Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: PDM.Invader (Loader)

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 17.02.2010, 05:18   #1
.OrangE.
 
PDM.Invader (Loader) - Standard

PDM.Invader (Loader)



Hallo liebes Trojaner Board,

seit einiger Zeit bekomme ich von meinem Virenscanner Kaspersky Anti-Virus beim Starten des Rechners diese Meldung:

17.02.2010 03:37:19 Gefunden: PDM.Invader (loader) System Control Manager C:\PROGRAMME\SYSTEM CONTROL MANAGER\MGSYSCTRL.EXE

Malwarebyte hat nichts gefunden.
Hier der Log:

Malwarebytes' Anti-Malware 1.44
Datenbank Version: 3748
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

17.02.2010 04:54:48
mbam-log-2010-02-17 (04-54-48).txt

Scan-Methode: Vollständiger Scan (C:\|)
Durchsuchte Objekte: 147426
Laufzeit: 45 minute(s), 39 second(s)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
(Keine bösartigen Objekte gefunden)

Hier die info und log.txt von RSIT

Info:

info.txt logfile of random's system information tool 1.06 2010-02-17 04:56:38

======Uninstall list======

-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9.3 - Deutsch-->MsiExec.exe /I{AC76BA86-7AD7-1031-7B44-A93000000001}
ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x0
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_classISPLAY -clean
CCleaner-->"C:\Programme\CCleaner\uninst.exe"
Condition Zero Deleted Scenes-->"C:\Programme\Steam\steam.exe" steam://uninstall/100
Condition Zero-->"C:\Programme\Steam\steam.exe" steam://uninstall/80
Counter-Strike-->"C:\Programme\Steam\steam.exe" steam://uninstall/10
GIMP 2.6.8-->"C:\Programme\GIMP-2.0\setup\unins000.exe"
HijackThis 2.0.2-->"C:\Programme\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
ICQ7-->"C:\Programme\InstallShield Installation Information\{88EB38EF-4D2C-436D-ABD3-56B232674062}\ICQ7.exe" -runfromtemp -l0x0009 -removeonly
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
Kaspersky Anti-Virus 2010-->MsiExec.exe /I{943B6738-4801-4982-90EC-0442EF7AEB16}
Kaspersky Anti-Virus 2010-->MsiExec.exe /I{943B6738-4801-4982-90EC-0442EF7AEB16}
Malwarebytes' Anti-Malware-->"C:\Programme\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU-->MsiExec.exe /I{C314CE45-3392-3B73-B4E1-139CD41CA933}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU-->MsiExec.exe /I{C2C284D2-6BD7-3B34-B0C5-B2CAED168DF7}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack SP1 - DEU-->c:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - deu\setup.exe
Microsoft .NET Framework 3.5 Language Pack SP1 - deu-->MsiExec.exe /I{052FDD78-A6EA-3187-8386-C82F4CA3A929}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7-->"C:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe"
Microsoft Office Access MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-0015-0407-0000-0000000FF1CE}
Microsoft Office Excel MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-0016-0407-0000-0000000FF1CE}
Microsoft Office OneNote MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-00A1-0407-0000-0000000FF1CE}
Microsoft Office Outlook MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-001A-0407-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-0018-0407-0000-0000000FF1CE}
Microsoft Office Professional 2010-->"C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall SINGLEIMAGE /dll OSETUP.DLL
Microsoft Office Proof (English) 2010 (Beta)-->MsiExec.exe /X{20140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2010 (Beta)-->MsiExec.exe /X{20140000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010 (Beta)-->MsiExec.exe /X{20140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Italian) 2010 (Beta)-->MsiExec.exe /X{20140000-001F-0410-0000-0000000FF1CE}
Microsoft Office Proofing (German) 2010 (Beta)-->MsiExec.exe /X{20140000-002C-0407-0000-0000000FF1CE}
Microsoft Office Publisher MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-0019-0407-0000-0000000FF1CE}
Microsoft Office Shared MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-006E-0407-0000-0000000FF1CE}
Microsoft Office Single Image 2010 (Beta)-->MsiExec.exe /X{20140000-003D-0000-0000-0000000FF1CE}
Microsoft Office Word MUI (German) 2010 (Beta)-->MsiExec.exe /X{20140000-001B-0407-0000-0000000FF1CE}
Microsoft Outlook Hotmail Connector 32-Bit (Beta)-->MsiExec.exe /X{25140000-0048-0407-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft-Basissmartcard-Kryptografiedienstanbieterpaket-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Mozilla Firefox (3.6)-->C:\Programme\Mozilla Firefox\uninstall\helper.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Programme\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\GEMEIN~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Programme\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x7 -removeonly
REALTEK Wireless LAN Driver-->C:\Programme\InstallShield Installation Information\{9D3D8C60-A55F-4fed-B2B9-173F09590E16}\Install.exe -uninst -l0x7
Security Update for Microsoft Office 2010 File Validation - Beta (KB976133)-->"C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{20140000-003D-0000-0000-0000000FF1CE}" "{701D1499-1FE5-4E8E-9E09-562423116373}" "1031" "0"
Security Update for Microsoft Office 2010 File Validation - Beta (KB976133)-->"C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{20140000-003D-0000-0000-0000000FF1CE}" "{76CB26F9-C8AD-403B-8461-168B18C2FE31}" "1031" "0"
Security Update for Microsoft Office 2010 File Validation - Beta (KB976133)-->"C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{20140000-003D-0000-0000-0000000FF1CE}" "{7CDAA76C-5DB2-431F-A921-14A106BD8FA3}" "1031" "0"
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Sicherheitsupdate für Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Sicherheitsupdate für Windows Internet Explorer 8 (KB978207)-->"C:\WINDOWS\ie8updates\KB978207-IE8\spuninst\spuninst.exe"
Sicherheitsupdate für Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
Synaptics Pointing Device Driver-->rundll32.exe "C:\Programme\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
System Control Manager-->C:\Programme\InstallShield Installation Information\{ED9C5D25-55DF-48D8-9328-2AC0D75DE5D8}\setup.exe -runfromtemp -l0x0009 -removeonly
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update für Windows Internet Explorer 8 (KB978506)-->"C:\WINDOWS\ie8updates\KB978506-IE8\spuninst\spuninst.exe"
USB2.0 Card Reader Software-->"C:\Programme\InstallShield Installation Information\{96AE7E41-E34E-47D0-AC07-1091A8127911}\setup.exe" -runfromtemp -l0x0007 -removeonly
WIDCOMM Bluetooth Software-->MsiExec.exe /X{84814E6B-2581-46EC-926A-823BD1C670F6}
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live Anmelde-Assistent-->MsiExec.exe /I{52B97218-98CB-4B8B-9283-D213C85E1AA4}
Windows Live Call-->MsiExec.exe /I{5FC68772-6D56-41C6-9DF1-24E868198AE6}
Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
Windows Live Essentials-->C:\Programme\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}
Windows Live Fotogalerie-->MsiExec.exe /X{2BA722D1-48D1-406E-9123-8AE5431D63EF}
Windows Live Mail-->MsiExec.exe /I{C4D738F7-996A-4C81-B8FA-C4E26D767E41}
Windows Live Messenger-->MsiExec.exe /X{41E654A9-26D0-4EAC-854B-0FA824FFFABB}
Windows Live Sync-->MsiExec.exe /X{76618402-179D-4699-A66B-D351C59436BC}
Windows Live Toolbar-->MsiExec.exe /X{70B7A167-0B88-445D-A3EA-97C73AA88CAC}
Windows Live Writer-->MsiExec.exe /X{E0A4805D-280A-4DD7-9E74-3A5F85E302A1}
Windows Live-Uploadtool-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Windows Media Format 11 runtime-->"C:\Programme\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Programme\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Search 4.0-->"C:\WINDOWS\$NtUninstallKB940157$\spuninst\spuninst.exe"
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"

======Security center information======

AV: Kaspersky Anti-Virus

======System event log======

Computer Name: ***-41D01D1A
Event Code: 60055
Message: Während der Installation sind Fehler aufgetreten. Weitere Informationen finden Sie in der Datei "setuperr.log" im Windows-Verzeichnis.
Record Number: 5
Source Name: Setup
Time Written: 20100209013848.000000+060
Event Type: Fehler
User:

Computer Name: ***-41D01D1A
Event Code: 15007
Message: Die von URL-Präfix "http://*:2869/" identifizierte Namespacereservierung wurde erfolgreich hinzugefügt.

Record Number: 4
Source Name: HTTP
Time Written: 20100209013535.000000+060
Event Type: Informationen
User:

Computer Name: ***-41D01D1A
Event Code: 6011
Message: Der NetBIOS-Name und DNS-Hostname dieses Computers wurden von MACHINENAME in ***-41D01D1A geändert.

Record Number: 3
Source Name: EventLog
Time Written: 20100209013310.000000+060
Event Type: Informationen
User:

Computer Name: MACHINENAME
Event Code: 6005
Message: Der Ereignisprotokolldienst wurde gestartet.

Record Number: 2
Source Name: EventLog
Time Written: 20100209012917.000000+060
Event Type: Informationen
User:

Computer Name: MACHINENAME
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 3 Uniprocessor Free.

Record Number: 1
Source Name: EventLog
Time Written: 20100209012917.000000+060
Event Type: Informationen
User:

=====Application event log=====

Computer Name: ***-41D01D1A
Event Code: 1000
Message: Die Leistungsindikatoren für den Dienst ContentIndex (ContentIndex) wurden geladen.
Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte.

Record Number: 5
Source Name: LoadPerf
Time Written: 20100209013417.000000+060
Event Type: Informationen
User:

Computer Name: ***-41D01D1A
Event Code: 1000
Message: Die Leistungsindikatoren für den Dienst TermService (Terminaldienste) wurden geladen.
Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte.

Record Number: 4
Source Name: LoadPerf
Time Written: 20100209013416.000000+060
Event Type: Informationen
User:

Computer Name: ***-41D01D1A
Event Code: 1000
Message: Die Leistungsindikatoren für den Dienst RemoteAccess (Routing und RAS) wurden geladen.
Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte.

Record Number: 3
Source Name: LoadPerf
Time Written: 20100209013351.000000+060
Event Type: Informationen
User:

Computer Name: ***-41D01D1A
Event Code: 1000
Message: Die Leistungsindikatoren für den Dienst PSched (PSched) wurden geladen.
Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte.

Record Number: 2
Source Name: LoadPerf
Time Written: 20100209013321.000000+060
Event Type: Informationen
User:

Computer Name: ***-41D01D1A
Event Code: 1000
Message: Die Leistungsindikatoren für den Dienst RSVP (QoS-RSVP) wurden geladen.
Die Daten enthalten die dem Dienst zugeordneten neuen Indexwerte.

Record Number: 1
Source Name: LoadPerf
Time Written: 20100209013320.000000+060
Event Type: Informationen
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Programme\ATI Technologies\ATI.ACE\Core-Static
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 111 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=6f02
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------

Geändert von .OrangE. (17.02.2010 um 05:26 Uhr)

Alt 17.02.2010, 05:23   #2
.OrangE.
 
PDM.Invader (Loader) - Standard

PDM.Invader (Loader)



Logfile of random's system information tool 1.06 (written by random/random)
Run by Marcel at 2010-02-17 04:56:14
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 136 GB (89%) free of 153 GB
Total RAM: 895 MB (38% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 04:56:30, on 17.02.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\Programme\System Control Manager\MSIService.exe
C:\Programme\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Programme\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Programme\Synaptics\SynTP\SynTPEnh.exe
C:\Programme\System Control Manager\MGSysCtrl.exe
C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programme\WIDCOMM\Bluetooth Software\BTTray.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Programme\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Programme\Mozilla Firefox\firefox.exe
C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtblfs.exe
C:\Dokumente und Einstellungen\Marcel\Desktop\RSIT.exe
C:\Programme\trend micro\Marcel.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Programme\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MI1933~1\Office14\URLREDIR.DLL
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Programme\Windows Live\Toolbar\wltcore.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Programme\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Programme\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MGSysCtrl] C:\Programme\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [AVP] "C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Programme\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\NPSWF32_FlashUtil.exe -p
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOKALER DIENST')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETZWERKDIENST')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: An OneNote s&enden - res://C:\PROGRA~1\MI1933~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - res://C:\PROGRA~1\MI1933~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Senden an &Bluetooth-Gerät... - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Senden an Bluetooth - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Virtuelle Tastatur - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Programme\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Programme\ICQ7.0\ICQ.exe
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Li&nks untersuchen - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1265754174125
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Micro Star SCM - Micro-Star Int'l Co., Ltd. - C:\Programme\System Control Manager\MSIService.exe

--
End of file - 8141 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\User_Feed_Synchronization-{FC46B101-468A-48D5-9305-F8BC7D070F35}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll [2009-10-20 68112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Programme\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Anmelde-Hilfsprogramm - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MI1933~1\Office14\URLREDIR.DLL [2009-11-03 556432]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Programme\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E33CF602-D945-461A-83F0-819F76A199F8}]
FilterBHO Class - C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll [2009-10-20 268816]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Programme\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-03-12 61440]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-04-03 17567744]
"SynTPEnh"=C:\Programme\Synaptics\SynTP\SynTPEnh.exe [2009-03-06 1434920]
"MGSysCtrl"=C:\Programme\System Control Manager\MGSysCtrl.exe [2009-05-25 2048000]
"AVP"=C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe [2009-10-20 340456]
"BCSSync"=C:\Programme\Microsoft Office\Office14\BCSSync.exe [2009-09-26 83312]
"Adobe Reader Speed Launcher"=C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe [2010-01-07 429392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_FlashUtil.exe [2009-10-28 257440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Windows Search.lnk]
C:\PROGRA~1\WI459E~1\WINDOW~1.EXE [2008-05-26 123904]

C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart
BTTray.lnk - C:\Programme\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2009-05-21 155648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2009-10-20 219664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Programme\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Programme\Windows Live\Messenger\wlcsdk.exe"="C:\Programme\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Programme\Windows Live\Messenger\msnmsgr.exe"="C:\Programme\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Programme\Windows Live\Sync\WindowsLiveSync.exe"="C:\Programme\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Programme\Microsoft Office\Office14\ONENOTE.EXE"="C:\Programme\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Programme\Microsoft Office\Office14\OUTLOOK.EXE"="C:\Programme\Microsoft Office\Office14\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Programme\Steam\Steam.exe"="C:\Programme\Steam\Steam.exe:*:Enabled:Steam"
"C:\Programme\Steam\SteamApps\neon1993\condition zero\hl.exe"="C:\Programme\Steam\SteamApps\neon1993\condition zero\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Programme\Steam\SteamApps\neon1993\condition zero deleted scenes\hl.exe"="C:\Programme\Steam\SteamApps\neon1993\condition zero deleted scenes\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Programme\Steam\SteamApps\neon1993\counter-strike\hl.exe"="C:\Programme\Steam\SteamApps\neon1993\counter-strike\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Programme\ICQ7.0\ICQ.exe"="C:\Programme\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Programme\ICQ7.0\aolload.exe"="C:\Programme\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Programme\Windows Live\Messenger\wlcsdk.exe"="C:\Programme\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Programme\Windows Live\Messenger\msnmsgr.exe"="C:\Programme\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Programme\Windows Live\Sync\WindowsLiveSync.exe"="C:\Programme\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Programme\ICQ7.0\ICQ.exe"="C:\Programme\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Programme\ICQ7.0\aolload.exe"="C:\Programme\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"

