Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   Virus auf meiner Digitalcamera (https://www.trojaner-board.de/111372-virus-meiner-digitalcamera.html)

playmo 13.03.2012 09:45

Virus auf meiner Digitalcamera
 
hallo liebes trojanerboarteam!

letzte woche bin ich aus dem urlaub wiedergekommen und wollte meine bilder auf den pc ziehen.
da kam dann schon eine virusmeldung. zwar konnte ich meine bilder noch auf den pc ziehen, aber die qualität der bilder ist echt schlecht (was sonst nicht der fall ist).
habe mich jetzt noch nicht wieder getraut, die camera an den pc anzuschließen
(aber wahrscheinlich muss ich das machen, damit ich euch funde von der sicherheitssoftware geben kann, oder?).

ich habe nur meinen stick angeschlossen, wo auch schon einige bilder drauf waren/sind. beim anschließen des sticks, gibt avira folgende meldung:
zu ihrer sicherheit wurde der zugriff auf die datei G:\autorun.inf blockiert.

könnt ihr mir irgendwie weiterhelfen?
und sind die bilder noch irgendwie zu retten???
beim anschauen auf der digicam ist die qualität der bilder noch gut wie wie vorher.

1000 DANK IM VORAUS!!!

cosinus 13.03.2012 18:31

Zitat:

zu ihrer sicherheit wurde der zugriff auf die datei G:\autorun.inf blockiert.
die autorun.inf ist kein Virus. Diese Datei ist eine Art Steuerdatei, sie kann aber für das automatische Ausführen von Schälingen missbraucht werden, weil Windows-User es lieben, mit Adminrechten ständig zu arbeiten und die automatische Wiedergabe natürlich aktiv zu haben :pfeiff:

playmo 13.03.2012 23:05

okay, DANKE erstmal für deine antwort:)!!!

aber was heißt das jetzt genau für mich?
kann ich den stick öffnen? oder kann ich diese steuerdatei irgendwie ausschalten?

und hat jemand eine idee wegen meiner digicam und den bildern???

DANKE AN ALLE!

cosinus 14.03.2012 15:15

Automatische Wiedergabe deaktivieren

Windows XP: Zur Vereinfachung hab ich mal die noautoplay.reg hochgeladen. Lad das auf dem Desktop herunter, führ die Datei aus und bestätige mit ja. Nach einem Neustart des Rechners ist die automatische Wiedergabe (von Datenträgern) auf allen Laufwerken deaktiviert, d.h. keine CD, kein Stick oder sonstwas startet nach dem Einstecken mehr automatisch.

Windows Vista/7: In der Systemsteuerung unter automatische Wiedergabe von CDs und anderen Medien alles deaktivieren. => siehe auch Einstellungen für automatische Wiedergabe ändern

playmo 14.03.2012 18:56

hmm....das mit dem audio converter hat nicht so wirklich geklappt:-/!

der stick wurde wieder direkt geöffnet.
4 x virus EXP/CVE-2010-2568.A
soll ich diese in quarantäne verschieben?
dann sind diese viren wohl auch auf meiner cam, oder?

was kann ich tun???

@COSINUS: DANKE FÜR DEIN SUPPORT!!!

cosinus 14.03.2012 21:16

Würdest du mal bitte so posten dass das auch andere außer dir verstehen können
Was für einen Audioconverter meinst du und wo ist das Log zum Fund?!
Mit diesen jetzigen Infos kann dir niemand helfen!

playmo 14.03.2012 22:54

sorry, wenn das so unverständlich rübergekommen ist!

diesen audio converter habe ich unter deiner linkangabe (noautoplay.reg)
runtergeladen!

hier der report:



Avira Free Antivirus
Erstellungsdatum der Reportdatei: Mittwoch, 14. März 2012 22:51

Es wird nach 3554761 Virenstämmen gesucht.

Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.

Lizenznehmer : Avira AntiVir Personal - Free Antivirus
Seriennummer : 0000149996-ADJIE-0000001
Plattform : Windows XP
Windowsversion : (Service Pack 3) [5.1.2600]
Boot Modus : Normal gebootet
Benutzername : Giu
Computername : GIU-LAPTOP

Versionsinformationen:
BUILD.DAT : 12.0.0.898 41963 Bytes 31.01.2012 13:51:00
AVSCAN.EXE : 12.1.0.20 492496 Bytes 31.01.2012 07:55:52
AVSCAN.DLL : 12.1.0.18 65744 Bytes 31.01.2012 07:56:29
LUKE.DLL : 12.1.0.19 68304 Bytes 31.01.2012 07:56:01
AVSCPLR.DLL : 12.1.0.22 100048 Bytes 31.01.2012 07:55:52
AVREG.DLL : 12.1.0.29 228048 Bytes 31.01.2012 07:55:51
VBASE000.VDF : 7.10.0.0 19875328 Bytes 06.11.2009 10:49:21
VBASE001.VDF : 7.11.0.0 13342208 Bytes 14.12.2010 07:56:15
VBASE002.VDF : 7.11.19.170 14374912 Bytes 20.12.2011 07:56:21
VBASE003.VDF : 7.11.21.238 4472832 Bytes 01.02.2012 10:24:22
VBASE004.VDF : 7.11.21.239 2048 Bytes 01.02.2012 10:24:22
VBASE005.VDF : 7.11.21.240 2048 Bytes 01.02.2012 10:24:22
VBASE006.VDF : 7.11.21.241 2048 Bytes 01.02.2012 10:24:22
VBASE007.VDF : 7.11.21.242 2048 Bytes 01.02.2012 10:24:22
VBASE008.VDF : 7.11.21.243 2048 Bytes 01.02.2012 10:24:22
VBASE009.VDF : 7.11.21.244 2048 Bytes 01.02.2012 10:24:23
VBASE010.VDF : 7.11.21.245 2048 Bytes 01.02.2012 10:24:23
VBASE011.VDF : 7.11.21.246 2048 Bytes 01.02.2012 10:24:23
VBASE012.VDF : 7.11.21.247 2048 Bytes 01.02.2012 10:24:23
VBASE013.VDF : 7.11.22.33 1486848 Bytes 03.02.2012 10:24:25
VBASE014.VDF : 7.11.22.56 687616 Bytes 03.02.2012 10:24:26
VBASE015.VDF : 7.11.22.92 178176 Bytes 06.02.2012 10:24:26
VBASE016.VDF : 7.11.22.154 144896 Bytes 08.02.2012 10:24:27
VBASE017.VDF : 7.11.22.220 183296 Bytes 13.02.2012 10:24:27
VBASE018.VDF : 7.11.23.34 202752 Bytes 15.02.2012 10:24:28
VBASE019.VDF : 7.11.23.98 126464 Bytes 17.02.2012 10:24:28
VBASE020.VDF : 7.11.23.150 148480 Bytes 20.02.2012 10:24:28
VBASE021.VDF : 7.11.23.224 172544 Bytes 23.02.2012 10:24:28
VBASE022.VDF : 7.11.24.52 219648 Bytes 28.02.2012 10:24:29
VBASE023.VDF : 7.11.24.152 165888 Bytes 05.03.2012 10:24:29
VBASE024.VDF : 7.11.24.204 177664 Bytes 07.03.2012 10:24:30
VBASE025.VDF : 7.11.25.30 245248 Bytes 12.03.2012 20:12:37
VBASE026.VDF : 7.11.25.31 2048 Bytes 12.03.2012 20:12:37
VBASE027.VDF : 7.11.25.32 2048 Bytes 12.03.2012 20:12:38
VBASE028.VDF : 7.11.25.33 2048 Bytes 12.03.2012 20:12:38
VBASE029.VDF : 7.11.25.34 2048 Bytes 12.03.2012 20:12:38
VBASE030.VDF : 7.11.25.35 2048 Bytes 12.03.2012 20:12:38
VBASE031.VDF : 7.11.25.68 119808 Bytes 13.03.2012 21:59:33
Engineversion : 8.2.10.20
AEVDF.DLL : 8.1.2.2 106868 Bytes 31.01.2012 07:55:38
AESCRIPT.DLL : 8.1.4.9 455032 Bytes 12.03.2012 20:13:31
AESCN.DLL : 8.1.8.2 131444 Bytes 11.03.2012 10:24:36
AESBX.DLL : 8.2.5.5 606579 Bytes 12.03.2012 20:13:36
AERDL.DLL : 8.1.9.15 639348 Bytes 31.01.2012 07:55:37
AEPACK.DLL : 8.2.16.5 803190 Bytes 11.03.2012 10:24:36
AEOFFICE.DLL : 8.1.2.25 201084 Bytes 31.01.2012 07:55:36
AEHEUR.DLL : 8.1.4.4 4460916 Bytes 12.03.2012 20:13:25
AEHELP.DLL : 8.1.19.0 254327 Bytes 11.03.2012 10:24:32
AEGEN.DLL : 8.1.5.23 409973 Bytes 11.03.2012 10:24:32
AEEXP.DLL : 8.1.0.24 74101 Bytes 11.03.2012 10:24:37
AEEMU.DLL : 8.1.3.0 393589 Bytes 31.01.2012 07:55:34
AECORE.DLL : 8.1.25.5 201079 Bytes 11.03.2012 10:24:31
AEBB.DLL : 8.1.1.0 53618 Bytes 31.01.2012 07:55:33
AVWINLL.DLL : 12.1.0.17 27344 Bytes 31.01.2012 07:55:54
AVPREF.DLL : 12.1.0.17 51920 Bytes 31.01.2012 07:55:51
AVREP.DLL : 12.1.0.17 179408 Bytes 31.01.2012 07:55:51
AVARKT.DLL : 12.1.0.23 209360 Bytes 31.01.2012 07:55:46
AVEVTLOG.DLL : 12.1.0.17 169168 Bytes 31.01.2012 07:55:47
SQLITE3.DLL : 3.7.0.0 398288 Bytes 31.01.2012 07:56:07
AVSMTP.DLL : 12.1.0.17 62928 Bytes 31.01.2012 07:55:52
NETNT.DLL : 12.1.0.17 17104 Bytes 31.01.2012 07:56:02
RCIMAGE.DLL : 12.1.0.17 4447952 Bytes 31.01.2012 07:56:32
RCTEXT.DLL : 12.1.0.16 98512 Bytes 31.01.2012 07:56:32

Konfiguration für den aktuellen Suchlauf:
Job Name..............................: ShlExt
Konfigurationsdatei...................: C:\Temp\237623e5.avp
Protokollierung.......................: standard
Primäre Aktion........................: interaktiv
Sekundäre Aktion......................: ignorieren
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: ein
Bootsektoren..........................: G:,
Durchsuche aktive Programme...........: aus
Durchsuche Registrierung..............: aus
Suche nach Rootkits...................: aus
Integritätsprüfung von Systemdateien..: aus
Datei Suchmodus.......................: Intelligente Dateiauswahl
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: erweitert

Beginn des Suchlaufs: Mittwoch, 14. März 2012 22:51

Der Suchlauf über die ausgewählten Dateien wird begonnen:

Beginne mit der Suche in 'G:\'
G:\autorun.inf
[FUND] Ist das Trojanische Pferd TR/Agent.VB.1624
G:\Copy of Shortcut to (1).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
G:\Copy of Shortcut to (2).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
G:\Copy of Shortcut to (3).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
G:\Copy of Shortcut to (4).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\awUNYVOi.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\bZiGCNXC.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\uUjDGvPQ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\GjGBlPVC.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\mjYmFjkb.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IZCCVsUl.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\WUwVbulA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\kaqSkADd.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\erypCoXl.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SnBefBZD.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\asVVeRFK.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\TaqZCKVb.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\axOfCogx.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\cFuHBsiy.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IuvrhOdP.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\gYPqBGhm.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\HDRcHZJy.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hYlNmaNZ.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\UUYVvnqN.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\JJUsHuQh.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\KtKQnBwI.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\AHrvXHMo.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\yOBcErXR.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\yhirBcHG.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\pjiwpJhB.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SGsmlxcq.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wiCXHoes.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IdadtHsq.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rtyPdxIW.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\osIriTNB.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\RMTIDkhE.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\mvZqcTch.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\BCDHTDqd.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\eqMmWYQW.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\gApgmOCA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rxdnDWgX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\OJQZHnNt.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\xkYAVXwZ.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\cEiisDtx.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hyNUbEeo.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\fUlNVRwZ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\oiHkJKkH.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wqiucQRU.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\QNcUdixS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\shiZnTPF.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\AZaaHiPg.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\VYXViehY.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IZrDbwMc.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\herKYQEt.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\sberHeAG.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uVZxhhkF.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\kJQenmrk.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\mywtyKxT.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\UwQWvfrC.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ObQrWTRp.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\jhhfDIFB.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\OINuEjFQ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\CacHTMPW.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\XufLLEDf.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hwZHlHZS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\CkoaZRhS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\pDIsGfjU.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\RidXnyUf.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\NdvEsvMh.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\mGrWnaEI.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\MOwtqOdB.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rmsFuMXS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\BcSLVIEb.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\vXjicPfs.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SwhpdnJx.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\OUEdUJwQ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hZFPLSxp.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\oDcqScmg.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\kSnsyqJk.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ZTjAYZIh.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\tYIphLEX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\iKmmBiPP.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hlOdqetS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IGVyPefA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\pJdpcAlA.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\WPGuAocP.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\dPdQYxKH.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\jPFOWeiS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ZUvibQlM.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\RahqeLLA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\qwwtKglw.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\KxwGttnB.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\phNJvrOW.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\FvjcdGnw.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rfTXhcXv.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\nBlyHTNA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\bFxAFMkX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uecgjXMk.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uJjvnPWX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\aZowvUiY.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\gSOabbSC.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\jGkalYTj.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ebgfrKYK.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SZxcDpnG.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\JINAcqEI.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wZrHVfIM.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uimAAvTf.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\UkQMYtUS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wPSvKWsO.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\iFcVSIMk.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\bOhpUxMS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\CxfvfYen.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ynnpIqHa.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\cidahMOq.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y

Beginne mit der Desinfektion:
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\cidahMOq.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ynnpIqHa.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\CxfvfYen.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\bOhpUxMS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\iFcVSIMk.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wPSvKWsO.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\UkQMYtUS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uimAAvTf.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wZrHVfIM.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\JINAcqEI.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SZxcDpnG.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ebgfrKYK.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\jGkalYTj.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\gSOabbSC.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\aZowvUiY.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uJjvnPWX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uecgjXMk.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\bFxAFMkX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\nBlyHTNA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rfTXhcXv.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\FvjcdGnw.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\phNJvrOW.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\KxwGttnB.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\qwwtKglw.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\RahqeLLA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ZUvibQlM.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\jPFOWeiS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\dPdQYxKH.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\WPGuAocP.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\pJdpcAlA.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IGVyPefA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hlOdqetS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\iKmmBiPP.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\tYIphLEX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ZTjAYZIh.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\kSnsyqJk.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\oDcqScmg.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hZFPLSxp.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\OUEdUJwQ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SwhpdnJx.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\vXjicPfs.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\BcSLVIEb.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rmsFuMXS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\MOwtqOdB.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\mGrWnaEI.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\NdvEsvMh.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\RidXnyUf.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\pDIsGfjU.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\CkoaZRhS.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hwZHlHZS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\XufLLEDf.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\CacHTMPW.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\OINuEjFQ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\jhhfDIFB.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\ObQrWTRp.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\UwQWvfrC.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\mywtyKxT.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\kJQenmrk.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\uVZxhhkF.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\sberHeAG.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\herKYQEt.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IZrDbwMc.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\VYXViehY.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\AZaaHiPg.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\shiZnTPF.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\QNcUdixS.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wqiucQRU.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\oiHkJKkH.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\fUlNVRwZ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hyNUbEeo.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\cEiisDtx.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\xkYAVXwZ.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\OJQZHnNt.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rxdnDWgX.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\gApgmOCA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\eqMmWYQW.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\BCDHTDqd.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\mvZqcTch.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\RMTIDkhE.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\osIriTNB.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\rtyPdxIW.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IdadtHsq.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\wiCXHoes.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SGsmlxcq.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\pjiwpJhB.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\yhirBcHG.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\yOBcErXR.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\AHrvXHMo.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\KtKQnBwI.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\JJUsHuQh.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\UUYVvnqN.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\hYlNmaNZ.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\HDRcHZJy.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\gYPqBGhm.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IuvrhOdP.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\cFuHBsiy.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\axOfCogx.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\TaqZCKVb.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\asVVeRFK.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\SnBefBZD.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\erypCoXl.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\kaqSkADd.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\WUwVbulA.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-2-14-8806814064-7080767665-722580205-0520\IZCCVsUl.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\mjYmFjkb.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\GjGBlPVC.exe
[FUND] Ist das Trojanische Pferd TR/Dropper.Gen
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\uUjDGvPQ.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\bZiGCNXC.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\RECYCLER\S-2-6-24-8001382744-6431115650-222676082-6654\awUNYVOi.cpl
[FUND] Ist das Trojanische Pferd TR/Starter.Y
[WARNUNG] Die Datei wurde ignoriert.
G:\Copy of Shortcut to (4).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
[WARNUNG] Die Datei wurde ignoriert.
G:\Copy of Shortcut to (3).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
[WARNUNG] Die Datei wurde ignoriert.
G:\Copy of Shortcut to (2).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
[WARNUNG] Die Datei wurde ignoriert.
G:\Copy of Shortcut to (1).lnk
[FUND] Enthält Erkennungsmuster des Exploits EXP/CVE-2010-2568.A
[WARNUNG] Die Datei wurde ignoriert.
G:\autorun.inf
[FUND] Ist das Trojanische Pferd TR/Agent.VB.1624
[WARNUNG] Die Datei wurde ignoriert.


Ende des Suchlaufs: Mittwoch, 14. März 2012 22:54
Benötigte Zeit: 00:50 Minute(n)

Der Suchlauf wurde vollständig durchgeführt.

6 Verzeichnisse wurden überprüft
674 Dateien wurden geprüft
114 Viren bzw. unerwünschte Programme wurden gefunden
0 Dateien wurden als verdächtig eingestuft
0 Dateien wurden gelöscht
0 Viren bzw. unerwünschte Programme wurden repariert
0 Dateien wurden in die Quarantäne verschoben
0 Dateien wurden umbenannt
0 Dateien konnten nicht durchsucht werden
560 Dateien ohne Befall
2 Archive wurden durchsucht
114 Warnungen
0 Hinweise

cosinus 14.03.2012 23:09

Zitat:

diesen audio converter habe ich unter deiner linkangabe (noautoplay.reg)
hast du meinen Beitrag nicht richtig gelesen :balla: die noautoplay ist nun wirklich KEIN AudioConverter!

playmo 14.03.2012 23:18

I AM SORRY....habe leider keine ahnung was ein audio converter ist und habe dann wohl auf den falschen download-button gedrückt:-/!
soll ich das ganze noch mal wiederholen oder bringt das nichts mehr?

und kannst du mir was zum bericht sagen?

DANKE für deine zeit!!!

cosinus 15.03.2012 04:21

Zitat:

.habe leider keine ahnung was ein audio converter ist
Du hast "Audio Converter" überhaupt erst erwähnt!


Bitte nun routinemäßig einen Vollscan mit malwarebytes machen und Log posten. =>ALLE lokalen Datenträger (außer CD/DVD) überprüfen lassen!
Denk daran, dass Malwarebytes vor jedem Scan manuell aktualisiert werden muss! Außerdem müssen alle Funde entfernt werden.

Falls Logs aus älteren Scans mit Malwarebytes vorhanden sind, bitte auch davon alle posten!



ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset





Bitte alles nach Möglichkeit hier in CODE-Tags posten.

Wird so gemacht:

[code] hier steht das Log [/code]

Und das ganze sieht dann so aus:

Code:

hier steht das Log

playmo 18.03.2012 15:33

1000 DANK!

war unterwegs und hatte meine externe festplatte nicht dabei, deswegen hat es etwas länger gedauert:

hier das log von malewarebytes:

Code:

Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Datenbank Version: v2012.03.16.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 7.0.5730.13
Giu :: GIU-LAPTOP [Administrator]

16.03.2012 13:39:22
mbam-log-2012-03-16 (13-39-22).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 260332
Laufzeit: 2 Stunde(n), 48 Minute(n), 48 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 26
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110011221158} (PUP.GamePlayLab) -> Keine Aktion durchgeführt.
HKCR\CLSID\{11111111-1111-1111-1111-110011221158} (PUP.GamePlayLab) -> Keine Aktion durchgeführt.
HKCR\TypeLib\{44444444-4444-4444-4444-440044224458} (PUP.GamePlayLab) -> Keine Aktion durchgeführt.
HKCR\Interface\{55555555-5555-5555-5555-550055225558} (PUP.GamePlayLab) -> Keine Aktion durchgeführt.
HKCR\CrossriderApp0002258.BHO.1 (PUP.GamePlayLab) -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110011221158} (PUP.GamePlayLab) -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110011221158} (PUP.GamePlayLab) -> Keine Aktion durchgeführt.
HKCR\CLSID\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\TypeLib\{44444444-4444-4444-4444-440044224458} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\Interface\{55555555-5555-5555-5555-550055225558} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CrossriderApp0002258.BHO.1 (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CLSID\{22222222-2222-2222-2222-220022222258} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CrossriderApp0002258.Sandbox.1 (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CrossriderApp0002258.Sandbox (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CLSID\{33333333-3333-3333-3333-330033223358} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CrossriderApp0002258.FBApi.1 (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CrossriderApp0002258.FBApi (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{65bcd620-07dd-012f-819f-073cf1b8f7c6} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CrossriderApp0002258.BHO (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\I Want This (Adware.GamePlayLabs) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\Cr_Installer\2258 (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\CROSSRIDER (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\I WANT THIS (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Registrierungswerte: 4
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|{C4AFEA56-5C1C-2F70-4B4B-05EE4048F0A9} (Spyware.Zbot.ES) -> Daten: "C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Yxozera\axevmyu.exe" -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\Crossrider|215AppVerifier (Adware.GamePlayLab) -> Daten: 13c41b59773227f8b7b7dc9a69fea853 -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\I Want This|BundledFirefox (Adware.GamePlayLab) -> Daten: 1 -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\I Want This|Publisher (Adware.GamePlayLab) -> Daten: 215 Apps -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 1
C:\Programme\I Want This (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Dateien: 19
C:\Dokumente und Einstellungen\Giu\Eigene Dateien\Downloads\RemoveWGA.exe (PUP.RemoveWGA) -> Keine Aktion durchgeführt.
c:\dokumente und einstellungen\giu\anwendungsdaten\yxozera\axevmyu.exe (Spyware.Zbot.ES) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Thinstall\Cache\Stubs\19a183864e5d6f73984e1d46dc55b3d8b7d66d37\Liveupdate.exe (Trojan.Backdoor) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Thinstall\Cache\Stubs\9ee3403fb62976555ade7c8d47fd4d6f731110\DriverGenius.exe (Trojan.Backdoor) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Thinstall\Cache\Stubs\d233f1e93dc842a63daca0a89fa14011a7af9\Splash Screen.exe (Trojan.Backdoor) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\I Want This.exe (Adware.GamePlayLabs) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\I Want ThisGui.exe (Adware.GamePlayLabs) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\Uninstall.exe (Adware.GamePlayLabs) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\System Volume Information\_restore{C03EC4F2-C3E2-46CA-9E86-5D8317204061}\RP589\A0035284.dll (Adware.GamePlayLabs) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\System Volume Information\_restore{C03EC4F2-C3E2-46CA-9E86-5D8317204061}\RP589\A0035285.exe (Spyware.Zbot.ES) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\System Volume Information\_restore{C03EC4F2-C3E2-46CA-9E86-5D8317204061}\RP589\A0035286.exe (Adware.GamePlayLabs) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\System Volume Information\_restore{C03EC4F2-C3E2-46CA-9E86-5D8317204061}\RP589\A0035287.exe (Adware.GamePlayLabs) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\I Want This.ini (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\appAPIinternalWrapper.js (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\fb.js (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\I Want This.ico (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\I Want ThisInstaller.log (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\jquery.js (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Programme\I Want This\json.js (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.

(Ende)

alte log von malewarebytes:
Code:

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Datenbank Version: 4435

Windows 5.1.2600 Service Pack 3
Internet Explorer 7.0.5730.13

16.08.2010 12:37:39
mbam-log-2010-08-16 (12-37-39).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|R:\|)
Durchsuchte Objekte: 161845
Laufzeit: 46 Minute(n), 43 Sekunde(n)

Infizierte Speicherprozesse: 0
Infizierte Speichermodule: 0
Infizierte Registrierungsschlüssel: 0
Infizierte Registrierungswerte: 1
Infizierte Dateiobjekte der Registrierung: 1
Infizierte Verzeichnisse: 0
Infizierte Dateien: 0

Infizierte Speicherprozesse:
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel:
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\forceclassiccontrolpanel (Hijack.ControlPanelStyle) -> Quarantined and deleted successfully.

Infizierte Dateiobjekte der Registrierung:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSMHelp (Hijack.Help) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Infizierte Verzeichnisse:
(Keine bösartigen Objekte gefunden)

Infizierte Dateien:
(Keine bösartigen Objekte gefunden)


hier das log von eset:

Code:

ESETSmartInstaller@High as downloader log:
all ok
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=ff8ff9d02348e8429bfb06cb6120095f
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-03-18 10:28:10
# local_time=2012-03-18 11:28:10 (+0100, Westeuropäische Normalzeit)
# country="Germany"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=512 16777215 100 0 0 0 0 0
# compatibility_mode=1792 16777191 100 0 604613 604613 0 0
# compatibility_mode=8192 67108863 100 0 3760 3760 0 0
# scanned=104368
# found=3
# cleaned=0
# scan_time=4066
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Sun\Java\Deployment\cache\6.0\21\3b351155-1df13ecd        Java/Exploit.CVE-2011-3544.BC trojan (unable to clean)        00000000000000000000000000000000        I
C:\Temp\jar_cache2838302822982516745.tmp        probably a variant of Win32/Agent.GWUDFEK trojan (unable to clean)        00000000000000000000000000000000        I
C:\Temp\jar_cache3986779909710786418.tmp        multiple threats (unable to clean)        00000000000000000000000000000000        I

eset hat 3 virusdateien erkannt, aber sind wohl noch nicht gelöscht.

cosinus 19.03.2012 16:37

CustomScan mit OTL

Falls noch nicht vorhanden, lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
Code:

netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%SYSTEMDRIVE%\*.exe
/md5start
wininit.exe
userinit.exe
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
ws2ifsl.sys
sceclt.dll
ntelogon.dll
winlogon.exe
logevent.dll
user32.DLL
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
/md5stop
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
CREATERESTOREPOINT


playmo 21.03.2012 18:51

THANK YOUUU:-)

OTL Logfile:
Code:

OTL logfile created on: 21.03.2012 18:38:51 - Run 2
OTL by OldTimer - Version 3.2.39.1    Folder = C:\Dokumente und Einstellungen\Giu\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3,00 Gb Total Physical Memory | 2,47 Gb Available Physical Memory | 82,36% Memory free
4,84 Gb Paging File | 4,37 Gb Available in Paging File | 90,22% Paging File free
Paging file location(s): C:\pagefile.sys 2048 2048 [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
Drive C: | 220,26 Gb Total Space | 153,16 Gb Free Space | 69,54% Space Free | Partition Type: NTFS
Drive D: | 10,00 Gb Total Space | 4,37 Gb Free Space | 43,69% Space Free | Partition Type: NTFS
Drive R: | 50,78 Mb Total Space | 50,78 Mb Free Space | 100,00% Space Free | Partition Type: FAT
 
Computer Name: GIU-LAPTOP | User Name: Giu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Dokumente und Einstellungen\Giu\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Programme\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
PRC - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
PRC - C:\Programme\CDBurnerXP\NMSAccessU.exe ()
PRC - C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
PRC - C:\Programme\Dell\Dell Mobile Broadband\systray.exe ()
PRC - C:\Programme\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
PRC - C:\Programme\Intel\WiFi\bin\WLKEEPER.exe (Intel(R) Corporation)
PRC - C:\Programme\Intel\WiFi\bin\ZCfgSvc.exe (Intel(R) Corporation)
PRC - C:\Programme\Intel\WiFi\bin\S24EvMon.exe (Intel(R) Corporation)
PRC - C:\Programme\Gemeinsame Dateien\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
PRC - C:\Programme\Gemeinsame Dateien\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\WINDOWS\OEM02Mon.exe (Creative Technology Ltd.)
PRC - C:\Programme\Sigmatel\C-Major Audio\WDM\stsystra.exe (SigmaTel, Inc.)
PRC - C:\Programme\DellTPad\hidfind.exe (Alps Electric Co., Ltd.)
PRC - C:\Programme\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
PRC - C:\Programme\DellTPad\ApMsgFwd.exe (Alps Electric Co., Ltd.)
PRC - C:\Programme\DellTPad\ApntEx.exe (Alps Electric Co., Ltd.)
 
 
========== Modules (No Company Name) ==========
 
MOD - C:\Programme\Avira\AntiVir Desktop\sqlite3.dll ()
MOD - C:\Programme\DivX\DivX Update\DivXUpdateCheck.dll ()
MOD - C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
MOD - C:\Programme\CDBurnerXP\NMSAccessU.exe ()
MOD - C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
MOD - C:\Programme\Dell\Dell Mobile Broadband\systray.exe ()
MOD - C:\Programme\Intel\WiFi\bin\iWMSProv.dll ()
MOD - C:\Programme\FileZilla FTP Client\fzshellext.dll ()
 
 
========== Win32 Services (SafeList) ==========
 
SRV - (HidServ) -- %SystemRoot%\System32\hidserv.dll File not found
SRV - (ERSvc) -- %SystemRoot%\System32\ersvc.dll File not found
SRV - (CiSvc) -- C:\WINDOWS\system32\cisvc.exe File not found
SRV - (AntiVirSchedulerService) -- C:\Programme\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirService) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
SRV - (odserv) -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)
SRV - (NMSAccessU) -- C:\Programme\CDBurnerXP\NMSAccessU.exe ()
SRV - (ICQ Service) -- C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
SRV - (EvtEng) -- C:\Programme\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation)
SRV - (WLANKEEPER) Intel(R) -- C:\Programme\Intel\WiFi\bin\WLKEEPER.exe (Intel(R) Corporation)
SRV - (S24EventMonitor) -- C:\Programme\Intel\WiFi\bin\S24EvMon.exe (Intel(R) Corporation)
SRV - (RegSrvc) -- C:\Programme\Gemeinsame Dateien\Intel\WirelessCommon\RegSrvc.exe (Intel(R) Corporation)
SRV - (ose) -- C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)
 
 
========== Driver Services (SafeList) ==========
 
DRV - (WDICA) --  File not found
DRV - (PDRFRAME) --  File not found
DRV - (PDRELI) --  File not found
DRV - (PDFRAME) --  File not found
DRV - (PDCOMP) --  File not found
DRV - (PCIDump) --  File not found
DRV - (lbrtfdc) --  File not found
DRV - (i2omgmt) --  File not found
DRV - (Changer) --  File not found
DRV - (catchme) -- C:\Temp\catchme.sys File not found
DRV - (afiewebi) --  File not found
DRV - (avipbb) -- C:\WINDOWS\system32\drivers\avipbb.sys (Avira GmbH)
DRV - (avgntflt) -- C:\WINDOWS\system32\drivers\avgntflt.sys (Avira GmbH)
DRV - (avkmgr) -- C:\WINDOWS\system32\drivers\avkmgr.sys (Avira GmbH)
DRV - (sptd) -- C:\WINDOWS\system32\drivers\sptd.sys ()
DRV - (StarOpen) -- C:\WINDOWS\System32\drivers\StarOpen.sys ()
DRV - (ssmdrv) -- C:\WINDOWS\system32\drivers\ssmdrv.sys (Avira GmbH)
DRV - (NETw5x32) Intel(R) -- C:\WINDOWS\system32\drivers\NETw5x32.sys (Intel Corporation)
DRV - (s24trans) -- C:\WINDOWS\system32\drivers\s24trans.sys (Intel Corporation)
DRV - (Aspi32) -- C:\WINDOWS\System32\drivers\aspi32.sys (Adaptec)
DRV - (NvtSp50) -- C:\WINDOWS\system32\drivers\NvtSp50.sys (Printing Novatel Wireless Inc.)
DRV - (OEM02Vfx) -- C:\WINDOWS\system32\drivers\OEM02Vfx.sys (EyePower Games Pte. Ltd.)
DRV - (OEM02Dev) -- C:\WINDOWS\system32\drivers\OEM02Dev.sys (Creative Technology Ltd.)
DRV - (OEM02Afx) -- C:\WINDOWS\system32\drivers\OEM02Afx.sys (Creative Technology Ltd.)
DRV - (NWADI) -- C:\WINDOWS\system32\drivers\NWADIenum.sys (Novatel Wireless Inc)
DRV - (STHDA) -- C:\WINDOWS\system32\drivers\sthda.sys (SigmaTel, Inc.)
DRV - (ApfiltrService) -- C:\WINDOWS\system32\drivers\Apfiltr.sys (Alps Electric Co., Ltd.)
DRV - (XAudio) -- C:\WINDOWS\system32\drivers\XAudio.sys (Conexant Systems, Inc.)
DRV - (bcm4sbxp) -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys (Broadcom Corporation)
DRV - (rismxdp) -- C:\WINDOWS\system32\drivers\rixdptsk.sys (REDC)
DRV - (rimmptsk) -- C:\WINDOWS\system32\drivers\rimmptsk.sys (REDC)
DRV - (rimsptsk) -- C:\WINDOWS\system32\drivers\rimsptsk.sys (REDC)
DRV - (SscRdBus) Virtual bus device (SuperSpeed Software, Inc.) -- C:\WINDOWS\system32\drivers\SscRdBus.sys (SuperSpeed Software, Inc.)
DRV - (SscRdFdo) RAM Disk (SuperSpeed Software, Inc.) -- C:\WINDOWS\system32\drivers\SscRdFdo.sys (SuperSpeed Software, Inc.)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchURL\g, = hxxp://www.google.com/search?q=%s
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchURL\g, = hxxp://www.google.com/search?q=%s
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/
IE - HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchURL\g, = hxxp://www.google.com/search?q=%s
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.ask.com?o=15003&l=dis
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\SearchURL\g, = hxxp://www.google.com/search?q=%s
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\URLSearchHook:  - No CLSID value found
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes,DefaultScope = {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=SPC2&o=15000&src=crm&q={searchTerms}&locale=de_DE
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}: "URL" = hxxp://www.icq.com/search/results.php?q={searchTerms}&ch_id=osd
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
========== FireFox ==========
 
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/"
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.716
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.5
FF - prefs.js..keyword.URL: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q="
 
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Programme\DivX\DivX Player\npDivxPlayerPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Programme\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Programme\Mozilla Firefox\components [2012.03.14 18:35:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2012.03.14 18:35:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 10.0.2\extensions\\Components: C:\Programme\Mozilla Thunderbird\components [2012.03.14 18:35:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 10.0.2\extensions\\Plugins: C:\Programme\Mozilla Thunderbird\plugins [2012.03.14 18:35:13 | 000,000,000 | ---D | M]
 
[2010.10.28 11:57:29 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Extensions
[2010.10.28 11:57:29 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2012.03.20 23:29:46 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions
[2012.03.20 23:29:46 | 000,000,000 | ---D | M] ("I Want This") -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\crossriderapp2258@crossrider.com
[2011.11.10 09:22:17 | 000,000,000 | ---D | M] (No name found) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\nostmp
[2010.04.09 19:44:52 | 000,000,000 | ---D | M] (Sopcast Ask Toolbar) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com
[2010.10.27 20:02:31 | 000,000,000 | ---D | M] (vShare Plugin) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\vshare@toolbar
[2010.02.04 15:45:40 | 000,002,254 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\askcom.xml
[2012.03.21 12:56:17 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-1.xml
[2009.08.04 15:01:54 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-2.xml
[2009.08.10 10:12:00 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-3.xml
[2009.09.12 00:36:52 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-4.xml
[2009.10.29 17:55:22 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-5.xml
[2009.12.18 09:51:12 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-6.xml
[2010.01.06 22:39:26 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-7.xml
[2009.07.13 17:12:02 | 000,000,944 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin.xml
[2012.03.13 09:03:02 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\extensions
[2012.03.13 09:03:02 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.03.03 22:02:23 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Programme\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010.11.03 11:07:49 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAMME\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2012.03.14 18:30:38 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Programme\mozilla firefox\components\browsercomps.dll
[2010.11.03 11:07:49 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Programme\mozilla firefox\plugins\npdeployJava1.dll
[2010.01.17 15:16:11 | 000,075,208 | ---- | M] (Foxit Software Company) -- C:\Programme\mozilla firefox\plugins\npFoxitReaderPlugin.dll
[2012.03.13 09:02:09 | 000,001,392 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.03.13 09:02:09 | 000,002,252 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\bing.xml
[2012.03.13 09:02:09 | 000,001,153 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\eBay-de.xml
[2012.03.13 09:02:09 | 000,006,805 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.03.13 09:02:09 | 000,001,178 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.03.13 09:02:09 | 000,001,105 | ---- | M] () -- C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2010.08.26 16:46:18 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1      localhost
O2 - BHO: (IE7Pro BHO) - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Programme\ie7pro\IEpro.dll (IE7Pro.com)
O2 - BHO: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\Toolbar\WebBrowser: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [Apoint] C:\Programme\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [avgnt] C:\Programme\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [DivXUpdate] C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [IntelWireless] C:\Programme\Gemeinsame Dateien\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4 - HKLM..\Run: [IntelZeroConfig] C:\Programme\Intel\WiFi\bin\ZCfgSvc.exe (Intel(R) Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NVHotkey] C:\WINDOWS\System32\nvhotkey.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [OEM02Mon.exe] C:\WINDOWS\OEM02Mon.exe (Creative Technology Ltd.)
O4 - HKLM..\Run: [SigmatelSysTrayApp] C:\Programme\Sigmatel\C-Major Audio\WDM\stsystra.exe (SigmaTel, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [systray] C:\Programme\Dell\Dell Mobile Broadband\systray.exe ()
O4 - HKU\.DEFAULT..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager)
O4 - HKU\S-1-5-18..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager)
O4 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002..\Run: [DAEMON Tools Lite] C:\Programme\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\.DEFAULT..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 File not found
O4 - HKU\S-1-5-18..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 0
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Programme\ie7pro\IEpro.dll (IE7Pro.com)
O9 - Extra 'Tools' menuitem : IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Programme\ie7pro\IEpro.dll (IE7Pro.com)
O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1458B29B-436D-4EDE-AAF2-0103BF23F020}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Gemeinsame Dateien\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) -  File not found
O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
O24 - Desktop WallPaper: C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.01.17 14:39:40 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
NetSvcs: 6to4 -  File not found
NetSvcs: HidServ -  %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias -  File not found
NetSvcs: Iprip -  File not found
NetSvcs: Irmon -  File not found
NetSvcs: Nla -  File not found
NetSvcs: NWCWorkstation -  File not found
NetSvcs: Nwsapagent -  File not found
NetSvcs: WmdmPmSp -  File not found
 
 
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: Messenger - %SystemRoot%\System32\msgsvc.dll File not found
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 
ActiveX: {0213C6AF-5562-4D09-884C-2ADCFC8C2F35} - Microsoft .NET Framework 1.1 Security Update (KB2656353)
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Java (Sun)
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Vektorgrafik-Rendering (VML)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 6.4
ActiveX: {233C1507-6A77-46A4-9443-F871F945D258} - Adobe Shockwave Director 11.0
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2A202491-F00D-11cf-87CC-0020AFEECF20} - Adobe Shockwave Director 11.0
ActiveX: {2A3320D6-C805-4280-B423-B665BDE33D8F} - Microsoft .NET Framework 1.1 Security Update (KB979906)
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Dynamic HTML-Datenbindung für Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {411EDCF7-755D-414E-A74B-3DCD6583F589} - Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Erweitertes Authoring
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - DirectAnimation Java Classes
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.7
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {73fa19d0-2d75-11d2-995d-00c04f98bbc9} - Web Folders
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install
ActiveX: {9309DD7E-EBFE-3C95-8B47-30D3A012F606} - .NET Framework
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {ACC563BC-4266-43f0-B6ED-9D38C4202C7E} -
ActiveX: {B508B3F1-A24A-32C0-B310-85786919EF28} - .NET Framework
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} - .NET Framework
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E78BFA60-5393-4C38-82AB-E8019E464EB4} - .NET Framework
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: {EF289A85-8E57-408d-BE47-73B55609861A} - RootsUpdate
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE
ActiveX: Microsoft Base Smart Card Crypto Provider Package -
 
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
 
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
 
========== Files/Folders - Created Within 30 Days ==========
 
[2012.03.21 18:36:51 | 000,594,432 | ---- | C] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Giu\Desktop\OTL.exe
[2012.03.21 16:39:00 | 000,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\Giu\Recent
[2012.03.18 10:17:46 | 000,000,000 | ---D | C] -- C:\Programme\ESET
[2012.03.18 10:17:17 | 002,322,184 | ---- | C] (ESET) -- C:\Dokumente und Einstellungen\Giu\Desktop\esetsmartinstaller_enu.exe
[2012.03.14 18:50:36 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\LocalService\Anwendungsdaten\Macromedia
[2012.03.14 18:39:17 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Dejebel Group
[2012.03.14 18:39:16 | 000,000,000 | ---D | C] -- C:\Programme\Audio Converter
[2012.03.14 18:39:08 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Google
[2012.03.14 18:39:06 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\I Want This
[2012.03.14 18:32:13 | 001,667,264 | ---- | C] (W3i, LLC) -- C:\Dokumente und Einstellungen\Giu\Desktop\audioconverter_1460.exe
[2012.03.14 18:29:35 | 000,000,000 | ---D | C] -- C:\Programme\Video Codec
[2012.03.14 18:28:44 | 000,230,873 | ---- | C] (Video Codec) -- C:\Dokumente und Einstellungen\Giu\Desktop\setup.exe
[2012.03.11 21:17:51 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Identities
[2012.03.11 21:17:42 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Yxozera
[2012.03.11 21:17:42 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Ytor
[2012.03.11 11:29:12 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Avira
[2012.03.11 11:26:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2012.03.11 11:23:54 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Avira
[2012.03.11 11:23:41 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2012.03.11 11:23:38 | 000,137,416 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2012.03.11 11:23:38 | 000,036,000 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avkmgr.sys
[2012.03.11 11:23:33 | 000,000,000 | ---D | C] -- C:\Programme\Avira
[2012.03.11 11:23:33 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira
[2012.03.07 12:48:16 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen\Giu\IETldCache
[2012.03.06 22:11:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2012.03.06 22:11:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2012.03.06 22:10:51 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2012.03.06 22:03:39 | 000,000,000 | ---D | C] -- C:\3505beca277d7b0e97677abfd5db
[2 C:\Dokumente und Einstellungen\Giu\*.tmp files -> C:\Dokumente und Einstellungen\Giu\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2012.03.21 18:36:52 | 000,594,432 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Giu\Desktop\OTL.exe
[2012.03.21 18:32:52 | 000,272,291 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2012.03.21 18:32:52 | 000,034,705 | ---- | M] () -- C:\WINDOWS\System32\nvModes.001
[2012.03.21 18:32:09 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.03.18 10:17:17 | 002,322,184 | ---- | M] (ESET) -- C:\Dokumente und Einstellungen\Giu\Desktop\esetsmartinstaller_enu.exe
[2012.03.16 13:32:32 | 000,000,756 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012.03.16 11:59:11 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.03.14 18:45:43 | 000,002,281 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Audio Converter.lnk
[2012.03.14 18:32:13 | 001,667,264 | ---- | M] (W3i, LLC) -- C:\Dokumente und Einstellungen\Giu\Desktop\audioconverter_1460.exe
[2012.03.14 18:28:44 | 000,230,873 | ---- | M] (Video Codec) -- C:\Dokumente und Einstellungen\Giu\Desktop\setup.exe
[2012.03.14 16:15:48 | 000,241,536 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.03.14 11:09:17 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012.03.11 11:23:54 | 000,001,671 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Avira Control Center.lnk
[2012.03.06 22:03:22 | 000,456,570 | ---- | M] () -- C:\WINDOWS\System32\perfh007.dat
[2012.03.06 22:03:22 | 000,438,956 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012.03.06 22:03:22 | 000,083,776 | ---- | M] () -- C:\WINDOWS\System32\perfc007.dat
[2012.03.06 22:03:22 | 000,070,514 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2 C:\Dokumente und Einstellungen\Giu\*.tmp files -> C:\Dokumente und Einstellungen\Giu\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2012.03.16 13:32:32 | 000,000,756 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2012.03.14 18:39:17 | 000,002,281 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Audio Converter.lnk
[2012.03.11 11:23:54 | 000,001,671 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Avira Control Center.lnk
[2012.03.06 18:35:04 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.03.06 18:35:04 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\dllcache\iacenc.dll
[2010.12.08 18:37:40 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010.08.26 16:40:17 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010.08.26 16:40:17 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010.08.26 16:40:17 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010.08.26 16:40:17 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010.08.26 16:40:17 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
 
