 . 186880 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll
.
[-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll
[-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\sfc.dll
[-] 2004-08-04 . F62934BC94299083EBFC8810242D8640 . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll
.
[-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe
[-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\svchost.exe
[-] 2004-08-04 . 65A819B121EB6FDAB4400EA42BDFFE64 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe
.
[-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll
[-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\tapisrv.dll
[-] 2004-08-04 . 4584E2A5FE662AB3E7C32936E1449043 . 246272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll
.
[-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\user32.dll
[-] 2004-08-04 . 56785FD5236D7B22CF471A6DA9DB46D8 . 578560 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\user32.dll
.
[-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\userinit.exe
[-] 2004-08-04 . D1E53DC57143F2584B1DD53B036C0633 . 25088 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe
.
[-] 2011-11-01 . B82FB47BDDA4911192DBC27A2056E216 . 672768 . . [6.00.2900.6168] . . c:\windows\system32\wininet.dll
[-] 2011-11-01 . B82FB47BDDA4911192DBC27A2056E216 . 672768 . . [6.00.2900.6168] . . c:\windows\system32\dllcache\wininet.dll
[-] 2011-11-01 . C346342087FC2DFC90082F8B9DFCA53D . 674304 . . [6.00.2900.6168] . . c:\windows\$hf_mig$\KB2618444\SP3QFE\wininet.dll
[-] 2011-09-05 . 7B9AB7AB80F0602D578197ACB0B15A54 . 672768 . . [6.00.2900.6148] . . c:\windows\$NtUninstallKB2618444$\wininet.dll
[-] 2011-09-05 . B5AC4AB48CDBFADF9878FCD1E732C89B . 674304 . . [6.00.2900.6148] . . c:\windows\$hf_mig$\KB2586448\SP3QFE\wininet.dll
[-] 2011-06-21 . 9A0A03B1FA9818B569FB2CB806F766E2 . 672768 . . [6.00.2900.6126] . . c:\windows\$NtUninstallKB2586448$\wininet.dll
[-] 2011-06-21 . D3F75779427B44927B101446BBBC7F82 . 674304 . . [6.00.2900.6126] . . c:\windows\$hf_mig$\KB2559049\SP3QFE\wininet.dll
[-] 2011-04-25 . 2FA2FD1C2AEE93315FFEEB110F242400 . 672768 . . [6.00.2900.6104] . . c:\windows\$NtUninstallKB2559049$\wininet.dll
[-] 2011-04-25 . 307F7A9B9E4165138FD278DCE18B726F . 674304 . . [6.00.2900.6104] . . c:\windows\$hf_mig$\KB2530548\SP3QFE\wininet.dll
[-] 2011-02-17 . 8B8AF0B04AD9766EA87C05FABBE8526A . 672768 . . [6.00.2900.6082] . . c:\windows\$NtUninstallKB2530548$\wininet.dll
[-] 2011-02-17 . C6F2390D635C1A14C39F259C2C8A25A9 . 674304 . . [6.00.2900.6082] . . c:\windows\$hf_mig$\KB2497640\SP3QFE\wininet.dll
[-] 2010-12-20 . E4FE4EABDE6F877085EFAB7C24E09AB6 . 672768 . . [6.00.2900.6058] . . c:\windows\$NtUninstallKB2497640$\wininet.dll
[-] 2010-12-20 . 4237D0ED18B2656AE5D0298B842FA228 . 674304 . . [6.00.2900.6058] . . c:\windows\$hf_mig$\KB2482017\SP3QFE\wininet.dll
[-] 2010-04-16 . 0CC0A30F7F06C6A5A40911616CA35085 . 672768 . . [6.00.2900.5969] . . c:\windows\$hf_mig$\KB982381\SP3GDR\wininet.dll
[-] 2010-04-16 . 0CC0A30F7F06C6A5A40911616CA35085 . 672768 . . [6.00.2900.5969] . . c:\windows\$NtUninstallKB2482017$\wininet.dll
[-] 2010-04-16 . 68B82A22151D41988B3BCB7C881E2B0E . 674304 . . [6.00.2900.5969] . . c:\windows\$hf_mig$\KB982381\SP3QFE\wininet.dll
[-] 2010-04-16 . C7B31EF1A7F52D99E92BFF1B053D6EB2 . 667648 . . [6.00.2900.3698] . . c:\windows\$NtServicePackUninstall$\wininet.dll
[-] 2010-04-16 . 4350AD71E6C5F397BB76DFF7C4BCFCBD . 674304 . . [6.00.2900.3698] . . c:\windows\$hf_mig$\KB982381\SP2QFE\wininet.dll
[-] 2008-04-14 . B4AEE98A48917B274FACFB78BBE0BC84 . 671744 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB982381$\wininet.dll
[-] 2008-04-14 . B4AEE98A48917B274FACFB78BBE0BC84 . 671744 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\wininet.dll
[-] 2008-04-14 . B4AEE98A48917B274FACFB78BBE0BC84 . 671744 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\wininet.dll
[-] 2004-08-04 . B1A1DA99C4A6EBFD59F86A453BF02F39 . 662016 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB982381_0$\wininet.dll
.
[-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll
[-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ws2_32.dll
[-] 2004-08-04 . D569240A22421D5F670BB6FB6DD522B5 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll
.
[-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2help.dll
[-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
[-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ws2help.dll
[-] 2004-08-04 . B3ADA72D1E3E10A8F6430669DFC38ED0 . 19968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2help.dll
.
[-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\explorer.exe
[-] 2004-08-04 . 22FE1BE02EADDE1632E478E4125639E0 . 1035264 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
.
[-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regedit.exe
[-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\regedit.exe
[-] 2004-08-04 . 8193CE5FB09E83F2699FD65BBCBE2FD2 . 153600 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regedit.exe
.
[-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\ole32.dll
[-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\dllcache\ole32.dll
[-] 2011-11-01 . D684C601EC79D9543D50EB2DB124FE78 . 1289216 . . [5.1.2600.6168] . . c:\windows\$hf_mig$\KB2624667\SP3QFE\ole32.dll
[-] 2010-07-16 . B28AF7976F2D8109C0DC2CF2460BEDC2 . 1288192 . . [5.1.2600.6010] . . c:\windows\$NtUninstallKB2624667$\ole32.dll
[-] 2010-07-16 . B3D7633CF83B09042A49810A7A72ADED . 1289216 . . [5.1.2600.6010] . . c:\windows\$hf_mig$\KB979687\SP3QFE\ole32.dll
[-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB979687$\ole32.dll
[-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ole32.dll
[-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ole32.dll
[-] 2004-08-04 . D700449AD3045E81680C25A79620A171 . 1281536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ole32.dll
.
[-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\usp10.dll
[-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\dllcache\usp10.dll
[-] 2010-04-16 . EB2AD9C7DADE6C63F5F933881BA2A430 . 406016 . . [1.0420.2600.5969] . . c:\windows\$hf_mig$\KB981322\SP3QFE\usp10.dll
[-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\$NtUninstallKB981322$\usp10.dll
[-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\ServicePackFiles\i386\usp10.dll
[-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\usp10.dll
[-] 2004-08-04 . E4E40EAFF464EBE7752BAD3D82AF1715 . 406528 . . [1.0420.2600.2180] . . c:\windows\$NtServicePackUninstall$\usp10.dll
.
[-] 2008-04-14 . 671ABB33C712B1585A5BF7ADD36AD96E . 4096 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\ksuser.dll
[-] 2008-04-14 . 671ABB33C712B1585A5BF7ADD36AD96E . 4096 . . [5.3.2600.5512] . . c:\windows\system32\ksuser.dll
[-] 2008-04-14 . 671ABB33C712B1585A5BF7ADD36AD96E . 4096 . . [5.3.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ksuser.dll
[-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\ksuser.dll
[-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\system32\ReinstallBackups\0000\DriverFiles\i386\ksuser.dll
.
[-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ctfmon.exe
[-] 2004-08-04 . 7CE20569925DF6789C31799F0C538F29 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
.
[-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\shsvcs.dll
[-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\dllcache\shsvcs.dll
[-] 2009-07-27 . 927666F4228E3FBBC3D1171581DC8BDC . 135680 . . [6.00.2900.5853] . . c:\windows\$hf_mig$\KB971029\SP3QFE\shsvcs.dll
[-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB971029$\shsvcs.dll
[-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll
[-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\shsvcs.dll
[-] 2004-08-04 . BAC5F7F0C2B8C1B9832594851E0F9914 . 135168 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll
.
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\srsvc.dll
[-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\wscntfy.exe
[-] 2004-08-04 . 7D3E0BEB62799112F5C9FF717D72BF29 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe
.
[-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\xmlprov.dll
[-] 2004-08-04 . 8302DE1C64618D72346DD0034DBC5D9B . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll
.
[-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll
[-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\eventlog.dll
[-] 2004-08-04 . B932C077D5A65B71B4512544AC404CB4 . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll
.
[-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll
[-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\sfcfiles.dll
[-] 2004-08-04 . 80F7B7198B869C07C98627AF812D68B6 . 1548288 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ipsec.sys
[-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll
[-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\regsvc.dll
[-] 2004-08-04 . AE81CF7D7CFA79CD03E8FB99788A7E09 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll
.
[-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll
[-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\schedsvc.dll
[-] 2004-08-04 . D5E73842F38E24457C63FEF8CEFFBE19 . 192000 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll
.
[-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll
[-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ssdpsrv.dll
[-] 2004-08-04 . 6FA03B462B2FFFE2627171B7FE73EE29 . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll
.
[-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll
[-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\termsrv.dll
[-] 2004-08-04 . 1850BC10DE5DCCCEDE063FC2D0F2CEDA . 297472 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\termsrv.dll
.
[-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\hnetcfg.dll
[-] 2004-08-04 . AE93E415220A4C0112768A0DEE36D28D . 348672 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll
.
[-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll
[-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\appmgmts.dll
[-] 2004-08-04 . BECD5328E7869807D6557BE4FE60C72F . 175616 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll
.
[-] 2004-08-04 . 9E1CA3160DAFB159CA14F83B1E317F75 . 12160 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
.
[-] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys
[-] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\aec.sys
[-] 2004-08-03 21:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\$NtServicePackUninstall$\aec.sys
.
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\agp440.sys
.
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ip6fw.sys
[-] 2004-08-04 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys
.
[-] 2010-09-18 07:18 . 4891FCDAE77486BFB56999AA217651FA . 953856 . . [4.1.6151] . . c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll
[-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll
[-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 06:52 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\$NtUninstallKB2387149$\mfc40u.dll
[-] 2008-04-14 06:52 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\ServicePackFiles\i386\mfc40u.dll
[-] 2008-04-14 02:22 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\mfc40u.dll
[-] 2004-08-04 12:00 . 31DD27AB47F62D383505F35CA972748B . 924432 . . [4.1.6140] . . c:\windows\$NtServicePackUninstall$\mfc40u.dll
.
[-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll
[-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\msgsvc.dll
[-] 2004-08-04 . E5215AB942C5AC5F7EB0E54871D7A27C . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll
.
[-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll
[-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\system32\MsPMSNSv.dll
[-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2004-08-04 12:00 . D68CC4EBF7B03FD770D5962295AD814E . 52736 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll
.
[-] 2011-10-26 . 525C18123E6FAF032E3853A4B9D8F255 . 2071680 . . [5.1.2600.6165] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[-] 2011-10-26 . 525C18123E6FAF032E3853A4B9D8F255 . 2071680 . . [5.1.2600.6165] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[-] 2011-10-26 . 07FD1B85212CB29D3D75932B8C3FD210 . 2029568 . . [5.1.2600.6165] . . c:\windows\system32\ntkrnlpa.exe
[-] 2011-10-26 . ADD968B4D4A095407FD5B915F89BA8B5 . 2071680 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntkrnlpa.exe
[-] 2010-12-09 . 7B1CA0A6C042E4B90A18B49ED73CBA76 . 2071680 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe
[-] 2010-12-09 . 56371A8F18F7D9570A11B1C54D602A2A . 2029568 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntkrnlpa.exe
[-] 2010-02-17 . FEDB0FDF1FE02ECC7A823A690175B876 . 2066048 . . [5.1.2600.3670] . . c:\windows\$hf_mig$\KB979683\SP2QFE\ntkrnlpa.exe
[-] 2010-02-16 . 4C56EC495229ABC2F62862A7E145A852 . 2019328 . . [5.1.2600.3670] . . c:\windows\$NtServicePackUninstall$\ntkrnlpa.exe
[-] 2010-02-16 . 9F24D01B6027FED0423FD28F1055E3DD . 2069120 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3GDR\ntkrnlpa.exe
[-] 2010-02-16 . 1DFCBCFD1C9016C051BE6D7243459CCA . 2027008 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB2393802$\ntkrnlpa.exe
[-] 2010-02-16 . CEE28C8C47E52F185F9F8F3A2E31880C . 2069248 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe
[-] 2009-02-10 . 321917CFF934663C48C1E91A930E5D71 . 2068352 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3GDR\ntkrnlpa.exe
[-] 2009-02-09 . 6A2980D9805A4285271FE50D91BC5C2A . 2018304 . . [5.1.2600.3520] . . c:\windows\$NtUninstallKB979683_0$\ntkrnlpa.exe
[-] 2009-02-09 . 84C1C109552E9E276FF004E181B80C25 . 2065280 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB956572\SP2QFE\ntkrnlpa.exe
[-] 2009-02-09 . 43FBA8A9CBEEA36EA95AF77CD538200A . 2026496 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe
[-] 2009-02-09 . 1F9DA92672B8B5720C5FB1E87D8F249F . 2068480 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[-] 2008-04-14 . FEFB3BDA35CF469809B0C89AB6833AFC . 2026496 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe
[-] 2008-04-14 . E51980EF65CED4490A7395A06C08DA34 . 2068224 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntkrnlpa.exe