======List of files/folders created in the last 1 months======

2010-02-17 04:56:15 ----D---- C:\Programme\trend micro
2010-02-17 04:56:14 ----D---- C:\rsit
2010-02-17 03:58:11 ----D---- C:\Dokumente und Einstellungen\Marcel\Anwendungsdaten\Malwarebytes
2010-02-17 03:58:03 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes
2010-02-17 03:58:02 ----D---- C:\Programme\Malwarebytes' Anti-Malware
2010-02-13 02:53:51 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Adobe
2010-02-13 02:53:35 ----D---- C:\Programme\Gemeinsame Dateien\Adobe
2010-02-13 02:53:35 ----D---- C:\Programme\Adobe
2010-02-11 17:46:25 ----D---- C:\Dokumente und Einstellungen\Marcel\Anwendungsdaten\ICQ
2010-02-11 17:46:03 ----D---- C:\Programme\ICQ7.0
2010-02-11 15:53:41 ----D---- C:\Programme\Steam
2010-02-10 02:34:55 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-02-10 01:20:49 ----D---- C:\Programme\GIMP-2.0
2010-02-10 01:06:12 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-02-10 01:06:12 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-02-10 00:57:50 ----D---- C:\Programme\Microsoft Synchronization Services
2010-02-10 00:57:42 ----D---- C:\Programme\Gemeinsame Dateien\DESIGNER
2010-02-10 00:57:09 ----D---- C:\Programme\Microsoft.NET
2010-02-10 00:54:41 ----D---- C:\Programme\Microsoft Analysis Services
2010-02-10 00:54:28 ----D---- C:\WINDOWS\SHELLNEW
2010-02-10 00:53:20 ----D---- C:\FILES
2010-02-10 00:53:11 ----D---- C:\Programme\Microsoft Office
2010-02-10 00:53:08 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft Help
2010-02-10 00:52:36 ----RHD---- C:\MSOCache
2010-02-10 00:24:49 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-10 00:24:48 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-09 23:58:34 ----D---- C:\Programme\CCleaner
2010-02-09 23:41:09 ----SHD---- C:\RECYCLER
2010-02-09 23:41:08 ----D---- C:\Dokumente und Einstellungen\Marcel\Anwendungsdaten\Windows Search
2010-02-09 23:39:57 ----D---- C:\Programme\Microsoft Silverlight
2010-02-09 23:39:20 ----D---- C:\Programme\Microsoft Sync Framework
2010-02-09 23:38:32 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2010-02-09 23:38:27 ----D---- C:\Programme\Microsoft SQL Server Compact Edition
2010-02-09 23:37:15 ----D---- C:\Programme\Microsoft
2010-02-09 23:36:55 ----D---- C:\Programme\Windows Live SkyDrive
2010-02-09 23:36:28 ----D---- C:\Programme\Windows Live
2010-02-09 23:29:35 ----D---- C:\Programme\Gemeinsame Dateien\Windows Live
2010-02-09 23:16:13 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-09 23:16:09 ----D---- C:\Programme\MSBuild
2010-02-09 23:16:07 ----D---- C:\WINDOWS\system32\en-US
2010-02-09 23:16:00 ----D---- C:\Programme\Reference Assemblies
2010-02-09 23:15:29 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-02-09 23:15:28 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-02-09 23:15:28 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-02-09 23:15:27 ----D---- C:\1bc4f55fcbea4ed097832bc2
2010-02-09 23:12:43 ----D---- C:\WINDOWS\pss
2010-02-09 23:03:46 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2010-02-09 23:03:44 ----D---- C:\Dokumente und Einstellungen\Marcel\Anwendungsdaten\Windows Desktop Search
2010-02-09 23:03:05 ----D---- C:\WINDOWS\system32\GroupPolicy
2010-02-09 23:03:05 ----D---- C:\Programme\Windows Desktop Search
2010-02-09 23:02:56 ----HDC---- C:\WINDOWS\$NtUninstallKB940157$
2010-02-09 23:02:14 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-02-09 23:02:13 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-02-09 23:01:38 ----D---- C:\Programme\Windows Media Connect 2
2010-02-09 23:01:27 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-02-09 23:00:26 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-02-09 22:59:49 ----D---- C:\WINDOWS\system32\LogFiles
2010-02-09 22:59:44 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-02-09 22:56:16 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Windows Genuine Advantage
2010-02-09 22:46:04 ----D---- C:\WINDOWS\ie8updates
2010-02-09 22:45:34 ----D---- C:\WINDOWS\WBEM
2010-02-09 22:44:25 ----HDC---- C:\WINDOWS\ie8
2010-02-09 22:43:01 ----A---- C:\WINDOWS\system32\MRT.exe
2010-02-09 22:23:39 ----D---- C:\WINDOWS\system32\PreInstall
2010-02-09 22:23:37 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-09 22:21:05 ----D---- C:\Programme\Kaspersky Lab
2010-02-09 22:21:05 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Kaspersky Lab
2010-02-09 22:19:57 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Kaspersky Lab Setup Files
2010-02-09 22:18:00 ----D---- C:\Dokumente und Einstellungen\***\Anwendungsdaten\Macromedia
2010-02-09 22:18:00 ----D---- C:\Dokumente und Einstellungen\***\Anwendungsdaten\Adobe
2010-02-09 22:16:15 ----D---- C:\Dokumente und Einstellungen\***\Anwendungsdaten\ATI
2010-02-09 22:16:15 ----D---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ATI
2010-02-09 22:16:07 ----D---- C:\WINDOWS\system32\Lang
2010-02-09 22:14:40 ----D---- C:\Programme\System Control Manager
2010-02-09 22:14:40 ----A---- C:\WINDOWS\system32\msiapcfg.dll
2010-02-09 22:14:33 ----D---- C:\Dokumente und Einstellungen\***\Anwendungsdaten\InstallShield
2010-02-09 22:14:08 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2010-02-09 22:14:06 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-02-09 22:14:05 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$
2010-02-09 22:14:00 ----D---- C:\Programme\Synaptics
2010-02-09 22:13:52 ----A---- C:\WINDOWS\system32\SynTPCo4.dll
2010-02-09 22:13:52 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2010-02-09 22:13:52 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2010-02-09 22:13:50 ----A---- C:\WINDOWS\system32\SynCOM.dll
2010-02-09 22:13:48 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2010-02-09 22:13:27 ----A---- C:\WINDOWS\system32\RTSUSTORicon.dll
2010-02-09 22:12:46 ----D---- C:\WINDOWS\system32\RTCOM
2010-02-09 22:12:39 ----A---- C:\WINDOWS\RtkUpd.exe
2010-02-09 22:12:37 ----A---- C:\WINDOWS\vncutil.exe
2010-02-09 22:12:37 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2010-02-09 22:12:36 ----A---- C:\WINDOWS\SkyTel.exe
2010-02-09 22:12:35 ----A---- C:\WINDOWS\RtlUpd.exe
2010-02-09 22:12:34 ----A---- C:\WINDOWS\RTLCPL.EXE
2010-02-09 22:12:32 ----A---- C:\WINDOWS\system32\RtkCoInstXP.dll
2010-02-09 22:12:32 ----A---- C:\WINDOWS\RtkAudioService.exe
2010-02-09 22:12:28 ----A---- C:\WINDOWS\RTHDCPL.EXE
2010-02-09 22:12:27 ----A---- C:\WINDOWS\MicCal.exe
2010-02-09 22:12:24 ----A---- C:\WINDOWS\ALCWZRD.EXE
2010-02-09 22:12:24 ----A---- C:\WINDOWS\ALCMTR.EXE
2010-02-09 22:12:18 ----A---- C:\WINDOWS\RtlExUpd.dll
2010-02-09 22:11:46 ----A---- C:\WINDOWS\system32\hidserv.dll
2010-02-09 22:10:49 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-02-09 22:09:24 ----A---- C:\WINDOWS\system32\btw_ci.dll
2010-02-09 22:09:15 ----D---- C:\Programme\WIDCOMM
2010-02-09 22:08:06 ----A---- C:\WINDOWS\system32\RtNicProp32.dll
2010-02-09 22:08:05 ----D---- C:\Programme\Realtek
2010-02-09 22:04:37 ----RSD---- C:\WINDOWS\assembly
2010-02-09 22:04:18 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-09 22:03:15 ----D---- C:\Programme\ATI Technologies
2010-02-09 22:02:59 ----D---- C:\Programme\Gemeinsame Dateien\InstallShield
2010-02-09 21:22:22 ----D---- C:\Dokumente und Einstellungen\Marcel\Anwendungsdaten\Mozilla
2010-02-09 21:22:16 ----D---- C:\Programme\Mozilla Firefox
2010-02-09 21:21:19 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-02-09 21:17:49 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-02-09 21:17:30 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-02-09 21:17:30 ----D---- C:\WINDOWS\OPTIONS
2010-02-09 21:17:26 ----D---- C:\Programme\REALTEK 11n PCIE Wireless LAN Driver
2010-02-09 21:17:26 ----A---- C:\WINDOWS\system32\ISSRemoveSP.exe
2010-02-09 21:17:25 ----HD---- C:\Programme\InstallShield Installation Information
2010-02-09 02:28:22 ----RSH---- C:\boot.ini
2010-02-09 02:01:50 ----SHD---- C:\System Volume Information
2010-02-09 01:45:49 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-02-09 01:45:49 ----RSD---- C:\WINDOWS\Fonts
2010-02-09 01:45:49 ----RD---- C:\WINDOWS\Web
2010-02-09 01:45:49 ----HD---- C:\WINDOWS\inf
2010-02-09 01:45:49 ----D---- C:\WINDOWS\WinSxS
2010-02-09 01:45:49 ----D---- C:\WINDOWS\twain_32
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Temp
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\wins
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\wbem
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\usmt
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\spool
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\ShellExt
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\Setup
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\ras
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\oobe
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\npp
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\mui
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\inetsrv
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\IME
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\icsxml
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\ias
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\export
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\drivers
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\dhcp
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\de-de
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\de
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\config
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\3com_dmi
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\3076
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\2052
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1054
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1042
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1041
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1037
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1033
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1031
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1028
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32\1025
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system32
2010-02-09 01:45:49 ----D---- C:\WINDOWS\system
2010-02-09 01:45:49 ----D---- C:\WINDOWS\security
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Resources
2010-02-09 01:45:49 ----D---- C:\WINDOWS\repair
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Provisioning
2010-02-09 01:45:49 ----D---- C:\WINDOWS\PeerNet
2010-02-09 01:45:49 ----D---- C:\WINDOWS\pchealth
2010-02-09 01:45:49 ----D---- C:\WINDOWS\OEMDRV
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Network Diagnostic
2010-02-09 01:45:49 ----D---- C:\WINDOWS\mui
2010-02-09 01:45:49 ----D---- C:\WINDOWS\msapps
2010-02-09 01:45:49 ----D---- C:\WINDOWS\msagent
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Media
2010-02-09 01:45:49 ----D---- C:\WINDOWS\L2Schemas
2010-02-09 01:45:49 ----D---- C:\WINDOWS\java
2010-02-09 01:45:49 ----D---- C:\WINDOWS\ime
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Help
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Driver Cache
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Debug
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Cursors
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Connection Wizard
2010-02-09 01:45:49 ----D---- C:\WINDOWS\Config
2010-02-09 01:45:49 ----D---- C:\WINDOWS\AppPatch
2010-02-09 01:45:49 ----D---- C:\WINDOWS\addins
2010-02-09 01:45:49 ----D---- C:\WINDOWS
2010-02-09 01:41:25 ----D---- C:\Dokumente und Einstellungen\***\Anwendungsdaten\Identities
2010-02-09 01:41:23 ----HD---- C:\Programme\Uninstall Information
2010-02-09 01:41:19 ----SD---- C:\Dokumente und Einstellungen\***\Anwendungsdaten\Microsoft
2010-02-09 01:41:19 ----ASH---- C:\Dokumente und Einstellungen\***\Anwendungsdaten\desktop.ini
2010-02-09 01:40:38 ----D---- C:\WINDOWS\SoftwareDistribution
2010-02-09 01:40:36 ----SD---- C:\WINDOWS\system32\Microsoft
2010-02-09 01:40:36 ----N---- C:\WINDOWS\SchedLgU.Txt
2010-02-09 01:40:36 ----D---- C:\WINDOWS\Prefetch
2010-02-09 01:37:05 ----D---- C:\WINDOWS\system32\xircom
2010-02-09 01:37:05 ----D---- C:\Programme\xerox
2010-02-09 01:37:05 ----D---- C:\Programme\microsoft frontpage
2010-02-09 01:36:54 ----A---- C:\WINDOWS\control.ini
2010-02-09 01:36:54 ----A---- C:\AUTOEXEC.BAT
2010-02-09 01:36:33 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-02-09 01:35:47 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-02-09 01:35:47 ----RD---- C:\WINDOWS\Offline Web Pages
2010-02-09 01:35:47 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-02-09 01:35:41 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-02-09 01:35:37 ----HD---- C:\Programme\WindowsUpdate
2010-02-09 01:35:33 ----D---- C:\Programme\Online-Dienste
2010-02-09 01:35:23 ----D---- C:\WINDOWS\system32\DirectX
2010-02-09 01:35:22 ----A---- C:\WINDOWS\system32\desktop.ini
2010-02-09 01:35:22 ----A---- C:\WINDOWS\system32\atrace.dll
2010-02-09 01:35:22 ----A---- C:\WINDOWS\desktop.ini
2010-02-09 01:35:21 ----D---- C:\Programme\Gemeinsame Dateien\Dienste
2010-02-09 01:35:21 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-02-09 01:35:21 ----A---- C:\WINDOWS\system32\acctres.dll
2010-02-09 01:35:20 ----SD---- C:\WINDOWS\Tasks
2010-02-09 01:35:20 ----D---- C:\WINDOWS\srchasst
2010-02-09 01:35:20 ----D---- C:\Programme\Gemeinsame Dateien\MSSoap
2010-02-09 01:35:20 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-02-09 01:35:19 ----D---- C:\WINDOWS\system32\Macromed
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wups.dll
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-02-09 01:35:18 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-02-09 01:35:17 ----D---- C:\Programme\Movie Maker
2010-02-09 01:35:17 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-02-09 01:35:17 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-02-09 01:35:17 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-02-09 01:35:17 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2010-02-09 01:35:17 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-02-09 01:35:17 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-02-09 01:35:12 ----D---- C:\WINDOWS\system32\Restore
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\srclient.dll
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\fltMc.exe
2010-02-09 01:35:12 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-02-09 01:35:11 ----D---- C:\Programme\NetMeeting
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\msconf.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\inetres.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-02-09 01:35:11 ----A---- C:\WINDOWS\system32\ils.dll
2010-02-09 01:35:10 ----D---- C:\Programme\Outlook Express
2010-02-09 01:35:10 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-02-09 01:35:10 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-02-09 01:35:10 ----A---- C:\WINDOWS\system32\mstask.dll
2010-02-09 01:35:10 ----A---- C:\WINDOWS\system32\isign32.dll
2010-02-09 01:35:10 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-02-09 01:35:10 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-02-09 01:35:10 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-02-09 01:35:09 ----D---- C:\Programme\Internet Explorer
2010-02-09 01:35:09 ----D---- C:\Programme\Gemeinsame Dateien\System
2010-02-09 01:34:57 ----D---- C:\Programme\ComPlus Applications
2010-02-09 01:34:55 ----A---- C:\WINDOWS\vbaddin.ini
2010-02-09 01:34:55 ----A---- C:\WINDOWS\vb.ini
2010-02-09 01:34:50 ----D---- C:\WINDOWS\Registration
2010-02-09 01:34:16 ----D---- C:\Programme\Windows Media Player
2010-02-09 01:34:16 ----D---- C:\Programme\Online Services
2010-02-09 01:34:10 ----D---- C:\Programme\Messenger
2010-02-09 01:34:09 ----D---- C:\Programme\MSN Gaming Zone
2010-02-09 01:34:09 ----A---- C:\WINDOWS\system32\write.exe
2010-02-09 01:34:07 ----A---- C:\WINDOWS\system32\winchat.exe
2010-02-09 01:34:07 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-02-09 01:34:07 ----A---- C:\WINDOWS\system32\hticons.dll
2010-02-09 01:34:07 ----A---- C:\WINDOWS\system32\avwav.dll
2010-02-09 01:34:07 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-02-09 01:34:07 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\winmine.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\tskill.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\tscon.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\sol.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\shadow.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\reset.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\regini.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\msg.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\logoff.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\getuname.dll
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\freecell.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\charmap.exe
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-02-09 01:34:05 ----A---- C:\WINDOWS\system32\calc.exe
2010-02-09 01:34:04 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-02-09 01:34:02 ----D---- C:\Programme\MSN
2010-02-09 01:34:02 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-02-09 01:34:02 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-02-09 01:34:02 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-02-09 01:34:01 ----D---- C:\Programme\Windows NT
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\tsgqec.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\spider.exe
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-02-09 01:34:01 ----A---- C:\WINDOWS\system32\aaclient.dll
2010-02-09 01:34:00 ----D---- C:\WINDOWS\system32\MsDtc
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-02-09 01:34:00 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-02-09 01:33:59 ----D---- C:\WINDOWS\system32\Com
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\stclient.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\comuid.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\colbact.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-02-09 01:33:59 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-02-09 01:33:58 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-02-09 01:33:58 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-02-09 01:33:58 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-02-09 01:33:58 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-02-09 01:33:01 ----A---- C:\WINDOWS\system32\h323log.txt
2010-02-09 01:31:01 ----A---- C:\WINDOWS\system32\usbui.dll
2010-02-09 01:29:56 ----SHD---- C:\WINDOWS\Installer
2010-02-09 01:29:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-02-09 01:29:55 ----D---- C:\Programme\Gemeinsame Dateien\ODBC
2010-02-09 01:29:55 ----A---- C:\WINDOWS\ODBCINST.INI
2010-02-09 01:29:54 ----D---- C:\Programme\Gemeinsame Dateien\SpeechEngines
2010-02-09 01:29:54 ----D---- C:\Programme\Gemeinsame Dateien\Microsoft Shared
2010-02-09 01:29:53 ----RD---- C:\Programme