========== LOP Check ==========
 
[2010.11.03 21:56:25 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Canneverbe Limited
[2011.03.28 18:24:58 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\DAEMON Tools Lite
[2010.01.21 19:47:41 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\ICQ
[2010.01.17 15:38:02 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Novatel Wireless
[2010.11.17 12:44:03 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Canneverbe Limited
[2011.03.28 18:28:52 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\DAEMON Tools Lite
[2010.01.17 15:16:30 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Foxit
[2010.02.06 10:42:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Foxit Software
[2010.01.21 19:16:36 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\ICQ
[2010.01.17 17:47:43 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\IEPro
[2010.01.17 14:54:44 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Notepad++
[2010.01.17 17:39:26 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Thinstall
[2010.10.28 11:57:28 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Thunderbird
[2012.03.16 14:01:11 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Ytor
[2012.03.16 13:41:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Yxozera
 
========== Purity Check ==========
 
 
 
========== Custom Scans ==========
 
< %ALLUSERSPROFILE%\Application Data\*. >
 
< %ALLUSERSPROFILE%\Application Data\*.exe /s >
 
< %APPDATA%\*. >
[2010.01.17 15:05:21 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Adobe
[2012.03.11 11:29:12 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Avira
[2010.11.17 12:44:03 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Canneverbe Limited
[2011.03.28 18:28:52 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\DAEMON Tools Lite
[2011.03.28 18:37:54 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\DivX
[2011.03.17 22:55:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\dvdcss
[2010.01.17 15:16:30 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Foxit
[2010.02.06 10:42:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Foxit Software
[2010.01.21 19:16:36 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\ICQ
[2010.01.17 14:52:26 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Identities
[2010.01.17 17:47:43 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\IEPro
[2010.01.17 17:38:04 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Intel
[2010.01.17 15:05:21 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Macromedia
[2010.08.16 08:47:22 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Malwarebytes
[2012.03.11 21:17:48 | 000,000,000 | --SD | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Microsoft
[2010.01.17 15:00:17 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla
[2010.01.17 14:54:44 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Notepad++
[2011.11.23 23:02:58 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Skype
[2011.11.23 18:47:01 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\skypePM
[2010.01.21 20:05:27 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Sun
[2010.02.04 08:41:14 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Talkback
[2010.01.17 17:39:26 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Thinstall
[2010.10.28 11:57:28 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Thunderbird
[2011.07.29 22:03:57 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\vlc
[2010.01.17 18:13:55 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\WinRAR
[2012.03.16 14:01:11 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Ytor
[2012.03.16 13:41:15 | 000,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Yxozera
 
< %APPDATA%\*.exe /s >
[2010.04.16 10:38:42 | 000,010,134 | R--- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Microsoft\Installer\{42929F0F-CE14-47AF-9FC7-FF297A603021}\ARPPRODUCTICON.exe
[2010.04.16 10:38:43 | 000,045,056 | R--- | M] (Macrovision Corporation) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Microsoft\Installer\{42929F0F-CE14-47AF-9FC7-FF297A603021}\NewShortcut1_42929F0FCE1447AF9FC7FF297A603021_1.exe
[2009.12.07 22:21:38 | 003,483,776 | ---- | M] (Driver-Soft Inc.) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Thinstall\Driver Genius Professional Edition\%ProgramFilesDir%\Driver-Soft\DriverGenius\DriverGenius.exe
[2010.01.17 17:40:38 | 000,554,064 | ---- | M] (Driver-Soft Inc.) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Thinstall\Driver Genius Professional Edition\%ProgramFilesDir%\Driver-Soft\DriverGenius\LiveUpdate.exe
 
< %SYSTEMDRIVE%\*.exe >
[2010.11.08 22:54:26 | 043,732,464 | ---- | M] (DivX, Inc.) -- C:\DivXInstaller812.exe
 
< MD5 for: AGP440.SYS  >
[2008.08.01 21:29:52 | 010,514,877 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
 
< MD5 for: AHCIX86.SYS  >
[2008.08.01 21:26:15 | 000,123,392 | ---- | M] (Promise Technology, Inc.) MD5=DDD2E4A9AA3A57C510962B862663A3B6 -- C:\WINDOWS\NLDRV\003\ahcix86.sys
 
< MD5 for: ATAPI.SYS  >
[2008.08.01 21:29:52 | 010,514,877 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.13 22:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008.04.13 22:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.13 22:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\atapi.sys
 
< MD5 for: EVENTLOG.DLL  >
[2008.04.14 06:52:12 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=04955AA695448C181B367D964AF158AA -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008.04.14 06:52:12 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=04955AA695448C181B367D964AF158AA -- C:\WINDOWS\system32\eventlog.dll
 
< MD5 for: IASTOR.SYS  >
[2008.08.01 21:26:23 | 000,305,176 | ---- | M] (Intel Corporation) MD5=2358C53F30CB9DCD1D3843C4E2F299B2 -- C:\WINDOWS\NLDRV\005\iastor.sys
[2008.08.01 21:26:00 | 000,308,248 | ---- | M] (Intel Corporation) MD5=E5A0034847537EAEE3C00349D5C34C5F -- C:\WINDOWS\NLDRV\001\iastor.sys
[2008.08.01 21:26:00 | 000,308,248 | ---- | M] (Intel Corporation) MD5=E5A0034847537EAEE3C00349D5C34C5F -- C:\WINDOWS\system32\drivers\iaStor.sys
 
< MD5 for: NETLOGON.DLL  >
[2008.08.01 18:59:13 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=B4D6D344EACDA356D4AAAC7757955F0C -- C:\WINDOWS\ERDNT\cache\netlogon.dll
[2008.08.01 18:59:13 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=B4D6D344EACDA356D4AAAC7757955F0C -- C:\WINDOWS\system32\netlogon.dll
 
< MD5 for: SCECLI.DLL  >
[2008.04.14 06:52:24 | 000,187,904 | ---- | M] (Microsoft Corporation) MD5=5132443DF6FC3771A17AB4AE55DCBC28 -- C:\WINDOWS\ERDNT\cache\scecli.dll
[2008.04.14 06:52:24 | 000,187,904 | ---- | M] (Microsoft Corporation) MD5=5132443DF6FC3771A17AB4AE55DCBC28 -- C:\WINDOWS\system32\scecli.dll
 
< MD5 for: USER32.DLL  >
[2008.04.14 06:52:32 | 000,580,096 | ---- | M] (Microsoft Corporation) MD5=B0050CC5340E3A0760DD8B417FF7AEBD -- C:\WINDOWS\ERDNT\cache\user32.dll
[2008.04.14 06:52:32 | 000,580,096 | ---- | M] (Microsoft Corporation) MD5=B0050CC5340E3A0760DD8B417FF7AEBD -- C:\WINDOWS\system32\user32.dll
 
< MD5 for: USERINIT.EXE  >
[2008.04.14 06:53:04 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=788F95312E26389D596C0FA55834E106 -- C:\WINDOWS\ERDNT\cache\userinit.exe
[2008.04.14 06:53:04 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=788F95312E26389D596C0FA55834E106 -- C:\WINDOWS\system32\userinit.exe
 
< MD5 for: WINLOGON.EXE  >
[2012.01.13 14:53:20 | 000,182,856 | ---- | M] () MD5=63EEC8A8B221AB79045E776E5F592868 -- C:\Programme\Malwarebytes' Anti-Malware\Chameleon\winlogon.exe
[2008.08.01 18:59:31 | 000,513,024 | ---- | M] (Microsoft Corporation) MD5=8069CBC1DAA6DE61A6B438EA0D4AE2A0 -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008.08.01 18:59:31 | 000,513,024 | ---- | M] (Microsoft Corporation) MD5=8069CBC1DAA6DE61A6B438EA0D4AE2A0 -- C:\WINDOWS\system32\winlogon.exe
 
< MD5 for: WS2IFSL.SYS  >
[2004.08.04 13:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) MD5=6ABE6E225ADB5A751622A9CC3BC19CE8 -- C:\WINDOWS\system32\drivers\ws2ifsl.sys
 
< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2011.03.28 18:25:34 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys
 
< %systemroot%\System32\config\*.sav >
[2010.01.17 15:25:48 | 000,065,536 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010.01.17 15:25:48 | 002,547,712 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010.01.17 15:25:48 | 000,462,848 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
 
< %systemroot%\*. /mp /s >
 
< %systemroot%\system32\*.dll /lockedfiles >

< End of report >

--- --- ---

cosinus 21.03.2012 20:57

Mach einen OTL-Fix, beende alle evtl. geöffneten Programme, auch Virenscanner deaktivieren (!), starte OTL und kopiere folgenden Text in die "Custom Scan/Fixes" Box (unten in OTL): (das ":OTL" muss mitkopiert werden!!!)

Code:

:OTL
PRC - C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
MOD - C:\Programme\ICQ6Toolbar\ICQ Service.exe ()
SRV - (ERSvc) -- %SystemRoot%\System32\ersvc.dll File not found
SRV - (CiSvc) -- C:\WINDOWS\system32\cisvc.exe File not found
DRV - (afiewebi) --  File not found
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://de.ask.com?o=15003&l=dis
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\URLSearchHook:  - No CLSID value found
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes,DefaultScope = {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=SPC2&o=15000&src=crm&q={searchTerms}&locale=de_DE
IE - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}: "URL" = http://www.icq.com/search/results.php?q={searchTerms}&ch_id=osd
FF - prefs.js..browser.search.defaultenginename: "ICQ Search"
FF - prefs.js..keyword.URL: "http://search.icq.com/search/afe_results.php?ch_id=afex&q="
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Programme\DivX\DivX Player\npDivxPlayerPlugin.dll File not found
[2010.04.09 19:44:52 | 000,000,000 | ---D | M] (Sopcast Ask Toolbar) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com
[2010.10.27 20:02:31 | 000,000,000 | ---D | M] (vShare Plugin) -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\vshare@toolbar
[2010.02.04 15:45:40 | 000,002,254 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\askcom.xml
[2012.03.21 12:56:17 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-1.xml
[2009.08.04 15:01:54 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-2.xml
[2009.08.10 10:12:00 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-3.xml
[2009.09.12 00:36:52 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-4.xml
[2009.10.29 17:55:22 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-5.xml
[2009.12.18 09:51:12 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-6.xml
[2010.01.06 22:39:26 | 000,000,950 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-7.xml
[2009.07.13 17:12:02 | 000,000,944 | ---- | M] () -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin.xml
[2012.03.13 09:03:02 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
O2 - BHO: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programme\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\..\Toolbar\WebBrowser: (Sopcast Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Programme\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [DivXUpdate] C:\Programme\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKU\.DEFAULT..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager)
O4 - HKU\S-1-5-18..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager)
O4 - HKU\.DEFAULT..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 File not found
O4 - HKU\S-1-5-18..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 0
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) -  File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010.01.17 14:39:40 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
[2012.03.11 21:17:42 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Yxozera
[2012.03.11 21:17:42 | 000,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Ytor
:Files
C:\Programme\ICQ6Toolbar
:Commands
[emptytemp]
[resethosts]

Klick dann oben links auf den Button Fix!
Das Logfile müsste geöffnet werden, wenn Du nach dem Fixen auf ok klickst, poste das bitte. Evtl. wird der Rechner neu gestartet.

Die mit diesem Script gefixten Einträge, Dateien und Ordner werden zur Sicherheit nicht vollständig gelöscht, es wird eine Sicherheitskopie auf der Systempartition im Ordner "_OTL" erstellt.

Hinweis: Das obige Script ist nur für diesen einen User in dieser Situtation erstellt worden. Es ist auf keinen anderen Rechner portierbar und darf nicht anderweitig verwandt werden, da es das System nachhaltig schädigen kann!

playmo 22.03.2012 00:05

Code:

All processes killed
========== OTL ==========
No active process named ICQ Service.exe was found!
Service ERSvc stopped successfully!
Service ERSvc deleted successfully!
File  %SystemRoot%\System32\ersvc.dll File not found not found.
Service CiSvc stopped successfully!
Service CiSvc deleted successfully!
File  C:\WINDOWS\system32\cisvc.exe File not found not found.
Error: No service named afiewebi was found to stop!
Service\Driver key afiewebi not found.
File  File not found not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKU\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\URLSearchHooks\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}\ deleted successfully.
C:\Programme\Ask.com\GenericAskToolbar.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\URLSearchHooks\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ deleted successfully.
C:\Programme\ICQ6Toolbar\ICQToolBar.dll moved successfully.
HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ not found.
Registry key HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6552C7DD-90A4-4387-B795-F8F96747DE19}\ not found.
Prefs.js: "ICQ Search" removed from browser.search.defaultenginename
Prefs.js: "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=" removed from keyword.URL
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0\ deleted successfully.
C:\Programme\DivX\DivX Plus Web Player\npdivx32.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0\ deleted successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\toolbar@ask.com folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\vshare@toolbar\META-INF folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\vshare@toolbar\chrome folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\extensions\vshare@toolbar folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\askcom.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-1.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-2.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-3.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-4.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-5.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-6.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin-7.xml moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\searchplugins\icqplugin.xml moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\search_engine folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\META-INF folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults\preferences folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\defaults folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\components folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\skin folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\tr folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\sk folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\ru folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\it folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\he folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\fr folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\es folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\en-US folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\de folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\cs folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale\bg folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\locale folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content\img folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome\content folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}\chrome folder moved successfully.
C:\Programme\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07} folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
File C:\Programme\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4fe6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found.
File C:\Programme\ICQ6Toolbar\ICQToolBar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Programme\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Programme\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\DivXUpdate deleted successfully.
C:\Programme\DivX\DivX Update\DivXUpdate.exe moved successfully.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\\CTFMON.EXE deleted successfully.
C:\WINDOWS\system32\ctfmon.exe moved successfully.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\CTFMON.EXE not found.
File C:\WINDOWS\system32\ctfmon.exe not found.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ShowDeskFix deleted successfully.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ShowDeskFix not found.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\HonorAutoRunSetting deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableStatusMessages deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\VerboseStatus deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMHelp deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveTrack deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\LinkResolveIgnoreLinkInfo deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveSearch deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoLowDiskSpaceChecks deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMConfigurePrograms deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun deleted successfully.
Registry key HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMHelp not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveTrack not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\LinkResolveIgnoreLinkInfo not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveSearch not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoLowDiskSpaceChecks not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMConfigurePrograms not found.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun not found.
Registry key HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry value HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry key HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel\ not found.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMHelp deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveTrack deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\LinkResolveIgnoreLinkInfo deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveSearch deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoLowDiskSpaceChecks deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMConfigurePrograms deleted successfully.
Registry key HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\Software\Policies\Microsoft\Internet Explorer\Control Panel\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveTrack deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\LinkResolveIgnoreLinkInfo deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoResolveSearch deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoLowDiskSpaceChecks deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMConfigurePrograms deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSMHelp deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-21-329068152-1417001333-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDrives deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon\ deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully!
C:\AUTOEXEC.BAT moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Yxozera folder moved successfully.
C:\Dokumente und Einstellungen\Giu\Anwendungsdaten\Ytor folder moved successfully.
========== FILES ==========
C:\Programme\ICQ6Toolbar folder moved successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: Default User
->Temp folder emptied: 0 bytes
 
User: Giu
->Temp folder emptied: 6157 bytes
->Java cache emptied: 4319119 bytes
->FireFox cache emptied: 865584829 bytes
->Flash cache emptied: 80883 bytes
 
User: LocalService
->Flash cache emptied: 405 bytes
 
User: NetworkService
->Temp folder emptied: 0 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 71769775 bytes
RecycleBin emptied: 529101378 bytes
 
Total Files Cleaned = 1.403,00 mb
 
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.39.1 log created on 03212012_235752

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...


cosinus 22.03.2012 12:29

Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.
Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C:) nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

http://saved.im/mtkwmtcxexhp/setting...8_16-25-18.jpg

playmo 28.03.2012 09:52

Code:

10:10:33.0203 0676        TDSS rootkit removing tool 2.7.23.0 Mar 26 2012 13:40:18
10:10:33.0265 0676        ============================================================
10:10:33.0265 0676        Current date / time: 2012/03/28 10:10:33.0265
10:10:33.0265 0676        SystemInfo:
10:10:33.0265 0676       
10:10:33.0265 0676        OS Version: 5.1.2600 ServicePack: 3.0
10:10:33.0265 0676        Product type: Workstation
10:10:33.0265 0676        ComputerName: GIU-LAPTOP
10:10:33.0265 0676        UserName: Giu
10:10:33.0265 0676        Windows directory: C:\WINDOWS
10:10:33.0265 0676        System windows directory: C:\WINDOWS
10:10:33.0265 0676        Processor architecture: Intel x86
10:10:33.0265 0676        Number of processors: 2
10:10:33.0265 0676        Page size: 0x1000
10:10:33.0265 0676        Boot type: Normal boot
10:10:33.0265 0676        ============================================================
10:10:33.0937 0676        Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
10:10:33.0953 0676        \Device\Harddisk0\DR0:
10:10:33.0953 0676        MBR used
10:10:33.0953 0676        \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3B000, BlocksNum 0x1400000
10:10:33.0953 0676        \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x143D1E9, BlocksNum 0x1B884B11
10:10:34.0109 0676        Initialize success
10:10:34.0109 0676        ============================================================
10:10:54.0593 3756        ============================================================
10:10:54.0593 3756        Scan started
10:10:54.0593 3756        Mode: Manual; SigCheck; TDLFS;
10:10:54.0593 3756        ============================================================
10:10:55.0984 3756        Abiosdsk - ok
10:10:57.0218 3756        abp480n5 - ok
10:10:58.0484 3756        ACPI            (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
10:10:59.0875 3756        ACPI - ok
10:11:01.0171 3756        ACPIEC          (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys
10:11:01.0390 3756        ACPIEC - ok
10:11:02.0656 3756        adpu160m - ok
10:11:03.0953 3756        aec            (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
10:11:04.0171 3756        aec - ok
10:11:05.0453 3756        AFD            (f6b7b1ecd7b41736bdb6ff4b092bcb79) C:\WINDOWS\System32\drivers\afd.sys
10:11:05.0562 3756        AFD - ok
10:11:06.0812 3756        Aha154x - ok
10:11:08.0046 3756        aic78u2 - ok
10:11:09.0281 3756        aic78xx - ok
10:11:10.0468 3756        ALG            (190cd73d4984f94d823f9444980513e5) C:\WINDOWS\System32\alg.exe
10:11:10.0578 3756        ALG - ok
10:11:11.0812 3756        AliIde - ok
10:11:13.0062 3756        amsint - ok
10:11:13.0328 3756        AntiVirSchedulerService (a122d68ea2541453f787f341877cb40b) C:\Programme\Avira\AntiVir Desktop\sched.exe
10:11:13.0359 3756        AntiVirSchedulerService - ok
10:11:13.0609 3756        AntiVirService  (2fe359edeb34efcf42574752f8aebd3f) C:\Programme\Avira\AntiVir Desktop\avguard.exe
10:11:13.0640 3756        AntiVirService - ok
10:11:14.0921 3756        ApfiltrService  (5f8054624f08179228832d7ffd6efd52) C:\WINDOWS\system32\DRIVERS\Apfiltr.sys
10:11:15.0000 3756        ApfiltrService - ok
10:11:16.0171 3756        AppMgmt        (d45960be52c3c610d361977057f98c54) C:\WINDOWS\System32\appmgmts.dll
10:11:16.0296 3756        AppMgmt - ok
10:11:17.0562 3756        Arp1394        (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
10:11:17.0750 3756        Arp1394 - ok
10:11:18.0968 3756        asc - ok
10:11:20.0234 3756        asc3350p - ok
10:11:21.0500 3756        asc3550 - ok
10:11:22.0875 3756        Aspi32          (b979979ab8027f7f53fb16ec4229b7db) C:\WINDOWS\system32\drivers\Aspi32.sys
10:11:22.0890 3756        Aspi32 ( UnsignedFile.Multi.Generic ) - warning
10:11:22.0890 3756        Aspi32 - detected UnsignedFile.Multi.Generic (1)
10:11:23.0453 3756        aspnet_state    (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
10:11:23.0484 3756        aspnet_state - ok
10:11:24.0734 3756        AsyncMac        (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
10:11:24.0906 3756        AsyncMac - ok
10:11:26.0187 3756        atapi          (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
10:11:26.0390 3756        atapi - ok
10:11:27.0656 3756        Atdisk - ok
10:11:28.0843 3756        AudioSrv        (58ed0d5452df7be732193e7999c6b9a4) C:\WINDOWS\System32\audiosrv.dll
10:11:29.0062 3756        AudioSrv - ok
10:11:30.0343 3756        audstub        (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
10:11:30.0562 3756        audstub - ok
10:11:31.0906 3756        avgntflt        (7713e4eb0276702faa08e52a6e23f2a6) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
10:11:31.0968 3756        avgntflt - ok
10:11:33.0250 3756        avipbb          (13b02b9b969dde270cd7c351203dad3c) C:\WINDOWS\system32\DRIVERS\avipbb.sys
10:11:33.0265 3756        avipbb - ok
10:11:34.0562 3756        avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\WINDOWS\system32\DRIVERS\avkmgr.sys
10:11:34.0593 3756        avkmgr - ok
10:11:35.0859 3756        bcm4sbxp        (cd4646067cc7dcba1907fa0acf7e3966) C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys
10:11:35.0906 3756        bcm4sbxp - ok
10:11:37.0140 3756        Beep            (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
10:11:37.0328 3756        Beep - ok
10:11:38.0515 3756        BITS            (d6f603772a789bb3228f310d650b8bd1) C:\WINDOWS\system32\qmgr.dll
10:11:38.0781 3756        BITS - ok
10:11:40.0015 3756        Browser        (b42057f06bbb98b31876c0b3f2b54e33) C:\WINDOWS\System32\browser.dll
10:11:40.0203 3756        Browser - ok
10:11:43.0046 3756        catchme - ok
10:11:44.0343 3756        cbidf2k        (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
10:11:44.0546 3756        cbidf2k - ok
10:11:45.0875 3756        CCDECODE        (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
10:11:46.0078 3756        CCDECODE - ok
10:11:47.0343 3756        cd20xrnt - ok
10:11:48.0609 3756        Cdaudio        (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
10:11:48.0828 3756        Cdaudio - ok
10:11:50.0078 3756        Cdfs            (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
10:11:50.0281 3756        Cdfs - ok
10:11:51.0546 3756        Cdrom          (4b0a100eaf5c49ef3cca8c641431eacc) C:\WINDOWS\system32\DRIVERS\cdrom.sys
10:11:51.0609 3756        Cdrom - ok
10:11:52.0843 3756        Changer - ok
10:11:54.0046 3756        ClipSrv        (778a30ed3c134eb7e406afc407e9997d) C:\WINDOWS\system32\clipsrv.exe
10:11:54.0218 3756        ClipSrv - ok
10:11:54.0734 3756        clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:11:54.0781 3756        clr_optimization_v2.0.50727_32 - ok
10:11:56.0078 3756        CmBatt          (0f6c187d38d98f8df904589a5f94d411) C:\WINDOWS\system32\DRIVERS\CmBatt.sys
10:11:56.0250 3756        CmBatt - ok
10:11:57.0515 3756        CmdIde - ok
10:11:58.0796 3756        Compbatt        (6e4c9f21f0fae8940661144f41b13203) C:\WINDOWS\system32\DRIVERS\compbatt.sys
10:11:59.0015 3756        Compbatt - ok
10:12:00.0218 3756        COMSysApp - ok
10:12:01.0484 3756        Cpqarray - ok
10:12:02.0656 3756        CryptSvc        (611f824e5c703a5a899f84c5f1699e4d) C:\WINDOWS\System32\cryptsvc.dll
10:12:02.0859 3756        CryptSvc - ok
10:12:04.0156 3756        dac2w2k - ok
10:12:05.0421 3756        dac960nt - ok
10:12:06.0625 3756        DcomLaunch      (d3d765e8455a961ae567b408f767d4f9) C:\WINDOWS\system32\rpcss.dll
10:12:06.0703 3756        DcomLaunch - ok
10:12:07.0890 3756        Dhcp            (820110cffee9690d64f67d941ddb7879) C:\WINDOWS\System32\dhcpcsvc.dll
10:12:07.0968 3756        Dhcp - ok
10:12:09.0234 3756        Disk            (47b6aaec570f2c11d8bad80a064d8ed1) C:\WINDOWS\system32\DRIVERS\disk.sys
10:12:09.0281 3756        Disk - ok
10:12:10.0421 3756        dmadmin - ok
10:12:11.0734 3756        dmboot          (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys
10:12:11.0984 3756        dmboot - ok
10:12:13.0265 3756        dmio            (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\drivers\dmio.sys
10:12:13.0484 3756        dmio - ok
10:12:14.0750 3756        dmload          (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
10:12:14.0921 3756        dmload - ok
10:12:16.0125 3756        dmserver        (25c83ffbba13b554eb6d59a9b2e2ee78) C:\WINDOWS\System32\dmserver.dll
10:12:16.0312 3756        dmserver - ok
10:12:17.0656 3756        DMusic          (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
10:12:17.0859 3756        DMusic - ok
10:12:19.0046 3756        Dnscache        (4548494812ba3b416d489e0c6af8d643) C:\WINDOWS\System32\dnsrslvr.dll
10:12:19.0187 3756        Dnscache - ok
10:12:20.0375 3756        Dot3svc        (676e36c4ff5bcea1900f44182b9723e6) C:\WINDOWS\System32\dot3svc.dll
10:12:20.0562 3756        Dot3svc - ok
10:12:21.0812 3756        dpti2o - ok
10:12:23.0093 3756        drmkaud        (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
10:12:23.0281 3756        drmkaud - ok
10:12:24.0468 3756        EapHost        (4e4f2fddab0a0736d7671134dcce91fb) C:\WINDOWS\System32\eapsvc.dll
10:12:24.0671 3756        EapHost - ok
10:12:25.0875 3756        Eventlog        (f0a7d59af279326528715b206669b86c) C:\WINDOWS\system32\services.exe
10:12:25.0937 3756        Eventlog - ok
10:12:27.0109 3756        EventSystem    (af4f6b5739d18ca7972ab53e091cbc74) C:\WINDOWS\system32\es.dll
10:12:27.0171 3756        EventSystem - ok
10:12:27.0343 3756        EvtEng          (ba6063e3375f9bc11a9c8450a7f61e70) C:\Programme\Intel\WiFi\bin\EvtEng.exe
10:12:27.0375 3756        EvtEng ( UnsignedFile.Multi.Generic ) - warning
10:12:27.0375 3756        EvtEng - detected UnsignedFile.Multi.Generic (1)
10:12:28.0671 3756        Fastfat        (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
10:12:28.0890 3756        Fastfat - ok
10:12:30.0109 3756        FastUserSwitchingCompatibility (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
10:12:30.0203 3756        FastUserSwitchingCompatibility - ok
10:12:31.0468 3756        Fdc            (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\drivers\Fdc.sys
10:12:31.0656 3756        Fdc - ok
10:12:32.0984 3756        Fips            (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys
10:12:33.0203 3756        Fips - ok
10:12:34.0484 3756        Flpydisk        (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\drivers\Flpydisk.sys
10:12:34.0671 3756        Flpydisk - ok
10:12:35.0968 3756        FltMgr          (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
10:12:36.0187 3756        FltMgr - ok
10:12:36.0625 3756        FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
10:12:36.0625 3756        FontCache3.0.0.0 - ok
10:12:37.0906 3756        Fs_Rec          (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
10:12:38.0093 3756        Fs_Rec - ok
10:12:39.0390 3756        Ftdisk          (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
10:12:39.0625 3756        Ftdisk - ok
10:12:40.0890 3756        Gpc            (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
10:12:41.0093 3756        Gpc - ok
10:12:42.0375 3756        HDAudBus        (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
10:12:42.0609 3756        HDAudBus - ok
10:12:43.0765 3756        HidServ - ok
10:12:45.0046 3756        hidusb          (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
10:12:45.0234 3756        hidusb - ok
10:12:46.0406 3756        hkmsvc          (ed29f14101523a6e0e808107405d452c) C:\WINDOWS\System32\kmsvc.dll
10:12:46.0578 3756        hkmsvc - ok
10:12:47.0859 3756        hpn - ok
10:12:49.0171 3756        HSF_DPV        (e9e589c9ab799f52e18f057635a2b362) C:\WINDOWS\system32\DRIVERS\HSX_DPV.sys
10:12:49.0234 3756        HSF_DPV ( UnsignedFile.Multi.Generic ) - warning
10:12:49.0234 3756        HSF_DPV - detected UnsignedFile.Multi.Generic (1)
10:12:50.0515 3756        HSXHWAZL        (7845d2385f4dc7dfb3ccaf0c2fa4948e) C:\WINDOWS\system32\DRIVERS\HSXHWAZL.sys
10:12:50.0531 3756        HSXHWAZL ( UnsignedFile.Multi.Generic ) - warning
10:12:50.0531 3756        HSXHWAZL - detected UnsignedFile.Multi.Generic (1)
10:12:51.0812 3756        HTTP            (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
10:12:51.0890 3756        HTTP - ok
10:12:53.0078 3756        HTTPFilter      (9e4adb854cebcfb81a4b36718feecd16) C:\WINDOWS\System32\w3ssl.dll
10:12:53.0281 3756        HTTPFilter - ok
10:12:54.0562 3756        i2omgmt - ok
10:12:55.0812 3756        i2omp - ok
10:12:57.0078 3756        i8042prt        (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
10:12:57.0312 3756        i8042prt - ok
10:12:58.0562 3756        iaStor          (e5a0034847537eaee3c00349d5c34c5f) C:\WINDOWS\system32\DRIVERS\iaStor.sys
10:12:58.0593 3756        iaStor - ok
10:12:58.0671 3756        ICQ Service - ok
10:12:59.0140 3756        idsvc          (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
10:12:59.0281 3756        idsvc - ok
10:13:00.0546 3756        Imapi          (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
10:13:00.0734 3756        Imapi - ok
10:13:01.0968 3756        ImapiService    (d4b413aa210c21e46aedd2ba5b68d38e) C:\WINDOWS\system32\imapi.exe
10:13:02.0218 3756        ImapiService - ok
10:13:03.0546 3756        ini910u - ok
10:13:04.0796 3756        IntelIde - ok
10:13:06.0093 3756        intelppm        (4c7d2750158ed6e7ad642d97bffae351) C:\WINDOWS\system32\DRIVERS\intelppm.sys
10:13:06.0296 3756        intelppm - ok
10:13:07.0546 3756        Ip6Fw          (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
10:13:07.0734 3756        Ip6Fw - ok
10:13:09.0031 3756        IpFilterDriver  (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
10:13:09.0218 3756        IpFilterDriver - ok
10:13:10.0531 3756        IpInIp          (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
10:13:10.0718 3756        IpInIp - ok
10:13:12.0015 3756        IpNat          (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
10:13:12.0234 3756        IpNat - ok
10:13:13.0515 3756        IPSec          (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
10:13:13.0703 3756        IPSec - ok
10:13:15.0031 3756        IRENUM          (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
10:13:15.0140 3756        IRENUM - ok
10:13:16.0375 3756        isapnp          (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys
10:13:16.0578 3756        isapnp - ok
10:13:16.0765 3756        JavaQuickStarterService (1834c96fb1f9280bcf6ddfa6de8338bf) C:\Programme\Java\jre6\bin\jqs.exe
10:13:16.0781 3756        JavaQuickStarterService - ok
10:13:18.0078 3756        Kbdclass        (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
10:13:18.0265 3756        Kbdclass - ok
10:13:19.0531 3756        kmixer          (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
10:13:19.0734 3756        kmixer - ok
10:13:21.0000 3756        KSecDD          (c6ebf1d6ad71df30db49b8d3287e1368) C:\WINDOWS\system32\drivers\KSecDD.sys
10:13:21.0078 3756        KSecDD - ok
10:13:22.0265 3756        LanmanServer    (2bbdcb79900990f0716dfcb714e72de7) C:\WINDOWS\System32\srvsvc.dll
10:13:22.0343 3756        LanmanServer - ok
10:13:23.0531 3756        lanmanworkstation (c9b816901c1abf28ba6c5b6cb65eb75b) C:\WINDOWS\System32\wkssvc.dll
10:13:23.0593 3756        lanmanworkstation - ok
10:13:24.0859 3756        lbrtfdc - ok
10:13:26.0031 3756        LmHosts        (636714b7d43c8d0c80449123fd266920) C:\WINDOWS\System32\lmhsvc.dll
10:13:26.0218 3756        LmHosts - ok
10:13:27.0546 3756        mdmxsdk        (0cea2d0d3fa284b85ed5b68365114f76) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
10:13:27.0578 3756        mdmxsdk ( UnsignedFile.Multi.Generic ) - warning
10:13:27.0578 3756        mdmxsdk - detected UnsignedFile.Multi.Generic (1)
10:13:27.0875 3756        Microsoft Office Groove Audit Service (123271bd5237ab991dc5c21fdf8835eb) C:\Programme\Microsoft Office\Office12\GrooveAuditService.exe
10:13:27.0906 3756        Microsoft Office Groove Audit Service - ok
10:13:29.0203 3756        Modem          (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys
10:13:29.0375 3756        Modem - ok
10:13:30.0687 3756        Mouclass        (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys
10:13:30.0875 3756        Mouclass - ok
10:13:32.0156 3756        mouhid          (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys
10:13:32.0343 3756        mouhid - ok
10:13:33.0625 3756        MountMgr        (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
10:13:33.0796 3756        MountMgr - ok
10:13:35.0046 3756        mraid35x - ok
10:13:36.0312 3756        MRxDAV          (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
10:13:36.0531 3756        MRxDAV - ok
10:13:37.0812 3756        MRxSmb          (fb2fccc70f7174c7bf64f48e96d3adf4) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
10:13:37.0921 3756        MRxSmb - ok
10:13:39.0140 3756        MSDTC          (35a031af38c55f92d28aa03ee9f12cc9) C:\WINDOWS\system32\msdtc.exe
10:13:39.0328 3756        MSDTC - ok
10:13:40.0578 3756        Msfs            (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
10:13:40.0781 3756        Msfs - ok
10:13:41.0953 3756        MSIServer - ok
10:13:43.0250 3756        MSKSSRV        (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
10:13:43.0421 3756        MSKSSRV - ok
10:13:44.0671 3756        MSPCLOCK        (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
10:13:44.0859 3756        MSPCLOCK - ok
10:13:46.0156 3756        MSPQM          (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
10:13:46.0359 3756        MSPQM - ok
10:13:47.0671 3756        mssmbios        (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
10:13:47.0812 3756        mssmbios - ok
10:13:49.0062 3756        MSTEE          (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
10:13:49.0250 3756        MSTEE - ok
10:13:50.0578 3756        Mup            (f7b1ad991491f02af6da70b00b8bf114) C:\WINDOWS\system32\drivers\Mup.sys
10:13:50.0640 3756        Mup - ok
10:13:51.0937 3756        NABTSFEC        (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
10:13:52.0125 3756        NABTSFEC - ok
10:13:53.0328 3756        napagent        (46bb15ae2ac7d025d6d2567b876817bd) C:\WINDOWS\System32\qagentrt.dll
10:13:53.0546 3756        napagent - ok
10:13:54.0890 3756        NDIS            (b5b1080d35974c0e718d64280761bcd5) C:\WINDOWS\system32\drivers\NDIS.sys
10:13:54.0937 3756        NDIS - ok
10:13:56.0203 3756        NdisIP          (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
10:13:56.0406 3756        NdisIP - ok
10:13:57.0671 3756        NdisTapi        (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
10:13:57.0734 3756        NdisTapi - ok
10:13:58.0984 3756        Ndisuio        (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
10:13:59.0203 3756        Ndisuio - ok
10:14:00.0453 3756        NdisWan        (b053a8411045fd0664b389a090cb2bbc) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
10:14:00.0484 3756        NdisWan - ok
10:14:01.0765 3756        NDProxy        (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
10:14:01.0843 3756        NDProxy - ok
10:14:03.0078 3756        NetBIOS        (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
10:14:03.0281 3756        NetBIOS - ok
10:14:04.0546 3756        NetBT          (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
10:14:04.0781 3756        NetBT - ok
10:14:05.0937 3756        NetDDE          (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
10:14:06.0171 3756        NetDDE - ok
10:14:06.0171 3756        NetDDEdsdm      (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
10:14:06.0250 3756        NetDDEdsdm - ok
10:14:07.0453 3756        Netlogon        (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
10:14:07.0671 3756        Netlogon - ok
10:14:08.0906 3756        Netman          (e6d88f1f6745bf00b57e7855a2ab696c) C:\WINDOWS\System32\netman.dll
10:14:09.0109 3756        Netman - ok
10:14:09.0625 3756        NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
10:14:09.0625 3756        NetTcpPortSharing - ok
10:14:11.0062 3756        NETw5x32        (aa88346ab7849a1cb34bd3424febfece) C:\WINDOWS\system32\DRIVERS\NETw5x32.sys
10:14:11.0359 3756        NETw5x32 - ok
10:14:12.0640 3756        NIC1394        (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
10:14:12.0812 3756        NIC1394 - ok
10:14:13.0015 3756        NMSAccessU      (fd306fbcce7adb1077b709742e7148e9) C:\Programme\CDBurnerXP\NMSAccessU.exe
10:14:13.0031 3756        NMSAccessU - ok
10:14:14.0281 3756        Npfs            (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
10:14:14.0453 3756        Npfs - ok
10:14:15.0718 3756        Ntfs            (a0857c97770034fd2af17dc4014b5abd) C:\WINDOWS\system32\drivers\Ntfs.sys
10:14:15.0796 3756        Ntfs - ok
10:14:17.0015 3756        NtLmSsp        (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
10:14:17.0203 3756        NtLmSsp - ok
10:14:18.0484 3756        NtmsSvc        (56af4064996fa5bac9c449b1514b4770) C:\WINDOWS\system32\ntmssvc.dll
10:14:18.0718 3756        NtmsSvc - ok
10:14:20.0046 3756        Null            (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
10:14:20.0234 3756        Null - ok
10:14:21.0906 3756        nv              (a05d99cbf55eb493c9e82b4bca848ef5) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
10:14:22.0671 3756        nv - ok
10:14:23.0875 3756        nvsvc          (a86a2f2b2bf5d5eed075b6417de5cf1c) C:\WINDOWS\system32\nvsvc32.exe
10:14:23.0906 3756        nvsvc - ok
10:14:25.0187 3756        NvtSp50        (dfbbb46e406d6cd7bcb58af493ba80f8) C:\WINDOWS\system32\DRIVERS\NvtSp50.sys
10:14:25.0265 3756        NvtSp50 - ok
10:14:26.0531 3756        NWADI          (2f49369ddcc5ca3cdcd944b637efacad) C:\WINDOWS\system32\DRIVERS\NWADIenum.sys
10:14:26.0593 3756        NWADI - ok
10:14:27.0828 3756        NwlnkFlt        (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
10:14:28.0000 3756        NwlnkFlt - ok
10:14:29.0265 3756        NwlnkFwd        (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
10:14:29.0453 3756        NwlnkFwd - ok
10:14:29.0671 3756        odserv          (785f487a64950f3cb8e9f16253ba3b7b) C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE
10:14:29.0687 3756        odserv - ok
10:14:30.0984 3756        OEM02Afx        (58f478fd0115012ceec75fb73628901c) C:\WINDOWS\system32\Drivers\OEM02Afx.sys
10:14:31.0062 3756        OEM02Afx - ok
10:14:32.0328 3756        OEM02Dev        (19cac780b858822055f46c58a111723c) C:\WINDOWS\system32\DRIVERS\OEM02Dev.sys
10:14:32.0390 3756        OEM02Dev - ok
10:14:33.0656 3756        OEM02Vfx        (86326062a90494bdd79ce383511d7d69) C:\WINDOWS\system32\DRIVERS\OEM02Vfx.sys
10:14:33.0703 3756        OEM02Vfx - ok
10:14:34.0984 3756        ohci1394        (23f68c5580883a7640bf961704aa10a0) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
10:14:35.0015 3756        ohci1394 - ok
10:14:35.0156 3756        ose            (5a432a042dae460abe7199b758e8606c) C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE
10:14:35.0187 3756        ose - ok
10:14:36.0468 3756        Parport        (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\drivers\Parport.sys
10:14:36.0656 3756        Parport - ok
10:14:37.0921 3756        PartMgr        (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
10:14:38.0109 3756        PartMgr - ok
10:14:39.0406 3756        ParVdm          (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys
10:14:39.0609 3756        ParVdm - ok
10:14:40.0875 3756        PCI            (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys
10:14:41.0062 3756        PCI - ok
10:14:42.0375 3756        PCIDump - ok
10:14:43.0640 3756        PCIIde          (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys
10:14:43.0828 3756        PCIIde - ok
10:14:45.0078 3756        Pcmcia          (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys
10:14:45.0296 3756        Pcmcia - ok
10:14:46.0546 3756        PDCOMP - ok
10:14:47.0781 3756        PDFRAME - ok
10:14:49.0046 3756        PDRELI - ok
10:14:50.0312 3756        PDRFRAME - ok
10:14:51.0546 3756        perc2 - ok
10:14:52.0781 3756        perc2hib - ok
10:14:54.0000 3756        PlugPlay        (f0a7d59af279326528715b206669b86c) C:\WINDOWS\system32\services.exe
10:14:54.0062 3756        PlugPlay - ok
10:14:55.0265 3756        PolicyAgent    (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
10:14:55.0453 3756        PolicyAgent - ok
10:14:56.0703 3756        PptpMiniport    (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
10:14:56.0890 3756        PptpMiniport - ok
10:14:58.0062 3756        ProtectedStorage (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
10:14:58.0250 3756        ProtectedStorage - ok
10:14:59.0578 3756        PSched          (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
10:14:59.0796 3756        PSched - ok
10:15:01.0062 3756        Ptilink        (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
10:15:01.0250 3756        Ptilink - ok
10:15:02.0546 3756        PxHelp20        (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
10:15:02.0578 3756        PxHelp20 - ok
10:15:03.0812 3756        ql1080 - ok
10:15:05.0046 3756        Ql10wnt - ok
10:15:06.0281 3756        ql12160 - ok
10:15:07.0515 3756        ql1240 - ok
10:15:08.0765 3756        ql1280 - ok
10:15:10.0031 3756        RasAcd          (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
10:15:10.0234 3756        RasAcd - ok
10:15:11.0437 3756        RasAuto        (f5ba6caccdb66c8f048e867563203246) C:\WINDOWS\System32\rasauto.dll
10:15:11.0656 3756        RasAuto - ok
10:15:12.0968 3756        Rasl2tp        (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
10:15:13.0171 3756        Rasl2tp - ok
10:15:14.0343 3756        RasMan          (f9a7b66ea345726edb5862a46b1eccd5) C:\WINDOWS\System32\rasmans.dll
10:15:14.0531 3756        RasMan - ok
10:15:15.0781 3756        RasPppoe        (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
10:15:15.0984 3756        RasPppoe - ok
10:15:17.0234 3756        Raspti          (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
10:15:17.0437 3756        Raspti - ok
10:15:18.0718 3756        Rdbss          (9629383f70db691cb6aa5bbd828cd9a9) C:\WINDOWS\system32\DRIVERS\rdbss.sys
10:15:18.0796 3756        Rdbss - ok
10:15:20.0078 3756        RDPCDD          (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
10:15:20.0250 3756        RDPCDD - ok
10:15:21.0515 3756        rdpdr          (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
10:15:21.0734 3756        rdpdr - ok
10:15:23.0015 3756        RDPWD          (5b3055daa788bd688594d2f5981f2a83) C:\WINDOWS\system32\drivers\RDPWD.sys
10:15:23.0078 3756        RDPWD - ok
10:15:24.0312 3756        RDSessMgr      (263af18af0f3db99f574c95f284ccec9) C:\WINDOWS\system32\sessmgr.exe
10:15:24.0546 3756        RDSessMgr - ok
10:15:25.0828 3756        redbook        (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys
10:15:26.0031 3756        redbook - ok
10:15:26.0203 3756        RegSrvc        (7eeeec28a34516e66137f355dcc15bdb) C:\Programme\Gemeinsame Dateien\Intel\WirelessCommon\RegSrvc.exe
10:15:26.0203 3756        RegSrvc ( UnsignedFile.Multi.Generic ) - warning
10:15:26.0203 3756        RegSrvc - detected UnsignedFile.Multi.Generic (1)
10:15:27.0421 3756        RemoteAccess    (0e97ec96d6942ceec2d188cc2eb69a01) C:\WINDOWS\System32\mprdim.dll
10:15:27.0640 3756        RemoteAccess - ok
10:15:28.0953 3756        rimmptsk        (355aac141b214bef1dbc1483afd9bd50) C:\WINDOWS\system32\DRIVERS\rimmptsk.sys
10:15:29.0000 3756        rimmptsk - ok
10:15:30.0250 3756        rimsptsk        (a4216c71dd4f60b26418ccfd99cd0815) C:\WINDOWS\system32\DRIVERS\rimsptsk.sys
10:15:30.0328 3756        rimsptsk - ok
10:15:31.0593 3756        rismxdp        (d231b577024aa324af13a42f3a807d10) C:\WINDOWS\system32\DRIVERS\rixdptsk.sys
10:15:31.0656 3756        rismxdp - ok
10:15:32.0843 3756        RpcLocator      (2a02e21867497df20b8fc95631395169) C:\WINDOWS\system32\locator.exe
10:15:33.0078 3756        RpcLocator - ok
10:15:34.0375 3756        RpcSs          (d3d765e8455a961ae567b408f767d4f9) C:\WINDOWS\System32\rpcss.dll
10:15:34.0437 3756        RpcSs - ok
10:15:35.0765 3756        rspndr          (743d7d59767073a617b1dcc6c546f234) C:\WINDOWS\system32\DRIVERS\rspndr.sys
10:15:35.0796 3756        rspndr - ok
10:15:36.0968 3756        RSVP            (4bdd71b4b521521499dfd14735c4f398) C:\WINDOWS\system32\rsvp.exe
10:15:37.0203 3756        RSVP - ok
10:15:37.0390 3756        S24EventMonitor (8b09ff15d36b1d5108f6f3249ea16f5f) C:\Programme\Intel\WiFi\bin\S24EvMon.exe
10:15:37.0437 3756        S24EventMonitor ( UnsignedFile.Multi.Generic ) - warning
10:15:37.0437 3756        S24EventMonitor - detected UnsignedFile.Multi.Generic (1)
10:15:38.0718 3756        s24trans        (87940243ea2ad3ebe274f5409c5e9072) C:\WINDOWS\system32\DRIVERS\s24trans.sys
10:15:38.0796 3756        s24trans - ok
10:15:40.0015 3756        SamSs          (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
10:15:40.0203 3756        SamSs - ok
10:15:41.0421 3756        SCardSvr        (dcec079fad95d36c8dd5cb6d779dfe32) C:\WINDOWS\System32\SCardSvr.exe
10:15:41.0625 3756        SCardSvr - ok
10:15:42.0921 3756        sdbus          (8d04819a3ce51b9eb47e5689b44d43c4) C:\WINDOWS\system32\DRIVERS\sdbus.sys
10:15:43.0125 3756        sdbus - ok
10:15:44.0375 3756        Secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
10:15:44.0484 3756        Secdrv - ok
10:15:45.0656 3756        seclogon        (bee4cfd1d48c23b44cf4b974b0b79b2b) C:\WINDOWS\System32\seclogon.dll
10:15:45.0843 3756        seclogon - ok
10:15:47.0171 3756        Serial          (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\drivers\Serial.sys
10:15:47.0359 3756        Serial - ok
10:15:48.0671 3756        Sfloppy        (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
10:15:48.0875 3756        Sfloppy - ok
10:15:50.0093 3756        SharedAccess    (65746507b64818a0dbaf7607c0d07c54) C:\WINDOWS\System32\ipnathlp.dll
10:15:50.0187 3756        SharedAccess - ok
10:15:51.0437 3756        ShellHWDetection (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
10:15:51.0500 3756        ShellHWDetection - ok
10:15:52.0734 3756        Simbad - ok
10:15:54.0000 3756        SLIP            (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
10:15:54.0203 3756        SLIP - ok
10:15:55.0437 3756        Sparrow - ok
10:15:56.0734 3756        splitter        (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
10:15:56.0921 3756        splitter - ok
10:15:58.0093 3756        Spooler        (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
10:15:58.0156 3756        Spooler - ok
10:15:59.0484 3756        sptd            (cdddec541bc3c96f91ecb48759673505) C:\WINDOWS\system32\Drivers\sptd.sys
10:15:59.0484 3756        Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: cdddec541bc3c96f91ecb48759673505
10:15:59.0484 3756        sptd ( LockedFile.Multi.Generic ) - warning
10:15:59.0484 3756        sptd - detected LockedFile.Multi.Generic (1)
10:16:00.0765 3756        Sr              (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys
10:16:00.0875 3756        Sr - ok
10:16:02.0078 3756        srservice      (fe77a85495065f3ad59c5c65b6c54182) C:\WINDOWS\system32\srsvc.dll
10:16:02.0203 3756        srservice - ok
10:16:03.0484 3756        Srv            (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
10:16:03.0546 3756        Srv - ok
10:16:04.0828 3756        SscRdBus        (d338ee5f956d271dfb5bc80f3032115b) C:\WINDOWS\system32\DRIVERS\SscRdBus.sys
10:16:04.0859 3756        SscRdBus - ok
10:16:06.0125 3756        SscRdFdo        (4f5c2fa8085868355de5148604cf2441) C:\WINDOWS\system32\DRIVERS\SscRdFdo.sys
10:16:06.0156 3756        SscRdFdo - ok
10:16:07.0390 3756        SSDPSRV        (4df5b05dfaec29e13e1ed6f6ee12c500) C:\WINDOWS\System32\ssdpsrv.dll
10:16:07.0515 3756        SSDPSRV - ok
10:16:08.0796 3756        ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
10:16:08.0812 3756        ssmdrv - ok
10:16:10.0078 3756        StarOpen        (f92254b0bcfcd10caac7bccc7cb7f467) C:\WINDOWS\system32\drivers\StarOpen.sys
10:16:10.0093 3756        StarOpen ( UnsignedFile.Multi.Generic ) - warning
10:16:10.0093 3756        StarOpen - detected UnsignedFile.Multi.Generic (1)
10:16:11.0390 3756        STHDA          (951801dfb54d86f611f0af47825476f9) C:\WINDOWS\system32\drivers\sthda.sys
10:16:11.0531 3756        STHDA - ok
10:16:12.0734 3756        stisvc          (bc2c5985611c5356b24aeb370953ded9) C:\WINDOWS\system32\wiaservc.dll
10:16:12.0968 3756        stisvc - ok
10:16:14.0265 3756        streamip        (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
10:16:14.0437 3756        streamip - ok
10:16:15.0671 3756        swenum          (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
10:16:15.0875 3756        swenum - ok
10:16:17.0156 3756        swmidi          (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
10:16:17.0359 3756        swmidi - ok
10:16:18.0500 3756        SwPrv - ok
10:16:19.0750 3756        symc810 - ok
10:16:21.0000 3756        symc8xx - ok
10:16:22.0250 3756        sym_hi - ok
10:16:23.0468 3756        sym_u3 - ok
10:16:24.0734 3756        sysaudio        (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
10:16:24.0953 3756        sysaudio - ok
10:16:26.0125 3756        SysmonLog      (2903fffa2523926d6219428040dce6b9) C:\WINDOWS\system32\smlogsvc.exe
10:16:26.0375 3756        SysmonLog - ok
10:16:27.0656 3756        TapiSrv        (05903cac4b98908d55ea5774775b382e) C:\WINDOWS\System32\tapisrv.dll
10:16:27.0890 3756        TapiSrv - ok
10:16:29.0250 3756        Tcpip          (ad978a1b783b5719720cff204b666c8e) C:\WINDOWS\system32\DRIVERS\tcpip.sys
10:16:29.0312 3756        Tcpip - ok
10:16:30.0562 3756        TDPIPE          (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
10:16:30.0750 3756        TDPIPE - ok
10:16:31.0968 3756        TDTCP          (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
10:16:32.0171 3756        TDTCP - ok
10:16:33.0515 3756        TermDD          (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
10:16:33.0703 3756        TermDD - ok
10:16:34.0953 3756        TermService    (b7de02c863d8f5a005a7bf375375a6a4) C:\WINDOWS\System32\termsrv.dll
10:16:35.0140 3756        TermService - ok
10:16:36.0343 3756        Themes          (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
10:16:36.0375 3756        Themes - ok
10:16:37.0609 3756        TlntSvr        (03681a1ce77f51586903869a5ab1deab) C:\WINDOWS\system32\tlntsvr.exe
10:16:37.0750 3756        TlntSvr - ok
10:16:38.0984 3756        TosIde - ok
10:16:40.0265 3756        Udfs            (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
10:16:40.0500 3756        Udfs - ok
10:16:41.0734 3756        ultra - ok
10:16:43.0000 3756        Update          (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
10:16:43.0234 3756        Update - ok
10:16:44.0453 3756        upnphost        (1dfd8975d8c89214b98d9387c1125b49) C:\WINDOWS\System32\upnphost.dll
10:16:44.0578 3756        upnphost - ok
10:16:45.0843 3756        UPS            (9b11e6118958e63e1fef129466e2bda7) C:\WINDOWS\System32\ups.exe
10:16:46.0031 3756        UPS - ok
10:16:47.0312 3756        usbccgp        (c18d6c74953621346df6b0a11f80c1cc) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
10:16:47.0343 3756        usbccgp - ok
10:16:48.0609 3756        usbehci        (152ee0baa614388273a0b9ae9c9fd5a0) C:\WINDOWS\system32\DRIVERS\usbehci.sys
10:16:48.0687 3756        usbehci - ok
10:16:49.0984 3756        usbhub          (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
10:16:50.0187 3756        usbhub - ok
10:16:51.0468 3756        usbscan        (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
10:16:51.0671 3756        usbscan - ok
10:16:52.0953 3756        USBSTOR        (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
10:16:53.0156 3756        USBSTOR - ok
10:16:54.0468 3756        usbuhci        (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
10:16:54.0671 3756        usbuhci - ok
10:16:55.0968 3756        usbvideo        (63bbfca7f390f4c49ed4b96bfb1633e0) C:\WINDOWS\system32\Drivers\usbvideo.sys
10:16:56.0171 3756        usbvideo - ok
10:16:57.0453 3756        VgaSave        (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
10:16:57.0671 3756        VgaSave - ok
10:16:58.0937 3756        ViaIde - ok
10:17:00.0218 3756        VolSnap        (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys
10:17:00.0406 3756        VolSnap - ok
10:17:01.0593 3756        VSS            (68f106273be29e7b7ef8266977268e78) C:\WINDOWS\System32\vssvc.exe
10:17:01.0703 3756        VSS - ok
10:17:02.0968 3756        Wanarp          (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
10:17:03.0171 3756        Wanarp - ok
10:17:04.0421 3756        WDICA - ok
10:17:05.0687 3756        wdmaud          (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
10:17:05.0890 3756        wdmaud - ok
10:17:07.0062 3756        WebClient      (81727c9873e3905a2ffc1ebd07265002) C:\WINDOWS\System32\webclnt.dll
10:17:07.0265 3756        WebClient - ok
10:17:08.0578 3756        winachsf        (4daca8f07537d4d7e3534bb99294aa26) C:\WINDOWS\system32\DRIVERS\HSX_CNXT.sys
10:17:08.0640 3756        winachsf ( UnsignedFile.Multi.Generic ) - warning
10:17:08.0640 3756        winachsf - detected UnsignedFile.Multi.Generic (1)
10:17:09.0953 3756        winmgmt        (6f3f3973d97714cc5f906a19fe883729) C:\WINDOWS\system32\wbem\WMIsvc.dll
10:17:10.0187 3756        winmgmt - ok
10:17:11.0406 3756        WinRM          (eb4919c36fc13494b696a5e033c90dc8) C:\WINDOWS\system32\WsmSvc.dll
10:17:11.0562 3756        WinRM - ok
10:17:11.0703 3756        WLANKEEPER      (a0501773c903b469d3b14c1067e80050) C:\Programme\Intel\WiFi\bin\WLKeeper.exe
10:17:11.0750 3756        WLANKEEPER ( UnsignedFile.Multi.Generic ) - warning
10:17:11.0750 3756        WLANKEEPER - detected UnsignedFile.Multi.Generic (1)
10:17:12.0921 3756        WmdmPmSN        (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\mspmsnsv.dll
10:17:12.0984 3756        WmdmPmSN - ok
10:17:14.0234 3756        Wmi            (57fa31a965d8fc3172641a93618fbe9e) C:\WINDOWS\System32\advapi32.dll
10:17:14.0312 3756        Wmi - ok
10:17:15.0578 3756        WmiAcpi        (c42584fd66ce9e17403aebca199f7bdb) C:\WINDOWS\system32\DRIVERS\wmiacpi.sys
10:17:15.0796 3756        WmiAcpi - ok
10:17:17.0078 3756        WmiApSrv        (93908111ba57a6e60ec2fa2de202105c) C:\WINDOWS\system32\wbem\wmiapsrv.exe
10:17:17.0265 3756        WmiApSrv - ok
10:17:17.0390 3756        WMPNetworkSvc  (bf05650bb7df5e9ebdd25974e22403bb) C:\Programme\Windows Media Player\WMPNetwk.exe
10:17:17.0453 3756        WMPNetworkSvc - ok
10:17:18.0671 3756        wscsvc          (300b3e84faf1a5c1f791c159ba28035d) C:\WINDOWS\system32\wscsvc.dll
10:17:18.0906 3756        wscsvc - ok
10:17:20.0218 3756        WSTCODEC        (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
10:17:20.0406 3756        WSTCODEC - ok
10:17:21.0625 3756        wuauserv        (727f02f3b19bab3639e9358ffdd295e0) C:\WINDOWS\system32\wuauserv.dll
10:17:21.0640 3756        wuauserv - ok
10:17:22.0906 3756        WudfPf          (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
10:17:22.0984 3756        WudfPf - ok
10:17:24.0250 3756        WudfRd          (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
10:17:24.0281 3756        WudfRd - ok
10:17:25.0468 3756        WudfSvc        (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
10:17:25.0531 3756        WudfSvc - ok
10:17:26.0781 3756        WZCSVC          (dee347dc347c633aa04e2fda8af332cc) C:\WINDOWS\System32\wzcsvc.dll
10:17:26.0984 3756        WZCSVC - ok
10:17:28.0281 3756        XAudio          (5a7ff9a18ff6d7e0527fe3abf9204ef8) C:\WINDOWS\system32\DRIVERS\xaudio.sys
10:17:28.0296 3756        XAudio ( UnsignedFile.Multi.Generic ) - warning
10:17:28.0296 3756        XAudio - detected UnsignedFile.Multi.Generic (1)
10:17:29.0578 3756        XAudioService  (28dc5d626e036a75a572556f0a6eb1f6) C:\WINDOWS\system32\DRIVERS\xaudio.exe
10:17:29.0625 3756        XAudioService ( UnsignedFile.Multi.Generic ) - warning
10:17:29.0625 3756        XAudioService - detected UnsignedFile.Multi.Generic (1)
10:17:30.0812 3756        xmlprov        (0ada34871a2e1cd2caafed1237a47750) C:\WINDOWS\System32\xmlprov.dll
10:17:31.0078 3756        xmlprov - ok
10:17:31.0156 3756        MBR (0x1B8)    (72b8ce41af0de751c946802b3ed844b4) \Device\Harddisk0\DR0
10:17:31.0515 3756        \Device\Harddisk0\DR0 - ok
10:17:31.0546 3756        Boot (0x1200)  (fc5d92809f4918b8b0d52b051a22e987) \Device\Harddisk0\DR0\Partition0
10:17:31.0546 3756        \Device\Harddisk0\DR0\Partition0 - ok
10:17:31.0562 3756        Boot (0x1200)  (45b15309e42c5e7acea1679ff377531a) \Device\Harddisk0\DR0\Partition1
10:17:31.0562 3756        \Device\Harddisk0\DR0\Partition1 - ok
10:17:31.0562 3756        ============================================================
10:17:31.0562 3756        Scan finished
10:17:31.0562 3756        ============================================================
10:17:31.0671 1920        Detected object count: 13
10:17:31.0671 1920        Actual detected object count: 13
10:49:10.0828 1920        Aspi32 ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0828 1920        Aspi32 ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0828 1920        EvtEng ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0828 1920        EvtEng ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0828 1920        HSF_DPV ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0828 1920        HSF_DPV ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0843 1920        HSXHWAZL ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0843 1920        HSXHWAZL ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0843 1920        mdmxsdk ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0843 1920        mdmxsdk ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0843 1920        RegSrvc ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0843 1920        RegSrvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0843 1920        S24EventMonitor ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0843 1920        S24EventMonitor ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0843 1920        sptd ( LockedFile.Multi.Generic ) - skipped by user
10:49:10.0843 1920        sptd ( LockedFile.Multi.Generic ) - User select action: Skip
10:49:10.0843 1920        StarOpen ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0843 1920        StarOpen ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0843 1920        winachsf ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0843 1920        winachsf ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0859 1920        WLANKEEPER ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0859 1920        WLANKEEPER ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0859 1920        XAudio ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0859 1920        XAudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:49:10.0859 1920        XAudioService ( UnsignedFile.Multi.Generic ) - skipped by user
10:49:10.0859 1920        XAudioService ( UnsignedFile.Multi.Generic ) - User select action: Skip

