Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   ich möchte meinen PC reinigen (https://www.trojaner-board.de/118563-moechte-meinen-pc-reinigen.html)

strobl 19.07.2012 18:31

Hier ist OTL-Fix-Log:

Code:

All processes killed
========== OTL ==========
HKU\S-1-5-21-726353797-3868275323-1685576310-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Prefs.js: "Ask.com" removed from browser.search.defaultengine
Prefs.js: "Ask.com" removed from browser.search.defaultenginename
Prefs.js: "softonic-de3 Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2431245&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.selectedEngine
Prefs.js: "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10395&locale=de_DE&apn_uid=4e3f1c85-c65a-492c-8734-25430ebf8b2e&apn_ptnrs=^ABT&apn_sauid=276ADA77-BA63-41D1-AA06-2D5E90D02623&apn_dtid=^YYYYYY^YY^DE&&q=" removed from keyword.URL
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\logs folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\datastore folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-13-Jul-2012-14-38-21-GMT folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\extensions\toolbar@ask.com folder moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\searchplugins\askcom.xml moved successfully.
C:\Dokumente und Einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\searchplugins\conduit.xml moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\HonorAutoRunSetting deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoCDBurning deleted successfully.
Registry value HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun not found.
Registry value HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
Registry value HKEY_USERS\S-1-5-21-726353797-3868275323-1685576310-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom\\AutoRun|DWORD:1 /E : value set successfully!
C:\AUTOEXEC.BAT moved successfully.
========== FILES ==========
C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\@ moved successfully.
C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\U folder moved successfully.
File\Folder C:\WINDOWS\Installer\{46514794-57fd-2790-ee5e-eac100dcd5ac}\n not found.
File\Folder C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\n not found.
C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\U folder moved successfully.
C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\{46514794-57fd-2790-ee5e-eac100dcd5ac}\@ moved successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: Administrator
->Temp folder emptied: 49152 bytes
->Temporary Internet Files folder emptied: 32768 bytes
 
User: All Users
 
User: Default User
->Temp folder emptied: 49152 bytes
->Temporary Internet Files folder emptied: 44745 bytes
->Flash cache emptied: 0 bytes
 
User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 33557 bytes
->Flash cache emptied: 434 bytes
 
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33758 bytes
 
User: User
->Temp folder emptied: 26987801 bytes
->Temporary Internet Files folder emptied: 83685 bytes
->Java cache emptied: 17179124 bytes
->FireFox cache emptied: 55189712 bytes
->Google Chrome cache emptied: 6138516 bytes
->Flash cache emptied: 523 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 19569 bytes
%systemroot%\System32 .tmp files removed: 1718663 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 17414 bytes
RecycleBin emptied: 0 bytes
 
Total Files Cleaned = 103,00 mb
 
 
[EMPTYFLASH]
 
User: Administrator
 
User: All Users
 
User: Default User
->Flash cache emptied: 0 bytes
 
User: LocalService
->Flash cache emptied: 0 bytes
 
User: NetworkService
 
User: User
->Flash cache emptied: 0 bytes
 
Total Flash Files Cleaned = 0,00 mb
 
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.54.0 log created on 07192012_192716

Files\Folders moved on Reboot...
File\Folder C:\WINDOWS\temp\Perflib_Perfdata_264.dat not found!

PendingFileRenameOperations files...
File C:\WINDOWS\temp\Perflib_Perfdata_264.dat not found!

Registry entries deleted on Reboot...


cosinus 19.07.2012 20:09

Bitte nun (im normalen Windows-Modus) dieses Tool von Kaspersky (TDSS-Killer) ausführen und das Log posten Anleitung und Downloadlink hier => http://www.trojaner-board.de/82358-t...entfernen.html

Hinweis: Bitte den Virenscanner abstellen bevor du den TDSS-Killer ausführst, denn v.a. Avira meldet im TDSS-Tool oft einen Fehalalrm!

Das Tool so einstellen wie unten im Bild angegeben - klick auf change parameters und setze die Haken wie im folgenden Screenshot abgebildet,
Dann auf Start Scan klicken und wenn es durch ist auf den Button Report klicken um das Log anzuzeigen. Dieses bitte komplett posten.
Wenn du das Log nicht findest oder den Inhalt kopieren und in dein Posting übertragen kannst, dann schau bitte direkt auf deiner Windows-Systempartition (meistens Laufwerk C:) nach, da speichert der TDSS-Killer seine Logs.

Hinweis: Bitte nichts voreilig mit dem TDSS-Killer löschen! Falls Objekte vom TDSS-Killer bemängelt werden, alle mit der Aktion "skip" behandeln und hier nur das Log posten!

http://saved.im/mtkwmtcxexhp/setting...8_16-25-18.jpg

strobl 20.07.2012 15:14

hier ist TDSS-Killer-Log

Code:

