Zurück   Trojaner-Board > Malware entfernen > Antiviren-, Firewall- und andere Schutzprogramme

Antiviren-, Firewall- und andere Schutzprogramme: NoVirusThanks Malware Remover

Windows 7 Sämtliche Fragen zur Bedienung von Firewalls, Anti-Viren Programmen, Anti Malware und Anti Trojaner Software sind hier richtig. Dies ist ein Diskussionsforum für Sicherheitslösungen für Windows Rechner. Benötigst du Hilfe beim Trojaner entfernen oder weil du dir einen Virus eingefangen hast, erstelle ein Thema in den oberen Bereinigungsforen.

Antwort
Alt 25.04.2010, 13:34   #1
trojaner2004
 
NoVirusThanks Malware Remover - Standard

NoVirusThanks Malware Remover



Hallo,
Ich habe mir NoVirusThanks Malware Remover runtergeladen und mal mein pc durch gescannt, dem Log habe ich hier rein gestellt.
Mein standard Antivir Software ist microsoft security essentials.

Ich weiß nicht was ich jetzt tun soll, soll ich die sachen enfernen die NoVirusThanks gefunden hat.


NoVirusThanks Malware Remover 2.6.0.0
DB Version: 298 (23.04.2010)
hxxp://www.novirusthanks.org
Protokolldatei erstellt am 25.04.2010 um 14:03:01
Windows 7 Ultimate 6.1 64-bit OS

Scann Typ: Vollständig
Laufzeit: 04:41:23
Objekte überprüft: 560023
Bedrohungen erkannt: 302

Infizierte Dateien:

c:\boot\bcd -> Keine Maßnahmen ergriffen
c:\boot\bcd.log -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\01aa43b3da2dc2519073b47ea1a24ae3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\03ab85206d73d282a1ccf1da5a500f9b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\05ad6bf1dd5344e5bbbad860993388ed_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\05cef07c666efbcef94a795a388db538_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\05de20ce5a2b7a2535de167dc0e0d043_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\068689d36bd81bd85ed52ce694de3720_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\0808ee981e317bf288add65978222206_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\0841ef9cbb44c424d4f1c8cc3d9d9331_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\114ca7ae02e49347b25828892dca2c5c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\13878b18c6cb399d8262477c710df512_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\15083381e9324c772d84813e34ccbb25_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\195e826c52b419e420e69a95d8020316_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\1a159321ff616b503802ee6ddf809a7f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\22e53384a2367115994248a584eb0dcd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\241c8e1cf878437922856bfd8d687433_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\26b6193a85082f49e916263093f496f1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\2731aec4ade493fc52cf423c994dfa71_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\2747cb5303a44e837d396ddd166a815b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\2a3176d316a8744bd30e68abba796f5c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\2b49bf223d1680d07d83746684c8e2d4_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\2d2447f5c13880bd4491c26766f56e87_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\2dfe5232c1f759fb73588acbf06adfc8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\32ee6100a5f077182d47e74183fff308_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\3788037679a15fbb73ff4694395575ff_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\381f6d1a0ec71106f24961dd577ee887_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\3f2404579f6cc6d64fe329fa93eab350_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\46f01115062a2c74b81b364f2a6f7187_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\470d6d1b045b669a0f7e74006ee1e4ce_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\47c04eec06cba7f45ff60579e2432f2b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\4a46e0d2054a23feb690ff2aba524ee0_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\4eb6af595ff9fc2f3386537ddefeafdf_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\5406bc188626f06e4dd3ec8cfae54501_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\563be56bdc018bdd983a84a4082d096c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\56b87abe05ea9fb7bec4e683f606e588_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\56d01976fae3b932050d2aff9f93d238_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\574a4abc8462049d6b6657d4176edabd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\58b8da8fed148529a00a502fb845f2f7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\5a0b11f4afa9b91eaea81b7fd661330e_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\5c3133cc47b73bbe78c04b4450c742db_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\5c8af4bdf497ee7aaf65a7cb41766a2a_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\626f3545fd8aa6a08aaaa7b99393efa3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\6285800f968cf092183661f5bec63f09_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\62a0fe7b1a427c4fd36f5b31dfd994a9_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\6650e3b83042d2a6ef87aba285b21ec7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\690636f0f5ce55d2bc99310dbf0fc4cd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\69e9ec80e5c256ea604830595c4904a1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\6a8acd0a3beb3b67550869ff39244940_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\6a9c94fdd66d75541f6c1d7dacd29c0b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\6c00a40d7f1ff8c41282bd78e9ecbb03_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\6c0a9bc1e5515654ff550924fdfc285f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\6e25e180451a894f6d4284180aa92498_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\70c1ad1ce1d760d2be839c1ee7236812_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\7189b00382369544ec49c7e3876974e0_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\72fc4f8530878f317a607673ab6d77a2_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\736288feda5926cf50bb5d9764453477_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\736a38c854481d0e125d6f7482813a48_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\7716579bb20566466fd47f22bab3c982_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\7723f33f3cfaec648a8d9ebd561e5e0c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\7a475966009868aed35ada4951a34086_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\7b7baaceb40aa5521fe382f0ed2a6387_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\7b84cb99ab2045f2d40996b42dfaa4f7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\7d50fab04a414eb431b4c84d503442b3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\808f69347b87e776c977050b8ac33de7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\8090c1658e3de685ef275ff3de197805_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\80f2a33f73b990f94b94d69e1507da94_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\841f44c978b49cafe702f3bcab0f42be_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\84a1e75d885e8844f92f848db77c5613_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\859fb844a5200251d1ee976f3fb34aa3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\86b98681ab025f78c5ad39daee447500_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\873cbeccd26c1ef4e7ea17e51c512b24_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\87e73f691a7527a9b426c864c4b1f866_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\8a19e943f3637f4a824cac38f93fddca_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\8edac2ef4017c6467d57255285895556_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\8f67b33a603206d7ec34c52dd1c74d95_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\9075d1f00b08d1ee928b9d377153316c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\907e0271521d838e567bf5574eaf9962_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\912880e3f619fde5768289666c26a354_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\922d2af92d316e5e717b34677dc33bd9_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\92737379f39b78b00455c0abf2848fd0_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\943fc1534f2c86a338f4b3886fd15432_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\98d2ce3f9a7ddc0be055c013ba978897_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\9b04b321c8818ba321e25c33629b392c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\9b28ad670ee8e240644bb01c81d8fa3a_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\9c82787e5926acb82d5727c296acb95e_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\a132392376518e8e2dc4006152c79972_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\a3ea778d69aa28e158d03ba99822da53_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\a6b55ad1a425110123af1c104869f988_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\a801a55b1dfe87b9f163079d1b5f1d8d_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\abf0cf481f3aec965c2e773a40e58201_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\aee45338f85276b8c498492df86fb5bb_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\b1513a3b312df2a975f9156ebf2ef080_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\b3de4977ac60ee1f307a196a21e6c53b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\b56a5be7929f84278ea98885cd329550_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\b8c064ca42dfab3c2fce60915051163f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\b8fd96a3bc7d4492a39291b9c86af4cd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\ba71f08175c16b2bb6bff0ecc67689af_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\bac5908157298c1a3c8dba546040d980_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\beeb608df37edfb738c442c32b18a04f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\c0297b8044fca270ddf93d7f87c614bb_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\c17657b0b3f4170a13e3066f8a7baf5b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\c2cace00113f368befd04697f6cd9647_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\c40f0b1ab95763da93d492e02ea2b5ff_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\c41574cd2d3d37750923a610b596aa19_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\c604a4f7b02eb17a45f1444fb74e3f32_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\cb23fc114c98bc407ca57d7f81896710_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\cb9878a15dad6ca31a347db49004865b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\cc28a8971362c130d407c6f33fe21fc8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\cdf394511eab6d1ff47b26f109c11048_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\cf3611ce469875d5433283e6ecb38593_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\d4ee2aeffd165e6f48bc476879a56e31_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\d6a5bf06b4cb8d9da37505bd25de78d6_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\d8bd6039af077be2b721b6846a4bcd22_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\d98354f4c35ef06ba7a9044a20dbca14_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\da0050570c89c9f55409022aaf71d114_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\db2b2102c2c54d3b0d15161303ec9842_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\e02f597d5576e7c7048b9def57eff3d3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\e2effa0bc30f9bd34aa49029167f34aa_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\e3c9482611fb5f460092130b7ae696b1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\e67377afdd0e3137efd34decd18271a1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\e7b73ce8b555c7ad5dffafc8c7d741e9_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\e9607a4ace0ae446396f2d8f6cbc57f8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\ebfb6099fbc23e6789045d176af43afb_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\ee91f47a720f2eceda0c6e323b3d0ad7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\eff82014ee4cf5dc86efad60cdb10e22_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f2861f7172c88121284d41ed6e642cb2_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f2e315b109f018c1828d7fcb5c76d58c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f4529e26e0624f8100914f6d05877724_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f4788c6165afe6d4b053964e43b5b5ec_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f4c5083396fb8055e9d5321554881349_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f51843a971d5b071de9f5c5716ee2fd8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f69fef8f16abcbc9ca86e776a7661554_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f6b22b6d15656781067bab05cfdef34f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\f98dfd56af81b889ca9704647f64a833_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\fad824798acf65c5781fcdcd00de0b68_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\crypto\rsa\machinekeys\ffde2a2516b136af13d1b26194b19516_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\microsoft antimalware\mpscancache-1.bin -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\search\data\applications\windows\mss.log -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\search\data\applications\windows\msstmp.log -> Keine Maßnahmen ergriffen
c:\programdata\microsoft\search\data\applications\windows\tmp.edb -> Keine Maßnahmen ergriffen
c:\system volume information\syscache.hve -> Keine Maßnahmen ergriffen
c:\system volume information\syscache.hve.log1 -> Keine Maßnahmen ergriffen
c:\system volume information\{3808876b-c176-4e48-b7ae-04046e6cc752} -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\01aa43b3da2dc2519073b47ea1a24ae3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\03ab85206d73d282a1ccf1da5a500f9b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\05ad6bf1dd5344e5bbbad860993388ed_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\05cef07c666efbcef94a795a388db538_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\05de20ce5a2b7a2535de167dc0e0d043_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\068689d36bd81bd85ed52ce694de3720_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\0808ee981e317bf288add65978222206_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\0841ef9cbb44c424d4f1c8cc3d9d9331_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\114ca7ae02e49347b25828892dca2c5c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\13878b18c6cb399d8262477c710df512_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\15083381e9324c772d84813e34ccbb25_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\195e826c52b419e420e69a95d8020316_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\1a159321ff616b503802ee6ddf809a7f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\22e53384a2367115994248a584eb0dcd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\241c8e1cf878437922856bfd8d687433_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\26b6193a85082f49e916263093f496f1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\2731aec4ade493fc52cf423c994dfa71_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\2747cb5303a44e837d396ddd166a815b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\2a3176d316a8744bd30e68abba796f5c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\2b49bf223d1680d07d83746684c8e2d4_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\2d2447f5c13880bd4491c26766f56e87_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\2dfe5232c1f759fb73588acbf06adfc8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\32ee6100a5f077182d47e74183fff308_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\3788037679a15fbb73ff4694395575ff_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\381f6d1a0ec71106f24961dd577ee887_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\3f2404579f6cc6d64fe329fa93eab350_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\46f01115062a2c74b81b364f2a6f7187_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\470d6d1b045b669a0f7e74006ee1e4ce_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\47c04eec06cba7f45ff60579e2432f2b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\4a46e0d2054a23feb690ff2aba524ee0_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\4eb6af595ff9fc2f3386537ddefeafdf_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\5406bc188626f06e4dd3ec8cfae54501_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\563be56bdc018bdd983a84a4082d096c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\56b87abe05ea9fb7bec4e683f606e588_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\56d01976fae3b932050d2aff9f93d238_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\574a4abc8462049d6b6657d4176edabd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\58b8da8fed148529a00a502fb845f2f7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\5a0b11f4afa9b91eaea81b7fd661330e_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\5c3133cc47b73bbe78c04b4450c742db_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\5c8af4bdf497ee7aaf65a7cb41766a2a_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\626f3545fd8aa6a08aaaa7b99393efa3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\6285800f968cf092183661f5bec63f09_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\62a0fe7b1a427c4fd36f5b31dfd994a9_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\6650e3b83042d2a6ef87aba285b21ec7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\690636f0f5ce55d2bc99310dbf0fc4cd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\69e9ec80e5c256ea604830595c4904a1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\6a8acd0a3beb3b67550869ff39244940_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\6a9c94fdd66d75541f6c1d7dacd29c0b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\6c00a40d7f1ff8c41282bd78e9ecbb03_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\6c0a9bc1e5515654ff550924fdfc285f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\6e25e180451a894f6d4284180aa92498_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\70c1ad1ce1d760d2be839c1ee7236812_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\7189b00382369544ec49c7e3876974e0_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\72fc4f8530878f317a607673ab6d77a2_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\736288feda5926cf50bb5d9764453477_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\736a38c854481d0e125d6f7482813a48_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\7716579bb20566466fd47f22bab3c982_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\7723f33f3cfaec648a8d9ebd561e5e0c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\7a475966009868aed35ada4951a34086_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\7b7baaceb40aa5521fe382f0ed2a6387_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\7b84cb99ab2045f2d40996b42dfaa4f7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\7d50fab04a414eb431b4c84d503442b3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\808f69347b87e776c977050b8ac33de7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\8090c1658e3de685ef275ff3de197805_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\80f2a33f73b990f94b94d69e1507da94_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\841f44c978b49cafe702f3bcab0f42be_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\84a1e75d885e8844f92f848db77c5613_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\859fb844a5200251d1ee976f3fb34aa3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\86b98681ab025f78c5ad39daee447500_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\873cbeccd26c1ef4e7ea17e51c512b24_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\87e73f691a7527a9b426c864c4b1f866_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\8a19e943f3637f4a824cac38f93fddca_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\8edac2ef4017c6467d57255285895556_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\8f67b33a603206d7ec34c52dd1c74d95_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\9075d1f00b08d1ee928b9d377153316c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\907e0271521d838e567bf5574eaf9962_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\912880e3f619fde5768289666c26a354_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\922d2af92d316e5e717b34677dc33bd9_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\92737379f39b78b00455c0abf2848fd0_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\943fc1534f2c86a338f4b3886fd15432_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\98d2ce3f9a7ddc0be055c013ba978897_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\9b04b321c8818ba321e25c33629b392c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\9b28ad670ee8e240644bb01c81d8fa3a_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\9c82787e5926acb82d5727c296acb95e_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\a132392376518e8e2dc4006152c79972_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\a3ea778d69aa28e158d03ba99822da53_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\a6b55ad1a425110123af1c104869f988_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\a801a55b1dfe87b9f163079d1b5f1d8d_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\abf0cf481f3aec965c2e773a40e58201_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\aee45338f85276b8c498492df86fb5bb_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\b1513a3b312df2a975f9156ebf2ef080_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\b3de4977ac60ee1f307a196a21e6c53b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\b56a5be7929f84278ea98885cd329550_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\b8c064ca42dfab3c2fce60915051163f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\b8fd96a3bc7d4492a39291b9c86af4cd_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\ba71f08175c16b2bb6bff0ecc67689af_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\bac5908157298c1a3c8dba546040d980_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\beeb608df37edfb738c442c32b18a04f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\c0297b8044fca270ddf93d7f87c614bb_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\c17657b0b3f4170a13e3066f8a7baf5b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\c2cace00113f368befd04697f6cd9647_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\c40f0b1ab95763da93d492e02ea2b5ff_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\c41574cd2d3d37750923a610b596aa19_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\c604a4f7b02eb17a45f1444fb74e3f32_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\cb23fc114c98bc407ca57d7f81896710_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\cb9878a15dad6ca31a347db49004865b_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\cc28a8971362c130d407c6f33fe21fc8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\cdf394511eab6d1ff47b26f109c11048_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\cf3611ce469875d5433283e6ecb38593_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\d4ee2aeffd165e6f48bc476879a56e31_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\d6a5bf06b4cb8d9da37505bd25de78d6_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\d8bd6039af077be2b721b6846a4bcd22_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\d98354f4c35ef06ba7a9044a20dbca14_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\da0050570c89c9f55409022aaf71d114_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\db2b2102c2c54d3b0d15161303ec9842_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\e02f597d5576e7c7048b9def57eff3d3_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\e2effa0bc30f9bd34aa49029167f34aa_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\e3c9482611fb5f460092130b7ae696b1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\e67377afdd0e3137efd34decd18271a1_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\e7b73ce8b555c7ad5dffafc8c7d741e9_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\e9607a4ace0ae446396f2d8f6cbc57f8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\ebfb6099fbc23e6789045d176af43afb_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\ee91f47a720f2eceda0c6e323b3d0ad7_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\eff82014ee4cf5dc86efad60cdb10e22_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f2861f7172c88121284d41ed6e642cb2_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f2e315b109f018c1828d7fcb5c76d58c_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f4529e26e0624f8100914f6d05877724_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f4788c6165afe6d4b053964e43b5b5ec_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f4c5083396fb8055e9d5321554881349_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f51843a971d5b071de9f5c5716ee2fd8_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f69fef8f16abcbc9ca86e776a7661554_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f6b22b6d15656781067bab05cfdef34f_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\f98dfd56af81b889ca9704647f64a833_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\fad824798acf65c5781fcdcd00de0b68_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\crypto\rsa\machinekeys\ffde2a2516b136af13d1b26194b19516_9f4a6d51-aec7-4d88-81ba-9aeca68c44ea -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\microsoft antimalware\mpscancache-1.bin -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\search\data\applications\windows\mss.log -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\search\data\applications\windows\msstmp.log -> Keine Maßnahmen ergriffen
c:\users\all users\microsoft\search\data\applications\windows\tmp.edb -> Keine Maßnahmen ergriffen
c:\users\**********\ntuser.dat -> Keine Maßnahmen ergriffen
c:\users**********\ntuser.dat.log1 -> Keine Maßnahmen ergriffen
c:\users**********\appdata\local\microsoft\windows\usrclass.dat -> Keine Maßnahmen ergriffen
c:\users**********\appdata\local\microsoft\windows\usrclass.dat.log1 -> Keine Maßnahmen ergriffen
c:\users**********\appdata\roaming\microsoft\windows\recent\spe?se?a?te.indd.lnk -> Keine Maßnahmen ergriffen
c:\users**********\desktop\desktop feb ´10\spe?se?a?te.indd -> Keine Maßnahmen ergriffen
c:\users**********\desktop\desktop feb ´10\handy\?????.mp3 -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\localservice\ntuser.dat -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\localservice\ntuser.dat.log1 -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\localservice\appdata\local\lastalive0.dat -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\localservice\appdata\local\lastalive1.dat -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\localservice\appdata\roaming\peernetworking\4838216f9f56b84ad1ae3d32cd5e8d55\e4ef9c0acc1ee6eb797313c80baf144a\grouping\db.m db -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\localservice\appdata\roaming\peernetworking\4838216f9f56b84ad1ae3d32cd5e8d55\e4ef9c0acc1ee6eb797313c80baf144a\grouping\edb. log -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\localservice\appdata\roaming\peernetworking\4838216f9f56b84ad1ae3d32cd5e8d55\e4ef9c0acc1ee6eb797313c80baf144a\grouping\tmp. edb -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\networkservice\ntuser.dat -> Keine Maßnahmen ergriffen
c:\windows\serviceprofiles\networkservice\ntuser.dat.log1 -> Keine Maßnahmen ergriffen
c:\windows\system32\catroot2\edb.log -> Keine Maßnahmen ergriffen
c:\windows\system32\catroot2\{127d0a1d-4ef2-11d1-8608-00c04fc295ee}\catdb -> Keine Maßnahmen ergriffen
c:\windows\system32\catroot2\{f750e6c3-38ee-11d1-85e5-00c04fc295ee}\catdb -> Keine Maßnahmen ergriffen

