Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Maleware entfernen

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 03.12.2012, 15:18   #1
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



Hallo Leute ich bin neu hier weil ich mir den Virus maleware eingefangen habe.
Ich habe viel gelsen und dann hab ich gesehen das ich den virus mit anti maleware(kompletter System Scan) suchen und entfernen kann. Ich bin nun an den pc von meinem dad gegangen hab mir das Programm runtergelaufen und auf eine frisch formatierten USB Stick geschmissen. Gestern konnte ich noch Windows im abgesicherten Modus(normaler Modus geht gar nicht mehr, kommt dann blackscreen) starten habe das getan dann das Programm installiert gestartet und eine komplett Scan durchgeführt. Als er fertig war hatte er 11 infizierte Objekte gefunden, habe auf Ergebnisse anzeigen geklickt alle ausgewählt und auf löschen geklickt dann sagte er um den Vorgang zu vervollständigen soll ich den pc neu starten, habe das dann getan müsste ihn dann aber ja wieder im abgesicherten Modus starten, habe dann f8 gedrückt den abgesicherten Modus ausgewählt. Dann hat er paar Drivers geladen und dann kommt Black Screen wo ich nur die Maus sehen und bewegen kann.

Ich Brauch uaf jeden fall noch alle Sachen auf der Festplatte.

Technische Daten:
Windows 7 ultimate x64
4GB RAM

Alt 03.12.2012, 15:30   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Maleware entfernen - Standard

Maleware entfernen



Hallo und

Zitat:
Als er fertig war hatte er 11 infizierte Objekte gefunden,
Schön und wo sind die Logs dazu?

Solche Angaben reichen nicht, bitte poste die vollständigen Angaben/Logs der Virenscanner siehe http://www.trojaner-board.de/125889-...tml#post941520


Bitte alles nach Möglichkeit hier in CODE-Tags posten.

Wird so gemacht:

[code] hier steht das Log [/code]

Und das ganze sieht dann so aus:

Code:
ATTFilter
 hier steht das Log
         
__________________

__________________

Alt 03.12.2012, 15:46   #3
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



Wo finde ich die Log? Und wie kann ich sie kopieren? Ich komme ja nichtmal mehr mit dem abgesicherten Modus ins System...
__________________

Alt 03.12.2012, 15:47   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Maleware entfernen - Standard

Maleware entfernen



Ich hab extra einen Artikel verlinkt, den auch mal richtig lesen bitte
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 03.12.2012, 16:06   #5
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



So hab ich gelesen, aber ich kann ja mein pc mit dem maleware virus nicht mehr normal Booten um die Log hier zu posten, und der abgesicherter Modus funktioniert auch nicht mehr. Heute morgen als der Scan fertig war sollte ich den pc neu starten, habe ich getan musste ja wieder in den abgesicherten Modus weil der normal bootvorgang ja nicht mehr geht. Und seid dem Neustart komme ich nichtmal mehr mit dem abgesicherten Modus ins System.


Alt 03.12.2012, 16:20   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Maleware entfernen - Standard

Maleware entfernen



Hm, ich dachte der startet zumindest noch im abgesicherten Modus

Mit einem sauberen 2. Rechner eine OTLPE-CD erstellen und den infizierten Rechner dann von dieser CD booten:

Falls Du kein Brennprogramm installiert hast, lade dir bitte ISOBurner herunter. Das Programm wird Dir erlauben, OTLPE auf eine CD zu brennen und sie bootfähig zu machen. Du brauchst das Tool nur zu installieren, der Rest läuft automatisch => Wie brenne ich eine ISO Datei auf CD/DVD.
  • Lade OTLPENet.exe von OldTimer herunter und speichere sie auf Deinem Desktop. Anmerkung: Die Datei ist ca. 120 MB groß und es wird bei langsamer Internet-Verbindung ein wenig dauern, bis Du sie runtergeladen hast.
  • Wenn der Download fertig ist, mache einen Doppelklick auf die Datei und beantworte die Frage "Do you want to burn the CD?" mit Yes.
  • Lege eine leere CD in Deinen Brenner.
  • ImgBurn (oder Dein Brennprogramm) wird das Archiv extrahieren und OTLPE Network auf die CD brennen.
  • Wenn der Brenn-Vorgang abgeschlossen ist, wirst Du eine Dialogbox sehen => "Operation successfully completed".
  • Du kannst nun die Fenster des Brennprogramms schließen.
Nun boote von der OTLPE CD. Hinweis: Wie boote ich von CD
  • Dein System sollte nach einigen Minuten den REATOGO-X-PE Desktop anzeigen.
  • Mache einen Doppelklick auf das OTLPE Icon.
  • Hinweis: Damit OTLPE auch das richtige installierte Windows scant, musst du den Windows-Ordner des auf der Platte installierten Windows auswählen, einfach nur C: auswählen gibt einen Fehler!
  • Wenn Du gefragt wirst "Do you wish to load the remote registry", dann wähle Yes.
  • Wenn Du gefragt wirst "Do you wish to load remote user profile(s) for scanning", dann wähle Yes.
  • Vergewissere Dich, dass die Box "Automatically Load All Remaining Users" gewählt ist und drücke OK.
  • OTLpe sollte nun starten.
  • Drücke Run Scan, um den Scan zu starten.
  • Wenn der Scan fertig ist, werden die Dateien C:\OTL.Txt und C:\Extras.Txt erstellt
  • Kopiere diese Datei auf Deinen USB-Stick, wenn Du keine Internetverbindung auf diesem System hast.
  • Bitte poste den Inhalt von C:\OTL.Txt und Extras.Txt.
__________________
--> Maleware entfernen

Alt 03.12.2012, 18:22   #7
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



Hab die exe jetzt auf eine cd gebrannt, habe sie in den pc eingelegt, hab im BIOS eingestellt das er vom Laufwerk Booten soll, da geschieht dann aber nichts... Da kommt dann nur Windows normal starten oder mit der Windows Starthilfe starten..

Alt 03.12.2012, 19:52   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Maleware entfernen - Standard

Malware entfernen



Zitat:
Zitat von zZNilsZz Beitrag anzeigen
Hab die exe jetzt auf eine cd gebrannt, habe sie in den pc eingelegt, hab im BIOS eingestellt das er vom Laufwerk Booten soll, da geschieht dann aber nichts... Da kommt dann nur Windows normal starten oder mit der Windows Starthilfe starten..
CD richtig brennen und dann auch richtig von ihr booten, wie das geht steht alles in der Anleitung
Genaueres kann ich nicht posten, dazu müsste ich bei der ungenauen Beschreibung ein sein um zu sehen bei welchem Schritt du genau einen Fehler gemacht hast
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 03.12.2012, 21:32   #9
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



Okay er bootet nun von der cd, aber irgendwann(ca. Nach 1min. Laden) bleibt er bei dem stehen:
Caldera DR-DOS 7.03
Copyright (c) 1976, caldera, Inc. All rights Reserved
[DR-DOS] A:\>

Alt 04.12.2012, 12:07   #10
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Maleware entfernen - Standard

Maleware entfernen



Dann hast du die CD falsch gebrannt oder nicht von ihr gebootet...ein DR DOS von der OTLPE-CD ist mir gänzlich unbekannt
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 04.12.2012, 14:31   #11
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



OTL Logfile:
Code:
ATTFilter
OTL logfile created on: 12/4/2012 2:18:51 PM - Run 
OTLPE by OldTimer - Version 3.1.48.0     Folder = X:\Programs\OTLPE
64bit-Windows 7 Ultimate Service Pack 1 (Version = 6.1.7601) - Type = System
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 91.00% Memory free
3.00 Gb Paging File | 3.00 Gb Available in Paging File | 98.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = D: | %SystemRoot% = D:\Windows | %ProgramFiles% = D:\Program Files (x86)
Drive C: | 100.00 Mb Total Space | 75.45 Mb Free Space | 75.45% Space Free | Partition Type: NTFS
Drive D: | 465.66 Gb Total Space | 115.24 Gb Free Space | 24.75% Space Free | Partition Type: NTFS
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
 
Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet001
 
========== Win32 Services (SafeList) ==========
 
SRV:64bit: - [2012/03/26 11:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand] -- D:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2012/03/26 11:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto] -- D:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2011/09/27 14:04:08 | 000,359,192 | ---- | M] (Logitech, Inc.) [On_Demand] -- D:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand] -- D:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand] -- D:\Windows\System32\appmgmts.dll -- (AppMgmt)
SRV - [2012/11/30 08:20:33 | 000,076,888 | ---- | M] () [Auto] -- D:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2012/11/19 15:48:16 | 002,462,128 | ---- | M] (LogMeIn Inc.) [Auto] -- D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2012/10/09 09:00:30 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/09/24 10:05:00 | 000,384,888 | ---- | M] (BlueStack Systems, Inc.) [Auto] -- D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe -- (BstHdLogRotatorSvc)
SRV - [2012/09/24 10:04:32 | 000,393,080 | ---- | M] (BlueStack Systems, Inc.) [Auto] -- D:\Program Files (x86)\BlueStacks\HD-Service.exe -- (BstHdAndroidSvc)
SRV - [2012/07/27 15:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto] -- D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/07/03 06:19:28 | 000,160,944 | R--- | M] (Skype Technologies) [Auto] -- D:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/06/14 10:20:22 | 000,109,064 | ---- | M] (Wajam) [On_Demand] -- D:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe -- (WajamUpdater)
SRV - [2012/06/07 17:00:18 | 000,030,720 | ---- | M] (Gorlo Pavel Programming. GPP©) [Auto] -- D:\Program Files (x86)\GPPSoft\GPP Remote Server\GPP Remote Service.exe -- (GPPService)
SRV - [2012/05/15 05:48:00 | 001,262,400 | ---- | M] (NVIDIA Corporation) [Auto] -- D:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012/05/14 19:21:40 | 000,382,272 | ---- | M] (NVIDIA Corporation) [Auto] -- D:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2012/01/26 08:08:56 | 003,665,752 | ---- | M] () [Auto] -- D:\Program Files (x86)\Tobit Radio.fx\Server\rfx-server.exe -- (Radio.fx)
SRV - [2010/03/18 06:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto] -- D:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled] -- D:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2012/09/19 23:35:36 | 000,203,104 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand] -- D:\Windows\System32\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.)
DRV:64bit: - [2012/09/19 23:35:36 | 000,102,368 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand] -- D:\Windows\System32\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV:64bit: - [2012/07/29 17:16:43 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System] -- D:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2012/07/09 07:42:54 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/05/16 11:09:25 | 000,257,264 | ---- | M] (Pismo Technic Inc.) [Kernel | System] -- D:\Windows\System32\drivers\pfmfs_70A.sys -- (pfmfs_70A)
DRV:64bit: - [2012/03/20 13:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2011/09/02 01:30:46 | 000,042,776 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV:64bit: - [2011/09/02 01:30:36 | 000,060,696 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2011/09/02 01:30:24 | 000,066,840 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2010/11/20 22:24:43 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010/11/20 22:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 22:23:48 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\tsusbhub.sys -- (tsusbhub)
DRV:64bit: - [2010/11/20 22:23:48 | 000,088,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\Synth3dVsc.sys -- (Synth3dVsc)
DRV:64bit: - [2010/11/20 22:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2010/11/20 22:23:48 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2010/11/20 22:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/04/27 10:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmVirHid.sys -- (WmVirHid)
DRV:64bit: - [2010/04/27 10:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmBEnum.sys -- (WmBEnum)
DRV:64bit: - [2010/04/27 08:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmXlCore.sys -- (WmXlCore)
DRV:64bit: - [2010/04/27 08:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmFilter.sys -- (WmFilter)
DRV:64bit: - [2009/11/23 19:38:00 | 000,016,008 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LGVirHid.sys -- (LGVirHid)
DRV:64bit: - [2009/11/23 19:37:50 | 000,022,408 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LGBusEnum.sys -- (LGBusEnum)
DRV:64bit: - [2009/06/10 15:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand] -- D:\Windows\System32\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009/06/10 15:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009/06/10 15:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand] -- D:\Windows\System32\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/03/18 09:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2012/09/24 10:04:50 | 000,071,032 | ---- | M] (BlueStack Systems) [Kernel | Auto] -- D:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys -- (BstHdDrv)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\Administrator_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKU\Administrator_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\Administrator_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 4E 33 28 C8 37 9E CD 01  [binary data]
IE - HKU\Administrator_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
IE - HKU\Nils_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050
IE - HKU\Nils_ON_D\..\URLSearchHook:  - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\..\URLSearchHook: {40c3cc16-7269-4b32-9531-17f2950fb06f} - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\..\URLSearchHook: {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Nils_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
 