2010-02-09 01:29:53 ----D---- C:\Programme\Gemeinsame Dateien
2010-02-09 01:29:49 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-02-09 01:29:49 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-02-09 01:29:49 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-02-09 01:29:49 ----A---- C:\WINDOWS\system32\irclass.dll
2010-02-09 01:29:49 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-02-09 01:29:49 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-02-09 01:29:49 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-02-09 01:29:48 ----A---- C:\WINDOWS\system32\storprop.dll
2010-02-09 01:29:48 ----A---- C:\WINDOWS\system32\batt.dll
2010-02-09 01:29:48 ----A---- C:\WINDOWS\NOTEPAD.EXE
2010-02-09 01:29:39 ----ASH---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\desktop.ini
2010-02-09 01:29:30 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-09 01:29:30 ----D---- C:\WINDOWS\system32\CatRoot
2010-02-09 01:29:24 ----SD---- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft
2010-02-09 01:29:10 ----D---- C:\Dokumente und Einstellungen
2010-02-09 01:22:35 ----A---- C:\WINDOWS\system32\presetup.cmd
2010-02-09 01:18:11 ----A---- C:\WINDOWS\system32\msjter40.dll
2010-02-09 01:18:11 ----A---- C:\WINDOWS\system32\msjint40.dll
2010-02-09 01:18:11 ----A---- C:\WINDOWS\system32\msjetoledb40.dll
2010-02-09 01:18:10 ----A---- C:\WINDOWS\system32\msltus40.dll
2010-02-09 01:18:10 ----A---- C:\WINDOWS\system32\msjtes40.dll
2010-02-09 01:18:10 ----A---- C:\WINDOWS\system32\msidntld.dll
2010-02-09 01:18:10 ----A---- C:\WINDOWS\system32\mshtmler.dll
2010-02-09 01:18:10 ----A---- C:\WINDOWS\system32\mshtmled.dll
2010-02-09 01:18:06 ----A---- C:\WINDOWS\system32\msorc32r.dll
2010-02-09 01:18:05 ----A---- C:\WINDOWS\system32\msr2cenu.dll
2010-02-09 01:18:05 ----A---- C:\WINDOWS\system32\msorcl32.dll
2010-02-09 01:18:05 ----A---- C:\WINDOWS\system32\msnetobj.dll
2010-02-09 01:18:04 ----A---- C:\WINDOWS\system32\mspmsnsv.dll
2010-02-09 01:18:04 ----A---- C:\WINDOWS\system32\mspbde40.dll
2010-02-09 01:18:04 ----A---- C:\WINDOWS\system32\mspatcha.dll
2010-02-09 01:18:04 ----A---- C:\WINDOWS\system32\msftedit.dll
2010-02-09 01:18:03 ----A---- C:\WINDOWS\system32\mscpxl32.dLL
2010-02-09 01:18:03 ----A---- C:\WINDOWS\system32\mscpx32r.dLL
2010-02-09 01:18:03 ----A---- C:\WINDOWS\system32\mscdexnt.exe
2010-02-09 01:18:03 ----A---- C:\WINDOWS\system32\msaudite.dll
2010-02-09 01:18:02 ----A---- C:\WINDOWS\system32\msapsspc.dll
2010-02-09 01:18:02 ----A---- C:\WINDOWS\system32\mpnotify.exe
2010-02-09 01:18:01 ----A---- C:\WINDOWS\system32\msaatext.dll
2010-02-09 01:18:00 ----A---- C:\WINDOWS\system32\msexcl40.dll
2010-02-09 01:18:00 ----A---- C:\WINDOWS\system32\msexch40.dll
2010-02-09 01:18:00 ----A---- C:\WINDOWS\system32\msencode.dll
2010-02-09 01:17:59 ----A---- C:\WINDOWS\system32\msdadiag.dll
2010-02-09 01:17:58 ----A---- C:\WINDOWS\system32\netapi32.dll
2010-02-09 01:17:58 ----A---- C:\WINDOWS\system32\msratelc.dll
2010-02-09 01:17:57 ----A---- C:\WINDOWS\system32\nddeapir.exe
2010-02-09 01:17:57 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2010-02-09 01:17:57 ----A---- C:\WINDOWS\system32\narrhook.dll
2010-02-09 01:17:57 ----A---- C:\WINDOWS\system32\narrator.exe
2010-02-09 01:17:56 ----A---- C:\WINDOWS\system32\nddenb32.dll
2010-02-09 01:17:53 ----A---- C:\WINDOWS\system32\mswdat10.dll
2010-02-09 01:17:53 ----A---- C:\WINDOWS\system32\msvcrt20.dll
2010-02-09 01:17:53 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2010-02-09 01:17:53 ----A---- C:\WINDOWS\system32\msvbvm50.dll
2010-02-09 01:17:53 ----A---- C:\WINDOWS\system32\mstlsapi.dll
2010-02-09 01:17:53 ----A---- C:\WINDOWS\system32\mstext40.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\mswebdvd.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\msvidctl.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\msvidc32.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\msvcrt40.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\mssign32.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\msrecr40.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\msrd3x40.dll
2010-02-09 01:17:52 ----A---- C:\WINDOWS\system32\msrd2x40.dll
2010-02-09 01:17:51 ----A---- C:\WINDOWS\system32\msshavmsg.dll
2010-02-09 01:17:51 ----A---- C:\WINDOWS\system32\msrepl40.dll
2010-02-09 01:17:51 ----A---- C:\WINDOWS\system32\msrclr40.dll
2010-02-09 01:17:51 ----A---- C:\WINDOWS\system32\msrating.dll
2010-02-09 01:17:50 ----A---- C:\WINDOWS\system32\napmontr.dll
2010-02-09 01:17:50 ----A---- C:\WINDOWS\system32\napipsec.dll
2010-02-09 01:17:50 ----A---- C:\WINDOWS\system32\mycomput.dll
2010-02-09 01:17:49 ----A---- C:\WINDOWS\system32\msxbde40.dll
2010-02-09 01:17:49 ----A---- C:\WINDOWS\system32\mswstr10.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\mciole16.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\mciavi32.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\mchgrcoi.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\mcdsrv32.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\mcastmib.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\mapistub.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\mag_hook.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\lzexpand.dll
2010-02-09 01:17:43 ----A---- C:\WINDOWS\system32\loghours.dll
2010-02-09 01:17:42 ----A---- C:\WINDOWS\system32\lprmonui.dll
2010-02-09 01:17:42 ----A---- C:\WINDOWS\system32\logagent.exe
2010-02-09 01:17:42 ----A---- C:\WINDOWS\system32\localspl.dll
2010-02-09 01:17:42 ----A---- C:\WINDOWS\system32\localsec.dll
2010-02-09 01:17:41 ----A---- C:\WINDOWS\system32\loadperf.dll
2010-02-09 01:17:41 ----A---- C:\WINDOWS\system32\linkinfo.dll
2010-02-09 01:17:40 ----A---- C:\WINDOWS\system32\mciqtz32.dll
2010-02-09 01:17:40 ----A---- C:\WINDOWS\system32\mciole32.dll
2010-02-09 01:17:39 ----A---- C:\WINDOWS\system32\mmutilse.dll
2010-02-09 01:17:39 ----A---- C:\WINDOWS\system32\mmcshext.dll
2010-02-09 01:17:39 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2010-02-09 01:17:39 ----A---- C:\WINDOWS\system32\mimefilt.dll
2010-02-09 01:17:38 ----A---- C:\WINDOWS\system32\mmsystem.dll
2010-02-09 01:17:38 ----A---- C:\WINDOWS\system32\miglibnt.dll
2010-02-09 01:17:37 ----A---- C:\WINDOWS\system32\MP4SDMOD.dll
2010-02-09 01:17:37 ----A---- C:\WINDOWS\system32\MP43DMOD.dll
2010-02-09 01:17:37 ----A---- C:\WINDOWS\system32\mfc42loc.dll
2010-02-09 01:17:37 ----A---- C:\WINDOWS\system32\mfc40loc.dll
2010-02-09 01:17:36 ----A---- C:\WINDOWS\system32\MPG4DMOD.dll
2010-02-09 01:17:36 ----A---- C:\WINDOWS\system32\mountvol.exe
2010-02-09 01:17:35 ----A---- C:\WINDOWS\system32\moricons.dll
2010-02-09 01:17:30 ----A---- C:\WINDOWS\system32\qagentrt.dll
2010-02-09 01:17:30 ----A---- C:\WINDOWS\system32\pstorsvc.dll
2010-02-09 01:17:30 ----A---- C:\WINDOWS\system32\psnppagn.dll
2010-02-09 01:17:30 ----A---- C:\WINDOWS\system32\pschdprf.ini
2010-02-09 01:17:30 ----A---- C:\WINDOWS\system32\pschdprf.dll
2010-02-09 01:17:29 ----A---- C:\WINDOWS\system32\qedwipes.dll
2010-02-09 01:17:29 ----A---- C:\WINDOWS\system32\qcliprov.dll
2010-02-09 01:17:29 ----A---- C:\WINDOWS\system32\prodspec.ini
2010-02-09 01:17:28 ----A---- C:\WINDOWS\system32\regedt32.exe
2010-02-09 01:17:28 ----A---- C:\WINDOWS\system32\proxycfg.exe
2010-02-09 01:17:28 ----A---- C:\WINDOWS\system32\proquota.exe
2010-02-09 01:17:28 ----A---- C:\WINDOWS\system32\prflbmsg.dll
2010-02-09 01:17:27 ----A---- C:\WINDOWS\system32\regsvr32.exe
2010-02-09 01:17:26 ----A---- C:\WINDOWS\system32\rcbdyctl.dll
2010-02-09 01:17:26 ----A---- C:\WINDOWS\system32\rasphone.exe
2010-02-09 01:17:26 ----A---- C:\WINDOWS\system32\rasmontr.dll
2010-02-09 01:17:26 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2010-02-09 01:17:25 ----A---- C:\WINDOWS\system32\rasautou.exe
2010-02-09 01:17:25 ----A---- C:\WINDOWS\system32\rasapi32.dll
2010-02-09 01:17:25 ----A---- C:\WINDOWS\system32\powrprof.dll
2010-02-09 01:17:24 ----A---- C:\WINDOWS\system32\perfproc.dll
2010-02-09 01:17:22 ----A---- C:\WINDOWS\system32\perffilt.ini
2010-02-09 01:17:22 ----A---- C:\WINDOWS\system32\perfdisk.dll
2010-02-09 01:17:22 ----A---- C:\WINDOWS\system32\perfctrs.dll
2010-02-09 01:17:21 ----A---- C:\WINDOWS\system32\powercfg.exe
2010-02-09 01:17:21 ----A---- C:\WINDOWS\system32\polstore.dll
2010-02-09 01:17:17 ----A---- C:\WINDOWS\system32\serwvdrv.dll
2010-02-09 01:17:17 ----A---- C:\WINDOWS\system32\services.msc
2010-02-09 01:17:17 ----A---- C:\WINDOWS\system32\photowiz.dll
2010-02-09 01:17:16 ----A---- C:\WINDOWS\system32\setupdll.dll
2010-02-09 01:17:16 ----A---- C:\WINDOWS\system32\setupapi.dll
2010-02-09 01:17:16 ----A---- C:\WINDOWS\system32\services.exe
2010-02-09 01:17:16 ----A---- C:\WINDOWS\system32\serialui.dll
2010-02-09 01:17:15 ----A---- C:\WINDOWS\system32\sendmail.dll
2010-02-09 01:17:15 ----A---- C:\WINDOWS\system32\sendcmsg.dll
2010-02-09 01:17:14 ----A---- C:\WINDOWS\system32\shutdown.exe
2010-02-09 01:17:14 ----A---- C:\WINDOWS\system32\shmgrate.exe
2010-02-09 01:17:13 ----A---- C:\WINDOWS\system32\sigverif.exe
2010-02-09 01:17:13 ----A---- C:\WINDOWS\system32\shfolder.dll
2010-02-09 01:17:11 ----A---- C:\WINDOWS\system32\sfcfiles.dll
2010-02-09 01:17:11 ----A---- C:\WINDOWS\system32\security.dll
2010-02-09 01:17:10 ----A---- C:\WINDOWS\system32\rundll32.exe
2010-02-09 01:17:10 ----A---- C:\WINDOWS\system32\rtipxmib.dll
2010-02-09 01:17:10 ----A---- C:\WINDOWS\system32\rtcshare.exe
2010-02-09 01:17:09 ----A---- C:\WINDOWS\system32\rsvpperf.dll
2010-02-09 01:17:09 ----A---- C:\WINDOWS\system32\riched32.dll
2010-02-09 01:17:09 ----A---- C:\WINDOWS\system32\riched20.dll
2010-02-09 01:17:09 ----A---- C:\WINDOWS\system32\resutils.dll
2010-02-09 01:17:08 ----A---- C:\WINDOWS\system32\routetab.dll
2010-02-09 01:17:08 ----A---- C:\WINDOWS\system32\routemon.exe
2010-02-09 01:17:07 ----A---- C:\WINDOWS\system32\seclogon.dll
2010-02-09 01:17:07 ----A---- C:\WINDOWS\system32\sdhcinst.dll
2010-02-09 01:17:07 ----A---- C:\WINDOWS\system32\scardssp.dll
2010-02-09 01:17:07 ----A---- C:\WINDOWS\system32\scarddlg.dll
2010-02-09 01:17:07 ----A---- C:\WINDOWS\system32\savedump.exe
2010-02-09 01:17:06 ----A---- C:\WINDOWS\system32\sclgntfy.dll
2010-02-09 01:17:06 ----A---- C:\WINDOWS\system32\schannel.dll
2010-02-09 01:17:06 ----A---- C:\WINDOWS\system32\scardsvr.exe
2010-02-09 01:17:03 ----A---- C:\WINDOWS\system32\nslookup.exe
2010-02-09 01:17:03 ----A---- C:\WINDOWS\system32\npptools.dll
2010-02-09 01:17:02 ----RASH---- C:\NTDETECT.COM
2010-02-09 01:17:00 ----A---- C:\WINDOWS\system32\netevent.dll
2010-02-09 01:16:58 ----A---- C:\WINDOWS\system32\netsetup.exe
2010-02-09 01:16:57 ----A---- C:\WINDOWS\system32\netshell.dll
2010-02-09 01:16:56 ----A---- C:\WINDOWS\system32\netplwiz.dll
2010-02-09 01:16:56 ----A---- C:\WINDOWS\system32\netlogon.dll
2010-02-09 01:16:54 ----A---- C:\WINDOWS\system32\opengl32.dll
2010-02-09 01:16:54 ----A---- C:\WINDOWS\system32\olethk32.dll
2010-02-09 01:16:54 ----A---- C:\WINDOWS\system32\olecnv32.dll
2010-02-09 01:16:54 ----A---- C:\WINDOWS\system32\olecli32.dll
2010-02-09 01:16:53 ----A---- C:\WINDOWS\system32\pautoenr.dll
2010-02-09 01:16:53 ----A---- C:\WINDOWS\system32\olesvr32.dll
2010-02-09 01:16:53 ----A---- C:\WINDOWS\system32\olepro32.dll
2010-02-09 01:16:53 ----A---- C:\WINDOWS\system32\oleaut32.dll
2010-02-09 01:16:53 ----A---- C:\WINDOWS\system32\oleaccrc.dll
2010-02-09 01:16:53 ----A---- C:\WINDOWS\system32\ole2disp.dll
2010-02-09 01:16:51 ----A---- C:\WINDOWS\system32\pathping.exe
2010-02-09 01:16:51 ----A---- C:\WINDOWS\system32\packager.exe
2010-02-09 01:16:51 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2010-02-09 01:16:51 ----A---- C:\WINDOWS\system32\p2pgraph.dll
2010-02-09 01:16:51 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
2010-02-09 01:16:51 ----A---- C:\WINDOWS\system32\osuninst.exe
2010-02-09 01:16:51 ----A---- C:\WINDOWS\system32\osuninst.dll
2010-02-09 01:16:50 ----A---- C:\WINDOWS\system32\xpob2res.dll
2010-02-09 01:16:50 ----A---- C:\WINDOWS\system32\odbcad32.exe
2010-02-09 01:16:50 ----A---- C:\WINDOWS\system32\odbc32gt.dll
2010-02-09 01:16:50 ----A---- C:\WINDOWS\system32\odbc16gt.dll
2010-02-09 01:16:50 ----A---- C:\WINDOWS\system32\nwprovau.dll
2010-02-09 01:16:49 ----A---- C:\WINDOWS\system32\ocmanage.dll
2010-02-09 01:16:49 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2010-02-09 01:16:49 ----A---- C:\WINDOWS\system32\ntmsoprq.msc
2010-02-09 01:16:49 ----A---- C:\WINDOWS\system32\ntlanui2.dll
2010-02-09 01:16:49 ----A---- C:\WINDOWS\system32\ntlanman.dll
2010-02-09 01:16:48 ----A---- C:\WINDOWS\system32\ntsdexts.dll
2010-02-09 01:16:47 ----A---- C:\WINDOWS\system32\odtext32.dll
2010-02-09 01:16:47 ----A---- C:\WINDOWS\system32\oddbse32.dll
2010-02-09 01:16:47 ----A---- C:\WINDOWS\system32\odbctrac.dll
2010-02-09 01:16:47 ----A---- C:\WINDOWS\system32\odbcp32r.dll
2010-02-09 01:16:46 ----A---- C:\WINDOWS\system32\odbcjt32.dll
2010-02-09 01:16:46 ----A---- C:\WINDOWS\system32\odbcji32.dll
2010-02-09 01:16:46 ----A---- C:\WINDOWS\system32\odbccu32.dll
2010-02-09 01:16:46 ----A---- C:\WINDOWS\system32\odbccr32.dll
2010-02-09 01:16:46 ----A---- C:\WINDOWS\system32\odbccp32.dll
2010-02-09 01:16:46 ----A---- C:\WINDOWS\system32\odbcconf.exe
2010-02-09 01:16:46 ----A---- C:\WINDOWS\system32\odbcconf.dll
2010-02-09 01:16:45 ----A---- C:\WINDOWS\system32\compmgmt.msc
2010-02-09 01:16:45 ----A---- C:\WINDOWS\system32\compatUI.dll
2010-02-09 01:16:45 ----A---- C:\WINDOWS\system32\comdlg32.dll
2010-02-09 01:16:45 ----A---- C:\WINDOWS\system32\comctl32.dll
2010-02-09 01:16:45 ----A---- C:\WINDOWS\system32\cmsetACL.dll
2010-02-09 01:16:45 ----A---- C:\WINDOWS\system32\cmdial32.dll
2010-02-09 01:16:44 ----A---- C:\WINDOWS\system32\cliconfg.exe
2010-02-09 01:16:42 ----A---- C:\WINDOWS\system32\compstui.dll
2010-02-09 01:16:40 ----A---- C:\WINDOWS\system32\cliconfg.dll
2010-02-09 01:16:38 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2010-02-09 01:16:37 ----A---- C:\WINDOWS\system32\shellstyle.dll
2010-02-09 01:16:36 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2010-02-09 01:16:35 ----A---- C:\WINDOWS\system32\diskcopy.com
2010-02-09 01:16:35 ----A---- C:\WINDOWS\system32\diskcomp.com
2010-02-09 01:16:35 ----A---- C:\WINDOWS\system32\cidaemon.exe
2010-02-09 01:16:34 ----A---- C:\WINDOWS\system32\diskmgmt.msc
2010-02-09 01:16:34 ----A---- C:\WINDOWS\system32\diskcopy.dll
2010-02-09 01:16:33 ----A---- C:\WINDOWS\system32\dimsntfy.dll
2010-02-09 01:16:33 ----A---- C:\WINDOWS\system32\diactfrm.dll
2010-02-09 01:16:32 ----A---- C:\WINDOWS\system32\docprop2.dll
2010-02-09 01:16:32 ----A---- C:\WINDOWS\system32\dimsroam.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dpmodemx.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dot3gpclnt.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dmserver.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dmscript.dll
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dmremote.exe
2010-02-09 01:16:31 ----A---- C:\WINDOWS\system32\dllhst3g.exe
2010-02-09 01:16:30 ----A---- C:\WINDOWS\system32\dmloader.dll
2010-02-09 01:16:30 ----A---- C:\WINDOWS\system32\dmdskres.dll
2010-02-09 01:16:30 ----A---- C:\WINDOWS\system32\diskperf.exe
2010-02-09 01:16:30 ----A---- C:\WINDOWS\system32\diskpart.exe
2010-02-09 01:16:29 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2010-02-09 01:16:29 ----A---- C:\WINDOWS\system32\dmconfig.dll
2010-02-09 01:16:29 ----A---- C:\WINDOWS\system32\dmcompos.dll
2010-02-09 01:16:29 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2010-02-09 01:16:29 ----A---- C:\WINDOWS\system32\csseqchk.dll
2010-02-09 01:16:28 ----A---- C:\WINDOWS\system32\d3dpmesh.dll
2010-02-09 01:16:28 ----A---- C:\WINDOWS\system32\d3dim700.dll
2010-02-09 01:16:27 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2010-02-09 01:16:27 ----A---- C:\WINDOWS\system32\cryptnet.dll
2010-02-09 01:16:27 ----A---- C:\WINDOWS\system32\cryptext.dll
2010-02-09 01:16:26 ----A---- C:\WINDOWS\system32\deskperf.dll
2010-02-09 01:16:26 ----A---- C:\WINDOWS\system32\cryptdll.dll
2010-02-09 01:16:26 ----A---- C:\WINDOWS\system32\cryptdlg.dll
2010-02-09 01:16:25 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2010-02-09 01:16:25 ----A---- C:\WINDOWS\system32\dfsshlex.dll
2010-02-09 01:16:25 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
2010-02-09 01:16:25 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2010-02-09 01:16:25 ----A---- C:\WINDOWS\system32\ddeshare.exe
2010-02-09 01:16:25 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
2010-02-09 01:16:24 ----A---- C:\WINDOWS\system32\dciman32.dll
2010-02-09 01:16:24 ----A---- C:\WINDOWS\system32\dataclen.dll
2010-02-09 01:16:23 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
2010-02-09 01:16:23 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2010-02-09 01:16:21 ----A---- C:\WINDOWS\system32\advapi32.dll
2010-02-09 01:16:21 ----A---- C:\WINDOWS\system32\adsmsext.dll
2010-02-09 01:16:20 ----A---- C:\WINDOWS\system32\asycfilt.dll
2010-02-09 01:16:20 ----A---- C:\WINDOWS\system32\asferror.dll
2010-02-09 01:16:20 ----A---- C:\WINDOWS\system32\amstream.dll
2010-02-09 01:16:20 ----A---- C:\WINDOWS\system32\admparse.dll
2010-02-09 01:16:18 ----A---- C:\WINDOWS\system32\actxprxy.dll
2010-02-09 01:16:18 ----A---- C:\WINDOWS\system32\actmovie.exe
2010-02-09 01:16:16 ----A---- C:\WINDOWS\system32\activeds.dll
2010-02-09 01:16:14 ----A---- C:\WINDOWS\system32\browsewm.dll
2010-02-09 01:16:14 ----A---- C:\WINDOWS\system32\browseui.dll
2010-02-09 01:16:14 ----A---- C:\WINDOWS\system32\browselc.dll
2010-02-09 01:16:12 ----A---- C:\WINDOWS\system32\capesnpn.dll
2010-02-09 01:16:11 ----A---- C:\WINDOWS\system32\avifil32.dll
2010-02-09 01:16:11 ----A---- C:\WINDOWS\system32\avicap32.dll
2010-02-09 01:16:11 ----A---- C:\WINDOWS\system32\autodisc.dll
2010-02-09 01:16:11 ----A---- C:\WINDOWS\system32\autoconv.exe
2010-02-09 01:16:10 ----A---- C:\WINDOWS\system32\auditusr.exe
2010-02-09 01:16:09 ----A---- C:\WINDOWS\system32\audiosrv.dll
2010-02-09 01:16:09 ----A---- C:\WINDOWS\system32\atmpvcno.dll
2010-02-09 01:16:08 ----A---- C:\WINDOWS\system32\bootvrfy.exe
2010-02-09 01:16:07 ----A---- C:\WINDOWS\system32\dpnmodem.dll
2010-02-09 01:16:07 ----A---- C:\WINDOWS\system32\blastcln.exe
2010-02-09 01:16:07 ----A---- C:\WINDOWS\system32\blackbox.dll
2010-02-09 01:16:07 ----A---- C:\WINDOWS\system32\batmeter.dll
2010-02-09 01:16:06 ----A---- C:\WINDOWS\system32\ipconfig.exe
2010-02-09 01:16:06 ----A---- C:\WINDOWS\system32\iologmsg.dll
2010-02-09 01:16:06 ----A---- C:\WINDOWS\system32\infosoft.dll
2010-02-09 01:16:05 ----A---- C:\WINDOWS\system32\inetppui.dll
2010-02-09 01:16:05 ----A---- C:\WINDOWS\system32\inetmib1.dll
2010-02-09 01:16:05 ----A---- C:\WINDOWS\system32\inetcplc.dll
2010-02-09 01:16:05 ----A---- C:\WINDOWS\system32\imeshare.dll
2010-02-09 01:16:05 ----A---- C:\WINDOWS\system32\imagehlp.dll
2010-02-09 01:16:03 ----A---- C:\WINDOWS\system32\ippromon.dll
2010-02-09 01:16:03 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2010-02-09 01:16:03 ----A---- C:\WINDOWS\system32\iphlpapi.dll
__________________