16:09:09.0718 1204        TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
16:09:10.0046 1204        ============================================================
16:09:10.0046 1204        Current date / time: 2012/07/20 16:09:10.0046
16:09:10.0046 1204        SystemInfo:
16:09:10.0046 1204       
16:09:10.0046 1204        OS Version: 5.1.2600 ServicePack: 3.0
16:09:10.0046 1204        Product type: Workstation
16:09:10.0046 1204        ComputerName: HEIM-PC
16:09:10.0046 1204        UserName: User
16:09:10.0046 1204        Windows directory: C:\WINDOWS
16:09:10.0046 1204        System windows directory: C:\WINDOWS
16:09:10.0046 1204        Processor architecture: Intel x86
16:09:10.0046 1204        Number of processors: 2
16:09:10.0046 1204        Page size: 0x1000
16:09:10.0046 1204        Boot type: Normal boot
16:09:10.0046 1204        ============================================================
16:09:11.0328 1204        Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
16:09:11.0328 1204        ============================================================
16:09:11.0328 1204        \Device\Harddisk0\DR0:
16:09:11.0328 1204        MBR partitions:
16:09:11.0328 1204        \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x24D3B800
16:09:11.0328 1204        ============================================================
16:09:11.0359 1204        C: <-> \Device\Harddisk0\DR0\Partition0
16:09:11.0359 1204        ============================================================
16:09:11.0359 1204        Initialize success
16:09:11.0359 1204        ============================================================
16:09:35.0093 3924        ============================================================
16:09:35.0093 3924        Scan started
16:09:35.0093 3924        Mode: Manual; SigCheck; TDLFS;
16:09:35.0093 3924        ============================================================
16:09:35.0312 3924        Abiosdsk - ok
16:09:35.0343 3924        abp480n5        (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
16:09:35.0796 3924        abp480n5 ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0796 3924        abp480n5 - detected UnsignedFile.Multi.Generic (1)
16:09:35.0812 3924        ac97intc        (0f2d66d5f08ebe2f77bb904288dcf6f0) C:\WINDOWS\system32\drivers\ac97intc.sys
16:09:35.0828 3924        ac97intc ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0828 3924        ac97intc - detected UnsignedFile.Multi.Generic (1)
16:09:35.0859 3924        ACPI            (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
16:09:35.0875 3924        ACPI ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0875 3924        ACPI - detected UnsignedFile.Multi.Generic (1)
16:09:35.0921 3924        ACPIEC          (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys
16:09:35.0921 3924        ACPIEC ( UnsignedFile.Multi.Generic ) - warning
16:09:35.0921 3924        ACPIEC - detected UnsignedFile.Multi.Generic (1)
16:09:36.0015 3924        AdobeFlashPlayerUpdateSvc (5e1a953c6472e7bb644892a4d0df5e72) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
16:09:36.0046 3924        AdobeFlashPlayerUpdateSvc - ok
16:09:36.0109 3924        adpu160m        (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
16:09:36.0109 3924        adpu160m ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0125 3924        adpu160m - detected UnsignedFile.Multi.Generic (1)
16:09:36.0140 3924        aec            (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
16:09:36.0140 3924        aec ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0140 3924        aec - detected UnsignedFile.Multi.Generic (1)
16:09:36.0203 3924        AFD            (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
16:09:36.0203 3924        AFD ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0203 3924        AFD - detected UnsignedFile.Multi.Generic (1)
16:09:36.0234 3924        agp440          (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
16:09:36.0250 3924        agp440 ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0250 3924        agp440 - detected UnsignedFile.Multi.Generic (1)
16:09:36.0250 3924        agpCPQ          (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
16:09:36.0265 3924        agpCPQ ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0265 3924        agpCPQ - detected UnsignedFile.Multi.Generic (1)
16:09:36.0265 3924        Aha154x        (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
16:09:36.0281 3924        Aha154x ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0281 3924        Aha154x - detected UnsignedFile.Multi.Generic (1)
16:09:36.0281 3924        aic78u2        (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
16:09:36.0296 3924        aic78u2 ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0296 3924        aic78u2 - detected UnsignedFile.Multi.Generic (1)
16:09:36.0296 3924        aic78xx        (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
16:09:36.0312 3924        aic78xx ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0312 3924        aic78xx - detected UnsignedFile.Multi.Generic (1)
16:09:36.0578 3924        Akamai          (29584f02a43e427c4227e3b1d9ff1b22) c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll
16:09:36.0578 3924        Suspicious file (Hidden): c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll. md5: 29584f02a43e427c4227e3b1d9ff1b22
16:09:36.0593 3924        Akamai ( HiddenFile.Multi.Generic ) - warning
16:09:36.0593 3924        Akamai - detected HiddenFile.Multi.Generic (1)
16:09:36.0734 3924        Alerter        (738d80cc01d7bc7584be917b7f544394) C:\WINDOWS\system32\alrsvc.dll
16:09:36.0765 3924        Alerter ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0765 3924        Alerter - detected UnsignedFile.Multi.Generic (1)
16:09:36.0781 3924        ALG            (190cd73d4984f94d823f9444980513e5) C:\WINDOWS\System32\alg.exe
16:09:36.0796 3924        ALG ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0796 3924        ALG - detected UnsignedFile.Multi.Generic (1)
16:09:36.0828 3924        AliIde          (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
16:09:36.0843 3924        AliIde ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0843 3924        AliIde - detected UnsignedFile.Multi.Generic (1)
16:09:36.0890 3924        alim1541        (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
16:09:36.0890 3924        alim1541 ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0890 3924        alim1541 - detected UnsignedFile.Multi.Generic (1)
16:09:36.0906 3924        amdagp          (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
16:09:36.0906 3924        amdagp ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0906 3924        amdagp - detected UnsignedFile.Multi.Generic (1)
16:09:36.0921 3924        amsint          (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
16:09:36.0921 3924        amsint ( UnsignedFile.Multi.Generic ) - warning
16:09:36.0921 3924        amsint - detected UnsignedFile.Multi.Generic (1)
16:09:37.0062 3924        AntiVirSchedulerService (466a0d95960dad3222c896d2cea99993) C:\Programme\Avira\AntiVir Desktop\sched.exe
16:09:37.0078 3924        AntiVirSchedulerService - ok
16:09:37.0125 3924        AntiVirService  (a489be6bb0aa1ff406b488b60542314b) C:\Programme\Avira\AntiVir Desktop\avguard.exe
16:09:37.0140 3924        AntiVirService - ok
16:09:37.0203 3924        AntiVirWebService (676894fa57b671fec5c3f05f8929e03b) C:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE
16:09:37.0218 3924        AntiVirWebService - ok
16:09:37.0281 3924        AppMgmt        (d45960be52c3c610d361977057f98c54) C:\WINDOWS\System32\appmgmts.dll
16:09:37.0296 3924        AppMgmt ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0296 3924        AppMgmt - detected UnsignedFile.Multi.Generic (1)
16:09:37.0296 3924        asc            (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
16:09:37.0312 3924        asc ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0312 3924        asc - detected UnsignedFile.Multi.Generic (1)
16:09:37.0328 3924        asc3350p        (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
16:09:37.0343 3924        asc3350p ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0343 3924        asc3350p - detected UnsignedFile.Multi.Generic (1)
16:09:37.0343 3924        asc3550        (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
16:09:37.0359 3924        asc3550 ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0359 3924        asc3550 - detected UnsignedFile.Multi.Generic (1)
16:09:37.0515 3924        aspnet_state    (0e5e4957549056e2bf2c49f4f6b601ad) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
16:09:37.0562 3924        aspnet_state - ok
16:09:37.0578 3924        AsyncMac        (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
16:09:37.0593 3924        AsyncMac ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0593 3924        AsyncMac - detected UnsignedFile.Multi.Generic (1)
16:09:37.0625 3924        atapi          (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