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\Windows\System32\Macromed\Flash\NPSWF64_11_4_402_287.dll ()
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: D:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.2: D:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer: D:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll ()
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=:  
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0: D:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: D:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.132.0:  File not found
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.140.0: D:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.2: D:\Program Files (x86)\Battlelog Web Plugins\2.1.2\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: D:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: D:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: D:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: D:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: D:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision: D:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming: D:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.4: D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\Adobe Reader: D:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\PROGRAM FILES\WEB ASSISTANT\FIREFOX
FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\Web Assistant\Firefox
FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/07/29 14:14:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
 
[2012/07/29 14:14:24 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files (x86)\Mozilla Firefox\extensions
[2012/07/13 19:15:45 | 000,136,672 | ---- | M] (Mozilla Foundation) -- D:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/07/13 19:45:08 | 000,001,392 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012/08/24 17:35:17 | 000,002,349 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
[2012/07/13 19:45:08 | 000,002,252 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/07/13 19:45:08 | 000,001,153 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2012/07/13 19:45:08 | 000,006,805 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2012/07/13 19:45:08 | 000,001,178 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2012/07/13 19:45:07 | 000,001,105 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - D:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Wajam) - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - D:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [EvtMgr6] D:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [Launch LCore] D:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc.)
O4:64bit: - HKLM..\Run: [MSC] D:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKU\LocalService_ON_D..\Run: [Sidebar] D:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\NetworkService_ON_D..\Run: [Sidebar] D:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\Nils_ON_D..\Run: [] D:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Samsung)
O4 - HKU\Nils_ON_D..\Run: [WindowsLive] D:\Users\Nils\AppData\Roaming\Microsoft\WindowsLive\install\bin\WindowsLive\WindowsLive.exe (Microsoft Live)
O4 - HKU\UpdatusUser_ON_D..\Run: [Sidebar] D:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [ Malwarebytes Anti-Malware ] D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\RunOnce: [ Malwarebytes Anti-Malware  (cleanup)] D:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll (Malwarebytes Corporation)
O4 - HKU\LocalService_ON_D..\RunOnce: [mctadmin]  File not found
O4 - HKU\NetworkService_ON_D..\RunOnce: [mctadmin]  File not found
O4 - HKU\UpdatusUser_ON_D..\RunOnce: [mctadmin]  File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\Administrator_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Add to Google Photos Screensa&ver - D:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - D:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - D:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13:64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - D:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - D:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - D:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - D:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/03/24 06:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{66ccff36-d9b0-11e1-9cca-123456789abc}\Shell - "" = AutoRun
O33 - MountPoints2\{66ccff36-d9b0-11e1-9cca-123456789abc}\Shell\AutoRun\command - "" = I:\Start.exe
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
64bit: O35 - HKLM\..comfile [open] -- "%1" %* File not found
64bit: O35 - HKLM\..exefile [open] -- "%1" %* File not found
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
========== Files/Folders - Created Within 30 Days ==========
 