[-] 2008-04-14 . E51980EF65CED4490A7395A06C08DA34 . 2068224 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ntkrnlpa.exe
[-] 2004-08-04 . F8D35488D41B19A306A454FFC0ED0336 . 2017792 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB956572_0$\ntkrnlpa.exe
.
[-] 2008-04-14 06:52 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll
[-] 2008-04-14 06:52 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2008-04-14 02:22 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ntmssvc.dll
[-] 2004-08-04 12:00 . 428AA946A8D9F32DBB4260C8E6E13377 . 438272 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll
.
[-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll
[-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\upnphost.dll
[-] 2004-08-04 . 09D4A2D7C5A8ABEC227D118765FAADDF . 185856 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\upnphost.dll
.
[-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll
[-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\dsound.dll
[-] 2004-08-04 . 7DB3393F98E4211F5CE8F003DE0615CF . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll
.
[-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\d3d9.dll
[-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll
[-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\d3d9.dll
[-] 2004-08-04 . 20AE7889467887B869F30308EEED9A2A . 1689088 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\d3d9.dll
.
[-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\ddraw.dll
[-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll
[-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ddraw.dll
[-] 2004-08-04 . CAC545A56482DE01640E6B791DE19944 . 266240 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\ddraw.dll
.
[-] 2008-04-14 06:52 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\olepro32.dll
[-] 2008-04-14 06:52 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll
[-] 2008-04-14 02:22 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\olepro32.dll
[-] 2004-08-04 12:00 . 1404D3DD4ED4F5E2A938B43794049A81 . 83456 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\olepro32.dll
.
[-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\perfctrs.dll
[-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
[-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\perfctrs.dll
[-] 2004-08-04 . 007BFD01772B5202C5CE4F208A2F3F46 . 41984 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\perfctrs.dll
.
[-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\version.dll
[-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll
[-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\version.dll
[-] 2004-08-04 . 4EF2FDC0A085C8339ED4D9C59CE8FC60 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\version.dll
.
[-] 2008-04-14 . 3BFE49B4CDFAC83B0F3C79412895A179 . 93184 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\iexplore.exe
[-] 2008-04-14 . 3BFE49B4CDFAC83B0F3C79412895A179 . 93184 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\iexplore.exe
[-] 2004-08-04 . B39A6AF04A431E317C85BF061719E705 . 93184 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\iexplore.exe
.
[-] 2011-10-26 . 8B4FC0BCA12CABFDE8C2E49B1B9A65E6 . 2195072 . . [5.1.2600.6165] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[-] 2011-10-26 . 8B4FC0BCA12CABFDE8C2E49B1B9A65E6 . 2195072 . . [5.1.2600.6165] . . c:\windows\system32\dllcache\ntoskrnl.exe
[-] 2011-10-26 . 63907C9E2D9EEA3ADA8263F0A8D79797 . 2151424 . . [5.1.2600.6165] . . c:\windows\system32\ntoskrnl.exe
[-] 2011-10-26 . 43BA9F58FD87BBF57F958C06241F2C9C . 2195072 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntoskrnl.exe
[-] 2010-12-09 . 2A5A8BE47E1F8E55520FB4031E21D129 . 2195072 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe
[-] 2010-12-09 . DAC0BE266F11618A2B9A6EC4D1F255ED . 2151424 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntoskrnl.exe
[-] 2010-02-17 . 786F98EFD090AD93F03E3BD95FB68714 . 2192256 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3GDR\ntoskrnl.exe
[-] 2010-02-16 . 22FB992849C75B08F3A9BFB19B87935D . 2139648 . . [5.1.2600.3670] . . c:\windows\$NtServicePackUninstall$\ntoskrnl.exe
[-] 2010-02-16 . B76CEA13602DC99EE0E655E4798C24AA . 2189184 . . [5.1.2600.3670] . . c:\windows\$hf_mig$\KB979683\SP2QFE\ntoskrnl.exe
[-] 2010-02-16 . E1BD0FAFF2C1D0A825CBA97DCF0DDDAE . 2148864 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB2393802$\ntoskrnl.exe
[-] 2010-02-16 . 4456016C2FF1A8CCCAC8309C9B76E2F5 . 2192384 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe
[-] 2009-02-10 . D3453310FC92736E674FFDC6E3F455B7 . 2191488 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[-] 2009-02-09 . AA84FFABC07AD44176598F6E253EF5EE . 2138624 . . [5.1.2600.3520] . . c:\windows\$NtUninstallKB979683_0$\ntoskrnl.exe
[-] 2009-02-09 . E22124EC3A33F40755DCD2F4B1BE8A87 . 2188416 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB956572\SP2QFE\ntoskrnl.exe
[-] 2009-02-09 . FEE1600B76B196D9993CD468DA7524F7 . 2191360 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3GDR\ntoskrnl.exe
[-] 2009-02-09 . 18D976FE984BDA3DAC8164B05D69205D . 2147840 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe
[-] 2008-04-14 . 354C9291513BCE4D0ED6B0C6A15470F8 . 2191360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntoskrnl.exe
[-] 2008-04-14 . 88077F757C6C793C33408D878B6E0F76 . 2147840 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe
[-] 2008-04-14 . 354C9291513BCE4D0ED6B0C6A15470F8 . 2191360 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\ntoskrnl.exe
[-] 2004-08-04 . C3EC5DD56E3EB15D80AF9FCEE030CABD . 2150912 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB956572_0$\ntoskrnl.exe
.
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\srsvc.dll
[-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\w32time.dll
[-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\system32\w32time.dll
[-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\w32time.dll
[-] 2004-08-04 . C6D874CD2A5B83CD11CDEBD28A638584 . 176640 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\w32time.dll
.
[-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wiaservc.dll
[-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll
[-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\wiaservc.dll
[-] 2004-08-04 . 7E751068ADA60FC77638622E86A7CD9E . 333824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wiaservc.dll
.
[-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\midimap.dll
[-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll
[-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\midimap.dll
[-] 2004-08-04 . 32641AE4D340C1AC2D9B3A3BD71F5C47 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\midimap.dll
.
[-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rasadhlp.dll
[-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll
[-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\a746b2abbbec3e139e29152ba22decd1\rasadhlp.dll
[-] 2004-08-04 . 84028E2EBE7A25494766673A5FF4B304 . 8192 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\rasadhlp.dll
.
((((((((((((((((((((((((((((  Autostartpunkte der Registrierung  ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"VeohPlugin"="c:\programme\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" [2011-05-26 2644992]
"DAEMON Tools Lite"="c:\programme\DAEMON Tools Lite\DTLite.exe" [2011-01-20 1305408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2009-03-27 17567744]
"WinSys2"="c:\windows\system32\winsys2.exe" [2009-05-18 208896]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-04-30 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-04-30 13750272]
"avgnt"="c:\programme\Avira\AntiVir Desktop\avgnt.exe" [2011-01-10 281768]
"H2O"="c:\programme\SyncroSoft\Pos\H2O\cledx.exe" [2005-10-22 385024]
"LVCOMSX"="c:\windows\system32\LVCOMSX.EXE" [2005-07-19 221184]
"LogitechVideoRepair"="c:\programme\Logitech\Video\ISStart.exe" [2005-06-08 458752]
"Adobe Reader Speed Launcher"="c:\programme\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2011-01-30 35736]
"Adobe ARM"="c:\programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"QuickTime Task"="c:\programme\QuickTime\QTTask.exe" [2010-11-29 421888]
"SunJavaUpdateSched"="c:\programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" [2010-05-14 248552]
"LogitechGalleryRepair"="c:\programme\Logitech\ImageStudio\ISStart.exe" [2002-12-10 155648]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\dokumente und einstellungen\Robulus\Startmenü\Programme\Autostart\
Adobe Gamma.lnk - c:\programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
.
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^Robulus^Startmenü^Programme^Autostart^OpenOffice.org 3.3.lnk]
path=c:\dokumente und einstellungen\Robulus\Startmenü\Programme\Autostart\OpenOffice.org 3.3.lnk
backup=c:\windows\pss\OpenOffice.org 3.3.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2011-01-20 09:20        1305408        ----a-w-        c:\programme\DAEMON Tools Lite\DTLite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
2011-03-21 18:56        1230704        ----a-w-        c:\programme\DivX\DivX Update\DivXUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InstaLAN]
2010-09-14 20:55        1501080        ----a-w-        c:\programme\Belkin\Router Setup and Monitor\BelkinRouterMonitor.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechImageStudioTray]
2002-12-10 16:31        61440        ----a-w-        c:\programme\Logitech\ImageStudio\LogiTray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechSoftwareUpdate]
2005-06-08 13:44        196608        ----a-w-        c:\programme\Logitech\Video\ManifestEngine.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechVideoTray]
2005-06-08 14:14        217088        ----a-w-        c:\programme\Logitech\Video\LogiTray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
2009-04-30 23:31        1657376        ----a-w-        c:\windows\system32\nwiz.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2011-06-15 13:02        15141768        ----a-r-        c:\programme\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2011-08-11 03:24        1242448        ----a-w-        c:\programme\Steam\Steam.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programme\\ICQ7.4\\ICQ.exe"=
"c:\\Programme\\uTorrent\\uTorrent.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Programme\\Google\\Google Earth\\client\\googleearth.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Programme\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"c:\\Programme\\Bonjour\\mDNSResponder.exe"=
"c:\\Programme\\Firaxis Games\\Sid Meier's Civilization 4\\Civilization4.exe"=
"c:\\Programme\\Microsoft Games\\Age of Empires II\\age2_x1\\AGE2_X1.EXE"=
"c:\\Game\\SoftnyxGame\\GunboundIS\\GunBound.gme"=
"c:\\Programme\\Veoh Networks\\VeohWebPlayer\\veohwebplayer.exe"=
"c:\\Programme\\Skype\\Phone\\Skype.exe"=
"c:\\Programme\\Ubisoft\\Assassin's Creed II\\AssassinsCreedIIGame.exe"=
"c:\\Programme\\Ubisoft\\Assassin's Creed II\\AssassinsCreedII.exe"=
"c:\\Programme\\Ubisoft\\Assassin's Creed II\\UPlayBrowser.exe"=
"c:\\Programme\\Steam\\SteamApps\\common\\silent hill homecoming\\Bin\\SilentHill.exe"=
"c:\\Programme\\Steam\\SteamApps\\common\\skyrim\\SkyrimLauncher.exe"=
"c:\\Programme\\Giraffic\\Veoh_Giraffic.exe"=
"c:\\Programme\\Giraffic\\Veoh_GirafficWatchdog.exe"=
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [10.03.2011 17:19 218688]
R2 AntiVirSchedulerService;Avira AntiVir Planer;c:\programme\Avira\AntiVir Desktop\sched.exe [09.03.2011 21:02 136360]
R2 Giraffic;Veoh Giraffic Video Accelerator;c:\programme\Giraffic\Veoh_GirafficWatchdog.exe --service --> c:\programme\Giraffic\Veoh_GirafficWatchdog.exe --service [?]
R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [10.03.2011 17:21 33792]
S2 gupdate;Google Update Service (gupdate);c:\programme\Google\Update\GoogleUpdate.exe [15.03.2011 01:33 136176]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [09.03.2011 20:09 1684736]
S3 apf001;apf001;c:\game\SoftnyxGame\GunboundIS\apf001.sys [11.06.2011 21:21 10872]
S3 gupdatem;Google Update-Dienst (gupdatem);c:\programme\Google\Update\GoogleUpdate.exe [15.03.2011 01:33 136176]
S3 SetupNTGLM7X;SetupNTGLM7X;\??\h:\ntglm7x.sys --> h:\NTGLM7X.sys [?]
.
Inhalt des "geplante Tasks" Ordners
.
2012-02-08 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\programme\Google\Update\GoogleUpdate.exe [2011-03-15 00:33]
.
2012-02-08 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\programme\Google\Update\GoogleUpdate.exe [2011-03-15 00:33]
.
2012-02-08 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2011-03-11 21:18]
.
.
------- Zusätzlicher Suchlauf -------
.
uInternet Settings,ProxyOverride = *.local
IE: Free YouTube to MP3 Converter - c:\dokumente und einstellungen\Robulus\Anwendungsdaten\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: {{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - c:\programme\ICQ7.4\ICQ.exe
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\dokumente und einstellungen\Robulus\Anwendungsdaten\Mozilla\Firefox\Profiles\62ulqki8.default\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
HKLM-Run-CmUsbSound - cmcnfgu.cpl
MSConfigStartUp-Google Update - c:\dokumente und einstellungen\Robulus\Lokale Einstellungen\Anwendungsdaten\Google\Update\GoogleUpdate.exe
AddRemove-Octoshape add-in for Adobe Flash Player - c:\dokumente und einstellungen\Robulus\Anwendungsdaten\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-02-09 01:20
Windows 5.1.2600 Service Pack 3 NTFS
.
Scanne versteckte Prozesse...
.
Scanne versteckte Autostarteinträge...
.
Scanne versteckte Dateien...
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
Zeit der Fertigstellung: 2012-02-09  01:22:44
ComboFix-quarantined-files.txt  2012-02-09 00:22
.
Vor Suchlauf: 10 Verzeichnis(se), 346.316.337.152 Bytes frei
Nach Suchlauf: 11 Verzeichnis(se), 346.621.673.472 Bytes frei
.
WindowsXP-KB310994-SP2-Pro-BootDisk-DEU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - C6D56B26D9D97A1F61E1D1EDAA893D83