VIELEN LIEBEN DANK für Rat und Tat!!!

cosinus 28.03.2012 11:40

Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:

Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.

playmo 28.03.2012 23:26

text ist zu lang...deswegen in 3 teile!

Code:

ComboFix 12-03-28.02 - Giu 29.03.2012  0:09.2.2 - x86
Microsoft Windows XP Professional  5.1.2600.3.1252.49.1031.18.3070.2547 [GMT 2:00]
ausgeführt von:: c:\dokumente und einstellungen\Giu\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
 * Neuer Wiederherstellungspunkt wurde erstellt
.
.
((((((((((((((((((((((((((((((((((((  Weitere Löschungen  ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\dokumente und einstellungen\Giu\Desktop\Setup.exe
c:\dokumente und einstellungen\Giu\WINDOWS
c:\windows\system32\dllcache\cygwin1.dll
c:\windows\system32\dllcache\libeay32.dll
c:\windows\system32\dllcache\ssleay32.dll
c:\windows\unin0407.exe
.
.
(((((((((((((((((((((((  Dateien erstellt von 2012-02-28 bis 2012-03-28  ))))))))))))))))))))))))))))))
.
.
2012-03-18 09:17 . 2012-03-18 09:17        --------        d-----w-        c:\programme\ESET
2012-03-14 17:47 . 2012-03-14 17:47        --------        d-----r-        c:\dokumente und einstellungen\LocalService\Favoriten
2012-03-14 17:39 . 2012-03-14 17:39        --------        d-----w-        c:\programme\Audio Converter
2012-03-14 17:39 . 2012-03-14 17:39        --------        d-----w-        c:\dokumente und einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Google
2012-03-14 17:39 . 2012-03-14 17:39        --------        d-----w-        c:\dokumente und einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\I Want This
2012-03-14 17:30 . 2012-03-14 17:30        592824        ----a-w-        c:\programme\Mozilla Firefox\gkmedias.dll
2012-03-14 17:30 . 2012-03-14 17:30        44472        ----a-w-        c:\programme\Mozilla Firefox\mozglue.dll
2012-03-14 17:29 . 2012-03-14 17:29        --------        d-----w-        c:\programme\Video Codec
2012-03-11 20:17 . 2012-03-11 20:17        --------        d-----w-        c:\dokumente und einstellungen\Giu\Lokale Einstellungen\Anwendungsdaten\Identities
2012-03-11 10:29 . 2012-03-11 10:29        --------        d-----w-        c:\dokumente und einstellungen\Giu\Anwendungsdaten\Avira
2012-03-11 10:26 . 2012-03-11 10:26        --------        d-----w-        c:\windows\system32\NtmsData
2012-03-11 10:23 . 2012-01-31 07:56        137416        ----a-w-        c:\windows\system32\drivers\avipbb.sys
2012-03-11 10:23 . 2011-09-16 15:08        36000        ----a-w-        c:\windows\system32\drivers\avkmgr.sys
2012-03-11 10:23 . 2012-03-11 10:23        --------        d-----w-        c:\programme\Avira
2012-03-11 10:23 . 2012-03-11 10:23        --------        d-----w-        c:\dokumente und einstellungen\All Users\Anwendungsdaten\Avira
2012-03-11 10:21 . 2012-03-11 10:21        --------        d-sh--w-        c:\dokumente und einstellungen\LocalService\IETldCache
2012-03-07 11:48 . 2012-03-07 11:48        --------        d-sh--w-        c:\dokumente und einstellungen\Giu\IETldCache
2012-03-06 21:10 . 2012-03-06 21:11        --------        dc-h--w-        c:\windows\ie8
2012-03-06 21:03 . 2012-03-06 21:03        --------        d-----w-        C:\3505beca277d7b0e97677abfd5db
2012-03-06 17:35 . 2012-01-11 19:06        3072        ------w-        c:\windows\system32\iacenc.dll
2012-03-06 17:35 . 2012-01-11 19:06        3072        ------w-        c:\windows\system32\dllcache\iacenc.dll
.
.
.
((((((((((((((((((((((((((((((((((((  Find3M Bericht  ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-02-03 09:56 . 2008-08-01 17:59        1869312        ----a-w-        c:\windows\system32\win32k.sys
2012-01-31 07:56 . 2010-01-17 14:27        74640        ----a-w-        c:\windows\system32\drivers\avgntflt.sys
2012-01-09 16:20 . 2010-01-17 13:37        139784        ----a-w-        c:\windows\system32\drivers\rdpwd.sys
2012-03-14 17:30 . 2011-11-10 08:22        97208        ----a-w-        c:\programme\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((  SnapShot@2010-08-26_15.46.20  )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-04-18 20:51 . 2011-04-18 20:51        51024              c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_4ddc769f\vcomp90.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        51024              c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_214ee422\vcomp90.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        59728              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90rus.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        42832              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90kor.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        43344              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90jpn.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        61264              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90ita.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        62800              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90fra.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        61776              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90esp.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        61776              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90esn.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        53584              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90enu.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        63312              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90deu.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        36688              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90cht.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        35664              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_730c3508\mfc90chs.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        59728              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90rus.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        42832              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90kor.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        43344              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90jpn.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        61264              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90ita.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        62800              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90fra.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        61776              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90esp.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        61776              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90esn.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        53584              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90enu.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        63312              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90deu.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        36688              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90cht.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        35664              c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_467ea28b\mfc90chs.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        59904              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfcm90u.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        59904              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfcm90.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        59904              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfcm90u.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        59904              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfcm90.dll
+ 2011-05-13 18:17 . 2011-05-13 18:17        65536              c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_452bf920\vcomp.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        49152              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80KOR.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        49152              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80JPN.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        61440              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ITA.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        61440              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80FRA.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        61440              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ESP.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        57344              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ENU.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        65536              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80DEU.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        45056              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80CHT.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        40960              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80CHS.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        49152              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80KOR.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        49152              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80JPN.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        61440              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80ITA.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        61440              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80FRA.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        61440              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80ESP.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        57344              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80ENU.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        65536              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80DEU.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        45056              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80CHT.dll
+ 2011-05-13 17:45 . 2011-05-13 17:45        40960              c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_6a5bb789\mfc80CHS.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        57856              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfcm80u.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        69632              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfcm80.dll
+ 2011-05-13 23:06 . 2011-05-13 23:06        57856              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\mfcm80u.dll
+ 2011-05-13 23:23 . 2011-05-13 23:23        69632              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\mfcm80.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        96256              c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.dll
+ 2011-05-13 16:37 . 2011-05-13 16:37        97280              c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_a4c618fa\ATL80.dll
+ 2012-03-28 22:13 . 2012-03-28 22:13        16384              c:\windows\temp\Perflib_Perfdata_8b0.dat
+ 2012-03-28 22:14 . 2012-03-28 22:14        16384              c:\windows\temp\Perflib_Perfdata_374.dat
+ 2011-06-11 00:58 . 2011-06-11 00:58        51024              c:\windows\system32\vcomp100.dll
+ 2006-07-24 08:50 . 2006-07-24 08:50        47920              c:\windows\system32\VBAME.DLL
- 2008-04-14 05:53 . 2010-04-21 13:28        46080              c:\windows\system32\tzchange.exe
+ 2008-04-14 05:53 . 2011-11-08 13:46        46080              c:\windows\system32\tzchange.exe
+ 2008-04-14 05:52 . 2010-08-27 05:57        99840              c:\windows\system32\srvsvc.dll
+ 2008-08-01 17:59 . 2009-01-07 17:20        26144              c:\windows\system32\spupdsvc.exe
+ 2008-04-14 05:53 . 2010-08-17 13:17        58880              c:\windows\system32\spoolsv.exe
+ 2011-03-28 17:35 . 2006-10-26 17:56        33104              c:\windows\system32\spool\prtprocs\w32x86\msonpppr.dll
+ 2011-03-28 17:35 . 2009-02-27 02:42        66440              c:\windows\system32\spool\drivers\w32x86\msonpui.dll
+ 2011-03-28 17:35 . 2009-02-27 02:42        66440              c:\windows\system32\spool\drivers\w32x86\3\msonpui.dll
+ 2010-01-17 13:44 . 2009-01-07 17:20        18464              c:\windows\system32\spmsg.dll
+ 2006-07-24 08:50 . 2006-07-24 08:50        39728              c:\windows\system32\SCP32.DLL
+ 2010-03-09 17:05 . 2010-07-12 18:36        68592              c:\windows\system32\pxinsa64.exe
+ 2010-03-09 17:05 . 2010-07-12 18:36        72176              c:\windows\system32\pxhpinst.exe
+ 2010-03-09 17:05 . 2010-07-12 18:36        68080              c:\windows\system32\pxcpya64.exe
+ 2008-08-01 20:23 . 2009-03-08 03:31        46592              c:\windows\system32\pngfilt.dll
+ 2004-08-04 12:00 . 2012-03-21 22:57        70514              c:\windows\system32\perfc009.dat
+ 2004-08-04 12:00 . 2012-03-21 22:57        83776              c:\windows\system32\perfc007.dat
+ 2008-04-14 05:52 . 2011-11-20 06:12        61952              c:\windows\system32\packager.exe
+ 2004-08-04 12:00 . 2011-09-26 09:41        23040              c:\windows\system32\oleaccrc.dll
- 2010-01-17 17:17 . 2010-06-21 08:19        34705              c:\windows\system32\nvModes.dat
+ 2010-01-17 17:17 . 2012-02-05 17:26        34705              c:\windows\system32\nvModes.dat
- 2008-08-01 20:23 . 2008-08-01 20:23        23552              c:\windows\system32\normaliz.dll
+ 2008-08-01 20:23 . 2009-01-07 17:20        23552              c:\windows\system32\normaliz.dll
- 2008-08-01 20:23 . 2008-08-01 20:23        24576              c:\windows\system32\nlsdl.dll
+ 2008-08-01 20:23 . 2009-01-07 17:20        24576              c:\windows\system32\nlsdl.dll
+ 2011-03-28 17:35 . 2009-02-27 02:42        31640              c:\windows\system32\msonpmon.dll
- 2008-08-01 20:23 . 2008-08-01 20:23        48128              c:\windows\system32\mshtmler.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        48128              c:\windows\system32\mshtmler.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        66560              c:\windows\system32\mshtmled.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        45568              c:\windows\system32\mshta.exe
- 2008-08-01 20:23 . 2008-08-01 20:23        45568              c:\windows\system32\mshta.exe
+ 2010-01-17 13:37 . 2009-03-08 03:31        13312              c:\windows\system32\msfeedssync.exe
+ 2010-01-17 13:37 . 2009-03-08 03:31        55296              c:\windows\system32\msfeedsbs.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        81744              c:\windows\system32\mfcm100u.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        81744              c:\windows\system32\mfcm100.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        60752              c:\windows\system32\mfc100rus.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        43344              c:\windows\system32\mfc100kor.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        43856              c:\windows\system32\mfc100jpn.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        62288              c:\windows\system32\mfc100ita.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        64336              c:\windows\system32\mfc100fra.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        63824              c:\windows\system32\mfc100esn.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        55120              c:\windows\system32\mfc100enu.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        64336              c:\windows\system32\mfc100deu.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        36176              c:\windows\system32\mfc100cht.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        36176              c:\windows\system32\mfc100chs.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        23040              c:\windows\system32\mciseq.dll
+ 2008-04-14 05:52 . 2011-10-14 14:47        23040              c:\windows\system32\mciseq.dll
+ 2008-08-01 20:23 . 2009-03-08 03:34        43008              c:\windows\system32\licmgr10.dll
+ 2008-08-01 20:23 . 2009-03-08 03:33        25600              c:\windows\system32\jsproxy.dll
+ 2010-01-17 13:38 . 2010-11-18 18:12        86016              c:\windows\system32\isign32.dll
- 2010-01-17 13:38 . 2008-04-14 05:52        86016              c:\windows\system32\isign32.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        94720              c:\windows\system32\inseng.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        34816              c:\windows\system32\imgutil.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        36864              c:\windows\system32\ieudinit.exe
+ 2008-08-01 20:23 . 2009-03-08 03:32        71680              c:\windows\system32\iesetup.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        55808              c:\windows\system32\iernonce.dll
+ 2008-08-01 20:23 . 2009-01-07 17:20        26112              c:\windows\system32\idndl.dll
- 2008-08-01 20:23 . 2008-08-01 20:23        26112              c:\windows\system32\idndl.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        59904              c:\windows\system32\icardie.dll
+ 2006-10-26 12:10 . 2006-10-26 12:10        33088              c:\windows\system32\FM20ENU.DLL
+ 2006-10-26 12:40 . 2006-10-26 12:40        36672              c:\windows\system32\FM20DEU.DLL
+ 2011-07-31 19:58 . 2008-04-13 20:15        15104              c:\windows\system32\drivers\usbscan.sys
- 2010-01-17 14:27 . 2009-05-11 09:12        28520              c:\windows\system32\drivers\ssmdrv.sys
+ 2012-03-11 10:23 . 2009-10-08 15:55        28520              c:\windows\system32\drivers\ssmdrv.sys
+ 2010-03-09 17:05 . 2010-07-12 18:36        45648              c:\windows\system32\drivers\PxHelp20.sys
+ 2008-04-13 22:27 . 2010-11-02 15:17        40960              c:\windows\system32\drivers\ndproxy.sys
+ 2008-04-13 22:27 . 2011-07-08 14:02        10496              c:\windows\system32\drivers\ndistapi.sys
+ 2010-08-16 07:46 . 2011-12-10 14:24        20464              c:\windows\system32\drivers\mbam.sys
+ 2010-03-10 19:29 . 2010-03-10 19:29        94208              c:\windows\system32\dpl100.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        45568              c:\windows\system32\dnsrslvr.dll
+ 2008-04-14 05:52 . 2009-04-20 17:07        45568              c:\windows\system32\dnsrslvr.dll
+ 2010-12-15 20:40 . 2010-10-11 14:59        45568              c:\windows\system32\dllcache\wab.exe
+ 2011-07-31 19:58 . 2008-04-13 20:15        15104              c:\windows\system32\dllcache\usbscan.sys
+ 2010-10-20 12:42 . 2010-08-27 05:57        99840              c:\windows\system32\dllcache\srvsvc.dll
+ 2010-09-14 19:44 . 2010-08-17 13:17        58880              c:\windows\system32\dllcache\spoolsv.exe
+ 2010-01-17 16:58 . 2009-03-08 03:31        46592              c:\windows\system32\dllcache\pngfilt.dll
+ 2012-01-10 18:35 . 2011-11-20 06:12        61952              c:\windows\system32\dllcache\packager.exe
+ 2011-09-26 09:41 . 2011-09-26 09:41        23040              c:\windows\system32\dllcache\oleaccrc.dll
+ 2010-12-15 20:40 . 2010-11-02 15:17        40960              c:\windows\system32\dllcache\ndproxy.sys
+ 2011-08-10 13:23 . 2011-07-08 14:02        10496              c:\windows\system32\dllcache\ndistapi.sys
+ 2009-03-08 03:31 . 2009-03-08 03:31        48128              c:\windows\system32\dllcache\mshtmler.dll
+ 2010-01-17 16:58 . 2009-03-08 03:31        66560              c:\windows\system32\dllcache\mshtmled.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31        45568              c:\windows\system32\dllcache\mshta.exe
+ 2010-01-17 16:58 . 2009-03-08 03:31        55296              c:\windows\system32\dllcache\msfeedsbs.dll
+ 2012-01-10 18:35 . 2011-10-14 14:47        23040              c:\windows\system32\dllcache\mciseq.dll
+ 2009-03-08 03:34 . 2009-03-08 03:34        43008              c:\windows\system32\dllcache\licmgr10.dll
+ 2010-01-17 16:58 . 2009-03-08 03:33        25600              c:\windows\system32\dllcache\jsproxy.dll
+ 2010-12-15 20:41 . 2010-11-18 18:12        86016              c:\windows\system32\dllcache\isign32.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32        94720              c:\windows\system32\dllcache\inseng.dll
+ 2009-03-08 03:31 . 2009-03-08 03:31        34816              c:\windows\system32\dllcache\imgutil.dll
+ 2010-01-17 16:58 . 2011-12-16 12:32        13824              c:\windows\system32\dllcache\ieudinit.exe
- 2010-01-17 16:58 . 2010-06-23 11:28        13824              c:\windows\system32\dllcache\ieudinit.exe
+ 2009-03-08 03:32 . 2009-03-08 03:32        71680              c:\windows\system32\dllcache\iesetup.dll
+ 2010-01-17 16:58 . 2009-03-08 03:32        55808              c:\windows\system32\dllcache\iernonce.dll
+ 2010-01-17 16:58 . 2009-03-08 03:31        59904              c:\windows\system32\dllcache\icardie.dll
+ 2009-03-08 03:24 . 2009-03-08 03:24        68608              c:\windows\system32\dllcache\hmmapi.dll
+ 2011-04-15 07:07 . 2009-04-20 17:07        45568              c:\windows\system32\dllcache\dnsrslvr.dll
- 2010-02-10 13:58 . 2009-12-14 07:08        33280              c:\windows\system32\dllcache\csrsrv.dll
+ 2010-02-10 13:58 . 2011-10-28 05:30        33280              c:\windows\system32\dllcache\csrsrv.dll
+ 2010-01-17 16:58 . 2009-03-08 03:33        18944              c:\windows\system32\dllcache\corpol.dll
+ 2009-03-08 03:32 . 2009-03-08 03:32        72704              c:\windows\system32\dllcache\admparse.dll
+ 2008-04-14 05:52 . 2011-10-28 05:30        33280              c:\windows\system32\csrsrv.dll
- 2008-04-14 05:52 . 2009-12-14 07:08        33280              c:\windows\system32\csrsrv.dll
+ 2008-08-01 20:23 . 2009-03-08 03:33        18944              c:\windows\system32\corpol.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        72704              c:\windows\system32\admparse.dll
+ 2011-12-25 02:49 . 2011-12-25 02:49        31504              c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
- 2010-04-01 09:42 . 2010-04-01 09:42        81920              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2011-12-25 10:07 . 2011-12-25 10:07        81920              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2011-12-24 21:55 . 2011-12-24 21:55        77824              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2010-03-31 12:51 . 2010-03-31 12:51        77824              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
- 2010-03-31 12:51 . 2010-03-31 12:51        86016              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2011-12-24 21:55 . 2011-12-24 21:55        86016              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
- 2010-03-31 12:51 . 2010-03-31 12:51        81920              c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2011-12-24 21:55 . 2011-12-24 21:55        81920              c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2011-12-24 22:49 . 2011-12-24 22:49        32768              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2010-03-31 13:32 . 2010-03-31 13:32        32768              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2010-03-31 13:32 . 2010-03-31 13:32        24576              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2011-12-24 22:49 . 2011-12-24 22:49        24576              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2011-03-28 17:31 . 2011-03-28 17:31        48128              c:\windows\Installer\3cbc7.msi
+ 2010-12-06 12:49 . 2010-12-06 12:49        38400              c:\windows\Installer\107caa.msi
+ 2011-04-28 21:46 . 2012-03-20 18:15        35088              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        18704              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        20240              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-12-06 12:49 . 2012-03-06 21:00        49152              c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2006-07-24 08:50 . 2006-07-24 08:50        47920              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\VBAME.DLL
+ 2009-02-26 13:24 . 2009-02-26 13:24        71536              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\ONFILTER.DLL
+ 2009-02-26 13:24 . 2009-02-26 13:24        97680              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\ONENOTEM.EXE
+ 2006-07-24 08:50 . 2006-07-24 08:50        92976              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\MSADDNDR.DLL
+ 2006-10-26 19:17 . 2006-10-26 19:17        11072              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\XLCALL32.DLL
+ 2006-10-26 19:13 . 2006-10-26 19:13        72472              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\XL12CNVP.DLL
+ 2006-10-27 13:11 . 2006-10-27 13:11        21264              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\WRD12EXE.EXE
+ 2011-03-28 17:34 . 2011-03-28 17:34        12096              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\WORDPOL.DLL
+ 2006-10-26 20:58 . 2006-10-26 20:58        33080              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\VPREVIEW.EXE
+ 2011-03-28 17:33 . 2011-03-28 17:33        12080              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\VBIDEPOL.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        64288              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\VBIDEPIA.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        76624              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\TWSTRUCT.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        19784              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\TWRECS.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        51008              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\TWRECE.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        27456              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\TWORIENT.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        58168              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\TWLAY32.DLL
+ 2006-10-26 12:05 . 2006-10-26 12:05        86840              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\TWCUTLIN.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        29976              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\THOCRAPI.DLL
+ 2006-10-26 17:59 . 2006-10-26 17:59        15672              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SMARTTAGINSTALL.EXE
+ 2006-10-26 17:49 . 2006-10-26 17:49        34104              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SETLANG.EXE
+ 2006-10-26 18:55 . 2006-10-26 18:55        55056              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SCANOST.EXE
+ 2006-10-26 18:55 . 2006-10-26 18:55        76576              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\RM.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        19784              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\REVERSE.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        40424              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\REFIEBAR.DLL
+ 2006-10-26 19:13 . 2006-10-26 19:13        38168              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\REFEDIT.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        39208              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\RECALL.DLL
+ 2006-10-26 18:09 . 2006-10-26 18:09        48448              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PUBTRAP.DLL
+ 2006-10-26 12:05 . 2006-10-26 12:05        77144              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PSOM.DLL
+ 2011-03-28 17:34 . 2011-03-28 17:34        12112              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PPTPOL.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        53048              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLVBA.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        46864              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLRPC.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        31000              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLACCT.DLL
+ 2006-10-26 17:59 . 2006-10-26 17:59        46936              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OSETUPPS.DLL
+ 2006-10-26 17:59 . 2006-10-26 17:59        18760              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OPHPROXY.DLL
+ 2006-10-26 18:24 . 2006-10-26 18:24        72504              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONFILTER.DLL
+ 2006-10-26 18:24 . 2006-10-26 18:24        98632              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONENOTEM.EXE
+ 2006-10-26 17:59 . 2006-10-26 17:59        16728              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OMUOPTINPS.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        35648              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OLCTLPIA.DLL
+ 2006-10-26 18:00 . 2006-10-26 18:00        23392              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OISCTRL.DLL
+ 2006-10-27 13:11 . 2006-10-27 13:11        54680              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OFFRHD.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        11544              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OFFICEPL.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        16192              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\NPOFF12.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        65824              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\NAME.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        12104              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSTAGPOL.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        20280              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSTAGPIA.DLL
+ 2006-10-26 17:59 . 2006-10-26 17:59        43832              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSSH.DLL
+ 2006-10-27 13:26 . 2006-10-27 13:26        35152              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSOSTYLE.DLL
+ 2006-10-26 17:56 . 2006-10-26 17:56        67408              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSONPUI.DLL
+ 2006-10-26 17:56 . 2006-10-26 17:56        33104              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSONPPPR.DLL
+ 2006-10-26 17:56 . 2006-10-26 17:56        32592              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSONPMON.DLL
+ 2006-10-26 17:52 . 2006-10-26 17:52        66368              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSOMSE.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        67896              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSOHTMED.EXE
+ 2006-10-27 13:01 . 2006-10-27 13:01        76088              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSOHEV.DLL
+ 2006-10-26 19:13 . 2006-10-26 19:13        26936              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSOEURO.DLL
+ 2006-10-26 17:48 . 2006-10-26 17:48        14664              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSOCFU.DLL
+ 2006-10-26 17:59 . 2006-10-26 17:59        19768              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSMH.DLL
+ 2006-10-26 17:52 . 2006-10-26 17:52        48424              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSE7.EXE
+ 2006-10-26 19:18 . 2006-10-26 19:18        66880              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSAEXP30.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        21312              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MLSHEXT.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        89400              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\METCONV.DLL
+ 2006-10-26 19:41 . 2006-10-26 19:41        66368              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\INLAUNCH.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        35112              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVESYSTEMMODE.DLL
+ 2006-10-26 22:47 . 2006-10-26 22:47        16688              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVESTDURLLAUNCHER.EXE
+ 2006-10-26 22:47 . 2006-10-26 22:47        22808              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVENEW.DLL
+ 2006-10-26 22:47 . 2006-10-26 22:47        31016              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEMONITOR.EXE
+ 2006-10-26 22:47 . 2006-10-26 22:47        33568              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVECLEAN.EXE
+ 2006-10-27 13:37 . 2006-10-27 13:37        34088              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEAUTOPROXY.DLL
+ 2006-10-26 22:47 . 2006-10-26 22:47        65824              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEAUDITSERVICE.EXE
+ 2011-03-28 17:33 . 2011-03-28 17:33        12096              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GRAPHPOL.DLL
+ 2006-10-26 12:04 . 2006-10-26 12:04        75576              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\FORM.DLL
+ 2009-04-02 10:01 . 2009-04-02 10:01        56680              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\EXP_XPS.DLL
+ 2009-04-03 16:46 . 2009-04-03 16:46        97640              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\EXP_PDF.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        12096              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\EXCELPOL.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        35160              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\DUMPSTER.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        87344              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\DLGSETP.DLL
+ 2006-10-26 19:30 . 2006-10-26 19:30        65312              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\COLLIMP.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        53576              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\AUTHZAX.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        56120              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACERCLR.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        15160              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEODTXT.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        15160              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEODPDX.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        15160              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEODEXL.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        15160              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEODDBS.DLL
+ 2006-10-27 13:00 . 2006-10-27 13:00        47976              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEERR.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        56192              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACECNFLT.EXE
+ 2006-10-26 19:18 . 2006-10-26 19:18        94016              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACCOLK.DLL
+ 2012-03-06 21:11 . 2009-03-08 03:33        12288              c:\windows\ie8updates\KB982381-IE8\xpshims.dll
+ 2012-03-06 21:11 . 2009-03-08 03:31        55296              c:\windows\ie8updates\KB982381-IE8\msfeedsbs.dll
+ 2012-03-06 21:11 . 2009-03-08 03:33        25600              c:\windows\ie8updates\KB982381-IE8\jsproxy.dll
+ 2012-03-06 21:11 . 2009-03-08 18:18        58464              c:\windows\ie8\spuninst\iecustom.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        44544              c:\windows\ie8\pngfilt.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        48128              c:\windows\ie8\mshtmler.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        45568              c:\windows\ie8\mshta.exe
+ 2012-03-06 21:10 . 2007-08-13 17:36        12288              c:\windows\ie8\msfeedssync.exe
+ 2012-03-06 21:10 . 2011-12-19 08:06        52224              c:\windows\ie8\msfeedsbs.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        40960              c:\windows\ie8\licmgr10.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        27648              c:\windows\ie8\jsproxy.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        92672              c:\windows\ie8\inseng.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        36352              c:\windows\ie8\imgutil.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        55296              c:\windows\ie8\iesetup.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        44544              c:\windows\ie8\iernonce.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        78336              c:\windows\ie8\ieencode.dll
+ 2012-03-06 21:10 . 2011-12-16 12:32        70656              c:\windows\ie8\ie4uinit.exe
+ 2012-03-06 21:10 . 2011-12-19 08:06        63488              c:\windows\ie8\icardie.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        60416              c:\windows\ie8\hmmapi.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        17408              c:\windows\ie8\corpol.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        71680              c:\windows\ie8\admparse.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        44544              c:\windows\ie7updates\KB2647516-IE7\pngfilt.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        52224              c:\windows\ie7updates\KB2647516-IE7\msfeedsbs.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        27648              c:\windows\ie7updates\KB2647516-IE7\jsproxy.dll
+ 2012-03-06 21:00 . 2011-10-27 13:17        13824              c:\windows\ie7updates\KB2647516-IE7\ieudinit.exe
+ 2012-03-06 21:00 . 2011-10-31 23:34        44544              c:\windows\ie7updates\KB2647516-IE7\iernonce.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        78336              c:\windows\ie7updates\KB2647516-IE7\ieencode.dll
+ 2012-03-06 21:00 . 2011-10-31 21:08        70656              c:\windows\ie7updates\KB2647516-IE7\ie4uinit.exe
+ 2012-03-06 21:00 . 2011-10-31 23:34        63488              c:\windows\ie7updates\KB2647516-IE7\icardie.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        17408              c:\windows\ie7updates\KB2647516-IE7\corpol.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        44544              c:\windows\ie7updates\KB2618444-IE7\pngfilt.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        52224              c:\windows\ie7updates\KB2618444-IE7\msfeedsbs.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        27648              c:\windows\ie7updates\KB2618444-IE7\jsproxy.dll
+ 2011-12-16 00:02 . 2011-08-17 12:33        13824              c:\windows\ie7updates\KB2618444-IE7\ieudinit.exe
+ 2011-12-16 00:02 . 2011-08-17 21:22        44544              c:\windows\ie7updates\KB2618444-IE7\iernonce.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        78336              c:\windows\ie7updates\KB2618444-IE7\ieencode.dll
+ 2011-12-16 00:02 . 2011-08-17 12:33        70656              c:\windows\ie7updates\KB2618444-IE7\ie4uinit.exe
+ 2011-12-16 00:02 . 2011-08-17 21:22        63488              c:\windows\ie7updates\KB2618444-IE7\icardie.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        17408              c:\windows\ie7updates\KB2618444-IE7\corpol.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        44544              c:\windows\ie7updates\KB2586448-IE7\pngfilt.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        52224              c:\windows\ie7updates\KB2586448-IE7\msfeedsbs.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        27648              c:\windows\ie7updates\KB2586448-IE7\jsproxy.dll
+ 2011-10-13 11:34 . 2011-06-21 12:08        13824              c:\windows\ie7updates\KB2586448-IE7\ieudinit.exe
+ 2011-10-13 11:34 . 2011-06-21 18:36        44544              c:\windows\ie7updates\KB2586448-IE7\iernonce.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        78336              c:\windows\ie7updates\KB2586448-IE7\ieencode.dll
+ 2011-10-13 11:34 . 2011-06-21 12:08        70656              c:\windows\ie7updates\KB2586448-IE7\ie4uinit.exe
+ 2011-10-13 11:34 . 2011-06-21 18:36        63488              c:\windows\ie7updates\KB2586448-IE7\icardie.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        17408              c:\windows\ie7updates\KB2586448-IE7\corpol.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        44544              c:\windows\ie7updates\KB2559049-IE7\pngfilt.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        52224              c:\windows\ie7updates\KB2559049-IE7\msfeedsbs.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        27648              c:\windows\ie7updates\KB2559049-IE7\jsproxy.dll
+ 2011-08-10 21:22 . 2011-04-25 11:35        13824              c:\windows\ie7updates\KB2559049-IE7\ieudinit.exe
+ 2011-08-10 21:22 . 2011-04-25 15:42        44544              c:\windows\ie7updates\KB2559049-IE7\iernonce.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        78336              c:\windows\ie7updates\KB2559049-IE7\ieencode.dll
+ 2011-08-10 21:22 . 2011-04-25 11:35        70656              c:\windows\ie7updates\KB2559049-IE7\ie4uinit.exe
+ 2011-08-10 21:22 . 2011-04-25 15:42        63488              c:\windows\ie7updates\KB2559049-IE7\icardie.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        17408              c:\windows\ie7updates\KB2559049-IE7\corpol.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        44544              c:\windows\ie7updates\KB2530548-IE7\pngfilt.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        52224              c:\windows\ie7updates\KB2530548-IE7\msfeedsbs.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        27648              c:\windows\ie7updates\KB2530548-IE7\jsproxy.dll
+ 2011-06-19 01:05 . 2011-02-17 11:43        13824              c:\windows\ie7updates\KB2530548-IE7\ieudinit.exe
+ 2011-06-19 01:05 . 2011-02-17 18:56        44544              c:\windows\ie7updates\KB2530548-IE7\iernonce.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        78336              c:\windows\ie7updates\KB2530548-IE7\ieencode.dll
+ 2011-06-19 01:05 . 2011-02-17 11:43        70656              c:\windows\ie7updates\KB2530548-IE7\ie4uinit.exe
+ 2011-06-19 01:05 . 2011-02-17 18:56        63488              c:\windows\ie7updates\KB2530548-IE7\icardie.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        17408              c:\windows\ie7updates\KB2530548-IE7\corpol.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        44544              c:\windows\ie7updates\KB2497640-IE7\pngfilt.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        52224              c:\windows\ie7updates\KB2497640-IE7\msfeedsbs.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        27648              c:\windows\ie7updates\KB2497640-IE7\jsproxy.dll
+ 2011-05-21 09:31 . 2010-12-20 12:47        13824              c:\windows\ie7updates\KB2497640-IE7\ieudinit.exe
+ 2011-05-21 09:31 . 2010-12-20 23:15        44544              c:\windows\ie7updates\KB2497640-IE7\iernonce.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        78336              c:\windows\ie7updates\KB2497640-IE7\ieencode.dll
+ 2011-05-21 09:31 . 2010-12-20 12:47        70656              c:\windows\ie7updates\KB2497640-IE7\ie4uinit.exe
+ 2011-05-21 09:31 . 2010-12-20 23:15        63488              c:\windows\ie7updates\KB2497640-IE7\icardie.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        17408              c:\windows\ie7updates\KB2497640-IE7\corpol.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        44544              c:\windows\ie7updates\KB2482017-IE7\pngfilt.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        52224              c:\windows\ie7updates\KB2482017-IE7\msfeedsbs.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        27648              c:\windows\ie7updates\KB2482017-IE7\jsproxy.dll
+ 2011-02-10 11:35 . 2010-10-21 11:58        13824              c:\windows\ie7updates\KB2482017-IE7\ieudinit.exe
+ 2011-02-10 11:35 . 2010-11-06 00:27        44544              c:\windows\ie7updates\KB2482017-IE7\iernonce.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        78336              c:\windows\ie7updates\KB2482017-IE7\ieencode.dll
+ 2011-02-10 11:35 . 2010-10-21 11:58        70656              c:\windows\ie7updates\KB2482017-IE7\ie4uinit.exe
+ 2011-02-10 11:35 . 2010-11-06 00:27        63488              c:\windows\ie7updates\KB2482017-IE7\icardie.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        17408              c:\windows\ie7updates\KB2482017-IE7\corpol.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        44544              c:\windows\ie7updates\KB2416400-IE7\pngfilt.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        52224              c:\windows\ie7updates\KB2416400-IE7\msfeedsbs.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        27648              c:\windows\ie7updates\KB2416400-IE7\jsproxy.dll
+ 2010-12-17 02:00 . 2010-08-31 12:02        13824              c:\windows\ie7updates\KB2416400-IE7\ieudinit.exe
+ 2010-12-17 02:00 . 2010-09-09 13:31        44544              c:\windows\ie7updates\KB2416400-IE7\iernonce.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        78336              c:\windows\ie7updates\KB2416400-IE7\ieencode.dll
+ 2010-12-17 02:00 . 2010-08-31 12:02        70656              c:\windows\ie7updates\KB2416400-IE7\ie4uinit.exe
+ 2010-12-17 02:00 . 2010-09-09 13:31        63488              c:\windows\ie7updates\KB2416400-IE7\icardie.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        17408              c:\windows\ie7updates\KB2416400-IE7\corpol.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        44544              c:\windows\ie7updates\KB2360131-IE7\pngfilt.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        52224              c:\windows\ie7updates\KB2360131-IE7\msfeedsbs.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        27648              c:\windows\ie7updates\KB2360131-IE7\jsproxy.dll
+ 2010-10-20 13:49 . 2010-06-23 11:28        13824              c:\windows\ie7updates\KB2360131-IE7\ieudinit.exe
+ 2010-10-20 13:49 . 2010-06-24 12:17        44544              c:\windows\ie7updates\KB2360131-IE7\iernonce.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        78336              c:\windows\ie7updates\KB2360131-IE7\ieencode.dll
+ 2010-10-20 13:49 . 2010-06-23 11:28        70656              c:\windows\ie7updates\KB2360131-IE7\ie4uinit.exe
+ 2010-10-20 13:49 . 2010-06-24 12:17        63488              c:\windows\ie7updates\KB2360131-IE7\icardie.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        17408              c:\windows\ie7updates\KB2360131-IE7\corpol.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        10576              c:\windows\assembly\tmp\YAMZ7FNV\Policy.11.0.Office.dll
+ 2011-05-14 13:01 . 2011-05-14 13:01        11152              c:\windows\assembly\tmp\W5DLT1EQ\Policy.11.0.Microsoft.Office.Interop.PowerPoint.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        19320              c:\windows\assembly\tmp\Q08FNV3G\Microsoft.Office.Interop.SmartTag.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        11112              c:\windows\assembly\tmp\HS29IS0E\Policy.11.0.Microsoft.Vbe.Interop.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        11128              c:\windows\assembly\tmp\EMV3BHP2\Policy.11.0.Microsoft.Office.Interop.Word.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        63336              c:\windows\assembly\tmp\AR09IR09\Microsoft.Vbe.Interop.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        11144              c:\windows\assembly\tmp\9LW7IT4F\Policy.11.0.Microsoft.Office.Interop.Excel.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        11128              c:\windows\assembly\tmp\7IR0AJS5\Policy.11.0.Microsoft.Office.Interop.Graph.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        11136              c:\windows\assembly\tmp\1BIQZ7FO\Policy.11.0.Microsoft.Office.Interop.SmartTag.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        90112              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_27d18f72\System.Drawing.Design.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        61440              c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_e2393a59\CustomMarshalers.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        24064              c:\windows\assembly\NativeImages_v2.0.50727_32\WiaProxy32\36be7d23c82aeac8213951d580768700\WiaProxy32.ni.exe
+ 2011-10-13 16:34 . 2011-10-13 16:34        60928              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\888b745ca99d39692c2e9af222e5eae8\UIAutomationProvider.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        37888              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\dab766b18e6fe0a8f53a93c56be7b40e\System.Windows.Presentation.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        36864              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\31b65443e56a470d199f293085576e05\System.Web.DynamicData.Design.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        94208              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\89dfd3999ad1d72c59243d7b4bf40d5a\System.ComponentModel.DataAnnotations.ni.dll
+ 2011-10-13 16:50 . 2011-10-13 16:50        82944              c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\e6a9cd66d11a21776dbf425e8e28099c\System.AddIn.Contract.ni.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        47104              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\3aa4296d4aa01fe0533de2c15f818d5f\PresentationFontCache.ni.exe
+ 2012-03-06 21:03 . 2012-03-06 21:03        39424              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\820acb71782d9cd006800b3ac7e1ca53\PresentationCFFRasterizer.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        20992              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.StylusR#\0c92afaeb0853d70e01ddcb0d1f5cdfd\PaintDotNet.StylusReader.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        55296              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\d07f0222f62dbed7898a6e2e909d407a\Microsoft.Vsa.ni.dll
+ 2011-10-13 16:49 . 2011-10-13 16:49        74752              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\aefe683674c97a998f4e908c1a7ee7c6\Microsoft.Build.Framework.ni.dll
+ 2011-10-13 16:49 . 2011-10-13 16:49        65024              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\845eef4d09f28da6ee05d99f93c90f6e\Microsoft.Build.Framework.ni.dll
+ 2011-10-13 16:47 . 2011-10-13 16:47        94208              c:\windows\assembly\NativeImages_v2.0.50727_32\Interop.WIA\b4f63a52bdf34cffb08838afd3b153ba\Interop.WIA.ni.dll
+ 2011-10-13 16:49 . 2011-10-13 16:49        14336              c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\ab7ce2d94ca725c3889a4e3c1ee88ece\dfsvc.ni.exe
+ 2012-03-06 21:06 . 2012-03-06 21:06        81408              c:\windows\assembly\NativeImages_v2.0.50727_32\DdsFileType\87e6ea5ea7928bb0c9735d3842675565\DdsFileType.ni.dll
+ 2011-10-13 16:46 . 2011-10-13 16:46        25600              c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\d86a3346c3d90ff12d0df9d7726f3ece\Accessibility.ni.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        77824              c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        77824              c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        81920              c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        81920              c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        81920              c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        81920              c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        39624              c:\windows\assembly\GAC_MSIL\System.AddIn\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        32768              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        32768              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        12800              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        12800              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        72472              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.DesignTime\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.DesignTime.dll
+ 2011-03-28 17:31 . 2011-03-28 17:31        13104              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.DesignTime.resources\8.0.0.0_de_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.DesignTime.resources.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        39704              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        39712              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.dll
+ 2011-03-28 17:31 . 2011-03-28 17:31        11064              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.resources\8.0.0.0_de_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.resources.dll
+ 2011-03-28 17:31 . 2011-03-28 17:31        73728              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Blueprints.resources\8.0.0.0_de_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Blueprints.resources.dll
+ 2011-03-28 17:31 . 2011-03-28 17:31        12600              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInManager.resources\8.0.0.0_de_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInManager.resources.dll
+ 2011-03-28 17:31 . 2011-03-28 17:31        11560              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter.resources\8.0.0.0_de_b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.resources.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        28672              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        28672              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        60200              c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        39728              c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Vsta\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Vsta.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        43840              c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.FormControl\12.0.0.0__71e9bce111e9429c\microsoft.office.infopath.formcontrol.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        77824              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        77824              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        36864              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        36864              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        77824              c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        77824              c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        13312              c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        13312              c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        10752              c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        10752              c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        72192              c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        72192              c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        69120              c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        69120              c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        81920              c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
- 2010-06-12 06:14 . 2010-06-12 06:14        81920              c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        16384              c:\windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll
+ 2011-05-21 09:29 . 2011-05-21 09:29        10576              c:\windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\Policy.11.0.Office.dll
+ 2011-05-21 09:29 . 2011-05-21 09:29        11112              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Vbe.Interop.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        11144              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Word.dll
+ 2011-05-21 09:29 . 2011-05-21 09:29        11136              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.SmartTag.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        12104              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Publisher.dll
+ 2011-05-21 09:30 . 2011-05-21 09:30        11152              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.PowerPoint.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        12632              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        12104              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Outlook.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        12616              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        12616              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml.dll
+ 2011-05-21 09:29 . 2011-05-21 09:29        11128              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Graph.dll
+ 2011-05-21 09:30 . 2011-05-21 09:30        11144              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Excel.dll
+ 2011-03-28 17:33 . 2011-03-28 17:33        12104              c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Access.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        63336              c:\windows\assembly\GAC\Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        13312              c:\windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll
+ 2011-05-21 09:29 . 2011-05-21 09:29        19320              c:\windows\assembly\GAC\Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.SmartTag.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        34696              c:\windows\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OutlookViewCtl.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        17208              c:\windows\assembly\GAC\Microsoft.Office.Interop.OneNote\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OneNote.dll
+ 2011-03-28 17:33 . 2011-03-28 17:33        88896              c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.Xml.dll
+ 2011-03-28 17:33 . 2011-03-28 17:33        80696              c:\windows\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\Microsoft.Office.interop.access.dao.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        16712              c:\windows\assembly\GAC\Microsoft.Office.InfoPath.Permission\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Permission.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        31560              c:\windows\assembly\GAC\ipdmctrl\11.0.0.0__71e9bce111e9429c\IPDMCTRL.DLL
+ 2011-03-28 17:34 . 2011-03-28 17:34        82784              c:\windows\assembly\GAC\IALoader\1.7.6223.0__31bf3856ad364e35\IALoader.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        65536              c:\windows\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\DAO.DLL
+ 2011-12-15 23:59 . 2011-07-08 13:49        46080              c:\windows\$NtUninstallKB2633952$\tzchange.exe