Infizierte Ordner:


Registry Values Infected:


Ende.

Alt 25.04.2010, 16:06   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
NoVirusThanks Malware Remover - Standard

NoVirusThanks Malware Remover



Hallo und

novirusthanks kenn ich nicht, sieht aber aus, als wenn das Tool da einige Fehlalarme hatte

Bitte einen Vollscan mit Malwarebytes machen und Log posten. Danach OTL:

Systemscan mit OTL

Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
  • Doppelklick auf die OTL.exe
  • Vista User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen
  • Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output
  • Unter Extra Registry, wähle bitte Use SafeList
  • Klicke nun auf Run Scan links oben
  • Wenn der Scan beendet wurde werden 2 Logfiles erstellt
  • Poste die Logfiles hier in den Thread.
__________________

__________________

Alt 26.04.2010, 00:03   #3
trojaner2004
 
NoVirusThanks Malware Remover - Standard

NoVirusThanks Malware Remover



so ich hoffe ich habe alles richtg gemacht .


Zitat:
Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org

Datenbank Version: 4034

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

26.04.2010 00:48:14
mbam-log-2010-04-26 (00-48-14).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|G:\|)
Durchsuchte Objekte: 596917
Laufzeit: 3 Stunde(n), 32 Minute(n), 4 Sekunde(n)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 0
Infizierte Dateiobjekte der Registrierung: 0
Infizierte Verzeichnisse: 0
Infizierte Dateien: 11

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung:
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
C:\Users\1111\AppData\Local\Temp\upnktsevbeciQQccHsJxGvyjNixuvUwpmPfslsuwsfSibysdxtbFwWqjWIoVmvoQdWVscbMwJMKqRyjkptrgoxhrOjydEdfxuxnTtBDeamuQjZblzcinX fYrFqpEudWylyebkjufrNlrzhrlqczoPgPswRhLrqseilbhhOqrnaIeWnOynpvulSffswdrbqdMymroXpbS.exe (Spyware.Passwords) -> No action taken.
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O Defrag Professional Edition\keygen.exe (Malware.Tool) -> No action taken.
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O DiskImage Professionel\keygen.exe (Malware.Tool) -> No action taken.
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O DiskStat\keygen.exe (Malware.Tool) -> No action taken.
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O PartitionManager\keygen.exe (Malware.Tool) -> No action taken.
G:\Desktop\gamma file\CryptLoad_1.1.8\ocr\filer.net\ocr_by_spider_b\Version4.exe (Trojan.Downloader) -> No action taken.
G:\Desktop\gamma file\CryptLoad_1.1.8\ocr\netload.in\asmCaptcha\test.exe (Malware.Packer) -> No action taken.
G:\Desktop\gamma file\CryptLoad_1.1.8\router\FRITZ!Box\nc.exe (PUP.KeyLogger) -> No action taken.
G:\Desktop\gamma3\usb stick\Adobe CS4 Activation 32-64bit\Adobe CS4 Activation 32-64bit\keygen.exe (Trojan.Agent) -> No action taken.
G:\Desktop\gamma3\usb stick\Adobe CS4 Master Collection Full CRACK ONLY [Darkman]\Adobe CS4 Master Collection Keygen.exe (Trojan.Agent.CK) -> No action taken.
G:\Desktop\gamma3\usb stick\ales\file\ATR_RESCUE\ATR RESCUE\atr_resureccion\ATR Resureccion BETA.exe (EmailWorm.VB) -> No action taken.