markusg 09.02.2012 11:10

download tdss killer:
http://www.trojaner-board.de/82358-t...entfernen.html
Klicke auf Change parameters
• Setze die Haken bei Verify driver digital signatures und Detect TDLFS file system
• Klick auf OK und anschließend auf Start scan
- bei funden erst mal immer skip wählen, log posten

Robulus 09.02.2012 11:26

Code:

11:25:13.0453 1528        TDSS rootkit removing tool 2.7.11.0 Feb  9 2012 10:12:57
11:25:13.0500 1528        ============================================================
11:25:13.0500 1528        Current date / time: 2012/02/09 11:25:13.0500
11:25:13.0500 1528        SystemInfo:
11:25:13.0500 1528       
11:25:13.0500 1528        OS Version: 5.1.2600 ServicePack: 3.0
11:25:13.0500 1528        Product type: Workstation
11:25:13.0500 1528        ComputerName: METALCOR-B40C6B
11:25:13.0500 1528        UserName: Robulus
11:25:13.0500 1528        Windows directory: C:\WINDOWS
11:25:13.0500 1528        System windows directory: C:\WINDOWS
11:25:13.0500 1528        Processor architecture: Intel x86
11:25:13.0500 1528        Number of processors: 2
11:25:13.0500 1528        Page size: 0x1000
11:25:13.0500 1528        Boot type: Normal boot
11:25:13.0500 1528        ============================================================
11:25:14.0890 1528        Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
11:25:14.0906 1528        \Device\Harddisk0\DR0:
11:25:14.0906 1528        MBR used
11:25:14.0906 1528        \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A380D41
11:25:14.0937 1528        Initialize success
11:25:14.0937 1528        ============================================================
11:25:35.0468 2712        ============================================================
11:25:35.0468 2712        Scan started
11:25:35.0468 2712        Mode: Manual; SigCheck; TDLFS;
11:25:35.0468 2712        ============================================================
11:25:35.0640 2712        Abiosdsk - ok
11:25:35.0640 2712        abp480n5 - ok
11:25:35.0687 2712        ACPI            (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
11:25:35.0765 2712        ACPI ( UnsignedFile.Multi.Generic ) - warning
11:25:35.0765 2712        ACPI - detected UnsignedFile.Multi.Generic (1)
11:25:35.0812 2712        ACPIEC          (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys
11:25:35.0812 2712        ACPIEC ( UnsignedFile.Multi.Generic ) - warning
11:25:35.0812 2712        ACPIEC - detected UnsignedFile.Multi.Generic (1)
11:25:35.0812 2712        adpu160m - ok
11:25:35.0843 2712        aec            (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
11:25:35.0859 2712        aec ( UnsignedFile.Multi.Generic ) - warning
11:25:35.0859 2712        aec - detected UnsignedFile.Multi.Generic (1)
11:25:35.0890 2712        AFD            (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
11:25:35.0906 2712        AFD ( UnsignedFile.Multi.Generic ) - warning
11:25:35.0906 2712        AFD - detected UnsignedFile.Multi.Generic (1)
11:25:35.0906 2712        AFGMp50 - ok
11:25:35.0953 2712        AFGSp50        (1961590aa191b6b7dcf18a6a693af7b8) C:\WINDOWS\system32\Drivers\AFGSp50.sys
11:25:35.0984 2712        AFGSp50 - ok
11:25:36.0000 2712        Aha154x - ok
11:25:36.0000 2712        aic78u2 - ok
11:25:36.0015 2712        aic78xx - ok
11:25:36.0015 2712        AliIde - ok
11:25:36.0078 2712        Ambfilt        (f6af59d6eee5e1c304f7f73706ad11d8) C:\WINDOWS\system32\drivers\Ambfilt.sys
11:25:36.0125 2712        Ambfilt ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0125 2712        Ambfilt - detected UnsignedFile.Multi.Generic (1)
11:25:36.0140 2712        amsint - ok
11:25:36.0171 2712        apf001          (7b4beb577c5d0171f9b66f390ec29284) C:\Game\SoftnyxGame\GunBoundIS\apf001.sys
11:25:36.0171 2712        apf001 - ok
11:25:36.0187 2712        asc - ok
11:25:36.0187 2712        asc3350p - ok
11:25:36.0203 2712        asc3550 - ok
11:25:36.0250 2712        AsyncMac        (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
11:25:36.0265 2712        AsyncMac ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0265 2712        AsyncMac - detected UnsignedFile.Multi.Generic (1)
11:25:36.0296 2712        atapi          (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
11:25:36.0312 2712        atapi ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0312 2712        atapi - detected UnsignedFile.Multi.Generic (1)
11:25:36.0312 2712        Atdisk - ok
11:25:36.0328 2712        Atmarpc        (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
11:25:36.0343 2712        Atmarpc ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0343 2712        Atmarpc - detected UnsignedFile.Multi.Generic (1)
11:25:36.0375 2712        audstub        (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
11:25:36.0390 2712        audstub ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0390 2712        audstub - detected UnsignedFile.Multi.Generic (1)
11:25:36.0500 2712        avgio          (0b497c79824f8e1bf22fa6aacd3de3a0) C:\Programme\Avira\AntiVir Desktop\avgio.sys
11:25:36.0500 2712        avgio - ok
11:25:36.0500 2712        avgntflt        (1e4114685de1ffa9675e09c6a1fb3f4b) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
11:25:36.0515 2712        avgntflt - ok
11:25:36.0515 2712        avipbb          (0f78d3dae6dedd99ae54c9491c62adf2) C:\WINDOWS\system32\DRIVERS\avipbb.sys
11:25:36.0531 2712        avipbb - ok
11:25:36.0562 2712        Beep            (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
11:25:36.0578 2712        Beep ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0578 2712        Beep - detected UnsignedFile.Multi.Generic (1)
11:25:36.0656 2712        catchme - ok
11:25:36.0687 2712        cbidf2k        (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
11:25:36.0687 2712        cbidf2k ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0687 2712        cbidf2k - detected UnsignedFile.Multi.Generic (1)
11:25:36.0718 2712        CCDECODE        (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
11:25:36.0718 2712        CCDECODE ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0718 2712        CCDECODE - detected UnsignedFile.Multi.Generic (1)
11:25:36.0734 2712        cd20xrnt - ok
11:25:36.0734 2712        Cdaudio        (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
11:25:36.0750 2712        Cdaudio ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0750 2712        Cdaudio - detected UnsignedFile.Multi.Generic (1)
11:25:36.0765 2712        Cdfs            (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
11:25:36.0781 2712        Cdfs ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0781 2712        Cdfs - detected UnsignedFile.Multi.Generic (1)
11:25:36.0812 2712        Cdrom          (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
11:25:36.0812 2712        Cdrom ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0812 2712        Cdrom - detected UnsignedFile.Multi.Generic (1)
11:25:36.0859 2712        cercsr6        (84853b3fd012251690570e9e7e43343f) C:\WINDOWS\system32\drivers\cercsr6.sys
11:25:36.0859 2712        cercsr6 ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0859 2712        cercsr6 - detected UnsignedFile.Multi.Generic (1)
11:25:36.0875 2712        Changer - ok
11:25:36.0921 2712        CLEDX          (b53f9635457b56dcffef750e18aec6cb) C:\WINDOWS\system32\DRIVERS\cledx.sys
11:25:36.0921 2712        CLEDX ( UnsignedFile.Multi.Generic ) - warning
11:25:36.0921 2712        CLEDX - detected UnsignedFile.Multi.Generic (1)
11:25:36.0937 2712        CmdIde - ok
11:25:37.0015 2712        cmudau          (6567d62b2b9e30692da2cd64ab512c1f) C:\WINDOWS\system32\drivers\cmudau.sys
11:25:37.0062 2712        cmudau ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0062 2712        cmudau - detected UnsignedFile.Multi.Generic (1)
11:25:37.0078 2712        Cpqarray - ok
11:25:37.0078 2712        dac2w2k - ok
11:25:37.0093 2712        dac960nt - ok
11:25:37.0109 2712        Disk            (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
11:25:37.0125 2712        Disk ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0125 2712        Disk - detected UnsignedFile.Multi.Generic (1)
11:25:37.0171 2712        dmboot          (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys
11:25:37.0187 2712        dmboot ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0187 2712        dmboot - detected UnsignedFile.Multi.Generic (1)
11:25:37.0203 2712        dmio            (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\drivers\dmio.sys
11:25:37.0203 2712        dmio ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0203 2712        dmio - detected UnsignedFile.Multi.Generic (1)
11:25:37.0234 2712        dmload          (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
11:25:37.0234 2712        dmload ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0234 2712        dmload - detected UnsignedFile.Multi.Generic (1)
11:25:37.0265 2712        DMusic          (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
11:25:37.0265 2712        DMusic ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0265 2712        DMusic - detected UnsignedFile.Multi.Generic (1)
11:25:37.0281 2712        dpti2o - ok
11:25:37.0296 2712        drmkaud        (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
11:25:37.0296 2712        drmkaud ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0296 2712        drmkaud - detected UnsignedFile.Multi.Generic (1)
11:25:37.0343 2712        dtsoftbus01    (555e54ac2f601a8821cef58961653991) C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
11:25:37.0343 2712        dtsoftbus01 - ok
11:25:37.0375 2712        Fastfat        (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
11:25:37.0390 2712        Fastfat ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0390 2712        Fastfat - detected UnsignedFile.Multi.Generic (1)
11:25:37.0406 2712        Fdc            (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\drivers\Fdc.sys
11:25:37.0406 2712        Fdc ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0406 2712        Fdc - detected UnsignedFile.Multi.Generic (1)
11:25:37.0421 2712        Fips            (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys
11:25:37.0468 2712        Fips ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0468 2712        Fips - detected UnsignedFile.Multi.Generic (1)
11:25:37.0609 2712        Flpydisk        (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys
11:25:37.0609 2712        Flpydisk ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0609 2712        Flpydisk - detected UnsignedFile.Multi.Generic (1)
11:25:37.0640 2712        FltMgr          (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
11:25:37.0656 2712        FltMgr ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0656 2712        FltMgr - detected UnsignedFile.Multi.Generic (1)
11:25:37.0671 2712        Fs_Rec          (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
11:25:37.0671 2712        Fs_Rec ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0671 2712        Fs_Rec - detected UnsignedFile.Multi.Generic (1)
11:25:37.0687 2712        Ftdisk          (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
11:25:37.0687 2712        Ftdisk ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0687 2712        Ftdisk - detected UnsignedFile.Multi.Generic (1)
11:25:37.0687 2712        GMSIPCI - ok
11:25:37.0703 2712        Gpc            (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
11:25:37.0718 2712        Gpc ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0718 2712        Gpc - detected UnsignedFile.Multi.Generic (1)
11:25:37.0734 2712        HDAudBus        (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
11:25:37.0734 2712        HDAudBus ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0734 2712        HDAudBus - detected UnsignedFile.Multi.Generic (1)
11:25:37.0750 2712        hidusb          (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
11:25:37.0750 2712        hidusb ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0750 2712        hidusb - detected UnsignedFile.Multi.Generic (1)
11:25:37.0765 2712        hpn - ok
11:25:37.0812 2712        HTTP            (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
11:25:37.0828 2712        HTTP ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0828 2712        HTTP - detected UnsignedFile.Multi.Generic (1)
11:25:37.0843 2712        i2omgmt - ok
11:25:37.0843 2712        i2omp - ok
11:25:37.0859 2712        i8042prt        (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
11:25:37.0859 2712        i8042prt ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0859 2712        i8042prt - detected UnsignedFile.Multi.Generic (1)
11:25:37.0906 2712        Imapi          (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
11:25:37.0906 2712        Imapi ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0906 2712        Imapi - detected UnsignedFile.Multi.Generic (1)
11:25:37.0921 2712        ini910u - ok
11:25:38.0015 2712        IntcAzAudAddService (1ae3cff80017ef89da959350724c7194) C:\WINDOWS\system32\drivers\RtkHDAud.sys
11:25:38.0125 2712        IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0125 2712        IntcAzAudAddService - detected UnsignedFile.Multi.Generic (1)
11:25:38.0125 2712        IntelIde - ok
11:25:38.0156 2712        Ip6Fw          (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
11:25:38.0156 2712        Ip6Fw ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0156 2712        Ip6Fw - detected UnsignedFile.Multi.Generic (1)
11:25:38.0187 2712        IpFilterDriver  (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
11:25:38.0203 2712        IpFilterDriver ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0203 2712        IpFilterDriver - detected UnsignedFile.Multi.Generic (1)
11:25:38.0203 2712        IpInIp          (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
11:25:38.0203 2712        IpInIp ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0203 2712        IpInIp - detected UnsignedFile.Multi.Generic (1)
11:25:38.0234 2712        IpNat          (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
11:25:38.0234 2712        IpNat ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0234 2712        IpNat - detected UnsignedFile.Multi.Generic (1)