[2012/12/02 15:26:51 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Malwarebytes
[2012/12/02 15:26:09 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/12/02 15:26:05 | 000,000,000 | ---D | C] -- D:\ProgramData\Malwarebytes
[2012/12/02 15:26:01 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- D:\Windows\System32\drivers\mbam.sys
[2012/12/02 15:26:00 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012/12/02 07:28:49 | 000,000,000 | ---D | C] -- D:\Users\Nils\Desktop\Neuer Ordner
[2012/12/01 20:50:41 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP4 To MP3 Converter
[2012/12/01 20:50:39 | 000,000,000 | ---D | C] -- D:\MP4ToMP3Converter
[2012/11/30 11:43:54 | 000,000,000 | ---D | C] -- D:\ProgramData\Orbit
[2012/11/27 10:04:22 | 000,000,000 | ---D | C] -- D:\Users\Nils\Documents\Criterion Games
[2012/11/27 09:59:59 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Need.For.Speed.Most.Wanted.Limited.Edition-ALI213
[2012/11/26 10:42:32 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Apple Computer
[2012/11/26 10:42:31 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Apple Computer
[2012/11/26 10:42:26 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012/11/26 10:42:13 | 000,000,000 | ---D | C] -- D:\Windows\System32\DRVSTORE
[2012/11/26 10:41:42 | 000,000,000 | ---D | C] -- D:\Program Files\iPod
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\Program Files\iTunes
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\iTunes
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\ProgramData\Apple Computer
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2012/11/26 10:41:08 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Apple
[2012/11/26 10:41:06 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Apple Software Update
[2012/11/26 10:40:55 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Apple
[2012/11/26 10:40:40 | 000,000,000 | ---D | C] -- D:\Program Files\Bonjour
[2012/11/26 10:40:40 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Bonjour
[2012/11/26 10:40:31 | 000,000,000 | ---D | C] -- D:\ProgramData\Apple
[2012/11/26 10:40:31 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Common Files\Apple
[2012/11/25 09:07:13 | 000,000,000 | ---D | C] -- D:\Users\Nils\Documents\Cryptload 1.1.8
[2012/11/24 11:03:52 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacksSetup
[2012/11/24 11:03:34 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
[2012/11/24 11:03:34 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacks
[2012/11/24 11:03:34 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\BlueStacks
[2012/11/23 07:28:04 | 000,000,000 | ---D | C] -- D:\Users\Public\Documents\CrashDump
[2012/11/23 06:42:38 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Ubisoft Game Launcher
[2012/11/23 06:42:35 | 000,000,000 | ---D | C] -- D:\Users\Nils\Documents\Assassin's Creed III
[2012/11/23 06:16:27 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
[2012/11/23 06:16:21 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Ubisoft
[2012/11/23 06:16:00 | 000,518,488 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_7.dll
[2012/11/23 06:16:00 | 000,077,656 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_5.dll
[2012/11/23 06:15:59 | 000,176,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_7.dll
[2012/11/23 06:15:57 | 002,526,056 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_43.dll
[2012/11/23 06:15:56 | 001,907,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dcsx_43.dll
[2012/11/23 06:15:55 | 000,511,328 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_43.dll
[2012/11/23 06:15:55 | 000,470,880 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_43.dll
[2012/11/23 06:15:55 | 000,276,832 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx11_43.dll
[2012/11/23 06:15:55 | 000,248,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx11_43.dll
[2012/11/23 06:15:53 | 002,401,112 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_43.dll
[2012/11/23 06:15:52 | 000,530,776 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_6.dll
[2012/11/23 06:15:52 | 000,528,216 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_6.dll
[2012/11/23 06:15:52 | 000,078,680 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_4.dll
[2012/11/23 06:15:52 | 000,074,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_4.dll
[2012/11/23 06:15:51 | 000,238,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_6.dll
[2012/11/23 06:15:51 | 000,176,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_6.dll
[2012/11/23 06:15:51 | 000,024,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_7.dll
[2012/11/23 06:15:48 | 000,517,960 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_5.dll
[2012/11/23 06:15:48 | 000,515,416 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_5.dll
[2012/11/23 06:15:47 | 000,238,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_5.dll
[2012/11/23 06:15:47 | 000,176,968 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_5.dll
[2012/11/23 06:15:45 | 002,582,888 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_42.dll
[2012/11/23 06:15:45 | 001,974,616 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_42.dll
[2012/11/23 06:15:42 | 005,554,512 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dcsx_42.dll
[2012/11/23 06:15:42 | 005,501,792 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dcsx_42.dll
[2012/11/23 06:15:42 | 000,285,024 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx11_42.dll
[2012/11/23 06:15:42 | 000,235,344 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx11_42.dll
[2012/11/23 06:15:41 | 000,523,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_42.dll
[2012/11/23 06:15:41 | 000,453,456 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_42.dll
[2012/11/23 06:15:40 | 002,475,352 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_42.dll
[2012/11/23 06:15:40 | 001,892,184 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_42.dll
[2012/11/23 06:15:37 | 002,430,312 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_41.dll
[2012/11/23 06:15:37 | 001,846,632 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_41.dll
[2012/11/23 06:15:37 | 000,520,544 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_41.dll
[2012/11/23 06:15:37 | 000,453,456 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_41.dll
[2012/11/23 06:15:35 | 005,425,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_41.dll
[2012/11/23 06:15:35 | 004,178,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_41.dll
[2012/11/23 06:15:34 | 000,521,560 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_4.dll
[2012/11/23 06:15:34 | 000,517,448 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_4.dll
[2012/11/23 06:15:34 | 000,073,544 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_3.dll
[2012/11/23 06:15:34 | 000,069,464 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_3.dll
[2012/11/23 06:15:33 | 000,235,352 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_4.dll
[2012/11/23 06:15:33 | 000,174,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_4.dll
[2012/11/23 06:15:32 | 000,024,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_6.dll
[2012/11/23 06:15:32 | 000,022,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_6.dll
[2012/11/23 06:15:29 | 002,605,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_40.dll
[2012/11/23 06:15:29 | 002,036,576 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_40.dll
[2012/11/23 06:15:29 | 000,519,000 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_40.dll
[2012/11/23 06:15:29 | 000,452,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_40.dll
[2012/11/23 06:15:27 | 005,631,312 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_40.dll
[2012/11/23 06:15:27 | 004,379,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_40.dll
[2012/11/23 06:15:26 | 000,518,480 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_3.dll
[2012/11/23 06:15:26 | 000,514,384 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_3.dll
[2012/11/23 06:15:26 | 000,074,576 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_2.dll
[2012/11/23 06:15:26 | 000,070,992 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_2.dll
[2012/11/23 06:15:25 | 000,235,856 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_3.dll
[2012/11/23 06:15:25 | 000,175,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_3.dll
[2012/11/23 06:15:24 | 000,025,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_5.dll
[2012/11/23 06:15:24 | 000,023,376 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_5.dll
[2012/11/23 06:15:23 | 000,513,544 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_2.dll
[2012/11/23 06:15:23 | 000,509,448 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_2.dll
[2012/11/23 06:15:23 | 000,072,200 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_1.dll
[2012/11/23 06:15:23 | 000,068,616 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_1.dll
[2012/11/23 06:15:22 | 000,238,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_2.dll
[2012/11/23 06:15:22 | 000,177,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_2.dll
[2012/11/23 06:15:20 | 001,942,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_39.dll
[2012/11/23 06:15:20 | 001,493,528 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_39.dll
[2012/11/23 06:15:20 | 000,540,688 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_39.dll
[2012/11/23 06:15:20 | 000,467,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_39.dll
[2012/11/23 06:15:16 | 004,992,520 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_39.dll
[2012/11/23 06:15:16 | 003,851,784 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_39.dll
[2012/11/23 06:15:14 | 000,511,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_1.dll
[2012/11/23 06:15:14 | 000,507,400 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_1.dll
[2012/11/23 06:15:14 | 000,068,104 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_0.dll
[2012/11/23 06:15:14 | 000,065,032 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_0.dll
[2012/11/23 06:15:13 | 000,238,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_1.dll
[2012/11/23 06:15:13 | 000,177,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_1.dll
[2012/11/23 06:15:12 | 000,028,168 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_4.dll
[2012/11/23 06:15:12 | 000,025,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_4.dll
[2012/11/23 06:15:10 | 001,941,528 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_38.dll
[2012/11/23 06:15:10 | 001,491,992 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_38.dll
[2012/11/23 06:15:10 | 000,540,688 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_38.dll
[2012/11/23 06:15:10 | 000,467,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_38.dll
[2012/11/23 06:15:08 | 004,991,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_38.dll
[2012/11/23 06:15:08 | 003,850,760 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_38.dll
[2012/11/23 06:15:07 | 000,489,480 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_0.dll
[2012/11/23 06:15:07 | 000,479,752 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_0.dll
[2012/11/23 06:15:06 | 000,238,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_0.dll
[2012/11/23 06:15:06 | 000,177,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_0.dll
[2012/11/23 06:15:06 | 000,028,168 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_3.dll
[2012/11/23 06:15:06 | 000,025,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_3.dll
[2012/11/23 06:15:05 | 001,860,120 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_37.dll
[2012/11/23 06:15:05 | 001,420,824 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_37.dll
[2012/11/23 06:15:05 | 000,529,424 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_37.dll
[2012/11/23 06:15:05 | 000,462,864 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_37.dll
[2012/11/23 06:15:04 | 004,910,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_37.dll
[2012/11/23 06:15:04 | 003,786,760 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_37.dll
[2012/11/23 06:15:03 | 000,411,656 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_10.dll
[2012/11/23 06:15:03 | 000,267,272 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_10.dll
[2012/11/23 06:15:01 | 002,006,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_36.dll
[2012/11/23 06:15:01 | 001,374,232 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_36.dll
[2012/11/23 06:15:01 | 000,508,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_36.dll
[2012/11/23 06:15:01 | 000,444,776 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_36.dll
[2012/11/23 06:15:00 | 005,081,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_36.dll
[2012/11/23 06:15:00 | 003,734,536 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_36.dll
[2012/11/23 06:14:59 | 000,411,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_9.dll
[2012/11/23 06:14:59 | 000,267,112 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_9.dll
[2012/11/23 06:14:58 | 001,985,904 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_35.dll
[2012/11/23 06:14:58 | 001,358,192 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_35.dll
[2012/11/23 06:14:58 | 000,508,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_35.dll
[2012/11/23 06:14:58 | 000,444,776 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_35.dll
[2012/11/23 06:14:57 | 005,073,256 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_35.dll
[2012/11/23 06:14:57 | 003,727,720 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_35.dll
[2012/11/23 06:14:56 | 000,409,960 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_8.dll
[2012/11/23 06:14:56 | 000,266,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_8.dll
[2012/11/23 06:14:56 | 000,021,000 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_2.dll
[2012/11/23 06:14:56 | 000,017,928 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_2.dll
[2012/11/23 06:14:54 | 001,401,200 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_34.dll
[2012/11/23 06:14:54 | 001,124,720 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_34.dll
[2012/11/23 06:14:54 | 000,506,728 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_34.dll
[2012/11/23 06:14:54 | 000,443,752 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_34.dll
[2012/11/23 06:14:53 | 004,496,232 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_34.dll
[2012/11/23 06:14:53 | 003,497,832 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_34.dll
[2012/11/23 06:14:53 | 000,107,368 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xinput1_3.dll
[2012/11/23 06:14:52 | 000,403,304 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_7.dll
[2012/11/23 06:14:52 | 000,261,480 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_7.dll
[2012/11/23 06:14:51 | 001,400,176 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_33.dll
[2012/11/23 06:14:51 | 001,123,696 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_33.dll
[2012/11/23 06:14:51 | 000,506,728 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_33.dll
[2012/11/23 06:14:51 | 000,443,752 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_33.dll
[2012/11/23 06:14:50 | 004,494,184 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_33.dll
[2012/11/23 06:14:50 | 003,495,784 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_33.dll
[2012/11/23 06:14:49 | 000,393,576 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_6.dll
[2012/11/23 06:14:49 | 000,255,848 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_6.dll
[2012/11/23 06:14:48 | 000,390,424 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_5.dll
[2012/11/23 06:14:48 | 000,251,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_5.dll
[2012/11/23 06:14:47 | 000,469,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10.dll
[2012/11/23 06:14:47 | 000,440,080 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10.dll
[2012/11/23 06:14:46 | 004,398,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_32.dll
[2012/11/23 06:14:46 | 003,426,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_32.dll
[2012/11/23 06:14:45 | 000,364,824 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_4.dll
[2012/11/23 06:14:45 | 000,237,848 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_4.dll
[2012/11/23 06:14:45 | 000,017,688 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\x3daudio1_1.dll
[2012/11/23 06:14:45 | 000,015,128 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\x3daudio1_1.dll
[2012/11/23 06:14:44 | 003,977,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_31.dll
[2012/11/23 06:14:44 | 002,414,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_31.dll
[2012/11/23 06:14:44 | 000,363,288 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_3.dll
[2012/11/23 06:14:44 | 000,236,824 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_3.dll
[2012/11/23 06:14:43 | 000,083,736 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xinput1_2.dll
[2012/11/23 06:14:43 | 000,062,744 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xinput1_2.dll
[2012/11/23 06:14:42 | 000,354,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_2.dll
[2012/11/23 06:14:42 | 000,230,168 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_2.dll
[2012/11/23 06:14:42 | 000,083,664 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xinput1_1.dll
[2012/11/23 06:14:42 | 000,062,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xinput1_1.dll
[2012/11/23 06:14:41 | 000,352,464 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_1.dll
[2012/11/23 06:14:41 | 000,229,584 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_1.dll
[2012/11/23 06:14:31 | 003,927,248 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_30.dll
[2012/11/23 06:14:31 | 002,388,176 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_30.dll
[2012/11/23 06:14:30 | 000,355,536 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_0.dll
[2012/11/23 06:14:30 | 000,230,096 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_0.dll
[2012/11/23 06:14:30 | 000,016,592 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\x3daudio1_0.dll
[2012/11/23 06:14:30 | 000,014,032 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\x3daudio1_0.dll
[2012/11/23 06:14:29 | 003,830,992 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_29.dll
[2012/11/23 06:14:29 | 002,332,368 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_29.dll
[2012/11/23 06:14:27 | 003,815,120 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_28.dll
[2012/11/23 06:14:27 | 002,323,664 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_28.dll
[2012/11/23 06:14:26 | 003,807,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_27.dll
[2012/11/23 06:14:26 | 002,319,568 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_27.dll
[2012/11/23 06:14:22 | 003,767,504 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_26.dll
[2012/11/23 06:14:22 | 002,297,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_26.dll
[2012/11/23 06:14:19 | 003,823,312 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_25.dll
[2012/11/23 06:14:19 | 002,337,488 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_25.dll
[2012/11/23 06:14:17 | 003,544,272 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_24.dll
[2012/11/23 06:14:17 | 002,222,800 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_24.dll
[2012/11/22 15:56:09 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPP Remote Server
[2012/11/20 07:44:46 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\ESN
[2012/11/20 07:30:41 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2012/11/20 07:30:38 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\LogMeIn Hamachi
[2012/11/18 07:59:28 | 000,527,192 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_7.dll
[2012/11/18 07:59:28 | 000,239,960 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_7.dll
[2012/11/18 07:59:28 | 000,074,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_5.dll
[2012/11/18 07:59:26 | 001,868,128 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dcsx_43.dll
[2012/11/18 07:59:25 | 000,022,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_7.dll
[2012/11/18 07:59:24 | 000,081,768 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xinput1_3.dll
[2012/11/18 07:57:13 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
[2012/11/18 07:49:33 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\THQ
[2012/11/15 04:29:13 | 000,000,000 | ---D | C] -- D:\Temp
[2012/11/15 04:15:25 | 000,203,104 | ---- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- D:\Windows\System32\drivers\ssudmdm.sys
[2012/11/15 04:15:25 | 000,102,368 | ---- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- D:\Windows\System32\drivers\ssudbus.sys
[2012/11/15 04:08:30 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
[2012/11/15 04:08:29 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\MyFree Codec
[2012/11/15 04:03:02 | 000,000,000 | ---D | C] -- D:\Users\Public\Documents\NativeFus_Log
[2012/11/15 04:02:45 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Samsung
[2012/11/15 04:02:27 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Samsung
[2012/11/15 04:00:15 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
[2012/11/15 04:00:06 | 004,659,712 | ---- | C] (Dmitry Streblechenko) -- D:\Windows\SysWow64\Redemption.dll
[2012/11/15 03:59:51 | 000,821,824 | ---- | C] (Devguru Co., Ltd.) -- D:\Windows\SysWow64\dgderapi.dll
[2012/11/15 03:59:51 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\MarkAny
[2012/11/15 03:58:45 | 000,000,000 | ---D | C] -- D:\ProgramData\Samsung
[2012/11/15 03:58:45 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Samsung
[2012/11/15 03:52:46 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Downloaded Installations
[2012/11/07 15:43:23 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\TS3Client
[2012/11/07 15:43:10 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2012/11/07 15:42:54 | 000,000,000 | ---D | C] -- D:\Program Files\TeamSpeak 3 Client
[2012/11/07 14:37:51 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Logitech
[2012/11/06 13:37:14 | 000,000,000 | ---D | C] -- D:\Windows\SysWow64\directx
[2 D:\Windows\*.tmp files -> D:\Windows\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2012/12/03 13:24:06 | 000,067,584 | --S- | M] () -- D:\Windows\bootstat.dat
[2012/12/03 13:23:12 | 3220,664,320 | -HS- | M] () -- D:\hiberfil.sys
[2012/12/02 15:26:09 | 000,001,109 | ---- | M] () -- D:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2012/12/02 15:26:09 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/12/02 15:25:19 | 000,702,374 | ---- | M] () -- D:\Windows\System32\perfh007.dat
[2012/12/02 15:25:19 | 000,657,086 | ---- | M] () -- D:\Windows\System32\perfh009.dat
[2012/12/02 15:25:19 | 000,150,070 | ---- | M] () -- D:\Windows\System32\perfc007.dat
[2012/12/02 15:25:19 | 000,122,858 | ---- | M] () -- D:\Windows\System32\perfc009.dat
[2012/12/02 14:27:17 | 000,003,304 | ---- | M] () -- D:\bootsqm.dat
[2012/12/02 12:40:36 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP4 To MP3 Converter
[2012/12/02 11:10:49 | 000,026,352 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/12/02 11:10:49 | 000,026,352 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/12/02 10:00:00 | 000,000,884 | ---- | M] () -- D:\Windows\tasks\Adobe Flash Player Updater.job
[2012/12/02 09:49:00 | 000,001,116 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-501103844-3117174474-1099690610-1000UA.job
[2012/12/02 08:49:01 | 000,001,064 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-501103844-3117174474-1099690610-1000Core.job
[2012/12/02 08:01:55 | 000,281,688 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrB.xtr
[2012/12/02 08:01:55 | 000,281,688 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrB.exe
[2012/12/02 07:44:51 | 003,654,407 | ---- | M] () -- D:\Users\Nils\Desktop\IMG_6940.jpg
[2012/12/01 21:51:25 | 000,281,520 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrB.ex0
[2012/12/01 20:40:58 | 006,389,161 | ---- | M] () -- D:\Users\Nils\Desktop\IMG_5025.jpg
[2012/12/01 20:21:48 | 008,197,726 | ---- | M] () -- D:\Users\Nils\Desktop\IMG_5011.jpg
[2012/11/30 08:20:33 | 000,076,888 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrA.exe
[2012/11/30 08:20:23 | 000,000,000 | R--D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
[2012/11/26 10:42:26 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012/11/26 10:41:07 | 000,002,519 | ---- | M] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2012/11/24 11:03:38 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
[2012/11/22 15:56:09 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPP Remote Server
[2012/11/21 08:10:20 | 003,123,272 | ---- | M] () -- D:\Windows\SysWow64\pbsvc.exe
[2012/11/20 07:30:43 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2012/11/18 07:57:13 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
[2012/11/15 04:08:30 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
[2012/11/15 04:00:15 | 000,002,016 | ---- | M] () -- D:\Users\Nils\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk
[2012/11/15 04:00:15 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
[2012/11/15 03:58:12 | 001,604,518 | ---- | M] () -- D:\Windows\SysWow64\PerfStringBackup.INI
[2012/11/07 15:43:10 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2012/11/07 14:37:51 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
[2 D:\Windows\*.tmp files -> D:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2012/12/02 15:26:09 | 000,001,109 | ---- | C] () -- D:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2012/12/02 14:27:17 | 000,003,304 | ---- | C] () -- D:\bootsqm.dat
[2012/12/02 07:44:51 | 003,654,407 | ---- | C] () -- D:\Users\Nils\Desktop\IMG_6940.jpg
[2012/12/01 20:40:58 | 006,389,161 | ---- | C] () -- D:\Users\Nils\Desktop\IMG_5025.jpg
[2012/12/01 20:21:48 | 008,197,726 | ---- | C] () -- D:\Users\Nils\Desktop\IMG_5011.jpg
[2012/11/26 10:41:07 | 000,002,519 | ---- | C] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2012/11/23 06:16:30 | 003,123,272 | ---- | C] () -- D:\Windows\SysWow64\pbsvc.exe
[2012/11/15 04:00:15 | 000,002,016 | ---- | C] () -- D:\Users\Nils\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk
[2012/10/15 07:12:40 | 000,554,496 | ---- | C] () -- D:\Windows\SysWow64\dvmsg.dll
[2012/09/26 14:57:16 | 000,030,568 | ---- | C] () -- D:\Windows\MusiccityDownload.exe
[2012/09/26 14:57:14 | 000,974,848 | ---- | C] () -- D:\Windows\SysWow64\cis-2.4.dll
[2012/09/26 14:57:14 | 000,081,920 | ---- | C] () -- D:\Windows\SysWow64\issacapi_bs-2.3.dll
[2012/09/26 14:57:14 | 000,065,536 | ---- | C] () -- D:\Windows\SysWow64\issacapi_pe-2.3.dll
[2012/09/26 14:57:14 | 000,057,344 | ---- | C] () -- D:\Windows\SysWow64\issacapi_se-2.3.dll
[2012/07/29 15:30:21 | 000,281,688 | ---- | C] () -- D:\Windows\SysWow64\PnkBstrB.exe
[2012/07/29 15:30:20 | 002,434,856 | ---- | C] () -- D:\Windows\SysWow64\pbsvc_bc2.exe
[2012/07/29 15:30:20 | 000,076,888 | ---- | C] () -- D:\Windows\SysWow64\PnkBstrA.exe
[2012/07/29 14:15:18 | 001,604,518 | ---- | C] () -- D:\Windows\SysWow64\PerfStringBackup.INI
[2012/05/14 19:21:50 | 000,423,744 | ---- | C] () -- D:\Windows\SysWow64\nvStreaming.exe
[2011/09/28 10:44:14 | 000,179,271 | ---- | C] () -- D:\Windows\SysWow64\xlive.dll.cat
[2010/11/20 22:24:49 | 000,252,928 | ---- | C] () -- D:\Windows\SysWow64\DShowRdpFilter.dll
[2009/10/06 02:16:02 | 000,819,200 | ---- | C] () -- D:\Windows\SysWow64\xvidcore.dll
[2009/07/14 00:38:36 | 000,067,584 | --S- | C] () -- D:\Windows\bootstat.dat
[2009/07/13 21:35:51 | 000,000,741 | ---- | C] () -- D:\Windows\SysWow64\NOISE.DAT
[2009/07/13 21:34:42 | 000,215,943 | ---- | C] () -- D:\Windows\SysWow64\dssec.dat
[2009/07/13 19:10:29 | 000,043,131 | ---- | C] () -- D:\Windows\mib.bin
[2009/07/13 18:42:10 | 000,064,000 | ---- | C] () -- D:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 17:25:04 | 000,197,632 | ---- | C] () -- D:\Windows\SysWow64\ir32_32.dll
[2009/07/13 16:03:59 | 000,364,544 | ---- | C] () -- D:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 16:26:10 | 000,673,088 | ---- | C] () -- D:\Windows\SysWow64\mlang.dat
 