16:09:37.0625 3924        atapi ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0625 3924        atapi - detected UnsignedFile.Multi.Generic (1)
16:09:37.0625 3924        Atdisk - ok
16:09:37.0703 3924        Ati HotKey Poller (ab6a44c8a3c64ac89567784145910f49) C:\WINDOWS\system32\Ati2evxx.exe
16:09:37.0718 3924        Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - warning
16:09:37.0718 3924        Ati HotKey Poller - detected UnsignedFile.Multi.Generic (1)
16:09:37.0906 3924        ati2mtag        (a4d1c3cd20c8c595af1817bb5352ecd6) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
16:09:38.0000 3924        ati2mtag ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0000 3924        ati2mtag - detected UnsignedFile.Multi.Generic (1)
16:09:38.0187 3924        Atmarpc        (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
16:09:38.0187 3924        Atmarpc ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0187 3924        Atmarpc - detected UnsignedFile.Multi.Generic (1)
16:09:38.0234 3924        AudioSrv        (58ed0d5452df7be732193e7999c6b9a4) C:\WINDOWS\System32\audiosrv.dll
16:09:38.0234 3924        AudioSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0234 3924        AudioSrv - detected UnsignedFile.Multi.Generic (1)
16:09:38.0250 3924        audstub        (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
16:09:38.0250 3924        audstub ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0250 3924        audstub - detected UnsignedFile.Multi.Generic (1)
16:09:38.0296 3924        avgntflt        (d5541f0afb767e85fc412fc609d96a74) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
16:09:38.0328 3924        avgntflt - ok
16:09:38.0343 3924        avipbb          (7d967a682d4694df7fa57d63a2db01fe) C:\WINDOWS\system32\DRIVERS\avipbb.sys
16:09:38.0359 3924        avipbb - ok
16:09:38.0406 3924        avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\WINDOWS\system32\DRIVERS\avkmgr.sys
16:09:38.0421 3924        avkmgr - ok
16:09:38.0453 3924        Beep            (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
16:09:38.0468 3924        Beep ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0468 3924        Beep - detected UnsignedFile.Multi.Generic (1)
16:09:38.0515 3924        BITS            (d6f603772a789bb3228f310d650b8bd1) C:\WINDOWS\system32\qmgr.dll
16:09:38.0546 3924        BITS ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0546 3924        BITS - detected UnsignedFile.Multi.Generic (1)
16:09:38.0578 3924        Browser        (b42057f06bbb98b31876c0b3f2b54e33) C:\WINDOWS\System32\browser.dll
16:09:38.0593 3924        Browser ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0593 3924        Browser - detected UnsignedFile.Multi.Generic (1)
16:09:38.0640 3924        cbidf          (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
16:09:38.0640 3924        cbidf ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0640 3924        cbidf - detected UnsignedFile.Multi.Generic (1)
16:09:38.0640 3924        cbidf2k        (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
16:09:38.0656 3924        cbidf2k ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0656 3924        cbidf2k - detected UnsignedFile.Multi.Generic (1)
16:09:38.0671 3924        cd20xrnt        (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
16:09:38.0671 3924        cd20xrnt ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0671 3924        cd20xrnt - detected UnsignedFile.Multi.Generic (1)
16:09:38.0703 3924        Cdaudio        (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
16:09:38.0703 3924        Cdaudio ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0703 3924        Cdaudio - detected UnsignedFile.Multi.Generic (1)
16:09:38.0718 3924        Cdfs            (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
16:09:38.0734 3924        Cdfs ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0734 3924        Cdfs - detected UnsignedFile.Multi.Generic (1)
16:09:38.0781 3924        Cdrom          (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
16:09:38.0781 3924        Cdrom ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0796 3924        Cdrom - detected UnsignedFile.Multi.Generic (1)
16:09:38.0796 3924        Changer - ok
16:09:38.0812 3924        CiSvc          (28e3040d1f1ca2008cd6b29dfebc9a5e) C:\WINDOWS\system32\cisvc.exe
16:09:38.0828 3924        CiSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0828 3924        CiSvc - detected UnsignedFile.Multi.Generic (1)
16:09:38.0843 3924        ClipSrv        (778a30ed3c134eb7e406afc407e9997d) C:\WINDOWS\system32\clipsrv.exe
16:09:38.0859 3924        ClipSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:38.0859 3924        ClipSrv - detected UnsignedFile.Multi.Generic (1)
16:09:38.0984 3924        clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:09:39.0046 3924        clr_optimization_v2.0.50727_32 - ok
16:09:39.0062 3924        CmdIde          (c687f81290303d90099b027a6474f99f) C:\WINDOWS\system32\DRIVERS\cmdide.sys
16:09:39.0062 3924        CmdIde ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0062 3924        CmdIde - detected UnsignedFile.Multi.Generic (1)
16:09:39.0062 3924        COMSysApp - ok
16:09:39.0125 3924        Cpqarray        (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
16:09:39.0125 3924        Cpqarray ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0125 3924        Cpqarray - detected UnsignedFile.Multi.Generic (1)
16:09:39.0171 3924        CryptSvc        (611f824e5c703a5a899f84c5f1699e4d) C:\WINDOWS\System32\cryptsvc.dll
16:09:39.0187 3924        CryptSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0187 3924        CryptSvc - detected UnsignedFile.Multi.Generic (1)
16:09:39.0203 3924        dac2w2k        (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
16:09:39.0203 3924        dac2w2k ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0203 3924        dac2w2k - detected UnsignedFile.Multi.Generic (1)
16:09:39.0218 3924        dac960nt        (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
16:09:39.0218 3924        dac960nt ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0218 3924        dac960nt - detected UnsignedFile.Multi.Generic (1)
16:09:39.0250 3924        DcomLaunch      (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll
16:09:39.0265 3924        DcomLaunch ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0265 3924        DcomLaunch - detected UnsignedFile.Multi.Generic (1)
16:09:39.0312 3924        DgiVecp        (1ec27a51a2f9df052bc2b4c8376c8fea) C:\WINDOWS\system32\Drivers\DgiVecp.sys
16:09:39.0312 3924        DgiVecp ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0312 3924        DgiVecp - detected UnsignedFile.Multi.Generic (1)
16:09:39.0375 3924        Dhcp            (c29a1c9b75ba38fa37f8c44405dec360) C:\WINDOWS\System32\dhcpcsvc.dll
16:09:39.0375 3924        Dhcp ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0375 3924        Dhcp - detected UnsignedFile.Multi.Generic (1)
16:09:39.0421 3924        Disk            (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
16:09:39.0437 3924        Disk ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0437 3924        Disk - detected UnsignedFile.Multi.Generic (1)
16:09:39.0484 3924        DLABMFSM        (5b149ccfe275f4de0b4b8ec6b9f6821e) C:\WINDOWS\system32\DLA\DLABMFSM.SYS
16:09:39.0500 3924        DLABMFSM - ok
16:09:39.0500 3924        DLABOIOM        (ad4cb3d783634c90a9d0ce360933a63c) C:\WINDOWS\system32\DLA\DLABOIOM.SYS
16:09:39.0515 3924        DLABOIOM - ok
16:09:39.0515 3924        DLACDBHM        (5230cdb7e715f3a3b4a882e254cdd35d) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
16:09:39.0515 3924        DLACDBHM - ok
16:09:39.0562 3924        DLADResM        (dae193b1ddc6914f56b767a4f1406351) C:\WINDOWS\system32\DLA\DLADResM.SYS
16:09:39.0562 3924        DLADResM - ok
16:09:39.0578 3924        DLAIFS_M        (6a82f77c4a6f5235bf352f0028e2ef52) C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
16:09:39.0578 3924        DLAIFS_M - ok
16:09:39.0593 3924        DLAOPIOM        (0e6052c0ada37504896a847231a3907d) C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
16:09:39.0593 3924        DLAOPIOM - ok
16:09:39.0609 3924        DLAPoolM        (29670bb4e2b973c5b55a76107d4910b2) C:\WINDOWS\system32\DLA\DLAPoolM.SYS
16:09:39.0609 3924        DLAPoolM - ok
16:09:39.0625 3924        DLARTL_M        (77fe51f0f8d86804cb81f6ef6bfb86dd) C:\WINDOWS\system32\Drivers\DLARTL_M.SYS
16:09:39.0625 3924        DLARTL_M - ok
16:09:39.0640 3924        DLAUDFAM        (6b087732b86c1d866d69dbbe463ea90a) C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
16:09:39.0640 3924        DLAUDFAM - ok
16:09:39.0656 3924        DLAUDF_M        (bbeecb95f2841ae4a3e3690d46d7153d) C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
16:09:39.0671 3924        DLAUDF_M - ok
16:09:39.0671 3924        dmadmin - ok
16:09:39.0734 3924        dmboot          (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys
16:09:39.0765 3924        dmboot ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0765 3924        dmboot - detected UnsignedFile.Multi.Generic (1)
16:09:39.0781 3924        dmio            (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\drivers\dmio.sys
16:09:39.0781 3924        dmio ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0781 3924        dmio - detected UnsignedFile.Multi.Generic (1)
16:09:39.0796 3924        dmload          (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
16:09:39.0796 3924        dmload ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0796 3924        dmload - detected UnsignedFile.Multi.Generic (1)
16:09:39.0828 3924        dmserver        (25c83ffbba13b554eb6d59a9b2e2ee78) C:\WINDOWS\System32\dmserver.dll
16:09:39.0843 3924        dmserver ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0843 3924        dmserver - detected UnsignedFile.Multi.Generic (1)
16:09:39.0859 3924        DMusic          (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
16:09:39.0859 3924        DMusic ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0859 3924        DMusic - detected UnsignedFile.Multi.Generic (1)
16:09:39.0906 3924        Dnscache        (407f3227ac618fd1ca54b335b083de07) C:\WINDOWS\System32\dnsrslvr.dll
16:09:39.0921 3924        Dnscache ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0921 3924        Dnscache - detected UnsignedFile.Multi.Generic (1)
16:09:39.0968 3924        Dot3svc        (676e36c4ff5bcea1900f44182b9723e6) C:\WINDOWS\System32\dot3svc.dll
16:09:39.0984 3924        Dot3svc ( UnsignedFile.Multi.Generic ) - warning
16:09:39.0984 3924        Dot3svc - detected UnsignedFile.Multi.Generic (1)
16:09:40.0000 3924        dpti2o          (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
16:09:40.0015 3924        dpti2o ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0015 3924        dpti2o - detected UnsignedFile.Multi.Generic (1)
16:09:40.0031 3924        drmkaud        (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
16:09:40.0031 3924        drmkaud ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0031 3924        drmkaud - detected UnsignedFile.Multi.Generic (1)
16:09:40.0062 3924        DRVMCDB        (83106585494d5eb96f59187200c144bd) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
16:09:40.0078 3924        DRVMCDB - ok
16:09:40.0109 3924        DRVNDDM        (ffc371525aa55d1bae18715ebcb8797c) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
16:09:40.0109 3924        DRVNDDM - ok
16:09:40.0125 3924        E100B          (a6de5342417fec3c0aa8efebb899c431) C:\WINDOWS\system32\DRIVERS\e100b325.sys
16:09:40.0140 3924        E100B ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0140 3924        E100B - detected UnsignedFile.Multi.Generic (1)
16:09:40.0156 3924        EapHost        (4e4f2fddab0a0736d7671134dcce91fb) C:\WINDOWS\System32\eapsvc.dll
16:09:40.0156 3924        EapHost ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0156 3924        EapHost - detected UnsignedFile.Multi.Generic (1)
16:09:40.0203 3924        ERSvc          (877c18558d70587aa7823a1a308ac96b) C:\WINDOWS\System32\ersvc.dll
16:09:40.0203 3924        ERSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0203 3924        ERSvc - detected UnsignedFile.Multi.Generic (1)
16:09:40.0234 3924        Eventlog        (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe
16:09:40.0234 3924        Eventlog ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0234 3924        Eventlog - detected UnsignedFile.Multi.Generic (1)
16:09:40.0296 3924        EventSystem    (af4f6b5739d18ca7972ab53e091cbc74) C:\WINDOWS\system32\es.dll
16:09:40.0296 3924        EventSystem ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0296 3924        EventSystem - detected UnsignedFile.Multi.Generic (1)
16:09:40.0328 3924        Fastfat        (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
16:09:40.0328 3924        Fastfat ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0328 3924        Fastfat - detected UnsignedFile.Multi.Generic (1)
16:09:40.0390 3924        FastUserSwitchingCompatibility (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
16:09:40.0390 3924        FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0390 3924        FastUserSwitchingCompatibility - detected UnsignedFile.Multi.Generic (1)
16:09:40.0437 3924        Fdc            (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
16:09:40.0437 3924        Fdc ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0437 3924        Fdc - detected UnsignedFile.Multi.Generic (1)
16:09:40.0468 3924        Fips            (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys
16:09:40.0484 3924        Fips ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0484 3924        Fips - detected UnsignedFile.Multi.Generic (1)
16:09:40.0484 3924        Flpydisk        (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
16:09:40.0484 3924        Flpydisk ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0484 3924        Flpydisk - detected UnsignedFile.Multi.Generic (1)
16:09:40.0546 3924        FltMgr          (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
16:09:40.0562 3924        FltMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0562 3924        FltMgr - detected UnsignedFile.Multi.Generic (1)
16:09:40.0734 3924        FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
16:09:40.0750 3924        FontCache3.0.0.0 - ok
16:09:40.0796 3924        Fs_Rec          (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
16:09:40.0812 3924        Fs_Rec ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0812 3924        Fs_Rec - detected UnsignedFile.Multi.Generic (1)
16:09:40.0828 3924        Ftdisk          (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
16:09:40.0828 3924        Ftdisk ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0828 3924        Ftdisk - detected UnsignedFile.Multi.Generic (1)
16:09:40.0843 3924        G400            (33d00f8cb70ac5f7a8101f79d5273615) C:\WINDOWS\system32\DRIVERS\G400m.sys
16:09:40.0859 3924        G400 ( UnsignedFile.Multi.Generic ) - warning
16:09:40.0859 3924        G400 - detected UnsignedFile.Multi.Generic (1)
16:09:40.0984 3924        getPlusHelper  (0879dc7444a201df84e69c5dd5083d61) C:\Programme\NOS\bin\getPlus_Helper.dll
16:09:40.0984 3924        getPlusHelper - ok
16:09:41.0046 3924        Gpc            (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
16:09:41.0046 3924        Gpc ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0046 3924        Gpc - detected UnsignedFile.Multi.Generic (1)
16:09:41.0109 3924        HDAudBus        (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
16:09:41.0109 3924        HDAudBus ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0109 3924        HDAudBus - detected UnsignedFile.Multi.Generic (1)
16:09:41.0203 3924        helpsvc        (cb66bf85bf599befd6c6a57c2e20357f) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
16:09:41.0218 3924        helpsvc ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0218 3924        helpsvc - detected UnsignedFile.Multi.Generic (1)
16:09:41.0218 3924        HidServ - ok
16:09:41.0234 3924        HidUsb          (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
16:09:41.0234 3924        HidUsb ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0234 3924        HidUsb - detected UnsignedFile.Multi.Generic (1)
16:09:41.0296 3924        hkmsvc          (ed29f14101523a6e0e808107405d452c) C:\WINDOWS\System32\kmsvc.dll
16:09:41.0296 3924        hkmsvc ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0296 3924        hkmsvc - detected UnsignedFile.Multi.Generic (1)
16:09:41.0328 3924        hpn            (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
16:09:41.0328 3924        hpn ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0328 3924        hpn - detected UnsignedFile.Multi.Generic (1)
16:09:41.0390 3924        HTTP            (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
16:09:41.0390 3924        HTTP ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0390 3924        HTTP - detected UnsignedFile.Multi.Generic (1)
16:09:41.0453 3924        HTTPFilter      (9e4adb854cebcfb81a4b36718feecd16) C:\WINDOWS\System32\w3ssl.dll
16:09:41.0453 3924        HTTPFilter ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0453 3924        HTTPFilter - detected UnsignedFile.Multi.Generic (1)
16:09:41.0468 3924        i2omgmt        (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
16:09:41.0468 3924        i2omgmt ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0468 3924        i2omgmt - detected UnsignedFile.Multi.Generic (1)
16:09:41.0484 3924        i2omp          (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
16:09:41.0484 3924        i2omp ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0484 3924        i2omp - detected UnsignedFile.Multi.Generic (1)
16:09:41.0484 3924        i8042prt        (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
16:09:41.0500 3924        i8042prt ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0500 3924        i8042prt - detected UnsignedFile.Multi.Generic (1)