playmo 28.03.2012 23:28

Code:

+ 2011-12-15 23:59 . 2011-11-08 14:58        16896              c:\windows\$NtUninstallKB2633952$\spuninst\tzchange.dll
+ 2011-12-15 23:58 . 2011-04-26 11:02        33280              c:\windows\$NtUninstallKB2620712$\csrsrv.dll
+ 2012-01-11 00:15 . 2008-04-14 05:52        23040              c:\windows\$NtUninstallKB2598479$\mciseq.dll
+ 2012-01-11 00:14 . 2008-04-14 05:52        59904              c:\windows\$NtUninstallKB2584146$\packager.exe
+ 2011-08-28 17:25 . 2010-11-03 13:12        46080              c:\windows\$NtUninstallKB2570791$\tzchange.exe
+ 2011-08-28 17:25 . 2011-07-09 00:31        16896              c:\windows\$NtUninstallKB2570791$\spuninst\tzchange.dll
+ 2011-08-10 21:21 . 2008-04-13 22:27        10112              c:\windows\$NtUninstallKB2566454$\ndistapi.sys
+ 2011-10-13 11:37 . 2004-08-04 12:00        19456              c:\windows\$NtUninstallKB2564958$\oleaccrc.dll
+ 2011-04-15 22:38 . 2008-04-14 05:52        45568              c:\windows\$NtUninstallKB2509553$\dnsrslvr.dll
+ 2011-07-12 18:59 . 2010-12-09 14:29        33280              c:\windows\$NtUninstallKB2507938$\csrsrv.dll
+ 2011-02-10 11:35 . 2009-12-14 07:08        33280              c:\windows\$NtUninstallKB2476687$\csrsrv.dll
+ 2010-12-17 02:01 . 2010-06-21 14:46        46080              c:\windows\$NtUninstallKB2443685$\tzchange.exe
+ 2010-12-17 02:01 . 2010-11-05 05:55        16896              c:\windows\$NtUninstallKB2443685$\spuninst\tzchange.dll
+ 2010-12-17 02:01 . 2008-04-14 05:52        86016              c:\windows\$NtUninstallKB2443105$\isign32.dll
+ 2010-12-17 02:01 . 2008-04-13 22:27        40576              c:\windows\$NtUninstallKB2440591$\ndproxy.sys
+ 2010-12-17 02:00 . 2008-04-14 05:53        46080              c:\windows\$NtUninstallKB2423089$\wab.exe
+ 2010-09-15 22:19 . 2008-04-14 05:53        57856              c:\windows\$NtUninstallKB2347290$\spoolsv.exe
+ 2010-10-20 13:50 . 2008-04-14 05:52        96768              c:\windows\$NtUninstallKB2345886$\srvsvc.dll
+ 2010-10-01 22:30 . 2010-04-21 13:28        46080              c:\windows\$NtUninstallKB2158563$\tzchange.exe
+ 2010-10-01 22:30 . 2010-06-23 00:54        16896              c:\windows\$NtUninstallKB2158563$\spuninst\tzchange.dll
+ 2010-09-14 21:33 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB982802\update\spcustom.dll
+ 2010-09-14 21:33 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB982802\spmsg.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        26488              c:\windows\$hf_mig$\KB982132\update\spcustom.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        18808              c:\windows\$hf_mig$\KB982132\spmsg.dll
+ 2010-09-14 21:33 . 2009-05-26 11:40        26488              c:\windows\$hf_mig$\KB981322\update\spcustom.dll
+ 2010-09-14 21:33 . 2009-05-26 11:40        18808              c:\windows\$hf_mig$\KB981322\spmsg.dll
+ 2010-10-20 13:49 . 2009-05-26 09:01        26488              c:\windows\$hf_mig$\KB979687\update\spcustom.dll
+ 2010-10-20 13:49 . 2009-05-26 09:01        18808              c:\windows\$hf_mig$\KB979687\spmsg.dll
+ 2011-03-16 11:58 . 2008-07-08 13:00        26488              c:\windows\$hf_mig$\KB971029\update\spcustom.dll
+ 2011-03-16 11:58 . 2008-07-08 13:00        18808              c:\windows\$hf_mig$\KB971029\spmsg.dll
+ 2011-11-12 12:49 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2641690\update\spcustom.dll
+ 2011-11-12 12:49 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2641690\spmsg.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2624667\update\spcustom.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2624667\spmsg.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2619339\update\spcustom.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2619339\spmsg.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2618451\update\spcustom.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2618451\spmsg.dll
+ 2011-09-24 08:34 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2616676-v2\update\spcustom.dll
+ 2011-09-24 08:34 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2616676-v2\spmsg.dll
+ 2011-09-07 12:10 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2607712\update\spcustom.dll
+ 2011-09-07 12:10 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2607712\spmsg.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2603381\update\spcustom.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2603381\spmsg.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2598479\update\spcustom.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2598479\spmsg.dll
+ 2012-01-10 18:35 . 2011-10-14 14:45        23040              c:\windows\$hf_mig$\KB2598479\SP3QFE\mciseq.dll
+ 2012-01-11 00:14 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2584146\update\spcustom.dll
+ 2012-01-11 00:14 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2584146\spmsg.dll
+ 2012-01-10 18:35 . 2011-11-20 06:11        61952              c:\windows\$hf_mig$\KB2584146\SP3QFE\packager.exe
+ 2011-09-24 08:34 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2570947\update\spcustom.dll
+ 2011-09-24 08:34 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2570947\spmsg.dll
+ 2011-08-10 21:22 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2570222\update\spcustom.dll
+ 2011-08-10 21:22 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2570222\spmsg.dll
+ 2011-08-10 21:21 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2566454\update\spcustom.dll
+ 2011-08-10 21:21 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2566454\spmsg.dll
+ 2011-08-10 13:23 . 2011-07-08 13:51        10496              c:\windows\$hf_mig$\KB2566454\SP3QFE\ndistapi.sys
+ 2011-08-10 14:03 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2562937\update\spcustom.dll
+ 2011-08-10 14:03 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2562937\spmsg.dll
+ 2011-06-19 01:01 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2544893\update\spcustom.dll
+ 2011-06-19 01:01 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2544893\spmsg.dll
+ 2011-11-09 23:34 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2544893-v2\update\spcustom.dll
+ 2011-11-09 23:34 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2544893-v2\spmsg.dll
+ 2011-06-19 01:04 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2544521-IE7\update\spcustom.dll
+ 2011-06-19 01:04 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2544521-IE7\spmsg.dll
+ 2011-03-27 01:32 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2524375\update\spcustom.dll
+ 2011-03-27 01:32 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2524375\spmsg.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2508429\update\spcustom.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2508429\spmsg.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2508272\update\spcustom.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2508272\spmsg.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2506212\update\spcustom.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2506212\spmsg.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2503658\update\spcustom.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2503658\spmsg.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2485663\update\spcustom.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2485663\spmsg.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2483185\update\spcustom.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2483185\spmsg.dll
+ 2011-03-10 12:57 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2481109\update\spcustom.dll
+ 2011-03-10 12:57 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2481109\spmsg.dll
+ 2011-03-10 00:03 . 2011-02-02 07:57        53248              c:\windows\$hf_mig$\KB2481109\SP3QFE\tsgqec.dll
+ 2011-03-28 14:40 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2479943\update\spcustom.dll
+ 2011-03-28 14:40 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2479943\spmsg.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2476687\update\spcustom.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2476687\spmsg.dll
+ 2011-02-09 22:53 . 2010-12-09 14:28        33280              c:\windows\$hf_mig$\KB2476687\SP3QFE\csrsrv.dll
+ 2011-06-19 01:02 . 2010-07-05 13:14        26488              c:\windows\$hf_mig$\KB2476490\update\spcustom.dll
+ 2011-06-19 01:02 . 2010-07-05 13:14        18808              c:\windows\$hf_mig$\KB2476490\spmsg.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB2467659\update\spcustom.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB2467659\spmsg.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB2443105\update\spcustom.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB2443105\spmsg.dll
+ 2010-12-15 20:41 . 2010-11-18 18:11        86016              c:\windows\$hf_mig$\KB2443105\SP3QFE\isign32.dll
+ 2010-12-17 02:01 . 2009-05-26 11:40        26488              c:\windows\$hf_mig$\KB2440591\update\spcustom.dll
+ 2010-12-17 02:01 . 2009-05-26 11:40        18808              c:\windows\$hf_mig$\KB2440591\spmsg.dll
+ 2010-12-15 20:40 . 2010-11-03 05:55        40960              c:\windows\$hf_mig$\KB2440591\SP3QFE\ndproxy.sys
+ 2010-12-17 02:00 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB2423089\update\spcustom.dll
+ 2010-12-17 02:00 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB2423089\spmsg.dll
+ 2010-12-15 20:40 . 2010-10-11 14:55        45568              c:\windows\$hf_mig$\KB2423089\SP3QFE\wab.exe
+ 2010-10-20 13:50 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB2387149\update\spcustom.dll
+ 2010-10-20 13:50 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB2387149\spmsg.dll
+ 2010-10-20 13:49 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB2360937\update\spcustom.dll
+ 2010-10-20 13:49 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB2360937\spmsg.dll
+ 2010-09-15 22:19 . 2009-05-26 11:40        26488              c:\windows\$hf_mig$\KB2347290\update\spcustom.dll
+ 2010-09-15 22:19 . 2009-05-26 11:40        18808              c:\windows\$hf_mig$\KB2347290\spmsg.dll
+ 2010-09-14 19:44 . 2010-08-17 13:19        58880              c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe
+ 2010-10-20 13:50 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB2345886\update\spcustom.dll
+ 2010-10-20 13:50 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB2345886\spmsg.dll
+ 2010-10-20 12:42 . 2010-08-27 06:04        99840              c:\windows\$hf_mig$\KB2345886\SP3QFE\srvsvc.dll
+ 2010-09-15 22:19 . 2009-05-26 09:01        26488              c:\windows\$hf_mig$\KB2259922\update\spcustom.dll
+ 2010-09-15 22:19 . 2009-05-26 09:01        18808              c:\windows\$hf_mig$\KB2259922\spmsg.dll
+ 2010-09-14 21:33 . 2010-02-22 14:22        26488              c:\windows\$hf_mig$\KB2141007\update\spcustom.dll
+ 2010-09-14 21:33 . 2010-02-22 14:22        18808              c:\windows\$hf_mig$\KB2141007\spmsg.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        8192              c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        8192              c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2008-05-05 06:25 . 2011-02-17 16:24        5632              c:\windows\system32\xpsp4res.dll
+ 2011-07-31 19:58 . 2001-08-18 00:54        5632              c:\windows\system32\ptpusb.dll
+ 2010-01-17 14:15 . 2009-11-12 13:48        7168              c:\windows\system32\drivers\StarOpen.sys
- 2010-01-17 14:15 . 2009-09-28 19:57        7168              c:\windows\system32\drivers\StarOpen.sys
- 2010-08-13 10:08 . 2010-08-13 10:08        7168              c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        7168              c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        5632              c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        5632              c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        6656              c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        6656              c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        8192              c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        8192              c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        4096              c:\windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        4608              c:\windows\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\extensibility.dll
+ 2010-09-14 21:33 . 2008-05-05 06:25        3072              c:\windows\$NtUninstallKB982802$\xpsp4res.dll
+ 2011-04-15 22:38 . 2010-08-27 05:13        5632              c:\windows\$NtUninstallKB2508429$\xpsp4res.dll
+ 2010-10-20 13:49 . 2010-07-22 09:49        5632              c:\windows\$NtUninstallKB2360937$\xpsp4res.dll
+ 2010-10-20 13:50 . 2010-08-13 16:44        5632              c:\windows\$NtUninstallKB2345886$\xpsp4res.dll
+ 2010-09-14 19:44 . 2010-07-22 09:49        5632              c:\windows\$hf_mig$\KB982802\SP3QFE\sprv0407.dll
+ 2010-07-12 13:19 . 2010-07-12 13:19        5632              c:\windows\$hf_mig$\KB979687\SP3QFE\sprv0407.dll
+ 2012-01-10 18:30 . 2011-11-03 18:17        4608              c:\windows\$hf_mig$\KB2603381\update\customaddreg.dll
+ 2011-04-15 07:07 . 2011-02-17 16:24        5632              c:\windows\$hf_mig$\KB2508429\SP3QFE\sprv0407.dll
+ 2010-10-20 12:40 . 2010-08-13 16:44        5632              c:\windows\$hf_mig$\KB2360937\SP3QFE\sprv0407.dll
+ 2010-10-20 12:42 . 2010-08-27 05:13        5632              c:\windows\$hf_mig$\KB2345886\SP3QFE\sprv0407.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        113664              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        113664              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        258048              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        258048              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        653136              c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcr90.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        569680              c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcp90.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        225280              c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_31a54e43\msvcm90.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        653136              c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_0517bbc6\msvcr90.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        569680              c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_0517bbc6\msvcp90.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        225280              c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_0517bbc6\msvcm90.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        159048              c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_92453bb7\atl90.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        159048              c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_65b7a93a\atl90.dll
+ 2011-05-13 23:17 . 2011-05-13 23:17        632656              c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcr80.dll
+ 2011-05-13 23:12 . 2011-05-13 23:12        554832              c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcp80.dll
+ 2011-05-13 23:11 . 2011-05-13 23:11        479232              c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcm80.dll
- 2008-08-01 20:23 . 2008-08-01 20:23        121856              c:\windows\system32\xmllite.dll
+ 2008-08-01 20:23 . 2009-01-07 17:21        121856              c:\windows\system32\xmllite.dll
+ 2006-10-26 11:45 . 2006-10-26 11:45        293376              c:\windows\system32\WISPTIS.EXE
+ 2008-08-01 17:59 . 2011-11-25 21:56        293888              c:\windows\system32\winsrv.dll
- 2008-08-01 17:59 . 2008-08-01 17:59        293888              c:\windows\system32\winsrv.dll
+ 2008-04-14 05:52 . 2011-10-14 14:47        178176              c:\windows\system32\winmm.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        178176              c:\windows\system32\winmm.dll
+ 2008-08-01 20:23 . 2009-03-08 03:34        914944              c:\windows\system32\wininet.dll
- 2008-04-14 05:52 . 2009-08-25 09:17        354816              c:\windows\system32\winhttp.dll
+ 2008-04-14 05:52 . 2011-11-16 14:20        354816              c:\windows\system32\winhttp.dll
+ 2010-01-17 13:37 . 2009-03-08 03:34        208384              c:\windows\system32\WinFXDocObj.exe
+ 2008-08-01 20:23 . 2009-03-08 03:34        236544              c:\windows\system32\webcheck.dll
+ 2010-03-09 17:05 . 2010-07-12 18:36        100848              c:\windows\system32\vxblock.dll
+ 2008-08-01 17:59 . 2010-03-10 06:15        420352              c:\windows\system32\vbscript.dll
+ 2008-04-14 05:52 . 2010-04-16 15:36        406016              c:\windows\system32\usp10.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        406016              c:\windows\system32\usp10.dll
- 2008-08-01 20:23 . 2010-06-24 12:17        105984              c:\windows\system32\url.dll
+ 2008-08-01 20:23 . 2009-03-08 03:34        105984              c:\windows\system32\url.dll
+ 2007-10-09 11:03 . 2011-09-26 09:41        614912              c:\windows\system32\uiautomationcore.dll
+ 2008-04-14 05:52 . 2010-08-27 08:01        119808              c:\windows\system32\t2embed.dll
- 2008-04-14 05:52 . 2009-10-15 16:28        119808              c:\windows\system32\t2embed.dll
+ 2011-03-28 17:35 . 2009-02-27 02:42        863128              c:\windows\system32\spool\drivers\w32x86\msonpdrv.dll
+ 2011-03-28 17:35 . 2009-02-27 02:42        863128              c:\windows\system32\spool\drivers\w32x86\3\msonpdrv.dll
+ 2008-04-14 05:52 . 2009-07-27 23:16        135680              c:\windows\system32\shsvcs.dll
+ 2008-04-14 05:52 . 2011-01-21 14:44        440832              c:\windows\system32\shimgvw.dll
+ 2008-04-14 05:52 . 2011-11-16 14:20        152064              c:\windows\system32\schannel.dll
+ 2008-04-14 05:52 . 2011-02-09 13:53        270848              c:\windows\system32\sbe.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        270848              c:\windows\system32\sbe.dll
+ 2008-04-14 05:52 . 2010-08-16 08:44        590848              c:\windows\system32\rpcrt4.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        387072              c:\windows\system32\qdvd.dll
+ 2008-04-14 05:52 . 2011-11-03 15:27        387072              c:\windows\system32\qdvd.dll
+ 2010-03-09 17:05 . 2010-07-12 18:36        440816              c:\windows\system32\pxwave.dll
+ 2010-03-09 17:05 . 2010-07-12 18:36        219632              c:\windows\system32\pxmas.dll
+ 2010-03-09 17:05 . 2010-07-12 18:36        126448              c:\windows\system32\pxinsi64.exe
+ 2010-03-09 17:05 . 2010-07-12 18:36        567792              c:\windows\system32\pxdrv.dll
+ 2010-03-09 17:05 . 2010-07-12 18:36        123888              c:\windows\system32\pxcpyi64.exe
+ 2010-03-09 17:05 . 2010-07-12 18:36        133616              c:\windows\system32\pxafs.dll
+ 2010-03-09 17:05 . 2010-07-12 18:36        698864              c:\windows\system32\px.dll
+ 2011-07-31 19:58 . 2008-04-14 03:52        159232              c:\windows\system32\ptpusd.dll
+ 2004-08-04 12:00 . 2012-03-21 22:57        438956              c:\windows\system32\perfh009.dat
+ 2004-08-04 12:00 . 2012-03-21 22:57        456570              c:\windows\system32\perfh007.dat
+ 2008-04-14 05:52 . 2010-12-20 17:32        551936              c:\windows\system32\oleaut32.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        551936              c:\windows\system32\oleaut32.dll
+ 2004-08-04 12:00 . 2011-09-26 09:41        220160              c:\windows\system32\oleacc.dll
+ 2008-08-01 17:59 . 2010-11-09 14:50        253952              c:\windows\system32\odbc32.dll
+ 2008-08-01 20:23 . 2009-03-08 03:34        109568              c:\windows\system32\occache.dll
+ 2008-05-05 09:16 . 2010-12-09 15:15        743936              c:\windows\system32\ntdll.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        773968              c:\windows\system32\msvcr100.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        421200              c:\windows\system32\msvcp100.dll
+ 2010-01-17 13:37 . 2011-01-27 11:57        677888              c:\windows\system32\mstsc.exe
- 2010-01-17 13:37 . 2008-04-14 05:52        677888              c:\windows\system32\mstsc.exe
+ 2008-08-01 20:23 . 2009-03-08 03:32        611840              c:\windows\system32\mstime.dll
+ 2008-08-01 20:23 . 2009-03-08 03:34        193536              c:\windows\system32\msrating.dll
- 2008-08-01 20:23 . 2008-08-01 20:23        156160              c:\windows\system32\msls31.dll
+ 2008-08-01 20:23 . 2009-03-08 03:22        156160              c:\windows\system32\msls31.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        594432              c:\windows\system32\msfeeds.dll
+ 2009-01-07 17:20 . 2009-01-07 17:20        265720              c:\windows\system32\msdbg2.dll
+ 2008-08-01 20:24 . 2010-03-30 10:24        317440              c:\windows\system32\mp4sdecd.dll
- 2008-08-01 20:24 . 2008-08-01 20:24        317440              c:\windows\system32\mp4sdecd.dll
+ 2007-04-03 06:44 . 2011-02-08 17:03        974848              c:\windows\system32\mfc42u.dll
+ 2008-04-14 05:52 . 2011-02-08 13:33        978944              c:\windows\system32\mfc42.dll
+ 2008-04-14 05:52 . 2010-09-18 06:52        953856              c:\windows\system32\mfc40u.dll
+ 2004-08-04 12:00 . 2010-09-18 06:52        954368              c:\windows\system32\mfc40.dll
+ 2011-09-13 06:12 . 2011-09-13 06:12        243360              c:\windows\system32\Macromed\Flash\FlashUtil10w_Plugin.exe
- 2008-08-01 17:59 . 2009-06-26 14:11        737792              c:\windows\system32\lsasrv.dll
+ 2008-08-01 17:59 . 2010-12-20 17:24        737792              c:\windows\system32\lsasrv.dll
- 2008-04-14 05:52 . 2009-06-25 08:41        301568              c:\windows\system32\kerberos.dll
+ 2008-04-14 05:52 . 2010-12-22 12:32        301568              c:\windows\system32\kerberos.dll
+ 2008-08-01 20:23 . 2009-06-22 06:45        726528              c:\windows\system32\jscript.dll
+ 2010-01-17 13:44 . 2010-11-03 10:07        153376              c:\windows\system32\javaws.exe
+ 2010-01-17 13:44 . 2010-11-03 10:07        145184              c:\windows\system32\javaw.exe
+ 2010-01-17 13:44 . 2010-11-03 10:07        145184              c:\windows\system32\java.exe
+ 2006-10-26 11:45 . 2006-10-26 11:45        207360              c:\windows\system32\INKED.DLL
+ 2010-01-17 13:38 . 2011-10-10 14:22        692736              c:\windows\system32\inetcomm.dll
+ 2008-08-01 20:23 . 2009-03-08 03:22        164352              c:\windows\system32\ieui.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        183808              c:\windows\system32\iepeers.dll
+ 2008-08-01 20:23 . 2009-03-08 13:09        391536              c:\windows\system32\iedkcs32.dll
+ 2008-08-01 20:23 . 2009-03-08 03:11        445952              c:\windows\system32\ieapfltr.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        163840              c:\windows\system32\ieakui.dll
+ 2008-08-01 20:23 . 2009-03-08 03:33        229376              c:\windows\system32\ieaksie.dll
+ 2008-08-01 20:23 . 2009-03-08 03:33        125952              c:\windows\system32\ieakeng.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        173056              c:\windows\system32\ie4uinit.exe
+ 2010-01-17 13:26 . 2012-03-14 15:15        241536              c:\windows\system32\FNTCACHE.DAT
- 2008-08-01 20:23 . 2010-06-24 12:17        132608              c:\windows\system32\extmgr.dll
+ 2008-08-01 20:23 . 2011-12-19 08:06        132608              c:\windows\system32\extmgr.dll
+ 2008-04-14 05:52 . 2011-10-18 11:13        186880              c:\windows\system32\encdec.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        186880              c:\windows\system32\encdec.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        216064              c:\windows\system32\dxtrans.dll
+ 2008-08-01 20:23 . 2009-03-08 03:31        348160              c:\windows\system32\dxtmsft.dll
+ 2008-08-01 20:25 . 2008-06-20 11:59        361600              c:\windows\system32\drivers\tcpip.sys
- 2008-08-01 20:25 . 2008-08-01 20:25        361600              c:\windows\system32\drivers\tcpip.sys
+ 2008-04-13 22:45 . 2011-02-17 13:18        357888              c:\windows\system32\drivers\srv.sys
+ 2011-03-28 17:25 . 2011-03-28 17:25        691696              c:\windows\system32\drivers\sptd.sys
+ 2008-08-01 17:59 . 2011-04-21 13:52        105472              c:\windows\system32\drivers\mup.sys
+ 2008-08-01 17:59 . 2011-07-15 13:29        457856              c:\windows\system32\drivers\mrxsmb.sys
+ 2008-08-01 17:58 . 2011-08-17 13:41        138496              c:\windows\system32\drivers\afd.sys
- 2008-08-01 17:58 . 2008-08-14 10:34        138496              c:\windows\system32\drivers\afd.sys
+ 2008-08-01 17:58 . 2011-03-03 06:53        149504              c:\windows\system32\dnsapi.dll
+ 2010-01-17 16:42 . 2010-07-16 12:01        220160              c:\windows\system32\dllcache\wordpad.exe
+ 2010-09-14 19:44 . 2011-11-25 21:56        293888              c:\windows\system32\dllcache\winsrv.dll
+ 2012-01-10 18:35 . 2011-10-14 14:47        178176              c:\windows\system32\dllcache\winmm.dll
+ 2010-01-17 16:58 . 2009-03-08 03:34        914944              c:\windows\system32\dllcache\wininet.dll
- 2010-01-17 16:56 . 2009-08-25 09:17        354816              c:\windows\system32\dllcache\winhttp.dll
+ 2010-01-17 16:56 . 2011-11-16 14:20        354816              c:\windows\system32\dllcache\winhttp.dll
+ 2010-01-17 16:58 . 2009-03-08 03:34        236544              c:\windows\system32\dllcache\webcheck.dll
+ 2011-06-18 15:06 . 2009-03-08 03:33        759296              c:\windows\system32\dllcache\VGX.dll
+ 2010-04-14 16:39 . 2010-03-10 06:15        420352              c:\windows\system32\dllcache\vbscript.dll
- 2010-01-17 13:45 . 2008-04-14 05:52        406016              c:\windows\system32\dllcache\usp10.dll
+ 2010-01-17 13:45 . 2010-04-16 15:36        406016              c:\windows\system32\dllcache\usp10.dll
- 2010-01-17 16:58 . 2010-06-24 12:17        105984              c:\windows\system32\dllcache\url.dll
+ 2010-01-17 16:58 . 2009-03-08 03:34        105984              c:\windows\system32\dllcache\url.dll
+ 2011-04-15 07:07 . 2008-06-20 11:59        361600              c:\windows\system32\dllcache\tcpip.sys
- 2010-01-17 16:54 . 2009-10-15 16:28        119808              c:\windows\system32\dllcache\t2embed.dll
+ 2010-01-17 16:54 . 2010-08-27 08:01        119808              c:\windows\system32\dllcache\t2embed.dll
+ 2010-01-17 16:47 . 2011-02-17 13:18        357888              c:\windows\system32\dllcache\srv.sys
+ 2009-01-07 17:20 . 2009-01-07 17:20        134144              c:\windows\system32\dllcache\sqmapi.dll
+ 2011-03-05 12:25 . 2009-07-27 23:16        135680              c:\windows\system32\dllcache\shsvcs.dll
+ 2011-02-09 22:53 . 2011-01-21 14:44        440832              c:\windows\system32\dllcache\shimgvw.dll
+ 2010-01-17 16:56 . 2011-11-16 14:20        152064              c:\windows\system32\dllcache\schannel.dll
+ 2011-03-10 00:03 . 2011-02-09 13:53        270848              c:\windows\system32\dllcache\sbe.dll
+ 2010-01-17 16:56 . 2010-08-16 08:44        590848              c:\windows\system32\dllcache\rpcrt4.dll
+ 2011-08-10 13:23 . 2012-01-09 16:20        139784              c:\windows\system32\dllcache\rdpwd.sys
+ 2012-01-10 18:36 . 2011-11-03 15:27        387072              c:\windows\system32\dllcache\qdvd.dll
+ 2011-06-18 15:07 . 2010-12-20 17:32        551936              c:\windows\system32\dllcache\oleaut32.dll
+ 2011-09-26 09:41 . 2011-09-26 09:41        220160              c:\windows\system32\dllcache\oleacc.dll
+ 2011-01-13 18:14 . 2010-11-09 14:50        253952              c:\windows\system32\dllcache\odbc32.dll
+ 2010-01-17 16:58 . 2009-03-08 03:34        109568              c:\windows\system32\dllcache\occache.dll
+ 2010-01-17 16:54 . 2010-12-09 15:15        743936              c:\windows\system32\dllcache\ntdll.dll
+ 2011-06-18 15:06 . 2011-04-21 13:52        105472              c:\windows\system32\dllcache\mup.sys
+ 2011-04-15 07:07 . 2008-06-20 17:43        247296              c:\windows\system32\dllcache\mswsock.dll
+ 2010-01-17 16:58 . 2009-03-08 03:32        611840              c:\windows\system32\dllcache\mstime.dll
+ 2010-01-17 16:58 . 2009-03-08 03:34        193536              c:\windows\system32\dllcache\msrating.dll
+ 2009-03-08 03:22 . 2009-03-08 03:22        156160              c:\windows\system32\dllcache\msls31.dll
+ 2011-01-13 18:14 . 2010-11-09 14:50        102400              c:\windows\system32\dllcache\msjro.dll
+ 2010-01-17 16:58 . 2009-03-08 03:32        594432              c:\windows\system32\dllcache\msfeeds.dll
+ 2011-01-13 18:14 . 2010-11-09 14:50        200704              c:\windows\system32\dllcache\msadox.dll
+ 2011-01-13 18:14 . 2010-11-09 14:50        180224              c:\windows\system32\dllcache\msadomd.dll
+ 2010-11-09 19:20 . 2010-11-09 19:20        565248              c:\windows\system32\dllcache\msado15.dll
+ 2011-01-13 18:14 . 2010-11-09 14:50        143360              c:\windows\system32\dllcache\msadco.dll
+ 2010-01-17 16:47 . 2011-07-15 13:29        457856              c:\windows\system32\dllcache\mrxsmb.sys
+ 2010-03-30 10:24 . 2010-03-30 10:24        317440              c:\windows\system32\dllcache\mp4sdecd.dll
+ 2010-09-18 10:22 . 2011-02-08 17:03        974848              c:\windows\system32\dllcache\mfc42u.dll
+ 2010-10-20 12:41 . 2011-02-08 13:33        978944              c:\windows\system32\dllcache\mfc42.dll
+ 2010-10-20 12:41 . 2010-09-18 06:52        953856              c:\windows\system32\dllcache\mfc40u.dll
+ 2010-10-20 12:41 . 2010-09-18 06:52        954368              c:\windows\system32\dllcache\mfc40.dll
+ 2009-06-26 14:11 . 2010-12-20 17:24        737792              c:\windows\system32\dllcache\lsasrv.dll
- 2009-06-26 14:11 . 2009-06-26 14:11        737792              c:\windows\system32\dllcache\lsasrv.dll
+ 2011-03-10 00:03 . 2011-01-27 11:57        677888              c:\windows\system32\dllcache\lhmstsc.exe
- 2010-01-17 16:56 . 2009-06-25 08:41        301568              c:\windows\system32\dllcache\kerberos.dll
+ 2010-01-17 16:56 . 2010-12-22 12:32        301568              c:\windows\system32\dllcache\kerberos.dll
+ 2010-01-17 16:42 . 2009-06-22 06:45        726528              c:\windows\system32\dllcache\jscript.dll
+ 2010-01-17 16:46 . 2011-10-10 14:22        692736              c:\windows\system32\dllcache\inetcomm.dll
+ 2010-01-17 16:58 . 2009-03-08 13:09        638816              c:\windows\system32\dllcache\iexplore.exe
+ 2010-01-22 09:41 . 2009-03-08 03:31        183808              c:\windows\system32\dllcache\iepeers.dll
+ 2010-01-17 16:58 . 2009-03-08 13:09        391536              c:\windows\system32\dllcache\iedkcs32.dll
+ 2010-01-17 16:58 . 2009-03-08 03:11        445952              c:\windows\system32\dllcache\ieapfltr.dll
+ 2010-01-17 16:58 . 2009-03-08 03:32        163840              c:\windows\system32\dllcache\ieakui.dll
+ 2010-01-17 16:58 . 2009-03-08 03:33        229376              c:\windows\system32\dllcache\ieaksie.dll
+ 2010-01-17 16:58 . 2009-03-08 03:33        125952              c:\windows\system32\dllcache\ieakeng.dll
+ 2010-01-17 16:58 . 2009-03-08 03:32        173056              c:\windows\system32\dllcache\ie4uinit.exe
- 2010-01-17 16:58 . 2010-06-24 12:17        132608              c:\windows\system32\dllcache\extmgr.dll
+ 2010-01-17 16:58 . 2011-12-19 08:06        132608              c:\windows\system32\dllcache\extmgr.dll
+ 2011-03-10 00:03 . 2011-10-18 11:13        186880              c:\windows\system32\dllcache\encdec.dll
+ 2010-01-17 16:58 . 2009-03-08 03:31        216064              c:\windows\system32\dllcache\dxtrans.dll
+ 2010-01-17 16:58 . 2009-03-08 03:31        348160              c:\windows\system32\dllcache\dxtmsft.dll
+ 2011-04-15 07:07 . 2011-03-03 06:53        149504              c:\windows\system32\dllcache\dnsapi.dll
+ 2011-09-07 07:43 . 2011-09-28 07:06        604160              c:\windows\system32\dllcache\crypt32.dll
+ 2010-10-20 12:41 . 2010-08-23 16:11        617472              c:\windows\system32\dllcache\comctl32.dll
+ 2010-06-11 21:41 . 2011-02-15 13:05        290432              c:\windows\system32\dllcache\atmfd.dll
+ 2010-01-17 16:56 . 2011-08-17 13:41        138496              c:\windows\system32\dllcache\afd.sys
- 2010-01-17 16:56 . 2008-08-14 10:34        138496              c:\windows\system32\dllcache\afd.sys
+ 2010-01-17 16:58 . 2009-03-08 03:32        128512              c:\windows\system32\dllcache\advpack.dll
+ 2010-02-19 19:27 . 2010-02-19 19:27        843776              c:\windows\system32\divx_xx16.dll
- 2009-11-14 00:47 . 2009-11-14 00:47        843776              c:\windows\system32\divx_xx16.dll
+ 2010-02-19 19:27 . 2010-02-19 19:27        839680              c:\windows\system32\divx_xx11.dll
- 2009-11-14 00:47 . 2009-11-14 00:47        839680              c:\windows\system32\divx_xx11.dll
+ 2010-02-19 19:27 . 2010-02-19 19:27        856064              c:\windows\system32\divx_xx0c.dll
- 2009-11-14 00:47 . 2009-11-14 00:47        856064              c:\windows\system32\divx_xx0c.dll
- 2009-11-14 00:47 . 2009-11-14 00:47        847872              c:\windows\system32\divx_xx0a.dll
+ 2010-02-19 19:27 . 2010-02-19 19:27        847872              c:\windows\system32\divx_xx0a.dll
- 2009-11-14 00:47 . 2009-11-14 00:47        856064              c:\windows\system32\divx_xx07.dll
+ 2010-02-19 19:27 . 2010-02-19 19:27        856064              c:\windows\system32\divx_xx07.dll
+ 2010-02-19 19:27 . 2010-02-19 19:27        720384              c:\windows\system32\DivX.dll
+ 2010-11-03 10:07 . 2010-11-03 10:07        411368              c:\windows\system32\deployJava1.dll
+ 2008-04-14 05:52 . 2011-09-28 07:06        604160              c:\windows\system32\crypt32.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        604160              c:\windows\system32\crypt32.dll
+ 2008-04-14 05:52 . 2010-08-23 16:11        617472              c:\windows\system32\comctl32.dll
- 2008-04-14 05:52 . 2008-04-14 05:52        617472              c:\windows\system32\comctl32.dll
+ 2008-08-01 17:58 . 2011-02-15 13:05        290432              c:\windows\system32\atmfd.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        138056              c:\windows\system32\atl100.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        128512              c:\windows\system32\advpack.dll
+ 2011-12-25 02:49 . 2011-12-25 02:49        436496              c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2011-07-07 03:18 . 2011-07-07 03:18        388936              c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
- 2010-05-11 04:40 . 2010-05-11 04:40        388936              c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2011-03-25 04:15 . 2011-03-25 04:15        363856              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2011-07-07 03:18 . 2011-07-07 03:18        989016              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
- 2010-05-11 04:40 . 2010-05-11 04:40        989016              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
- 2010-03-31 12:51 . 2010-03-31 12:51        102400              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2011-12-24 21:55 . 2011-12-24 21:55        102400              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2011-12-24 21:53 . 2011-12-24 21:53        315392              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2010-03-31 12:49 . 2010-03-31 12:49        315392              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2011-12-24 22:49 . 2011-12-24 22:49        258048              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2010-03-31 13:32 . 2010-03-31 13:32        258048              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2010-09-23 19:02 . 2010-09-23 19:02        798208              c:\windows\Installer\c9e67d.msp
+ 2012-03-10 21:24 . 2012-03-10 21:24        160768              c:\windows\Installer\784e3.msi
+ 2010-11-03 10:08 . 2010-11-03 10:08        180224              c:\windows\Installer\67e4fa.msi
+ 2010-11-03 10:07 . 2010-11-03 10:07        576000              c:\windows\Installer\67e4f3.msi
+ 2011-03-28 17:32 . 2011-03-28 17:32        505856              c:\windows\Installer\3cbfb.msi
+ 2011-03-28 17:32 . 2011-03-28 17:32        506880              c:\windows\Installer\3cbf4.msi
+ 2011-03-28 17:31 . 2011-03-28 17:31        516608              c:\windows\Installer\3cbec.msi
+ 2011-03-28 17:31 . 2011-03-28 17:31        513536              c:\windows\Installer\3cbe4.msi
+ 2011-03-28 17:31 . 2011-03-28 17:31        512512              c:\windows\Installer\3cbdc.msi
+ 2011-03-17 18:03 . 2011-03-17 18:03        308736              c:\windows\Installer\2f1808.msp
+ 2011-06-19 01:03 . 2011-06-19 01:03        223744              c:\windows\Installer\2f17c2.msi
+ 2011-06-19 01:01 . 2011-06-19 01:01        467456              c:\windows\Installer\2f1796.msi
+ 2011-12-25 04:40 . 2011-12-25 04:40        819200              c:\windows\Installer\2aed1.msp
+ 2011-04-16 06:11 . 2011-04-16 06:11        223232              c:\windows\Installer\2635b.msi
+ 2010-08-04 13:13 . 2010-08-04 13:13        686080              c:\windows\Installer\10e98a.msp
+ 2009-05-26 16:53 . 2009-05-26 16:53        579072              c:\windows\Installer\10e882.msp
+ 2010-07-22 23:03 . 2010-07-22 23:03        338432              c:\windows\Installer\10e83b.msp
+ 2012-03-14 17:39 . 2012-03-14 17:39        274741              c:\windows\Installer\{940BF94E-E1D1-494F-B45B-C1FA4B692C81}\_F754953432E51B767FBA61.exe
+ 2012-03-14 17:39 . 2012-03-14 17:39        274741              c:\windows\Installer\{940BF94E-E1D1-494F-B45B-C1FA4B692C81}\_853F67D554F05449430E7E.exe
+ 2012-03-14 17:39 . 2012-03-14 17:39        274741              c:\windows\Installer\{940BF94E-E1D1-494F-B45B-C1FA4B692C81}\_17C426A5D34824788731B6.exe
+ 2012-03-08 09:56 . 2012-03-08 09:56        217864              c:\windows\Installer\{90120000-006E-0407-0000-0000000FF1CE}\misc.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        888080              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        272648              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pubs.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        922384              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\pptico.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        845584              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\outicon.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        217864              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\misc.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        184080              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\joticon.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        159504              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\inficon.exe
+ 2007-06-07 17:51 . 2007-06-07 17:51        125320              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\SSGEN.DLL
+ 2007-06-07 17:51 . 2007-06-07 17:51        465800              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\OUTLFLTR.DLL
+ 2008-03-19 04:27 . 2008-03-19 04:27        661536              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\OGALEGIT.DLL
+ 2008-10-25 04:18 . 2008-10-25 04:18        172880              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\IEAWSDC.DLL
+ 2006-10-26 12:05 . 2006-10-26 12:05        530760              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\XPAGE3C.DLL
+ 2006-10-26 18:49 . 2006-10-26 18:49        509200              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\WRD12CVR.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        781104              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\WORDPIA.DLL
+ 2006-10-27 13:23 . 2006-10-27 13:23        347432              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\WINWORD.EXE
+ 2006-10-27 13:35 . 2006-10-27 13:35        436512              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\UMOUTLOOKADDIN.DLL
+ 2006-10-26 12:05 . 2006-10-26 12:05        126784              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\TWCUTCHR.DLL
+ 2006-07-28 13:21 . 2006-07-28 13:21        277320              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SSGEN.DLL
+ 2006-10-26 19:18 . 2006-10-26 19:18        502608              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SOA.DLL
+ 2006-10-26 18:06 . 2006-10-26 18:06        439600              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SETUP.EXE
+ 2006-10-26 18:13 . 2006-10-26 18:13        503624              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SELFCERT.EXE