11:25:38.0250 2712        IPSec          (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
11:25:38.0250 2712        IPSec ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0250 2712        IPSec - detected UnsignedFile.Multi.Generic (1)
11:25:38.0281 2712        IRENUM          (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
11:25:38.0281 2712        IRENUM ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0281 2712        IRENUM - detected UnsignedFile.Multi.Generic (1)
11:25:38.0312 2712        isapnp          (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys
11:25:38.0312 2712        isapnp ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0312 2712        isapnp - detected UnsignedFile.Multi.Generic (1)
11:25:38.0328 2712        Kbdclass        (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
11:25:38.0328 2712        Kbdclass ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0328 2712        Kbdclass - detected UnsignedFile.Multi.Generic (1)
11:25:38.0343 2712        kbdhid          (b6d6c117d771c98130497265f26d1882) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
11:25:38.0343 2712        kbdhid ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0343 2712        kbdhid - detected UnsignedFile.Multi.Generic (1)
11:25:38.0359 2712        kmixer          (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
11:25:38.0359 2712        kmixer ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0359 2712        kmixer - detected UnsignedFile.Multi.Generic (1)
11:25:38.0390 2712        KSecDD          (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
11:25:38.0390 2712        KSecDD ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0390 2712        KSecDD - detected UnsignedFile.Multi.Generic (1)
11:25:38.0406 2712        lbrtfdc - ok
11:25:38.0421 2712        mnmdd          (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
11:25:38.0421 2712        mnmdd ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0421 2712        mnmdd - detected UnsignedFile.Multi.Generic (1)
11:25:38.0453 2712        Modem          (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys
11:25:38.0453 2712        Modem ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0453 2712        Modem - detected UnsignedFile.Multi.Generic (1)
11:25:38.0515 2712        Monfilt        (9fa7207d1b1adead88ae8eed9cdbbaa5) C:\WINDOWS\system32\drivers\Monfilt.sys
11:25:38.0562 2712        Monfilt ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0562 2712        Monfilt - detected UnsignedFile.Multi.Generic (1)
11:25:38.0578 2712        Mouclass        (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys
11:25:38.0578 2712        Mouclass ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0578 2712        Mouclass - detected UnsignedFile.Multi.Generic (1)
11:25:38.0625 2712        mouhid          (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys
11:25:38.0640 2712        mouhid ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0640 2712        mouhid - detected UnsignedFile.Multi.Generic (1)
11:25:38.0671 2712        MountMgr        (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
11:25:38.0671 2712        MountMgr ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0671 2712        MountMgr - detected UnsignedFile.Multi.Generic (1)
11:25:38.0671 2712        mraid35x - ok
11:25:38.0687 2712        MRxDAV          (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
11:25:38.0687 2712        MRxDAV ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0687 2712        MRxDAV - detected UnsignedFile.Multi.Generic (1)
11:25:38.0734 2712        MRxSmb          (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
11:25:38.0750 2712        MRxSmb ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0750 2712        MRxSmb - detected UnsignedFile.Multi.Generic (1)
11:25:38.0765 2712        Msfs            (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
11:25:38.0765 2712        Msfs ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0765 2712        Msfs - detected UnsignedFile.Multi.Generic (1)
11:25:38.0765 2712        MSICPL - ok
11:25:38.0796 2712        MSKSSRV        (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
11:25:38.0796 2712        MSKSSRV ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0796 2712        MSKSSRV - detected UnsignedFile.Multi.Generic (1)
11:25:38.0812 2712        MSPCLOCK        (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
11:25:38.0828 2712        MSPCLOCK ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0828 2712        MSPCLOCK - detected UnsignedFile.Multi.Generic (1)
11:25:38.0828 2712        MSPQM          (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
11:25:38.0843 2712        MSPQM ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0843 2712        MSPQM - detected UnsignedFile.Multi.Generic (1)
11:25:38.0875 2712        mssmbios        (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
11:25:38.0890 2712        mssmbios ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0890 2712        mssmbios - detected UnsignedFile.Multi.Generic (1)
11:25:38.0906 2712        MSTEE          (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
11:25:38.0906 2712        MSTEE ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0906 2712        MSTEE - detected UnsignedFile.Multi.Generic (1)
11:25:38.0968 2712        Mup            (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
11:25:38.0968 2712        Mup ( UnsignedFile.Multi.Generic ) - warning
11:25:38.0968 2712        Mup - detected UnsignedFile.Multi.Generic (1)
11:25:39.0015 2712        NABTSFEC        (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
11:25:39.0031 2712        NABTSFEC ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0031 2712        NABTSFEC - detected UnsignedFile.Multi.Generic (1)
11:25:39.0046 2712        NDIS            (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
11:25:39.0062 2712        NDIS ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0062 2712        NDIS - detected UnsignedFile.Multi.Generic (1)
11:25:39.0078 2712        NdisIP          (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
11:25:39.0093 2712        NdisIP ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0093 2712        NdisIP - detected UnsignedFile.Multi.Generic (1)
11:25:39.0140 2712        NdisTapi        (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
11:25:39.0140 2712        NdisTapi ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0140 2712        NdisTapi - detected UnsignedFile.Multi.Generic (1)
11:25:39.0187 2712        Ndisuio        (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
11:25:39.0203 2712        Ndisuio ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0203 2712        Ndisuio - detected UnsignedFile.Multi.Generic (1)
11:25:39.0203 2712        NdisWan        (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
11:25:39.0218 2712        NdisWan ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0218 2712        NdisWan - detected UnsignedFile.Multi.Generic (1)
11:25:39.0281 2712        NDProxy        (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
11:25:39.0281 2712        NDProxy ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0281 2712        NDProxy - detected UnsignedFile.Multi.Generic (1)
11:25:39.0296 2712        NetBIOS        (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
11:25:39.0296 2712        NetBIOS ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0296 2712        NetBIOS - detected UnsignedFile.Multi.Generic (1)
11:25:39.0328 2712        NetBT          (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
11:25:39.0328 2712        NetBT ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0328 2712        NetBT - detected UnsignedFile.Multi.Generic (1)
11:25:39.0375 2712        Npfs            (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
11:25:39.0375 2712        Npfs ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0375 2712        Npfs - detected UnsignedFile.Multi.Generic (1)
11:25:39.0390 2712        NTACCESS - ok
11:25:39.0406 2712        Ntfs            (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
11:25:39.0421 2712        Ntfs ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0421 2712        Ntfs - detected UnsignedFile.Multi.Generic (1)
11:25:39.0468 2712        Null            (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
11:25:39.0484 2712        Null ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0484 2712        Null - detected UnsignedFile.Multi.Generic (1)
11:25:39.0625 2712        nv              (406ddab2b05d94d4818e97ff050d1bc6) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
11:25:39.0906 2712        nv ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0906 2712        nv - detected UnsignedFile.Multi.Generic (1)
11:25:39.0984 2712        NwlnkFlt        (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
11:25:39.0984 2712        NwlnkFlt ( UnsignedFile.Multi.Generic ) - warning
11:25:39.0984 2712        NwlnkFlt - detected UnsignedFile.Multi.Generic (1)
11:25:40.0015 2712        NwlnkFwd        (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
11:25:40.0015 2712        NwlnkFwd ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0015 2712        NwlnkFwd - detected UnsignedFile.Multi.Generic (1)
11:25:40.0062 2712        Parport        (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\drivers\Parport.sys
11:25:40.0062 2712        Parport ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0062 2712        Parport - detected UnsignedFile.Multi.Generic (1)
11:25:40.0078 2712        PartMgr        (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
11:25:40.0093 2712        PartMgr ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0093 2712        PartMgr - detected UnsignedFile.Multi.Generic (1)
11:25:40.0109 2712        ParVdm          (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys
11:25:40.0125 2712        ParVdm ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0125 2712        ParVdm - detected UnsignedFile.Multi.Generic (1)
11:25:40.0140 2712        PCI            (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys
11:25:40.0140 2712        PCI ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0140 2712        PCI - detected UnsignedFile.Multi.Generic (1)
11:25:40.0156 2712        PCIDump - ok
11:25:40.0171 2712        PCIIde          (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys
11:25:40.0171 2712        PCIIde ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0171 2712        PCIIde - detected UnsignedFile.Multi.Generic (1)
11:25:40.0203 2712        Pcmcia          (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys
11:25:40.0218 2712        Pcmcia ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0218 2712        Pcmcia - detected UnsignedFile.Multi.Generic (1)
11:25:40.0218 2712        PDCOMP - ok
11:25:40.0234 2712        PDFRAME - ok
11:25:40.0234 2712        PDRELI - ok
11:25:40.0250 2712        PDRFRAME - ok
11:25:40.0250 2712        perc2 - ok
11:25:40.0265 2712        perc2hib - ok
11:25:40.0312 2712        PptpMiniport    (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
11:25:40.0312 2712        PptpMiniport ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0312 2712        PptpMiniport - detected UnsignedFile.Multi.Generic (1)
11:25:40.0312 2712        Processor      (2cb55427c58679f49ad600fccba76360) C:\WINDOWS\system32\DRIVERS\processr.sys
11:25:40.0328 2712        Processor ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0328 2712        Processor - detected UnsignedFile.Multi.Generic (1)
11:25:40.0343 2712        PSched          (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
11:25:40.0343 2712        PSched ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0343 2712        PSched - detected UnsignedFile.Multi.Generic (1)
11:25:40.0359 2712        Ptilink        (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
11:25:40.0359 2712        Ptilink ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0359 2712        Ptilink - detected UnsignedFile.Multi.Generic (1)
11:25:40.0390 2712        PxHelp20        (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
11:25:40.0390 2712        PxHelp20 - ok
11:25:40.0421 2712        QCDonner        (5e272eaad04e80354e0c484cc3cfd3cc) C:\WINDOWS\system32\DRIVERS\LVCD.sys
11:25:40.0453 2712        QCDonner ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0453 2712        QCDonner - detected UnsignedFile.Multi.Generic (1)
11:25:40.0453 2712        ql1080 - ok
11:25:40.0453 2712        Ql10wnt - ok
11:25:40.0468 2712        ql12160 - ok
11:25:40.0468 2712        ql1240 - ok
11:25:40.0484 2712        ql1280 - ok
11:25:40.0515 2712        RasAcd          (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
11:25:40.0515 2712        RasAcd ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0515 2712        RasAcd - detected UnsignedFile.Multi.Generic (1)
11:25:40.0515 2712        Rasl2tp        (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
11:25:40.0531 2712        Rasl2tp ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0531 2712        Rasl2tp - detected UnsignedFile.Multi.Generic (1)
11:25:40.0531 2712        RasPppoe        (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
11:25:40.0546 2712        RasPppoe ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0546 2712        RasPppoe - detected UnsignedFile.Multi.Generic (1)
11:25:40.0562 2712        Raspti          (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
11:25:40.0562 2712        Raspti ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0562 2712        Raspti - detected UnsignedFile.Multi.Generic (1)
11:25:40.0578 2712        Rdbss          (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
11:25:40.0578 2712        Rdbss ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0578 2712        Rdbss - detected UnsignedFile.Multi.Generic (1)
11:25:40.0593 2712        RDPCDD          (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
11:25:40.0593 2712        RDPCDD ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0593 2712        RDPCDD - detected UnsignedFile.Multi.Generic (1)
11:25:40.0609 2712        rdpdr          (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
11:25:40.0609 2712        rdpdr ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0609 2712        rdpdr - detected UnsignedFile.Multi.Generic (1)