16:09:41.0546 3924        iaStor          (309c4d86d989fb1fcf64bd30dc81c51b) C:\WINDOWS\system32\DRIVERS\iaStor.sys
16:09:41.0593 3924        iaStor ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0593 3924        iaStor - detected UnsignedFile.Multi.Generic (1)
16:09:41.0781 3924        idsvc          (c01ac32dc5c03076cfb852cb5da5229c) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
16:09:41.0859 3924        idsvc - ok
16:09:41.0953 3924        Imapi          (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
16:09:41.0968 3924        Imapi ( UnsignedFile.Multi.Generic ) - warning
16:09:41.0968 3924        Imapi - detected UnsignedFile.Multi.Generic (1)
16:09:42.0015 3924        ImapiService    (d4b413aa210c21e46aedd2ba5b68d38e) C:\WINDOWS\system32\imapi.exe
16:09:42.0015 3924        ImapiService ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0015 3924        ImapiService - detected UnsignedFile.Multi.Generic (1)
16:09:42.0046 3924        ini910u        (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
16:09:42.0062 3924        ini910u ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0062 3924        ini910u - detected UnsignedFile.Multi.Generic (1)
16:09:42.0312 3924        IntcAzAudAddService (557e20484a095d949912883f5ab29e88) C:\WINDOWS\system32\drivers\RtkHDAud.sys
16:09:42.0484 3924        IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0484 3924        IntcAzAudAddService - detected UnsignedFile.Multi.Generic (1)
16:09:42.0656 3924        IntelIde        (69c4e3c9e67a1f103b94e14fdd5f3213) C:\WINDOWS\system32\DRIVERS\intelide.sys
16:09:42.0671 3924        IntelIde ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0671 3924        IntelIde - detected UnsignedFile.Multi.Generic (1)
16:09:42.0703 3924        Ip6Fw          (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
16:09:42.0718 3924        Ip6Fw ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0718 3924        Ip6Fw - detected UnsignedFile.Multi.Generic (1)
16:09:42.0718 3924        IpFilterDriver  (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
16:09:42.0718 3924        IpFilterDriver ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0718 3924        IpFilterDriver - detected UnsignedFile.Multi.Generic (1)
16:09:42.0734 3924        IpInIp          (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
16:09:42.0734 3924        IpInIp ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0734 3924        IpInIp - detected UnsignedFile.Multi.Generic (1)
16:09:42.0765 3924        IpNat          (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
16:09:42.0765 3924        IpNat ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0765 3924        IpNat - detected UnsignedFile.Multi.Generic (1)
16:09:42.0796 3924        IPSec          (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
16:09:42.0812 3924        IPSec ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0812 3924        IPSec - detected UnsignedFile.Multi.Generic (1)
16:09:42.0812 3924        IRENUM          (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
16:09:42.0812 3924        IRENUM ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0812 3924        IRENUM - detected UnsignedFile.Multi.Generic (1)
16:09:42.0843 3924        isapnp          (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys
16:09:42.0859 3924        isapnp ( UnsignedFile.Multi.Generic ) - warning
16:09:42.0859 3924        isapnp - detected UnsignedFile.Multi.Generic (1)
16:09:42.0953 3924        IviRegMgr      (213822072085b5bbad9af30ab577d817) C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe
16:09:42.0953 3924        IviRegMgr - ok
16:09:43.0031 3924        JavaQuickStarterService (de5d05fd449798ef88cc34ad4b1e7f85) C:\Programme\Java\jre6\bin\jqs.exe
16:09:43.0046 3924        JavaQuickStarterService - ok
16:09:43.0062 3924        Kbdclass        (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
16:09:43.0062 3924        Kbdclass ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0062 3924        Kbdclass - detected UnsignedFile.Multi.Generic (1)
16:09:43.0078 3924        kmixer          (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
16:09:43.0093 3924        kmixer ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0093 3924        kmixer - detected UnsignedFile.Multi.Generic (1)
16:09:43.0140 3924        KSecDD          (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
16:09:43.0156 3924        KSecDD ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0156 3924        KSecDD - detected UnsignedFile.Multi.Generic (1)
16:09:43.0203 3924        lanmanserver    (2bbdcb79900990f0716dfcb714e72de7) C:\WINDOWS\System32\srvsvc.dll
16:09:43.0203 3924        lanmanserver ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0203 3924        lanmanserver - detected UnsignedFile.Multi.Generic (1)
16:09:43.0265 3924        lanmanworkstation (1869b14b06b44b44af70548e1ea3303f) C:\WINDOWS\System32\wkssvc.dll
16:09:43.0281 3924        lanmanworkstation ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0281 3924        lanmanworkstation - detected UnsignedFile.Multi.Generic (1)
16:09:43.0281 3924        lbrtfdc - ok
16:09:43.0343 3924        LmHosts        (636714b7d43c8d0c80449123fd266920) C:\WINDOWS\System32\lmhsvc.dll
16:09:43.0343 3924        LmHosts ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0343 3924        LmHosts - detected UnsignedFile.Multi.Generic (1)
16:09:43.0375 3924        Messenger      (b7550a7107281d170ce85524b1488c98) C:\WINDOWS\System32\msgsvc.dll
16:09:43.0390 3924        Messenger ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0390 3924        Messenger - detected UnsignedFile.Multi.Generic (1)
16:09:43.0421 3924        mnmdd          (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
16:09:43.0421 3924        mnmdd ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0421 3924        mnmdd - detected UnsignedFile.Multi.Generic (1)
16:09:43.0468 3924        mnmsrvc        (c2f1d365fd96791b037ee504868065d3) C:\WINDOWS\system32\mnmsrvc.exe
16:09:43.0468 3924        mnmsrvc ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0468 3924        mnmsrvc - detected UnsignedFile.Multi.Generic (1)
16:09:43.0500 3924        Modem          (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys
16:09:43.0515 3924        Modem ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0515 3924        Modem - detected UnsignedFile.Multi.Generic (1)
16:09:43.0546 3924        Mouclass        (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys
16:09:43.0562 3924        Mouclass ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0562 3924        Mouclass - detected UnsignedFile.Multi.Generic (1)
16:09:43.0609 3924        mouhid          (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys
16:09:43.0609 3924        mouhid ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0609 3924        mouhid - detected UnsignedFile.Multi.Generic (1)
16:09:43.0625 3924        MountMgr        (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
16:09:43.0640 3924        MountMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0640 3924        MountMgr - detected UnsignedFile.Multi.Generic (1)
16:09:43.0718 3924        MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe
16:09:43.0765 3924        MozillaMaintenance - ok
16:09:43.0796 3924        mraid35x        (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
16:09:43.0796 3924        mraid35x ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0796 3924        mraid35x - detected UnsignedFile.Multi.Generic (1)
16:09:43.0828 3924        MRxDAV          (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
16:09:43.0859 3924        MRxDAV ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0859 3924        MRxDAV - detected UnsignedFile.Multi.Generic (1)
16:09:43.0890 3924        MRxSmb          (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
16:09:43.0906 3924        MRxSmb ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0906 3924        MRxSmb - detected UnsignedFile.Multi.Generic (1)
16:09:43.0953 3924        MSDTC          (35a031af38c55f92d28aa03ee9f12cc9) C:\WINDOWS\system32\msdtc.exe
16:09:43.0953 3924        MSDTC ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0953 3924        MSDTC - detected UnsignedFile.Multi.Generic (1)
16:09:43.0968 3924        Msfs            (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
16:09:43.0984 3924        Msfs ( UnsignedFile.Multi.Generic ) - warning
16:09:43.0984 3924        Msfs - detected UnsignedFile.Multi.Generic (1)
16:09:43.0984 3924        MSIServer - ok
16:09:44.0000 3924        MSKSSRV        (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
16:09:44.0000 3924        MSKSSRV ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0000 3924        MSKSSRV - detected UnsignedFile.Multi.Generic (1)
16:09:44.0031 3924        MSPCLOCK        (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
16:09:44.0031 3924        MSPCLOCK ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0031 3924        MSPCLOCK - detected UnsignedFile.Multi.Generic (1)