Alt 17.02.2010, 05:24   #3
.OrangE.
 
PDM.Invader (Loader) - Standard

PDM.Invader (Loader)



2010-02-09 01:16:02 ----A---- C:\WINDOWS\system32\igmpagnt.dll
2010-02-09 01:16:01 ----A---- C:\WINDOWS\system32\iasrecst.dll
2010-02-09 01:16:01 ----A---- C:\WINDOWS\system32\iaspolcy.dll
2010-02-09 01:15:59 ----N---- C:\WINDOWS\system32\iedkcs32.dll
2010-02-09 01:15:59 ----A---- C:\WINDOWS\system32\iernonce.dll
2010-02-09 01:15:58 ----A---- C:\WINDOWS\system32\iexpress.exe
2010-02-09 01:15:57 ----N---- C:\WINDOWS\system32\ie4uinit.exe
2010-02-09 01:15:56 ----A---- C:\WINDOWS\system32\kerberos.dll
2010-02-09 01:15:56 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
2010-02-09 01:15:56 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
2010-02-09 01:15:55 ----A---- C:\WINDOWS\system32\kernel32.dll
2010-02-09 01:15:55 ----A---- C:\WINDOWS\system32\kbdiultn.dll
2010-02-09 01:15:55 ----A---- C:\WINDOWS\system32\kbdit142.dll
2010-02-09 01:15:54 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
2010-02-09 01:15:54 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
2010-02-09 01:15:54 ----A---- C:\WINDOWS\system32\kbdmaori.dll
2010-02-09 01:15:53 ----A---- C:\WINDOWS\system32\licmgr10.dll
2010-02-09 01:15:52 ----A---- C:\WINDOWS\system32\langwrbk.dll
2010-02-09 01:15:51 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
2010-02-09 01:15:51 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
2010-02-09 01:15:51 ----A---- C:\WINDOWS\system32\ipxrtmgr.dll
2010-02-09 01:15:51 ----A---- C:\WINDOWS\system32\ipxroute.exe
2010-02-09 01:15:50 ----A---- C:\WINDOWS\system32\ipxpromn.dll
2010-02-09 01:15:50 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
2010-02-09 01:15:50 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2010-02-09 01:15:50 ----A---- C:\WINDOWS\system32\iprtprio.dll
2010-02-09 01:15:49 ----A---- C:\WINDOWS\system32\kbdinmal.dll
2010-02-09 01:15:49 ----A---- C:\WINDOWS\system32\kbdinben.dll
2010-02-09 01:15:49 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
2010-02-09 01:15:49 ----A---- C:\WINDOWS\system32\ipxmontr.dll
2010-02-09 01:15:49 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
2010-02-09 01:15:49 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2010-02-09 01:15:47 ----A---- C:\WINDOWS\system32\iuengine.dll
2010-02-09 01:15:47 ----A---- C:\WINDOWS\system32\eventvwr.exe
2010-02-09 01:15:46 ----A---- C:\WINDOWS\system32\eventvwr.msc
2010-02-09 01:15:46 ----A---- C:\WINDOWS\system32\eventlog.dll
2010-02-09 01:15:46 ----A---- C:\WINDOWS\system32\eventcls.dll
2010-02-09 01:15:45 ----A---- C:\WINDOWS\system32\eudcedit.exe
2010-02-09 01:15:45 ----A---- C:\WINDOWS\system32\esentutl.exe
2010-02-09 01:15:44 ----A---- C:\WINDOWS\system32\faultrep.dll
2010-02-09 01:15:44 ----A---- C:\WINDOWS\system32\fastopen.exe
2010-02-09 01:15:44 ----A---- C:\WINDOWS\system32\esentprf.ini
2010-02-09 01:15:44 ----A---- C:\WINDOWS\system32\esentprf.dll
2010-02-09 01:15:43 ----A---- C:\WINDOWS\system32\feclient.dll
2010-02-09 01:15:43 ----A---- C:\WINDOWS\system32\extrac32.exe
2010-02-09 01:15:42 ----A---- C:\WINDOWS\explorer.exe
2010-02-09 01:15:41 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2010-02-09 01:15:41 ----A---- C:\WINDOWS\system32\dsprpres.dll
2010-02-09 01:15:41 ----A---- C:\WINDOWS\system32\dskquoui.dll
2010-02-09 01:15:41 ----A---- C:\WINDOWS\system32\dskquota.dll
2010-02-09 01:15:41 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
2010-02-09 01:15:40 ----A---- C:\WINDOWS\system32\dsound3d.dll
2010-02-09 01:15:40 ----A---- C:\WINDOWS\system32\drmclien.dll
2010-02-09 01:15:40 ----A---- C:\WINDOWS\system32\dpwsockx.dll
2010-02-09 01:15:40 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2010-02-09 01:15:40 ----A---- C:\WINDOWS\system32\dpserial.dll
2010-02-09 01:15:40 ----A---- C:\WINDOWS\system32\dpnwsock.dll
2010-02-09 01:15:39 ----A---- C:\WINDOWS\system32\drwtsn32.exe
2010-02-09 01:15:39 ----A---- C:\WINDOWS\system32\drwatson.exe
2010-02-09 01:15:39 ----A---- C:\WINDOWS\system32\drmv2clt.dll
2010-02-09 01:15:38 ----A---- C:\WINDOWS\system32\eappgnui.dll
2010-02-09 01:15:38 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2010-02-09 01:15:38 ----A---- C:\WINDOWS\system32\eapolqec.dll
2010-02-09 01:15:37 ----A---- C:\WINDOWS\system32\hal.dll
2010-02-09 01:15:37 ----A---- C:\WINDOWS\system32\eappprxy.dll
2010-02-09 01:15:37 ----A---- C:\WINDOWS\system32\eapphost.dll
2010-02-09 01:15:36 ----A---- C:\WINDOWS\system32\graphics.com
2010-02-09 01:15:36 ----A---- C:\WINDOWS\system32\graftabl.com
2010-02-09 01:15:35 ----A---- C:\WINDOWS\system32\hostname.exe
2010-02-09 01:15:33 ----A---- C:\WINDOWS\system32\framebuf.dll
2010-02-09 01:15:33 ----A---- C:\WINDOWS\system32\forcedos.exe
2010-02-09 01:15:33 ----A---- C:\WINDOWS\system32\fontview.exe
2010-02-09 01:15:32 ----A---- C:\WINDOWS\system32\fldrclnr.dll
2010-02-09 01:15:32 ----A---- C:\WINDOWS\system32\filemgmt.dll
2010-02-09 01:15:28 ----A---- C:\WINDOWS\system32\spnpinst.exe
2010-02-09 01:15:27 ----A---- C:\WINDOWS\system32\userinit.exe
2010-02-09 01:15:22 ----A---- C:\WINDOWS\system32\wmerrDEU.dll
2010-02-09 01:15:21 ----A---- C:\WINDOWS\system32\upnphost.dll
2010-02-09 01:15:21 ----A---- C:\WINDOWS\system32\upnpcont.exe
2010-02-09 01:15:20 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2010-02-09 01:15:17 ----A---- C:\WINDOWS\system32\sprestrt.exe
2010-02-09 01:15:16 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2010-02-09 01:15:16 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2010-02-09 01:15:16 ----A---- C:\WINDOWS\system32\sqlunirl.dll
2010-02-09 01:15:16 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2010-02-09 01:15:15 ----A---- C:\WINDOWS\system32\wlnotify.dll
2010-02-09 01:15:15 ----A---- C:\WINDOWS\system32\winshfhc.dll
2010-02-09 01:15:14 ----A---- C:\WINDOWS\system32\winscard.dll
2010-02-09 01:15:13 ----A---- C:\WINDOWS\system32\winntbbu.dll
2010-02-09 01:15:13 ----A---- C:\WINDOWS\system32\verifier.exe
2010-02-09 01:15:12 ----A---- C:\WINDOWS\system32\winspool.exe
2010-02-09 01:15:11 ----A---- C:\WINDOWS\system32\winlogon.exe
2010-02-09 01:15:10 ----A---- C:\WINDOWS\system32\snmpsnap.dll
2010-02-09 01:15:05 ----A---- C:\WINDOWS\system32\wintrust.dll
2010-02-09 01:15:05 ----A---- C:\WINDOWS\system32\verifier.dll
2010-02-09 01:15:05 ----A---- C:\WINDOWS\system32\verclsid.exe
2010-02-09 01:15:04 ----A---- C:\WINDOWS\system32\vbajet32.dll
2010-02-09 01:15:03 ----A---- C:\WINDOWS\system32\vdmredir.dll
2010-02-09 01:15:03 ----A---- C:\WINDOWS\system32\vbscript.dll
2010-02-09 01:15:02 ----A---- C:\WINDOWS\twain_32.dll
2010-02-09 01:15:02 ----A---- C:\WINDOWS\system32\WMNetmgr.dll
2010-02-09 01:15:02 ----A---- C:\WINDOWS\system32\syssetup.dll
2010-02-09 01:15:02 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2010-02-09 01:15:01 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2010-02-09 01:15:01 ----A---- C:\WINDOWS\system32\wmpshell.dll
2010-02-09 01:15:00 ----A---- C:\WINDOWS\system32\umdmxfrm.dll
2010-02-09 01:15:00 ----A---- C:\WINDOWS\system32\udhisapi.dll
2010-02-09 01:14:59 ----A---- C:\WINDOWS\system32\tzchange.exe
2010-02-09 01:14:58 ----A---- C:\WINDOWS\twunk_16.exe
2010-02-09 01:14:58 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2010-02-09 01:14:57 ----A---- C:\WINDOWS\twunk_32.exe
2010-02-09 01:14:55 ----A---- C:\WINDOWS\system32\tsappcmp.dll
2010-02-09 01:14:55 ----A---- C:\WINDOWS\system32\tourstart.exe
2010-02-09 01:14:54 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2010-02-09 01:14:54 ----A---- C:\WINDOWS\system32\wmstream.dll
2010-02-09 01:14:54 ----A---- C:\WINDOWS\system32\tracert6.exe
2010-02-09 01:14:54 ----A---- C:\WINDOWS\system32\toolhelp.dll
2010-02-09 01:14:53 ----A---- C:\WINDOWS\system32\wstdecod.dll
2010-02-09 01:14:53 ----A---- C:\WINDOWS\system32\wshtcpip.dll
2010-02-09 01:14:53 ----A---- C:\WINDOWS\system32\WMSPDMOE.dll
2010-02-09 01:14:53 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
2010-02-09 01:14:53 ----A---- C:\WINDOWS\system32\tapiperf.dll
2010-02-09 01:14:52 ----A---- C:\WINDOWS\system32\wmspdmod.dll
2010-02-09 01:14:51 ----A---- C:\WINDOWS\system32\wshnetbs.dll
2010-02-09 01:14:51 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
2010-02-09 01:14:51 ----A---- C:\WINDOWS\system32\tcpmonui.dll
2010-02-09 01:14:51 ----A---- C:\WINDOWS\system32\tcmsetup.exe
2010-02-09 01:14:44 ----A---- C:\WINDOWS\system32\stobject.dll
2010-02-09 01:14:43 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2010-02-09 01:14:42 ----A---- C:\WINDOWS\system32\unimdmat.dll
2010-02-09 01:14:42 ----A---- C:\WINDOWS\system32\strmfilt.dll
2010-02-09 01:14:40 ----A---- C:\WINDOWS\system32\unlodctr.exe
2010-02-09 01:14:39 ----A---- C:\WINDOWS\system32\wextract.exe
2010-02-09 01:14:37 ----A---- C:\WINDOWS\system32\webcheck.dll
2010-02-09 01:14:35 ----A---- C:\WINDOWS\system32\win32spl.dll
2010-02-09 01:14:35 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2010-02-09 01:14:35 ----A---- C:\WINDOWS\system32\smlogcfg.dll
2010-02-09 01:14:34 ----A---- C:\WINDOWS\system32\winbrand.dll
2010-02-09 01:14:34 ----A---- C:\WINDOWS\system32\wiashext.dll
2010-02-09 01:14:34 ----A---- C:\WINDOWS\system32\wiaservc.dll
2010-02-09 01:14:33 ----A---- C:\WINDOWS\system32\wiavideo.dll
2010-02-09 01:14:33 ----A---- C:\WINDOWS\system32\wiadefui.dll
2010-02-09 01:14:33 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2010-02-09 01:14:33 ----A---- C:\WINDOWS\system32\vssadmin.exe
2010-02-09 01:14:32 ----A---- C:\WINDOWS\vmmreg32.dll
2010-02-09 01:14:24 ----A---- C:\WINDOWS\system32\slayerxp.dll
2010-02-09 01:14:23 ----A---- C:\WINDOWS\system32\slbrccsp.dll
2010-02-09 01:14:06 ----A---- C:\WINDOWS\winhlp32.exe
2010-02-09 01:14:06 ----A---- C:\WINDOWS\system32\winipsec.dll
2010-02-09 01:14:03 ----A---- C:\WINDOWS\system32\dmadmin.exe
2010-02-09 01:14:03 ----A---- C:\WINDOWS\system32\dllhost.exe
2010-02-09 01:14:02 ----A---- C:\WINDOWS\system32\dhcpqec.dll
2010-02-09 01:14:02 ----A---- C:\WINDOWS\system32\dhcpmon.dll
2010-02-09 01:14:01 ----A---- C:\WINDOWS\system32\ipmontr.dll
2010-02-09 01:14:00 ----N---- C:\WINDOWS\system32\iepeers.dll
2010-02-09 01:14:00 ----A---- C:\WINDOWS\system32\wmsdmod.dll
2010-02-09 01:13:59 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
2010-02-09 01:13:59 ----A---- C:\WINDOWS\system32\lnkstub.exe
2010-02-09 01:13:59 ----A---- C:\WINDOWS\system32\dinput8.dll
2010-02-09 01:13:58 ----A---- C:\WINDOWS\system32\iesetup.dll
2010-02-09 01:13:57 ----A---- C:\WINDOWS\system32\wmphoto.dll
2010-02-09 01:13:57 ----A---- C:\WINDOWS\system32\wmpcore.dll
2010-02-09 01:13:56 ----A---- C:\WINDOWS\system32\loadfix.com
2010-02-09 01:13:55 ----A---- C:\WINDOWS\system32\typelib.dll
2010-02-09 01:13:55 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2010-02-09 01:13:53 ----A---- C:\WINDOWS\system32\modemui.dll
2010-02-09 01:13:52 ----A---- C:\WINDOWS\system32\umandlg.dll
2010-02-09 01:13:52 ----A---- C:\WINDOWS\system32\dpwsock.dll
2010-02-09 01:13:52 ----A---- C:\WINDOWS\system32\dpvoice.dll
2010-02-09 01:13:50 ----A---- C:\WINDOWS\system32\logonui.exe
2010-02-09 01:13:49 ----A---- C:\WINDOWS\system32\locator.exe
2010-02-09 01:13:49 ----A---- C:\WINDOWS\system32\localui.dll
2010-02-09 01:13:49 ----A---- C:\WINDOWS\system32\docprop.dll
2010-02-09 01:13:49 ----A---- C:\WINDOWS\system32\dmsynth.dll
2010-02-09 01:13:49 ----A---- C:\WINDOWS\system32\dmstyle.dll
2010-02-09 01:13:47 ----A---- C:\WINDOWS\system32\dot3msm.dll
2010-02-09 01:13:46 ----A---- C:\WINDOWS\system32\dot3svc.dll
2010-02-09 01:13:45 ----A---- C:\WINDOWS\system32\dot3dlg.dll
2010-02-09 01:13:45 ----A---- C:\WINDOWS\system32\dot3cfg.dll
2010-02-09 01:13:45 ----A---- C:\WINDOWS\system32\dot3api.dll
2010-02-09 01:13:41 ----A---- C:\WINDOWS\system32\msdxmlc.dll
2010-02-09 01:13:39 ----A---- C:\WINDOWS\system32\wininet.dll
2010-02-09 01:13:38 ----A---- C:\WINDOWS\system32\msimg32.dll
2010-02-09 01:13:38 ----A---- C:\WINDOWS\system32\msieftp.dll
2010-02-09 01:13:37 ----A---- C:\WINDOWS\system32\tracert.exe
2010-02-09 01:13:37 ----A---- C:\WINDOWS\system32\msjet40.dll
2010-02-09 01:13:37 ----A---- C:\WINDOWS\system32\msiexec.exe
2010-02-09 01:13:37 ----A---- C:\WINDOWS\system32\imgutil.dll
2010-02-09 01:13:36 ----A---- C:\WINDOWS\system32\msident.dll
2010-02-09 01:13:34 ----A---- C:\WINDOWS\system32\traffic.dll
2010-02-09 01:13:34 ----A---- C:\WINDOWS\system32\ddrawex.dll
2010-02-09 01:13:32 ----A---- C:\WINDOWS\system32\WMVCore.dll
2010-02-09 01:13:32 ----A---- C:\WINDOWS\system32\winhttp.dll
2010-02-09 01:13:32 ----A---- C:\WINDOWS\system32\devmgmt.msc
2010-02-09 01:13:32 ----A---- C:\WINDOWS\system32\devenum.dll
2010-02-09 01:13:31 ----A---- C:\WINDOWS\system32\wmvdmod.dll
2010-02-09 01:13:31 ----A---- C:\WINDOWS\system32\msacm32.dll
2010-02-09 01:13:31 ----A---- C:\WINDOWS\system32\initpki.dll
2010-02-09 01:13:31 ----A---- C:\WINDOWS\system32\dfrgres.dll
2010-02-09 01:13:31 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2010-02-09 01:13:31 ----A---- C:\WINDOWS\system32\deskmon.dll
2010-02-09 01:13:31 ----A---- C:\WINDOWS\system32\deskadp.dll
2010-02-09 01:13:30 ----A---- C:\WINDOWS\system32\wdigest.dll
2010-02-09 01:13:30 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2010-02-09 01:13:28 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
2010-02-09 01:13:27 ----A---- C:\WINDOWS\system32\ifsutil.dll
2010-02-09 01:13:27 ----A---- C:\WINDOWS\msdfmap.ini
2010-02-09 01:13:26 ----A---- C:\WINDOWS\system32\wowexec.exe
2010-02-09 01:13:26 ----A---- C:\WINDOWS\system32\mscat32.dll
2010-02-09 01:13:26 ----A---- C:\WINDOWS\system32\davclnt.dll
2010-02-09 01:13:25 ----A---- C:\WINDOWS\system32\wpabaln.exe
2010-02-09 01:13:25 ----A---- C:\WINDOWS\system32\dbghelp.dll
2010-02-09 01:13:25 ----A---- C:\WINDOWS\system32\d3dramp.dll
2010-02-09 01:13:23 ----A---- C:\WINDOWS\system32\wldap32.dll
2010-02-09 01:13:23 ----A---- C:\WINDOWS\system32\w32time.dll
2010-02-09 01:13:23 ----A---- C:\WINDOWS\system32\krnl386.exe
2010-02-09 01:13:23 ----A---- C:\WINDOWS\system32\exe2bin.exe
2010-02-09 01:13:19 ----A---- C:\WINDOWS\system32\wiavusd.dll
2010-02-09 01:13:19 ----A---- C:\WINDOWS\system32\w32topl.dll
2010-02-09 01:13:19 ----A---- C:\WINDOWS\system32\mciwave.dll
2010-02-09 01:13:19 ----A---- C:\WINDOWS\system32\hotplug.dll
2010-02-09 01:13:19 ----A---- C:\WINDOWS\system32\fixmapi.exe
2010-02-09 01:13:18 ----A---- C:\WINDOWS\system32\wmdmlog.dll
2010-02-09 01:13:18 ----A---- C:\WINDOWS\system32\jobexec.dll
2010-02-09 01:13:18 ----A---- C:\WINDOWS\system32\iashlpr.dll
2010-02-09 01:13:18 ----A---- C:\WINDOWS\system32\iasacct.dll
2010-02-09 01:13:17 ----N---- C:\WINDOWS\system32\jsproxy.dll
2010-02-09 01:13:17 ----A---- C:\WINDOWS\system32\jscript.dll
2010-02-09 01:13:17 ----A---- C:\WINDOWS\system32\esent97.dll
2010-02-09 01:13:16 ----A---- C:\WINDOWS\system32\kbdbene.dll
2010-02-09 01:13:15 ----A---- C:\WINDOWS\system32\WMADMOE.dll
2010-02-09 01:13:15 ----A---- C:\WINDOWS\system32\httpapi.dll
2010-02-09 01:13:14 ----A---- C:\WINDOWS\system32\WMADMOD.dll
2010-02-09 01:13:13 ----A---- C:\WINDOWS\system32\kbdpash.dll
2010-02-09 01:13:12 ----A---- C:\WINDOWS\system32\wlanapi.dll
2010-02-09 01:13:11 ----A---- C:\WINDOWS\system32\win87em.dll
2010-02-09 01:13:11 ----A---- C:\WINDOWS\system32\uxtheme.dll
2010-02-09 01:13:10 ----A---- C:\WINDOWS\system32\hhsetup.dll
2010-02-09 01:13:08 ----A---- C:\WINDOWS\system32\userenv.dll
2010-02-09 01:13:08 ----A---- C:\WINDOWS\system32\hnetwiz.dll
2010-02-09 01:13:08 ----A---- C:\WINDOWS\system32\hnetmon.dll
2010-02-09 01:13:07 ----A---- C:\WINDOWS\system32\utilman.exe
2010-02-09 01:13:07 ----A---- C:\WINDOWS\system32\mdminst.dll
2010-02-09 01:13:07 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2010-02-09 01:13:06 ----A---- C:\WINDOWS\system32\wifeman.dll
2010-02-09 01:13:06 ----A---- C:\WINDOWS\system32\utildll.dll