11:25:40.0671 2712        RDPWD          (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
11:25:40.0671 2712        RDPWD ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0671 2712        RDPWD - detected UnsignedFile.Multi.Generic (1)
11:25:40.0703 2712        redbook        (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys
11:25:40.0703 2712        redbook ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0703 2712        redbook - detected UnsignedFile.Multi.Generic (1)
11:25:40.0750 2712        RTLE8023xp      (b0e1648aae1e59bdd0854af07a605399) C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
11:25:40.0765 2712        RTLE8023xp ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0765 2712        RTLE8023xp - detected UnsignedFile.Multi.Generic (1)
11:25:40.0796 2712        Secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
11:25:40.0796 2712        Secdrv ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0796 2712        Secdrv - detected UnsignedFile.Multi.Generic (1)
11:25:40.0828 2712        serenum        (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
11:25:40.0828 2712        serenum ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0828 2712        serenum - detected UnsignedFile.Multi.Generic (1)
11:25:40.0843 2712        Serial          (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\DRIVERS\serial.sys
11:25:40.0843 2712        Serial ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0843 2712        Serial - detected UnsignedFile.Multi.Generic (1)
11:25:40.0859 2712        SetupNTGLM7X - ok
11:25:40.0875 2712        Sfloppy        (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
11:25:40.0875 2712        Sfloppy ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0875 2712        Sfloppy - detected UnsignedFile.Multi.Generic (1)
11:25:40.0890 2712        Simbad - ok
11:25:40.0921 2712        SLIP            (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
11:25:40.0937 2712        SLIP ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0937 2712        SLIP - detected UnsignedFile.Multi.Generic (1)
11:25:40.0937 2712        Sparrow - ok
11:25:40.0968 2712        splitter        (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
11:25:40.0968 2712        splitter ( UnsignedFile.Multi.Generic ) - warning
11:25:40.0968 2712        splitter - detected UnsignedFile.Multi.Generic (1)
11:25:41.0000 2712        sr              (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys
11:25:41.0015 2712        sr ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0015 2712        sr - detected UnsignedFile.Multi.Generic (1)
11:25:41.0046 2712        Srv            (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
11:25:41.0062 2712        Srv ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0062 2712        Srv - detected UnsignedFile.Multi.Generic (1)
11:25:41.0093 2712        ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
11:25:41.0093 2712        ssmdrv - ok
11:25:41.0125 2712        streamip        (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
11:25:41.0125 2712        streamip ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0125 2712        streamip - detected UnsignedFile.Multi.Generic (1)
11:25:41.0156 2712        swenum          (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
11:25:41.0156 2712        swenum ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0156 2712        swenum - detected UnsignedFile.Multi.Generic (1)
11:25:41.0187 2712        swmidi          (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
11:25:41.0203 2712        swmidi ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0203 2712        swmidi - detected UnsignedFile.Multi.Generic (1)
11:25:41.0203 2712        symc810 - ok
11:25:41.0218 2712        symc8xx - ok
11:25:41.0218 2712        sym_hi - ok
11:25:41.0234 2712        sym_u3 - ok
11:25:41.0234 2712        sysaudio        (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
11:25:41.0250 2712        sysaudio ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0250 2712        sysaudio - detected UnsignedFile.Multi.Generic (1)
11:25:41.0296 2712        Tcpip          (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
11:25:41.0312 2712        Tcpip ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0312 2712        Tcpip - detected UnsignedFile.Multi.Generic (1)
11:25:41.0328 2712        TDPIPE          (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
11:25:41.0328 2712        TDPIPE ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0328 2712        TDPIPE - detected UnsignedFile.Multi.Generic (1)
11:25:41.0359 2712        TDTCP          (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
11:25:41.0375 2712        TDTCP ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0375 2712        TDTCP - detected UnsignedFile.Multi.Generic (1)
11:25:41.0375 2712        TermDD          (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
11:25:41.0375 2712        TermDD ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0375 2712        TermDD - detected UnsignedFile.Multi.Generic (1)
11:25:41.0390 2712        TosIde - ok
11:25:41.0406 2712        Udfs            (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
11:25:41.0421 2712        Udfs ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0421 2712        Udfs - detected UnsignedFile.Multi.Generic (1)
11:25:41.0421 2712        ultra - ok
11:25:41.0484 2712        Update          (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
11:25:41.0500 2712        Update ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0500 2712        Update - detected UnsignedFile.Multi.Generic (1)
11:25:41.0546 2712        USBAAPL        (d4fb6ecc60a428564ba8768b0e23c0fc) C:\WINDOWS\system32\Drivers\usbaapl.sys
11:25:41.0546 2712        USBAAPL ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0546 2712        USBAAPL - detected UnsignedFile.Multi.Generic (1)
11:25:41.0562 2712        usbaudio        (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
11:25:41.0562 2712        usbaudio ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0562 2712        usbaudio - detected UnsignedFile.Multi.Generic (1)
11:25:41.0578 2712        usbccgp        (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
11:25:41.0593 2712        usbccgp ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0593 2712        usbccgp - detected UnsignedFile.Multi.Generic (1)
11:25:41.0609 2712        usbehci        (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
11:25:41.0609 2712        usbehci ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0609 2712        usbehci - detected UnsignedFile.Multi.Generic (1)
11:25:41.0625 2712        usbhub          (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
11:25:41.0625 2712        usbhub ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0625 2712        usbhub - detected UnsignedFile.Multi.Generic (1)
11:25:41.0625 2712        usbohci        (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
11:25:41.0640 2712        usbohci ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0640 2712        usbohci - detected UnsignedFile.Multi.Generic (1)
11:25:41.0656 2712        usbprint        (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
11:25:41.0656 2712        usbprint ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0656 2712        usbprint - detected UnsignedFile.Multi.Generic (1)
11:25:41.0671 2712        usbscan        (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
11:25:41.0687 2712        usbscan ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0687 2712        usbscan - detected UnsignedFile.Multi.Generic (1)
11:25:41.0687 2712        usbstor        (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
11:25:41.0687 2712        usbstor ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0687 2712        usbstor - detected UnsignedFile.Multi.Generic (1)
11:25:41.0718 2712        VgaSave        (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
11:25:41.0718 2712        VgaSave ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0718 2712        VgaSave - detected UnsignedFile.Multi.Generic (1)
11:25:41.0734 2712        ViaIde - ok
11:25:41.0765 2712        VolSnap        (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys
11:25:41.0765 2712        VolSnap ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0765 2712        VolSnap - detected UnsignedFile.Multi.Generic (1)
11:25:41.0796 2712        Wanarp          (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
11:25:41.0812 2712        Wanarp ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0812 2712        Wanarp - detected UnsignedFile.Multi.Generic (1)
11:25:41.0812 2712        WDICA - ok
11:25:41.0843 2712        wdmaud          (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
11:25:41.0859 2712        wdmaud ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0859 2712        wdmaud - detected UnsignedFile.Multi.Generic (1)
11:25:41.0906 2712        WmiAcpi        (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
11:25:41.0906 2712        WmiAcpi ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0906 2712        WmiAcpi - detected UnsignedFile.Multi.Generic (1)
11:25:41.0937 2712        WpdUsb          (1385e5aa9c9821790d33a9563b8d2dd0) C:\WINDOWS\system32\Drivers\wpdusb.sys
11:25:41.0937 2712        WpdUsb ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0937 2712        WpdUsb - detected UnsignedFile.Multi.Generic (1)
11:25:41.0968 2712        WS2IFSL        (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
11:25:41.0968 2712        WS2IFSL ( UnsignedFile.Multi.Generic ) - warning
11:25:41.0968 2712        WS2IFSL - detected UnsignedFile.Multi.Generic (1)
11:25:42.0000 2712        WSTCODEC        (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
11:25:42.0000 2712        WSTCODEC ( UnsignedFile.Multi.Generic ) - warning
11:25:42.0000 2712        WSTCODEC - detected UnsignedFile.Multi.Generic (1)
11:25:42.0031 2712        MBR (0x1B8)    (72b8ce41af0de751c946802b3ed844b4) \Device\Harddisk0\DR0
11:25:42.0281 2712        \Device\Harddisk0\DR0 - ok
11:25:42.0281 2712        Boot (0x1200)  (89d804aa0413ba54e9bba87298b9139d) \Device\Harddisk0\DR0\Partition0
11:25:42.0296 2712        \Device\Harddisk0\DR0\Partition0 - ok
11:25:42.0296 2712        ============================================================
11:25:42.0296 2712        Scan finished
11:25:42.0296 2712        ============================================================
11:25:42.0390 2688        Detected object count: 135
11:25:42.0390 2688        Actual detected object count: 135
11:26:06.0984 2688        ACPI ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        ACPI ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        ACPIEC ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        ACPIEC ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        aec ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        aec ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        AFD ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        AFD ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        Ambfilt ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        Ambfilt ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        AsyncMac ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        AsyncMac ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        atapi ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        atapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        Atmarpc ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        Atmarpc ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        audstub ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        audstub ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        Beep ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        Beep ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        cbidf2k ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        cbidf2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:06.0984 2688        CCDECODE ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:06.0984 2688        CCDECODE ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        Cdaudio ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        Cdaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        Cdfs ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        Cdfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        Cdrom ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        Cdrom ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        cercsr6 ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        cercsr6 ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        CLEDX ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        CLEDX ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        cmudau ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        cmudau ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        Disk ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        Disk ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        dmboot ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        dmboot ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        dmio ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        dmio ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        dmload ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        dmload ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        DMusic ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        DMusic ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        drmkaud ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0000 2688        drmkaud ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0000 2688        Fastfat ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Fastfat ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        Fdc ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Fdc ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        Fips ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Fips ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        Flpydisk ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Flpydisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        