16:09:44.0062 3924        MSPQM          (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
16:09:44.0062 3924        MSPQM ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0062 3924        MSPQM - detected UnsignedFile.Multi.Generic (1)
16:09:44.0093 3924        mssmbios        (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
16:09:44.0093 3924        mssmbios ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0093 3924        mssmbios - detected UnsignedFile.Multi.Generic (1)
16:09:44.0125 3924        Mup            (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
16:09:44.0140 3924        Mup ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0140 3924        Mup - detected UnsignedFile.Multi.Generic (1)
16:09:44.0171 3924        napagent        (46bb15ae2ac7d025d6d2567b876817bd) C:\WINDOWS\System32\qagentrt.dll
16:09:44.0203 3924        napagent ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0203 3924        napagent - detected UnsignedFile.Multi.Generic (1)
16:09:44.0250 3924        NDIS            (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
16:09:44.0250 3924        NDIS ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0250 3924        NDIS - detected UnsignedFile.Multi.Generic (1)
16:09:44.0296 3924        NdisTapi        (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
16:09:44.0296 3924        NdisTapi ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0296 3924        NdisTapi - detected UnsignedFile.Multi.Generic (1)
16:09:44.0312 3924        Ndisuio        (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
16:09:44.0312 3924        Ndisuio ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0312 3924        Ndisuio - detected UnsignedFile.Multi.Generic (1)
16:09:44.0328 3924        NdisWan        (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
16:09:44.0328 3924        NdisWan ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0328 3924        NdisWan - detected UnsignedFile.Multi.Generic (1)
16:09:44.0359 3924        NDProxy        (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
16:09:44.0375 3924        NDProxy ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0375 3924        NDProxy - detected UnsignedFile.Multi.Generic (1)
16:09:44.0390 3924        NetBIOS        (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
16:09:44.0406 3924        NetBIOS ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0406 3924        NetBIOS - detected UnsignedFile.Multi.Generic (1)
16:09:44.0437 3924        NetBT          (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
16:09:44.0453 3924        NetBT ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0453 3924        NetBT - detected UnsignedFile.Multi.Generic (1)
16:09:44.0531 3924        NetDDE          (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
16:09:44.0531 3924        NetDDE ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0531 3924        NetDDE - detected UnsignedFile.Multi.Generic (1)
16:09:44.0546 3924        NetDDEdsdm      (8ace4251bffd09ce75679fe940e996cc) C:\WINDOWS\system32\netdde.exe
16:09:44.0546 3924        NetDDEdsdm ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0546 3924        NetDDEdsdm - detected UnsignedFile.Multi.Generic (1)
16:09:44.0593 3924        Netlogon        (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:44.0609 3924        Netlogon ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0609 3924        Netlogon - detected UnsignedFile.Multi.Generic (1)
16:09:44.0671 3924        Netman          (e6d88f1f6745bf00b57e7855a2ab696c) C:\WINDOWS\System32\netman.dll
16:09:44.0671 3924        Netman ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0671 3924        Netman - detected UnsignedFile.Multi.Generic (1)
16:09:44.0781 3924        NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
16:09:44.0796 3924        NetTcpPortSharing - ok
16:09:44.0828 3924        Nla            (f1b67b6b0751ae0e6e964b02821206a3) C:\WINDOWS\System32\mswsock.dll
16:09:44.0843 3924        Nla ( UnsignedFile.Multi.Generic ) - warning
16:09:44.0843 3924        Nla - detected UnsignedFile.Multi.Generic (1)
16:09:44.0937 3924        nosGetPlusHelper (25d6b2eb0a1fc4ab413afe7ec4793ec1) C:\Programme\NOS\bin\getPlus_Helper_3004.dll
16:09:44.0953 3924        nosGetPlusHelper - ok
16:09:45.0000 3924        Npfs            (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
16:09:45.0000 3924        Npfs ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0000 3924        Npfs - detected UnsignedFile.Multi.Generic (1)
16:09:45.0031 3924        Ntfs            (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
16:09:45.0046 3924        Ntfs ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0046 3924        Ntfs - detected UnsignedFile.Multi.Generic (1)
16:09:45.0046 3924        NtLmSsp        (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:45.0062 3924        NtLmSsp ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0062 3924        NtLmSsp - detected UnsignedFile.Multi.Generic (1)
16:09:45.0109 3924        NtmsSvc        (56af4064996fa5bac9c449b1514b4770) C:\WINDOWS\system32\ntmssvc.dll
16:09:45.0125 3924        NtmsSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0125 3924        NtmsSvc - detected UnsignedFile.Multi.Generic (1)
16:09:45.0171 3924        Null            (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
16:09:45.0187 3924        Null ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0187 3924        Null - detected UnsignedFile.Multi.Generic (1)
16:09:45.0296 3924        nv              (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
16:09:45.0375 3924        nv ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0375 3924        nv - detected UnsignedFile.Multi.Generic (1)
16:09:45.0515 3924        NwlnkFlt        (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
16:09:45.0531 3924        NwlnkFlt ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0531 3924        NwlnkFlt - detected UnsignedFile.Multi.Generic (1)
16:09:45.0531 3924        NwlnkFwd        (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
16:09:45.0531 3924        NwlnkFwd ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0531 3924        NwlnkFwd - detected UnsignedFile.Multi.Generic (1)
16:09:45.0593 3924        Parport        (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\DRIVERS\parport.sys
16:09:45.0609 3924        Parport ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0609 3924        Parport - detected UnsignedFile.Multi.Generic (1)
16:09:45.0609 3924        PartMgr        (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
16:09:45.0625 3924        PartMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0625 3924        PartMgr - detected UnsignedFile.Multi.Generic (1)
16:09:45.0625 3924        ParVdm          (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys
16:09:45.0640 3924        ParVdm ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0640 3924        ParVdm - detected UnsignedFile.Multi.Generic (1)
16:09:45.0640 3924        PCI            (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys
16:09:45.0656 3924        PCI ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0656 3924        PCI - detected UnsignedFile.Multi.Generic (1)
16:09:45.0656 3924        PCIDump - ok
16:09:45.0671 3924        PCIIde          (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys
16:09:45.0671 3924        PCIIde ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0671 3924        PCIIde - detected UnsignedFile.Multi.Generic (1)
16:09:45.0718 3924        Pcmcia          (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys
16:09:45.0734 3924        Pcmcia ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0734 3924        Pcmcia - detected UnsignedFile.Multi.Generic (1)
16:09:45.0734 3924        PDCOMP - ok
16:09:45.0750 3924        PDFRAME - ok
16:09:45.0765 3924        PDRELI - ok
16:09:45.0781 3924        PDRFRAME - ok
16:09:45.0828 3924        pelmouse        (bd71f603c9aa0754c96e7557ee0001f9) C:\WINDOWS\system32\DRIVERS\pelmouse.sys
16:09:45.0843 3924        pelmouse ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0843 3924        pelmouse - detected UnsignedFile.Multi.Generic (1)
16:09:45.0843 3924        pelusblf        (25c36dccbe713f62bd9d24dd5c554b4e) C:\WINDOWS\system32\DRIVERS\pelusblf.sys
16:09:45.0859 3924        pelusblf ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0859 3924        pelusblf - detected UnsignedFile.Multi.Generic (1)
16:09:45.0890 3924        perc2          (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
16:09:45.0890 3924        perc2 ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0890 3924        perc2 - detected UnsignedFile.Multi.Generic (1)
16:09:45.0906 3924        perc2hib        (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
16:09:45.0906 3924        perc2hib ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0906 3924        perc2hib - detected UnsignedFile.Multi.Generic (1)
16:09:45.0968 3924        PlugPlay        (a3edbe9053889fb24ab22492472b39dc) C:\WINDOWS\system32\services.exe