2010-02-09 01:13:06 ----A---- C:\WINDOWS\system32\kbdnepr.dll
2010-02-09 01:13:06 ----A---- C:\WINDOWS\system32\h323msp.dll
2010-02-09 01:13:06 ----A---- C:\WINDOWS\system32\findstr.exe
2010-02-09 01:13:05 ----A---- C:\WINDOWS\system32\wmiprop.dll
2010-02-09 01:13:05 ----A---- C:\WINDOWS\system32\vfpodbc.dll
2010-02-09 01:13:05 ----A---- C:\WINDOWS\system32\ir41_qc.dll
2010-02-09 01:13:03 ----A---- C:\WINDOWS\system32\webclnt.dll
2010-02-09 01:13:03 ----A---- C:\WINDOWS\system32\ir50_qc.dll
2010-02-09 01:13:03 ----A---- C:\WINDOWS\system32\ir50_32.dll
2010-02-09 01:13:02 ----A---- C:\WINDOWS\system32\version.dll
2010-02-09 01:13:00 ----A---- C:\WINDOWS\system32\mmcperf.exe
2010-02-09 01:13:00 ----A---- C:\WINDOWS\system32\lprhelp.dll
2010-02-09 01:13:00 ----A---- C:\WINDOWS\system32\ir32_32.dll
2010-02-09 01:13:00 ----A---- C:\WINDOWS\system32\ieaksie.dll
2010-02-09 01:12:59 ----A---- C:\WINDOWS\system32\uniplat.dll
2010-02-09 01:12:59 ----A---- C:\WINDOWS\system32\mobsync.exe
2010-02-09 01:12:59 ----A---- C:\WINDOWS\system32\mobsync.dll
2010-02-09 01:12:59 ----A---- C:\WINDOWS\system32\ieakeng.dll
2010-02-09 01:12:58 ----A---- C:\WINDOWS\system32\winsock.dll
2010-02-09 01:12:58 ----A---- C:\WINDOWS\system32\mll_qic.dll
2010-02-09 01:12:58 ----A---- C:\WINDOWS\system32\mll_mtf.dll
2010-02-09 01:12:58 ----A---- C:\WINDOWS\system32\drmstor.dll
2010-02-09 01:12:57 ----A---- C:\WINDOWS\system32\wavemsp.dll
2010-02-09 01:12:57 ----A---- C:\WINDOWS\system32\fsquirt.exe
2010-02-09 01:12:56 ----A---- C:\WINDOWS\system32\winhlp32.exe
2010-02-09 01:12:56 ----A---- C:\WINDOWS\system32\mmcbase.dll
2010-02-09 01:12:56 ----A---- C:\WINDOWS\system32\lusrmgr.msc
2010-02-09 01:12:56 ----A---- C:\WINDOWS\system32\ipv6mon.dll
2010-02-09 01:12:55 ----A---- C:\WINDOWS\system32\l2gpstore.dll
2010-02-09 01:12:55 ----A---- C:\WINDOWS\system32\grpconv.exe
2010-02-09 01:12:54 ----A---- C:\WINDOWS\system32\winstrm.dll
2010-02-09 01:12:54 ----A---- C:\WINDOWS\system32\webhits.dll
2010-02-09 01:12:54 ----A---- C:\WINDOWS\system32\eappcfg.dll
2010-02-09 01:12:53 ----A---- C:\WINDOWS\system32\wmerror.dll
2010-02-09 01:12:53 ----A---- C:\WINDOWS\system32\jgsh400.dll
2010-02-09 01:12:53 ----A---- C:\WINDOWS\system32\iassvcs.dll
2010-02-09 01:12:51 ----A---- C:\WINDOWS\system32\jgsd400.dll
2010-02-09 01:12:51 ----A---- C:\WINDOWS\system32\jgmd400.dll
2010-02-09 01:12:51 ----A---- C:\WINDOWS\system32\jgdw400.dll
2010-02-09 01:12:51 ----A---- C:\WINDOWS\system32\jgaw400.dll
2010-02-09 01:12:50 ----A---- C:\WINDOWS\system32\mgmtapi.dll
2010-02-09 01:12:50 ----A---- C:\WINDOWS\system32\jgpl400.dll
2010-02-09 01:12:50 ----A---- C:\WINDOWS\system32\fontext.dll
2010-02-09 01:12:49 ----A---- C:\WINDOWS\system32\midimap.dll
2010-02-09 01:12:49 ----A---- C:\WINDOWS\system32\dumprep.exe
2010-02-09 01:12:48 ----A---- C:\WINDOWS\system32\magnify.exe
2010-02-09 01:12:48 ----A---- C:\WINDOWS\system32\dsuiext.dll
2010-02-09 01:12:48 ----A---- C:\WINDOWS\system32\dsquery.dll
2010-02-09 01:12:47 ----A---- C:\WINDOWS\winhelp.exe
2010-02-09 01:12:47 ----A---- C:\WINDOWS\system32\fontsub.dll
2010-02-09 01:12:47 ----A---- C:\WINDOWS\system32\dxtrans.dll
2010-02-09 01:12:46 ----A---- C:\WINDOWS\system32\mfcsubs.dll
2010-02-09 01:12:46 ----A---- C:\WINDOWS\system32\makecab.exe
2010-02-09 01:12:45 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2010-02-09 01:12:45 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2010-02-09 01:12:43 ----A---- C:\WINDOWS\system32\plustab.dll
2010-02-09 01:12:33 ----R---- C:\WINDOWS\system32\perfmon.msc
2010-02-09 01:12:33 ----A---- C:\WINDOWS\system32\perfnet.dll
2010-02-09 01:12:33 ----A---- C:\WINDOWS\system32\perfmon.exe
2010-02-09 01:12:32 ----A---- C:\WINDOWS\system32\perfwci.ini
2010-02-09 01:12:31 ----A---- C:\WINDOWS\system32\pngfilt.dll
2010-02-09 01:12:31 ----A---- C:\WINDOWS\system32\autolfn.exe
2010-02-09 01:12:30 ----A---- C:\WINDOWS\system32\pstorec.dll
2010-02-09 01:12:27 ----A---- C:\WINDOWS\system32\snmpapi.dll
2010-02-09 01:12:27 ----A---- C:\WINDOWS\system32\qosname.dll
2010-02-09 01:12:26 ----A---- C:\WINDOWS\system32\printui.dll
2010-02-09 01:12:26 ----A---- C:\WINDOWS\system32\atkctrs.dll
2010-02-09 01:12:25 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2010-02-09 01:12:24 ----A---- C:\WINDOWS\system32\softpub.dll
2010-02-09 01:12:23 ----A---- C:\WINDOWS\system32\progman.exe
2010-02-09 01:12:23 ----A---- C:\WINDOWS\system32\profmap.dll
2010-02-09 01:12:23 ----A---- C:\WINDOWS\system32\btpanui.dll
2010-02-09 01:12:23 ----A---- C:\WINDOWS\system32\bthserv.dll
2010-02-09 01:12:23 ----A---- C:\WINDOWS\system32\avifile.dll
2010-02-09 01:12:22 ----N---- C:\WINDOWS\system32\occache.dll
2010-02-09 01:12:20 ----A---- C:\WINDOWS\system32\odexl32.dll
2010-02-09 01:12:16 ----A---- C:\WINDOWS\system32\odpdx32.dll
2010-02-09 01:12:16 ----A---- C:\WINDOWS\system32\odfox32.dll
2010-02-09 01:12:16 ----A---- C:\WINDOWS\system32\odbcbcp.dll
2010-02-09 01:12:15 ----A---- C:\WINDOWS\system32\odbcint.dll
2010-02-09 01:12:15 ----A---- C:\WINDOWS\system32\browser.dll
2010-02-09 01:12:14 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2010-02-09 01:12:14 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2010-02-09 01:12:14 ----A---- C:\WINDOWS\system32\ntlanui.dll
2010-02-09 01:12:14 ----A---- C:\WINDOWS\system32\ntdsapi.dll
2010-02-09 01:12:13 ----A---- C:\WINDOWS\system32\ntshrui.dll
2010-02-09 01:12:13 ----A---- C:\WINDOWS\system32\ntprint.dll
2010-02-09 01:12:13 ----A---- C:\WINDOWS\system32\ntmssvc.dll
2010-02-09 01:12:12 ----A---- C:\WINDOWS\system32\ntmsdba.dll
2010-02-09 01:12:12 ----A---- C:\WINDOWS\system32\ntmsapi.dll
2010-02-09 01:12:12 ----A---- C:\WINDOWS\system32\ntmarta.dll
2010-02-09 01:12:12 ----A---- C:\WINDOWS\system32\ntlsapi.dll
2010-02-09 01:12:11 ----A---- C:\WINDOWS\system32\ntmsmgr.msc
2010-02-09 01:12:11 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
2010-02-09 01:12:11 ----A---- C:\WINDOWS\system32\ntmsevt.dll
2010-02-09 01:12:11 ----A---- C:\WINDOWS\system32\basesrv.dll
2010-02-09 01:12:08 ----A---- C:\WINDOWS\system32\azroles.dll
2010-02-09 01:12:07 ----A---- C:\WINDOWS\system32\spoolsv.exe
2010-02-09 01:12:07 ----A---- C:\WINDOWS\system32\spoolss.dll
2010-02-09 01:12:07 ----A---- C:\WINDOWS\system32\ole2nls.dll
2010-02-09 01:12:07 ----A---- C:\WINDOWS\system32\offfilt.dll
2010-02-09 01:12:05 ----A---- C:\WINDOWS\system32\bidispl.dll
2010-02-09 01:12:04 ----A---- C:\WINDOWS\system32\senscfg.dll
2010-02-09 01:12:04 ----A---- C:\WINDOWS\system32\sensapi.dll
2010-02-09 01:12:04 ----A---- C:\WINDOWS\system32\secur32.dll
2010-02-09 01:12:04 ----A---- C:\WINDOWS\system32\bootvid.dll
2010-02-09 01:12:03 ----A---- C:\WINDOWS\system32\acledit.dll
2010-02-09 01:12:02 ----A---- C:\WINDOWS\system32\aaaamon.dll
2010-02-09 01:12:00 ----A---- C:\WINDOWS\system32\advpack.dll
2010-02-09 01:11:59 ----A---- C:\WINDOWS\system32\sccbase.dll
2010-02-09 01:11:59 ----A---- C:\WINDOWS\system32\adsldpc.dll
2010-02-09 01:11:58 ----A---- C:\WINDOWS\system32\zipfldr.dll
2010-02-09 01:11:58 ----A---- C:\WINDOWS\system32\sdbinst.exe
2010-02-09 01:11:58 ----A---- C:\WINDOWS\system32\scrrnde.dll
2010-02-09 01:11:58 ----A---- C:\WINDOWS\system32\sccsccp.dll
2010-02-09 01:11:57 ----A---- C:\WINDOWS\system32\scredir.dll
2010-02-09 01:11:56 ----A---- C:\WINDOWS\system32\shscrap.dll
2010-02-09 01:11:56 ----A---- C:\WINDOWS\system32\shrpubw.exe
2010-02-09 01:11:56 ----A---- C:\WINDOWS\system32\shmedia.dll
2010-02-09 01:11:53 ----A---- C:\WINDOWS\system32\sisbkup.dll
2010-02-09 01:11:50 ----A---- C:\WINDOWS\system32\shlwapi.dll
2010-02-09 01:11:50 ----A---- C:\WINDOWS\system32\shimgvw.dll
2010-02-09 01:11:50 ----A---- C:\WINDOWS\system32\shimeng.dll
2010-02-09 01:11:50 ----A---- C:\WINDOWS\system32\shell32.dll
2010-02-09 01:11:50 ----A---- C:\WINDOWS\system32\shdoclc.dll
2010-02-09 01:11:50 ----A---- C:\WINDOWS\system32\6to4svc.dll
2010-02-09 01:11:49 ----A---- C:\WINDOWS\system32\shdocvw.dll
2010-02-09 01:11:49 ----A---- C:\WINDOWS\regedit.exe
2010-02-09 01:11:48 ----A---- C:\WINDOWS\system32\regwizc.dll
2010-02-09 01:11:46 ----A---- C:\WINDOWS\system32\replace.exe
2010-02-09 01:11:46 ----A---- C:\WINDOWS\system32\rasmans.dll
2010-02-09 01:11:45 ----A---- C:\WINDOWS\system32\rastapi.dll
2010-02-09 01:11:45 ----A---- C:\WINDOWS\system32\rassapi.dll
2010-02-09 01:11:45 ----A---- C:\WINDOWS\system32\rasdial.exe
2010-02-09 01:11:45 ----A---- C:\WINDOWS\system32\rasauto.dll
2010-02-09 01:11:44 ----A---- C:\WINDOWS\system32\rasctrs.ini
2010-02-09 01:11:44 ----A---- C:\WINDOWS\system32\rasctrs.dll
2010-02-09 01:11:44 ----A---- C:\WINDOWS\system32\raschap.dll
2010-02-09 01:11:44 ----A---- C:\WINDOWS\system32\apphelp.dll
2010-02-09 01:11:43 ----A---- C:\WINDOWS\system32\smbinst.exe
2010-02-09 01:11:43 ----A---- C:\WINDOWS\system32\rsvpmsg.dll
2010-02-09 01:11:43 ----A---- C:\WINDOWS\system32\recover.exe
2010-02-09 01:11:43 ----A---- C:\WINDOWS\system32\rcimlby.exe
2010-02-09 01:11:42 ----A---- C:\WINDOWS\system32\rsmsink.exe
2010-02-09 01:11:41 ----A---- C:\WINDOWS\system32\rtutils.dll
2010-02-09 01:11:36 ----A---- C:\WINDOWS\system32\runonce.exe
2010-02-09 01:11:30 ----A---- C:\WINDOWS\system32\wscntfy.exe
2010-02-09 01:11:30 ----A---- C:\WINDOWS\system32\synceng.dll
2010-02-09 01:11:30 ----A---- C:\WINDOWS\system32\syncapp.exe
2010-02-09 01:11:30 ----A---- C:\WINDOWS\system32\msswchx.exe
2010-02-09 01:11:30 ----A---- C:\WINDOWS\system32\mssip32.dll
2010-02-09 01:11:29 ----A---- C:\WINDOWS\system32\sysedit.exe
2010-02-09 01:11:28 ----A---- C:\WINDOWS\system32\clusapi.dll
2010-02-09 01:11:27 ----A---- C:\WINDOWS\system32\netcfgx.dll
2010-02-09 01:11:27 ----A---- C:\WINDOWS\system32\crypt32.dll
2010-02-09 01:11:27 ----A---- C:\WINDOWS\system32\cmcfg32.dll
2010-02-09 01:11:27 ----A---- C:\WINDOWS\system32\clipsrv.exe
2010-02-09 01:11:26 ----A---- C:\WINDOWS\system32\wscript.exe
2010-02-09 01:11:25 ----A---- C:\WINDOWS\system32\xactsrv.dll
2010-02-09 01:11:24 ----A---- C:\WINDOWS\system32\ws2help.dll
2010-02-09 01:11:24 ----A---- C:\WINDOWS\system32\svcpack.dll
2010-02-09 01:11:24 ----A---- C:\WINDOWS\system32\svchost.exe
2010-02-09 01:11:24 ----A---- C:\WINDOWS\system32\ctl3d32.dll
2010-02-09 01:11:24 ----A---- C:\WINDOWS\system32\ciadmin.dll
2010-02-09 01:11:23 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2010-02-09 01:11:23 ----A---- C:\WINDOWS\system32\termmgr.dll
2010-02-09 01:11:23 ----A---- C:\WINDOWS\system32\msrle32.dll
2010-02-09 01:11:23 ----A---- C:\WINDOWS\system32\cryptui.dll
2010-02-09 01:11:22 ----A---- C:\WINDOWS\system32\cscript.exe
2010-02-09 01:11:21 ----A---- C:\WINDOWS\system32\nbtstat.exe
2010-02-09 01:11:21 ----A---- C:\WINDOWS\system32\napstat.exe
2010-02-09 01:11:21 ----A---- C:\WINDOWS\system32\msxml3r.dll
2010-02-09 01:11:21 ----A---- C:\WINDOWS\system32\msxml2r.dll
2010-02-09 01:11:21 ----A---- C:\WINDOWS\system32\credssp.dll
2010-02-09 01:11:20 ----A---- C:\WINDOWS\system32\tcpsvcs.exe
2010-02-09 01:11:20 ----A---- C:\WINDOWS\system32\nddeapi.dll
2010-02-09 01:11:20 ----A---- C:\WINDOWS\system32\msxml6r.dll
2010-02-09 01:11:20 ----A---- C:\WINDOWS\system32\compobj.dll
2010-02-09 01:11:20 ----A---- C:\WINDOWS\system32\compact.exe
2010-02-09 01:11:19 ----A---- C:\WINDOWS\system32\wsnmp32.dll
2010-02-09 01:11:19 ----A---- C:\WINDOWS\system32\tapisrv.dll
2010-02-09 01:11:19 ----A---- C:\WINDOWS\system32\mswsock.dll
2010-02-09 01:11:19 ----A---- C:\WINDOWS\system32\control.exe
2010-02-09 01:11:19 ----A---- C:\WINDOWS\system32\console.dll
2010-02-09 01:11:19 ----A---- C:\WINDOWS\system32\confmsp.dll
2010-02-09 01:11:18 ----A---- C:\WINDOWS\system32\wsock32.dll
2010-02-09 01:11:18 ----A---- C:\WINDOWS\system32\taskmgr.exe
2010-02-09 01:11:18 ----A---- C:\WINDOWS\system32\taskman.exe
2010-02-09 01:11:18 ----A---- C:\WINDOWS\system32\convert.exe
2010-02-09 01:11:17 ----A---- C:\WINDOWS\system32\cmpbk32.dll
2010-02-09 01:11:15 ----A---- C:\WINDOWS\system32\msw3prt.dll
2010-02-09 01:11:15 ----A---- C:\WINDOWS\system32\msvideo.dll
2010-02-09 01:11:15 ----A---- C:\WINDOWS\system32\cmmon32.exe
2010-02-09 01:11:14 ----A---- C:\WINDOWS\system32\systray.exe
2010-02-09 01:11:14 ----A---- C:\WINDOWS\system32\msvfw32.dll
2010-02-09 01:11:14 ----A---- C:\WINDOWS\system32\msvcirt.dll
2010-02-09 01:11:14 ----A---- C:\WINDOWS\system32\commdlg.dll
2010-02-09 01:11:14 ----A---- C:\WINDOWS\system32\command.com
2010-02-09 01:11:14 ----A---- C:\WINDOWS\system32\cnetcfg.dll
2010-02-09 01:11:13 ----A---- C:\WINDOWS\system32\t2embed.dll
2010-02-09 01:11:13 ----A---- C:\WINDOWS\system32\msvcp60.dll
2010-02-09 01:11:13 ----A---- C:\WINDOWS\system32\msvcp50.dll
2010-02-09 01:11:11 ----A---- C:\WINDOWS\system32\msnsspc.dll
2010-02-09 01:11:10 ----A---- C:\WINDOWS\system32\nlsfunc.exe
2010-02-09 01:11:10 ----A---- C:\WINDOWS\system32\certmgr.msc
2010-02-09 01:11:06 ----A---- C:\WINDOWS\system32\notepad.exe
2010-02-09 01:11:06 ----A---- C:\WINDOWS\system32\cdfview.dll
2010-02-09 01:11:06 ----A---- C:\WINDOWS\system32\cabview.dll
2010-02-09 01:11:05 ----A---- C:\WINDOWS\system32\certmgr.dll
2010-02-09 01:11:05 ----A---- C:\WINDOWS\system32\cabinet.dll
2010-02-09 01:11:01 ----A---- C:\WINDOWS\system32\xmllite.dll
2010-02-09 01:11:01 ----A---- C:\WINDOWS\system32\msprivs.dll
2010-02-09 01:11:01 ----A---- C:\WINDOWS\system32\ctl3dv2.dll
2010-02-09 01:11:01 ----A---- C:\WINDOWS\system32\certcli.dll
2010-02-09 01:11:00 ----A---- C:\WINDOWS\system32\xmlprov.dll
2010-02-09 01:11:00 ----A---- C:\WINDOWS\system32\themeui.dll
2010-02-09 01:11:00 ----A---- C:\WINDOWS\system32\strmdll.dll
2010-02-09 01:11:00 ----A---- C:\WINDOWS\system32\msports.dll
2010-02-09 01:10:59 ----A---- C:\WINDOWS\system32\chkntfs.exe
2010-02-09 01:10:57 ----A---- C:\WINDOWS\system32\xenroll.dll
2010-02-09 01:10:56 ----A---- C:\WINDOWS\system32\netstat.exe
2010-02-09 01:10:54 ----A---- C:\WINDOWS\system32\storage.dll
2010-02-09 01:10:54 ----A---- C:\WINDOWS\system32\defrag.exe
2010-02-09 01:10:54 ----A---- C:\WINDOWS\system32\corpol.dll
2010-02-09 01:10:53 ----A---- C:\WINDOWS\system32\wshcon.dll
2010-02-09 01:10:53 ----A---- C:\WINDOWS\system32\wshbth.dll
2010-02-09 01:10:53 ----A---- C:\WINDOWS\system32\wshatm.dll
2010-02-09 01:10:53 ----A---- C:\WINDOWS\system32\wiascr.dll
2010-02-09 01:10:53 ----A---- C:\WINDOWS\system32\ieakui.dll
2010-02-09 01:10:52 ----A---- C:\WINDOWS\system32\wshext.dll
2010-02-09 01:10:52 ----A---- C:\WINDOWS\system32\wiadss.dll
2010-02-09 01:10:51 ----A---- C:\WINDOWS\system32\dfrgui.dll
2010-02-09 01:10:50 ----A---- C:\WINDOWS\system32\crtdll.dll
2010-02-09 01:10:49 ----A---- C:\WINDOWS\system32\wshisn.dll
2010-02-09 01:10:49 ----A---- C:\WINDOWS\system32\wship6.dll
2010-02-09 01:10:49 ----A---- C:\WINDOWS\system32\ctfmon.exe
2010-02-09 01:10:48 ----A---- C:\WINDOWS\system32\devmgr.dll
2010-02-09 01:10:48 ----A---- C:\WINDOWS\system32\csrsrv.dll
2010-02-09 01:10:48 ----A---- C:\WINDOWS\system32\cscdll.dll
2010-02-09 01:10:47 ----A---- C:\WINDOWS\system32\wowdeb.exe
2010-02-09 01:10:47 ----A---- C:\WINDOWS\system32\iccvid.dll
2010-02-09 01:10:47 ----A---- C:\WINDOWS\system32\iasrad.dll
2010-02-09 01:10:47 ----A---- C:\WINDOWS\system32\iasnap.dll
2010-02-09 01:10:47 ----A---- C:\WINDOWS\system32\dbgeng.dll
2010-02-09 01:10:46 ----A---- C:\WINDOWS\system32\ws2_32.dll
2010-02-09 01:10:45 ----A---- C:\WINDOWS\system32\iassdo.dll
2010-02-09 01:10:45 ----A---- C:\WINDOWS\system32\iassam.dll
2010-02-09 01:10:45 ----A---- C:\WINDOWS\system32\datime.dll
2010-02-09 01:10:45 ----A---- C:\WINDOWS\system32\d3dxof.dll
2010-02-09 01:10:45 ----A---- C:\WINDOWS\system32\credui.dll
2010-02-09 01:10:44 ----A---- C:\WINDOWS\system32\wscsvc.dll
2010-02-09 01:10:44 ----A---- C:\WINDOWS\system32\adptif.dll
2010-02-09 01:10:42 ----A---- C:\WINDOWS\system32\iasads.dll
2010-02-09 01:10:41 ----A---- C:\WINDOWS\system32\adsldp.dll
2010-02-09 01:10:40 ----A---- C:\WINDOWS\system32\dpvvox.dll