FltMgr ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        FltMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        Fs_Rec ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Fs_Rec ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        Ftdisk ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Ftdisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        Gpc ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Gpc ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        hidusb ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        hidusb ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        HTTP ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        HTTP ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        i8042prt ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        i8042prt ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0015 2688        Imapi ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0015 2688        Imapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        Ip6Fw ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        Ip6Fw ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        IpFilterDriver ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        IpFilterDriver ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        IpInIp ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        IpInIp ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        IpNat ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        IpNat ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        IPSec ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        IPSec ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        IRENUM ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        IRENUM ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        isapnp ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        isapnp ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        Kbdclass ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        Kbdclass ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        kbdhid ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        kbdhid ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        kmixer ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        kmixer ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0031 2688        KSecDD ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0031 2688        KSecDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        mnmdd ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        mnmdd ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        Modem ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        Modem ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        Monfilt ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        Monfilt ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        Mouclass ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        Mouclass ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        mouhid ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        mouhid ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        MountMgr ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        MountMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        MRxDAV ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        MRxDAV ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        MRxSmb ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        MRxSmb ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        Msfs ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        Msfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        MSKSSRV ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        MSKSSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0046 2688        MSPCLOCK ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0046 2688        MSPCLOCK ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        MSPQM ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        MSPQM ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        mssmbios ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        mssmbios ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        MSTEE ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        MSTEE ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        Mup ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        Mup ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        NABTSFEC ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        NABTSFEC ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        NDIS ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        NDIS ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        NdisIP ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        NdisIP ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        NdisTapi ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        NdisTapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        Ndisuio ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        Ndisuio ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        NdisWan ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        NdisWan ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        NDProxy ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        NDProxy ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0062 2688        NetBIOS ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0062 2688        NetBIOS ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        NetBT ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        NetBT ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        Npfs ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        Npfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        Ntfs ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        Ntfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        Null ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        Null ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        nv ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        nv ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        NwlnkFlt ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        NwlnkFlt ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        NwlnkFwd ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        NwlnkFwd ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        Parport ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        Parport ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        PartMgr ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        PartMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        ParVdm ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        ParVdm ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        PCI ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        PCI ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0078 2688        PCIIde ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0078 2688        PCIIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        Pcmcia ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        Pcmcia ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        PptpMiniport ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        PptpMiniport ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        Processor ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        Processor ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        PSched ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        PSched ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        Ptilink ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        Ptilink ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        QCDonner ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        QCDonner ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        RasAcd ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        RasAcd ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        Rasl2tp ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        Rasl2tp ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        RasPppoe ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        RasPppoe ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        Raspti ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        Raspti ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        Rdbss ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        Rdbss ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0093 2688        RDPCDD ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0093 2688        RDPCDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        rdpdr ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        rdpdr ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        RDPWD ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        RDPWD ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        redbook ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        redbook ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        RTLE8023xp ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        RTLE8023xp ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        Secdrv ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        Secdrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        serenum ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        serenum ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        Serial ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        Serial ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        Sfloppy ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        Sfloppy ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        SLIP ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        SLIP ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        splitter ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        splitter ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        sr ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        sr ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0109 2688        Srv ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0109 2688        Srv ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        streamip ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        streamip ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        swenum ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        swenum ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        swmidi ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        swmidi ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        sysaudio ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        sysaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        Tcpip ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        Tcpip ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        TDPIPE ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        TDPIPE ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        TDTCP ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        TDTCP ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        TermDD ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        TermDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        Udfs ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        Udfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        Update ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        Update ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        USBAAPL ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        USBAAPL ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0125 2688        usbaudio ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0125 2688        usbaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        usbccgp ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        usbccgp ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        usbehci ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        usbehci ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        usbhub ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        usbhub ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        usbohci ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        usbohci ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        usbprint ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        usbprint ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        usbscan ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        usbscan ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        usbstor ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        usbstor ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        VgaSave ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        VgaSave ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        VolSnap ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        VolSnap ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        Wanarp ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        Wanarp ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0140 2688        wdmaud ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0140 2688        wdmaud ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0156 2688        WmiAcpi ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0156 2688        WmiAcpi ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0156 2688        WpdUsb ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0156 2688        WpdUsb ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0156 2688        WS2IFSL ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0156 2688        WS2IFSL ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:26:07.0156 2688        WSTCODEC ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:07.0156 2688        WSTCODEC ( UnsignedFile.Multi.Generic ) - User select action: Skip