Zitat:
OTL logfile created on: 26.04.2010 00:49:40 - Run 1
OTL by OldTimer - Version 3.2.2.0 Folder = C:\Users\111111111111\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

3,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 29,00% Memory free
6,00 Gb Paging File | 3,00 Gb Available in Paging File | 55,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 80,01 Gb Total Space | 17,19 Gb Free Space | 21,49% Space Free | Partition Type: NTFS
Drive D: | 80,00 Gb Total Space | 5,14 Gb Free Space | 6,42% Space Free | Partition Type: NTFS
Drive E: | 18,02 Gb Total Space | 16,72 Gb Free Space | 92,74% Space Free | Partition Type: NTFS
Drive F: | 79,99 Gb Total Space | 6,93 Gb Free Space | 8,66% Space Free | Partition Type: NTFS
Drive G: | 40,06 Gb Total Space | 5,12 Gb Free Space | 12,79% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive O: | 576,12 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: 111111111
Current User Name: 1111111111
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Users\11111111\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe (Adobe Systems Inc.)
PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - C:\Users\1111111111111\AppData\Local\Google\Update\1.2.183.23\GoogleCrashHandler.exe (Google Inc.)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
PRC - C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
PRC - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe (TOSHIBA CORPORATION.)
PRC - C:\Program Files (x86)\USB2.0 PC Camera\CamAppSTI.exe (AVEO)
PRC - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe (TOSHIBA CORPORATION.)
PRC - C:\Windows\FixCamera.exe ()
PRC - C:\Windows\tsnp2std.exe ()
PRC - C:\Windows\vsnp2std.exe (Sonix)


========== Modules (SafeList) ==========

MOD - C:\Users11111111111111\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\SysWOW64\rsaenh.dll (Microsoft Corporation)
MOD - C:\Windows\IME\SPTIP.DLL (Microsoft Corporation)
MOD - C:\Windows\SysWOW64\Speech\SpeechUX\SpeechUXPS.DLL (Microsoft Corporation)
MOD - C:\Windows\SysWOW64\RpcRtRemote.dll (Microsoft Corporation)
MOD - C:\Windows\SysWOW64\comdlg32.dll (Microsoft Corporation)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV:64bit: - (WatAdminSvc) -- C:\Windows\SysNative\Wat\WatAdminSvc.exe (Microsoft Corporation)
SRV:64bit: - (FLEXnet Licensing Service 64) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe (Acresso Software Inc.)
SRV:64bit: - (MsMpSvc) -- C:\Program Files\Microsoft Security Essentials\MsMpEng.exe (Microsoft Corporation)
SRV:64bit: - (osppsvc) -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation)
SRV:64bit: - (WwanSvc) -- C:\Windows\SysNative\wwansvc.dll (Microsoft Corporation)
SRV:64bit: - (WbioSrvc) -- C:\Windows\SysNative\wbiosrvc.dll (Microsoft Corporation)
SRV:64bit: - (UmRdpService) -- C:\Windows\SysNative\umrdp.dll (Microsoft Corporation)
SRV:64bit: - (Power) -- C:\Windows\SysNative\umpo.dll (Microsoft Corporation)
SRV:64bit: - (Themes) -- C:\Windows\SysNative\themeservice.dll (Microsoft Corporation)
SRV:64bit: - (sppuinotify) -- C:\Windows\SysNative\sppuinotify.dll (Microsoft Corporation)
SRV:64bit: - (SensrSvc) -- C:\Windows\SysNative\sensrsvc.dll (Microsoft Corporation)
SRV:64bit: - (PeerDistSvc) -- C:\Windows\SysNative\PeerDistSvc.dll (Microsoft Corporation)
SRV:64bit: - (PNRPsvc) -- C:\Windows\SysNative\pnrpsvc.dll (Microsoft Corporation)
SRV:64bit: - (p2pimsvc) -- C:\Windows\SysNative\pnrpsvc.dll (Microsoft Corporation)
SRV:64bit: - (HomeGroupProvider) -- C:\Windows\SysNative\provsvc.dll (Microsoft Corporation)
SRV:64bit: - (RpcEptMapper) -- C:\Windows\SysNative\RpcEpMap.dll (Microsoft Corporation)
SRV:64bit: - (PNRPAutoReg) -- C:\Windows\SysNative\pnrpauto.dll (Microsoft Corporation)
SRV:64bit: - (HomeGroupListener) -- C:\Windows\SysNative\ListSvc.dll (Microsoft Corporation)
SRV:64bit: - (FontCache) -- C:\Windows\SysNative\FntCache.dll (Microsoft Corporation)
SRV:64bit: - (Dhcp) -- C:\Windows\SysNative\dhcpcore.dll (Microsoft Corporation)
SRV:64bit: - (defragsvc) -- C:\Windows\SysNative\defragsvc.dll (Microsoft Corporation)
SRV:64bit: - (CscService) -- C:\Windows\SysNative\cscsvc.dll (Microsoft Corporation)
SRV:64bit: - (bthserv) -- C:\Windows\SysNative\bthserv.dll (Microsoft Corporation)
SRV:64bit: - (BDESVC) -- C:\Windows\SysNative\bdesvc.dll (Microsoft Corporation)
SRV:64bit: - (AxInstSV) -- C:\Windows\SysNative\AxInstSv.dll (Microsoft Corporation)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV:64bit: - (AppIDSvc) -- C:\Windows\SysNative\appidsvc.dll (Microsoft Corporation)
SRV:64bit: - (wbengine) -- C:\Windows\SysNative\wbengine.exe (Microsoft Corporation)
SRV:64bit: - (sppsvc) -- C:\Windows\SysNative\sppsvc.exe (Microsoft Corporation)
SRV:64bit: - (Fax) -- C:\Windows\SysNative\FXSSVC.exe (Microsoft Corporation)
SRV:64bit: - (TosCoSrv) -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (TOSHIBA Bluetooth Service) -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (TOSHIBA CORPORATION)
SRV - (VSS) -- C:\Windows\Vss [2009.07.14 06:20:14 | 000,000,000 | ---D | M]
SRV - (MSDTC) -- C:\Windows\SysWOW64\Msdtc [2009.07.14 06:20:14 | 000,000,000 | ---D | M]
SRV - (HomeGroupProvider) -- C:\Windows\SysWOW64\provsvc.dll (Microsoft Corporation)
SRV - (Dhcp) -- C:\Windows\SysWOW64\dhcpcore.dll (Microsoft Corporation)
SRV - (vds) -- C:\Windows\SysWOW64\wbem\vds.mof ()
SRV - (Nero BackItUp Scheduler 4.0) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nero AG)
SRV - (clr_optimization_v2.0.50727_64) -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (PS3 Media Server) -- C:\Program Files (x86)\PS3 Media Server\win32\service\wrapper.exe ()
SRV - (Adobe Version Cue CS4) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe (Adobe Systems Incorporated)


========== Driver Services (SafeList) ==========

DRV:64bit: - (vpcvmm) -- C:\Windows\SysNative\drivers\vpcvmm.sys (Microsoft Corporation)
DRV:64bit: - (ElbyCDIO) -- C:\Windows\SysNative\drivers\ElbyCDIO.sys (Elaborate Bytes AG)
DRV:64bit: - (tosrfbd) -- C:\Windows\SysNative\drivers\tosrfbd.sys (TOSHIBA CORPORATION)
DRV:64bit: - (vpcnfltr) -- C:\Windows\SysNative\drivers\vpcnfltr.sys (Microsoft Corporation)
DRV:64bit: - (vpcusb) -- C:\Windows\SysNative\drivers\vpcusb.sys (Microsoft Corporation)
DRV:64bit: - (vpcbus) -- C:\Windows\SysNative\drivers\vpchbus.sys (Microsoft Corporation)
DRV:64bit: - (Tosrfusb) -- C:\Windows\SysNative\drivers\tosrfusb.sys (TOSHIBA CORPORATION)
DRV:64bit: - (VClone) -- C:\Windows\SysNative\drivers\VClone.sys (Elaborate Bytes AG)
DRV:64bit: - (TosRfSnd) -- C:\Windows\SysNative\drivers\TosRfSnd.sys (TOSHIBA Corporation)
DRV:64bit: - (AVEO) -- C:\Windows\SysNative\drivers\AVEOdcnt.sys (AVEO Corp)
DRV:64bit: - (Tosrfcom) -- C:\Windows\SysNative\drivers\tosrfcom.sys (TOSHIBA Corporation)
DRV:64bit: - (tosrfnds) -- C:\Windows\SysNative\drivers\tosrfnds.sys (TOSHIBA Corporation.)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (KSecPkg) -- C:\Windows\SysNative\drivers\ksecpkg.sys (Microsoft Corporation)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (hwpolicy) -- C:\Windows\SysNative\drivers\hwpolicy.sys (Microsoft Corporation)
DRV:64bit: - (FsDepends) -- C:\Windows\SysNative\drivers\fsdepends.sys (Microsoft Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (WIMMount) -- C:\Windows\SysNative\drivers\wimmount.sys (Microsoft Corporation)
DRV:64bit: - (vhdmp) -- C:\Windows\SysNative\drivers\vhdmp.sys (Microsoft Corporation)
DRV:64bit: - (vmbus) -- C:\Windows\SysNative\drivers\vmbus.sys (Microsoft Corporation)
DRV:64bit: - (storflt) -- C:\Windows\SysNative\drivers\vmstorfl.sys (Microsoft Corporation)
DRV:64bit: - (vdrvroot) -- C:\Windows\SysNative\drivers\vdrvroot.sys (Microsoft Corporation)
DRV:64bit: - (storvsc) -- C:\Windows\SysNative\drivers\storvsc.sys (Microsoft Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (rdyboost) -- C:\Windows\SysNative\drivers\rdyboost.sys (Microsoft Corporation)
DRV:64bit: - (pcw) -- C:\Windows\SysNative\drivers\pcw.sys (Microsoft Corporation)
DRV:64bit: - (CNG) -- C:\Windows\SysNative\drivers\cng.sys (Microsoft Corporation)
DRV:64bit: - (fvevol) -- C:\Windows\SysNative\drivers\fvevol.sys (Microsoft Corporation)
DRV:64bit: - (rdpbus) -- C:\Windows\SysNative\drivers\rdpbus.sys (Microsoft Corporation)
DRV:64bit: - (RDPREFMP) -- C:\Windows\SysNative\drivers\RDPREFMP.sys (Microsoft Corporation)
DRV:64bit: - (ROOTMODEM) -- C:\Windows\SysNative\drivers\rootmdm.sys (Microsoft Corporation)
DRV:64bit: - (RasAgileVpn) WAN Miniport (IKEv2) -- C:\Windows\SysNative\drivers\agilevpn.sys (Microsoft Corporation)
DRV:64bit: - (WfpLwf) -- C:\Windows\SysNative\drivers\wfplwf.sys (Microsoft Corporation)
DRV:64bit: - (NdisCap) -- C:\Windows\SysNative\drivers\ndiscap.sys (Microsoft Corporation)
DRV:64bit: - (vwifibus) -- C:\Windows\SysNative\drivers\vwifibus.sys (Microsoft Corporation)
DRV:64bit: - (1394ohci) -- C:\Windows\SysNative\drivers\1394ohci.sys (Microsoft Corporation)
DRV:64bit: - (UmPass) -- C:\Windows\SysNative\drivers\umpass.sys (Microsoft Corporation)
DRV:64bit: - (mshidkmdf) -- C:\Windows\SysNative\drivers\mshidkmdf.sys (Microsoft Corporation)
DRV:64bit: - (WudfPf) -- C:\Windows\SysNative\drivers\WUDFPf.sys (Microsoft Corporation)
DRV:64bit: - (MTConfig) -- C:\Windows\SysNative\drivers\MTConfig.sys (Microsoft Corporation)
DRV:64bit: - (CompositeBus) -- C:\Windows\SysNative\drivers\CompositeBus.sys (Microsoft Corporation)
DRV:64bit: - (Beep) -- C:\Windows\SysNative\drivers\beep.sys (Microsoft Corporation)
DRV:64bit: - (AppID) -- C:\Windows\SysNative\drivers\appid.sys (Microsoft Corporation)
DRV:64bit: - (scfilter) -- C:\Windows\SysNative\drivers\scfilter.sys (Microsoft Corporation)
DRV:64bit: - (s3cap) -- C:\Windows\SysNative\drivers\vms3cap.sys (Microsoft Corporation)
DRV:64bit: - (VMBusHID) -- C:\Windows\SysNative\drivers\VMBusHID.sys (Microsoft Corporation)
DRV:64bit: - (discache) -- C:\Windows\SysNative\drivers\discache.sys (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (HidBatt) -- C:\Windows\SysNative\drivers\hidbatt.sys (Microsoft Corporation)
DRV:64bit: - (CmBatt) -- C:\Windows\SysNative\drivers\CmBatt.sys (Microsoft Corporation)
DRV:64bit: - (AcpiPmi) -- C:\Windows\SysNative\drivers\acpipmi.sys (Microsoft Corporation)
DRV:64bit: - (CSC) -- C:\Windows\SysNative\drivers\csc.sys (Microsoft Corporation)
DRV:64bit: - (AmdPPM) -- C:\Windows\SysNative\drivers\amdppm.sys (Microsoft Corporation)
DRV:64bit: - (tosrfec) -- C:\Windows\SysNative\drivers\tosrfec.sys (TOSHIBA Corporation)
DRV:64bit: - (Tosrfhid) -- C:\Windows\SysNative\drivers\Tosrfhid.sys (TOSHIBA Corporation.)
DRV:64bit: - (tosrfbnp) -- C:\Windows\SysNative\drivers\tosrfbnp.sys (TOSHIBA Corporation)
DRV:64bit: - (tosporte) -- C:\Windows\SysNative\drivers\tosporte.sys (TOSHIBA Corporation)
DRV:64bit: - (SrvHsfV92) -- C:\Windows\SysNative\drivers\VSTDPV6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfWinac) -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfHDA) -- C:\Windows\SysNative\drivers\VSTAZL6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (netw5v64) Intel(R) -- C:\Windows\SysNative\drivers\netw5v64.sys (Intel Corporation)
DRV:64bit: - (e1express) Intel(R) -- C:\Windows\SysNative\drivers\e1e6032e.sys (Intel Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (adfs) -- C:\Windows\SysNative\drivers\adfs.sys (Adobe Systems, Inc.)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Sonic Solutions)
DRV:64bit: - (TVALZ) -- C:\Windows\SysNative\drivers\TVALZ_O.SYS (TOSHIBA Corporation)
DRV:64bit: - (SNP2STD) USB2.0 PC Camera (SNP2STD) -- C:\Windows\SysNative\drivers\snp2sxp.sys ()
DRV:64bit: - (Ser2pl) -- C:\Windows\SysNative\drivers\ser2pl64.sys (Prolific Technology Inc.)
DRV:64bit: - (tifm21) -- C:\Windows\SysNative\drivers\tifm21.sys (Texas Instruments)
DRV:64bit: - (HdAudAddService) -- C:\Windows\SysNative\drivers\CHD64Aud.sys (Conexant Systems Inc.)
DRV - (CSC) -- C:\Windows\CSC [2010.02.27 21:07:11 | 000,000,000 | ---D | M]
DRV - (ElbyCDIO) -- C:\Windows\SysWOW64\ElbyCDIO.dll (Elaborate Bytes AG)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
DRV - (NetBIOS) -- C:\Windows\SysWOW64\netbios.dll (Microsoft Corporation)
DRV - (mpsdrv) -- C:\Windows\SysWOW64\wbem\mpsdrv.mof ()
DRV - (Tcpip) -- C:\Windows\SysWOW64\wbem\tcpip.mof ()
DRV - (adfs) -- C:\Windows\SysWOW64\drivers\adfs.sys (Adobe Systems, Inc.)
DRV - (SNP2STD) USB2.0 PC Camera (SNP2STD) -- C:\Windows\SysWOW64\drivers\snp2sxp.sys ()