2010-02-09 01:10:40 ----A---- C:\WINDOWS\system32\conime.exe
2010-02-09 01:10:40 ----A---- C:\WINDOWS\system32\chkdsk.exe
2010-02-09 01:10:39 ----A---- C:\WINDOWS\system32\wkssvc.dll
2010-02-09 01:10:39 ----A---- C:\WINDOWS\system32\dpvacm.dll
2010-02-09 01:10:39 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2010-02-09 01:10:38 ----A---- C:\WINDOWS\system32\ds32gt.dll
2010-02-09 01:10:38 ----A---- C:\WINDOWS\system32\ds16gt.dLL
2010-02-09 01:10:20 ----A---- C:\WINDOWS\system32\drprov.dll
2010-02-09 01:10:19 ----A---- C:\WINDOWS\system32\winsta.dll
2010-02-09 01:10:19 ----A---- C:\WINDOWS\system32\winsrv.dll
2010-02-09 01:10:19 ----A---- C:\WINDOWS\system32\winrnr.dll
2010-02-09 01:10:19 ----A---- C:\WINDOWS\system32\fsutil.exe
2010-02-09 01:10:19 ----A---- C:\WINDOWS\system32\format.com
2010-02-09 01:10:19 ----A---- C:\WINDOWS\system32\dot3ui.dll
2010-02-09 01:10:19 ----A---- C:\WINDOWS\system32\attrib.exe
2010-02-09 01:10:18 ----A---- C:\WINDOWS\system32\wzcdlg.dll
2010-02-09 01:10:18 ----A---- C:\WINDOWS\system32\fsmgmt.msc
2010-02-09 01:10:18 ----A---- C:\WINDOWS\system32\finger.exe
2010-02-09 01:10:18 ----A---- C:\WINDOWS\system32\dplayx.dll
2010-02-09 01:10:18 ----A---- C:\WINDOWS\system32\dpcdll.dll
2010-02-09 01:10:18 ----A---- C:\WINDOWS\system32\avicap.dll
2010-02-09 01:10:18 ----A---- C:\WINDOWS\system32\atmlib.dll
2010-02-09 01:10:16 ----A---- C:\WINDOWS\system32\winver.exe
2010-02-09 01:10:15 ----A---- C:\WINDOWS\system32\encdec.dll
2010-02-09 01:10:15 ----A---- C:\WINDOWS\system32\encapi.dll
2010-02-09 01:10:15 ----A---- C:\WINDOWS\system32\dssenh.dll
2010-02-09 01:10:15 ----A---- C:\WINDOWS\system32\ccfgnt.dll
2010-02-09 01:10:14 ----A---- C:\WINDOWS\system32\dswave.dll
2010-02-09 01:10:14 ----A---- C:\WINDOWS\system32\cdosys.dll
2010-02-09 01:10:13 ----A---- C:\WINDOWS\system32\eapsvc.dll
2010-02-09 01:10:13 ----A---- C:\WINDOWS\system32\eapqec.dll
2010-02-09 01:10:13 ----A---- C:\WINDOWS\system32\dxdiag.exe
2010-02-09 01:10:13 ----A---- C:\WINDOWS\system32\camocx.dll
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\extmgr.dll
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\expand.exe
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\dxmasf.dll
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\dsprop.dll
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\dsound.dll
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\dsauth.dll
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\cewmdm.dll
2010-02-09 01:10:12 ----A---- C:\WINDOWS\system32\bootok.exe
2010-02-09 01:10:11 ----A---- C:\WINDOWS\system32\wmdmps.dll
2010-02-09 01:10:11 ----A---- C:\WINDOWS\system32\expsrv.dll
2010-02-09 01:10:08 ----A---- C:\WINDOWS\system32\dinput.dll
2010-02-09 01:10:06 ----A---- C:\WINDOWS\system32\wmploc.dll
2010-02-09 01:10:06 ----A---- C:\WINDOWS\system32\winfax.dll
2010-02-09 01:10:06 ----A---- C:\WINDOWS\system32\append.exe
2010-02-09 01:10:06 ----A---- C:\WINDOWS\system32\apcups.dll
2010-02-09 01:10:04 ----A---- C:\WINDOWS\system32\windowscodecsext.dll
2010-02-09 01:10:03 ----A---- C:\WINDOWS\system32\hccoin.dll
2010-02-09 01:10:02 ----A---- C:\WINDOWS\system32\digest.dll
2010-02-09 01:10:02 ----A---- C:\WINDOWS\system32\diantz.exe
2010-02-09 01:10:02 ----A---- C:\WINDOWS\system32\comres.dll
2010-02-09 01:10:02 ----A---- C:\WINDOWS\system32\alrsvc.dll
2010-02-09 01:10:01 ----A---- C:\WINDOWS\system32\wmpasf.dll
2010-02-09 01:10:01 ----A---- C:\WINDOWS\system32\dmintf.dll
2010-02-09 01:10:00 ----A---- C:\WINDOWS\system32\winnls.dll
2010-02-09 01:10:00 ----A---- C:\WINDOWS\system32\dmdlgs.dll
2010-02-09 01:10:00 ----A---- C:\WINDOWS\system32\cmdl32.exe
2010-02-09 01:09:59 ----A---- C:\WINDOWS\system32\ftsrch.dll
2010-02-09 01:09:59 ----A---- C:\WINDOWS\system32\doskey.exe
2010-02-09 01:09:59 ----A---- C:\WINDOWS\system32\dmusic.dll
2010-02-09 01:09:58 ----A---- C:\WINDOWS\system32\dnsapi.dll
2010-02-09 01:09:58 ----A---- C:\WINDOWS\system32\dispex.dll
2010-02-09 01:09:58 ----A---- C:\WINDOWS\system32\atmadm.exe
2010-02-09 01:09:57 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2010-02-09 01:09:57 ----A---- C:\WINDOWS\system32\comcat.dll
2010-02-09 01:09:56 ----A---- C:\WINDOWS\system32\winmsd.exe
2010-02-09 01:09:56 ----A---- C:\WINDOWS\system32\gpkcsp.dll
2010-02-09 01:09:56 ----A---- C:\WINDOWS\system32\glmf32.dll
2010-02-09 01:09:55 ----A---- C:\WINDOWS\system32\dmband.dll
2010-02-09 01:09:55 ----A---- C:\WINDOWS\system32\cnvfat.dll
2010-02-09 01:09:55 ----A---- C:\WINDOWS\system32\cmutil.dll
2010-02-09 01:09:51 ----A---- C:\WINDOWS\system32\msls31.dll
2010-02-09 01:09:50 ----A---- C:\WINDOWS\system32\telnet.exe
2010-02-09 01:09:50 ----A---- C:\WINDOWS\system32\msswch.dll
2010-02-09 01:09:50 ----A---- C:\WINDOWS\system32\mslbui.dll
2010-02-09 01:09:49 ----A---- C:\WINDOWS\system32\msobjs.dll
2010-02-09 01:09:48 ----A---- C:\WINDOWS\system32\mspmsp.dll
2010-02-09 01:09:48 ----A---- C:\WINDOWS\system32\msgina.dll
2010-02-09 01:09:47 ----A---- C:\WINDOWS\system32\trkwks.dll
2010-02-09 01:09:47 ----A---- C:\WINDOWS\system32\MSIMTF.dll
2010-02-09 01:09:47 ----A---- C:\WINDOWS\system32\msdart.dll
2010-02-09 01:09:46 ----A---- C:\WINDOWS\system32\msisip.dll
2010-02-09 01:09:46 ----A---- C:\WINDOWS\system32\msimsg.dll
2010-02-09 01:09:46 ----A---- C:\WINDOWS\system32\msgsvc.dll
2010-02-09 01:09:45 ----A---- C:\WINDOWS\system32\msihnd.dll
2010-02-09 01:09:45 ----A---- C:\WINDOWS\system32\msidle.dll
2010-02-09 01:09:45 ----A---- C:\WINDOWS\system32\mshtml.dll
2010-02-09 01:09:44 ----A---- C:\WINDOWS\system.ini
2010-02-09 01:09:43 ----A---- C:\WINDOWS\system32\ncxpnt.dll
2010-02-09 01:09:42 ----A---- C:\WINDOWS\system32\syskey.exe
2010-02-09 01:09:41 ----A---- C:\WINDOWS\system32\tcpmon.ini
2010-02-09 01:09:41 ----A---- C:\WINDOWS\system32\tcpmon.dll
2010-02-09 01:09:41 ----A---- C:\WINDOWS\system32\tcpmib.dll
2010-02-09 01:09:41 ----A---- C:\WINDOWS\system32\netapi.dll
2010-02-09 01:09:41 ----A---- C:\WINDOWS\system32\mswmdm.dll
2010-02-09 01:09:41 ----A---- C:\WINDOWS\system32\mstime.dll
2010-02-09 01:09:40 ----A---- C:\WINDOWS\system32\tapiui.dll
2010-02-09 01:09:40 ----A---- C:\WINDOWS\system32\msvcrt.dll
2010-02-09 01:09:40 ----A---- C:\WINDOWS\system32\msv1_0.dll
2010-02-09 01:09:39 ----A---- C:\WINDOWS\system32\tapi32.dll
2010-02-09 01:09:39 ----A---- C:\WINDOWS\system32\mydocs.dll
2010-02-09 01:09:39 ----A---- C:\WINDOWS\system32\msxml6.dll
2010-02-09 01:09:39 ----A---- C:\WINDOWS\system32\msxml3.dll
2010-02-09 01:09:39 ----A---- C:\WINDOWS\system32\msxml2.dll
2010-02-09 01:09:38 ----A---- C:\WINDOWS\system32\mtxclu.dll
2010-02-09 01:09:38 ----A---- C:\WINDOWS\system32\msxmlr.dll
2010-02-09 01:09:38 ----A---- C:\WINDOWS\system32\mmcfxcommon.dll
2010-02-09 01:09:38 ----A---- C:\WINDOWS\system32\mll_hp.dll
2010-02-09 01:09:37 ----A---- C:\WINDOWS\system32\migpwd.exe
2010-02-09 01:09:36 ----A---- C:\WINDOWS\system32\txflog.dll
2010-02-09 01:09:36 ----A---- C:\WINDOWS\system32\mprddm.dll
2010-02-09 01:09:36 ----A---- C:\WINDOWS\system32\mprapi.dll
2010-02-09 01:09:33 ----A---- C:\WINDOWS\system32\upnpui.dll
2010-02-09 01:09:32 ----A---- C:\WINDOWS\system32\mfc42u.dll
2010-02-09 01:09:32 ----A---- C:\WINDOWS\system32\mfc40u.dll
2010-02-09 01:09:32 ----A---- C:\WINDOWS\system32\mf3216.dll
2010-02-09 01:09:30 ----A---- C:\WINDOWS\system32\MSCTFP.dll
2010-02-09 01:09:29 ----A---- C:\WINDOWS\system32\msasn1.dll
2010-02-09 01:09:28 ----A---- C:\WINDOWS\system32\mrinfo.exe
2010-02-09 01:09:28 ----A---- C:\WINDOWS\system32\mprmsg.dll
2010-02-09 01:09:28 ----A---- C:\WINDOWS\system32\mprdim.dll
2010-02-09 01:09:26 ----A---- C:\WINDOWS\system32\rasqec.dll
2010-02-09 01:09:25 ----A---- C:\WINDOWS\system32\rastls.dll
2010-02-09 01:09:25 ----A---- C:\WINDOWS\system32\rasser.dll
2010-02-09 01:09:25 ----A---- C:\WINDOWS\system32\rasrad.dll
2010-02-09 01:09:24 ----A---- C:\WINDOWS\system32\regwiz.exe
2010-02-09 01:09:24 ----A---- C:\WINDOWS\system32\regsvc.dll
2010-02-09 01:09:24 ----A---- C:\WINDOWS\system32\regapi.dll
2010-02-09 01:09:24 ----A---- C:\WINDOWS\system32\psbase.dll
2010-02-09 01:09:23 ----A---- C:\WINDOWS\system32\pifmgr.dll
2010-02-09 01:09:23 ----A---- C:\WINDOWS\system32\pidgen.dll
2010-02-09 01:09:22 ----A---- C:\WINDOWS\system32\rasppp.dll
2010-02-09 01:09:22 ----A---- C:\WINDOWS\system32\rasmxs.dll
2010-02-09 01:09:22 ----A---- C:\WINDOWS\system32\rasman.dll
2010-02-09 01:09:22 ----A---- C:\WINDOWS\system32\rasdlg.dll
2010-02-09 01:09:22 ----A---- C:\WINDOWS\system32\quartz.dll
2010-02-09 01:09:21 ----A---- C:\WINDOWS\system32\qagent.dll
2010-02-09 01:09:21 ----A---- C:\WINDOWS\system32\pubprn.vbs
2010-02-09 01:09:20 ----A---- C:\WINDOWS\system32\setupn.exe
2010-02-09 01:09:19 ----A---- C:\WINDOWS\system32\slbiop.dll
2010-02-09 01:09:19 ----A---- C:\WINDOWS\system32\slbcsp.dll
2010-02-09 01:09:18 ----A---- C:\WINDOWS\system32\sigtab.dll
2010-02-09 01:09:18 ----A---- C:\WINDOWS\system32\shsvcs.dll
2010-02-09 01:09:18 ----A---- C:\WINDOWS\system32\sfc_os.dll
2010-02-09 01:09:18 ----A---- C:\WINDOWS\system32\setver.exe
2010-02-09 01:09:17 ----A---- C:\WINDOWS\system32\shgina.dll
2010-02-09 01:09:17 ----A---- C:\WINDOWS\system32\sfmapi.dll
2010-02-09 01:09:16 ----A---- C:\WINDOWS\system32\rsvpsp.dll
2010-02-09 01:09:16 ----A---- C:\WINDOWS\system32\rsaenh.dll
2010-02-09 01:09:16 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2010-02-09 01:09:16 ----A---- C:\WINDOWS\system32\rpcns4.dll
2010-02-09 01:09:15 ----A---- C:\WINDOWS\system32\sdpblb.dll
2010-02-09 01:09:15 ----A---- C:\WINDOWS\system32\scrrun.dll
2010-02-09 01:09:15 ----A---- C:\WINDOWS\system32\scrobj.dll
2010-02-09 01:09:15 ----A---- C:\WINDOWS\system32\samsrv.dll
2010-02-09 01:09:15 ----A---- C:\WINDOWS\system32\rshx32.dll
2010-02-09 01:09:14 ----A---- C:\WINDOWS\system32\scesrv.dll
2010-02-09 01:09:14 ----A---- C:\WINDOWS\system32\scecli.dll
2010-02-09 01:09:14 ----A---- C:\WINDOWS\system32\samlib.dll
2010-02-09 01:09:14 ----A---- C:\WINDOWS\system32\nlhtml.dll
2010-02-09 01:09:14 ----A---- C:\WINDOWS\system32\newdev.dll
2010-02-09 01:09:13 ----A---- C:\WINDOWS\system32\stimon.exe
2010-02-09 01:09:13 ----A---- C:\WINDOWS\system32\sti_ci.dll
2010-02-09 01:09:13 ----A---- C:\WINDOWS\system32\netui2.dll
2010-02-09 01:09:13 ----A---- C:\WINDOWS\system32\netui1.dll
2010-02-09 01:09:13 ----A---- C:\WINDOWS\system32\netui0.dll
2010-02-09 01:09:12 ----A---- C:\WINDOWS\system32\srvsvc.dll
2010-02-09 01:09:12 ----A---- C:\WINDOWS\system32\ntvdmd.dll
2010-02-09 01:09:09 ----A---- C:\WINDOWS\system32\sysinv.dll
2010-02-09 01:09:09 ----A---- C:\WINDOWS\system32\syncui.dll
2010-02-09 01:09:09 ----A---- C:\WINDOWS\system32\netdde.exe
2010-02-09 01:09:08 ----A---- C:\WINDOWS\system32\netrap.dll
2010-02-09 01:09:07 ----A---- C:\WINDOWS\system32\panmap.dll
2010-02-09 01:09:07 ----A---- C:\WINDOWS\system32\netmsg.dll
2010-02-09 01:09:07 ----A---- C:\WINDOWS\system32\netman.dll
2010-02-09 01:09:05 ----A---- C:\WINDOWS\system32\perfts.dll
2010-02-09 01:09:05 ----A---- C:\WINDOWS\system32\perfos.dll
2010-02-09 01:09:05 ----A---- C:\WINDOWS\system32\perfci.ini
2010-02-09 01:09:05 ----A---- C:\WINDOWS\system32\p2psvc.dll
2010-02-09 01:09:04 ----A---- C:\WINDOWS\system32\pentnt.exe
2010-02-09 01:09:03 ----A---- C:\WINDOWS\system32\sqlwoa.dll
2010-02-09 01:09:03 ----A---- C:\WINDOWS\system32\sqlwid.dll
2010-02-09 01:09:03 ----A---- C:\WINDOWS\system32\oleacc.dll
2010-02-09 01:09:03 ----A---- C:\WINDOWS\system32\odbc32.dll
2010-02-09 01:09:03 ----A---- C:\WINDOWS\system32\objsel.dll
2010-02-09 01:09:02 ----A---- C:\WINDOWS\system32\oakley.dll
2010-02-09 01:09:01 ----A---- C:\WINDOWS\system32\olesvr.dll
2010-02-09 01:09:01 ----A---- C:\WINDOWS\system32\oleprn.dll
2010-02-09 01:09:01 ----A---- C:\WINDOWS\system32\oledlg.dll
2010-02-09 01:09:01 ----A---- C:\WINDOWS\system32\olecli.dll
2010-02-09 01:09:00 ----A---- C:\WINDOWS\system32\licdll.dll
2010-02-09 01:08:59 ----A---- C:\WINDOWS\system32\LAPRXY.dll
2010-02-09 01:08:59 ----A---- C:\WINDOWS\system32\ipsec6.exe
2010-02-09 01:08:57 ----A---- C:\WINDOWS\system32\vga256.dll
2010-02-09 01:08:57 ----A---- C:\WINDOWS\system32\lsasrv.dll
2010-02-09 01:08:56 ----A---- C:\WINDOWS\system32\vdmdbg.dll
2010-02-09 01:08:56 ----A---- C:\WINDOWS\system32\mciseq.dll
2010-02-09 01:08:56 ----A---- C:\WINDOWS\system32\mcicda.dll
2010-02-09 01:08:56 ----A---- C:\WINDOWS\system32\inseng.dll
2010-02-09 01:08:55 ----A---- C:\WINDOWS\system32\vga64k.dll
2010-02-09 01:08:55 ----A---- C:\WINDOWS\system32\logman.exe
2010-02-09 01:08:55 ----A---- C:\WINDOWS\system32\lmhsvc.dll
2010-02-09 01:08:55 ----A---- C:\WINDOWS\system32\lights.exe
2010-02-09 01:08:54 ----A---- C:\WINDOWS\system32\lodctr.exe
2010-02-09 01:08:54 ----A---- C:\WINDOWS\system32\kbdgr1.dll
2010-02-09 01:08:54 ----A---- C:\WINDOWS\system32\kbdgae.dll
2010-02-09 01:08:54 ----A---- C:\WINDOWS\system32\kbdfi1.dll
2010-02-09 01:08:53 ----A---- C:\WINDOWS\system32\vss_ps.dll
2010-02-09 01:08:53 ----A---- C:\WINDOWS\system32\ipxwan.dll
2010-02-09 01:08:53 ----A---- C:\WINDOWS\system32\ipxsap.dll
2010-02-09 01:08:52 ----A---- C:\WINDOWS\system32\kbdbhc.dll
2010-02-09 01:08:52 ----A---- C:\WINDOWS\system32\jet500.dll
2010-02-09 01:08:52 ----A---- C:\WINDOWS\system32\itircl.dll
2010-02-09 01:08:51 ----A---- C:\WINDOWS\system32\kbdukx.dll
2010-02-09 01:08:51 ----A---- C:\WINDOWS\system32\kbdcan.dll
2010-02-09 01:08:51 ----A---- C:\WINDOWS\system32\ipxrip.dll
2010-02-09 01:08:50 ----A---- C:\WINDOWS\system32\keymgr.dll
2010-02-09 01:08:50 ----A---- C:\WINDOWS\system32\kd1394.dll
2010-02-09 01:08:50 ----A---- C:\WINDOWS\system32\kbdusx.dll
2010-02-09 01:08:50 ----A---- C:\WINDOWS\system32\kbdusr.dll
2010-02-09 01:08:50 ----A---- C:\WINDOWS\system32\kbdusl.dll
2010-02-09 01:08:49 ----A---- C:\WINDOWS\system32\vssapi.dll
2010-02-09 01:08:49 ----A---- C:\WINDOWS\system32\kbdmac.dll
2010-02-09 01:08:48 ----A---- C:\WINDOWS\system32\kbdno1.dll
2010-02-09 01:08:48 ----A---- C:\WINDOWS\system32\kbdnec.dll
2010-02-09 01:08:47 ----A---- C:\WINDOWS\system32\usbmon.dll
2010-02-09 01:08:46 ----A---- C:\WINDOWS\system32\urlmon.dll
2010-02-09 01:08:45 ----A---- C:\WINDOWS\system32\user32.dll
2010-02-09 01:08:45 ----A---- C:\WINDOWS\system32\inetpp.dll
2010-02-09 01:08:44 ----A---- C:\WINDOWS\system32\xcopy.exe
2010-02-09 01:08:44 ----A---- C:\WINDOWS\system32\wmidx.dll
2010-02-09 01:08:44 ----A---- C:\WINDOWS\system32\kbduk.dll
2010-02-09 01:08:44 ----A---- C:\WINDOWS\system32\kbdsw.dll
2010-02-09 01:08:44 ----A---- C:\WINDOWS\system32\kbdsp.dll
2010-02-09 01:08:44 ----A---- C:\WINDOWS\system32\cisvc.exe
2010-02-09 01:08:43 ----A---- C:\WINDOWS\system32\netid.dll
2010-02-09 01:08:43 ----A---- C:\WINDOWS\system32\ckcnv.exe
2010-02-09 01:08:43 ----A---- C:\WINDOWS\system32\ciodm.dll
2010-02-09 01:08:43 ----A---- C:\WINDOWS\system32\ciadv.msc
2010-02-09 01:08:39 ----A---- C:\WINDOWS\system32\netsh.exe
2010-02-09 01:08:39 ----A---- C:\WINDOWS\system32\kbdsf.dll
2010-02-09 01:08:39 ----A---- C:\WINDOWS\system32\kbdpo.dll
2010-02-09 01:08:39 ----A---- C:\WINDOWS\system32\kbdne.dll
2010-02-09 01:08:38 ----A---- C:\WINDOWS\system32\subst.exe
2010-02-09 01:08:38 ----A---- C:\WINDOWS\system32\kbdsg.dll
2010-02-09 01:08:37 ----A---- C:\WINDOWS\system32\sbeio.dll
2010-02-09 01:08:37 ----A---- C:\WINDOWS\system32\label.exe
2010-02-09 01:08:37 ----A---- C:\WINDOWS\system32\kbdno.dll
2010-02-09 01:08:37 ----A---- C:\WINDOWS\system32\adsnt.dll
2010-02-09 01:08:34 ----A---- C:\WINDOWS\system32\WshRm.dll
2010-02-09 01:08:34 ----A---- C:\WINDOWS\system32\iprop.dll
2010-02-09 01:08:33 ----A---- C:\WINDOWS\system32\msutb.dll
2010-02-09 01:08:33 ----A---- C:\WINDOWS\system32\mfc42.dll
2010-02-09 01:08:32 ----A---- C:\WINDOWS\system32\wshde.dll
2010-02-09 01:08:32 ----A---- C:\WINDOWS\system32\msxml.dll
2010-02-09 01:08:31 ----A---- C:\WINDOWS\system32\share.exe