markusg 09.02.2012 12:23

ok,
malwarebytes:
Downloade Dir bitte Malwarebytes
  • Installiere
    das Programm in den vorgegebenen Pfad.
    Vista und Win7 User mit Rechtsklick "als Administrator starten"
  • Starte Malwarebytes, klicke auf Aktualisierung --> Suche
    nach Aktualisierung
  • Wenn das Update beendet wurde, aktiviere vollständiger Scan durchführen und drücke auf Scannen.
  • Wenn der Scan beendet
    ist, klicke auf Ergebnisse anzeigen.
  • Versichere Dich, dass alle Funde markiert sind und drücke Entferne Auswahl.
  • Poste
    das Logfile, welches sich in Notepad öffnet, hier in den Thread.
  • Nachträglich kannst du den Bericht unter "Log Dateien" finden.

Robulus 09.02.2012 18:03

Code:

Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Datenbank Version: v2012.02.09.03

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
Robulus :: METALCOR-B40C6B [Administrator]

09.02.2012 12:30:05
mbam-log-2012-02-09 (12-30-05).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 339716
Laufzeit: 47 Minute(n), 16 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 1
C:\_OTL\MovedFiles\02082012_174031\C_Dokumente und Einstellungen\Robulus\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\firefox.exe (Trojan.Ransom) -> Erfolgreich gelöscht und in Quarantäne gestellt.