========== LOP Check ==========
 
[2012/11/26 10:42:12 | 000,000,000 | ---D | M] -- D:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Anwendungsdaten
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Application Data
[2012/08/24 17:35:05 | 000,000,000 | ---D | M] -- D:\ProgramData\Babylon
[2012/11/24 11:03:37 | 000,000,000 | ---D | M] -- D:\ProgramData\BlueStacks
[2012/11/24 11:05:45 | 000,000,000 | ---D | M] -- D:\ProgramData\BlueStacksSetup
[2012/08/09 19:54:33 | 000,000,000 | ---D | M] -- D:\ProgramData\Codemasters
[2012/12/02 12:41:34 | 000,000,000 | ---D | M] -- D:\ProgramData\DAEMON Tools Lite
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Desktop
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Documents
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Dokumente
[2012/08/09 19:54:33 | 000,000,000 | -HSD | M] -- D:\ProgramData\DSS
[2012/07/31 05:23:38 | 000,000,000 | ---D | M] -- D:\ProgramData\EA Core
[2012/07/31 07:41:29 | 000,000,000 | ---D | M] -- D:\ProgramData\EA Logs
[2012/08/27 08:17:06 | 000,000,000 | ---D | M] -- D:\ProgramData\Electronic Arts
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Favoriten
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Favorites
[2012/07/29 14:39:05 | 000,000,000 | ---D | M] -- D:\ProgramData\ICQ
[2012/07/31 19:26:20 | 000,000,000 | ---D | M] -- D:\ProgramData\InstallBrainService
[2012/09/24 06:11:41 | 000,000,000 | ---D | M] -- D:\ProgramData\OPHA
[2012/11/30 11:43:54 | 000,000,000 | ---D | M] -- D:\ProgramData\Orbit
[2012/12/02 12:40:36 | 000,000,000 | ---D | M] -- D:\ProgramData\Origin
[2012/08/26 15:18:55 | 000,000,000 | ---D | M] -- D:\ProgramData\regid.1986-12.com.adobe
[2012/07/29 18:28:30 | 000,000,000 | ---D | M] -- D:\ProgramData\Rockstar Games
[2012/11/15 04:00:25 | 000,000,000 | ---D | M] -- D:\ProgramData\Samsung
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Start Menu
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Startmenü
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Templates
[2012/08/25 18:24:52 | 000,000,000 | ---D | M] -- D:\ProgramData\VirtualWifiRouter
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Vorlagen
[2009/07/14 00:08:49 | 000,025,578 | ---- | M] () -- D:\Windows\Tasks\SCHEDLGU.TXT
 