+ 2006-10-26 18:55 . 2006-10-26 18:55        272744              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SCNPST64.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        263520              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\SCNPST32.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        408880              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\RTFHTML.DLL
+ 2006-10-26 19:42 . 2006-10-26 19:42        744808              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\REGFORM.EXE
+ 2006-10-26 18:09 . 2006-10-26 18:09        590144              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PUBCONV.DLL
+ 2006-10-27 13:04 . 2006-10-27 13:04        624456              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PTXT9.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        413472              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PSTPRX32.DLL
+ 2006-10-26 18:09 . 2006-10-26 18:09        136008              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PRTF9.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        248632              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PPTPIA.DLL
+ 2006-10-26 19:07 . 2006-10-26 19:07        368968              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PPSLAX.DLL
+ 2006-10-27 13:04 . 2006-10-27 13:04        465200              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\POWERPNT.EXE
+ 2006-10-26 19:30 . 2006-10-26 19:30        482088              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PORTCONN.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        176976              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLPH.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        594256              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLMIME.DLL
+ 2006-07-26 16:53 . 2006-07-26 16:53        459080              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLFLTR.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        138512              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLCTL.DLL
+ 2006-10-26 18:23 . 2006-10-26 18:23        782720              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONSYNCPC.DLL
+ 2006-10-27 13:39 . 2006-10-27 13:39        687432              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONBTTNOL.DLL
+ 2006-10-26 18:32 . 2006-10-26 18:32        604000              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONBTTNIE.DLL
+ 2006-10-26 18:34 . 2006-10-26 18:34        192848              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OMSXP32.DLL
+ 2006-10-26 18:34 . 2006-10-26 18:34        660792              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OMSMAIN.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        254776              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OLKFSTUB.DLL
+ 2006-10-26 18:00 . 2006-10-26 18:00        285008              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OISGRAPH.DLL
+ 2006-10-26 18:00 . 2006-10-26 18:00        998208              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OISAPP.DLL
+ 2006-10-26 18:00 . 2006-10-26 18:00        274744              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OIS.EXE
+ 2006-10-20 06:37 . 2006-10-20 06:37        637744              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OGALEGIT.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        416544              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OFFICE.DLL
+ 2006-10-26 18:06 . 2006-10-26 18:06        232816              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ODEPLOY.EXE
+ 2006-10-26 17:55 . 2006-10-26 17:55        538904              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSTORES.DLL
+ 2006-10-26 17:55 . 2006-10-26 17:55        145688              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSTORE.EXE
+ 2006-10-26 17:55 . 2006-10-26 17:55        832800              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSTORDB.EXE
+ 2006-07-24 08:50 . 2006-07-24 08:50        125744              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSSTDFMT.DLL
+ 2006-10-26 11:56 . 2006-10-26 11:56        505136              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSSOAP30.DLL
+ 2006-10-26 17:50 . 2006-10-26 17:50        672024              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSQRY32.EXE
+ 2006-10-26 12:47 . 2006-10-26 12:47        727840              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSPROOF6.DLL
+ 2006-10-26 11:56 . 2006-10-26 11:56        436520              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSORUN.DLL
+ 2006-10-26 17:56 . 2006-10-26 17:56        864080              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSONPDRV.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        428816              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSODCW.DLL
+ 2006-10-27 12:59 . 2006-10-27 12:59        161080              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSOCF.DLL
+ 2006-10-26 11:58 . 2006-10-26 11:58        117552              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSCONV97.DLL
+ 2006-10-26 11:58 . 2006-10-26 11:58        290576              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSCDM.DLL
+ 2006-10-27 13:04 . 2006-10-27 13:04        497504              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MORPH9.DLL
+ 2006-10-26 17:52 . 2006-10-26 17:52        460616              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MODHELP.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        340248              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MIMEDIR.DLL
+ 2006-10-26 17:55 . 2006-10-26 17:55        828704              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MEDCAT.DLL
+ 2011-03-28 17:34 . 2011-03-28 17:34        118112              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IPOMINT.DLL
+ 2011-03-28 17:34 . 2011-03-28 17:34        609104              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IPOMHOST.DLL
+ 2006-10-26 19:42 . 2006-10-26 19:42        176976              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IPOLK.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        138024              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IMPMAIL.DLL
+ 2006-10-26 18:00 . 2006-10-26 18:00        178488              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IETAG.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        173328              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IEAWSDC.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        631080              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEWEBSERVICES.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        572216              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEWEBPLATFORMSERVICES.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        268080              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEWEBBROWSERTOOL2.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        955680              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEUTIL.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        222512              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVESYSTEMSERVICES.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        363304              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVESKETCHTOOL.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        224048              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEPROJECTTOOLSET.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        317736              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEMIGRATOR.EXE
+ 2006-10-26 22:48 . 2006-10-26 22:48        197920              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEGAMES.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        284976              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEFETCHSERVICES.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        377136              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEDATAVIEWERTOOL.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        768304              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVECOMPONENTMGR.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        117584              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVECOMMUNICATIONSSTATUSANDCONTROL.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        300336              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVECALENDARTOOL.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        284448              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEAUDIO.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        338216              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVE.EXE
+ 2011-03-28 17:33 . 2011-03-28 17:33        150320              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GRAPHPIA.DLL
+ 2006-10-27 13:09 . 2006-10-27 13:09        983376              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\FPWEC.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        154960              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ENVELOPE.DLL
+ 2006-10-26 18:55 . 2006-10-26 18:55        116544              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\EMABLT32.DLL
+ 2006-10-26 17:48 . 2006-10-26 17:48        434528              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\DWTRIG20.EXE
+ 2006-10-26 17:48 . 2006-10-26 17:48        439568              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\DWDCW20.DLL
+ 2006-10-26 18:12 . 2006-10-26 18:12        106824              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\DSSM.EXE
+ 2006-10-26 22:48 . 2006-10-26 22:48        234784              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\DRAT.EXE
+ 2006-10-26 18:12 . 2006-10-26 18:12        189760              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\CONTACTPICKER.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        133936              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\CONTAB32.DLL
+ 2006-10-26 17:59 . 2006-10-26 17:59        205616              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\CLVIEW.EXE
+ 2006-10-27 13:41 . 2006-10-27 13:41        399640              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\CDLMSO.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        371568              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEXBE.DLL
+ 2006-10-27 13:40 . 2006-10-27 13:40        208760              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEWSS.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        826232              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEWDAT.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        224104              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACETXT.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        551800              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEREP.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        289648              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACER3X.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        260976              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACER2X.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        392048              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEPDE.DLL
+ 2006-10-27 13:00 . 2006-10-27 13:00        387960              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEOLEDB.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        279352              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEODBC.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        207736              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACELTS.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        629616              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEEXCL.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        338800              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEEXCH.DLL
+ 2006-10-27 13:00 . 2006-10-27 13:00        191360              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEES.DLL
+ 2006-10-27 13:00 . 2006-10-27 13:00        576376              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACEDAO.DLL
+ 2006-10-26 18:13 . 2006-10-26 18:13        764800              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACECNF.DLL
+ 2006-10-26 19:18 . 2006-10-26 19:18        162616              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACCWIZ.DLL
+ 2006-10-27 13:00 . 2006-10-27 13:00        576376              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACACEDAO.DLL
+ 2006-10-26 17:49 . 2006-10-26 17:49        970528              c:\windows\Installer\$PatchCache$\Managed\00002109010070400000000000F01FEC\12.0.4518\MSONSEXT.DLL
+ 2004-11-17 15:33 . 2004-11-17 15:33        450669              c:\windows\Installer\$PatchCache$\Managed\00002109010070400000000000F01FEC\12.0.4518\FP4AWEC.DLL
+ 2004-11-17 15:33 . 2004-11-17 15:33        589880              c:\windows\Installer\$PatchCache$\Managed\00002109010070400000000000F01FEC\12.0.4518\FP4AUTL.DLL
+ 2012-03-06 21:11 . 2009-03-08 03:34        914944              c:\windows\ie8updates\KB982381-IE8\wininet.dll
+ 2012-03-06 21:11 . 2009-03-08 03:34        109568              c:\windows\ie8updates\KB982381-IE8\occache.dll
+ 2012-03-06 21:11 . 2009-03-08 03:32        611840              c:\windows\ie8updates\KB982381-IE8\mstime.dll
+ 2012-03-06 21:11 . 2009-03-08 03:32        594432              c:\windows\ie8updates\KB982381-IE8\msfeeds.dll
+ 2012-03-06 21:11 . 2009-03-08 03:33        246784              c:\windows\ie8updates\KB982381-IE8\ieproxy.dll
+ 2012-03-06 21:11 . 2009-03-08 03:31        183808              c:\windows\ie8updates\KB982381-IE8\iepeers.dll
+ 2012-03-06 21:11 . 2009-03-08 03:35        742912              c:\windows\ie8updates\KB982381-IE8\iedvtool.dll
+ 2012-03-06 21:11 . 2009-03-08 13:09        391536              c:\windows\ie8updates\KB982381-IE8\iedkcs32.dll
+ 2012-03-06 21:11 . 2009-03-08 03:32        173056              c:\windows\ie8updates\KB982381-IE8\ie4uinit.exe
+ 2012-03-08 22:32 . 2009-03-08 03:33        420352              c:\windows\ie8updates\KB981332-IE8\vbscript.dll
+ 2012-03-08 22:32 . 2009-05-26 11:40        388984              c:\windows\ie8updates\KB981332-IE8\spuninst\updspapi.dll
+ 2012-03-08 22:32 . 2009-05-26 11:40        234872              c:\windows\ie8updates\KB981332-IE8\spuninst\spuninst.exe
+ 2012-03-08 09:56 . 2008-07-08 13:00        388984              c:\windows\ie8updates\KB971961-IE8\spuninst\updspapi.dll
+ 2012-03-08 09:56 . 2008-07-08 13:00        234872              c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
+ 2012-03-08 09:56 . 2009-03-08 03:33        726528              c:\windows\ie8updates\KB971961-IE8\jscript.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        841216              c:\windows\ie8\wininet.dll
+ 2012-03-06 21:10 . 2007-08-13 17:45        206336              c:\windows\ie8\winfxdocobj.exe
+ 2012-03-06 21:10 . 2011-12-19 08:06        233472              c:\windows\ie8\webcheck.dll
+ 2012-03-06 21:10 . 2011-04-30 08:50        766464              c:\windows\ie8\vgx.dll
+ 2012-03-06 21:10 . 2011-03-04 06:42        434176              c:\windows\ie8\vbscript.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        106496              c:\windows\ie8\url.dll
+ 2012-03-06 21:11 . 2009-01-07 17:20        388640              c:\windows\ie8\spuninst\updspapi.dll
+ 2012-03-06 21:11 . 2009-01-07 17:20        235040              c:\windows\ie8\spuninst\spuninst.exe
+ 2012-03-06 21:10 . 2011-12-19 08:06        102912              c:\windows\ie8\occache.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        671232              c:\windows\ie8\mstime.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        193024              c:\windows\ie8\msrating.dll
+ 2012-03-06 21:10 . 2008-08-01 20:23        156160              c:\windows\ie8\msls31.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        478720              c:\windows\ie8\mshtmled.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        468480              c:\windows\ie8\msfeeds.dll
+ 2012-03-06 21:10 . 2011-03-04 06:42        512000              c:\windows\ie8\jscript.dll
+ 2012-03-06 21:10 . 2011-12-16 10:35        634680              c:\windows\ie8\iexplore.exe
+ 2012-03-06 21:10 . 2008-08-01 20:23        180736              c:\windows\ie8\ieui.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        268288              c:\windows\ie8\iertutil.dll
+ 2012-03-06 21:10 . 2007-08-13 17:54        287744              c:\windows\ie8\ieproxy.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        193024              c:\windows\ie8\iepeers.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        388608              c:\windows\ie8\iedkcs32.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        380928              c:\windows\ie8\ieapfltr.dll
+ 2012-03-06 21:10 . 2011-12-16 10:33        161792              c:\windows\ie8\ieakui.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        230400              c:\windows\ie8\ieaksie.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        153088              c:\windows\ie8\ieakeng.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        214528              c:\windows\ie8\dxtrans.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        347136              c:\windows\ie8\dxtmsft.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        124928              c:\windows\ie8\advpack.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        841216              c:\windows\ie7updates\KB2647516-IE7\wininet.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        233472              c:\windows\ie7updates\KB2647516-IE7\webcheck.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        106496              c:\windows\ie7updates\KB2647516-IE7\url.dll
+ 2012-03-06 21:00 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2647516-IE7\spuninst\updspapi.dll
+ 2012-03-06 21:00 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2647516-IE7\spuninst\spuninst.exe
+ 2012-03-06 21:00 . 2011-10-31 23:34        102912              c:\windows\ie7updates\KB2647516-IE7\occache.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        671232              c:\windows\ie7updates\KB2647516-IE7\mstime.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        193024              c:\windows\ie7updates\KB2647516-IE7\msrating.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        478720              c:\windows\ie7updates\KB2647516-IE7\mshtmled.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        468480              c:\windows\ie7updates\KB2647516-IE7\msfeeds.dll
+ 2012-03-06 21:00 . 2011-10-31 10:32        634504              c:\windows\ie7updates\KB2647516-IE7\iexplore.exe
+ 2012-03-06 21:00 . 2011-10-31 23:34        268288              c:\windows\ie7updates\KB2647516-IE7\iertutil.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        193024              c:\windows\ie7updates\KB2647516-IE7\iepeers.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        388608              c:\windows\ie7updates\KB2647516-IE7\iedkcs32.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        380928              c:\windows\ie7updates\KB2647516-IE7\ieapfltr.dll
+ 2012-03-06 21:00 . 2011-10-27 10:32        161792              c:\windows\ie7updates\KB2647516-IE7\ieakui.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        230400              c:\windows\ie7updates\KB2647516-IE7\ieaksie.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        153088              c:\windows\ie7updates\KB2647516-IE7\ieakeng.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        132608              c:\windows\ie7updates\KB2647516-IE7\extmgr.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        214528              c:\windows\ie7updates\KB2647516-IE7\dxtrans.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        347136              c:\windows\ie7updates\KB2647516-IE7\dxtmsft.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        124928              c:\windows\ie7updates\KB2647516-IE7\advpack.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        841216              c:\windows\ie7updates\KB2618444-IE7\wininet.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        233472              c:\windows\ie7updates\KB2618444-IE7\webcheck.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        106496              c:\windows\ie7updates\KB2618444-IE7\url.dll
+ 2011-12-16 00:02 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2618444-IE7\spuninst\updspapi.dll
+ 2011-12-16 00:02 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2618444-IE7\spuninst\spuninst.exe
+ 2011-12-16 00:02 . 2011-08-17 21:22        102912              c:\windows\ie7updates\KB2618444-IE7\occache.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        671232              c:\windows\ie7updates\KB2618444-IE7\mstime.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        193024              c:\windows\ie7updates\KB2618444-IE7\msrating.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        478720              c:\windows\ie7updates\KB2618444-IE7\mshtmled.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        468480              c:\windows\ie7updates\KB2618444-IE7\msfeeds.dll
+ 2011-12-16 00:02 . 2011-08-17 10:34        634632              c:\windows\ie7updates\KB2618444-IE7\iexplore.exe
+ 2011-12-16 00:02 . 2011-08-17 21:22        268288              c:\windows\ie7updates\KB2618444-IE7\iertutil.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        193024              c:\windows\ie7updates\KB2618444-IE7\iepeers.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        388608              c:\windows\ie7updates\KB2618444-IE7\iedkcs32.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        380928              c:\windows\ie7updates\KB2618444-IE7\ieapfltr.dll
+ 2011-12-16 00:02 . 2011-08-17 10:33        161792              c:\windows\ie7updates\KB2618444-IE7\ieakui.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        230400              c:\windows\ie7updates\KB2618444-IE7\ieaksie.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        153088              c:\windows\ie7updates\KB2618444-IE7\ieakeng.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        132608              c:\windows\ie7updates\KB2618444-IE7\extmgr.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        214528              c:\windows\ie7updates\KB2618444-IE7\dxtrans.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        347136              c:\windows\ie7updates\KB2618444-IE7\dxtmsft.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        124928              c:\windows\ie7updates\KB2618444-IE7\advpack.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        841216              c:\windows\ie7updates\KB2586448-IE7\wininet.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        233472              c:\windows\ie7updates\KB2586448-IE7\webcheck.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        106496              c:\windows\ie7updates\KB2586448-IE7\url.dll
+ 2011-10-13 11:34 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2586448-IE7\spuninst\updspapi.dll
+ 2011-10-13 11:34 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2586448-IE7\spuninst\spuninst.exe
+ 2011-10-13 11:34 . 2011-06-21 18:36        102912              c:\windows\ie7updates\KB2586448-IE7\occache.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        671232              c:\windows\ie7updates\KB2586448-IE7\mstime.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        193024              c:\windows\ie7updates\KB2586448-IE7\msrating.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        478720              c:\windows\ie7updates\KB2586448-IE7\mshtmled.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        468480              c:\windows\ie7updates\KB2586448-IE7\msfeeds.dll
+ 2011-10-13 11:34 . 2011-06-20 10:38        634648              c:\windows\ie7updates\KB2586448-IE7\iexplore.exe
+ 2011-10-13 11:34 . 2011-06-21 18:36        268288              c:\windows\ie7updates\KB2586448-IE7\iertutil.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        193024              c:\windows\ie7updates\KB2586448-IE7\iepeers.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        388608              c:\windows\ie7updates\KB2586448-IE7\iedkcs32.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        380928              c:\windows\ie7updates\KB2586448-IE7\ieapfltr.dll
+ 2011-10-13 11:34 . 2011-06-20 10:36        161792              c:\windows\ie7updates\KB2586448-IE7\ieakui.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        230400              c:\windows\ie7updates\KB2586448-IE7\ieaksie.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        153088              c:\windows\ie7updates\KB2586448-IE7\ieakeng.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        132608              c:\windows\ie7updates\KB2586448-IE7\extmgr.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        214528              c:\windows\ie7updates\KB2586448-IE7\dxtrans.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        347136              c:\windows\ie7updates\KB2586448-IE7\dxtmsft.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        124928              c:\windows\ie7updates\KB2586448-IE7\advpack.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        841216              c:\windows\ie7updates\KB2559049-IE7\wininet.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        233472              c:\windows\ie7updates\KB2559049-IE7\webcheck.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        105984              c:\windows\ie7updates\KB2559049-IE7\url.dll
+ 2011-08-10 21:22 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2559049-IE7\spuninst\updspapi.dll
+ 2011-08-10 21:22 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2559049-IE7\spuninst\spuninst.exe
+ 2011-08-10 21:22 . 2011-04-25 15:42        102912              c:\windows\ie7updates\KB2559049-IE7\occache.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        671232              c:\windows\ie7updates\KB2559049-IE7\mstime.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        193024              c:\windows\ie7updates\KB2559049-IE7\msrating.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        478208              c:\windows\ie7updates\KB2559049-IE7\mshtmled.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        468480              c:\windows\ie7updates\KB2559049-IE7\msfeeds.dll
+ 2011-08-10 21:22 . 2011-04-21 10:34        634648              c:\windows\ie7updates\KB2559049-IE7\iexplore.exe
+ 2011-08-10 21:22 . 2011-04-25 15:42        268288              c:\windows\ie7updates\KB2559049-IE7\iertutil.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        193024              c:\windows\ie7updates\KB2559049-IE7\iepeers.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        388608              c:\windows\ie7updates\KB2559049-IE7\iedkcs32.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        380928              c:\windows\ie7updates\KB2559049-IE7\ieapfltr.dll
+ 2011-08-10 21:22 . 2011-04-21 10:33        161792              c:\windows\ie7updates\KB2559049-IE7\ieakui.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        230400              c:\windows\ie7updates\KB2559049-IE7\ieaksie.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        153088              c:\windows\ie7updates\KB2559049-IE7\ieakeng.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        132608              c:\windows\ie7updates\KB2559049-IE7\extmgr.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        214528              c:\windows\ie7updates\KB2559049-IE7\dxtrans.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        347136              c:\windows\ie7updates\KB2559049-IE7\dxtmsft.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        124928              c:\windows\ie7updates\KB2559049-IE7\advpack.dll
+ 2011-06-19 01:04 . 2008-08-01 20:23        765952              c:\windows\ie7updates\KB2544521-IE7\vgx.dll
+ 2011-06-19 01:04 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2544521-IE7\spuninst\updspapi.dll
+ 2011-06-19 01:04 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2544521-IE7\spuninst\spuninst.exe
+ 2011-06-19 01:05 . 2011-02-17 18:56        841216              c:\windows\ie7updates\KB2530548-IE7\wininet.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        233472              c:\windows\ie7updates\KB2530548-IE7\webcheck.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        105984              c:\windows\ie7updates\KB2530548-IE7\url.dll
+ 2011-06-19 01:05 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2530548-IE7\spuninst\updspapi.dll
+ 2011-06-19 01:05 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2530548-IE7\spuninst\spuninst.exe
+ 2011-06-19 01:05 . 2011-02-17 18:56        102912              c:\windows\ie7updates\KB2530548-IE7\occache.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        671232              c:\windows\ie7updates\KB2530548-IE7\mstime.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        193024              c:\windows\ie7updates\KB2530548-IE7\msrating.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        478208              c:\windows\ie7updates\KB2530548-IE7\mshtmled.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        468480              c:\windows\ie7updates\KB2530548-IE7\msfeeds.dll
+ 2011-06-19 01:05 . 2011-02-14 11:36        634648              c:\windows\ie7updates\KB2530548-IE7\iexplore.exe
+ 2011-06-19 01:05 . 2011-02-17 18:56        268288              c:\windows\ie7updates\KB2530548-IE7\iertutil.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        193024              c:\windows\ie7updates\KB2530548-IE7\iepeers.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        388608              c:\windows\ie7updates\KB2530548-IE7\iedkcs32.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        380928              c:\windows\ie7updates\KB2530548-IE7\ieapfltr.dll
+ 2011-06-19 01:05 . 2011-02-14 11:35        161792              c:\windows\ie7updates\KB2530548-IE7\ieakui.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        230400              c:\windows\ie7updates\KB2530548-IE7\ieaksie.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        153088              c:\windows\ie7updates\KB2530548-IE7\ieakeng.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        132608              c:\windows\ie7updates\KB2530548-IE7\extmgr.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        214528              c:\windows\ie7updates\KB2530548-IE7\dxtrans.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        347136              c:\windows\ie7updates\KB2530548-IE7\dxtmsft.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        124928              c:\windows\ie7updates\KB2530548-IE7\advpack.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        841216              c:\windows\ie7updates\KB2497640-IE7\wininet.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        233472              c:\windows\ie7updates\KB2497640-IE7\webcheck.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        105984              c:\windows\ie7updates\KB2497640-IE7\url.dll
+ 2011-05-21 09:31 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2497640-IE7\spuninst\updspapi.dll
+ 2011-05-21 09:31 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2497640-IE7\spuninst\spuninst.exe
+ 2011-05-21 09:31 . 2010-12-20 23:15        102912              c:\windows\ie7updates\KB2497640-IE7\occache.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        671232              c:\windows\ie7updates\KB2497640-IE7\mstime.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        193024              c:\windows\ie7updates\KB2497640-IE7\msrating.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        478208              c:\windows\ie7updates\KB2497640-IE7\mshtmled.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        468480              c:\windows\ie7updates\KB2497640-IE7\msfeeds.dll
+ 2011-05-21 09:31 . 2010-12-20 10:49        634648              c:\windows\ie7updates\KB2497640-IE7\iexplore.exe
+ 2011-05-21 09:31 . 2010-12-20 23:15        268288              c:\windows\ie7updates\KB2497640-IE7\iertutil.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        193024              c:\windows\ie7updates\KB2497640-IE7\iepeers.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        388608              c:\windows\ie7updates\KB2497640-IE7\iedkcs32.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        380928              c:\windows\ie7updates\KB2497640-IE7\ieapfltr.dll
+ 2011-05-21 09:31 . 2010-12-20 10:48        161792              c:\windows\ie7updates\KB2497640-IE7\ieakui.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        230400              c:\windows\ie7updates\KB2497640-IE7\ieaksie.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        153088              c:\windows\ie7updates\KB2497640-IE7\ieakeng.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        132608              c:\windows\ie7updates\KB2497640-IE7\extmgr.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        214528              c:\windows\ie7updates\KB2497640-IE7\dxtrans.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        347136              c:\windows\ie7updates\KB2497640-IE7\dxtmsft.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        124928              c:\windows\ie7updates\KB2497640-IE7\advpack.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        841216              c:\windows\ie7updates\KB2482017-IE7\wininet.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        233472              c:\windows\ie7updates\KB2482017-IE7\webcheck.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        105984              c:\windows\ie7updates\KB2482017-IE7\url.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2482017-IE7\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\ie7updates\KB2482017-IE7\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2010-11-06 00:27        102912              c:\windows\ie7updates\KB2482017-IE7\occache.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        671232              c:\windows\ie7updates\KB2482017-IE7\mstime.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        193024              c:\windows\ie7updates\KB2482017-IE7\msrating.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        478208              c:\windows\ie7updates\KB2482017-IE7\mshtmled.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        468480              c:\windows\ie7updates\KB2482017-IE7\msfeeds.dll
+ 2011-02-10 11:35 . 2010-10-18 10:36        634648              c:\windows\ie7updates\KB2482017-IE7\iexplore.exe
+ 2011-02-10 11:35 . 2010-11-06 00:27        268288              c:\windows\ie7updates\KB2482017-IE7\iertutil.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        193024              c:\windows\ie7updates\KB2482017-IE7\iepeers.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        388608              c:\windows\ie7updates\KB2482017-IE7\iedkcs32.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        380928              c:\windows\ie7updates\KB2482017-IE7\ieapfltr.dll
+ 2011-02-10 11:35 . 2010-10-18 10:34        161792              c:\windows\ie7updates\KB2482017-IE7\ieakui.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        230400              c:\windows\ie7updates\KB2482017-IE7\ieaksie.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        153088              c:\windows\ie7updates\KB2482017-IE7\ieakeng.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        132608              c:\windows\ie7updates\KB2482017-IE7\extmgr.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        214528              c:\windows\ie7updates\KB2482017-IE7\dxtrans.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        347136              c:\windows\ie7updates\KB2482017-IE7\dxtmsft.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        124928              c:\windows\ie7updates\KB2482017-IE7\advpack.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        841216              c:\windows\ie7updates\KB2416400-IE7\wininet.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        233472              c:\windows\ie7updates\KB2416400-IE7\webcheck.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        105984              c:\windows\ie7updates\KB2416400-IE7\url.dll
+ 2010-12-17 02:00 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2416400-IE7\spuninst\updspapi.dll
+ 2010-12-17 02:00 . 2010-02-22 14:22        234872              c:\windows\ie7updates\KB2416400-IE7\spuninst\spuninst.exe
+ 2010-12-17 02:00 . 2010-09-09 13:31        102912              c:\windows\ie7updates\KB2416400-IE7\occache.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        671232              c:\windows\ie7updates\KB2416400-IE7\mstime.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        193024              c:\windows\ie7updates\KB2416400-IE7\msrating.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        478208              c:\windows\ie7updates\KB2416400-IE7\mshtmled.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        468480              c:\windows\ie7updates\KB2416400-IE7\msfeeds.dll
+ 2010-12-17 02:00 . 2010-08-25 11:07        634648              c:\windows\ie7updates\KB2416400-IE7\iexplore.exe
+ 2010-12-17 02:00 . 2010-09-09 13:31        268288              c:\windows\ie7updates\KB2416400-IE7\iertutil.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        193024              c:\windows\ie7updates\KB2416400-IE7\iepeers.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        388608              c:\windows\ie7updates\KB2416400-IE7\iedkcs32.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        380928              c:\windows\ie7updates\KB2416400-IE7\ieapfltr.dll
+ 2010-12-17 02:00 . 2010-08-25 11:06        161792              c:\windows\ie7updates\KB2416400-IE7\ieakui.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        230400              c:\windows\ie7updates\KB2416400-IE7\ieaksie.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        153088              c:\windows\ie7updates\KB2416400-IE7\ieakeng.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        132608              c:\windows\ie7updates\KB2416400-IE7\extmgr.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        214528              c:\windows\ie7updates\KB2416400-IE7\dxtrans.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        347136              c:\windows\ie7updates\KB2416400-IE7\dxtmsft.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        124928              c:\windows\ie7updates\KB2416400-IE7\advpack.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        841216              c:\windows\ie7updates\KB2360131-IE7\wininet.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        233472              c:\windows\ie7updates\KB2360131-IE7\webcheck.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        105984              c:\windows\ie7updates\KB2360131-IE7\url.dll
+ 2010-10-20 13:49 . 2010-07-05 13:14        388984              c:\windows\ie7updates\KB2360131-IE7\spuninst\updspapi.dll
+ 2010-10-20 13:49 . 2010-02-22 14:22        234872              c:\windows\ie7updates\KB2360131-IE7\spuninst\spuninst.exe
+ 2010-10-20 13:49 . 2010-06-24 12:17        102912              c:\windows\ie7updates\KB2360131-IE7\occache.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        671232              c:\windows\ie7updates\KB2360131-IE7\mstime.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        193024              c:\windows\ie7updates\KB2360131-IE7\msrating.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        477696              c:\windows\ie7updates\KB2360131-IE7\mshtmled.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        459264              c:\windows\ie7updates\KB2360131-IE7\msfeeds.dll
+ 2010-10-20 13:49 . 2010-06-17 14:45        634648              c:\windows\ie7updates\KB2360131-IE7\iexplore.exe
+ 2010-10-20 13:49 . 2010-06-24 12:17        268288              c:\windows\ie7updates\KB2360131-IE7\iertutil.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        193024              c:\windows\ie7updates\KB2360131-IE7\iepeers.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        388608              c:\windows\ie7updates\KB2360131-IE7\iedkcs32.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        380928              c:\windows\ie7updates


playmo 28.03.2012 23:30

Code:

\KB2360131-IE7\ieapfltr.dll
+ 2010-10-20 13:49 . 2010-06-17 14:43        161792              c:\windows\ie7updates\KB2360131-IE7\ieakui.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        230400              c:\windows\ie7updates\KB2360131-IE7\ieaksie.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        153088              c:\windows\ie7updates\KB2360131-IE7\ieakeng.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        132608              c:\windows\ie7updates\KB2360131-IE7\extmgr.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        214528              c:\windows\ie7updates\KB2360131-IE7\dxtrans.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        347136              c:\windows\ie7updates\KB2360131-IE7\dxtmsft.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        124928              c:\windows\ie7updates\KB2360131-IE7\advpack.dll
+ 2010-01-17 16:47 . 2011-07-15 13:29        457856              c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2011-05-14 13:00 . 2011-05-14 13:00        609160              c:\windows\assembly\tmp\W4DLSZ8G\Microsoft.Office.Infopath.Client.Internal.Host.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        870256              c:\windows\assembly\tmp\OX6ENV3C\Microsoft.Office.Interop.Word.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        118176              c:\windows\assembly\tmp\IU5GQ1BM\Microsoft.Office.Infopath.Client.Internal.Host.Interop.dll
+ 2011-05-14 13:00 . 2011-05-14 13:00        423784              c:\windows\assembly\tmp\GT4FS5IV\OFFICE.DLL
+ 2011-05-14 13:00 . 2011-05-14 13:00        149352              c:\windows\assembly\tmp\F8KU4FP0\Microsoft.Office.Interop.Graph.dll
+ 2011-05-14 13:01 . 2011-05-14 13:01        350064              c:\windows\assembly\tmp\BLR08GNV\Microsoft.Office.Interop.PowerPoint.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        835584              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_9344f3e0\System.Drawing.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        192512              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_5699fdb0\System.Drawing.Design.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        118784              c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_98622420\CustomMarshalers.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        321536              c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\edc5691acfb65ac37f49de2ec497083a\WsatConfig.ni.exe
+ 2012-03-06 21:05 . 2012-03-06 21:05        240128              c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\4ad8369d6a60765d7e9b43cdf9023f41\WindowsFormsIntegration.ni.dll
+ 2011-10-13 16:34 . 2011-10-13 16:34        187904              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\f102afdffdbe2565bcedb7fa0626b865\UIAutomationTypes.ni.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        447488              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\68f4157e570c77df653057c0583395bd\UIAutomationClient.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        400896              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\c2a12bd4056b44f8005a7eb3af161e6a\System.Xml.Linq.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        129536              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\fc63b434b2f253cd27625487f7b02ac0\System.Web.Routing.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        202240              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\67877f896b2b0e42286e838fe307f3fd\System.Web.RegularExpressions.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        859648              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\86650d4fb220f94f25bb5da42a03d454\System.Web.Extensions.Design.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        328704              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\654465871e547e131668874de7c60b8c\System.Web.Entity.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        301056              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\f0d6895f6e709d425cb5da6053c603d2\System.Web.Entity.Design.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        547328              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\3f3b7dc7208e302e39a2dfb5b2cb953b\System.Web.DynamicData.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        141312              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\e9cddd213343f15d611b14620d649bb0\System.Web.Abstractions.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        627200              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\f25d114cb629d1f512f98883c6535a75\System.Transactions.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        212992              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\11dcb806c92f55111f5fa9f1a90e3bdd\System.ServiceProcess.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        679936              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\5fb9981f4147b537b53be9d58bf4e9b4\System.Security.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        311296              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\1335dd98ce5ce22ad1f51cc274ca5a1d\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        621056              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\a4b2b1ee81acd843970d9a81b281f1c1\System.Net.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        998400              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\a2a14380e8c9149d5b212d0100ef588a\System.Management.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        330752              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\e3436edde657a5111d39d5b2eecf9715\System.Management.Instrumentation.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        381440              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\974ded7dd3bca225a1b90de778846c78\System.IO.Log.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        212992              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\01eba24390736a59c39becd825b5756e\System.IdentityModel.Selectors.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        280064              c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\c0d15fb6308587fef8744d568e64bcda\System.EnterpriseServices.Wrapper.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        627712              c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\c0d15fb6308587fef8744d568e64bcda\System.EnterpriseServices.ni.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        208384              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\e9ae7ae6d1e9edc7aaf819889cd1c692\System.Drawing.Design.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        455680              c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\78a370dc153011708dd9e4cb0e606bfc\System.DirectoryServices.Protocols.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        881152              c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\6e644fc7464d9fe23fc9cd6001296f2f\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        939008              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\bac39be66bb9f987c1948b766833f8e6\System.Data.Services.Client.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        354816              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\2b5ecd231320e57010043c408783d80b\System.Data.Services.Design.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        756736              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\4ac9ac2326720485aefd4d79d2024945\System.Data.Entity.Design.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        135680              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\d504d550fd0a6994fcb1466ea7be92af\System.Data.DataSetExtensions.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        971264              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\94a40f415bfa947e251888bbe88bb973\System.Configuration.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        141312              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\28637135c6939e74450bbbf110b12643\System.Configuration.Install.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        633856              c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\958b5c0114d664ab5ba72575c301e2ea\System.AddIn.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        366080              c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\4dcff3b0e79fc27e31549bb2af00efb5\SMSvcHost.ni.exe
+ 2012-03-06 21:07 . 2012-03-06 21:07        256000              c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\bd3bfd5b6ef659dac4d6cccb34577d33\SMDiagnostics.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        320512              c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\edec83be646eb52204c991371751a428\ServiceModelReg.ni.exe
+ 2012-03-06 21:04 . 2012-03-06 21:04        258048              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\52015457bc28e7a9a563d9eab8ab0015\PresentationFramework.Royale.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        224768              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\46a680814559114706a33282e9df4b7a\PresentationFramework.Classic.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        368128              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\2713754549b1114c9152d33efe5f72c7\PresentationFramework.Aero.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        539648              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\1552f18ca434c1dca6d082df476d089a\PresentationFramework.Luna.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        599552              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.SystemL#\ada1bddaf86090324aa55c461ac3ec53\PaintDotNet.SystemLayer.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        322048              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.Resourc#\15d8df06c713860d9ccddf29ea3bdb71\PaintDotNet.Resources.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        640512              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.Effects\0d3e515766b4c2e58e964e4fa186a1b9\PaintDotNet.Effects.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        694784              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.Data\c4394795b8eb0551a45aebc1a2158a4f\PaintDotNet.Data.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        227328              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.Base\35f3770b8bbea0c7d23e31bd26499e7b\PaintDotNet.Base.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        133632              c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\7c51497b188c82e2ccbe6315549ce023\MSBuild.ni.exe
+ 2012-03-06 21:07 . 2012-03-06 21:07        386560              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\f0f6dd614d294295c5d8386cc4192034\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        144384              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\fd1338828beec8737fed8f50f4fcc567\Microsoft.Build.Utilities.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        175104              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\0d5f999c4b7e51151548c37c676c1b8e\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        839680              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\792168ce8fe03a3db43e12cf736cf91e\Microsoft.Build.Engine.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        222720              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\0a5277c34ddc1f55df1defb4231e814f\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        504320              c:\windows\assembly\NativeImages_v2.0.50727_32\ICSharpCode.SharpZi#\24285692f79ac3a520de2a9fd82890ef\ICSharpCode.SharpZipLib.ni.dll
+ 2011-10-13 16:49 . 2011-10-13 16:49        220672              c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\3e6deccf191ab943d3a0812a38ab5c97\CustomMarshalers.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        410112              c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\a8df37aadb089f1f34d3d2f103966fbc\ComSvcConfig.ni.exe
+ 2012-03-06 21:06 . 2012-03-06 21:06        842240              c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\25ce400b547f517258c8afb0480390ea\AspNetMMCExt.ni.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        839680              c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        839680              c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        835584              c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        835584              c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        114688              c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        114688              c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        258048              c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        258048              c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        131072              c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        131072              c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        303104              c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        303104              c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        258048              c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        258048              c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        372736              c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        372736              c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        626688              c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        626688              c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        401408              c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        401408              c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        188416              c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        188416              c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        970752              c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        970752              c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        745472              c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        745472              c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        425984              c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        425984              c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        110592              c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        110592              c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        330520              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Blueprints\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Blueprints.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        105248              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInManager\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInManager.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        211736              c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        659456              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        659456              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        372736              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        372736              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        110592              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        110592              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        608136              c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Client.Internal.Host\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        749568              c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        749568              c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        655360              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        655360              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        348160              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        348160              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        507904              c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        507904              c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        261632              c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        261632              c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        113664              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        113664              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        258048              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        258048              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        486400              c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        486400              c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        367400              c:\windows\assembly\GAC_32\Microsoft.VisualStudio.Tools.Applications.InteropAdapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.InteropAdapter.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        117160              c:\windows\assembly\GAC_32\Microsoft.Office.InfoPath.Client.Internal.Host.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.Interop.dll
+ 2011-05-21 09:29 . 2011-05-21 09:29        423784              c:\windows\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\OFFICE.DLL
+ 2011-03-28 17:34 . 2011-03-28 17:34        229376              c:\windows\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\MSCOMCTL.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        371496              c:\windows\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.Forms.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        870256              c:\windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Word.dll
+ 2011-03-28 17:33 . 2011-03-28 17:33        232248              c:\windows\assembly\GAC\Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Publisher.dll
+ 2011-12-16 00:01 . 2011-12-16 00:01        350080              c:\windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.PowerPoint.dll
+ 2011-03-28 17:33 . 2011-03-28 17:33        920376              c:\windows\assembly\GAC\Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Outlook.dll
+ 2011-03-28 17:33 . 2011-03-28 17:33        146232              c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        404296              c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.SemiTrust\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.SemiTrust.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        149368              c:\windows\assembly\GAC\Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Graph.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        110592              c:\windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll
+ 2010-09-14 21:33 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB982802$\spuninst\updspapi.dll
+ 2010-09-14 21:33 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB982802$\spuninst\spuninst.exe
+ 2010-09-14 21:33 . 2009-04-15 14:51        585216              c:\windows\$NtUninstallKB982802$\rpcrt4.dll
+ 2010-10-20 13:49 . 2009-10-15 16:28        119808              c:\windows\$NtUninstallKB982132$\t2embed.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB982132$\spuninst\updspapi.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB982132$\spuninst\spuninst.exe
+ 2010-10-20 13:49 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB981957$\spuninst\updspapi.dll
+ 2010-10-20 13:49 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB981957$\spuninst\spuninst.exe
+ 2010-09-14 21:33 . 2008-04-14 05:52        406016              c:\windows\$NtUninstallKB981322$\usp10.dll
+ 2010-09-14 21:33 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB981322$\spuninst\updspapi.dll
+ 2010-09-14 21:33 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB981322$\spuninst\spuninst.exe
+ 2010-10-20 13:49 . 2008-04-21 21:13        217600              c:\windows\$NtUninstallKB979687$\wordpad.exe
+ 2010-10-20 13:49 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB979687$\spuninst\updspapi.dll
+ 2010-10-20 13:49 . 2009-05-26 09:01        234872              c:\windows\$NtUninstallKB979687$\spuninst\spuninst.exe
+ 2010-09-15 22:19 . 2007-07-27 21:11        382840              c:\windows\$NtUninstallKB975558_WM8$\spuninst\updspapi.dll
+ 2010-09-15 22:19 . 2007-07-27 18:46        234872              c:\windows\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe
+ 2010-09-15 22:19 . 2008-08-01 20:24        317440              c:\windows\$NtUninstallKB975558_WM8$\mp4sdecd.dll
+ 2011-03-16 11:58 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB971029$\spuninst\updspapi.dll
+ 2011-03-16 11:58 . 2008-07-08 13:00        234872              c:\windows\$NtUninstallKB971029$\spuninst\spuninst.exe
+ 2011-03-16 11:58 . 2008-04-14 05:52        135168              c:\windows\$NtUninstallKB971029$\shsvcs.dll
+ 2012-01-11 00:15 . 2011-06-20 17:43        293888              c:\windows\$NtUninstallKB2646524$\winsrv.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2646524$\spuninst\updspapi.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2646524$\spuninst\spuninst.exe
+ 2011-11-12 12:49 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2641690$\spuninst\updspapi.dll
+ 2011-11-12 12:49 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2641690$\spuninst\spuninst.exe
+ 2011-11-12 12:49 . 2011-09-09 09:11        604160              c:\windows\$NtUninstallKB2641690$\crypt32.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2639417$\spuninst\updspapi.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2639417$\spuninst\spuninst.exe
+ 2011-12-15 23:59 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2633952$\spuninst\updspapi.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2633952$\spuninst\spuninst.exe
+ 2011-12-15 23:58 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2633171$\spuninst\updspapi.dll
+ 2011-12-15 23:58 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2633171$\spuninst\spuninst.exe
+ 2012-01-11 00:15 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2631813$\spuninst\updspapi.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2631813$\spuninst\spuninst.exe
+ 2012-01-11 00:15 . 2008-04-14 05:52        387072              c:\windows\$NtUninstallKB2631813$\qdvd.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2624667$\spuninst\updspapi.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2624667$\spuninst\spuninst.exe
+ 2011-12-15 23:58 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2620712$\spuninst\updspapi.dll
+ 2011-12-15 23:58 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2620712$\spuninst\spuninst.exe
+ 2011-12-15 23:59 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2619339$\spuninst\updspapi.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2619339$\spuninst\spuninst.exe
+ 2011-12-15 23:59 . 2011-02-09 13:53        186880              c:\windows\$NtUninstallKB2619339$\encdec.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2618451$\spuninst\updspapi.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2618451$\spuninst\spuninst.exe
+ 2011-09-24 08:34 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2616676-v2$\spuninst\updspapi.dll
+ 2011-09-24 08:34 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2616676-v2$\spuninst\spuninst.exe
+ 2011-09-24 08:34 . 2011-09-03 10:17        604160              c:\windows\$NtUninstallKB2616676-v2$\crypt32.dll
+ 2011-09-07 12:10 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2607712$\spuninst\updspapi.dll
+ 2011-09-07 12:10 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2607712$\spuninst\spuninst.exe
+ 2011-09-07 12:10 . 2008-04-14 05:52        604160              c:\windows\$NtUninstallKB2607712$\crypt32.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2603381$\spuninst\updspapi.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2603381$\spuninst\spuninst.exe
+ 2012-01-11 00:15 . 2008-04-14 05:52        178176              c:\windows\$NtUninstallKB2598479$\winmm.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2598479$\spuninst\updspapi.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2598479$\spuninst\spuninst.exe
+ 2011-10-13 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2592799$\spuninst\updspapi.dll
+ 2011-10-13 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2592799$\spuninst\spuninst.exe
+ 2011-10-13 11:35 . 2011-02-16 13:25        138496              c:\windows\$NtUninstallKB2592799$\afd.sys
+ 2012-01-11 11:04 . 2009-08-25 09:17        354816              c:\windows\$NtUninstallKB2585542$\winhttp.dll
+ 2012-01-11 11:04 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2585542$\spuninst\updspapi.dll
+ 2012-01-11 11:04 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2585542$\spuninst\spuninst.exe
+ 2012-01-11 11:04 . 2011-04-29 17:23        151552              c:\windows\$NtUninstallKB2585542$\schannel.dll
+ 2012-01-11 00:14 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2584146$\spuninst\updspapi.dll
+ 2012-01-11 00:14 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2584146$\spuninst\spuninst.exe
+ 2011-09-24 08:34 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2570947$\spuninst\updspapi.dll
+ 2011-09-24 08:34 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2570947$\spuninst\spuninst.exe
+ 2011-08-28 17:25 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2570791$\spuninst\updspapi.dll
+ 2011-08-28 17:25 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2570791$\spuninst\spuninst.exe
+ 2011-08-10 21:22 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2570222$\spuninst\updspapi.dll
+ 2011-08-10 21:22 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2570222$\spuninst\spuninst.exe
+ 2011-08-10 21:22 . 2008-04-14 05:53        139656              c:\windows\$NtUninstallKB2570222$\rdpwd.sys
+ 2011-08-10 21:23 . 2011-04-26 11:02        293888              c:\windows\$NtUninstallKB2567680$\winsrv.dll
+ 2011-08-10 21:23 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2567680$\spuninst\updspapi.dll
+ 2011-08-10 21:23 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2567680$\spuninst\spuninst.exe
+ 2011-10-13 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2567053$\spuninst\updspapi.dll
+ 2011-10-13 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2567053$\spuninst\spuninst.exe
+ 2011-08-10 21:21 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2566454$\spuninst\updspapi.dll
+ 2011-08-10 21:21 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2566454$\spuninst\spuninst.exe
+ 2011-10-13 11:37 . 2007-10-09 11:03        161304              c:\windows\$NtUninstallKB2564958$\uiautomationcore.dll
+ 2011-10-13 11:37 . 2011-08-12 11:51        388984              c:\windows\$NtUninstallKB2564958$\spuninst\updspapi.dll
+ 2011-10-13 11:37 . 2011-08-12 11:51        234872              c:\windows\$NtUninstallKB2564958$\spuninst\spuninst.exe
+ 2011-10-13 11:37 . 2004-08-04 12:00        163328              c:\windows\$NtUninstallKB2564958$\oleacc.dll
+ 2011-08-10 14:03 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2562937$\spuninst\updspapi.dll
+ 2011-08-10 14:03 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2562937$\spuninst\spuninst.exe
+ 2011-07-12 18:58 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2555917$\spuninst\updspapi.dll
+ 2011-07-12 18:58 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2555917$\spuninst\spuninst.exe
+ 2011-06-19 01:01 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2544893$\spuninst\updspapi.dll
+ 2011-06-19 01:01 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2544893$\spuninst\spuninst.exe
+ 2011-06-19 01:01 . 2011-03-07 05:33        692736              c:\windows\$NtUninstallKB2544893$\inetcomm.dll
+ 2011-11-09 23:34 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2544893-v2$\spuninst\updspapi.dll
+ 2011-11-09 23:34 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2544893-v2$\spuninst\spuninst.exe
+ 2011-11-09 23:34 . 2011-05-02 15:31        692736              c:\windows\$NtUninstallKB2544893-v2$\inetcomm.dll
+ 2011-06-29 19:59 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2541763$\spuninst\updspapi.dll
+ 2011-06-29 19:59 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2541763$\spuninst\spuninst.exe
+ 2011-06-29 19:59 . 2010-06-30 12:23        149504              c:\windows\$NtUninstallKB2541763$\schannel.dll
+ 2011-06-19 01:01 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2536276$\spuninst\updspapi.dll
+ 2011-06-19 01:01 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2536276$\spuninst\spuninst.exe
+ 2011-06-19 01:01 . 2011-02-17 13:19        457472              c:\windows\$NtUninstallKB2536276$\mrxsmb.sys
+ 2011-08-10 21:22 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2536276-v2$\spuninst\updspapi.dll
+ 2011-08-10 21:22 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2536276-v2$\spuninst\spuninst.exe
+ 2011-08-10 21:22 . 2011-04-29 16:47        457856              c:\windows\$NtUninstallKB2536276-v2$\mrxsmb.sys
+ 2011-06-19 01:02 . 2010-07-05 13:14        388984              c:\windows
\$NtUninstallKB2535512$\spuninst\updspapi.dll
+ 2011-06-19 01:02 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2535512$\spuninst\spuninst.exe
+ 2011-06-19 01:02 . 2008-08-01 17:59        105344              c:\windows\$NtUninstallKB2535512$\mup.sys
+ 2011-03-27 01:32 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2524375$\spuninst\updspapi.dll
+ 2011-03-27 01:32 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2524375$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2511455$\spuninst\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2511455$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2010-02-24 11:57        457216              c:\windows\$NtUninstallKB2511455$\mrxsmb.sys
+ 2011-04-23 12:27 . 2010-03-09 11:07        430080              c:\windows\$NtUninstallKB2510581$\vbscript.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2510581$\spuninst\updspapi.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2510581$\spuninst\spuninst.exe
+ 2011-04-23 12:27 . 2009-08-13 15:15        512000              c:\windows\$NtUninstallKB2510581$\jscript.dll
+ 2011-04-15 22:38 . 2008-08-01 20:25        361600              c:\windows\$NtUninstallKB2509553$\tcpip.sys
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2509553$\spuninst\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2509553$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2008-08-01 17:58        147968              c:\windows\$NtUninstallKB2509553$\dnsapi.dll
+ 2011-04-15 22:38 . 2008-08-14 10:34        138496              c:\windows\$NtUninstallKB2509553$\afd.sys
+ 2011-04-15 22:38 . 2010-08-26 13:39        357248              c:\windows\$NtUninstallKB2508429$\srv.sys
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2508429$\spuninst\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2508429$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2508272$\spuninst\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2508272$\spuninst\spuninst.exe
+ 2011-07-12 18:59 . 2010-06-18 17:43        293888              c:\windows\$NtUninstallKB2507938$\winsrv.dll
+ 2011-07-12 18:59 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2507938$\spuninst\updspapi.dll
+ 2011-07-12 18:59 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2507938$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2507618$\spuninst\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2507618$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2011-01-07 14:09        290048              c:\windows\$NtUninstallKB2507618$\atmfd.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2506223$\spuninst\updspapi.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2506223$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2506212$\spuninst\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2506212$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2010-09-18 10:22        974848              c:\windows\$NtUninstallKB2506212$\mfc42u.dll
+ 2011-04-15 22:38 . 2010-09-18 06:52        974848              c:\windows\$NtUninstallKB2506212$\mfc42.dll
+ 2011-06-19 01:02 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2503665$\spuninst\updspapi.dll
+ 2011-06-19 01:02 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2503665$\spuninst\spuninst.exe
+ 2011-06-19 01:02 . 2008-10-16 15:07        138496              c:\windows\$NtUninstallKB2503665$\afd.sys
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2503658$\spuninst\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2503658$\spuninst\spuninst.exe
+ 2011-04-15 22:38 . 2010-06-09 07:43        692736              c:\windows\$NtUninstallKB2503658$\inetcomm.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2485663$\spuninst\updspapi.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2485663$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2485376$\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2485376$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2010-10-28 13:08        290048              c:\windows\$NtUninstallKB2485376$\atmfd.dll
+ 2011-02-10 11:35 . 2010-07-05 17:44        388984              c:\windows\$NtUninstallKB2483185$\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2483185$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2008-04-14 05:52        439808              c:\windows\$NtUninstallKB2483185$\shimgvw.dll
+ 2011-03-10 12:57 . 2010-07-05 17:44        388984              c:\windows\$NtUninstallKB2481109$\spuninst\updspapi.dll
+ 2011-03-10 12:57 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2481109$\spuninst\spuninst.exe
+ 2011-03-10 12:57 . 2008-04-14 05:52        677888              c:\windows\$NtUninstallKB2481109$\mstsc.exe
+ 2011-03-28 14:40 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2479943$\spuninst\updspapi.dll
+ 2011-03-28 14:40 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2479943$\spuninst\spuninst.exe
+ 2011-03-28 14:40 . 2008-04-14 05:52        270848              c:\windows\$NtUninstallKB2479943$\sbe.dll
+ 2011-03-28 14:40 . 2008-04-14 05:52        186880              c:\windows\$NtUninstallKB2479943$\encdec.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2479628$\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2479628$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2478971$\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2478971$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2009-06-25 08:41        301568              c:\windows\$NtUninstallKB2478971$\kerberos.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2478960$\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2478960$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2009-06-26 14:11        737792              c:\windows\$NtUninstallKB2478960$\lsasrv.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2476687$\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2476687$\spuninst\spuninst.exe
+ 2011-06-19 01:02 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2476490$\spuninst\updspapi.dll
+ 2011-06-19 01:02 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2476490$\spuninst\spuninst.exe
+ 2011-06-19 01:02 . 2008-04-14 05:52        551936              c:\windows\$NtUninstallKB2476490$\oleaut32.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2467659$\spuninst\updspapi.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2467659$\spuninst\spuninst.exe
+ 2010-12-17 02:01 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB2443685$\spuninst\updspapi.dll
+ 2010-12-17 02:01 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB2443685$\spuninst\spuninst.exe
+ 2010-12-17 02:01 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2443105$\spuninst\updspapi.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2443105$\spuninst\spuninst.exe
+ 2010-12-17 02:01 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB2440591$\spuninst\updspapi.dll
+ 2010-12-17 02:01 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB2440591$\spuninst\spuninst.exe
+ 2010-12-17 02:01 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB2436673$\spuninst\updspapi.dll
+ 2010-12-17 02:01 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB2436673$\spuninst\spuninst.exe
+ 2010-12-17 02:00 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2423089$\spuninst\updspapi.dll
+ 2010-12-17 02:00 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2423089$\spuninst\spuninst.exe
+ 2011-01-14 01:20 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2419632$\spuninst\updspapi.dll
+ 2011-01-14 01:20 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2419632$\spuninst\spuninst.exe
+ 2011-01-14 01:20 . 2008-08-01 17:59        249856              c:\windows\$NtUninstallKB2419632$\odbc32.dll
+ 2011-01-14 01:20 . 2008-04-14 05:52        102400              c:\windows\$NtUninstallKB2419632$\msjro.dll
+ 2011-01-14 01:20 . 2008-04-14 05:52        200704              c:\windows\$NtUninstallKB2419632$\msadox.dll
+ 2011-01-14 01:20 . 2008-04-14 05:52        180224              c:\windows\$NtUninstallKB2419632$\msadomd.dll
+ 2011-01-14 01:20 . 2008-04-14 05:52        536576              c:\windows\$NtUninstallKB2419632$\msado15.dll
+ 2011-01-14 01:20 . 2008-04-14 05:52        143360              c:\windows\$NtUninstallKB2419632$\msadco.dll
+ 2011-04-23 12:26 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB2412687$\spuninst\updspapi.dll
+ 2011-04-23 12:26 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB2412687$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2393802$\spuninst\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$NtUninstallKB2393802$\spuninst\spuninst.exe
+ 2011-02-10 11:35 . 2009-02-09 10:54        740864              c:\windows\$NtUninstallKB2393802$\ntdll.dll
+ 2010-10-20 13:50 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2387149$\spuninst\updspapi.dll
+ 2010-10-20 13:50 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2387149$\spuninst\spuninst.exe
+ 2010-10-20 13:50 . 2007-04-03 06:44        981760              c:\windows\$NtUninstallKB2387149$\mfc42u.dll
+ 2010-10-20 13:50 . 2008-04-14 05:52        927504              c:\windows\$NtUninstallKB2387149$\mfc40u.dll
+ 2010-10-20 13:50 . 2004-08-04 12:00        924432              c:\windows\$NtUninstallKB2387149$\mfc40.dll
+ 2010-10-20 13:49 . 2007-07-27 21:11        382840              c:\windows\$NtUninstallKB2378111_WM9$\spuninst\updspapi.dll
+ 2010-10-20 13:49 . 2007-07-27 18:46        234872              c:\windows\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe
+ 2010-10-20 13:49 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2360937$\spuninst\updspapi.dll
+ 2010-10-20 13:49 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2360937$\spuninst\spuninst.exe
+ 2010-10-20 13:49 . 2010-07-22 15:48        590848              c:\windows\$NtUninstallKB2360937$\rpcrt4.dll
+ 2010-09-15 22:19 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB2347290$\spuninst\updspapi.dll
+ 2010-09-15 22:19 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB2347290$\spuninst\spuninst.exe
+ 2010-10-20 13:50 . 2010-06-21 15:27        354304              c:\windows\$NtUninstallKB2345886$\srv.sys
+ 2010-10-20 13:50 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2345886$\spuninst\updspapi.dll
+ 2010-10-20 13:50 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2345886$\spuninst\spuninst.exe
+ 2010-12-17 02:01 . 2009-05-26 11:40        388984              c:\windows\$NtUninstallKB2296199$\spuninst\updspapi.dll
+ 2010-12-17 02:01 . 2009-05-26 11:40        234872              c:\windows\$NtUninstallKB2296199$\spuninst\spuninst.exe
+ 2010-12-17 02:01 . 2010-09-01 11:48        285824              c:\windows\$NtUninstallKB2296199$\atmfd.dll
+ 2010-10-20 13:49 . 2009-05-26 09:01        388984              c:\windows\$NtUninstallKB2296011$\spuninst\updspapi.dll
+ 2010-10-20 13:49 . 2009-05-26 09:01        234872              c:\windows\$NtUninstallKB2296011$\spuninst\spuninst.exe
+ 2010-10-20 13:49 . 2008-04-14 05:52        617472              c:\windows\$NtUninstallKB2296011$\comctl32.dll
+ 2010-10-20 13:50 . 2010-07-05 13:14        388984              c:\windows\$NtUninstallKB2279986$\spuninst\updspapi.dll
+ 2010-10-20 13:50 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2279986$\spuninst\spuninst.exe
+ 2010-10-20 13:50 . 2010-04-20 05:37        285824              c:\windows\$NtUninstallKB2279986$\atmfd.dll
+ 2010-09-15 22:19 . 2009-05-26 09:01        388984              c:\windows\$NtUninstallKB2259922$\spuninst\updspapi.dll
+ 2010-09-15 22:19 . 2009-05-26 09:01        234872              c:\windows\$NtUninstallKB2259922$\spuninst\spuninst.exe
+ 2010-10-01 22:30 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2158563$\spuninst\updspapi.dll
+ 2010-10-01 22:30 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2158563$\spuninst\spuninst.exe
+ 2010-09-14 21:33 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2141007$\spuninst\updspapi.dll
+ 2010-09-14 21:33 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2141007$\spuninst\spuninst.exe
+ 2010-09-14 21:33 . 2010-01-29 14:59        691712              c:\windows\$NtUninstallKB2141007$\inetcomm.dll
+ 2010-09-15 12:59 . 2008-08-01 17:59        293888              c:\windows\$NtUninstallKB2121546$\winsrv.dll
+ 2010-09-15 12:59 . 2010-02-22 14:22        388984              c:\windows\$NtUninstallKB2121546$\spuninst\updspapi.dll
+ 2010-09-15 12:59 . 2010-02-22 14:22        234872              c:\windows\$NtUninstallKB2121546$\spuninst\spuninst.exe
+ 2010-09-14 21:33 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB982802\update\updspapi.dll
+ 2010-09-14 21:33 . 2010-02-22 14:21        765304              c:\windows\$hf_mig$\KB982802\update\update.exe
+ 2010-09-14 21:33 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB982802\spuninst.exe
+ 2010-09-14 19:44 . 2010-07-23 06:13        590848              c:\windows\$hf_mig$\KB982802\SP3QFE\rpcrt4.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        388984              c:\windows\$hf_mig$\KB982132\update\updspapi.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        765304              c:\windows\$hf_mig$\KB982132\update\update.exe
+ 2010-10-20 13:49 . 2009-05-26 11:40        234872              c:\windows\$hf_mig$\KB982132\spuninst.exe
+ 2010-10-20 12:41 . 2010-08-27 07:58        119808              c:\windows\$hf_mig$\KB982132\SP3QFE\t2embed.dll
+ 2010-09-14 21:33 . 2009-05-26 11:40        388984              c:\windows\$hf_mig$\KB981322\update\updspapi.dll
+ 2010-09-14 21:33 . 2009-05-26 11:40        765304              c:\windows\$hf_mig$\KB981322\update\update.exe
+ 2010-09-14 21:33 . 2009-05-26 11:40        234872              c:\windows\$hf_mig$\KB981322\spuninst.exe
+ 2010-09-14 19:44 . 2010-04-16 15:29        406016              c:\windows\$hf_mig$\KB981322\SP3QFE\usp10.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        388984              c:\windows\$hf_mig$\KB979687\update\updspapi.dll
+ 2010-10-20 13:49 . 2009-05-26 11:40        765304              c:\windows\$hf_mig$\KB979687\update\update.exe
+ 2010-10-20 13:49 . 2009-05-26 09:01        234872              c:\windows\$hf_mig$\KB979687\spuninst.exe
+ 2010-07-16 12:00 . 2010-07-16 12:00        220160              c:\windows\$hf_mig$\KB979687\SP3QFE\wordpad.exe
+ 2011-03-16 11:58 . 2009-05-26 11:40        388984              c:\windows\$hf_mig$\KB971029\update\updspapi.dll
+ 2011-03-16 11:58 . 2009-05-26 11:40        765304              c:\windows\$hf_mig$\KB971029\update\update.exe
+ 2011-03-16 11:58 . 2008-07-08 13:00        234872              c:\windows\$hf_mig$\KB971029\spuninst.exe
+ 2011-03-05 12:25 . 2009-07-27 22:09        135680              c:\windows\$hf_mig$\KB971029\SP3QFE\shsvcs.dll
+ 2011-11-12 12:49 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2641690\update\updspapi.dll
+ 2011-11-12 12:49 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2641690\update\update.exe
+ 2011-11-12 12:49 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2641690\spuninst.exe
+ 2011-11-12 12:19 . 2011-09-28 07:05        604672              c:\windows\$hf_mig$\KB2641690\SP3QFE\crypt32.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2624667\update\updspapi.dll
+ 2011-12-16 00:01 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2624667\update\update.exe
+ 2011-12-16 00:01 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2624667\spuninst.exe
+ 2011-12-15 23:59 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2619339\update\updspapi.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2619339\update\update.exe
+ 2011-12-15 23:59 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2619339\spuninst.exe
+ 2011-12-15 19:52 . 2011-10-18 11:12        186880              c:\windows\$hf_mig$\KB2619339\SP3QFE\encdec.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2618451\update\updspapi.dll
+ 2011-12-15 23:59 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2618451\update\update.exe
+ 2011-12-15 23:59 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2618451\spuninst.exe
+ 2011-09-24 08:34 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2616676-v2\update\updspapi.dll
+ 2011-09-24 08:34 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2616676-v2\update\update.exe
+ 2011-09-24 08:34 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2616676-v2\spuninst.exe
+ 2011-09-23 14:43 . 2011-09-09 09:10        604672              c:\windows\$hf_mig$\KB2616676-v2\SP3QFE\crypt32.dll
+ 2011-09-07 12:10 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2607712\update\updspapi.dll
+ 2011-09-07 12:10 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2607712\update\update.exe
+ 2011-09-07 12:10 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2607712\spuninst.exe
+ 2011-09-07 07:43 . 2011-09-03 10:16        604672              c:\windows\$hf_mig$\KB2607712\SP3QFE\crypt32.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2603381\update\updspapi.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2603381\update\update.exe
+ 2012-01-11 00:15 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2603381\spuninst.exe
+ 2012-01-11 00:15 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2598479\update\updspapi.dll
+ 2012-01-11 00:15 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2598479\update\update.exe
+ 2012-01-11 00:15 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2598479\spuninst.exe
+ 2012-01-10 18:35 . 2011-10-14 14:45        178176              c:\windows\$hf_mig$\KB2598479\SP3QFE\winmm.dll
+ 2012-01-11 00:14 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2584146\update\updspapi.dll
+ 2012-01-11 00:14 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2584146\update\update.exe
+ 2012-01-11 00:14 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2584146\spuninst.exe
+ 2011-09-24 08:34 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2570947\update\updspapi.dll
+ 2011-09-24 08:34 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2570947\update\update.exe
+ 2011-09-24 08:34 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2570947\spuninst.exe
+ 2011-08-10 21:22 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2570222\update\updspapi.dll
+ 2011-08-10 21:22 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2570222\update\update.exe
+ 2011-08-10 21:22 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2570222\spuninst.exe
+ 2011-08-10 13:23 . 2011-06-24 14:09        139656              c:\windows\$hf_mig$\KB2570222\SP3QFE\rdpwd.sys
+ 2011-08-10 21:21 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2566454\update\updspapi.dll
+ 2011-08-10 21:21 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2566454\update\update.exe
+ 2011-08-10 21:21 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2566454\spuninst.exe
+ 2011-08-10 14:03 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2562937\update\updspapi.dll
+ 2011-08-10 14:03 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2562937\update\update.exe
+ 2011-08-10 14:03 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2562937\spuninst.exe
+ 2011-06-19 01:01 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2544893\update\updspapi.dll
+ 2011-06-19 01:01 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2544893\update\update.exe
+ 2011-06-19 01:01 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2544893\spuninst.exe
+ 2011-06-18 15:06 . 2011-05-02 15:30        692736              c:\windows\$hf_mig$\KB2544893\SP3QFE\inetcomm.dll
+ 2011-11-09 23:34 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2544893-v2\update\updspapi.dll
+ 2011-11-09 23:34 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2544893-v2\update\update.exe
+ 2011-11-09 23:34 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2544893-v2\spuninst.exe
+ 2011-11-09 20:24 . 2011-10-10 14:21        692736              c:\windows\$hf_mig$\KB2544893-v2\SP3QFE\inetcomm.dll
+ 2011-06-19 01:04 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2544521-IE7\update\updspapi.dll
+ 2011-06-19 01:04 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2544521-IE7\update\update.exe
+ 2011-06-19 01:04 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2544521-IE7\spuninst.exe
+ 2011-06-18 15:06 . 2011-04-30 08:49        766464              c:\windows\$hf_mig$\KB2544521-IE7\SP3QFE\vgx.dll
+ 2011-03-27 01:32 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2524375\update\updspapi.dll
+ 2011-03-27 01:32 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2524375\update\update.exe
+ 2011-03-27 01:32 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2524375\spuninst.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2508429\update\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2508429\update\update.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2508429\spuninst.exe
+ 2011-04-15 07:07 . 2011-02-17 13:19        357888              c:\windows\$hf_mig$\KB2508429\SP3QFE\srv.sys
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2508272\update\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2508272\update\update.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2508272\spuninst.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2506212\update\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2506212\update\update.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2506212\spuninst.exe
+ 2011-04-15 07:07 . 2011-02-08 13:32        974848              c:\windows\$hf_mig$\KB2506212\SP3QFE\mfc42u.dll
+ 2011-04-15 07:07 . 2011-02-08 13:32        978944              c:\windows\$hf_mig$\KB2506212\SP3QFE\mfc42.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2503658\update\updspapi.dll
+ 2011-04-15 22:38 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2503658\update\update.exe
+ 2011-04-15 22:38 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2503658\spuninst.exe
+ 2011-04-15 07:07 . 2011-03-07 05:31        692736              c:\windows\$hf_mig$\KB2503658\SP3QFE\inetcomm.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2485663\update\updspapi.dll
+ 2011-04-23 12:27 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2485663\update\update.exe
+ 2011-04-23 12:27 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2485663\spuninst.exe
+ 2011-02-10 11:35 . 2010-07-05 17:44        388984              c:\windows\$hf_mig$\KB2483185\update\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2483185\update\update.exe
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2483185\spuninst.exe
+ 2011-02-09 22:53 . 2011-01-21 14:42        441344              c:\windows\$hf_mig$\KB2483185\SP3QFE\shimgvw.dll
+ 2011-03-10 12:57 . 2010-07-05 17:44        388984              c:\windows\$hf_mig$\KB2481109\update\updspapi.dll
+ 2011-03-10 12:57 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2481109\update\update.exe
+ 2011-03-10 12:57 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2481109\spuninst.exe
+ 2011-03-10 00:03 . 2011-01-27 11:41        677888              c:\windows\$hf_mig$\KB2481109\SP3QFE\lhmstsc.exe
+ 2011-03-10 00:03 . 2011-02-02 07:57        136192              c:\windows\$hf_mig$\KB2481109\SP3QFE\aaclient.dll
+ 2011-03-28 14:40 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2479943\update\updspapi.dll
+ 2011-03-28 14:40 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2479943\update\update.exe
+ 2011-03-28 14:40 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2479943\spuninst.exe
+ 2011-03-10 00:03 . 2011-02-09 13:52        270848              c:\windows\$hf_mig$\KB2479943\SP3QFE\sbe.dll
+ 2011-03-10 00:03 . 2011-02-09 13:52        186880              c:\windows\$hf_mig$\KB2479943\SP3QFE\encdec.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2476687\update\updspapi.dll
+ 2011-02-10 11:35 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2476687\update\update.exe
+ 2011-02-10 11:35 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2476687\spuninst.exe
+ 2011-06-19 01:02 . 2010-07-05 13:14        388984              c:\windows\$hf_mig$\KB2476490\update\updspapi.dll
+ 2011-06-19 01:02 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2476490\update\update.exe
+ 2011-06-19 01:02 . 2010-07-05 13:14        234872              c:\windows\$hf_mig$\KB2476490\spuninst.exe
+ 2011-06-18 15:07 . 2010-12-20 17:30        552448              c:\windows\$hf_mig$\KB2476490\SP3QFE\oleaut32.dll
+ 2010-12-17 02:01 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB2467659\update\updspapi.dll
+ 2010-12-17 02:01 . 2010-02-22 14:21        765304              c:\windows\$hf_mig$\KB2467659\update\update.exe
+ 2010-12-17 02:01 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB2467659\spuninst.exe
+ 2010-12-17 02:01 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB2443105\update\updspapi.dll
+ 2010-12-17 02:01 . 2010-02-22 14:21        765304              c:\windows\$hf_mig$\KB2443105\update\update.exe
+ 2010-12-17 02:01 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB2443105\spuninst.exe
+ 2010-12-17 02:01 . 2009-05-26 11:40        388984              c:\windows\$hf_mig$\KB2440591\update\updspapi.dll
+ 2010-12-17 02:01 . 2009-05-26 11:40        765304              c:\windows\$hf_mig$\KB2440591\update\update.exe
+ 2010-12-17 02:01 . 2009-05-26 11:40        234872              c:\windows\$hf_mig$\KB2440591\spuninst.exe
+ 2010-12-17 02:00 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB2423089\update\updspapi.dll
+ 2010-12-17 02:00 . 2010-02-22 14:21        765304              c:\windows\$hf_mig$\KB2423089\update\update.exe
+ 2010-12-17 02:00 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB2423089\spuninst.exe
+ 2010-10-20 13:50 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB2387149\update\updspapi.dll
+ 2010-10-20 13:50 . 2010-07-05 13:14        765304              c:\windows\$hf_mig$\KB2387149\update\update.exe
+ 2010-10-20 13:50 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB2387149\spuninst.exe
+ 2010-10-20 12:41 . 2010-09-18 07:18        974848              c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc42u.dll
+ 2010-10-20 12:41 . 2010-09-18 07:18        974848              c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc42.dll
+ 2010-10-20 12:41 . 2010-09-18 07:18        953856              c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll
+ 2010-10-20 12:41 . 2010-09-18 07:18        954368              c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40.dll
+ 2010-10-20 13:49 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB2360937\update\updspapi.dll
+ 2010-10-20 13:49 . 2010-02-22 14:22        765304              c:\windows\$hf_mig$\KB2360937\update\update.exe
+ 2010-10-20 13:49 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB2360937\spuninst.exe
+ 2010-10-20 12:40 . 2010-08-16 08:41        590848              c:\windows\$hf_mig$\KB2360937\SP3QFE\rpcrt4.dll
+ 2010-09-15 22:19 . 2009-05-26 11:40        388984              c:\windows\$hf_mig$\KB2347290\update\updspapi.dll
+ 2010-09-15 22:19 . 2009-05-26 11:40        765304              c:\windows\$hf_mig$\KB2347290\update\update.exe
+ 2010-09-15 22:19 . 2009-05-26 11:40        234872              c:\windows\$hf_mig$\KB2347290\spuninst.exe
+ 2010-10-20 13:50 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB2345886\update\updspapi.dll
+ 2010-10-20 13:50 . 2010-02-22 14:21        765304              c:\windows\$hf_mig$\KB2345886\update\update.exe
+ 2010-10-20 13:50 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB2345886\spuninst.exe
+ 2010-10-20 12:42 . 2010-08-26 13:37        357248              c:\windows\$hf_mig$\KB2345886\SP3QFE\srv.sys
+ 2010-09-15 22:19 . 2009-05-26 09:01        388984              c:\windows\$hf_mig$\KB2259922\update\updspapi.dll
+ 2010-09-15 22:19 . 2009-05-26 09:01        765304              c:\windows\$hf_mig$\KB2259922\update\update.exe
+ 2010-09-15 22:19 . 2009-05-26 09:01        234872              c:\windows\$hf_mig$\KB2259922\spuninst.exe
+ 2010-09-14 21:33 . 2010-02-22 14:22        388984              c:\windows\$hf_mig$\KB2141007\update\updspapi.dll
+ 2010-09-14 21:33 . 2010-02-22 14:21        765304              c:\windows\$hf_mig$\KB2141007\update\update.exe
+ 2010-09-14 21:33 . 2010-02-22 14:22        234872              c:\windows\$hf_mig$\KB2141007\spuninst.exe
+ 2010-09-14 19:43 . 2010-06-09 07:38        692736              c:\windows\$hf_mig$\KB2141007\SP3QFE\inetcomm.dll
+ 2011-04-15 07:07 . 2010-10-23 00:50        1748992              c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22509_x-ww_c7dad023\GdiPlus.dll
+ 2010-10-20 12:41 . 2010-08-23 16:11        1054208              c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        3781960              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfc90u.dll
+ 2011-04-18 20:51 . 2011-04-18 20:51        3766600              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.6161_x-ww_028bc148\mfc90.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        3780936              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfc90u.dll
+ 2011-01-11 08:59 . 2011-01-11 08:59        3766088              c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.5570_x-ww_d5fe2ecb\mfc90.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        1093120              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfc80u.dll
+ 2008-10-24 19:15 . 2008-10-24 19:15        1101824              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfc80.dll
+ 2011-05-13 18:04 . 2011-05-13 18:04        1093120              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\mfc80u.dll
+ 2011-05-13 18:04 . 2011-05-13 18:04        1101824              c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_150c9e8b\mfc80.dll
+ 2008-08-01 20:23 . 2009-03-08 03:34        1206784              c:\windows\system32\urlmon.dll
- 2007-10-30 21:51 . 2010-07-27 06:29        8503296              c:\windows\system32\shell32.dll
+ 2007-10-30 21:51 . 2011-01-21 14:44        8503296              c:\windows\system32\shell32.dll
+ 2008-08-01 17:59 . 2011-11-03 15:27        1297920              c:\windows\system32\quartz.dll
+ 2010-03-09 17:05 . 2010-07-12 18:36        2120176              c:\windows\system32\pxsfs.dll
+ 2008-04-14 05:52 . 2011-11-01 16:07        1288704              c:\windows\system32\ole32.dll
+ 2008-08-01 17:59 . 2011-10-26 10:49        2151424              c:\windows\system32\ntoskrnl.exe
+ 2008-04-23 14:28 . 2011-10-26 10:49        2029568              c:\windows\system32\ntkrnlpa.exe
+ 2010-01-17 13:37 . 2011-02-02 07:58        2067456              c:\windows\system32\mstscax.dll
+ 2008-08-01 20:23 . 2009-03-08 03:41        5937152              c:\windows\system32\mshtml.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        4422992              c:\windows\system32\mfc100u.dll
+ 2011-06-11 00:58 . 2011-06-11 00:58        4397384              c:\windows\system32\mfc100.dll
+ 2010-01-27 01:07 . 2011-09-13 06:12        6277280              c:\windows\system32\Macromed\Flash\NPSWF32.dll
+ 2008-08-01 20:23 . 2009-03-08 03:32        1985024              c:\windows\system32\iertutil.dll
+ 2008-08-01 20:23 . 2009-02-06 20:07        3698584              c:\windows\system32\ieapfltr.dat
+ 2011-07-07 01:28 . 2011-07-07 01:28        1193320              c:\windows\system32\FM20.DLL
+ 2009-08-14 20:26 . 2012-02-03 09:56        1869312              c:\windows\system32\dllcache\win32k.sys
+ 2010-01-17 16:58 . 2009-03-08 03:34        1206784              c:\windows\system32\dllcache\urlmon.dll
+ 2010-01-17 16:56 . 2011-01-21 14:44        8503296              c:\windows\system32\dllcache\shell32.dll
- 2010-01-17 16:56 . 2010-07-27 06:29        8503296              c:\windows\system32\dllcache\shell32.dll
+ 2009-01-07 17:20 . 2009-01-07 17:20        1497088              c:\windows\system32\dllcache\shdocvw.dll
+ 2010-01-17 16:59 . 2011-11-03 15:27        1297920              c:\windows\system32\dllcache\quartz.dll
+ 2010-07-16 12:05 . 2011-11-01 16:07        1288704              c:\windows\system32\dllcache\ole32.dll
+ 2010-01-17 16:44 . 2011-10-26 10:49        2195072              c:\windows\system32\dllcache\ntoskrnl.exe
+ 2010-01-17 16:44 . 2011-10-26 10:49        2029568              c:\windows\system32\dllcache\ntkrpamp.exe
+ 2009-08-04 21:50 . 2011-10-26 15:19        2071680              c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2010-01-17 16:44 . 2011-10-26 10:49        2151424              c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2009-10-29 12:11 . 2009-03-08 03:41        5937152              c:\windows\system32\dllcache\mshtml.dll
+ 2011-03-10 00:03 . 2011-02-02 07:58        2067456              c:\windows\system32\dllcache\lhmstscx.dll
+ 2010-01-17 16:58 . 2009-03-08 03:32        1985024              c:\windows\system32\dllcache\iertutil.dll
+ 2010-01-17 16:58 . 2009-02-06 20:07        3698584              c:\windows\system32\dllcache\ieapfltr.dat
+ 2009-01-07 17:20 . 2009-01-07 17:20        1022976              c:\windows\system32\dllcache\browseui.dll
- 2008-07-25 10:17 . 2008-07-25 10:17        5025792              c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2011-03-25 04:15 . 2011-03-25 04:15        5025792              c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2011-12-25 02:50 . 2011-12-25 02:50        5246976              c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2011-10-26 02:39 . 2011-10-26 02:39        3186688              c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
+ 2011-07-07 03:18 . 2011-07-07 03:18        5912400              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2011-07-07 03:18 . 2011-07-07 03:18        4550656              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
- 2010-05-11 04:40 . 2010-05-11 04:40        4550656              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2011-12-25 10:07 . 2011-12-25 10:07        2064384              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2011-12-25 10:06 . 2011-12-25 10:06        1269760              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2010-04-01 09:42 . 2010-04-01 09:42        1232896              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2011-12-25 10:06 . 2011-12-25 10:06        1232896              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2011-12-24 21:54 . 2011-12-24 21:54        2514944              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
- 2010-03-31 12:50 . 2010-03-31 12:50        2514944              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
- 2010-03-31 12:50 . 2010-03-31 12:50        2527232              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2011-12-24 21:53 . 2011-12-24 21:53        2527232              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2011-12-25 10:06 . 2011-12-25 10:06        2142208              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2010-04-01 09:42 . 2010-04-01 09:42        2142208              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2011-09-21 14:18 . 2011-09-21 14:18        4985856              c:\windows\Installer\e81039.msp
+ 2011-11-01 12:34 . 2011-11-01 12:34        4250112              c:\windows\Installer\e4b2b2.msp
+ 2011-11-01 12:34 . 2011-11-01 12:34        2247168              c:\windows\Installer\e4b298.msp
+ 2011-11-11 15:14 . 2011-11-11 15:14        9096192              c:\windows\Installer\e4b280.msp
+ 2011-11-01 12:34 . 2011-11-01 12:34        4225536              c:\windows\Installer\e4b268.msp
+ 2011-11-01 12:34 . 2011-11-01 12:34        2531840              c:\windows\Installer\e4b24b.msp
+ 2011-11-11 15:15 . 2011-11-11 15:15        1795584              c:\windows\Installer\e4b233.msp
+ 2011-11-11 15:16 . 2011-11-11 15:16        8458240              c:\windows\Installer\e4b21b.msp
+ 2011-05-01 22:06 . 2011-05-01 22:06        2705920              c:\windows\Installer\ce239b.msp
+ 2011-07-27 05:42 . 2011-07-27 05:42        4985856              c:\windows\Installer\ce2392.msp
+ 2011-10-30 21:54 . 2011-10-30 21:54        2748416              c:\windows\Installer\bf604b.msp
+ 2012-02-03 14:13 . 2012-02-03 14:13        4988928              c:\windows\Installer\bf6036.msp
+ 2009-04-04 15:10 . 2009-04-04 15:10        3262464              c:\windows\Installer\af3a8.msp
+ 2009-04-04 15:10 . 2009-04-04 15:10        1282560              c:\windows\Installer\af39d.msp
+ 2009-04-04 15:10 . 2009-04-04 15:10        9926144              c:\windows\Installer\af394.msp
+ 2011-02-16 11:54 . 2011-02-16 11:54        4992000              c:\windows\Installer\ac9fad.msp
+ 2009-02-25 17:08 . 2009-02-25 17:08        8311808              c:\windows\Installer\ac9f7d.msp
+ 2011-06-21 10:01 . 2011-06-21 10:01        4991488              c:\windows\Installer\9d869.msp
+ 2012-02-29 22:45 . 2012-02-29 22:45        4989440              c:\windows\Installer\9b4cbd.msp
+ 2012-03-14 17:39 . 2012-03-14 17:39        1273344              c:\windows\Installer\83940b.msi
+ 2011-01-18 21:36 . 2011-01-18 21:36        2687488              c:\windows\Installer\6c2d91.msp
+ 2010-09-23 05:39 . 2010-09-23 05:39        4265472              c:\windows\Installer\5de312.msp
+ 2011-03-28 17:32 . 2011-03-28 17:32        1646080              c:\windows\Installer\3cc1a.msi
+ 2011-03-28 17:32 . 2011-03-28 17:32        1658880              c:\windows\Installer\3cc13.msi
+ 2011-03-28 17:32 . 2011-03-28 17:32        1658368              c:\windows\Installer\3cc0b.msi
+ 2011-03-28 17:32 . 2011-03-28 17:32        1657856              c:\windows\Installer\3cc03.msi
+ 2011-03-28 17:31 . 2011-03-28 17:31        2367488              c:\windows\Installer\3cbd5.msi
+ 2011-03-28 17:31 . 2011-03-28 17:31        1652224              c:\windows\Installer\3cbce.msi
+ 2011-03-28 17:31 . 2011-03-28 17:31        1646592              c:\windows\Installer\3cbbd.msi
+ 2011-03-28 17:31 . 2011-03-28 17:31        2028544              c:\windows\Installer\3cbb5.msi
+ 2011-03-28 17:30 . 2011-03-28 17:30        1755136              c:\windows\Installer\3cbad.msi
+ 2011-03-28 17:30 . 2011-03-28 17:30        2420736              c:\windows\Installer\3cba6.msi
+ 2011-01-11 15:49 . 2011-01-11 15:49        9003008              c:\windows\Installer\32b28a.msp
+ 2011-04-29 10:31 . 2011-04-29 10:31        9006080              c:\windows\Installer\2f17f1.msp
+ 2011-04-29 10:28 . 2011-04-29 10:28        1995264              c:\windows\Installer\2f17d9.msp
+ 2011-04-29 10:33 . 2011-04-29 10:33        8173568              c:\windows\Installer\2f17ad.msp
+ 2010-10-21 16:10 . 2010-10-21 16:10        3995136              c:\windows\Installer\2daa8.msp
+ 2010-02-20 23:03 . 2010-02-20 23:03        4472832              c:\windows\Installer\2da8c.msp
+ 2010-08-13 16:02 . 2010-08-13 16:02        2545664              c:\windows\Installer\2da6e.msp
+ 2011-12-26 08:59 . 2011-12-26 08:59        4368896              c:\windows\Installer\2aec8.msp
+ 2011-09-06 19:46 . 2011-09-06 19:46        9006080              c:\windows\Installer\290fd.msp
+ 2011-06-21 09:59 . 2011-06-21 09:59        1764352              c:\windows\Installer\290e5.msp
+ 2011-08-24 04:37 . 2011-08-24 04:37        4985856              c:\windows\Installer\290cc.msp
+ 2011-08-10 15:42 . 2011-08-10 15:42        7070208              c:\windows\Installer\290b4.msp
+ 2011-09-06 19:48 . 2011-09-06 19:48        8181248              c:\windows\Installer\2909c.msp
+ 2011-07-27 05:39 . 2011-07-27 05:39        9892352              c:\windows\Installer\29065.msp
+ 2011-06-28 20:27 . 2011-06-28 20:27        4028928              c:\windows\Installer\1de376.msp
+ 2011-09-15 17:40 . 2011-09-15 17:40        3554816              c:\windows\Installer\1809ba6.msp
+ 2011-09-15 17:40 . 2011-09-15 17:40        7959552              c:\windows\Installer\1809b9d.msp
+ 2011-12-08 18:24 . 2011-12-08 18:24        4989952              c:\windows\Installer\13f4964.msp
+ 2011-03-17 18:05 . 2011-03-17 18:05        4989440              c:\windows\Installer\10f3e6e.msp
+ 2011-04-29 10:27 . 2011-04-29 10:27        4158464              c:\windows\Installer\10e972.msp
+ 2011-04-28 03:42 . 2011-04-28 03:42        4990976              c:\windows\Installer\10e958.msp
+ 2010-08-13 16:00 . 2010-08-13 16:00        9404928              c:\windows\Installer\10e940.msp
+ 2009-08-05 05:49 . 2009-08-05 05:49        3457024              c:\windows\Installer\10e926.msp
+ 2010-03-24 16:54 . 2010-03-24 16:54        3126272              c:\windows\Installer\10e90b.msp
+ 2010-03-24 16:54 . 2010-03-24 16:54        2516992              c:\windows\Installer\10e90a.msp
+ 2009-07-27 02:31 . 2009-07-27 02:31        3738624              c:\windows\Installer\10e8ed.msp
+ 2011-03-17 18:01 . 2011-03-17 18:01        9563648              c:\windows\Installer\10e8d5.msp
+ 2010-05-20 17:57 . 2010-05-20 17:57        4989952              c:\windows\Installer\10e8bc.msp
+ 2010-05-20 17:57 . 2010-05-20 17:57        5907456              c:\windows\Installer\10e8bb.msp
+ 2011-08-10 15:43 . 2011-08-10 15:43        3795968              c:\windows\Installer\10e89b7.msp
+ 2009-10-16 05:08 . 2009-10-16 05:08        2237952              c:\windows\Installer\10e89a.msp
+ 2011-01-11 15:50 . 2011-01-11 15:50        8177152              c:\windows\Installer\10e86b.msp
+ 2009-08-18 11:08 . 2009-08-18 11:08        1373696              c:\windows\Installer\10e853.msp
+ 2010-11-20 21:33 . 2010-11-20 21:33        1980928              c:\windows\Installer\10e823.msp
+ 2011-01-11 15:53 . 2011-01-11 15:53        1763328              c:\windows\Installer\10e80b.msp
+ 2011-04-28 21:46 . 2012-03-20 18:15        1172240              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
+ 2011-04-28 21:46 . 2012-03-20 18:15        1165584              c:\windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\accicons.exe
+ 2009-10-09 21:10 . 2009-10-09 21:10        2594632              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.6612\VBE6.DLL
+ 2006-10-26 12:05 . 2006-10-26 12:05        1181520              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\XIMAGE3B.DLL
+ 2006-10-27 13:11 . 2006-10-27 13:11        4235560              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\WRD12CNV.DLL
+ 2006-10-26 20:58 . 2006-10-26 20:58        3732792              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\VVIEWER.DLL
+ 2006-10-26 21:00 . 2006-10-26 21:00        1841984              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\VVIEWDWG.DLL
+ 2006-09-29 22:42 . 2006-09-29 22:42        2583344              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\VBE6.DLL
+ 2006-10-27 12:57 . 2006-10-27 12:57        2330968              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\STSLIST.DLL
+ 2006-10-26 18:25 . 2006-10-26 18:25        2172688              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PSRCHFEA.DLL
+ 2006-10-26 17:52 . 2006-10-26 17:52        2012480              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PPTVIEW.EXE
+ 2006-10-27 13:04 . 2006-10-27 13:04        7980848              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\PPCORE.DLL
+ 2006-09-15 14:25 . 2006-09-15 14:25        3611416              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLFLTR.DAT
+ 2006-10-26 18:07 . 2006-10-26 18:07        6536992              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OSETUP.DLL
+ 2006-10-27 13:03 . 2006-10-27 13:03        6579512              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONMAIN.DLL
+ 2006-10-26 18:24 . 2006-10-26 18:24        1165112              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONLIBS.DLL
+ 2006-10-27 13:03 . 2006-10-27 13:03        1018664              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ONENOTE.EXE
+ 2006-10-27 13:16 . 2006-10-27 13:16        2939704              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OLMAPI32.DLL
+ 2006-10-27 13:18 . 2006-10-27 13:18        1658152              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OGL.DLL
+ 2006-10-26 18:14 . 2006-10-26 18:14        7033152              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OFFOWC.DLL
+ 2006-10-26 18:42 . 2006-10-26 18:42        8423224              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OARTCONV.DLL
+ 2006-10-26 12:47 . 2006-10-26 12:47        1512304              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\NLSD0000.DLL
+ 2006-10-27 13:04 . 2006-10-27 13:04        9581360              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSPUB.EXE
+ 2006-10-26 18:00 . 2006-10-26 18:00        6635320              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSORES.DLL
+ 2006-10-27 13:10 . 2006-10-27 13:10        5281592              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IPEDITOR.DLL
+ 2006-10-27 13:10 . 2006-10-27 13:10        5456704              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\IPDESIGN.DLL
+ 2006-10-27 13:10 . 2006-10-27 13:10        1439032              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\INFOPATH.EXE
+ 2006-10-27 13:37 . 2006-10-27 13:37        1396008              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEUIFRAMEWORK.DLL
+ 2006-10-27 13:38 . 2006-10-27 13:38        4746536              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVETRANSCEIVER.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        1163048              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVETEXTTOOLS.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        2738472              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVESTORAGEMGR.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        2210608              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVESHELLEXTENSIONS.DLL
+ 2006-10-27 13:38 . 2006-10-27 13:38        7053096              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVERESOURCE.DLL
+ 2006-10-26 22:48 . 2006-10-26 22:48        1555232              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEMISC.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        3071288              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEDOCUMENTSHARETOOL.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        1359648              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVECRYPTO.DLL
+ 2006-10-27 13:38 . 2006-10-27 13:38        3508544              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVECOMMUNICATIONSSERVICES.DLL
+ 2006-10-27 13:37 . 2006-10-27 13:37        2689336              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVECOMMONCOMPONENTS.DLL
+ 2006-10-27 13:38 . 2006-10-27 13:38        6191400              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GROOVEACCOUNTMGR.DLL
+ 2006-10-26 18:02 . 2006-10-26 18:02        2526520              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\GRAPH.EXE
+ 2006-10-26 17:21 . 2006-10-26 17:21        1682232              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\FPSRVUTL.DLL
+ 2006-10-26 12:10 . 2006-10-26 12:10        1190688              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\FM20.DLL
+ 2011-03-28 17:33 . 2011-03-28 17:33        1276720              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\EXCELPIA.DLL
+ 2006-09-13 07:09 . 2006-09-13 07:09        1277496              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\CRYPTOPP.DLL
+ 2006-10-27 13:00 . 2006-10-27 13:00        1751904              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACECORE.DLL
+ 2006-10-26 12:05 . 2006-10-26 12:05        1165584              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\ACCICONS.EXE
+ 2006-10-26 17:49 . 2006-10-26 17:49        1011488              c:\windows\Installer\$PatchCache$\Managed\00002109010070400000000000F01FEC\12.0.4518\MSDAIPP.DLL
+ 2012-03-06 21:11 . 2009-03-08 03:34        1206784              c:\windows\ie8updates\KB982381-IE8\urlmon.dll
+ 2012-03-06 21:11 . 2009-03-08 03:41        5937152              c:\windows\ie8updates\KB982381-IE8\mshtml.dll
+ 2012-03-06 21:11 . 2009-03-08 03:32        1985024              c:\windows\ie8updates\KB982381-IE8\iertutil.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        1172992              c:\windows\ie8\urlmon.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        3618816              c:\windows\ie8\mshtml.dll
+ 2012-03-06 21:10 . 2011-12-19 08:06        6080512              c:\windows\ie8\ieframe.dll
+ 2012-03-06 21:10 . 2009-06-29 08:33        2452872              c:\windows\ie8\ieapfltr.dat
+ 2012-03-06 21:00 . 2011-10-31 23:34        1172992              c:\windows\ie7updates\KB2647516-IE7\urlmon.dll
+ 2012-03-06 21:00 . 2011-11-04 15:13        3618304              c:\windows\ie7updates\KB2647516-IE7\mshtml.dll
+ 2012-03-06 21:00 . 2011-10-31 23:34        6080512              c:\windows\ie7updates\KB2647516-IE7\ieframe.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        1172992              c:\windows\ie7updates\KB2618444-IE7\urlmon.dll
+ 2011-12-16 00:02 . 2011-08-18 13:22        3617792              c:\windows\ie7updates\KB2618444-IE7\mshtml.dll
+ 2011-12-16 00:02 . 2011-08-17 21:22        6080512              c:\windows\ie7updates\KB2618444-IE7\ieframe.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        1172992              c:\windows\ie7updates\KB2586448-IE7\urlmon.dll
+ 2011-10-13 11:34 . 2011-07-22 19:58        3615744              c:\windows\ie7updates\KB2586448-IE7\mshtml.dll
+ 2011-10-13 11:34 . 2011-06-21 18:36        6081024              c:\windows\ie7updates\KB2586448-IE7\ieframe.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        1172480              c:\windows\ie7updates\KB2559049-IE7\urlmon.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        3610624              c:\windows\ie7updates\KB2559049-IE7\mshtml.dll
+ 2011-08-10 21:22 . 2011-04-25 15:42        6081024              c:\windows\ie7updates\KB2559049-IE7\ieframe.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        1172480              c:\windows\ie7updates\KB2530548-IE7\urlmon.dll
+ 2011-06-19 01:05 . 2011-02-17 22:26        3609600              c:\windows\ie7updates\KB2530548-IE7\mshtml.dll
+ 2011-06-19 01:05 . 2011-02-17 18:56        6080000              c:\windows\ie7updates\KB2530548-IE7\ieframe.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        1171968              c:\windows\ie7updates\KB2497640-IE7\urlmon.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        3609088              c:\windows\ie7updates\KB2497640-IE7\mshtml.dll
+ 2011-05-21 09:31 . 2010-12-20 23:15        6080000              c:\windows\ie7updates\KB2497640-IE7\ieframe.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        1171968              c:\windows\ie7updates\KB2482017-IE7\urlmon.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        3607040              c:\windows\ie7updates\KB2482017-IE7\mshtml.dll
+ 2011-02-10 11:35 . 2010-11-06 00:27        6080000              c:\windows\ie7updates\KB2482017-IE7\ieframe.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        1171968              c:\windows\ie7updates\KB2416400-IE7\urlmon.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        3605504              c:\windows\ie7updates\KB2416400-IE7\mshtml.dll
+ 2010-12-17 02:00 . 2010-09-09 13:31        6080000              c:\windows\ie7updates\KB2416400-IE7\ieframe.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        1171968              c:\windows\ie7updates\KB2360131-IE7\urlmon.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        3603968              c:\windows\ie7updates\KB2360131-IE7\mshtml.dll
+ 2010-10-20 13:49 . 2010-06-24 12:17        6071296              c:\windows\ie7updates\KB2360131-IE7\ieframe.dll
+ 2010-01-17 16:44 . 2011-10-26 10:49        2195072              c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2010-01-17 16:44 . 2011-10-26 10:49        2029568              c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2009-08-04 21:50 . 2011-10-26 15:19        2071680              c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2010-01-17 16:44 . 2011-10-26 10:49        2151424              c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2011-05-14 13:00 . 2011-05-14 13:00        1279848              c:\windows\assembly\tmp\NW4CKT08\Microsoft.Office.Interop.Excel.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        1966080              c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_ad7b8ca1\System.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        4792320              c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_5d557c57\System.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        2088960              c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_a7dffbdc\System.Xml.dll
+ 2012-01-04 22:44 . 2012-01-04 22:44        5513216              c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_076b6caa\System.Xml.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        3035136              c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_6e09e256\System.Windows.Forms.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        7917568              c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_5a523504\System.Windows.Forms.dll
+ 2012-01-04 22:45 . 2012-01-04 22:45        2244608              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_99bb5903\System.Drawing.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        1466368              c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_ee13c39f\System.Design.dll
+ 2012-01-04 22:45 . 2012-01-04 22:45        3395584              c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_565d69db\System.Design.dll
+ 2012-01-04 22:45 . 2012-01-04 22:45        8908800              c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_64463d78\mscorlib.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        3391488              c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_2456c04a\mscorlib.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        3325440              c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\174c2f776741812aed02c337bbcd1dae\WindowsBase.ni.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        1049600              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\94f5164ff4f664c5e4e7fb4c3af1abad\UIAutomationClientsideProviders.ni.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        7953408              c:\windows\assembly\NativeImages_v2.0.50727_32\System\9e3803cd2a11f056291862e306a8e2b2\System.ni.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        5450752              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\77e1279cbf4eecfb0284b63316fe43fe\System.Xml.ni.dll