(Ende)


markusg 09.02.2012 18:06

- internet explorer 8, auch wenn du nen andern browser nutzt, muss er aktuell sein.
Detail Seite Windows Internet Explorer 8 für Windows XP
- automatische updates so konfigurieren, das sie automatisch geladen/instaliert werden:
Konfigurieren und Verwenden des Features "Automatische Updates" in Windows
wenn fertig, melden bitte

Robulus 11.02.2012 04:24

hab die neue version von chrome, soweit funktioniert alles:)

ich danke jetzt schonmal für die Hilfe und werd auch was donaten, weil ich das verdammt gut hier finde;)

markusg 11.02.2012 12:31

danke dir.
wir nähern uns auch dem ziehl.

lade den CCleaner standard:
CCleaner Download - CCleaner 3.15.1643
falls der CCleaner
bereits instaliert, überspringen.
instalieren, öffnen, extras, liste der instalierten programme, als txt speichern. öffnen.
hinter, jedes von dir benötigte programm, schreibe notwendig.
hinter, jedes, von dir nicht benötigte, unnötig.
hinter, dir unbekannte, unbekannt.
liste posten.

Robulus 12.02.2012 14:06

sorry musste arbeiten

Code:

Adobe Flash Player 10 ActiveX        Adobe Systems Incorporated        12.02.2012        10.2.152.32        notwendig
Adobe Flash Player 10 Plugin        Adobe Systems Incorporated        12.02.2012        10.3.183.11        notwendig
Adobe Photoshop CS2        Adobe Systems, Inc.                        14.03.2011        9.0                notwendig
Adobe Reader X (10.0.1) - Deutsch Adobe Systems Incorporated        11.03.2011        117,3MB        10.0.1        notwendig
ASIO4ALL                                                        10.02.2012                        notwendig
ATI - Dienstprogramm zur Deinstallation der Software                12.02.2012                6.14.10.1022        notwendig
ATI AVIVO Codecs        ATI Technologies Inc.                        09.03.2011        3,22MB        10.0.0.40103        notwendig
AudioConverter Studio 6.2        ManiacTools.com                        08.02.2012                        unnötig
Avira AntiVir Personal - Free Antivirus        Avira GmbH                12.02.2012                10.2.0.704        notwendig
Bonjour        Apple Inc.                                                13.05.2011        1,06MB        2.0.5.0        unnötig
CCleaner        Piriform                                        12.02.2012                3.15        unbekannt
Counter-Strike: Source        Valve                                        10.02.2012                        notwendig
Counter-Strike: Source        Valve                                        11.03.2011        4.597MB        1.0.0.0        notwendig
DAEMON Tools Lite        DT Soft Ltd                                12.02.2012                4.40.2.0131        notwendig
Diablo II        Blizzard Entertainment                                12.02.2012                        notwendig
DivX-Setup        DivX, LLC                                        12.02.2012                2.5.0.11        unnötig
EPSON Scan                                                        12.02.2012                        notwendig
EZdrummer        Toontrack                                        15.04.2011        702MB        1.0        notwendig
Fallout 3        Bethesda Softworks                                14.03.2011                1.00.0000        notwendig
Fallout New Vegas                                                22.07.2011                        unnötig
FL Studio 9        Image-Line                                        12.02.2012                        notwendig
Google Chrome        Google Inc.                                        10.02.2012                17.0.963.46        notwendig
Guitar Pro 6 Demo        Arobas Music                                01.10.2011                        notwendig
GunboundIS        Softnyx co.,ltd.                                11.06.2011                        unnötig
Hardcore        Image-Line                                        12.02.2012                        notwendig
High Definition Audio Driver Package - KB888111        Microsoft Corporation        10.02.2012                20040219.000000        notwendig
ICQ7.4        ICQ                                                        09.03.2011                7.4        unnötig
IL Download Manager        Image-Line                                12.02.2012                        notwendig
Java(TM) 6 Update 22        Oracle                                        06.06.2011        97,1MB        6.0.220        unbekannt
Logitech ImageStudio        Logitech, Inc.                                08.06.2011        105,7MB        7.30.0000        notwendig
Logitech QuickCam-Software        Logitech, Inc.                        12.02.2012                8.47.0000        notwendig
Logitech® Camera-Treiber                                        10.02.2012                                notwendig
Malwarebytes Anti-Malware Version 1.60.1.1000        Malwarebytes Corporation        08.02.2012                1.60.1.1000        notwendig
Microsoft .NET Framework 2.0 Service Pack 2        Microsoft Corporation                12.01.2012        302MB        2.2.30729        notwendig
Microsoft .NET Framework 3.0 Service Pack 2        Microsoft Corporation                14.03.2011        234MB        3.2.30729        notwendig
Microsoft .NET Framework 3.5 SP1        Microsoft Corporation                        12.01.2012                                notwendig
Microsoft Games for Windows - LIVE Redistributable        Microsoft Corporation        14.03.2011        30,0MB        1.2.0241        unnötig
Microsoft Visual C++ 2005 Redistributable        Microsoft Corporation                01.10.2011        5,25MB        8.0.59193        notwendig
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148        Microsoft Corporation        09.03.2011        15,0MB        9.0.30729.4148        notwendig
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219        Microsoft Corporation        19.01.2012        11,1MB        10.0.40219        notwendig
MSXML 4.0 SP2 (KB954430)        Microsoft Corporation                11.03.2011        1,42MB        4.20.9870.0        notwendig
MSXML 4.0 SP2 (KB973688)        Microsoft Corporation                11.03.2011        2,77MB        4.20.9876.0        notwendig
MSXML 6 Service Pack 2 (KB973686)        Microsoft Corporation        14.03.2011        1,40MB        6.20.2003.0        notwendig
Nero 9 Essentials        Nero AG                                        09.03.2011                                notwendig
NVIDIA Drivers        NVIDIA Corporation                                12.02.2012                1.3                notwendig
NVIDIA PhysX        NVIDIA Corporation                                09.03.2011        121,6MB        9.09.0203        notwendig
Ohm Force - Ohmicide VST                                        10.02.2012                                notwendig
OpenOffice.org 3.3        OpenOffice.org                                06.06.2011        413MB        3.3.9567        notwendig
PoiZone        Image-Line                                                12.02.2012                                notwendig
PokerStars.net        PokerStars.net                                        12.02.2012                                notwendig
Project64 1.6        Project64                                        07.07.2011        3,47MB        1.6                notwendig
QuickTime        Apple Inc.                                        13.05.2011        73,7MB        7.69.80.9        notwendig
REALTEK GbE & FE Ethernet PCI-E NIC Driver        Realtek                09.03.2011                1.23.0000        notwendig
Realtek High Definition Audio Driver        Realtek Semiconductor Corp.                12.02.2012                notwendig
Router Installationsprogramm und Monitor                        28.12.2011                                notwendig
Sawer        Image-Line                                                12.02.2012                                notwendig       
Silent Hill: Homecoming        Konami                                        10.02.2012                                unnötig
SPEED-LINK Medusa 5.1 USB                                        12.02.2012                                notwendig
Steam(TM)        Valve                                                11.03.2011        16,6MB        1.0.0.0                notwendig
Steinberg Cubase SX v3.1.1.944                                        12.02.2012                                notwendig
SyncroSoft Emu (Remove only)                                        12.02.2012                                notwendig
Syncrosofts Lizenz Kontrolle        Syncrosoft Hard- Und Software GmbH                12.02.2012                notwendig       
The Elder Scrolls V: Skyrim        Bethesda Game Studios                10.02.2012                                notwendig
Toxic Biohazard        Image-Line        10.02.2012                                                                notwendig
V-Station 1.6        Novation Digital Music Systems Ltd.                21.11.2011                1.6                notwendig
Veoh Giraffic Video Accelerator        Giraffic                        12.02.2012                0.86.192.230        unbekannt
VirtualDJ Home FREE        Atomix Productions                        13.05.2011        47,8MB        7.0.4                unnötig
VLC media player 1.1.7        VideoLAN                                12.02.2012                1.1.7                notwendig
Winamp        Nullsoft, Inc        12.02.2012                5.601                                                        notwendig
Windows XP Service Pack 3        Microsoft Corporation                20.03.2011                20080414.031514 notwendig
WinRAR 4.00 (32-Bit)        win.rar GmbH                                12.02.2012                4.00.0                notwendig


markusg 12.02.2012 17:03

deinstaliere:
Adobe Flash Player alle
Adobe - Adobe Flash Player installieren
neueste version laden
adobe reader:
Adobe - Adobe Reader herunterladen - Alle Versionen
haken bei mcafee security scan raus nehmen

bitte auch mal den adobe reader wie folgt konfigurieren:
adobe reader öffnen, bearbeiten, voreinstellungen.
allgemein:
nur zertifizierte zusatz module verwenden, anhaken.
internet:
hier sollte alles deaktiviert werden, es ist sehr unsicher pdfs automatisch zu öffnen, zu downloaden etc.
es ist immer besser diese direkt abzuspeichern da man nur so die kontrolle hat was auf dem pc vor geht.
bei javascript den haken bei java script verwenden raus nehmen
bei updater, automatisch instalieren wählen.
übernehmen /ok



deinstaliere:
AudioConverter Studio
Bonjour
DivX
Fallout New Vegas
GunboundIS
ICQ7.4
Java
Download der kostenlosen Java-Software
downloade java jre, instalieren.
Silent Hill:
Veoh Giraffic
VirtualDJ

öffne otl, bereinigen, neustart.
öffne ccleaner, analysieren, bereinigen, neustart.
teste ob alles nach wunsch läuft


Alle Zeitangaben in WEZ +1. Es ist jetzt 18:03 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131