16:09:45.0984 3924        PlugPlay ( UnsignedFile.Multi.Generic ) - warning
16:09:45.0984 3924        PlugPlay - detected UnsignedFile.Multi.Generic (1)
16:09:46.0015 3924        pmem            (dedef40e1d05842639491365cb2c069e) C:\WINDOWS\System32\drivers\pmemnt.sys
16:09:46.0031 3924        pmem ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0031 3924        pmem - detected UnsignedFile.Multi.Generic (1)
16:09:46.0062 3924        PolicyAgent    (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:46.0062 3924        PolicyAgent ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0062 3924        PolicyAgent - detected UnsignedFile.Multi.Generic (1)
16:09:46.0093 3924        PptpMiniport    (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
16:09:46.0109 3924        PptpMiniport ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0109 3924        PptpMiniport - detected UnsignedFile.Multi.Generic (1)
16:09:46.0125 3924        Processor      (2cb55427c58679f49ad600fccba76360) C:\WINDOWS\system32\DRIVERS\processr.sys
16:09:46.0125 3924        Processor ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0125 3924        Processor - detected UnsignedFile.Multi.Generic (1)
16:09:46.0125 3924        ProtectedStorage (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:46.0140 3924        ProtectedStorage ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0140 3924        ProtectedStorage - detected UnsignedFile.Multi.Generic (1)
16:09:46.0156 3924        psadd          (f8a25f1dd8b2c332cbc663e3579566e7) C:\WINDOWS\system32\DRIVERS\psadd.sys
16:09:46.0171 3924        psadd - ok
16:09:46.0171 3924        PSched          (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
16:09:46.0187 3924        PSched ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0187 3924        PSched - detected UnsignedFile.Multi.Generic (1)
16:09:46.0187 3924        Ptilink        (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
16:09:46.0203 3924        Ptilink ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0203 3924        Ptilink - detected UnsignedFile.Multi.Generic (1)
16:09:46.0218 3924        PxHelp20        (40fedd328f98245ad201cf5f9f311724) C:\WINDOWS\system32\Drivers\PxHelp20.sys
16:09:46.0234 3924        PxHelp20 - ok
16:09:46.0265 3924        ql1080          (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
16:09:46.0265 3924        ql1080 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0265 3924        ql1080 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0265 3924        Ql10wnt        (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
16:09:46.0281 3924        Ql10wnt ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0281 3924        Ql10wnt - detected UnsignedFile.Multi.Generic (1)
16:09:46.0281 3924        ql12160        (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
16:09:46.0296 3924        ql12160 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0296 3924        ql12160 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0296 3924        ql1240          (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
16:09:46.0312 3924        ql1240 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0312 3924        ql1240 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0312 3924        ql1280          (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
16:09:46.0328 3924        ql1280 ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0328 3924        ql1280 - detected UnsignedFile.Multi.Generic (1)
16:09:46.0359 3924        RasAcd          (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
16:09:46.0359 3924        RasAcd ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0359 3924        RasAcd - detected UnsignedFile.Multi.Generic (1)
16:09:46.0421 3924        RasAuto        (f5ba6caccdb66c8f048e867563203246) C:\WINDOWS\System32\rasauto.dll
16:09:46.0437 3924        RasAuto ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0437 3924        RasAuto - detected UnsignedFile.Multi.Generic (1)
16:09:46.0468 3924        Rasl2tp        (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
16:09:46.0468 3924        Rasl2tp ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0468 3924        Rasl2tp - detected UnsignedFile.Multi.Generic (1)
16:09:46.0515 3924        RasMan          (f9a7b66ea345726edb5862a46b1eccd5) C:\WINDOWS\System32\rasmans.dll
16:09:46.0531 3924        RasMan ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0531 3924        RasMan - detected UnsignedFile.Multi.Generic (1)
16:09:46.0546 3924        RasPppoe        (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
16:09:46.0546 3924        RasPppoe ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0546 3924        RasPppoe - detected UnsignedFile.Multi.Generic (1)
16:09:46.0546 3924        Raspti          (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
16:09:46.0562 3924        Raspti ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0562 3924        Raspti - detected UnsignedFile.Multi.Generic (1)
16:09:46.0609 3924        Rdbss          (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
16:09:46.0625 3924        Rdbss ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0625 3924        Rdbss - detected UnsignedFile.Multi.Generic (1)
16:09:46.0671 3924        RDPCDD          (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
16:09:46.0671 3924        RDPCDD ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0671 3924        RDPCDD - detected UnsignedFile.Multi.Generic (1)
16:09:46.0687 3924        rdpdr          (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
16:09:46.0703 3924        rdpdr ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0703 3924        rdpdr - detected UnsignedFile.Multi.Generic (1)
16:09:46.0734 3924        RDPWD          (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
16:09:46.0750 3924        RDPWD ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0750 3924        RDPWD - detected UnsignedFile.Multi.Generic (1)
16:09:46.0796 3924        RDSessMgr      (263af18af0f3db99f574c95f284ccec9) C:\WINDOWS\system32\sessmgr.exe
16:09:46.0812 3924        RDSessMgr ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0812 3924        RDSessMgr - detected UnsignedFile.Multi.Generic (1)
16:09:46.0828 3924        redbook        (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys
16:09:46.0843 3924        redbook ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0843 3924        redbook - detected UnsignedFile.Multi.Generic (1)
16:09:46.0875 3924        RemoteAccess    (0e97ec96d6942ceec2d188cc2eb69a01) C:\WINDOWS\System32\mprdim.dll
16:09:46.0890 3924        RemoteAccess ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0890 3924        RemoteAccess - detected UnsignedFile.Multi.Generic (1)
16:09:46.0921 3924        RemoteRegistry  (e4cd1f3d84e1c2ca0b8cf7501e201593) C:\WINDOWS\system32\regsvc.dll
16:09:46.0937 3924        RemoteRegistry ( UnsignedFile.Multi.Generic ) - warning
16:09:46.0937 3924        RemoteRegistry - detected UnsignedFile.Multi.Generic (1)
16:09:47.0156 3924        RoxMediaDB10    (eb9eeb379848f356797eb9ef31114ca5) C:\Programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
16:09:47.0218 3924        RoxMediaDB10 - ok
16:09:47.0250 3924        RpcLocator      (2a02e21867497df20b8fc95631395169) C:\WINDOWS\system32\locator.exe
16:09:47.0265 3924        RpcLocator ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0265 3924        RpcLocator - detected UnsignedFile.Multi.Generic (1)
16:09:47.0312 3924        RpcSs          (3127afbf2c1ed0ab14a1bbb7aaecb85b) C:\WINDOWS\system32\rpcss.dll
16:09:47.0328 3924        RpcSs ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0328 3924        RpcSs - detected UnsignedFile.Multi.Generic (1)
16:09:47.0375 3924        RSVP            (4bdd71b4b521521499dfd14735c4f398) C:\WINDOWS\system32\rsvp.exe
16:09:47.0390 3924        RSVP ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0406 3924        RSVP - detected UnsignedFile.Multi.Generic (1)
16:09:47.0437 3924        SamSs          (afb8261b56cba0d86aeb6df682af9785) C:\WINDOWS\system32\lsass.exe
16:09:47.0453 3924        SamSs ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0453 3924        SamSs - detected UnsignedFile.Multi.Generic (1)
16:09:47.0453 3924        SCardSvr        (dcec079fad95d36c8dd5cb6d779dfe32) C:\WINDOWS\System32\SCardSvr.exe
16:09:47.0468 3924        SCardSvr ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0468 3924        SCardSvr - detected UnsignedFile.Multi.Generic (1)
16:09:47.0515 3924        Schedule        (a050194a44d7fa8d7186ed2f4e8367ae) C:\WINDOWS\system32\schedsvc.dll
16:09:47.0531 3924        Schedule ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0531 3924        Schedule - detected UnsignedFile.Multi.Generic (1)
16:09:47.0609 3924        Secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
16:09:47.0609 3924        Secdrv ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0609 3924        Secdrv - detected UnsignedFile.Multi.Generic (1)