playmo 28.03.2012 23:31

okay.....4 sogar.

Code:

+ 2012-03-06 21:09 . 2012-03-06 21:09        1356288              c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\c4c671c737b553db8e07664816475333\System.WorkflowServices.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        1908224              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\248ea47105ff4af6ee75e6fdd5b450a1\System.Workflow.Runtime.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        4514304              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\80a288b6611668160334668cc2608e4a\System.Workflow.ComponentModel.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        2992640              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\4c27548df5897320840ee0d65db38742\System.Workflow.Activities.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        1840640              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\e9ba004858dcdb5958d86f26f043f85a\System.Web.Services.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        2209280              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\030cde14924eefebc06c240dbfe093a4\System.Web.Mobile.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        2405888              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\6379c8ca8ae11effb415139990923ff1\System.Web.Extensions.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        1917440              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\e456140d5d6c43d7383bd36d3f9e12c6\System.Speech.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        1706496              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\285dfbf2380436e187cb624bd1cd4683\System.ServiceModel.Web.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        2345472              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\f2532204217dc10f152afd077b09927c\System.Runtime.Serialization.ni.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        1035776              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\d51e6bb07124a1d780d1e024858e0dc1\System.Printing.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        1070080              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\8ef05061cd205c4f2a8583d97f32a603\System.IdentityModel.ni.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        1587200              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\9351cf29bb1ba951e45a9b3b0edab937\System.Drawing.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        1116672              c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\77d0e93f024055d04c07cc2700b4c590\System.DirectoryServices.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        1801216              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\707a05a7d5a8d99dd56d1d50311a60d2\System.Deployment.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        6616576              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\ae888f8633fce3ff1de98e32bce0abbf\System.Data.ni.dll
+ 2012-03-06 21:06 . 2012-03-06 21:06        2510336              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\857300fa64d09c69125451fd8894f3da\System.Data.SqlXml.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        1328128              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\e9d4a1fb13572c769ddd9b86e55baab4\System.Data.Services.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        2516480              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\c3d9c33f71d15a3e2e240092a244eba3\System.Data.Linq.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        9924096              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\424160369b301ccd1b6fd86265611955\System.Data.Entity.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        2295296              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\0a6d6717e76be12295711ff02c7aa1d4\System.Core.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        2128896              c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\33cdfb4c322a528260016ac759230501\ReachFramework.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        1657856              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\a6def83aee1aaf3336675ce58ac09013\PresentationUI.ni.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        1451008              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\59cd6ce5a254006179eee92952cd2272\PresentationBuildTasks.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        2014208              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet\0c65f16ac78e04fd2f4fbb924c4f73f9\PaintDotNet.ni.exe
+ 2012-03-06 21:06 . 2012-03-06 21:06        1811968              c:\windows\assembly\NativeImages_v2.0.50727_32\PaintDotNet.Core\7d9751c4e7c5474ee2a08b1177e361be\PaintDotNet.Core.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        1712128              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\96e485c02ad346a2bd26a635e7fcb023\Microsoft.VisualBasic.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        1093120              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\f7071f9a1c0523540f6aa7f11c302fb6\Microsoft.Transactions.Bridge.ni.dll
+ 2012-03-06 21:08 . 2012-03-06 21:08        2332160              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\806b1d127ed3e906db972751e87585c4\Microsoft.JScript.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        1966080              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\912789fd859e0887e10a935cade08e72\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        1620992              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\6c1d3eec78906cc2a2ecffb013114c50\Microsoft.Build.Tasks.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        1888768              c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\d6edd4b4619a9052d3dfe50c3067d5e0\Microsoft.Build.Engine.ni.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        3186688              c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        2048000              c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        2048000              c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        5025792              c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        5025792              c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2011-12-31 11:12 . 2011-12-31 11:12        1277952              c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
- 2010-01-20 11:41 . 2010-01-20 11:41        1277952              c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
- 2010-08-13 10:08 . 2010-08-13 10:08        5062656              c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        5062656              c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        5246976              c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2012-03-06 21:03 . 2012-03-06 21:03        2933248              c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        2933248              c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-03-06 21:02 . 2012-03-06 21:02        4550656              c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2010-08-13 10:09 . 2010-08-13 10:09        4550656              c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        1232896              c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
- 2010-06-12 06:14 . 2010-06-12 06:14        1232896              c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        2064384              c:\windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-01-04 22:20 . 2012-01-04 22:20        1269760              c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2012-03-20 18:14 . 2012-03-20 18:14        1279864              c:\windows\assembly\GAC\Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Excel.dll
+ 2011-03-28 17:33 . 2011-03-28 17:33        1612592              c:\windows\assembly\GAC\Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Access.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        8007680              c:\windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
+ 2011-03-28 17:34 . 2011-03-28 17:34        1215328              c:\windows\assembly\GAC\IACore\1.7.6223.0__31bf3856ad364e35\IACore.dll
+ 2010-10-20 13:49 . 2010-06-24 21:29        1861248              c:\windows\$NtUninstallKB981957$\win32k.sys
+ 2010-10-20 13:49 . 2008-04-14 05:52        1287680              c:\windows\$NtUninstallKB979687$\ole32.dll
+ 2011-12-16 00:01 . 2011-09-06 14:08        1868032              c:\windows\$NtUninstallKB2639417$\win32k.sys
+ 2011-12-15 23:58 . 2010-12-09 15:14        2151424              c:\windows\$NtUninstallKB2633171$\ntoskrnl.exe
+ 2011-12-15 23:58 . 2010-12-09 15:14        2029568              c:\windows\$NtUninstallKB2633171$\ntkrpamp.exe
+ 2011-12-15 23:58 . 2010-12-09 15:14        2029568              c:\windows\$NtUninstallKB2633171$\ntkrnlpa.exe
+ 2011-12-15 23:58 . 2010-12-09 15:14        2151424              c:\windows\$NtUninstallKB2633171$\ntkrnlmp.exe
+ 2012-01-11 00:15 . 2010-02-05 18:28        1297408              c:\windows\$NtUninstallKB2631813$\quartz.dll
+ 2011-12-16 00:01 . 2010-07-16 12:05        1288192              c:\windows\$NtUninstallKB2624667$\ole32.dll
+ 2011-10-13 11:35 . 2011-06-06 11:36        1868032              c:\windows\$NtUninstallKB2567053$\win32k.sys
+ 2011-07-12 18:58 . 2011-03-03 13:52        1867008              c:\windows\$NtUninstallKB2555917$\win32k.sys
+ 2011-04-23 12:27 . 2010-12-31 14:02        1864192              c:\windows\$NtUninstallKB2506223$\win32k.sys
+ 2011-02-10 11:35 . 2010-07-27 06:29        8503296              c:\windows\$NtUninstallKB2483185$\shell32.dll
+ 2011-03-10 12:57 . 2009-06-10 08:19        2066432              c:\windows\$NtUninstallKB2481109$\mstscax.dll
+ 2011-02-10 11:35 . 2010-10-26 13:58        1862400              c:\windows\$NtUninstallKB2479628$\win32k.sys
+ 2010-12-17 02:01 . 2010-09-01 07:54        1862016              c:\windows\$NtUninstallKB2436673$\win32k.sys
+ 2011-02-10 11:35 . 2010-04-28 05:15        2148864              c:\windows\$NtUninstallKB2393802$\ntoskrnl.exe
+ 2011-02-10 11:35 . 2010-04-28 05:15        2027008              c:\windows\$NtUninstallKB2393802$\ntkrpamp.exe
+ 2011-02-10 11:35 . 2010-04-28 05:15        2027008              c:\windows\$NtUninstallKB2393802$\ntkrnlpa.exe
+ 2011-02-10 11:35 . 2010-04-28 05:15        2148864              c:\windows\$NtUninstallKB2393802$\ntkrnlmp.exe
+ 2010-10-20 13:50 . 2008-04-14 05:52        1028096              c:\windows\$NtUninstallKB2387149$\mfc42.dll
+ 2010-07-16 12:03 . 2010-07-16 12:03        1289216              c:\windows\$hf_mig$\KB979687\SP3QFE\ole32.dll
+ 2011-03-05 12:25 . 2009-07-27 22:09        8503808              c:\windows\$hf_mig$\KB971029\SP3QFE\shell32.dll
+ 2011-12-15 19:52 . 2011-11-01 16:05        1289216              c:\windows\$hf_mig$\KB2624667\SP3QFE\ole32.dll
+ 2011-02-09 22:53 . 2011-01-21 14:42        8504320              c:\windows\$hf_mig$\KB2483185\SP3QFE\shell32.dll
+ 2011-03-10 00:03 . 2011-02-02 07:57        2069504              c:\windows\$hf_mig$\KB2481109\SP3QFE\lhmstscx.dll
- 2008-08-01 20:24 . 2009-07-13 22:43        10841088              c:\windows\system32\wmp.dll
+ 2008-08-01 20:24 . 2010-08-25 21:36        10841088              c:\windows\system32\wmp.dll
+ 2012-03-06 21:08 . 2012-01-26 22:20        52550552              c:\windows\system32\MRT.exe
+ 2008-08-01 20:23 . 2009-03-08 03:39        11063808              c:\windows\system32\ieframe.dll
+ 2009-07-13 22:43 . 2010-08-25 21:36        10841088              c:\windows\system32\dllcache\wmp.dll
- 2009-07-13 22:43 . 2009-07-13 22:43        10841088              c:\windows\system32\dllcache\wmp.dll
+ 2010-01-17 16:58 . 2009-03-08 03:39        11063808              c:\windows\system32\dllcache\ieframe.dll
+ 2011-12-26 16:02 . 2011-12-26 16:02        12482048              c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2656353\M2656353Uninstall.msp
+ 2009-04-04 15:09 . 2009-04-04 15:09        10874880              c:\windows\Installer\fc834f.msp
+ 2009-04-04 05:32 . 2009-04-04 05:32        14140416              c:\windows\Installer\f88155.msp
+ 2011-10-13 11:38 . 2011-10-13 11:38        20333568              c:\windows\Installer\e81052.msp
+ 2011-07-11 18:43 . 2011-07-11 18:43        11641344              c:\windows\Installer\e81045.msp
+ 2010-10-07 10:42 . 2010-10-07 10:42        17518080              c:\windows\Installer\d7a74d.msp
+ 2012-03-06 20:59 . 2012-03-06 20:59        20333056              c:\windows\Installer\bf6043.msp
+ 2009-04-04 15:09 . 2009-04-04 15:09        10874880              c:\windows\Installer\af388.msp
+ 2008-09-24 10:05 . 2008-09-24 10:05        16381440              c:\windows\Installer\ac9fc5.msp
+ 2008-08-11 09:49 . 2008-08-11 09:49        22457344              c:\windows\Installer\ac9f95.msp
+ 2010-07-22 23:04 . 2010-07-22 23:04        11395072              c:\windows\Installer\8c8352.msp
+ 2011-02-11 18:47 . 2011-02-11 18:47        12028928              c:\windows\Installer\734477.msp
+ 2011-09-15 17:36 . 2011-09-15 17:36        33370624              c:\windows\Installer\6c2609.msp
+ 2011-09-15 17:36 . 2011-09-15 17:36        15074816              c:\windows\Installer\6c25f7.msp
+ 2011-03-28 17:35 . 2011-03-28 17:35        18181632              c:\windows\Installer\3cc2a.msi
+ 2011-04-22 17:41 . 2011-04-22 17:41        11507712              c:\windows\Installer\32b2ae.msp
+ 2011-06-19 01:02 . 2011-06-19 01:02        20333056              c:\windows\Installer\2f17ba.msp
+ 2011-12-31 11:07 . 2011-12-31 11:07        17555968              c:\windows\Installer\2aebd.msp
+ 2011-07-27 05:37 . 2011-07-27 05:37        11592192              c:\windows\Installer\29084.msp
+ 2011-03-28 01:27 . 2011-03-28 01:27        15456256              c:\windows\Installer\1f5336.msp
+ 2010-12-17 10:52 . 2010-12-17 10:52        20304384              c:\windows\Installer\1d85f1b.msp
+ 2011-02-18 22:06 . 2011-02-18 22:06        20308992              c:\windows\Installer\1a33c52.msp
+ 2009-04-04 05:33 . 2009-04-04 05:33        20297216              c:\windows\Installer\1947ac9.msp
+ 2011-09-15 17:38 . 2011-09-15 17:38        10838528              c:\windows\Installer\1809b92.msp
+ 2011-09-15 17:37 . 2011-09-15 17:37        14140416              c:\windows\Installer\1809b86.msp
+ 2011-04-28 21:45 . 2011-04-28 21:45        20314624              c:\windows\Installer\10f3e65.msp
+ 2012-01-04 22:19 . 2012-01-04 22:19        19677184              c:\windows\Installer\10ef092.msp
+ 2010-12-06 12:49 . 2010-12-06 12:49        20303872              c:\windows\Installer\107cb2.msp
+ 2006-10-26 19:13 . 2006-10-26 19:13        14674216              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\XL12CNV.EXE
+ 2006-10-27 13:23 . 2006-10-27 13:23        17483560              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\WWLIB.DLL
+ 2006-10-27 13:16 . 2006-10-27 13:16        12813096              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OUTLOOK.EXE
+ 2006-10-27 13:14 . 2006-10-27 13:14        14151456              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\OART.DLL
+ 2006-10-27 13:26 . 2006-10-27 13:26        16870712              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSO.DLL
+ 2006-10-27 13:01 . 2006-10-27 13:01        10371880              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\MSACCESS.EXE
+ 2006-10-27 13:07 . 2006-10-27 13:07        17891112              c:\windows\Installer\$PatchCache$\Managed\00002109030000000000000000F01FEC\12.0.4518\EXCEL.EXE
+ 2012-03-06 21:11 . 2009-03-08 03:39        11063808              c:\windows\ie8updates\KB982381-IE8\ieframe.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        12430848              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ad99ac6b5666edb8ee742dd64f9578af\System.Windows.Forms.ni.dll
+ 2012-03-06 21:09 . 2012-03-06 21:09        11817472              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\29bdc8352d3c26e3c572ea60639dec3b\System.Web.ni.dll
+ 2012-03-06 21:07 . 2012-03-06 21:07        17403904              c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\1cdcd6d97627d345d5ff446e6ec88b97\System.ServiceModel.ni.dll
+ 2012-03-06 21:05 . 2012-03-06 21:05        10683392              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\7c8f8fb506c32500acc1b6190d054f26\System.Design.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        14328320              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\5060105fb9e169399fe45600b1e9215e\PresentationFramework.ni.dll
+ 2012-03-06 21:04 . 2012-03-06 21:04        12215808              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\0665bba8c9962deadc418881eb3a2a2a\PresentationCore.ni.dll
+ 2011-10-13 11:38 . 2011-10-13 11:38        11490816              c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll
+ 2010-10-20 13:49 . 2009-07-13 22:43        10841088              c:\windows\$NtUninstallKB2378111_WM9$\wmp.dll
+ 2011-05-14 13:01 . 2011-05-14 13:01        124715008              c:\windows\Installer\d679e.msp
+ 2009-04-04 15:08 . 2009-04-04 15:08        343058432              c:\windows\Installer\d664c.msp
+ 2009-04-04 15:08 . 2009-04-04 15:08        343058432              c:\windows\Installer\af37c.msp
+ 2009-04-04 15:08 . 2009-04-04 15:08        343058432              c:\windows\Installer\706a71.msp
+ 2009-04-04 15:08 . 2009-04-04 15:08        343058432              c:\windows\Installer\28d147.msp
+ 2011-09-15 17:34 . 2011-09-15 17:34        428804608              c:\windows\Installer\1809b79.msp
.
-- Snapshot auf jetziges Datum zurückgesetzt --
.
((((((((((((((((((((((((((((  Autostartpunkte der Registrierung  ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\programme\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Apoint"="c:\programme\DellTPad\Apoint.exe" [2007-05-09 159744]
"OEM02Mon.exe"="c:\windows\OEM02Mon.exe" [2007-12-03 36864]
"systray"="c:\programme\Dell\Dell Mobile Broadband\systray.exe" [2009-04-24 331851]
"IntelZeroConfig"="c:\programme\Intel\WiFi\bin\ZCfgSvc.exe" [2008-08-20 1368064]
"IntelWireless"="c:\programme\Gemeinsame Dateien\Intel\WirelessCommon\iFrmewrk.exe" [2008-08-20 1191936]
"NvMediaCenter"="NvMCTray.dll" [2009-11-20 110184]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-11-20 12669544]
"NVHotkey"="nvHotkey.dll" [2009-11-20 87144]
"SigmatelSysTrayApp"="c:\programme\SigmaTel\C-Major Audio\WDM\stsystra.exe" [2007-05-10 405504]
"SunJavaUpdateSched"="c:\programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" [2010-02-18 248040]
"GrooveMonitor"="c:\programme\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"avgnt"="c:\programme\Avira\AntiVir Desktop\avgnt.exe" [2012-01-31 258512]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_3"="advpack.dll" [2009-03-08 128512]
"IE7"="advpack.dll" [2009-03-08 128512]
.
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programme\\ICQ6.5\\ICQ.exe"=
"c:\\Programme\\Skype\\Plugin Manager\\skypePM.exe"=
"c:\\Programme\\SopCast\\SopCast.exe"=
"c:\\Programme\\SopCast\\adv\\SopAdver.exe"=
"c:\\Programme\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Programme\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Programme\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Programme\\Skype\\Phone\\Skype.exe"=
"%windir%\explorer.exe"= %windir%\explorer.exe
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [28.03.2011 19:25 691696]
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [11.03.2012 12:23 36000]
R1 NvtSp50;Novatel Wireless NDIS 5 Single-Packet Read Protocol Driver;c:\windows\system32\drivers\NvtSp50.sys [10.06.2008 14:32 22016]
R2 AntiVirSchedulerService;Avira Planer;c:\programme\Avira\AntiVir Desktop\sched.exe [11.03.2012 12:23 86224]
R3 SscRdBus;Virtual bus device (SuperSpeed Software, Inc.);c:\windows\system32\drivers\SscRdBus.sys [17.01.2010 15:55 36608]
R3 SscRdFdo;RAM Disk (SuperSpeed Software, Inc.);c:\windows\system32\drivers\SscRdFdo.sys [17.01.2010 15:55 19200]
S2 ICQ Service;ICQ Service;c:\programme\ICQ6Toolbar\ICQ Service.exe --> c:\programme\ICQ6Toolbar\ICQ Service.exe [?]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [14.04.2008 07:53 14336]
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WINRM        REG_MULTI_SZ          WINRM
.
NETSVCS BENÖTIGT REPARATUR - Derzeitig vorhandene Einträge:
6to4
AppMgmt
AudioSrv
Browser
CryptSvc
DMServer
DHCP
EventSystem
FastUserSwitchingCompatibility
HidServ
Ias
Iprip
Irmon
LanmanServer
LanmanWorkstation
Netman
Nla
Ntmssvc
NWCWorkstation
Nwsapagent
Rasauto
Rasman
Remoteaccess
Seclogon
Sharedaccess
SRService
Tapisrv
Themes
WZCSVC
Wmi
WmdmPmSp
winmgmt
wscsvc
xmlprov
napagent
hkmsvc
BITS
wuauserv
ShellHWDetection
WmdmPmSN
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - NetSvcs
.
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page =
mLocal Page =
IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\dokumente und einstellungen\Giu\Anwendungsdaten\Mozilla\Firefox\Profiles\7vmgy0ma.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/
FF - user.js: network.cookie.cookieBehavior - 0
FF - user.js: privacy.clearOnShutdown.cookies - false
FF - user.js: security.warn_viewing_mixed - false
FF - user.js: security.warn_viewing_mixed.show_once - false
FF - user.js: security.warn_submit_insecure - false
FF - user.js: security.warn_submit_insecure.show_once - false
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
AddRemove-ANSTOSS 2 - c:\windows\unin0407.exe
AddRemove-ICQToolbar - c:\programme\ICQ6Toolbar\ICQUnToolbar.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-03-29 00:16
Windows 5.1.2600 Service Pack 3 NTFS
.
Scanne versteckte Prozesse...
.
Scanne versteckte Autostarteinträge...
.
Scanne versteckte Dateien...
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'winlogon.exe'(1008)
c:\windows\system32\netprovcredman.dll
.
- - - - - - - > 'explorer.exe'(3720)
c:\programme\Windows Media Player\wmpband.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\msi.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\wpdshserviceobj.dll
c:\windows\system32\portabledevicetypes.dll
c:\windows\system32\portabledeviceapi.dll
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\programme\Intel\WiFi\bin\S24EvMon.exe
c:\programme\Avira\AntiVir Desktop\avguard.exe
c:\programme\Intel\WiFi\bin\EvtEng.exe
c:\programme\Java\jre6\bin\jqs.exe
c:\programme\CDBurnerXP\NMSAccessU.exe
c:\programme\Gemeinsame Dateien\Intel\WirelessCommon\RegSrvc.exe
c:\programme\Intel\WiFi\bin\WLKeeper.exe
c:\programme\DellTPad\ApMsgFwd.exe
c:\windows\system32\rundll32.exe
c:\programme\DellTPad\HidFind.exe
c:\programme\DellTPad\Apntex.exe
c:\programme\Avira\AntiVir Desktop\avshadow.exe
c:\windows\system32\wbem\unsecapp.exe
c:\windows\system32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2012-03-29  00:20:13 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2012-03-28 22:20
ComboFix2.txt  2010-08-26 15:47
.
Vor Suchlauf: 13 Verzeichnis(se), 166.942.871.552 Bytes frei
Nach Suchlauf: 16 Verzeichnis(se), 167.343.099.904 Bytes frei
.
- - End Of File - - C90D06FA9252F1493A6B3CB4846D1641


cosinus 29.03.2012 14:05

Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).