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 1D 77 1A A0 56 D8 CD 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Fast Browser Search"
FF - prefs.js..browser.search.defaulturl: "hxxp://www.fastbrowsersearch.com/results/results.aspx?s=DEF&v=18&q="
FF - prefs.js..browser.search.order.1: "Fast Browser Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "www.google.de"
FF - prefs.js..extensions.enabledItems: {8f8fe09b-0bd3-4470-bc1b-8cad42b8203a}:0.16
FF - prefs.js..extensions.enabledItems: {c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:2.1
FF - prefs.js..extensions.enabledItems: {a7c6cf7f-112c-4500-a7ea-39801a327e5f}:1.0.7

FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2010.04.03 02:07:28 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010.04.15 15:51:40 | 000,000,000 | ---D | M]

[2010.02.27 20:23:40 | 000,000,000 | ---D | M] -- C:\Users1111111111\AppData\Roaming\mozilla\Extensions
[2010.04.09 20:10:32 | 000,000,000 | ---D | M] -- C:\Users11111\AppData\Roaming\mozilla\Firefox\Profiles\ruovcl9f.default\extensions
[2010.02.27 20:26:33 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users1111111111\AppData\Roaming\mozilla\Firefox\Profiles\ruovcl9f.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.02.27 20:26:33 | 000,000,000 | ---D | M] (Live HTTP Headers) -- C:\Users11111111111111\AppData\Roaming\mozilla\Firefox\Profiles\ruovcl9f.default\extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a}
[2010.04.09 20:10:32 | 000,000,000 | ---D | M] (FireFTP) -- C:\Users111111111111\AppData\Roaming\mozilla\Firefox\Profiles\ruovcl9f.default\extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}
[2010.02.27 20:26:33 | 000,000,000 | ---D | M] (Easy Youtube Video Downloader) -- C:\Users\111111111111\AppData\Roaming\mozilla\Firefox\Profiles\ruovcl9f.default\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}
[2009.08.24 20:48:18 | 000,005,413 | ---- | M] () -- C:\Users1111111111\AppData\Roaming\Mozilla\FireFox\Profiles\ruovcl9f.default\searchplugins\fast-browser-search.xml
[2010.03.01 17:15:49 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\mozilla firefox\extensions
[2010.01.16 04:15:29 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2010.01.16 04:15:29 | 000,002,344 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2010.01.16 04:15:29 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2010.01.16 04:15:29 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2010.01.16 04:15:29 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml

O1 HOSTS File: ([2010.02.28 18:52:06 | 000,000,855 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programme\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Windows Live Anmelde-Hilfsprogramm) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [00TCrdMain] C:\Programme\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [High Definition Audio Property Page Shortcut] C:\Windows\SysNative\CHDAudPropShortcut.exe (Windows (R) Server 2003 DDK provider)
O4:64bit: - HKLM..\Run: [MSSE] C:\Program Files\Microsoft Security Essentials\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.DLL (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [NvMediaCenter] C:\Windows\SysNative\NvMcTray.DLL (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [SmoothView] C:\Programme\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation)
O4:64bit: - HKLM..\Run: [snp2std] C:\Windows\vsnp2std.exe (Sonix)
O4:64bit: - HKLM..\Run: [TPwrMain] C:\Programme\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe_ID0ENQBO] C:\PROGRA~2\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [BCSSync] C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [CamAppSTI.exe] C:\Program Files (x86)\USB2.0 PC Camera\CamAppSTI.exe (AVEO)
O4 - HKLM..\Run: [FixCamera] C:\Windows\FixCamera.exe ()
O4 - HKLM..\Run: [ITSecMng] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [tsnp2std] C:\Windows\tsnp2std.exe ()
O4 - HKLM..\Run: [VirtualCloneDrive] C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe (Elaborate Bytes AG)
O4 - HKCU..\Run: [msnmsgr] C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
O4 - HKCU..\Run: [Speech Recognition] C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation)
O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: An vorhandene PDF-Datei anfügen - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: In Adobe PDF konvertieren - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Linkziel an vorhandene PDF-Datei anhängen - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Linkziel in Adobe PDF konvertieren - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: An vorhandene PDF-Datei anfügen - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: In Adobe PDF konvertieren - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Linkziel an vorhandene PDF-Datei anhängen - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Linkziel in Adobe PDF konvertieren - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9:64bit: - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:64bit: - Extra 'Tools' menuitem : Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Verknüpfte &OneNote-Notizen - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O30:64bit: - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{b45ba5c7-23c3-11df-8b75-001636aac5ed}\Shell - "" = AutoRun
O33 - MountPoints2\{b45ba5c7-23c3-11df-8b75-001636aac5ed}\Shell\AutoRun\command - "" = I:\OnSpcLCK.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\zh-TW
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\zh-CN
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Virtual PC
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\tr-TR
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\th-TH
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\sv-SE
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\ru-RU
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\ro-RO
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\pt-PT
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\pt-BR
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\pl-PL
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\nl-NL
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\nb-NO
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\ko-KR
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\ja-JP
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\it-IT
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\hu-HU
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\he-IL
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\fr-FR
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\fi-FI
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\es-ES
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\da-DK
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\cs-CZ
[2012.12.12 13:44:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\ar-SA
[2012.12.12 13:43:09 | 004,514,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vpc.exe
[2012.12.12 13:43:09 | 002,264,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VPCWizard.exe
[2012.12.12 13:43:09 | 000,360,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\vpcvmm.sys
[2012.12.12 13:43:08 | 001,210,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VMWindow.exe
[2012.12.12 13:39:01 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pl-PL\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tr-TR\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sv-SE\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ru-RU\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ro-RO\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-PT\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-BR\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nl-NL\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nb-NO\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\it-IT\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hu-HU\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fr-FR\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fi-FI\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\es-ES\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\da-DK\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\th-TH\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ko-KR\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ja-JP\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\he-IL\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ar-SA\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-TW\vpchbus.sys.mui
[2012.12.12 13:39:01 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-CN\vpchbus.sys.mui
[2012.12.12 13:39:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ru-RU\vpcuxd.sys.mui
[2012.12.12 13:39:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vpcuxd.sys.mui
[2012.12.12 13:39:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ru-RU\vpcusb.sys.mui
[2012.12.12 13:39:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vpcusb.sys.mui
[2012.12.12 13:39:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nl-NL\vpcnfltr.sys.mui
[2012.12.12 13:38:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pl-PL\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hu-HU\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fi-FI\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pl-PL\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nl-NL\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hu-HU\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-TW\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-CN\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tr-TR\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\th-TH\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sv-SE\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ro-RO\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-PT\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-BR\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nl-NL\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nb-NO\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ko-KR\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ja-JP\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\it-IT\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\he-IL\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fr-FR\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\es-ES\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\da-DK\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ar-SA\vpcuxd.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-TW\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-CN\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tr-TR\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\th-TH\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sv-SE\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ro-RO\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-PT\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-BR\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nb-NO\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ko-KR\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ja-JP\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\it-IT\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\he-IL\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fr-FR\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fi-FI\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\es-ES\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\da-DK\vpcusb.sys.mui
[2012.12.12 13:38:59 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ar-SA\vpcusb.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tr-TR\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\th-TH\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ru-RU\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ro-RO\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-PT\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-BR\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pl-PL\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nl-NL\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nb-NO\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\it-IT\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hu-HU\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fr-FR\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fi-FI\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\es-ES\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\da-DK\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ar-SA\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-TW\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-CN\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sv-SE\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ko-KR\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ja-JP\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\he-IL\vpcvmm.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-TW\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zh-CN\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\tr-TR\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\th-TH\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\sv-SE\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ru-RU\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ro-RO\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-PT\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pt-BR\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pl-PL\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\nb-NO\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ko-KR\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ja-JP\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\it-IT\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hu-HU\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\he-IL\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fr-FR\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fi-FI\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\es-ES\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\da-DK\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\cs-CZ\vpcnfltr.sys.mui
[2012.12.12 13:38:58 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ar-SA\vpcnfltr.sys.mui
[2012.12.12 13:38:54 | 001,369,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VPCSettings.exe
[2012.12.12 13:38:54 | 000,793,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vmsal.exe
[2012.12.12 13:38:54 | 000,562,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VMCPropertyHandler.dll
[2012.12.12 13:38:54 | 000,066,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\vpcnfltr.sys
[2012.12.12 13:38:53 | 000,936,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vmsal.exe
[2012.12.12 13:24:12 | 000,000,000 | ---D | C] -- C:\Programme\Windows XP Mode
[2010.04.25 18:08:26 | 000,562,688 | ---- | C] (OldTimer Tools) -- C:\Users1111111111\Desktop\OTL.exe
[2010.04.25 18:06:43 | 000,000,000 | ---D | C] -- C:\Users111111111111111111\AppData\Roaming\Malwarebytes
[2010.04.25 18:06:21 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2010.04.25 18:06:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2010.04.25 18:06:17 | 000,024,664 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2010.04.25 18:06:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2010.04.22 21:43:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rosetta Stone
[2010.04.22 21:42:28 | 000,000,000 | ---D | C] -- C:\ProgramData\RosettaStoneLtdBackup
[2010.04.22 20:18:53 | 000,665,600 | ---- | C] (Aladdin Knowledge Systems) -- C:\Windows\SysWow64\drivers\hardlock.sys
[2010.04.22 20:18:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MLS Talk&Write
[2010.04.22 20:08:05 | 000,000,000 | ---D | C] -- C:\Users11111111111\Desktop\MLS_Talk_Write_v1.1
[2010.04.22 19:59:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Rosetta Stone
[2010.04.22 15:37:45 | 000,000,000 | ---D | C] -- C:\Temp
[2010.04.22 15:37:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VOICE-IN SA
[2010.04.22 15:36:50 | 000,000,000 | ---D | C] -- C:\Windows\Downloaded Installations
[2010.04.22 15:31:04 | 000,000,000 | ---D | C] -- C:\Users11111111111\Desktop\LOGOGRA
[2010.04.20 18:08:40 | 000,307,072 | ---- | C] (AVEO Corp) -- C:\Windows\SysNative\drivers\AVEOdcnt.sys
[2010.04.20 18:08:40 | 000,057,344 | ---- | C] (Xirlink, Inc.) -- C:\Windows\SysWow64\sx_cam_i420.dll
[2010.04.20 18:08:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\USB2.0 PC Camera
[2010.04.19 20:04:04 | 000,000,000 | ---D | C] -- C:\Users111111111111111\Desktop\GAMMACARD UPDATE CYPRUS FOR EVER .BESTT .BESTT
[2010.04.19 16:07:55 | 000,000,000 | ---D | C] -- C:\Users111111111111111\Desktop\GSpot270a
[2010.04.17 17:57:35 | 000,000,000 | ---D | C] -- C:\Users111111111111\Desktop\neu gamma
[2010.04.15 15:56:01 | 000,024,416 | R--- | C] (Adobe Systems Inc.) -- C:\Windows\SysNative\AdobePDFUI.dll
[2010.04.15 15:22:49 | 005,509,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2010.04.15 15:22:46 | 003,899,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2010.04.15 15:22:42 | 003,954,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2010.04.15 15:22:26 | 000,612,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2010.04.15 15:22:26 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\vbscript.dll
[2010.04.15 15:22:25 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2010.04.15 15:22:24 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wintrust.dll
[2010.04.15 00:56:47 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cabview.dll
[2010.04.15 00:56:36 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cabview.dll
[2010.04.13 20:43:43 | 000,000,000 | ---D | C] -- C:\Users111111111111111\Desktop\12.4.2010_from_fe
[2010.04.13 00:18:12 | 000,000,000 | ---D | C] -- C:\Users111111111111\AppData\Roaming\IrfanView
[2010.04.13 00:18:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IrfanView
[2010.04.12 20:51:28 | 000,000,000 | ---D | C] -- C:\Users11111111111\Desktop\ccb_log
[2010.04.10 18:42:38 | 000,000,000 | ---D | C] -- C:\Programme\Kolor
[2010.04.10 16:25:07 | 000,000,000 | ---D | C] -- C:\Programme\Microsoft Research
[2010.04.09 20:03:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FileZilla FTP Client
[2010.04.09 20:01:59 | 000,000,000 | ---D | C] -- C:\Users\111111111111\AppData\Roaming\FileZilla
[2010.04.09 14:42:08 | 000,000,000 | ---D | C] -- C:\Users\111111111111\Documents\Remote Assistance Logs
[2010.03.31 00:46:59 | 001,026,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstime.dll
[2010.03.31 00:46:59 | 000,606,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstime.dll
[2010.03.31 00:46:58 | 001,192,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wininet.dll
[2010.03.31 00:46:58 | 000,977,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wininet.dll
[2010.03.31 00:46:58 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iedkcs32.dll
[2010.03.31 00:46:58 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iedkcs32.dll
[2010.03.31 00:46:58 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedsbs.dll
[2010.03.31 00:46:58 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedsbs.dll
[2010.03.30 16:18:57 | 000,000,000 | ---D | C] -- C:\Users\111111111111\AppData\Roaming\Notepad++
[2010.03.30 16:18:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Notepad++
[2010.03.30 12:54:09 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2010.03.29 21:52:30 | 000,000,000 | ---D | C] -- C:\Users111111111\AppData\Local\GHISLER
[2010.03.29 21:50:09 | 000,000,000 | ---D | C] -- C:\totalcmd
[2010.03.29 21:50:09 | 000,000,000 | ---D | C] -- C:\Users\111111111111\AppData\Roaming\GHISLER
[2010.03.29 21:04:07 | 000,000,000 | ---D | C] -- C:\Users\111111111111\AppData\Roaming\JAM Software
[2010.03.29 21:03:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\JAM Software
[2010.03.29 18:18:19 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Core
[2010.03.29 18:15:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2010.03.29 18:14:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR
[2010.03.29 04:32:47 | 000,000,000 | ---D | C] -- C:\Users\111111111111\AppData\Local\PunkBuster
[2010.03.29 04:32:40 | 000,000,000 | ---D | C] -- C:\Users\111111111111\Documents\BFBC2
[2010.03.29 04:01:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Electronic Arts
[2010.03.28 16:52:01 | 000,000,000 | ---D | C] -- C:\Users\111111111111\Documents\TrackMania
[2010.03.28 11:29:55 | 000,419,840 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2010.03.28 11:29:55 | 000,413,696 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2010.03.28 11:29:55 | 000,133,632 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2010.03.28 11:29:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenAL
[2010.03.28 11:29:54 | 000,110,592 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2010.03.27 22:01:30 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt
[2010.03.27 12:12:04 | 000,000,000 | -H-D | C] -- C:\Windows\msdownld.tmp
[2010.03.11 10:52:35 | 000,151,552 | ---- | C] ( ) -- C:\Windows\SysWow64\rsnp2std.dll
[2010.03.11 01:11:33 | 000,057,344 | ---- | C] ( ) -- C:\Windows\SysWow64\vsnp325.dll
[2010.03.11 01:11:33 | 000,053,248 | ---- | C] ( ) -- C:\Windows\SysWow64\csnp325.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012.12.12 13:14:09 | 000,110,360 | ---- | M] () -- C:\Users\111111111111\AppData\Local\GDIPFONTCACHEV1.DAT
[2012.12.12 13:13:48 | 003,020,936 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2010.04.26 00:52:41 | 003,407,872 | -HS- | M] () -- C:\Users\111111111111\NTUSER.DAT
[2010.04.26 00:51:14 | 009,102,709 | ---- | M] () -- C:\Users\111111111111\Desktop\flashforward.s01e15.720p.hdtv.x264-immerse.rar
[2010.04.26 00:14:00 | 000,001,142 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3327010703-3700767541-3160147471-1001UA.job
[2010.04.25 18:08:31 | 000,562,688 | ---- | M] (OldTimer Tools) -- C:\Users\111111111111\Desktop\OTL.exe
[2010.04.25 18:06:25 | 000,001,013 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.04.25 18:01:17 | 000,001,090 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3327010703-3700767541-3160147471-1001Core.job
[2010.04.25 17:55:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010.04.23 20:51:14 | 000,968,292 | ---- | M] () -- C:\Users\111111111111\Desktop\NP.FILES.KONSTANTINOS09.zip
[2010.04.23 17:01:52 | 000,022,400 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010.04.23 17:01:52 | 000,022,400 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010.04.23 16:22:28 | 000,645,740 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2010.04.23 16:22:28 | 000,607,728 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2010.04.23 16:22:28 | 000,541,690 | ---- | M] () -- C:\Windows\SysNative\perfh008.dat
[2010.04.23 16:22:28 | 000,127,028 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2010.04.23 16:22:28 | 000,104,106 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2010.04.23 16:22:28 | 000,086,458 | ---- | M] () -- C:\Windows\SysNative\perfc008.dat
[2010.04.23 16:22:27 | 002,095,528 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2010.04.22 20:18:57 | 000,000,047 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2010.04.22 20:18:53 | 000,665,600 | ---- | M] (Aladdin Knowledge Systems) -- C:\Windows\SysWow64\drivers\hardlock.sys
[2010.04.22 20:18:23 | 000,000,802 | ---- | M] () -- C:\Users\Public\Desktop\MLS Talk&Write.lnk
[2010.04.22 20:07:43 | 046,391,813 | ---- | M] () -- C:\Users\111111111111\Desktop\MLS_Talk_Write_v1.1.part2.rar
[2010.04.22 17:52:17 | 100,431,872 | ---- | M] () -- C:\Users\111111111111\Desktop\MLS_Talk_Write_v1.1.part1.rar
[2010.04.22 16:51:18 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010.04.22 16:51:01 | 2414,485,504 | -HS- | M] () -- C:\hiberfil.sys
[2010.04.22 16:50:01 | 001,424,978 | -H-- | M] () -- C:\Users\111111111111\AppData\Local\IconCache.db
[2010.04.22 15:37:28 | 000,002,608 | ---- | M] () -- C:\Users\111111111111\Desktop\Voice-In Dictation v1.2.lnk
[2010.04.22 15:25:05 | 094,023,689 | ---- | M] () -- C:\Users\111111111111\Desktop\LOGOGRA.rar
[2010.04.06 19:28:06 | 000,000,531 | ---- | M] () -- C:\Windows\OnSpcLCK.exe
[2010.04.06 19:01:56 | 000,002,562 | ---- | M] () -- C:\Windows\diagwrn.xml
[2010.04.06 19:01:56 | 000,001,908 | ---- | M] () -- C:\Windows\diagerr.xml
[2010.03.31 01:18:01 | 000,215,128 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2010.03.31 01:18:01 | 000,215,128 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.03.29 15:24:58 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2010.03.29 15:24:46 | 000,024,664 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2010.03.29 04:24:05 | 002,434,856 | ---- | M] () -- C:\Windows\SysWow64\pbsvc_bc2.exe
[2010.03.29 04:24:05 | 000,075,064 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010.03.28 11:29:55 | 000,419,840 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2010.03.28 11:29:55 | 000,413,696 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2010.03.28 11:29:55 | 000,133,632 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2010.03.28 11:29:54 | 000,110,592 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2010.04.26 00:49:51 | 009,102,709 | ---- | C] () -- C:\Users\111111111111\Desktop\flashforward.s01e15.720p.hdtv.x264-immerse.rar
[2010.04.25 18:06:25 | 000,001,013 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010.04.23 20:51:08 | 000,968,292 | ---- | C] () -- C:\Users\111111111111\Desktop\NP.FILES.KONSTANTINOS09.zip
[2010.04.22 20:18:52 | 000,000,047 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2010.04.22 20:18:23 | 000,000,802 | ---- | C] () -- C:\Users\Public\Desktop\MLS Talk&Write.lnk
[2010.04.22 20:01:41 | 046,391,813 | ---- | C] () -- C:\Users\111111111111\Desktop\MLS_Talk_Write_v1.1.part2.rar
[2010.04.22 17:34:09 | 100,431,872 | ---- | C] () -- C:\Users\111111111111\Desktop\MLS_Talk_Write_v1.1.part1.rar
[2010.04.22 15:37:28 | 000,002,608 | ---- | C] () -- C:\Users\111111111111\Desktop\Voice-In Dictation v1.2.lnk
[2010.04.22 15:12:31 | 094,023,689 | ---- | C] () -- C:\Users\111111111111\Desktop\LOGOGRA.rar
[2010.04.20 18:08:41 | 000,921,656 | ---- | C] () -- C:\Windows\SysWow64\newspaper_640_480.bmp
[2010.04.20 18:08:41 | 000,921,656 | ---- | C] () -- C:\Windows\SysWow64\aim_640_480.bmp
[2010.04.20 18:08:41 | 000,921,656 | ---- | C] () -- C:\Windows\SysWow64\4_640_480.bmp
[2010.04.20 18:08:41 | 000,921,656 | ---- | C] () -- C:\Windows\SysWow64\3_640_480.bmp
[2010.04.20 18:08:41 | 000,921,656 | ---- | C] () -- C:\Windows\SysWow64\2_640_480.bmp
[2010.04.20 18:08:41 | 000,921,654 | ---- | C] () -- C:\Windows\SysWow64\magnifier_640_480.bmp
[2010.04.20 18:08:41 | 000,230,456 | ---- | C] () -- C:\Windows\SysWow64\newspaper_320_240.bmp
[2010.04.20 18:08:41 | 000,230,456 | ---- | C] () -- C:\Windows\SysWow64\magnifier_320_240.bmp
[2010.04.20 18:08:41 | 000,230,456 | ---- | C] () -- C:\Windows\SysWow64\aim_320_240.bmp
[2010.04.20 18:08:41 | 000,230,456 | ---- | C] () -- C:\Windows\SysWow64\4_320_240.bmp
[2010.04.20 18:08:41 | 000,230,456 | ---- | C] () -- C:\Windows\SysWow64\3_320_240.bmp
[2010.04.20 18:08:41 | 000,230,456 | ---- | C] () -- C:\Windows\SysWow64\2_320_240.bmp
[2010.04.20 18:08:40 | 000,921,656 | ---- | C] () -- C:\Windows\SysWow64\1_640_480.bmp
[2010.04.20 18:08:40 | 000,230,456 | ---- | C] () -- C:\Windows\SysWow64\1_320_240.bmp
[2010.04.20 18:08:40 | 000,036,864 | ---- | C] () -- C:\Windows\SysWow64\AVEOcamintfc.ax
[2010.04.20 18:08:12 | 000,921,656 | ---- | C] () -- C:\Windows\SysNative\newspaper_640_480.bmp
[2010.04.20 18:08:12 | 000,921,656 | ---- | C] () -- C:\Windows\SysNative\aim_640_480.bmp
[2010.04.20 18:08:12 | 000,921,656 | ---- | C] () -- C:\Windows\SysNative\4_640_480.bmp
[2010.04.20 18:08:12 | 000,921,656 | ---- | C] () -- C:\Windows\SysNative\3_640_480.bmp
[2010.04.20 18:08:12 | 000,921,656 | ---- | C] () -- C:\Windows\SysNative\2_640_480.bmp
[2010.04.20 18:08:12 | 000,921,656 | ---- | C] () -- C:\Windows\SysNative\1_640_480.bmp
[2010.04.20 18:08:12 | 000,921,654 | ---- | C] () -- C:\Windows\SysNative\magnifier_640_480.bmp
[2010.04.20 18:08:12 | 000,230,456 | ---- | C] () -- C:\Windows\SysNative\newspaper_320_240.bmp
[2010.04.20 18:08:12 | 000,230,456 | ---- | C] () -- C:\Windows\SysNative\magnifier_320_240.bmp
[2010.04.20 18:08:12 | 000,230,456 | ---- | C] () -- C:\Windows\SysNative\aim_320_240.bmp
[2010.04.20 18:08:12 | 000,230,456 | ---- | C] () -- C:\Windows\SysNative\4_320_240.bmp
[2010.04.20 18:08:12 | 000,230,456 | ---- | C] () -- C:\Windows\SysNative\3_320_240.bmp
[2010.04.20 18:08:12 | 000,230,456 | ---- | C] () -- C:\Windows\SysNative\2_320_240.bmp
[2010.04.20 18:08:12 | 000,230,456 | ---- | C] () -- C:\Windows\SysNative\1_320_240.bmp
[2010.04.06 19:00:16 | 000,002,562 | ---- | C] () -- C:\Windows\diagwrn.xml
[2010.04.06 19:00:16 | 000,001,908 | ---- | C] () -- C:\Windows\diagerr.xml
[2010.04.05 19:53:01 | 000,201,765 | ---- | C] () -- C:\Users\111111111111\Documents\Paul-karate-kid.jpg
[2010.03.29 21:50:09 | 000,000,545 | ---- | C] () -- C:\Windows\UC.PIF
[2010.03.29 21:50:09 | 000,000,545 | ---- | C] () -- C:\Windows\RAR.PIF
[2010.03.29 21:50:09 | 000,000,545 | ---- | C] () -- C:\Windows\PKZIP.PIF
[2010.03.29 21:50:09 | 000,000,545 | ---- | C] () -- C:\Windows\PKUNZIP.PIF
[2010.03.29 21:50:09 | 000,000,545 | ---- | C] () -- C:\Windows\NOCLOSE.PIF
[2010.03.29 21:50:09 | 000,000,545 | ---- | C] () -- C:\Windows\LHA.PIF
[2010.03.29 21:50:09 | 000,000,545 | ---- | C] () -- C:\Windows\ARJ.PIF
[2010.03.29 04:32:50 | 000,215,128 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2010.03.29 04:24:07 | 000,215,128 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010.03.29 04:24:05 | 002,434,856 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_bc2.exe
[2010.03.29 04:24:05 | 000,075,064 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010.03.28 11:01:25 | 000,045,056 | ---- | C] () -- C:\Users\111111111111\AppData\Roaming\chrtmp
[2010.03.11 12:14:00 | 001,053,056 | ---- | C] () -- C:\Windows\SysWow64\drivers\CAMTHWDM.sys
[2010.03.11 12:07:08 | 001,367,040 | ---- | C] () -- C:\Windows\SysWow64\VitaminCtrl.dll
[2010.03.11 10:52:35 | 012,212,864 | ---- | C] () -- C:\Windows\SysWow64\drivers\snp2sxp.sys
[2010.03.11 10:52:35 | 000,025,472 | ---- | C] () -- C:\Windows\SysWow64\drivers\sncamd.sys
[2010.03.11 10:52:35 | 000,015,497 | ---- | C] () -- C:\Windows\snp2std.ini
[2010.03.02 02:28:26 | 000,178,176 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010.03.02 02:28:26 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2010.03.02 02:28:22 | 002,378,752 | ---- | C] () -- C:\Windows\SysWow64\x264vfw.dll
[2010.03.02 02:28:21 | 000,881,664 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2010.03.02 02:28:21 | 000,205,824 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2010.03.02 02:28:20 | 003,596,288 | ---- | C] () -- C:\Windows\SysWow64\qt-dx331.dll
[2010.03.02 02:28:17 | 000,085,504 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2010.03.02 02:28:17 | 000,000,547 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll.manifest
[2010.03.01 11:27:50 | 000,004,767 | ---- | C] () -- C:\Windows\Irremote.ini
[2010.02.28 13:46:52 | 000,190,976 | ---- | C] () -- C:\Windows\SysWow64\WgaLogon.dll
[2010.02.28 13:35:25 | 001,481,728 | ---- | C] () -- C:\Windows\SysWow64\LegitCheckControl.dll
[2010.02.28 13:34:46 | 000,667,136 | ---- | C] () -- C:\Windows\SysWow64\OGACheckControl.dll
[2009.07.14 02:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.14 00:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2008.10.07 10:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\SysWow64\physxcudart_20.dll
[2008.10.07 10:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll
[2008.10.07 10:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll

========== Files - Unicode (All) ==========
[2010.03.18 19:46:05 | 000,000,773 | ---- | M] ()(C:\Users\111111111111\Documents\ep?st?µ??e?.txt) -- C:\Users\111111111111\Documents\επιστήμονες.txt
[2010.03.18 19:46:05 | 000,000,773 | ---- | C] ()(C:\Users\111111111111\Documents\ep?st?µ??e?.txt) -- C:\Users\111111111111\Documents\επιστήμονες.txt
< End of report >
__________________

Alt 26.04.2010, 00:04   #4
trojaner2004
 
NoVirusThanks Malware Remover - Standard

NoVirusThanks Malware Remover



und das....
Zitat:
OTL Extras logfile created on: 26.04.2010 00:49:40 - Run 1
OTL by OldTimer - Version 3.2.2.0 Folder = C:\Users\1111111\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

3,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 29,00% Memory free
6,00 Gb Paging File | 3,00 Gb Available in Paging File | 55,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 80,01 Gb Total Space | 17,19 Gb Free Space | 21,49% Space Free | Partition Type: NTFS
Drive D: | 80,00 Gb Total Space | 5,14 Gb Free Space | 6,42% Space Free | Partition Type: NTFS
Drive E: | 18,02 Gb Total Space | 16,72 Gb Free Space | 92,74% Space Free | Partition Type: NTFS
Drive F: | 79,99 Gb Total Space | 6,93 Gb Free Space | 8,66% Space Free | Partition Type: NTFS
Drive G: | 40,06 Gb Total Space | 5,12 Gb Free Space | 12,79% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive O: | 576,12 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: 1111111-PC
Current User Name: 1111111
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files (x86)\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Browse with &IrfanView] -- "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Windows XP Mode
"{20140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 (Beta)
"{20140000-002A-0407-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (German) 2010 (Beta)
"{295CFB7C-A57E-4313-93E7-68E7CE1D0332}" = Adobe WinSoft Linguistics Plugin x64
"{2C304CEF-37C3-424E-9DD7-C56C45658290}" = Microsoft Image Composite Editor
"{2D74E972-5A85-44DC-9193-8A302BA8C181}" = Photoshop Camera Raw_x64
"{6631325A-9B1B-4EE7-8E64-8CC4A6F10643}" = Adobe Fonts All x64
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{84ED5482-CFB0-4DD9-BF18-489FFDACD18A}" = Microsoft Antimalware Service DE-DE Language Pack
"{8875A1C0-6308-4790-8CF6-D34E89880052}" = Adobe Linguistics CS4 x64
"{887797BF-37A5-4199-B0C9-0D38D6196E9A}" = Adobe Anchor Service x64 CS4
"{8C8D673B-20FB-43E6-BCB7-9B3F78F2E762}" = Adobe Type Support x64 CS4
"{8DAA31EB-6830-4006-A99F-4DF8AB24714F}" = Adobe CSI CS4 x64
"{90BA8112-80B3-4617-A3C1-BD2771B60F74}" = Adobe CMaps x64 CS4
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95C9C76F-ECF3-40FA-94F8-5DDFB6BAF40D}" = Microsoft Security Essentials
"{A3454894-144A-4D80-B605-C128FE0D7329}" = Adobe Drive CS4 x64
"{B37A99DD-88E2-4ED0-80B4-1E054AB354BF}" = Adobe InDesign CS4 Icon Handler x64
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{D285FC5F-3021-32E9-9C59-24CA325BDC5C}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729
"{D40172D6-CE2D-4B72-BF5F-26A04A900B7B}" = Adobe Photoshop CS4 (64 Bit)
"{DAE239CE-EB9D-4EB3-B0D4-528D6BAA48FD}" = Bonjour
"{DFFABE78-8173-4E97-9C5C-22FB26192FC5}" = Adobe PDF Library Files x64 CS4
"{E590FD1C-E8C6-4D2E-8CA9-77B403F7EE01}" = Microsoft Antimalware
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"Autopano Giga" = Autopano Giga
"Autopano Pro" = Autopano Pro
"CNXT_HDAUDIO" = Conexant HD Audio
"Microsoft Security Essentials" = Microsoft Security Essentials
"NVIDIA Drivers" = NVIDIA Drivers
"WinRAR archiver" = WinRAR