2010-02-09 01:08:31 ----A---- C:\WINDOWS\system32\mfc40.dll
2010-02-09 01:08:30 ----A---- C:\WINDOWS\system32\edlin.exe
2010-02-09 01:08:29 ----A---- C:\WINDOWS\system32\swprv.dll
2010-02-09 01:08:29 ----A---- C:\WINDOWS\system32\shell.dll
2010-02-09 01:08:29 ----A---- C:\WINDOWS\system32\kdcom.dll
2010-02-09 01:08:29 ----A---- C:\WINDOWS\system32\kbdus.dll
2010-02-09 01:08:28 ----A---- C:\WINDOWS\system32\tapi3.dll
2010-02-09 01:08:28 ----A---- C:\WINDOWS\system32\kmsvc.dll
2010-02-09 01:08:27 ----A---- C:\WINDOWS\system32\scode.dll
2010-02-09 01:08:27 ----A---- C:\WINDOWS\system32\cmstp.exe
2010-02-09 01:08:26 ----A---- C:\WINDOWS\system32\atmfd.dll
2010-02-09 01:08:25 ----A---- C:\WINDOWS\system32\route.exe
2010-02-09 01:08:25 ----A---- C:\WINDOWS\system32\pmspl.dll
2010-02-09 01:08:25 ----A---- C:\WINDOWS\system32\ping6.exe
2010-02-09 01:08:24 ----A---- C:\WINDOWS\system32\rnr20.dll
2010-02-09 01:08:24 ----A---- C:\WINDOWS\system32\psapi.dll
2010-02-09 01:08:24 ----A---- C:\WINDOWS\system32\print.exe
2010-02-09 01:08:24 ----A---- C:\WINDOWS\system32\kbdca.dll
2010-02-09 01:08:23 ----A---- C:\WINDOWS\system32\wmasf.dll
2010-02-09 01:08:22 ----A---- C:\WINDOWS\system32\rpcss.dll
2010-02-09 01:08:22 ----A---- C:\WINDOWS\system32\kbdda.dll
2010-02-09 01:08:22 ----A---- C:\WINDOWS\system32\authz.dll
2010-02-09 01:08:21 ----A---- C:\WINDOWS\system32\webvw.dll
2010-02-09 01:08:21 ----A---- C:\WINDOWS\system32\qutil.dll
2010-02-09 01:08:21 ----A---- C:\WINDOWS\system32\ixsso.dll
2010-02-09 01:08:20 ----A---- C:\WINDOWS\system32\redir.exe
2010-02-09 01:08:20 ----A---- C:\WINDOWS\system32\rdpdd.dll
2010-02-09 01:08:20 ----A---- C:\WINDOWS\system32\icmui.dll
2010-02-09 01:08:20 ----A---- C:\WINDOWS\system32\icm32.dll
2010-02-09 01:08:19 ----A---- C:\WINDOWS\system32\kbdbe.dll
2010-02-09 01:08:19 ----A---- C:\WINDOWS\system32\imm32.dll
2010-02-09 01:08:18 ----A---- C:\WINDOWS\system32\query.dll
2010-02-09 01:08:18 ----A---- C:\WINDOWS\system32\kbdbr.dll
2010-02-09 01:08:18 ----A---- C:\WINDOWS\system32\imapi.exe
2010-02-09 01:08:17 ----A---- C:\WINDOWS\system32\rexec.exe
2010-02-09 01:08:17 ----A---- C:\WINDOWS\system32\qedit.dll
2010-02-09 01:08:16 ----A---- C:\WINDOWS\system32\vssvc.exe
2010-02-09 01:08:16 ----A---- C:\WINDOWS\system32\ersvc.dll
2010-02-09 01:08:15 ----A---- C:\WINDOWS\system32\runas.exe
2010-02-09 01:08:15 ----A---- C:\WINDOWS\system32\ole32.dll
2010-02-09 01:08:15 ----A---- C:\WINDOWS\system32\bthci.dll
2010-02-09 01:08:14 ----A---- C:\WINDOWS\system32\cacls.exe
2010-02-09 01:08:13 ----A---- C:\WINDOWS\system32\kbdit.dll
2010-02-09 01:08:13 ----A---- C:\WINDOWS\system32\kbdir.dll
2010-02-09 01:08:13 ----A---- C:\WINDOWS\system32\hlink.dll
2010-02-09 01:08:13 ----A---- C:\WINDOWS\system32\cards.dll
2010-02-09 01:08:12 ----A---- C:\WINDOWS\system32\ntvdm.exe
2010-02-09 01:08:12 ----A---- C:\WINDOWS\system32\ntdll.dll
2010-02-09 01:08:12 ----A---- C:\WINDOWS\system32\kbdla.dll
2010-02-09 01:08:11 ----A---- C:\WINDOWS\system32\kbdfo.dll
2010-02-09 01:08:11 ----A---- C:\WINDOWS\system32\kbdfi.dll
2010-02-09 01:08:10 ----A---- C:\WINDOWS\system32\kbdfr.dll
2010-02-09 01:08:10 ----A---- C:\WINDOWS\system32\kbdes.dll
2010-02-09 01:08:09 ----A---- C:\WINDOWS\system32\kbdfc.dll
2010-02-09 01:08:09 ----A---- C:\WINDOWS\system32\kbddv.dll
2010-02-09 01:08:08 ----A---- C:\WINDOWS\system32\w3ssl.dll
2010-02-09 01:08:08 ----A---- C:\WINDOWS\system32\w32tm.exe
2010-02-09 01:08:08 ----A---- C:\WINDOWS\system32\kbdic.dll
2010-02-09 01:08:08 ----A---- C:\WINDOWS\system32\esent.dll
2010-02-09 01:08:07 ----A---- C:\WINDOWS\system32\rsmps.dll
2010-02-09 01:08:07 ----A---- C:\WINDOWS\system32\kbdgr.dll
2010-02-09 01:08:06 ----A---- C:\WINDOWS\system32\tspkg.dll
2010-02-09 01:08:06 ----A---- C:\WINDOWS\system32\rsmui.exe
2010-02-09 01:08:06 ----A---- C:\WINDOWS\system32\msacm.dll
2010-02-09 01:08:06 ----A---- C:\WINDOWS\system32\debug.exe
2010-02-09 01:08:06 ----A---- C:\WINDOWS\system32\ddeml.dll
2010-02-09 01:08:05 ----A---- C:\WINDOWS\system32\lsass.exe
2010-02-09 01:08:05 ----A---- C:\WINDOWS\system32\fwcfg.dll
2010-02-09 01:08:05 ----A---- C:\WINDOWS\system32\fsusd.dll
2010-02-09 01:08:05 ----A---- C:\WINDOWS\system32\ddraw.dll
2010-02-09 01:08:03 ----A---- C:\WINDOWS\system32\wow32.dll
2010-02-09 01:08:03 ----A---- C:\WINDOWS\system32\tsddd.dll
2010-02-09 01:08:03 ----A---- C:\WINDOWS\system32\mscms.dll
2010-02-09 01:08:03 ----A---- C:\WINDOWS\system32\msafd.dll
2010-02-09 01:08:01 ----A---- C:\WINDOWS\system32\dgnet.dll
2010-02-09 01:07:58 ----A---- C:\WINDOWS\system32\msdmo.dll
2010-02-09 01:07:57 ----A---- C:\WINDOWS\system32\danim.dll
2010-02-09 01:07:57 ----A---- C:\WINDOWS\system32\d3dim.dll
2010-02-09 01:07:56 ----A---- C:\WINDOWS\system32\tsd32.dll
2010-02-09 01:07:56 ----A---- C:\WINDOWS\system32\MSCTF.dll
2010-02-09 01:07:56 ----A---- C:\WINDOWS\system32\d3drm.dll
2010-02-09 01:07:54 ----A---- C:\WINDOWS\system32\mdhcp.dll
2010-02-09 01:07:54 ----A---- C:\WINDOWS\system32\input.dll
2010-02-09 01:07:53 ----A---- C:\WINDOWS\twain.dll
2010-02-09 01:07:53 ----A---- C:\WINDOWS\system32\twext.dll
2010-02-09 01:07:53 ----A---- C:\WINDOWS\system32\setupold.exe
2010-02-09 01:07:53 ----A---- C:\WINDOWS\system32\setup.exe
2010-02-09 01:07:53 ----A---- C:\WINDOWS\system32\mmdrv.dll
2010-02-09 01:07:53 ----A---- C:\WINDOWS\system32\mmcex.dll
2010-02-09 01:07:53 ----A---- C:\WINDOWS\system32\dmocx.dll
2010-02-09 01:07:52 ----A---- C:\WINDOWS\system32\vcdex.dll
2010-02-09 01:07:52 ----A---- C:\WINDOWS\system32\mprui.dll
2010-02-09 01:07:51 ----A---- C:\WINDOWS\system32\vbsde.dll
2010-02-09 01:07:51 ----A---- C:\WINDOWS\system32\modex.dll
2010-02-09 01:07:51 ----A---- C:\WINDOWS\system32\dplay.dll
2010-02-09 01:07:50 ----A---- C:\WINDOWS\system32\dpnet.dll
2010-02-09 01:07:49 ----A---- C:\WINDOWS\system32\wmpui.dll
2010-02-09 01:07:49 ----A---- C:\WINDOWS\system32\mlang.dll
2010-02-09 01:07:48 ----A---- C:\WINDOWS\system32\skdll.dll
2010-02-09 01:07:48 ----A---- C:\WINDOWS\system32\fmifs.dll
2010-02-09 01:07:47 ----A---- C:\WINDOWS\system32\skeys.exe
2010-02-09 01:07:47 ----A---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2010-02-09 01:07:47 ----A---- C:\WINDOWS\system32\mcd32.dll
2010-02-09 01:07:47 ----A---- C:\WINDOWS\system32\ifmon.dll
2010-02-09 01:07:47 ----A---- C:\WINDOWS\system32\dsdmo.dll
2010-02-09 01:07:47 ----A---- C:\WINDOWS\system32\dmime.dll
2010-02-09 01:07:46 ----A---- C:\WINDOWS\system32\wmpcd.dll
2010-02-09 01:07:46 ----A---- C:\WINDOWS\system32\sethc.exe
2010-02-09 01:07:46 ----A---- C:\WINDOWS\system32\msscp.dll
2010-02-09 01:07:46 ----A---- C:\WINDOWS\system32\dx7vb.dll
2010-02-09 01:07:46 ----A---- C:\WINDOWS\system32\dimap.dll
2010-02-09 01:07:45 ----A---- C:\WINDOWS\system32\mssap.dll
2010-02-09 01:07:45 ----A---- C:\WINDOWS\system32\cscui.dll
2010-02-09 01:07:44 ----A---- C:\WINDOWS\system32\dwwin.exe
2010-02-09 01:07:42 ----A---- C:\WINDOWS\system32\mssha.dll
2010-02-09 01:07:42 ----A---- C:\WINDOWS\system32\dx8vb.dll
2010-02-09 01:07:42 ----A---- C:\WINDOWS\system32\dssec.dll
2010-02-09 01:07:42 ----A---- C:\WINDOWS\system32\csrss.exe
2010-02-09 01:07:41 ----A---- C:\WINDOWS\system32\gdi32.dll
2010-02-09 01:07:41 ----A---- C:\WINDOWS\system32\gcdef.dll
2010-02-09 01:07:40 ----A---- C:\WINDOWS\system32\winmm.dll
2010-02-09 01:07:39 ----A---- C:\WINDOWS\system32\msr2c.dll
2010-02-09 01:07:39 ----A---- C:\WINDOWS\system32\duser.dll
2010-02-09 01:07:37 ----A---- C:\WINDOWS\system32\mshta.exe
2010-02-09 01:07:36 ----A---- C:\WINDOWS\system32\glu32.dll
2010-02-09 01:07:35 ----A---- C:\WINDOWS\system32\usp10.dll
2010-02-09 01:07:35 ----A---- C:\WINDOWS\system32\aclui.dll
2010-02-09 01:07:34 ----A---- C:\WINDOWS\system32\untfs.dll
2010-02-09 01:07:33 ----A---- C:\WINDOWS\system32\user.exe
2010-02-09 01:07:33 ----A---- C:\WINDOWS\system32\htui.dll
2010-02-09 01:07:32 ----A---- C:\WINDOWS\system32\itss.dll
2010-02-09 01:07:31 ----A---- C:\WINDOWS\system32\tapi.dll
2010-02-09 01:07:31 ----A---- C:\WINDOWS\system32\lz32.dll
2010-02-09 01:07:29 ----A---- C:\WINDOWS\system32\smss.exe
2010-02-09 01:07:28 ----A---- C:\WINDOWS\system32\ping.exe
2010-02-09 01:07:28 ----A---- C:\WINDOWS\system32\ahui.exe
2010-02-09 01:07:27 ----A---- C:\WINDOWS\system32\exts.dll
2010-02-09 01:07:26 ----A---- C:\WINDOWS\system32\ulib.dll
2010-02-09 01:07:26 ----A---- C:\WINDOWS\system32\ufat.dll
2010-02-09 01:07:26 ----A---- C:\WINDOWS\system32\qdvd.dll
2010-02-09 01:07:26 ----A---- C:\WINDOWS\system32\qcap.dll
2010-02-09 01:07:26 ----A---- C:\WINDOWS\system32\qasf.dll
2010-02-09 01:07:26 ----A---- C:\WINDOWS\system32\kb16.com
2010-02-09 01:07:26 ----A---- C:\WINDOWS\system32\find.exe
2010-02-09 01:07:25 ----A---- C:\WINDOWS\system32\more.com
2010-02-09 01:07:25 ----A---- C:\WINDOWS\system32\jsde.dll
2010-02-09 01:07:24 ----A---- C:\WINDOWS\system32\ureg.dll
2010-02-09 01:07:23 ----A---- C:\WINDOWS\system32\sort.exe
2010-02-09 01:07:23 ----A---- C:\WINDOWS\system32\mode.com
2010-02-09 01:07:20 ----A---- C:\WINDOWS\system32\icmp.dll
2010-02-09 01:07:17 ----A---- C:\WINDOWS\system32\dosx.exe
2010-02-09 01:07:16 ----A---- C:\WINDOWS\system32\rend.dll
2010-02-09 01:07:15 ----A---- C:\WINDOWS\system32\tftp.exe
2010-02-09 01:07:14 ----A---- C:\WINDOWS\system32\vjoy.dll
2010-02-09 01:07:14 ----A---- C:\WINDOWS\system32\ipv6.exe
2010-02-09 01:07:13 ----A---- C:\WINDOWS\system32\sens.dll
2010-02-09 01:07:11 ----A---- C:\WINDOWS\system32\tree.com
2010-02-09 01:07:11 ----A---- C:\WINDOWS\system32\ntsd.exe
2010-02-09 01:07:10 ----A---- C:\WINDOWS\system32\neth.dll
2010-02-09 01:07:10 ----A---- C:\WINDOWS\system32\lmrt.dll
2010-02-09 01:07:10 ----A---- C:\WINDOWS\system32\help.exe
2010-02-09 01:07:09 ----A---- C:\WINDOWS\system32\chcp.com
2010-02-09 01:07:08 ----A---- C:\WINDOWS\system32\edit.com
2010-02-09 01:07:06 ----A---- C:\WINDOWS\system32\onex.dll
2010-02-09 01:07:06 ----A---- C:\WINDOWS\system32\d3d9.dll
2010-02-09 01:07:06 ----A---- C:\WINDOWS\system32\d3d8.dll
2010-02-09 01:07:05 ----A---- C:\WINDOWS\system32\upnp.dll
2010-02-09 01:07:04 ----A---- C:\WINDOWS\system32\net1.exe
2010-02-09 01:07:01 ----A---- C:\WINDOWS\system32\rsvp.ini
2010-02-09 01:07:01 ----A---- C:\WINDOWS\system32\comp.exe
2010-02-09 01:07:00 ----A---- C:\WINDOWS\system32\rsvp.exe
2010-02-09 01:06:58 ----A---- C:\WINDOWS\system32\sfc.exe
2010-02-09 01:06:58 ----A---- C:\WINDOWS\system32\sfc.dll
2010-02-09 01:06:58 ----A---- C:\WINDOWS\system32\rsm.exe
2010-02-09 01:06:58 ----A---- C:\WINDOWS\system32\rsh.exe
2010-02-09 01:06:58 ----A---- C:\WINDOWS\system32\ole2.dll
2010-02-09 01:06:58 ----A---- C:\WINDOWS\system32\dfrg.msc
2010-02-09 01:06:57 ----A---- C:\WINDOWS\system32\sbe.dll
2010-02-09 01:06:52 ----A---- C:\WINDOWS\system32\rtm.dll
2010-02-09 01:06:52 ----A---- C:\WINDOWS\system32\idq.dll
2010-02-09 01:06:51 ----A---- C:\WINDOWS\system32\lpq.exe
2010-02-09 01:06:51 ----A---- C:\WINDOWS\system32\lpk.dll
2010-02-09 01:06:50 ----A---- C:\WINDOWS\system32\msi.dll
2010-02-09 01:06:50 ----A---- C:\WINDOWS\system32\lpr.exe
2010-02-09 01:06:49 ----A---- C:\WINDOWS\system32\ftp.exe
2010-02-09 01:06:48 ----A---- C:\WINDOWS\system32\net.exe
2010-02-09 01:06:48 ----A---- C:\WINDOWS\system32\gdi.exe
2010-02-09 01:06:46 ----A---- C:\WINDOWS\system32\wmi.dll
2010-02-09 01:06:46 ----A---- C:\WINDOWS\system32\mem.exe
2010-02-09 01:06:46 ----A---- C:\WINDOWS\system32\els.dll
2010-02-09 01:06:45 ----A---- C:\WINDOWS\system32\url.dll
2010-02-09 01:06:44 ----A---- C:\WINDOWS\system32\ups.exe
2010-02-09 01:06:43 ----A---- C:\WINDOWS\system32\wmp.dll
2010-02-09 01:06:43 ----A---- C:\WINDOWS\system32\vga.dll
2010-02-09 01:06:43 ----A---- C:\WINDOWS\system32\ver.dll
2010-02-09 01:06:43 ----A---- C:\WINDOWS\system32\mpr.dll
2010-02-09 01:06:42 ----A---- C:\WINDOWS\system32\mmc.exe
2010-02-09 01:06:41 ----A---- C:\WINDOWS\system32\photometadatahandler.dll
2010-02-09 01:06:41 ----A---- C:\WINDOWS\system32\pdh.dll
2010-02-09 01:06:40 ----A---- C:\WINDOWS\system32\osk.exe
2010-02-09 01:06:33 ----A---- C:\WINDOWS\system32\p2p.dll
2010-02-09 01:06:33 ----A---- C:\WINDOWS\system32\atl.dll
2010-02-09 01:06:32 ----A---- C:\WINDOWS\system32\reg.exe
2010-02-09 01:06:32 ----A---- C:\WINDOWS\system32\rcp.exe
2010-02-09 01:06:32 ----A---- C:\WINDOWS\system32\alg.exe
2010-02-09 01:06:31 ----A---- C:\WINDOWS\system32\qdv.dll
2010-02-09 01:06:31 ----A---- C:\WINDOWS\system32\arp.exe
2010-02-09 01:06:30 ----A---- C:\WINDOWS\system32\win.com
2010-02-09 01:06:30 ----A---- C:\WINDOWS\system32\sti.dll
2010-02-09 01:06:29 ----A---- C:\WINDOWS\system32\sxs.dll
2010-02-09 01:06:29 ----A---- C:\WINDOWS\system32\cmd.exe
2010-02-09 01:06:29 ----A---- C:\WINDOWS\system32\clb.dll
2010-02-09 01:06:29 ----A---- C:\WINDOWS\system32\cdm.dll
2010-02-09 01:06:28 ----A---- C:\WINDOWS\win.ini
2010-02-09 01:06:28 ----A---- C:\WINDOWS\system32\windowscodecs.dll
2010-02-09 01:06:28 ----A---- C:\WINDOWS\system32\cic.dll
2010-02-09 01:06:27 ----A---- C:\WINDOWS\system32\fc.exe
2010-02-09 01:06:27 ----A---- C:\WINDOWS\system32\es.dll
2010-02-09 01:06:24 ----A---- C:\WINDOWS\system32\at.exe
2010-02-09 01:06:21 ----A---- C:\WINDOWS\system32\sc.exe
2010-02-09 01:06:21 ----A---- C:\WINDOWS\hh.exe
2010-02-09 01:06:14 ----A---- C:\WINDOWS\system32\eula.txt
2010-02-09 01:06:14 ----A---- C:\WINDOWS\system32\binifix5.cmd
2010-02-09 01:06:14 ----A---- C:\WINDOWS\system32\autofmt.exe
2010-02-09 01:06:14 ----A---- C:\WINDOWS\system32\autochk.exe
2010-02-09 00:15:49 ----A---- C:\WINDOWS\system32\kbdhela3.dll
2010-02-09 00:15:49 ----A---- C:\WINDOWS\system32\kbdhela2.dll
2010-02-09 00:15:48 ----A---- C:\WINDOWS\system32\kbdhe319.dll
2010-02-09 00:15:48 ----A---- C:\WINDOWS\system32\kbdhe220.dll
2010-02-09 00:13:19 ----A---- C:\WINDOWS\system32\kbdhept.dll
2010-02-09 00:13:14 ----A---- C:\WINDOWS\system32\kbdazel.dll
2010-02-09 00:08:54 ----A---- C:\WINDOWS\system32\kbdgkl.dll
2010-02-09 00:08:54 ----A---- C:\WINDOWS\system32\kbdest.dll
2010-02-09 00:08:53 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-02-09 00:08:52 ----A---- C:\WINDOWS\system32\kbdaze.dll
2010-02-09 00:08:51 ----A---- C:\WINDOWS\system32\kbdcz2.dll
2010-02-09 00:08:51 ----A---- C:\WINDOWS\system32\kbdcz1.dll
2010-02-09 00:08:51 ----A---- C:\WINDOWS\system32\kbdblr.dll
2010-02-09 00:08:50 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-02-09 00:08:50 ----A---- C:\WINDOWS\system32\kbdtuq.dll
2010-02-09 00:08:50 ----A---- C:\WINDOWS\system32\kbdtuf.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdycc.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbduzb.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdtat.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdru1.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdlv1.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdlt1.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdkyr.dll
2010-02-09 00:08:49 ----A---- C:\WINDOWS\system32\kbdkaz.dll
2010-02-09 00:08:48 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-02-09 00:08:48 ----A---- C:\WINDOWS\system32\kbdmon.dll
2010-02-09 00:08:40 ----A---- C:\WINDOWS\system32\kbdlv.dll
2010-02-09 00:08:39 ----A---- C:\WINDOWS\system32\kbdru.dll
2010-02-09 00:08:39 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-02-09 00:08:38 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-02-09 00:08:37 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-02-09 00:08:30 ----A---- C:\WINDOWS\system32\kbdur.dll
2010-02-09 00:08:23 ----A---- C:\WINDOWS\system32\kbdcz.dll
2010-02-09 00:08:22 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-02-09 00:08:21 ----A---- C:\WINDOWS\system32\kbdbu.dll
2010-02-09 00:08:17 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-02-09 00:08:14 ----A---- C:\WINDOWS\system32\kbdlt.dll
2010-02-09 00:08:08 ----A---- C:\WINDOWS\system32\kbdhe.dll
2010-02-09 00:08:07 ----A---- C:\WINDOWS\system32\kbdhu.dll