========== Purity Check ==========
 
 
< End of report >
         
--- --- ---

Alt 04.12.2012, 14:33   #12
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



OTL Logfile:
Code:
ATTFilter
OTL logfile created on: 12/4/2012 2:18:51 PM - Run 
OTLPE by OldTimer - Version 3.1.48.0     Folder = X:\Programs\OTLPE
64bit-Windows 7 Ultimate Service Pack 1 (Version = 6.1.7601) - Type = System
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 91.00% Memory free
3.00 Gb Paging File | 3.00 Gb Available in Paging File | 98.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = D: | %SystemRoot% = D:\Windows | %ProgramFiles% = D:\Program Files (x86)
Drive C: | 100.00 Mb Total Space | 75.45 Mb Free Space | 75.45% Space Free | Partition Type: NTFS
Drive D: | 465.66 Gb Total Space | 115.24 Gb Free Space | 24.75% Space Free | Partition Type: NTFS
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
 
Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet001
 
========== Win32 Services (SafeList) ==========
 
SRV:64bit: - [2012/03/26 11:49:56 | 000,291,696 | ---- | M] (Microsoft Corporation) [On_Demand] -- D:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2012/03/26 11:49:56 | 000,012,600 | ---- | M] (Microsoft Corporation) [Auto] -- D:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2011/09/27 14:04:08 | 000,359,192 | ---- | M] (Logitech, Inc.) [On_Demand] -- D:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2009/07/13 20:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand] -- D:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/13 20:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand] -- D:\Windows\System32\appmgmts.dll -- (AppMgmt)
SRV - [2012/11/30 08:20:33 | 000,076,888 | ---- | M] () [Auto] -- D:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2012/11/19 15:48:16 | 002,462,128 | ---- | M] (LogMeIn Inc.) [Auto] -- D:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2012/10/09 09:00:30 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- D:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/09/24 10:05:00 | 000,384,888 | ---- | M] (BlueStack Systems, Inc.) [Auto] -- D:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe -- (BstHdLogRotatorSvc)
SRV - [2012/09/24 10:04:32 | 000,393,080 | ---- | M] (BlueStack Systems, Inc.) [Auto] -- D:\Program Files (x86)\BlueStacks\HD-Service.exe -- (BstHdAndroidSvc)
SRV - [2012/07/27 15:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto] -- D:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/07/03 06:19:28 | 000,160,944 | R--- | M] (Skype Technologies) [Auto] -- D:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/06/14 10:20:22 | 000,109,064 | ---- | M] (Wajam) [On_Demand] -- D:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe -- (WajamUpdater)
SRV - [2012/06/07 17:00:18 | 000,030,720 | ---- | M] (Gorlo Pavel Programming. GPP©) [Auto] -- D:\Program Files (x86)\GPPSoft\GPP Remote Server\GPP Remote Service.exe -- (GPPService)
SRV - [2012/05/15 05:48:00 | 001,262,400 | ---- | M] (NVIDIA Corporation) [Auto] -- D:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012/05/14 19:21:40 | 000,382,272 | ---- | M] (NVIDIA Corporation) [Auto] -- D:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2012/01/26 08:08:56 | 003,665,752 | ---- | M] () [Auto] -- D:\Program Files (x86)\Tobit Radio.fx\Server\rfx-server.exe -- (Radio.fx)
SRV - [2010/03/18 06:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto] -- D:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled] -- D:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2012/09/19 23:35:36 | 000,203,104 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand] -- D:\Windows\System32\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.)
DRV:64bit: - [2012/09/19 23:35:36 | 000,102,368 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand] -- D:\Windows\System32\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV:64bit: - [2012/07/29 17:16:43 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System] -- D:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2012/07/09 07:42:54 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012/05/16 11:09:25 | 000,257,264 | ---- | M] (Pismo Technic Inc.) [Kernel | System] -- D:\Windows\System32\drivers\pfmfs_70A.sys -- (pfmfs_70A)
DRV:64bit: - [2012/03/20 13:44:12 | 000,098,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2011/09/02 01:30:46 | 000,042,776 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV:64bit: - [2011/09/02 01:30:36 | 000,060,696 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2011/09/02 01:30:24 | 000,066,840 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2010/11/20 22:24:43 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010/11/20 22:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 22:23:48 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\tsusbhub.sys -- (tsusbhub)
DRV:64bit: - [2010/11/20 22:23:48 | 000,088,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\Synth3dVsc.sys -- (Synth3dVsc)
DRV:64bit: - [2010/11/20 22:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2010/11/20 22:23:48 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2010/11/20 22:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/04/27 10:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmVirHid.sys -- (WmVirHid)
DRV:64bit: - [2010/04/27 10:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmBEnum.sys -- (WmBEnum)
DRV:64bit: - [2010/04/27 08:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmXlCore.sys -- (WmXlCore)
DRV:64bit: - [2010/04/27 08:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\WmFilter.sys -- (WmFilter)
DRV:64bit: - [2009/11/23 19:38:00 | 000,016,008 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LGVirHid.sys -- (LGVirHid)
DRV:64bit: - [2009/11/23 19:37:50 | 000,022,408 | ---- | M] (Logitech Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\LGBusEnum.sys -- (LGBusEnum)
DRV:64bit: - [2009/06/10 15:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand] -- D:\Windows\System32\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009/06/10 15:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\nvm62x64.sys -- (NVENETFD)
DRV:64bit: - [2009/06/10 15:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand] -- D:\Windows\System32\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- D:\Windows\system32\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- D:\Windows\System32\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/03/18 09:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand] -- D:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2012/09/24 10:04:50 | 000,071,032 | ---- | M] (BlueStack Systems) [Kernel | Auto] -- D:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys -- (BstHdDrv)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\Administrator_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKU\Administrator_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\Administrator_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 4E 33 28 C8 37 9E CD 01  [binary data]
IE - HKU\Administrator_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
IE - HKU\Nils_ON_D\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050
IE - HKU\Nils_ON_D\..\URLSearchHook:  - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\..\URLSearchHook: {40c3cc16-7269-4b32-9531-17f2950fb06f} - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\..\URLSearchHook: {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - Reg Error: Key error. File not found
IE - HKU\Nils_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\Nils_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
 
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\Windows\System32\Macromed\Flash\NPSWF64_11_4_402_287.dll ()
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: D:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.2: D:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer: D:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll ()
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=:  
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0: D:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: D:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.132.0:  File not found
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=1.140.0: D:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.1.2: D:\Program Files (x86)\Battlelog Web Plugins\2.1.2\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: D:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: D:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: D:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: D:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: D:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision: D:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming: D:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.4: D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\Wow6432Node\MozillaPlugins\Adobe Reader: D:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\PROGRAM FILES\WEB ASSISTANT\FIREFOX
FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\Web Assistant\Firefox
FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/07/29 14:14:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
 
[2012/07/29 14:14:24 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files (x86)\Mozilla Firefox\extensions
[2012/07/13 19:15:45 | 000,136,672 | ---- | M] (Mozilla Foundation) -- D:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/07/13 19:45:08 | 000,001,392 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012/08/24 17:35:17 | 000,002,349 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
[2012/07/13 19:45:08 | 000,002,252 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/07/13 19:45:08 | 000,001,153 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2012/07/13 19:45:08 | 000,006,805 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2012/07/13 19:45:08 | 000,001,178 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2012/07/13 19:45:07 | 000,001,105 | ---- | M] () -- D:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2009/06/10 16:00:26 | 000,000,824 | ---- | M]) - D:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Wajam) - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - D:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [EvtMgr6] D:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [Launch LCore] D:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc.)
O4:64bit: - HKLM..\Run: [MSC] D:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKU\LocalService_ON_D..\Run: [Sidebar] D:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\NetworkService_ON_D..\Run: [Sidebar] D:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\Nils_ON_D..\Run: [] D:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Samsung)
O4 - HKU\Nils_ON_D..\Run: [WindowsLive] D:\Users\Nils\AppData\Roaming\Microsoft\WindowsLive\install\bin\WindowsLive\WindowsLive.exe (Microsoft Live)
O4 - HKU\UpdatusUser_ON_D..\Run: [Sidebar] D:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [ Malwarebytes Anti-Malware ] D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\RunOnce: [ Malwarebytes Anti-Malware  (cleanup)] D:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll (Malwarebytes Corporation)
O4 - HKU\LocalService_ON_D..\RunOnce: [mctadmin]  File not found
O4 - HKU\NetworkService_ON_D..\RunOnce: [mctadmin]  File not found
O4 - HKU\UpdatusUser_ON_D..\RunOnce: [mctadmin]  File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\Administrator_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Add to Google Photos Screensa&ver - D:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Program Files (x86)\ICQ7M\ICQ.exe (ICQ, LLC.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - D:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - D:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13:64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - D:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - D:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - D:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - D:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006/03/24 06:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{66ccff36-d9b0-11e1-9cca-123456789abc}\Shell - "" = AutoRun
O33 - MountPoints2\{66ccff36-d9b0-11e1-9cca-123456789abc}\Shell\AutoRun\command - "" = I:\Start.exe
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
64bit: O35 - HKLM\..comfile [open] -- "%1" %* File not found
64bit: O35 - HKLM\..exefile [open] -- "%1" %* File not found
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
========== Files/Folders - Created Within 30 Days ==========
 