playmo 02.04.2012 17:21

okay....ich hoffe, ich hab alles richtig gemacht?!?

hier die LOGS

GMER Logfile:
Code:

GMER 1.0.15.15641 - hxxp://www.gmer.net
Rootkit scan 2012-03-31 10:55:51
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-0 Hitachi_ rev.BBFO
Running: 5c2eg6pk.exe; Driver: C:\Temp\pwdorkow.sys


---- System - GMER 1.0.15 ----

SSDT            B8738844                                                                                                            ZwClose
SSDT            B87387FE                                                                                                            ZwCreateKey
SSDT            B873884E                                                                                                            ZwCreateSection
SSDT            B87387F4                                                                                                            ZwCreateThread
SSDT            B8738803                                                                                                            ZwDeleteKey
SSDT            B873880D                                                                                                            ZwDeleteValueKey
SSDT            B873883F                                                                                                            ZwDuplicateObject
SSDT            spce.sys                                                                                                            ZwEnumerateKey [0xB7ECDDA4]
SSDT            spce.sys                                                                                                            ZwEnumerateValueKey [0xB7ECE132]
SSDT            B8738812                                                                                                            ZwLoadKey
SSDT            spce.sys                                                                                                            ZwOpenKey [0xB7EB50C0]
SSDT            B87387E0                                                                                                            ZwOpenProcess
SSDT            B87387E5                                                                                                            ZwOpenThread
SSDT            spce.sys                                                                                                            ZwQueryKey [0xB7ECE20A]
SSDT            B8738867                                                                                                            ZwQueryValueKey
SSDT            B873881C                                                                                                            ZwReplaceKey
SSDT            B8738858                                                                                                            ZwRequestWaitReplyPort
SSDT            B8738817                                                                                                            ZwRestoreKey
SSDT            B8738853                                                                                                            ZwSetContextThread
SSDT            B873885D                                                                                                            ZwSetSecurityObject
SSDT            B8738808                                                                                                            ZwSetValueKey
SSDT            B8738862                                                                                                            ZwSystemDebugControl
SSDT            B87387EF                                                                                                            ZwTerminateProcess

INT 0x62        ?                                                                                                                  8A549BF8
INT 0x63        ?                                                                                                                  8A4D9BF8
INT 0x63        ?                                                                                                                  8A4D9BF8
INT 0x94        ?                                                                                                                  8A49ABF8
INT 0xA4        ?                                                                                                                  8A49ABF8
INT 0xA4        ?                                                                                                                  8A49ABF8
INT 0xA4        ?                                                                                                                  8A49ABF8
INT 0xB4        ?                                                                                                                  8A49ABF8
INT 0xB4        ?                                                                                                                  8A49ABF8
INT 0xB4        ?                                                                                                                  8A49ABF8
INT 0xB4        ?                                                                                                                  8A49ABF8

---- Kernel code sections - GMER 1.0.15 ----

?              spce.sys                                                                                                            Das System kann die angegebene Datei nicht finden. !
.text          C:\WINDOWS\system32\DRIVERS\nv4_mini.sys                                                                            section is writeable [0xB71A5380, 0x5414D5, 0xE8000020]
.text          USBPORT.SYS!DllUnload                                                                                              B7185934 5 Bytes  JMP 8A49A1D8
.text          a6pxy6ss.SYS                                                                                                        B6CAD386 35 Bytes  [00, 00, 00, 00, 00, 00, 20, ...]
.text          a6pxy6ss.SYS                                                                                                        B6CAD3AA 24 Bytes  [00, 00, 00, 00, 00, 00, 00, ...]
.text          a6pxy6ss.SYS                                                                                                        B6CAD3C4 3 Bytes  [00, 80, 02]
.text          a6pxy6ss.SYS                                                                                                        B6CAD3C9 1 Byte  [30]
.text          a6pxy6ss.SYS                                                                                                        B6CAD3C9 11 Bytes  [30, 00, 00, 00, 5E, 02, 00, ...] {XOR [EAX], AL; ADD [EAX], AL; POP ESI; ADD AL, [EAX]; ADD [EAX], AL; ADD [EAX], AL}
.text          ...                                                                                                               

---- Kernel IAT/EAT - GMER 1.0.15 ----

IAT            atapi.sys[HAL.dll!READ_PORT_UCHAR]                                                                                  [B7EB6042] spce.sys
IAT            atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT]                                                                          [B7EB613E] spce.sys
IAT            atapi.sys[HAL.dll!READ_PORT_USHORT]                                                                                [B7EB60C0] spce.sys
IAT            atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT]                                                                        [B7EB6800] spce.sys
IAT            atapi.sys[HAL.dll!WRITE_PORT_UCHAR]                                                                                [B7EB66D6] spce.sys
IAT            \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR]                                                  [B7EC5B90] spce.sys
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!KfAcquireSpinLock]                                                18C4830E
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!READ_PORT_UCHAR]                                                  1C959E88
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!KeGetCurrentIrql]                                                9E880000
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!KfRaiseIrql]                                                      00001CB1
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!KfLowerIrql]                                                      0E798366
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!HalGetInterruptVector]                                            74AAB000
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!HalTranslateBusAddress]                                          8986C636
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!KeStallExecutionProcessor]                                        1A00001C
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!KfReleaseSpinLock]                                                1C8B86C6
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!READ_PORT_BUFFER_USHORT]                                          C6020000
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!READ_PORT_USHORT]                                                001C9686
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!WRITE_PORT_BUFFER_USHORT]                                        86C60200
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[HAL.dll!WRITE_PORT_UCHAR]                                                00001CB2
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[WMILIB.SYS!WmiSystemControl]                                              8800001C
IAT            \SystemRoot\System32\Drivers\a6pxy6ss.SYS[WMILIB.SYS!WmiCompleteRequest]                                            001CB99E

---- Devices - GMER 1.0.15 ----

Device          \FileSystem\Ntfs \Ntfs                                                                                              8A4D81F8
Device          \FileSystem\Fastfat \FatCdrom                                                                                      88147500
Device          \Driver\usbuhci \Device\USBPDO-0                                                                                    8A4271F8
Device          \Driver\dmio \Device\DmControl\DmIoDaemon                                                                          8A4DA1F8
Device          \Driver\dmio \Device\DmControl\DmConfig                                                                            8A4DA1F8
Device          \Driver\dmio \Device\DmControl\DmPnP                                                                                8A4DA1F8
Device          \Driver\dmio \Device\DmControl\DmInfo                                                                              8A4DA1F8
Device          \Driver\usbuhci \Device\USBPDO-1                                                                                    8A4271F8
Device          \Driver\usbehci \Device\USBPDO-2                                                                                    89A311F8
Device          \Driver\usbuhci \Device\USBPDO-3                                                                                    8A4271F8
Device          \Driver\usbuhci \Device\USBPDO-4                                                                                    8A4271F8
Device          \Driver\usbuhci \Device\USBPDO-5                                                                                    8A4271F8
Device          \Driver\usbehci \Device\USBPDO-6                                                                                    89A311F8
Device          \Driver\sptd \Device\2606712958                                                                                    spce.sys
Device          \Driver\Ftdisk \Device\HarddiskVolume1                                                                              8A54A1F8
Device          \Driver\Ftdisk \Device\HarddiskVolume2                                                                              8A54A1F8
Device          \Driver\Cdrom \Device\CdRom0                                                                                        899F91F8
Device          \Driver\iaStor \Device\Ide\iaStor0                                                                                  [B7D7C580] iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device          \Driver\atapi \Device\Ide\IdePort0                                                                                  [B7E08B40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device          \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3                                                                        [B7E08B40] atapi.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device          \Driver\iaStor \Device\Ide\IAAStorageDevice-0                                                                      [B7D7C580] iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device          \Driver\Ftdisk \Device\HarddiskVolume3                                                                              8A54A1F8
Device          \Driver\Cdrom \Device\CdRom1                                                                                        899F91F8
Device          \Driver\Ftdisk \Device\HarddiskVolume4                                                                              8A54A1F8
Device          \Driver\NetBT \Device\NetBT_Tcpip_{7BA174FC-A1AC-4D13-9136-0DDF9DBED659}                                            8817A1F8
Device          \Driver\NetBT \Device\NetBt_Wins_Export                                                                            8817A1F8
Device          \Driver\NetBT \Device\NetbiosSmb                                                                                    8817A1F8
Device          \Driver\PCI_PNP9208 \Device\0000004e                                                                                spce.sys
Device          \Driver\usbuhci \Device\USBFDO-0                                                                                    8A4271F8
Device          \Driver\usbuhci \Device\USBFDO-1                                                                                    8A4271F8
Device          \FileSystem\MRxSmb \Device\LanmanDatagramReceiver                                                                  881561F8
Device          \Driver\usbehci \Device\USBFDO-2                                                                                    89A311F8
Device          \FileSystem\MRxSmb \Device\LanmanRedirector                                                                        881561F8
Device          \Driver\usbuhci \Device\USBFDO-3                                                                                    8A4271F8
Device          \Driver\usbuhci \Device\USBFDO-4                                                                                    8A4271F8
Device          \Driver\Ftdisk \Device\FtControl                                                                                    8A54A1F8
Device          \Driver\NetBT \Device\NetBT_Tcpip_{1458B29B-436D-4EDE-AAF2-0103BF23F020}                                            8817A1F8
Device          \Driver\usbuhci \Device\USBFDO-5                                                                                    8A4271F8
Device          \Driver\usbehci \Device\USBFDO-6                                                                                    89A311F8
Device          \Driver\a6pxy6ss \Device\Scsi\a6pxy6ss1                                                                            899ED500
Device          \Driver\a6pxy6ss \Device\Scsi\a6pxy6ss1Port2Path0Target0Lun0                                                        899ED500
Device          \FileSystem\Fastfat \Fat                                                                                            88147500

AttachedDevice  \FileSystem\Fastfat \Fat                                                                                            fltMgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

Device          \FileSystem\Cdfs \Cdfs                                                                                              88148500

---- Registry - GMER 1.0.15 ----

Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1                                                                  771343423
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2                                                                  285507792
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0                                                                  1
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC                                   
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0                                C:\Programme\DAEMON Tools Lite\
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0                                0x00 0x00 0x00 0x00 ...
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                0
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                              0x4D 0x0E 0xF1 0x16 ...
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001                         
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0                        0x20 0x01 0x00 0x00 ...
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12                    0x8E 0xFA 0x93 0xFF ...
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0                     
Reg            HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12                0xA4 0x4A 0x98 0xAE ...
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)               
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0                                    C:\Programme\DAEMON Tools Lite\
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0                                    0x00 0x00 0x00 0x00 ...
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0                                    0
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12                                  0x4D 0x0E 0xF1 0x16 ...
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)     
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0                            0x20 0x01 0x00 0x00 ...
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12                        0x8E 0xFA 0x93 0xFF ...
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet) 
Reg            HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12                    0xA4 0x4A 0x98 0xAE ...

---- EOF - GMER 1.0.15 ----

--- --- ---



LOG von OSAM

OSAM Logfile:
Code:

Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 17:57:31 on 02.04.2012

OS: Windows XP Professional Service Pack 3 (Build 2600)
Default Browser: Microsoft Corporation Internet Explorer 8.00.6001.18702

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"DivXControlPanelApplet.cpl" - "DivX, Inc." - C:\WINDOWS\system32\DivXControlPanelApplet.cpl
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
"infocardcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\infocardcpl.cpl
"javacpl.cpl" - "Sun Microsystems, Inc." - C:\WINDOWS\system32\javacpl.cpl
"PhysX.cpl" - "NVIDIA Corporation" - C:\WINDOWS\system32\PhysX.cpl
"SscRdCpa.cpl" - "SuperSpeed Software, Inc." - C:\WINDOWS\system32\SscRdCpa.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"mlcfg32.cpl" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office12\MLCFG32.CPL
"RAM Disk Devices" - "SuperSpeed Software, Inc." - C:\WINDOWS\System32\SscRdCpa.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"a5vq80b8" (a5vq80b8) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\a5vq80b8.sys  (Hidden registry entry, rootkit activity | File signed by Microsoft)
"Aspi32" (Aspi32) - "Adaptec" - C:\WINDOWS\system32\drivers\Aspi32.sys
"avgntflt" (avgntflt) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avkmgr.sys
"catchme" (catchme) - ? - C:\ComboFix\catchme.sys  (File not found)
"Changer" (Changer) - ? - C:\WINDOWS\system32\drivers\Changer.sys  (File not found)
"HSF_DPV" (HSF_DPV) - "Conexant Systems, Inc." - C:\WINDOWS\System32\DRIVERS\HSX_DPV.sys
"HSXHWAZL" (HSXHWAZL) - "Conexant Systems, Inc." - C:\WINDOWS\System32\DRIVERS\HSXHWAZL.sys
"i2omgmt" (i2omgmt) - ? - C:\WINDOWS\system32\drivers\i2omgmt.sys  (File not found)
"lbrtfdc" (lbrtfdc) - ? - C:\WINDOWS\system32\drivers\lbrtfdc.sys  (File not found)
"mdmxsdk" (mdmxsdk) - "Conexant" - C:\WINDOWS\System32\DRIVERS\mdmxsdk.sys
"PCIDump" (PCIDump) - ? - C:\WINDOWS\system32\drivers\PCIDump.sys  (File not found)
"PDCOMP" (PDCOMP) - ? - C:\WINDOWS\system32\drivers\PDCOMP.sys  (File not found)
"PDFRAME" (PDFRAME) - ? - C:\WINDOWS\system32\drivers\PDFRAME.sys  (File not found)
"PDRELI" (PDRELI) - ? - C:\WINDOWS\system32\drivers\PDRELI.sys  (File not found)
"PDRFRAME" (PDRFRAME) - ? - C:\WINDOWS\system32\drivers\PDRFRAME.sys  (File not found)
"PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\PxHelp20.sys
"sptd" (sptd) - "Duplex Secure Ltd." - C:\WINDOWS\System32\Drivers\sptd.sys  (File is exclusively opened, access blocked)
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\ssmdrv.sys
"StarOpen" (StarOpen) - ? - C:\WINDOWS\system32\drivers\StarOpen.sys  (File found, but it contains no detailed information)
"WDICA" (WDICA) - ? - C:\WINDOWS\system32\drivers\WDICA.sys  (File not found)
"winachsf" (winachsf) - "Conexant Systems, Inc." - C:\WINDOWS\System32\DRIVERS\HSX_CNXT.sys
"XAudio" (XAudio) - "Conexant Systems, Inc." - C:\WINDOWS\System32\DRIVERS\xaudio.sys

[Explorer]
-----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )-----
{89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" - "Microsoft Corporation" - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install
-----( HKLM\Software\Classes\Protocols\Filter )-----
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
-----( HKLM\Software\Classes\Protocols\Handler )-----
{314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll
{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" - "Skype Technologies" - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
{88FED34C-F0CA-4636-A375-3CB6248B04CD} "Local Groove Web Services Protocol" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks )-----
{B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{42071714-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Anzeigeverschiebung" - ? -  (File not found | COM-object registry key not found)
{1CDB2949-8F65-4355-8456-263E7C208A5D} "Desktop Explorer" - "NVIDIA Corporation" - C:\Programme\NVIDIA Corporation\nView\nvshell.dll
{1E9B04FB-F9E5-4718-997B-B8DA88302A47} "Desktop Explorer Menu" - "NVIDIA Corporation" - C:\Programme\NVIDIA Corporation\nView\nvshell.dll
{A70C977A-BF00-412C-90B7-034C51DA2439} "DesktopContext Class" - "NVIDIA Corporation" - C:\WINDOWS\system32\nvcpl.dll
{1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" - "Microsoft Corporation" - c:\WINDOWS\system32\mscoree.dll
{99FD978C-D287-4F50-827F-B2C658EDA8E7} "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} "Groove Explorer Icon Overlay 2 (GFS Stub)" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{920E6DB1-9907-4370-B3A0-BAFC03D81399} "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{16F3DD56-1AF5-4347-846D-7C10C4192619} "Groove Explorer Icon Overlay 3 (GFS Folder)" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{2916C86E-86A6-43FE-8112-43ABE6BF8DCC} "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{2A541AE1-5BF6-4665-A8A3-CFA9672E4291} "Groove Folder Synchronization" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{6C467336-8281-4E60-8204-430CED96822D} "Groove GFS Context Menu Handler" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{A449600E-1DC6-4232-B948-9BD794D62056} "Groove GFS Stub Icon Handler" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{387E725D-DC16-4D76-B310-2C93ED4752A0} "Groove XML Icon Handler" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Kontextmenü für die Verschlüsselung" - ? -  (File not found | COM-object registry key not found)
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\msohevi.dll
{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\msoshext.dll
{5858A72C-C2B4-4dd7-B2BF-B76DB1BD9F6C} "Microsoft Office OneNote Namespace Extension for Windows Desktop Search" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office12\ONFILTER.DLL
{00020D75-0000-0000-C000-000000000046} "Microsoft Office Outlook" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office12\MLSHEXT.DLL
{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\msoshext.dll
{ECF03A33-103D-11d2-854D-006008059367} "MyDocs Copy Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{ECF03A32-103D-11d2-854D-006008059367} "MyDocs Drop Target" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{4a7ded0a-ad25-11d0-98a8-0800361b1103} "MyDocs menu and properties" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{FFB699E0-306A-11d3-8BD1-00104B6F7516} "NVIDIA CPL Extension" - "NVIDIA Corporation" - C:\WINDOWS\system32\nvcpl.dll
{1E9B04FB-F9E5-4718-997B-B8DA88302A48} "nView Desktop Context Menu" - "NVIDIA Corporation" - C:\Programme\NVIDIA Corporation\nView\nvshell.dll
{0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office12\OLKFSTUB.DLL
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\shlext.dll
{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shellerweiterungen für die Dateikomprimierung" - ? -  (File not found | COM-object registry key not found)
{e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - ? - C:\Programme\WinRAR\rarext.dll  (File found, but it contains no detailed information)
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad )-----
{35CEC8A3-2BE6-11D2-8773-92E220524153} "SysTray" - "Microsoft Corporation" - C:\WINDOWS\system32\stobject.dll

[Internet Explorer]
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
ITBar7Height "ITBar7Height" - ? -  (File not found | COM-object registry key not found)
<binary data> "ITBar7Layout" - ? -  (File not found | COM-object registry key not found)
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} "Java Plug-in 1.6.0_07" - "Sun Microsystems, Inc." - C:\Programme\Java\jre1.6.0_07\bin\npjpi160_07.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_20" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_20.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} "Java Plug-in 1.6.0_20" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_20.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_20" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_20.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{48E73304-E1D6-4330-914C-F5F514E3486C} "An OneNote senden" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
"ICQ6" - "ICQ, LLC." - C:\Programme\ICQ6.5\ICQ.exe
{B119EB0C-C021-46CF-85B0-34A760E0D5FE} "IE7Pro Preferences" - "IE7Pro.com" - C:\Programme\ie7pro\IEPro.dll
{FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll
{00011268-E188-40DF-A514-835FCD78B1BF} "IE7Pro BHO" - "IE7Pro.com" - C:\Programme\ie7pro\IEPro.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jp2ssv.dll
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

[Logon]
-----( %AllUsersProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\desktop.ini
-----( %UserProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\Giu\Startmenü\Programme\Autostart\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"DAEMON Tools Lite" - "DT Soft Ltd" - "C:\Programme\DAEMON Tools Lite\DTLite.exe" -autorun
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Programme\Avira\AntiVir Desktop\avgnt.exe" /min
"GrooveMonitor" - "Microsoft Corporation" - "C:\Programme\Microsoft Office\Office12\GrooveMonitor.exe"
"IntelWireless" - "Intel(R) Corporation" - "C:\Programme\Gemeinsame Dateien\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
"IntelZeroConfig" - "Intel(R) Corporation" - "C:\Programme\Intel\WiFi\bin\ZCfgSvc.exe"
"NvCplDaemon" - "NVIDIA Corporation" - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
"NVHotkey" - "NVIDIA Corporation" - rundll32.exe nvHotkey.dll,Start
"NvMediaCenter" - "NVIDIA Corporation" - RunDLL32.exe NvMCTray.dll,NvTaskbarInit
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe"
"systray" - ? - C:\Programme\Dell\Dell Mobile Broadband\systray.exe

[Network Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order )-----
"IntelNetProvCredMan" - "Intel(R) Corporation" - C:\WINDOWS\system32\netprovcredman.dll

[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"Send To Microsoft OneNote Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\msonpmon.dll

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
"ASP.NET-Zustandsdienst" (aspnet_state) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
"Automatic Updates" (wuauserv) - "Microsoft Corporation" - C:\WINDOWS\system32\wuauserv.dll
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\sched.exe
"CiSvc" (CiSvc) - ? - C:\WINDOWS\system32\cisvc.exe  (File not found)
"ERSvc" (ERSvc) - ? - C:\WINDOWS\System32\ersvc.dll  (File not found)
"ICQ Service" (ICQ Service) - ? - C:\Programme\ICQ6Toolbar\ICQ Service.exe  (File not found)
"Intel(R) PROSet/Wireless SSO Service" (WLANKEEPER) - "Intel(R) Corporation" - C:\Programme\Intel\WiFi\bin\WLKeeper.exe
"Intel® PROSet/Wireless Event Log" (EvtEng) - "Intel(R) Corporation" - C:\Programme\Intel\WiFi\bin\EvtEng.exe
"Intel® PROSet/Wireless Registry Service" (RegSrvc) - "Intel(R) Corporation" - C:\Programme\Gemeinsame Dateien\Intel\WirelessCommon\RegSrvc.exe
"Intel® PROSet/Wireless WiFi Service" (S24EventMonitor) - "Intel(R) Corporation" - C:\Programme\Intel\WiFi\bin\S24EvMon.exe
"Java Quick Starter" (JavaQuickStarterService) - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jqs.exe
"Microsoft Office Diagnostics Service" (odserv) - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE
"Microsoft Office Groove Audit Service" (Microsoft Office Groove Audit Service) - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\GrooveAuditService.exe
"NMSAccessU" (NMSAccessU) - ? - C:\Programme\CDBurnerXP\NMSAccessU.exe  (File found, but it contains no detailed information)
"NVIDIA Display Driver Service" (nvsvc) - "NVIDIA Corporation" - C:\WINDOWS\system32\nvsvc32.exe
"Office Source Engine" (ose) - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE
"Windows CardSpace" (idsvc) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
"Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
"XAudioService" (XAudioService) - "Conexant Systems, Inc." - C:\WINDOWS\system32\DRIVERS\xaudio.exe

[Winlogon]
-----( HKCU\Control Panel\IOProcs )-----
"MVB" - ? - mvfs32.dll  (File not found)
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions )-----
{F9C77450-3A41-477E-9310-9ACD617BD9E3} "Group Policy Applications" - ? - gpprefcl.dll  (File not found)
{728EE579-943C-4519-9EF7-AB56765798ED} "Group Policy Data Sources" - ? - gpprefcl.dll  (File not found)
{1A6364EB-776B-4120-ADE1-B63A406A76B5} "Group Policy Device Settings" - ? - gpprefcl.dll  (File not found)
{5794DAFD-BE60-433f-88A2-1A31939AC01F} "Group Policy Drive Maps" - ? - gpprefcl.dll  (File not found)
{0E28E245-9368-4853-AD84-6DA3BA35BB75} "Group Policy Environment" - ? - gpprefcl.dll  (File not found)
{7150F9BF-48AD-4da4-A49C-29EF4A8369BA} "Group Policy Files" - ? - gpprefcl.dll  (File not found)
{A3F3E39B-5D83-4940-B954-28315B82F0A8} "Group Policy Folder Options" - ? - gpprefcl.dll  (File not found)
{6232C319-91AC-4931-9385-E70C2B099F0E} "Group Policy Folders" - ? - gpprefcl.dll  (File not found)
{74EE6C03-5363-4554-B161-627540339CAB} "Group Policy Ini Files" - ? - gpprefcl.dll  (File not found)
{E47248BA-94CC-49c4-BBB5-9EB7F05183D0} "Group Policy Internet Settings" - ? - gpprefcl.dll  (File not found)
{17D89FEC-5C44-4972-B12D-241CAEF74509} "Group Policy Local Users and Groups" - ? - gpprefcl.dll  (File not found)
{3A0DBA37-F8B2-4356-83DE-3E90BD5C261F} "Group Policy Network Options" - ? - gpprefcl.dll  (File not found)
{6A4C88C6-C502-4f74-8F60-2CB23EDC24E2} "Group Policy Network Shares" - ? - gpprefcl.dll  (File not found)
{E62688F0-25FD-4c90-BFF5-F508B9D2E31F} "Group Policy Power Options" - ? - gpprefcl.dll  (File not found)
{BC75B1ED-5833-4858-9BB8-CBF0B166DF9D} "Group Policy Printers" - ? - gpprefcl.dll  (File not found)
{E5094040-C46C-4115-B030-04FB2E545B00} "Group Policy Regional Options" - ? - gpprefcl.dll  (File not found)
{B087BE9D-ED37-454f-AF9C-04291E351182} "Group Policy Registry" - ? - gpprefcl.dll  (File not found)
{AADCED64-746C-4633-A97C-D61349046527} "Group Policy Scheduled Tasks" - ? - gpprefcl.dll  (File not found)
{91FBB303-0CD5-4055-BF42-E512A681B325} "Group Policy Services" - ? - gpprefcl.dll  (File not found)
{C418DD9D-0D14-4efb-8FBF-CFE535C8FAC7} "Group Policy Shortcuts" - ? - gpprefcl.dll  (File not found)
{E4F48E54-F38D-4884-BFB9-D4D2E5729C18} "Group Policy Start Menu Settings" - ? - gpprefcl.dll  (File not found)

===[ Logfile end ]=========================================[ Logfile end ]===

--- --- ---




LOG von aswMBR

Code:

aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-04-02 18:00:02
-----------------------------
18:00:02.187    OS Version: Windows 5.1.2600 Service Pack 3
18:00:02.187    Number of processors: 2 586 0xF0D
18:00:02.187    ComputerName: GIU-LAPTOP  UserName: Giu
18:00:03.468    Initialize success
18:02:21.578    AVAST engine defs: 12040200
18:02:57.796    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-0
18:02:57.796    Disk 0 Vendor: Hitachi_ BBFO Size: 238475MB BusType: 3
18:02:57.812    Disk 0 MBR read successfully
18:02:57.812    Disk 0 MBR scan
18:02:57.875    Disk 0 Windows XP default MBR code
18:02:57.875    Disk 0 Partition 1 00    DE Dell Utility Dell 8.0      117 MB offset 63
18:02:57.890    Disk 0 Partition 2 80 (A) 07    HPFS/NTFS NTFS        10240 MB offset 241664
18:02:57.906    Disk 0 Partition 3 00    07    HPFS/NTFS NTFS      225545 MB offset 21221865
18:02:57.906    Disk 0 Partition - 00    0F Extended LBA              2560 MB offset 483151872
18:02:57.937    Disk 0 Partition 4 00    DD              MSDOS5.0    2559 MB offset 483153920
18:02:57.953    Disk 0 scanning sectors +488394752
18:02:58.046    Disk 0 scanning C:\WINDOWS\system32\drivers
18:03:07.890    Service scanning
18:03:26.625    Service sptd C:\WINDOWS\System32\Drivers\sptd.sys **LOCKED** 32
18:03:33.093    Modules scanning
18:03:45.078    Disk 0 trace - called modules:
18:03:45.093    ntkrnlpa.exe CLASSPNP.SYS disk.sys iaStor.sys spvq.sys hal.dll >>UNKNOWN [0x8a4fa938]<<
18:03:45.093    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a553478]
18:03:45.093    3 CLASSPNP.SYS[b8108fd7] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-0[0x8a44a030]
18:03:46.203    AVAST engine scan C:\WINDOWS
18:03:59.125    AVAST engine scan C:\WINDOWS\system32
18:06:27.406    AVAST engine scan C:\WINDOWS\system32\drivers
18:06:43.140    AVAST engine scan C:\Dokumente und Einstellungen\Giu
18:07:44.812    File: C:\Dokumente und Einstellungen\Giu\Eigene Dateien\Downloads\OTL.exe  **INFECTED** Win32:Malware-gen
18:13:32.843    Disk 0 MBR has been saved successfully to "C:\Dokumente und Einstellungen\Giu\Desktop\MBR.dat"
18:13:32.843    The log file has been saved successfully to "C:\Dokumente und Einstellungen\Giu\Desktop\aswMBR.txt"


cosinus 02.04.2012 20:10

Sieht ok aus. Mach bitte zur Kontrolle Vollscans mit Malwarebytes und SASW und poste die Logs.
Denk dran beide Tools zu updaten vor dem Scan!!

playmo 04.04.2012 12:19

MALEWAREBYTES

hat auch einige sachen angezeigt, hab aber erstmal noch nichts gelöscht!

Code:

Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Datenbank Version: v2012.04.03.10

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 7.0.5730.13
Giu :: GIU-LAPTOP [Administrator]

03.04.2012 19:56:57
mbam-log-2012-04-03 (22-28-40).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 271850
Laufzeit: 2 Stunde(n), 29 Minute(n), 25 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 2
HKCR\Interface\{66666666-6666-6666-6666-660066226658} (Adware.GamePlayLab) -> Keine Aktion durchgeführt.
HKCR\TypeLib\{44444444-4444-4444-4444-440044224458} (Adware.GamePlayLab) -> Keine Aktion durchgeführt.

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 1
C:\Dokumente und Einstellungen\Giu\Eigene Dateien\Downloads\RemoveWGA.exe (PUP.RemoveWGA) -> Keine Aktion durchgeführt.

(Ende)

SUPERANTISPYWARE

hat 5 trojanerdateien angezeigt, die sofort gelöscht werden sollen...hab ich auch gemacht! 494 weitere cookies oder so, hab ich erstmal nicht gelöscht....hier die logdaten.

Code:

SUPERAntiSpyware Scan Log
hxxp://www.superantispyware.com

Generated 04/04/2012 at 11:02 AM

Application Version : 5.0.1146

Core Rules Database Version : 8415
Trace Rules Database Version: 6227

Scan type      : Quick Scan
Total Scan Time : 00:03:50

Operating System Information
Windows XP Professional 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator

Memory items scanned      : 548
Memory threats detected  : 0
Registry items scanned    : 28704
Registry threats detected : 0
File items scanned        : 6292
File threats detected    : 488

Adware.Tracking Cookie
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@ad.zanox[2].txt [ /ad.zanox ]
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@dyntracker[2].txt [ /dyntracker ]
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@mediaplex[1].txt [ /mediaplex ]
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@smartadserver[1].txt [ /smartadserver ]
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@tracking.quisma[1].txt [ /tracking.quisma ]
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@www.zanox-affiliate[1].txt [ /www.zanox-affiliate ]
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@zanox-affiliate[1].txt [ /zanox-affiliate ]
    C:\Dokumente und Einstellungen\Giu\Cookies\giu@zanox[2].txt [ /zanox ]
    C:\Dokumente und Einstellungen\Giu\Cookies\WZQ5KROJ.txt [ /apmebf.com ]
    C:\Dokumente und Einstellungen\Giu\Cookies\BU08UFWV.txt [ /indieclick.com ]
    C:\Dokumente und Einstellungen\Giu\Cookies\UV92WCWN.txt [ /atdmt.com ]
    C:\Dokumente und Einstellungen\Giu\Cookies\P40DIWLS.txt [ /optimize.indieclick.com ]
    C:\Dokumente und Einstellungen\Giu\Cookies\4M70IJUO.txt [ /xiti.com ]
    .im.banner.t-online.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adviva.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ad.adnet.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    eas.apm.emediate.eu [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .xiti.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    fr.sitestat.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    fr.sitestat.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxpose.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    in.getclicky.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .112.2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adviva.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tto2.traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    de.sitestat.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad1.adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .olympiaverlag.122.2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tradedoubler.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .unitymedia.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .getclicky.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ad.de.doubleclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    wstat.wibiya.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .amazon-adsystem.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .amazon-adsystem.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ads.adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stats.justhost.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ad-emea.doubleclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tto2.traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .mmotraffic.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .mmotraffic.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .yieldmanager.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .overture.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver.adreactor.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.zanox-affiliate.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.zanox.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webresint.122.2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .aka-cdn-ns.adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ads.247activemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .richmedia.yahoo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    eas.apm.emediate.eu [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    e2.emediate.se [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver.partyausfall.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .deadformat.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .deadformat.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    de.sitestat.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .azjmp.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    dc.tremormedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ebusiness.springer-business-media.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.effiliation.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    eas.apm.emediate.eu [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    stat.dealtime.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .urbia.wwe-media.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .steelhousemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    7.rotator.wigetmedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.googleadservices.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    eas4.emediate.eu [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.sim-technik.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .bs.serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.adform.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .yadro.ru [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .awdgmbh.112.2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.active-tracking.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.active-tracking.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.active-tracking.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    de.sitestat.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    de.sitestat.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .harrenmedianetwork.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adprudence.rotator.hadj7.adjuggler.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adnetwork.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adprudence.rotator.hadj7.adjuggler.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.solocpm.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.solocpm.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.dyntracker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .germanwings.112.2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .xm.xtendmedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www2.adserverpub.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www2.adserverpub.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www2.adserverpub.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www2.adserverpub.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.adserver01.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .advertstream.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.findpalace.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .myroitracking.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .clicksor.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .clicksor.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.publicidees.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.publicidees.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .clicksor.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .clicksor.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver1.mokono.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    edates.traffective-tracking.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    edates.traffective-tracking.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    edates.traffective-tracking.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver.gb4.motorpresse.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    media.gan-online.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.adform.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .a.revenuemax.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.gameforge.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .mobildiscounter.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    servestats.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    servestats.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    servestats.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.servestats.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    statse.webtrendslive.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    counters.gigya.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .guj.122.2o7.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tradedoubler.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tradedoubler.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adxvalue.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ad.adnet.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.dyntracker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .eyewonder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ad.adnet.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver.gb5.motorpresse.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .euros4click.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.adserver01.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.stats.casio.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    server.adform.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .unitymedia.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver.mediscope.ch [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver.11freunde.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .hightraffic.hugoboss.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ads2.critic.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    eas.apm.emediate.eu [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .afe2.specificclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adultfriendfinder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adultfriendfinder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adultfriendfinder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adultfriendfinder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adultfriendfinder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adultfriendfinder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adultfriendfinder.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    tracking.hostgator.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webstats4u.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.mindshare.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .weborama.fr [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .samsung.solution.weborama.fr [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .samsung.solution.weborama.fr [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .samsung.solution.weborama.fr [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .samsung.solution.weborama.fr [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adserver.anschlusstor.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    server.adform.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.effiliation.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.effiliation.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.effiliation.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.effiliation.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.effiliation.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .smartadserver.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    rts.pgmediaserve.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    rts.pgmediaserve.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    rts.pgmediaserve.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .de.partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .liveperson.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .technoratimedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .technoratimedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .micklemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .unister-adservices.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .unister-adservices.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .bs.serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .traffictrack.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adviva.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tribalfusion.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .im.banner.t-online.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    7.rotator.wigetmedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.adition.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.adition.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .aim4media.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    partners.webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.etracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    srv.clickfuse.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .clickfuse.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tradedoubler.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    media.gan-online.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .dyntracker.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .im.banner.t-online.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    clicks.pangora.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    clicks.pangora.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    clicks.pangora.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    clicks.pangora.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    clicks.pangora.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .im.banner.t-online.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad1.adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .im.banner.t-online.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ww251.smartadserver.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tradedoubler.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    track.adform.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adform.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    eas.apm.emediate.eu [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    eas.apm.emediate.eu [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .ad.adnet.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    www.zanox-affiliate.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .unitymedia.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .unitymedia.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.dyntracker.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.zanox.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad4.adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad2.adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zanox-affiliate.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad3.adfarm1.adition.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .zanox.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tradedoubler.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tradedoubler.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .im.banner.t-online.de [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .webmasterplan.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .tracking.quisma.com [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOKUMENTE UND EINSTELLUNGEN\GIU\ANWENDUNGSDATEN\MOZILLA\FIREFOX\PROFILES\7VMGY0MA.DEFAULT\COOKIES.SQLITE ]

COSINUS FOR PRESIDENT:-)!
DANKE! DANKE! DANKE!

cosinus 04.04.2012 13:06

Zitat:

Keine Aktion durchgeführt.
-> No action taken.
Die Funde müssen mit Malwarebytes entfernt waren! Bitte nachholen falls noch nicht getan!

playmo 04.04.2012 18:39

habe die sachen von malwarebytes entfernt!
muss ich superantispyware jetzt auch nochmal laufen lassen
und auch ALLES gefundene dort löschen?!?
bzw wie gehts weiter?

DANKE!!!

Code:

Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Datenbank Version: v2012.04.04.03

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 7.0.5730.13
Giu :: GIU-LAPTOP [Administrator]

04.04.2012 14:33:46
mbam-log-2012-04-04 (14-33-46).txt

Art des Suchlaufs: Vollständiger Suchlauf
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 272859
Laufzeit: 2 Stunde(n), 26 Minute(n), 30 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 2
HKCR\Interface\{66666666-6666-6666-6666-660066226658} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\TypeLib\{44444444-4444-4444-4444-440044224458} (Adware.GamePlayLab) -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 1
C:\Dokumente und Einstellungen\Giu\Eigene Dateien\Downloads\RemoveWGA.exe (PUP.RemoveWGA) -> Erfolgreich gelöscht und in Quarantäne gestellt.

(Ende)


cosinus 04.04.2012 22:12

Nein, bei SASW wurden nur Cookies gefunden

Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )

Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat.

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller http://filepony.de/download-cookie_culler/
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ich halte es so, dass ich zum "wilden Surfen" den Opera-Browser oder Chromium unter meinem Linux verwende. Mein Hauptbrowser (Firefox) speichert nur die Cookies von den Sites die ich auch will, alles andere lehne ich manuell ab (der FF fragt mich immer) - die anderen Browser nehmen alles an Cookies zwar an, aber spätestens beim nächsten Start von Opera oder Chromium sind keine Cookies mehr da.


Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?

playmo 19.04.2012 10:04

THANK YOU!!!

also außer den cookies hat antispyware nix gefunden.

wie deinstalliere ich denn die ganzen runtergeladenen programme am besten?
also wo geht das?

UND kann ich die viren irgendwie von der kamera und dem stick gekommen???
am liebsten ohne die bilder zu verlieren.

:daumenhoc

cosinus 19.04.2012 18:24

Dann wären wir durch! :abklatsch:

Die Programme, die hier zum Einsatz kamen, können alle wieder runter. CF kann über Start, Ausführen mit combofix /uninstall entfernt werden. Melde dich falls es da Fehlermeldungen zu gibt. Mit Hilfe von OTL kannst du auch viele Tools entfernen:

Starte bitte OTL und klicke auf Bereinigung.
Dies wird die meisten Tools entfernen, die wir zur Bereinigung benötigt haben. Sollte etwas bestehen bleiben, bitte mit Rechtsklick --> Löschen entfernen.


Malwarebytes zu behalten ist zu empfehlen. Kannst ja 1x im Monat damit einen Vollscan machen, aber immer vorher ans Update denken.


Bitte abschließend die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden.
Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern.


Microsoftupdate

Windows XP: Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren.

Windows Vista/7: Anleitung Windows-Update


PDF-Reader aktualisieren
Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast)

Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader.

Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers:

Adobe - Andere Version des Adobe Flash Player installieren

Notfalls kann man auch von Chip.de runterladen => http://filepony.de/?q=Flash+Player

Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind.


Java-Update
Veraltete Java-Installationen sind ein Sicherheitsrisiko, daher solltest Du die alten Versionen löschen (falls vorhanden, am besten mit JavaRa) und auf die neuste aktualisieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.

playmo 30.04.2012 14:37

wow...wäre schön, wenn jetzt wirklich alles wieder fit ist auf dem rechner!
THANK YOU:-):knuddel:

combofix und superantispy hab ich irgendwie noch nicht deinstalliert bekommen.
über ausführen ging combofix nicht und superantispy öffnet sich immer alleine beim hochfahren vom computer.


jetzt muss ich aber doch noch mal auf meine anfangsfrage zurückkommen.
WIE BEKOMME ICH DEN VIRUS VON MEINER CAMERA UND DEM STICK???

du hattest zu beginn schon folgendes geschrieben:

"Windows XP: Zur Vereinfachung hab ich mal die noautoplay.reg hochgeladen. Lad das auf dem Desktop herunter, führ die Datei aus und bestätige mit ja. Nach einem Neustart des Rechners ist die automatische Wiedergabe (von Datenträgern) auf allen Laufwerken deaktiviert, d.h. keine CD, kein Stick oder sonstwas startet nach dem Einstecken mehr automatisch."

wie läuft das danach ab? öffne ich die datei dann manuell und dann einfach auf "löschen" und danach noch mal aus dem papierkorb löschen?
und sollte es nur eine autorun-datei sein, sollte ich diese besser entfernen?!?

ICH DANKE DIR AUFS EXTREMSTE!!!

cosinus 30.04.2012 17:31

Zitat:

WIE BEKOMME ICH DEN VIRUS VON MEINER CAMERA UND DEM STICK???
Wie wärs wenn du einfach die betroffenen Speichermedien formatierst?
Die Cam und den Stick kannst du so nicht kompromittieren, die speichern einfach die Daten. Wenn da eine virulente Datei bei ist, so befällt die Windows aber nicht das OS der Cam.

playmo 30.04.2012 19:26

"Wie wärs wenn du einfach die betroffenen Speichermedien formatierst?"

wie stelle ich das denn an?
(sorry, bin laie:stirn:)

cosinus 30.04.2012 19:36

Schonmal auf die Idee gekommen, dass man so was Triviales auch ergooglen kann? :balla:

Formatierung

USB Festplatte formatieren - USB Festplatten

Festplatte formatieren


Alle Zeitangaben in WEZ +1. Es ist jetzt 16:02 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131