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{02627EE5-EACA-4742-A9CC-E687631773E4}" = Nero ShowTime
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{086A7D8C-0A38-4C7F-819A-620275550D5C}" = Nero Burning ROM Help
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{098A2A49-7CF3-4F08-A38D-FB879117152A}" = Adobe Color NA Extra Settings CS4
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0DC0E85F-36E4-463B-B3EA-4CD8ED2222A1}" = Adobe Color EU Recommended Settings CS4
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{11C88EEC-23FC-4181-B6E4-22247E2ABD28}" = Microsoft Expression Web 3
"{148E08FF-D7C4-46ED-8D4D-601C67FE0AFD}" = Rosetta Stone Version 3
"{14F70205-1940-4000-88C7-BE799A6B2CAD}" = Adobe Soundbooth CS4
"{15BF7AAF-846C-4A6D-80E1-5D1FC7FB461B}" = Adobe SGM CS4
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{1B7C06E1-4888-47A6-992A-0990B9683486}" = Adobe Version Cue CS4 Server
"{1C00C7C5-E615-4139-B817-7F4003DE68C0}" = Nero PhotoSnap Help
"{1DCA3EAA-6EB5-4563-A970-EA14D75037BA}" = Adobe InDesign CS4
"{1E04CB54-AF4E-4AC3-B4B7-C0A160BE57F1}" = Adobe InDesign CS4 Icon Handler
"{2012098D-EEE9-4769-8DD3-B038050854D4}" = Microsoft Silverlight 3 SDK
"{20140000-0015-0407-0000-0000000FF1CE}" = Microsoft Office Access MUI (German) 2010 (Beta)
"{20140000-0016-0407-0000-0000000FF1CE}" = Microsoft Office Excel MUI (German) 2010 (Beta)
"{20140000-0018-0407-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (German) 2010 (Beta)
"{20140000-0019-0407-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (German) 2010 (Beta)
"{20140000-001A-0407-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (German) 2010 (Beta)
"{20140000-001B-0407-0000-0000000FF1CE}" = Microsoft Office Word MUI (German) 2010 (Beta)
"{20140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 (Beta)
"{20140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 (Beta)
"{20140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 (Beta)
"{20140000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2010 (Beta)
"{20140000-002C-0407-0000-0000000FF1CE}" = Microsoft Office Proofing (German) 2010 (Beta)
"{20140000-003D-0000-0000-0000000FF1CE}" = Microsoft Office Single Image 2010 (Beta)
"{20140000-006E-0407-0000-0000000FF1CE}" = Microsoft Office Shared MUI (German) 2010 (Beta)
"{20140000-00A1-0407-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (German) 2010 (Beta)
"{20400DBD-E6DB-45B8-9B6B-1DD7033818EC}" = Nero InfoTool Help
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live-Uploadtool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2348B586-C9AE-46CE-936C-A68E9426E214}" = Nero StartSmart Help
"{26A24AE4-039D-4CA4-87B4-2F83216016FF}" = Java(TM) 6 Update 17
"{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime
"{2BA722D1-48D1-406E-9123-8AE5431D63EF}" = Windows Live Fotogalerie
"{2BAF2B96-7560-48B4-87D4-10178DDBE217}" = Adobe InDesign CS4 Application Feature Set Files (Roman)
"{30C8AA56-4088-426F-91D1-0EDFD3A25678}" = Adobe Dreamweaver CS4
"{33CF58F5-48D8-4575-83D6-96F574E4D83A}" = Nero DriveSpeed
"{359CFC0A-BEB1-440D-95BA-CF63A86DA34F}" = Nero Recode
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{368BA326-73AD-4351-84ED-3C0A7A52CC53}" = Nero Rescue Agent
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3A6829EF-0791-4FDD-9382-C690DD0821B9}" = Adobe Flash Player 10 ActiveX
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3D2C9DE6-9ADE-4252-A241-E43723B0CE02}" = Adobe Color - Photoshop Specific CS4
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3EFEF049-23D4-4B46-8903-4592FEA51018}" = Windows Live Movie Maker
"{4185cdf2-407f-43a4-806b-828c1ff207ab}" = Nero 9
"{41E654A9-26D0-4EAC-854B-0FA824FFFABB}" = Windows Live Messenger
"{428FDF9F-E010-4C4C-A8BB-156960AFCA1C}" = Adobe Fireworks CS4
"{43509E18-076E-40FE-AF38-CA5ED400A5A9}" = Pixel Bender Toolkit
"{43E39830-1826-415D-8BAE-86845787B54B}" = Nero Vision
"{44E240EC-2224-4078-A88B-2CEE0D3016EF}" = Adobe After Effects CS4 Presets
"{45EC816C-0771-4C14-AE6D-72D1B578F4C8}" = Adobe After Effects CS4
"{47C6F987-685A-41AE-B092-E75B277AEE39}" = Adobe Flash CS4 Extension - Flash Lite STI others
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A52555C-032A-4083-BDD9-6A85ABFB39A8}" = Adobe SING CS4
"{52232EF4-CC12-4C21-ABCF-ADB79618302D}" = Adobe Soundbooth CS4 Codecs
"{52B97218-98CB-4B8B-9283-D213C85E1AA4}" = Windows Live Anmelde-Assistent
"{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support
"{561968FD-56A1-49FD-9ED0-F55482C7C5BC}" = Adobe Media Encoder CS4 Exporter
"{56ABA277-EE53-4478-A607-FA42208FF5A9}" = Menu Templates - Pack 1
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{57250E78-F6E2-4DCE-9A84-50B28A70AB84}" = Menu Templates - Pack 3
"{595A3116-40BB-4E0F-A2E8-D7951DA56270}" = NeroExpress
"{5D9BE3C1-8BA4-4E7E-82FD-9F74FA6815D1}" = Nero Vision Help
"{5E08ECD1-C98E-4711-BF65-8FD736B3F969}" = Nero RescueAgent Help
"{5EAD5443-7194-46CC-A055-428E6ABB1BAF}" = Adobe Encore CS4
"{5EE6E987-1B79-4A93-832B-27472C7D1579}" = WPF Toolkit June 2009 (Version 3.5.40619.1)
"{5FC68772-6D56-41C6-9DF1-24E868198AE6}" = Windows Live Call
"{60C731FB-C951-41CE-AD41-8E54C8594609}" = Nero Disc Copy Gadget Help
"{60DB5894-B5A1-4B62-B0F3-669A22C0EE5D}" = Adobe Dynamiclink Support
"{61D6891E-E822-4448-9F9A-0AAAAEB6AF6C}" = Adobe Creative Suite 4 Master Collection
"{62AC81F6-BDD3-4110-9D36-3E9EAAB40999}" = Nero CoverDesigner
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E}" = Adobe After Effects CS4 Third Party Content
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser und SDK
"{7235252A-39A3-4889-AF58-18B82040310E}" = USB2.0 PC Camera
"{7406DF60-016D-476B-A2C7-55D997592047}" = Adobe OnLocation CS4
"{752E90AC-3F11-4EA3-88EA-96441047EC31}" = Microsoft Expression Web 3 SP1
"{75438C0E-9925-412E-AD85-D0E71C6CE2ED}" = USB2.0 PC Camera
"{76618402-179D-4699-A66B-D351C59436BC}" = Windows Live Sync
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart
"{77E33D87-255E-413E-9C8D-EED2A7F9BEBF}" = Nero Live Help
"{7829DB6F-A066-4E40-8912-CB07887C20BB}" = Nero BurnRights
"{7AA5E78D-BE64-4EA2-9CA7-DE37DCB3009A}" = Microsoft Expression Blend 3 SDK
"{7C668763-D786-460C-8921-079B8954C352}" = Microsoft Expression Studio 3
"{7CC7BDD5-6F10-4724-96A1-EAC7D9F2831C}" = Adobe InDesign CS4 Common Base Files
"{8186FF34-D389-4B7E-9A2F-C197585BCFBD}" = Adobe Media Encoder CS4 Importer
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{83202942-84B3-4C50-8622-B8C0AA2D2885}" = Nero Express Help
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{85243696-5E58-4357-9CF8-3498C609941D}" = NeroLiveGadget Help
"{857DA860-472D-483E-AC6E-B9D7DDCDB0BA}" = Microsoft Expression Design 3
"{869200DB-287A-4DC0-B02B-2B6787FBCD4C}" = Nero DiscSpeed
"{87532CAB-7932-4F84-8937-823337622807}" = Adobe Illustrator CS4
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8AAB4176-A747-493A-A42C-B63CFADFD8E3}" = NVIDIA PhysX
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{98A67610-A3B5-4098-A423-3708040026D3}" = "Nero SoundTrax Help
"{9AB8E6CE-CE6D-43A0-B54E-422425524FF9}" = Menu Templates - Pack 2
"{9D6CCE4B-51EA-4D3B-BC1A-8C1C36F3B7E8}" = MLS Talk&Write
"{9E82B934-9A25-445B-B8DF-8012808074AC}" = Nero PhotoSnap
"{9E9FDDE6-2C26-492A-85A0-05646B3F2795}" = NeroLiveGadget
"{A209525B-3377-43F4-B886-32F6B6E7356F}" = Nero WaveEditor
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A67BB21E-D419-45BB-AB86-7D87D14BBCE2}" = Safari
"{A6EC82A0-1414-475D-8AFD-469089F3080D}" = Adobe Contribute CS4
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{AC76BA86-1033-F400-7760-000000000004}" = Adobe Acrobat 9 Pro - English, Français, Deutsch
"{AC76BA86-1033-F400-7760-000000000004}_932" = Adobe Acrobat 9.3.2 - CPSID_53951
"{AD6BC5CC-2EF0-49C4-B33D-CDC8B2C4DC80}" = Nero Recode Help
"{B05DE7B7-0B40-4411-BD4B-222CAE2D8F15}" = Adobe MotionPicture Color Files CS4
"{B095B0A4-50A5-46D7-9988-D038FEB040C0}" = Adobe Encore CS4 Library
"{B15381DD-FF97-4FCD-A881-ED4DB0975500}" = Adobe Color Video Profiles AE CS4
"{B169BC97-B8AA-4ACA-9CF2-9D0FF5BABDF7}" = Adobe Premiere Pro CS4 Functional Content
"{B1ADF008-E898-4FE2-8A1F-690D9A06ACAF}" = DolbyFiles
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B78120A0-CF84-4366-A393-4D0A59BC546C}" = Menu Templates - Starter Kit
"{B9F4561A-924D-4510-A85A-BB0960C338CB}" = Adobe Asset Services CS4
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BD3374D3-C2E6-42B7-A80B-E850B6886246}" = Adobe Flash CS4 STI-other
"{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
"{BE1826A9-7EEE-492A-B3BC-DEF3DFAE37EE}" = TIPCI
"{BE998F99-4CEB-4E64-B717-493A2E9797F4}" = TOSHIBA Supervisor Password
"{BE9CEAAA-F069-4331-BF2F-8D350F6504F4}" = Adobe Media Encoder CS4 Additional Exporter
"{C4D738F7-996A-4C81-B8FA-C4E26D767E41}" = Windows Live Mail
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C5A7CB6C-E76D-408F-BA0E-85605420FE9D}" = SoundTrax
"{C86E7C99-E4AD-79C7-375B-1AEF9A91EC2B}" = Acrobat.com
"{C938BE91-3BB5-4B84-9EF6-88F0505D0038}" = Adobe Premiere Pro CS4 Third Party Content
"{CC019E3F-59D2-4486-8D4B-878105B62A71}" = Nero DiscSpeed Help
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CE96F5A5-584D-4F8F-AA3E-9BAED413DB72}" = Nero CoverDesigner Help
"{D025A639-B9C9-417D-8531-208859000AF8}" = NeroBurningROM
"{D499F8DE-3F31-4900-9157-61061613704B}" = Adobe Premiere Pro CS4
"{D6041FD0-9644-4F3C-82D4-D6B81A09E1E6}" = ΗΛΕΚΤΡΟΝΙΚΟΣ ΛΟΓΟΓΡΑΦΟΣ
"{D9DCF92E-72EB-412D-AC71-3B01276E5F8B}" = Nero ShowTime
"{DA7113AA-E3D0-48C6-BE31-E1F11BB9D18E}" = U232 P9/P25 V7.2.98
"{DEB90B8E-0DCB-48CE-B90E-8842A2BD643E}" = Adobe Media Encoder CS4
"{DF6A95F5-ADC1-406A-BDC6-2AA7CC0182AA}" = Nero Live
"{E1C4F4F3-067B-4E16-87AB-1DF79D287126}" = Microsoft Expression Blend 3
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E498385E-1C51-459A-B45F-1721E37AA1A0}" = Movie Templates - Starter Kit
"{E5C7D048-F9B4-4219-B323-8BDB01A2563D}" = Nero DriveSpeed Help
"{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
"{E8EE9410-8AC4-4F43-A626-DDECA75C79F3}" = Adobe Setup
"{E8FC40D9-D7E5-49FC-B58C-D366A3F35874}" = Microsoft Expression Encoder 3
"{EB0B41B1-E84F-483C-91FF-BB83019EE127}" = TOSHIBA Hardware Setup
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{EE353798-E875-42E0-B58D-7E6696182EA8}" = Adobe Media Encoder CS4 Dolby
"{EEC010D0-1252-4E1D-BAD9-F1B8F414535C}" = PL-2303 Vista Driver Installer
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F1861F30-3419-44DB-B2A1-C274825698B3}" = Nero Disc Copy Gadget
"{F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}" = Nero ControlCenter
"{F425DD1D-0097-41C3-B545-B79E3D51100E}" = Movie Templates - Pack 1
"{F600CCF3-9C88-4A22-B0B4-DDA82E997118}" = Adobe After Effects CS4 Template Projects & Footage
"{F6BDD7C5-89ED-4569-9318-469AA9732572}" = Nero BurnRights Help
"{F6E99614-F042-4459-82B7-8B38B2601356}" = Adobe Flash CS4
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F8FF18EE-264A-43FD-B2F6-5EAD40798C2F}" = Windows Live Essentials
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FB2A5FCC-B81B-48C2-A009-7804694D83E9}" = Adobe Encore CS4 Codecs
"{FBCDFD61-7DCF-4E71-9226-873BA0053139}" = Nero InfoTool
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe_5445c5ddd9a5c69582d3c1e2bba18f7" = Adobe Creative Suite 4 Master Collection
"Blend_3.0.1938.0" = Microsoft Expression Blend 3
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"Design_6.0.1739.0" = Microsoft Expression Design 3
"EA Download Manager" = EA Download Manager
"eMule" = eMule
"Encoder_3.0.1332.0" = Microsoft Expression Encoder 3
"ExpressionStudio_3.0.1064.0" = Microsoft Expression Studio 3
"FileZilla Client" = FileZilla Client 3.3.2.1
"InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"InstallShield_{BE1826A9-7EEE-492A-B3BC-DEF3DFAE37EE}" = Texas Instruments PCIxx21/x515/xx12 drivers.
"InstallShield_{BE998F99-4CEB-4E64-B717-493A2E9797F4}" = TOSHIBA Supervisor Password
"InstallShield_{EB0B41B1-E84F-483C-91FF-BB83019EE127}" = TOSHIBA Hardware Setup
"IrfanView" = IrfanView (remove only)
"JDownloader" = JDownloader
"KLiteCodecPack_is1" = K-Lite Mega Codec Pack 5.7.0
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MozBackup" = MozBackup 1.4.10
"Mozilla Firefox (3.6)" = Mozilla Firefox (3.6)
"Notepad++" = Notepad++
"Office14.SingleImage" = Microsoft Office Home and Business 2010
"OpenAL" = OpenAL
"PunkBusterSvc" = PunkBuster Services
"Totalcmd" = Total Commander (Remove or Repair)
"TreeSize Professional_is1" = TreeSize Professional 5.3.4
"uTorrent" = µTorrent
"VirtualCloneDrive" = VirtualCloneDrive
"VLC media player" = VLC media player 1.0.5
"Web_3.0.3813.0" = Microsoft Expression Web 3
"WinLiveSuite_Wave3" = Windows Live Essentials