[2012/12/02 15:26:51 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Malwarebytes
[2012/12/02 15:26:09 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/12/02 15:26:05 | 000,000,000 | ---D | C] -- D:\ProgramData\Malwarebytes
[2012/12/02 15:26:01 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- D:\Windows\System32\drivers\mbam.sys
[2012/12/02 15:26:00 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012/12/02 07:28:49 | 000,000,000 | ---D | C] -- D:\Users\Nils\Desktop\Neuer Ordner
[2012/12/01 20:50:41 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP4 To MP3 Converter
[2012/12/01 20:50:39 | 000,000,000 | ---D | C] -- D:\MP4ToMP3Converter
[2012/11/30 11:43:54 | 000,000,000 | ---D | C] -- D:\ProgramData\Orbit
[2012/11/27 10:04:22 | 000,000,000 | ---D | C] -- D:\Users\Nils\Documents\Criterion Games
[2012/11/27 09:59:59 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Need.For.Speed.Most.Wanted.Limited.Edition-ALI213
[2012/11/26 10:42:32 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Apple Computer
[2012/11/26 10:42:31 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Apple Computer
[2012/11/26 10:42:26 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012/11/26 10:42:13 | 000,000,000 | ---D | C] -- D:\Windows\System32\DRVSTORE
[2012/11/26 10:41:42 | 000,000,000 | ---D | C] -- D:\Program Files\iPod
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\Program Files\iTunes
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\iTunes
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\ProgramData\Apple Computer
[2012/11/26 10:41:41 | 000,000,000 | ---D | C] -- D:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2012/11/26 10:41:08 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Apple
[2012/11/26 10:41:06 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Apple Software Update
[2012/11/26 10:40:55 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Apple
[2012/11/26 10:40:40 | 000,000,000 | ---D | C] -- D:\Program Files\Bonjour
[2012/11/26 10:40:40 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Bonjour
[2012/11/26 10:40:31 | 000,000,000 | ---D | C] -- D:\ProgramData\Apple
[2012/11/26 10:40:31 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Common Files\Apple
[2012/11/25 09:07:13 | 000,000,000 | ---D | C] -- D:\Users\Nils\Documents\Cryptload 1.1.8
[2012/11/24 11:03:52 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacksSetup
[2012/11/24 11:03:34 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
[2012/11/24 11:03:34 | 000,000,000 | ---D | C] -- D:\ProgramData\BlueStacks
[2012/11/24 11:03:34 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\BlueStacks
[2012/11/23 07:28:04 | 000,000,000 | ---D | C] -- D:\Users\Public\Documents\CrashDump
[2012/11/23 06:42:38 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Ubisoft Game Launcher
[2012/11/23 06:42:35 | 000,000,000 | ---D | C] -- D:\Users\Nils\Documents\Assassin's Creed III
[2012/11/23 06:16:27 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
[2012/11/23 06:16:21 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Ubisoft
[2012/11/23 06:16:00 | 000,518,488 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_7.dll
[2012/11/23 06:16:00 | 000,077,656 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_5.dll
[2012/11/23 06:15:59 | 000,176,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_7.dll
[2012/11/23 06:15:57 | 002,526,056 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_43.dll
[2012/11/23 06:15:56 | 001,907,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dcsx_43.dll
[2012/11/23 06:15:55 | 000,511,328 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_43.dll
[2012/11/23 06:15:55 | 000,470,880 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_43.dll
[2012/11/23 06:15:55 | 000,276,832 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx11_43.dll
[2012/11/23 06:15:55 | 000,248,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx11_43.dll
[2012/11/23 06:15:53 | 002,401,112 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_43.dll
[2012/11/23 06:15:52 | 000,530,776 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_6.dll
[2012/11/23 06:15:52 | 000,528,216 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_6.dll
[2012/11/23 06:15:52 | 000,078,680 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_4.dll
[2012/11/23 06:15:52 | 000,074,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_4.dll
[2012/11/23 06:15:51 | 000,238,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_6.dll
[2012/11/23 06:15:51 | 000,176,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_6.dll
[2012/11/23 06:15:51 | 000,024,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_7.dll
[2012/11/23 06:15:48 | 000,517,960 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_5.dll
[2012/11/23 06:15:48 | 000,515,416 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_5.dll
[2012/11/23 06:15:47 | 000,238,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_5.dll
[2012/11/23 06:15:47 | 000,176,968 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_5.dll
[2012/11/23 06:15:45 | 002,582,888 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_42.dll
[2012/11/23 06:15:45 | 001,974,616 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_42.dll
[2012/11/23 06:15:42 | 005,554,512 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dcsx_42.dll
[2012/11/23 06:15:42 | 005,501,792 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dcsx_42.dll
[2012/11/23 06:15:42 | 000,285,024 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx11_42.dll
[2012/11/23 06:15:42 | 000,235,344 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx11_42.dll
[2012/11/23 06:15:41 | 000,523,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_42.dll
[2012/11/23 06:15:41 | 000,453,456 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_42.dll
[2012/11/23 06:15:40 | 002,475,352 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_42.dll
[2012/11/23 06:15:40 | 001,892,184 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_42.dll
[2012/11/23 06:15:37 | 002,430,312 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_41.dll
[2012/11/23 06:15:37 | 001,846,632 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_41.dll
[2012/11/23 06:15:37 | 000,520,544 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_41.dll
[2012/11/23 06:15:37 | 000,453,456 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_41.dll
[2012/11/23 06:15:35 | 005,425,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_41.dll
[2012/11/23 06:15:35 | 004,178,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_41.dll
[2012/11/23 06:15:34 | 000,521,560 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_4.dll
[2012/11/23 06:15:34 | 000,517,448 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_4.dll
[2012/11/23 06:15:34 | 000,073,544 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_3.dll
[2012/11/23 06:15:34 | 000,069,464 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_3.dll
[2012/11/23 06:15:33 | 000,235,352 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_4.dll
[2012/11/23 06:15:33 | 000,174,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_4.dll
[2012/11/23 06:15:32 | 000,024,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_6.dll
[2012/11/23 06:15:32 | 000,022,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_6.dll
[2012/11/23 06:15:29 | 002,605,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_40.dll
[2012/11/23 06:15:29 | 002,036,576 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_40.dll
[2012/11/23 06:15:29 | 000,519,000 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_40.dll
[2012/11/23 06:15:29 | 000,452,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_40.dll
[2012/11/23 06:15:27 | 005,631,312 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_40.dll
[2012/11/23 06:15:27 | 004,379,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_40.dll
[2012/11/23 06:15:26 | 000,518,480 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_3.dll
[2012/11/23 06:15:26 | 000,514,384 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_3.dll
[2012/11/23 06:15:26 | 000,074,576 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_2.dll
[2012/11/23 06:15:26 | 000,070,992 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_2.dll
[2012/11/23 06:15:25 | 000,235,856 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_3.dll
[2012/11/23 06:15:25 | 000,175,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_3.dll
[2012/11/23 06:15:24 | 000,025,936 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_5.dll
[2012/11/23 06:15:24 | 000,023,376 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_5.dll
[2012/11/23 06:15:23 | 000,513,544 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_2.dll
[2012/11/23 06:15:23 | 000,509,448 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_2.dll
[2012/11/23 06:15:23 | 000,072,200 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_1.dll
[2012/11/23 06:15:23 | 000,068,616 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_1.dll
[2012/11/23 06:15:22 | 000,238,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_2.dll
[2012/11/23 06:15:22 | 000,177,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_2.dll
[2012/11/23 06:15:20 | 001,942,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_39.dll
[2012/11/23 06:15:20 | 001,493,528 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_39.dll
[2012/11/23 06:15:20 | 000,540,688 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_39.dll
[2012/11/23 06:15:20 | 000,467,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_39.dll
[2012/11/23 06:15:16 | 004,992,520 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_39.dll
[2012/11/23 06:15:16 | 003,851,784 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_39.dll
[2012/11/23 06:15:14 | 000,511,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_1.dll
[2012/11/23 06:15:14 | 000,507,400 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_1.dll
[2012/11/23 06:15:14 | 000,068,104 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAPOFX1_0.dll
[2012/11/23 06:15:14 | 000,065,032 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_0.dll
[2012/11/23 06:15:13 | 000,238,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_1.dll
[2012/11/23 06:15:13 | 000,177,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_1.dll
[2012/11/23 06:15:12 | 000,028,168 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_4.dll
[2012/11/23 06:15:12 | 000,025,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_4.dll
[2012/11/23 06:15:10 | 001,941,528 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_38.dll
[2012/11/23 06:15:10 | 001,491,992 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_38.dll
[2012/11/23 06:15:10 | 000,540,688 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_38.dll
[2012/11/23 06:15:10 | 000,467,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_38.dll
[2012/11/23 06:15:08 | 004,991,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_38.dll
[2012/11/23 06:15:08 | 003,850,760 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_38.dll
[2012/11/23 06:15:07 | 000,489,480 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\XAudio2_0.dll
[2012/11/23 06:15:07 | 000,479,752 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_0.dll
[2012/11/23 06:15:06 | 000,238,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_0.dll
[2012/11/23 06:15:06 | 000,177,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine3_0.dll
[2012/11/23 06:15:06 | 000,028,168 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_3.dll
[2012/11/23 06:15:06 | 000,025,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_3.dll
[2012/11/23 06:15:05 | 001,860,120 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_37.dll
[2012/11/23 06:15:05 | 001,420,824 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_37.dll
[2012/11/23 06:15:05 | 000,529,424 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_37.dll
[2012/11/23 06:15:05 | 000,462,864 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_37.dll
[2012/11/23 06:15:04 | 004,910,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DX9_37.dll
[2012/11/23 06:15:04 | 003,786,760 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DX9_37.dll
[2012/11/23 06:15:03 | 000,411,656 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_10.dll
[2012/11/23 06:15:03 | 000,267,272 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_10.dll
[2012/11/23 06:15:01 | 002,006,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_36.dll
[2012/11/23 06:15:01 | 001,374,232 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_36.dll
[2012/11/23 06:15:01 | 000,508,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_36.dll
[2012/11/23 06:15:01 | 000,444,776 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_36.dll
[2012/11/23 06:15:00 | 005,081,608 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_36.dll
[2012/11/23 06:15:00 | 003,734,536 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_36.dll
[2012/11/23 06:14:59 | 000,411,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_9.dll
[2012/11/23 06:14:59 | 000,267,112 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_9.dll
[2012/11/23 06:14:58 | 001,985,904 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_35.dll
[2012/11/23 06:14:58 | 001,358,192 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_35.dll
[2012/11/23 06:14:58 | 000,508,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_35.dll
[2012/11/23 06:14:58 | 000,444,776 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_35.dll
[2012/11/23 06:14:57 | 005,073,256 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_35.dll
[2012/11/23 06:14:57 | 003,727,720 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_35.dll
[2012/11/23 06:14:56 | 000,409,960 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_8.dll
[2012/11/23 06:14:56 | 000,266,088 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_8.dll
[2012/11/23 06:14:56 | 000,021,000 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\X3DAudio1_2.dll
[2012/11/23 06:14:56 | 000,017,928 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_2.dll
[2012/11/23 06:14:54 | 001,401,200 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_34.dll
[2012/11/23 06:14:54 | 001,124,720 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_34.dll