======List of files/folders modified in the last 1 months======


======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdPPM;AMD HwPState Prozessortreiber; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 kl1;Kl1; \??\C:\WINDOWS\system32\drivers\kl1.sys []
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2010-02-09 315408]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-14 8832]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2009-05-21 3565568]
R3 BTDriver;Virtueller Bluetooth-Kommunikationstreiber; C:\WINDOWS\system32\DRIVERS\btport.sys [2008-02-04 37160]
R3 BTKRNL;Bluetooth-Bus-Enumerator; C:\WINDOWS\system32\DRIVERS\btkrnl.sys [2008-10-31 991656]
R3 CmBatt;Microsoft-Netzteiltreiber; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-14 13952]
R3 HDAudBus;Microsoft UAA-Bustreiber für High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-04-07 5066752]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-09-14 32272]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2009-10-02 19472]
R3 RTHDMIAzAudService;Service for HDMI; C:\WINDOWS\system32\drivers\RtKHDMI.sys [2009-02-20 3729280]
R3 RTL8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver; C:\WINDOWS\system32\DRIVERS\rtl8192se.sys [2010-01-29 571296]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-03-06 208304]
R3 usbehci;Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2-aktivierter Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Miniporttreiber für Microsoft USB Open Host-Controller; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
R3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 btaudio;Bluetooth-Audiogerät; C:\WINDOWS\system32\drivers\btaudio.sys [2008-05-30 534568]
S3 BTWDNDIS;Bluetooth-LAN-Zugangsserver; C:\WINDOWS\system32\DRIVERS\btwdndis.sys [2008-07-24 156816]
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys [2008-03-10 57384]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys [2008-10-31 47272]
S3 CCDECODE;Untertiteldecoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 HidUsb;Microsoft HID Class-Treiber; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 mouhid;Maus-HID-Treiber; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-18 12288]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink-Konvertierung; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI-Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV-/Videoverbindung; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys []
S3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2009-11-27 177152]
S3 RtsUIR;Realtek IR Driver; C:\WINDOWS\system32\DRIVERS\Rts516xIR.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA-IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbccgp;Microsoft Standard-USB-Haupttreiber; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 USBCCID;Realtek Smartcard Reader Driver; C:\WINDOWS\system32\DRIVERS\RtsUCcid.sys []
S3 usbstor;USB-Massenspeichertreiber; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 usbvideo;USB-Videogerät (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-14 121984]
S3 WSTCODEC;World Standard Teletext-Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2009-05-21 602112]
R2 AVP;Kaspersky Anti-Virus; C:\Programme\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe [2009-10-20 340456]
R2 btwdins;Bluetooth Service; C:\Programme\WIDCOMM\Bluetooth Software\bin\btwdins.exe [2008-12-05 346720]
R2 Micro Star SCM;Micro Star SCM; C:\Programme\System Control Manager\MSIService.exe [2008-11-05 159744]
R2 SeaPort;SeaPort; C:\Programme\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 WSearch;Windows Search; C:\WINDOWS\system32\SearchIndexer.exe [2008-05-26 439808]
R3 osppsvc;Office Software Protection Platform; C:\Programme\Gemeinsame Dateien\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2009-09-26 4639136]
S3 aspnet_state;ASP.NET-Zustandsdienst; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [2009-09-26 149336]
S3 WMPNetworkSvc;Windows Media Player-Netzwerkfreigabedienst; C:\Programme\Windows Media Player\WMPNetwk.exe [2006-11-03 920576]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Danke schonmal für eure Hilfe!

Lg .OrangE.
__________________

Antwort

Themen zu PDM.Invader (Loader)
.com, 32-bit, beim starten, components, dateien, dll, excel, explorer, fehler, firefox, flash player, index, install.exe, installation, kaspersky, log, logfile, micro, microsoft, microsoft office 2010, msiexec.exe, neue, programme, registrierungsschlüssel, rundll, scan, server, starten, trojaner, trojaner board, updates, windows internet, windows internet explorer, windows media player, wireless lan




Ähnliche Themen: PDM.Invader (Loader)


  1. obession.co.ua/loader/loadit.exe
    Log-Analyse und Auswertung - 24.01.2014 (5)
  2. Tube Loader 15
    Log-Analyse und Auswertung - 12.11.2013 (3)
  3. Trojaner WTR Loader
    Log-Analyse und Auswertung - 28.04.2011 (18)
  4. WTR Loader
    Log-Analyse und Auswertung - 26.04.2011 (1)
  5. Kaspersky meldet verschlüsselte Verbindung /PDM INVADER /PDM Hidden data sending
    Log-Analyse und Auswertung - 30.03.2010 (1)
  6. Invader Hinweis von Kaspersky aber kein Befund?
    Plagegeister aller Art und deren Bekämpfung - 14.10.2008 (2)
  7. Heur.Invader, Trojan.Win32.Inject.mf oder was ganz anderes?
    Log-Analyse und Auswertung - 15.07.2008 (10)
  8. Virus Heur. Invader wurde gefunden
    Plagegeister aller Art und deren Bekämpfung - 18.04.2008 (17)
  9. loader.exe
    Alles rund um Windows - 22.02.2008 (0)
  10. potentille gefährliche Invader in folgenden Dateinen
    Plagegeister aller Art und deren Bekämpfung - 12.08.2007 (5)
  11. setup40.exe im Outlook Express Ordner ein Invader?
    Plagegeister aller Art und deren Bekämpfung - 29.07.2007 (24)
  12. Invader und Trojaner?? Hilfe!
    Plagegeister aller Art und deren Bekämpfung - 25.07.2007 (1)
  13. browser öffnen sich selbstständig , kaspersky meldet kurz invader dann nichtmehr...
    Log-Analyse und Auswertung - 26.02.2007 (14)
  14. Photo loader resident - was nun?
    Log-Analyse und Auswertung - 24.06.2006 (11)
  15. system/loader.dll
    Antiviren-, Firewall- und andere Schutzprogramme - 16.05.2005 (2)
  16. Loader.exe
    Plagegeister aller Art und deren Bekämpfung - 17.10.2004 (5)
  17. Datei loader.exe
    Antiviren-, Firewall- und andere Schutzprogramme - 16.07.2004 (1)

Zum Thema PDM.Invader (Loader) - Hallo liebes Trojaner Board, seit einiger Zeit bekomme ich von meinem Virenscanner Kaspersky Anti-Virus beim Starten des Rechners diese Meldung: 17.02.2010 03:37:19 Gefunden: PDM.Invader (loader) System Control Manager C:\PROGRAMME\SYSTEM CONTROL - PDM.Invader (Loader)...
Archiv
Du betrachtest: PDM.Invader (Loader) auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.