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 16.04.2010 20:14:05 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =

Error - 16.04.2010 21:14:05 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =

Error - 16.04.2010 22:14:05 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =

Error - 16.04.2010 23:14:05 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =

Error - 17.04.2010 00:14:05 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =

Error - 17.04.2010 01:14:05 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =

Error - 17.04.2010 05:59:33 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =

Error - 17.04.2010 11:22:05 | Computer Name = 1111111-PC | Source = CardSpace 3.0.0.0 | ID = 327940
Description = Fehler beim Importieren einer Karte. Fehler beim Lesen der importierten
Kartendatei. Interne Ausnahme: Die Daten auf der obersten Ebene sind ungültig. Zeile
1, Position 1. Additional Information: Microsoft.InfoCards.ImportException: Fehler
beim Lesen der importierten Kartendatei. ---> System.Xml.XmlException: Die Daten
auf der obersten Ebene sind ungültig. Zeile 1, Position 1. bei System.Xml.XmlExceptionHelper.ThrowXmlException(XmlDictionaryReader
reader, String res, String arg1, String arg2, String arg3) bei System.Xml.XmlUTF8TextReader.Read()

bei System.Xml.XmlCharCheckingReader.Read() bei System.Xml.XsdValidatingReader.Read()

bei System.Xml.XmlReader.MoveToContent() bei System.Xml.XmlReader.IsStartElement(String
localname, String ns) bei Microsoft.InfoCards.CheckStoreFileValidityRequest.OnProcess()

--- Ende der internen Ausnahmestapelüberwachung ---

Error - 17.04.2010 11:22:05 | Computer Name = 1111111-PC | Source = CardSpace 3.0.0.0 | ID = 327940
Description = Fehler beim Importieren einer Karte. Fehler beim Lesen der importierten
Kartendatei. Interne Ausnahme: Die Daten auf der obersten Ebene sind ungültig. Zeile
1, Position 1. Additional Information: Microsoft.InfoCards.ImportException: Fehler
beim Lesen der importierten Kartendatei. ---> System.Xml.XmlException: Die Daten
auf der obersten Ebene sind ungültig. Zeile 1, Position 1. bei System.Xml.XmlExceptionHelper.ThrowXmlException(XmlDictionaryReader
reader, String res, String arg1, String arg2, String arg3) bei System.Xml.XmlUTF8TextReader.Read()

bei System.Xml.XmlCharCheckingReader.Read() bei System.Xml.XmlLoader.Load(XmlDocument
doc, XmlReader reader, Boolean preserveWhitespace) bei System.Xml.XmlDocument.Load(XmlReader
reader) bei Microsoft.InfoCards.InfoCardXmlSerializer.RetrieveIssuerAndCheckSign(XmlReader
reader) bei Microsoft.InfoCards.InfoCardXmlSerializer.CreateCardFromXml(String
filename) bei Microsoft.InfoCards.InfoCardXmlSerializer.Deserialize(String filename)

--- Ende der internen Ausnahmestapelüberwachung ---

Error - 20.04.2010 04:25:52 | Computer Name = 1111111-PC | Source = Google Update | ID = 20
Description =


< End of report >

Alt 26.04.2010, 07:33   #5
Metallica
 
NoVirusThanks Malware Remover - Icon21

NoVirusThanks Malware Remover



Code:
ATTFilter
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O Defrag Professional Edition\keygen.exe (Malware.Tool) -> No action taken.
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O DiskImage Professionel\keygen.exe (Malware.Tool) -> No action taken.
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O DiskStat\keygen.exe (Malware.Tool) -> No action taken.
G:\bitt\O&O Software MegaPack 32 und 64 bit german\O&O PartitionManager\keygen.exe (Malware.Tool) -> No action taken.
G:\Desktop\gamma file\CryptLoad_1.1.8\ocr\filer.net\ocr_by_spider_b\Version4.exe (Trojan.Downloader) -> No action taken.
G:\Desktop\gamma file\CryptLoad_1.1.8\ocr\netload.in\asmCaptcha\test.exe (Malware.Packer) -> No action taken.
G:\Desktop\gamma file\CryptLoad_1.1.8\router\FRITZ!Box\nc.exe (PUP.KeyLogger) -> No action taken.
G:\Desktop\gamma3\usb stick\Adobe CS4 Activation 32-64bit\Adobe CS4 Activation 32-64bit\keygen.exe (Trojan.Agent) -> No action taken.
G:\Desktop\gamma3\usb stick\Adobe CS4 Master Collection Full CRACK ONLY [Darkman]\Adobe CS4 Master Collection Keygen.exe (Trojan.Agent.CK) -> No action taken.
         
Ich würd mal sagen du hast nen Volltreffer gelanded....

Setz deinen PC neu auf und Lass die Finger von solchen Dingen!!!

Gruß


Antwort

Themen zu NoVirusThanks Malware Remover
64-bit, antimalware, antivir, appdata, boot, catroot2, crypto, dateien, desktop, edb.log, enfernen, erkannt, gen, handy, infected, log, malware, maßnahme, microsoft, microsoft security, ordner, programdata, remover, roaming, security, software, system, system volume information, system32, version



Ähnliche Themen: NoVirusThanks Malware Remover


  1. AVG Zero.Access Remover
    Anleitungen, FAQs & Links - 28.04.2012 (0)
  2. Trojan Remover und Hitman Pro?
    Antiviren-, Firewall- und andere Schutzprogramme - 10.09.2011 (5)
  3. Windows Problems Remover entfernen
    Anleitungen, FAQs & Links - 02.02.2011 (2)
  4. Loaris Trojan Remover REINGEFALLEN!
    Plagegeister aller Art und deren Bekämpfung - 20.12.2010 (1)
  5. Bootkit Remover
    Anleitungen, FAQs & Links - 30.05.2010 (1)
  6. Advanced Virus Remover entfernen
    Anleitungen, FAQs & Links - 10.06.2009 (2)
  7. virus remover 2008
    Mülltonne - 29.12.2008 (0)
  8. virus remover 2008...
    Plagegeister aller Art und deren Bekämpfung - 29.12.2008 (1)
  9. Virus Remover usw
    Log-Analyse und Auswertung - 06.12.2008 (0)
  10. Ist Voice Remover Trojaner???
    Plagegeister aller Art und deren Bekämpfung - 26.09.2008 (4)
  11. Danger! Virtumonde & Privacy Remover
    Log-Analyse und Auswertung - 23.08.2008 (12)
  12. Generic Smitfraud remover / SmitFraudFix
    Plagegeister aller Art und deren Bekämpfung - 25.05.2007 (7)
  13. Trojan Remover 2.0 (für alle Virentypen)
    Antiviren-, Firewall- und andere Schutzprogramme - 08.12.2006 (7)
  14. BPS Spyware & Adware Remover
    Antiviren-, Firewall- und andere Schutzprogramme - 26.03.2006 (1)
  15. Trojan-spy.html.smitfraud remover
    Log-Analyse und Auswertung - 16.06.2005 (33)
  16. BPS Spyware&Adware Remover
    Antiviren-, Firewall- und andere Schutzprogramme - 03.05.2005 (2)
  17. Problem MS-Search.com ads remover
    Log-Analyse und Auswertung - 28.03.2005 (6)

Zum Thema NoVirusThanks Malware Remover - Hallo, Ich habe mir NoVirusThanks Malware Remover runtergeladen und mal mein pc durch gescannt, dem Log habe ich hier rein gestellt. Mein standard Antivir Software ist microsoft security essentials. Ich - NoVirusThanks Malware Remover...
Archiv
Du betrachtest: NoVirusThanks Malware Remover auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.