[2012/11/23 06:14:54 | 000,506,728 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_34.dll
[2012/11/23 06:14:54 | 000,443,752 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_34.dll
[2012/11/23 06:14:53 | 004,496,232 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_34.dll
[2012/11/23 06:14:53 | 003,497,832 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_34.dll
[2012/11/23 06:14:53 | 000,107,368 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xinput1_3.dll
[2012/11/23 06:14:52 | 000,403,304 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_7.dll
[2012/11/23 06:14:52 | 000,261,480 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_7.dll
[2012/11/23 06:14:51 | 001,400,176 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\D3DCompiler_33.dll
[2012/11/23 06:14:51 | 001,123,696 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\D3DCompiler_33.dll
[2012/11/23 06:14:51 | 000,506,728 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10_33.dll
[2012/11/23 06:14:51 | 000,443,752 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10_33.dll
[2012/11/23 06:14:50 | 004,494,184 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_33.dll
[2012/11/23 06:14:50 | 003,495,784 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_33.dll
[2012/11/23 06:14:49 | 000,393,576 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_6.dll
[2012/11/23 06:14:49 | 000,255,848 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_6.dll
[2012/11/23 06:14:48 | 000,390,424 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_5.dll
[2012/11/23 06:14:48 | 000,251,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_5.dll
[2012/11/23 06:14:47 | 000,469,264 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx10.dll
[2012/11/23 06:14:47 | 000,440,080 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx10.dll
[2012/11/23 06:14:46 | 004,398,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_32.dll
[2012/11/23 06:14:46 | 003,426,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_32.dll
[2012/11/23 06:14:45 | 000,364,824 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_4.dll
[2012/11/23 06:14:45 | 000,237,848 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_4.dll
[2012/11/23 06:14:45 | 000,017,688 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\x3daudio1_1.dll
[2012/11/23 06:14:45 | 000,015,128 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\x3daudio1_1.dll
[2012/11/23 06:14:44 | 003,977,496 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_31.dll
[2012/11/23 06:14:44 | 002,414,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_31.dll
[2012/11/23 06:14:44 | 000,363,288 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_3.dll
[2012/11/23 06:14:44 | 000,236,824 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_3.dll
[2012/11/23 06:14:43 | 000,083,736 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xinput1_2.dll
[2012/11/23 06:14:43 | 000,062,744 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xinput1_2.dll
[2012/11/23 06:14:42 | 000,354,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_2.dll
[2012/11/23 06:14:42 | 000,230,168 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_2.dll
[2012/11/23 06:14:42 | 000,083,664 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xinput1_1.dll
[2012/11/23 06:14:42 | 000,062,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xinput1_1.dll
[2012/11/23 06:14:41 | 000,352,464 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_1.dll
[2012/11/23 06:14:41 | 000,229,584 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_1.dll
[2012/11/23 06:14:31 | 003,927,248 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_30.dll
[2012/11/23 06:14:31 | 002,388,176 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_30.dll
[2012/11/23 06:14:30 | 000,355,536 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\xactengine2_0.dll
[2012/11/23 06:14:30 | 000,230,096 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine2_0.dll
[2012/11/23 06:14:30 | 000,016,592 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\x3daudio1_0.dll
[2012/11/23 06:14:30 | 000,014,032 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\x3daudio1_0.dll
[2012/11/23 06:14:29 | 003,830,992 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_29.dll
[2012/11/23 06:14:29 | 002,332,368 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_29.dll
[2012/11/23 06:14:27 | 003,815,120 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_28.dll
[2012/11/23 06:14:27 | 002,323,664 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_28.dll
[2012/11/23 06:14:26 | 003,807,440 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_27.dll
[2012/11/23 06:14:26 | 002,319,568 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_27.dll
[2012/11/23 06:14:22 | 003,767,504 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_26.dll
[2012/11/23 06:14:22 | 002,297,552 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_26.dll
[2012/11/23 06:14:19 | 003,823,312 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_25.dll
[2012/11/23 06:14:19 | 002,337,488 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_25.dll
[2012/11/23 06:14:17 | 003,544,272 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\d3dx9_24.dll
[2012/11/23 06:14:17 | 002,222,800 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dx9_24.dll
[2012/11/22 15:56:09 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPP Remote Server
[2012/11/20 07:44:46 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\ESN
[2012/11/20 07:30:41 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2012/11/20 07:30:38 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\LogMeIn Hamachi
[2012/11/18 07:59:28 | 000,527,192 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAudio2_7.dll
[2012/11/18 07:59:28 | 000,239,960 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xactengine3_7.dll
[2012/11/18 07:59:28 | 000,074,072 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\XAPOFX1_5.dll
[2012/11/18 07:59:26 | 001,868,128 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\d3dcsx_43.dll
[2012/11/18 07:59:25 | 000,022,360 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\X3DAudio1_7.dll
[2012/11/18 07:59:24 | 000,081,768 | ---- | C] (Microsoft Corporation) -- D:\Windows\SysWow64\xinput1_3.dll
[2012/11/18 07:57:13 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
[2012/11/18 07:49:33 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\THQ
[2012/11/15 04:29:13 | 000,000,000 | ---D | C] -- D:\Temp
[2012/11/15 04:15:25 | 000,203,104 | ---- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- D:\Windows\System32\drivers\ssudmdm.sys
[2012/11/15 04:15:25 | 000,102,368 | ---- | C] (DEVGURU Co., LTD.(www.devguru.co.kr)) -- D:\Windows\System32\drivers\ssudbus.sys
[2012/11/15 04:08:30 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
[2012/11/15 04:08:29 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\MyFree Codec
[2012/11/15 04:03:02 | 000,000,000 | ---D | C] -- D:\Users\Public\Documents\NativeFus_Log
[2012/11/15 04:02:45 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Samsung
[2012/11/15 04:02:27 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\Samsung
[2012/11/15 04:00:15 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
[2012/11/15 04:00:06 | 004,659,712 | ---- | C] (Dmitry Streblechenko) -- D:\Windows\SysWow64\Redemption.dll
[2012/11/15 03:59:51 | 000,821,824 | ---- | C] (Devguru Co., Ltd.) -- D:\Windows\SysWow64\dgderapi.dll
[2012/11/15 03:59:51 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\MarkAny
[2012/11/15 03:58:45 | 000,000,000 | ---D | C] -- D:\ProgramData\Samsung
[2012/11/15 03:58:45 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Samsung
[2012/11/15 03:52:46 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Local\Downloaded Installations
[2012/11/07 15:43:23 | 000,000,000 | ---D | C] -- D:\Users\Nils\AppData\Roaming\TS3Client
[2012/11/07 15:43:10 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2012/11/07 15:42:54 | 000,000,000 | ---D | C] -- D:\Program Files\TeamSpeak 3 Client
[2012/11/07 14:37:51 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Logitech
[2012/11/06 13:37:14 | 000,000,000 | ---D | C] -- D:\Windows\SysWow64\directx
[2 D:\Windows\*.tmp files -> D:\Windows\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2012/12/03 13:24:06 | 000,067,584 | --S- | M] () -- D:\Windows\bootstat.dat
[2012/12/03 13:23:12 | 3220,664,320 | -HS- | M] () -- D:\hiberfil.sys
[2012/12/02 15:26:09 | 000,001,109 | ---- | M] () -- D:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2012/12/02 15:26:09 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012/12/02 15:25:19 | 000,702,374 | ---- | M] () -- D:\Windows\System32\perfh007.dat
[2012/12/02 15:25:19 | 000,657,086 | ---- | M] () -- D:\Windows\System32\perfh009.dat
[2012/12/02 15:25:19 | 000,150,070 | ---- | M] () -- D:\Windows\System32\perfc007.dat
[2012/12/02 15:25:19 | 000,122,858 | ---- | M] () -- D:\Windows\System32\perfc009.dat
[2012/12/02 14:27:17 | 000,003,304 | ---- | M] () -- D:\bootsqm.dat
[2012/12/02 12:40:36 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP4 To MP3 Converter
[2012/12/02 11:10:49 | 000,026,352 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/12/02 11:10:49 | 000,026,352 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/12/02 10:00:00 | 000,000,884 | ---- | M] () -- D:\Windows\tasks\Adobe Flash Player Updater.job
[2012/12/02 09:49:00 | 000,001,116 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-501103844-3117174474-1099690610-1000UA.job
[2012/12/02 08:49:01 | 000,001,064 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-501103844-3117174474-1099690610-1000Core.job
[2012/12/02 08:01:55 | 000,281,688 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrB.xtr
[2012/12/02 08:01:55 | 000,281,688 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrB.exe
[2012/12/02 07:44:51 | 003,654,407 | ---- | M] () -- D:\Users\Nils\Desktop\IMG_6940.jpg
[2012/12/01 21:51:25 | 000,281,520 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrB.ex0
[2012/12/01 20:40:58 | 006,389,161 | ---- | M] () -- D:\Users\Nils\Desktop\IMG_5025.jpg
[2012/12/01 20:21:48 | 008,197,726 | ---- | M] () -- D:\Users\Nils\Desktop\IMG_5011.jpg
[2012/11/30 08:20:33 | 000,076,888 | ---- | M] () -- D:\Windows\SysWow64\PnkBstrA.exe
[2012/11/30 08:20:23 | 000,000,000 | R--D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
[2012/11/26 10:42:26 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012/11/26 10:41:07 | 000,002,519 | ---- | M] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2012/11/24 11:03:38 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
[2012/11/22 15:56:09 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPP Remote Server
[2012/11/21 08:10:20 | 003,123,272 | ---- | M] () -- D:\Windows\SysWow64\pbsvc.exe
[2012/11/20 07:30:43 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2012/11/18 07:57:13 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
[2012/11/15 04:08:30 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
[2012/11/15 04:00:15 | 000,002,016 | ---- | M] () -- D:\Users\Nils\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk
[2012/11/15 04:00:15 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
[2012/11/15 03:58:12 | 001,604,518 | ---- | M] () -- D:\Windows\SysWow64\PerfStringBackup.INI
[2012/11/07 15:43:10 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2012/11/07 14:37:51 | 000,000,000 | ---D | M] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
[2 D:\Windows\*.tmp files -> D:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2012/12/02 15:26:09 | 000,001,109 | ---- | C] () -- D:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2012/12/02 14:27:17 | 000,003,304 | ---- | C] () -- D:\bootsqm.dat
[2012/12/02 07:44:51 | 003,654,407 | ---- | C] () -- D:\Users\Nils\Desktop\IMG_6940.jpg
[2012/12/01 20:40:58 | 006,389,161 | ---- | C] () -- D:\Users\Nils\Desktop\IMG_5025.jpg
[2012/12/01 20:21:48 | 008,197,726 | ---- | C] () -- D:\Users\Nils\Desktop\IMG_5011.jpg
[2012/11/26 10:41:07 | 000,002,519 | ---- | C] () -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2012/11/23 06:16:30 | 003,123,272 | ---- | C] () -- D:\Windows\SysWow64\pbsvc.exe
[2012/11/15 04:00:15 | 000,002,016 | ---- | C] () -- D:\Users\Nils\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk
[2012/10/15 07:12:40 | 000,554,496 | ---- | C] () -- D:\Windows\SysWow64\dvmsg.dll
[2012/09/26 14:57:16 | 000,030,568 | ---- | C] () -- D:\Windows\MusiccityDownload.exe
[2012/09/26 14:57:14 | 000,974,848 | ---- | C] () -- D:\Windows\SysWow64\cis-2.4.dll
[2012/09/26 14:57:14 | 000,081,920 | ---- | C] () -- D:\Windows\SysWow64\issacapi_bs-2.3.dll
[2012/09/26 14:57:14 | 000,065,536 | ---- | C] () -- D:\Windows\SysWow64\issacapi_pe-2.3.dll
[2012/09/26 14:57:14 | 000,057,344 | ---- | C] () -- D:\Windows\SysWow64\issacapi_se-2.3.dll
[2012/07/29 15:30:21 | 000,281,688 | ---- | C] () -- D:\Windows\SysWow64\PnkBstrB.exe
[2012/07/29 15:30:20 | 002,434,856 | ---- | C] () -- D:\Windows\SysWow64\pbsvc_bc2.exe
[2012/07/29 15:30:20 | 000,076,888 | ---- | C] () -- D:\Windows\SysWow64\PnkBstrA.exe
[2012/07/29 14:15:18 | 001,604,518 | ---- | C] () -- D:\Windows\SysWow64\PerfStringBackup.INI
[2012/05/14 19:21:50 | 000,423,744 | ---- | C] () -- D:\Windows\SysWow64\nvStreaming.exe
[2011/09/28 10:44:14 | 000,179,271 | ---- | C] () -- D:\Windows\SysWow64\xlive.dll.cat
[2010/11/20 22:24:49 | 000,252,928 | ---- | C] () -- D:\Windows\SysWow64\DShowRdpFilter.dll
[2009/10/06 02:16:02 | 000,819,200 | ---- | C] () -- D:\Windows\SysWow64\xvidcore.dll
[2009/07/14 00:38:36 | 000,067,584 | --S- | C] () -- D:\Windows\bootstat.dat
[2009/07/13 21:35:51 | 000,000,741 | ---- | C] () -- D:\Windows\SysWow64\NOISE.DAT
[2009/07/13 21:34:42 | 000,215,943 | ---- | C] () -- D:\Windows\SysWow64\dssec.dat
[2009/07/13 19:10:29 | 000,043,131 | ---- | C] () -- D:\Windows\mib.bin
[2009/07/13 18:42:10 | 000,064,000 | ---- | C] () -- D:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 17:25:04 | 000,197,632 | ---- | C] () -- D:\Windows\SysWow64\ir32_32.dll
[2009/07/13 16:03:59 | 000,364,544 | ---- | C] () -- D:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 16:26:10 | 000,673,088 | ---- | C] () -- D:\Windows\SysWow64\mlang.dat
 
========== LOP Check ==========
 
[2012/11/26 10:42:12 | 000,000,000 | ---D | M] -- D:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Anwendungsdaten
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Application Data
[2012/08/24 17:35:05 | 000,000,000 | ---D | M] -- D:\ProgramData\Babylon
[2012/11/24 11:03:37 | 000,000,000 | ---D | M] -- D:\ProgramData\BlueStacks
[2012/11/24 11:05:45 | 000,000,000 | ---D | M] -- D:\ProgramData\BlueStacksSetup
[2012/08/09 19:54:33 | 000,000,000 | ---D | M] -- D:\ProgramData\Codemasters
[2012/12/02 12:41:34 | 000,000,000 | ---D | M] -- D:\ProgramData\DAEMON Tools Lite
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Desktop
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Documents
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Dokumente
[2012/08/09 19:54:33 | 000,000,000 | -HSD | M] -- D:\ProgramData\DSS
[2012/07/31 05:23:38 | 000,000,000 | ---D | M] -- D:\ProgramData\EA Core
[2012/07/31 07:41:29 | 000,000,000 | ---D | M] -- D:\ProgramData\EA Logs
[2012/08/27 08:17:06 | 000,000,000 | ---D | M] -- D:\ProgramData\Electronic Arts
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Favoriten
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Favorites
[2012/07/29 14:39:05 | 000,000,000 | ---D | M] -- D:\ProgramData\ICQ
[2012/07/31 19:26:20 | 000,000,000 | ---D | M] -- D:\ProgramData\InstallBrainService
[2012/09/24 06:11:41 | 000,000,000 | ---D | M] -- D:\ProgramData\OPHA
[2012/11/30 11:43:54 | 000,000,000 | ---D | M] -- D:\ProgramData\Orbit
[2012/12/02 12:40:36 | 000,000,000 | ---D | M] -- D:\ProgramData\Origin
[2012/08/26 15:18:55 | 000,000,000 | ---D | M] -- D:\ProgramData\regid.1986-12.com.adobe
[2012/07/29 18:28:30 | 000,000,000 | ---D | M] -- D:\ProgramData\Rockstar Games
[2012/11/15 04:00:25 | 000,000,000 | ---D | M] -- D:\ProgramData\Samsung
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Start Menu
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Startmenü
[2009/07/14 00:08:56 | 000,000,000 | -HSD | M] -- D:\ProgramData\Templates
[2012/08/25 18:24:52 | 000,000,000 | ---D | M] -- D:\ProgramData\VirtualWifiRouter
[2012/07/29 13:53:54 | 000,000,000 | -HSD | M] -- D:\ProgramData\Vorlagen
[2009/07/14 00:08:49 | 000,025,578 | ---- | M] () -- D:\Windows\Tasks\SCHEDLGU.TXT
 
========== Purity Check ==========
 
 
< End of report >
         
--- --- ---
[/code]

Alt 04.12.2012, 14:40   #13
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



Hier ist die Log!

Alt 04.12.2012, 14:40   #14
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Maleware entfernen - Standard

Maleware entfernen



Code:
ATTFilter
[2012/11/27 09:59:59 | 000,000,000 | ---D | C] -- D:\Program Files (x86)\Need.For.Speed.Most.Wanted.Limited.Edition-ALI213
         
Aus welcher Quelle das ist sieht man ja schon direkt am Dateinamen!

Siehe auch => http://www.trojaner-board.de/95393-c...-software.html

Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support ohne jegliche Diskussion beenden.

Cracks/Keygens sind zu 99,9% gefährliche Schädlinge, mit denen man nicht spaßen sollte. Ausserdem sind diese illegal und wir unterstützen die Verwendung von geklauter Software nicht. Somit beschränkt sich der Support auf Anleitung zur kompletten Neuinstallation!!

Dass illegale Cracks und Keygens im Wesentlichen dazu dienen, Malware zu verbreiten ist kein Geheimnis und muss jedem klar sein!


In Zukunft Finger weg von: Softonic, Registry-Bereinigern und illegalem Zeugs Cracks/Keygens/Serials
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 04.12.2012, 14:54   #15
zZNilsZz
 
Maleware entfernen - Standard

Maleware entfernen



Und wie gehe ich jetzt genau vor?

Und wie soll ich jetzt genau vorgehen?

Antwort

Themen zu Maleware entfernen
abgesicherten, anti, anti maleware, anzeige, anzeigen, black screen, entfernen, gen, infizierte, installiert, leute, löschen, maleware, maus, modus, neu, nicht mehr, normaler modus, programm, scan, starten, stick, suche, system, usb, usb stick, virus, windows




Ähnliche Themen: Maleware entfernen


  1. Maleware PicColor
    Plagegeister aller Art und deren Bekämpfung - 04.02.2015 (62)
  2. Maleware Verschlüsselung?
    Plagegeister aller Art und deren Bekämpfung - 09.02.2014 (1)
  3. Windows 8 - SpyBot findet Maleware C kann diese aber nicht entfernen!
    Plagegeister aller Art und deren Bekämpfung - 18.12.2013 (9)
  4. Trojaner? Virus? Maleware? http://www.searchnu.com/406?appid=20 entfernen.
    Log-Analyse und Auswertung - 12.07.2013 (12)
  5. Deltasearch maleware aus Firefoxbrowser entfernen
    Log-Analyse und Auswertung - 08.06.2013 (17)
  6. Problem mit Maleware
    Alles rund um Windows - 24.05.2013 (5)
  7. Spyhunter 4, Maleware oder Maleware Security Suite?
    Plagegeister aller Art und deren Bekämpfung - 07.05.2013 (5)
  8. Skype Maleware
    Plagegeister aller Art und deren Bekämpfung - 13.03.2013 (1)
  9. Trojaner Maleware
    Plagegeister aller Art und deren Bekämpfung - 03.12.2012 (3)
  10. Maleware gefunden!
    Log-Analyse und Auswertung - 06.10.2012 (2)
  11. Avira Maleware?
    Log-Analyse und Auswertung - 16.07.2012 (1)
  12. Maleware gefunden was tun?
    Log-Analyse und Auswertung - 24.04.2012 (23)
  13. Maleware auf der Homepage???
    Plagegeister aller Art und deren Bekämpfung - 18.01.2012 (1)
  14. Maleware TR/AGENT.GX.361
    Plagegeister aller Art und deren Bekämpfung - 29.06.2010 (19)
  15. Maleware defender, wie entfernen ich ihn?
    Log-Analyse und Auswertung - 28.12.2009 (1)
  16. Maleware!!
    Log-Analyse und Auswertung - 01.04.2006 (2)
  17. Maleware reproduziert sich nach Rechnerneustart nach dem Entfernen.
    Log-Analyse und Auswertung - 05.09.2005 (3)

Zum Thema Maleware entfernen - Hallo Leute ich bin neu hier weil ich mir den Virus maleware eingefangen habe. Ich habe viel gelsen und dann hab ich gesehen das ich den virus mit anti maleware(kompletter - Maleware entfernen...
Archiv
Du betrachtest: Maleware entfernen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.