16:09:47.0640 3924        seclogon        (bee4cfd1d48c23b44cf4b974b0b79b2b) C:\WINDOWS\System32\seclogon.dll
16:09:47.0656 3924        seclogon ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0656 3924        seclogon - detected UnsignedFile.Multi.Generic (1)
16:09:47.0656 3924        SENS            (2aac9b6ed9eddffb721d6452e34d67e3) C:\WINDOWS\system32\sens.dll
16:09:47.0671 3924        SENS ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0671 3924        SENS - detected UnsignedFile.Multi.Generic (1)
16:09:47.0718 3924        serenum        (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
16:09:47.0718 3924        serenum ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0718 3924        serenum - detected UnsignedFile.Multi.Generic (1)
16:09:47.0734 3924        Serial          (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\DRIVERS\serial.sys
16:09:47.0734 3924        Serial ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0734 3924        Serial - detected UnsignedFile.Multi.Generic (1)
16:09:47.0812 3924        SessionLauncher - ok
16:09:47.0843 3924        Sfloppy        (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
16:09:47.0843 3924        Sfloppy ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0843 3924        Sfloppy - detected UnsignedFile.Multi.Generic (1)
16:09:47.0906 3924        ShellHWDetection (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
16:09:47.0921 3924        ShellHWDetection ( UnsignedFile.Multi.Generic ) - warning
16:09:47.0921 3924        ShellHWDetection - detected UnsignedFile.Multi.Generic (1)
16:09:47.0921 3924        Simbad - ok
16:09:48.0000 3924        sisagp          (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
16:09:48.0015 3924        sisagp ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0015 3924        sisagp - detected UnsignedFile.Multi.Generic (1)
16:09:48.0031 3924        Sparrow        (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
16:09:48.0031 3924        Sparrow ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0031 3924        Sparrow - detected UnsignedFile.Multi.Generic (1)
16:09:48.0062 3924        splitter        (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
16:09:48.0078 3924        splitter ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0078 3924        splitter - detected UnsignedFile.Multi.Generic (1)
16:09:48.0125 3924        Spooler        (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
16:09:48.0125 3924        Spooler ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0125 3924        Spooler - detected UnsignedFile.Multi.Generic (1)
16:09:48.0140 3924        sr              (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys
16:09:48.0156 3924        sr ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0156 3924        sr - detected UnsignedFile.Multi.Generic (1)
16:09:48.0218 3924        srservice      (fe77a85495065f3ad59c5c65b6c54182) C:\WINDOWS\system32\srsvc.dll
16:09:48.0218 3924        srservice ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0218 3924        srservice - detected UnsignedFile.Multi.Generic (1)
16:09:48.0234 3924        Srv            (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
16:09:48.0250 3924        Srv ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0250 3924        Srv - detected UnsignedFile.Multi.Generic (1)
16:09:48.0296 3924        SSDPSRV        (4df5b05dfaec29e13e1ed6f6ee12c500) C:\WINDOWS\System32\ssdpsrv.dll
16:09:48.0296 3924        SSDPSRV ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0296 3924        SSDPSRV - detected UnsignedFile.Multi.Generic (1)
16:09:48.0328 3924        ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
16:09:48.0343 3924        ssmdrv - ok
16:09:48.0343 3924        SSPORT - ok
16:09:48.0375 3924        stisvc          (bc2c5985611c5356b24aeb370953ded9) C:\WINDOWS\system32\wiaservc.dll
16:09:48.0390 3924        stisvc ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0390 3924        stisvc - detected UnsignedFile.Multi.Generic (1)
16:09:48.0468 3924        stllssvr        (1d0063597c3666404fcf97698abeb019) C:\Programme\Gemeinsame Dateien\SureThing Shared\stllssvr.exe
16:09:48.0484 3924        stllssvr - ok
16:09:48.0609 3924        SUService      (b71a41cad9de92219c3891e88f822ac3) c:\programme\lenovo\system update\suservice.exe
16:09:48.0609 3924        SUService ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0609 3924        SUService - detected UnsignedFile.Multi.Generic (1)
16:09:48.0656 3924        swenum          (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
16:09:48.0656 3924        swenum ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0656 3924        swenum - detected UnsignedFile.Multi.Generic (1)
16:09:48.0671 3924        swmidi          (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
16:09:48.0687 3924        swmidi ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0687 3924        swmidi - detected UnsignedFile.Multi.Generic (1)
16:09:48.0687 3924        SwPrv - ok
16:09:48.0734 3924        symc810        (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
16:09:48.0734 3924        symc810 ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0734 3924        symc810 - detected UnsignedFile.Multi.Generic (1)
16:09:48.0750 3924        symc8xx        (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
16:09:48.0765 3924        symc8xx ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0765 3924        symc8xx - detected UnsignedFile.Multi.Generic (1)
16:09:48.0765 3924        sym_hi          (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
16:09:48.0765 3924        sym_hi ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0765 3924        sym_hi - detected UnsignedFile.Multi.Generic (1)
16:09:48.0781 3924        sym_u3          (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
16:09:48.0781 3924        sym_u3 ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0781 3924        sym_u3 - detected UnsignedFile.Multi.Generic (1)
16:09:48.0828 3924        sysaudio        (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
16:09:48.0828 3924        sysaudio ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0828 3924        sysaudio - detected UnsignedFile.Multi.Generic (1)
16:09:48.0875 3924        SysmonLog      (2903fffa2523926d6219428040dce6b9) C:\WINDOWS\system32\smlogsvc.exe
16:09:48.0875 3924        SysmonLog ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0875 3924        SysmonLog - detected UnsignedFile.Multi.Generic (1)
16:09:48.0906 3924        TapiSrv        (05903cac4b98908d55ea5774775b382e) C:\WINDOWS\System32\tapisrv.dll
16:09:48.0921 3924        TapiSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:48.0921 3924        TapiSrv - detected UnsignedFile.Multi.Generic (1)
16:09:48.0968 3924        Tcpip          (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
16:09:49.0000 3924        Tcpip ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0000 3924        Tcpip - detected UnsignedFile.Multi.Generic (1)
16:09:49.0031 3924        TDPIPE          (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
16:09:49.0046 3924        TDPIPE ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0046 3924        TDPIPE - detected UnsignedFile.Multi.Generic (1)
16:09:49.0062 3924        TDTCP          (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
16:09:49.0062 3924        TDTCP ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0062 3924        TDTCP - detected UnsignedFile.Multi.Generic (1)
16:09:49.0093 3924        TermDD          (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
16:09:49.0093 3924        TermDD ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0093 3924        TermDD - detected UnsignedFile.Multi.Generic (1)
16:09:49.0125 3924        TermService    (b7de02c863d8f5a005a7bf375375a6a4) C:\WINDOWS\System32\termsrv.dll
16:09:49.0140 3924        TermService ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0140 3924        TermService - detected UnsignedFile.Multi.Generic (1)
16:09:49.0187 3924        Themes          (2db7d303c36ddd055215052f118e8e75) C:\WINDOWS\System32\shsvcs.dll
16:09:49.0187 3924        Themes ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0187 3924        Themes - detected UnsignedFile.Multi.Generic (1)
16:09:49.0375 3924        ThinkVantage Registry Monitor Service (eb90a37aabaefd7b4f4f92befea8c2e2) c:\Programme\Gemeinsame Dateien\Lenovo\tvt_reg_monitor_svc.exe
16:09:49.0390 3924        ThinkVantage Registry Monitor Service - ok
16:09:49.0437 3924        TlntSvr        (03681a1ce77f51586903869a5ab1deab) C:\WINDOWS\system32\tlntsvr.exe
16:09:49.0453 3924        TlntSvr ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0453 3924        TlntSvr - detected UnsignedFile.Multi.Generic (1)
16:09:49.0484 3924        TosIde          (d213a9247dc347f305a2d4cc9b951487) C:\WINDOWS\system32\DRIVERS\toside.sys
16:09:49.0500 3924        TosIde ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0500 3924        TosIde - detected UnsignedFile.Multi.Generic (1)
16:09:49.0531 3924        TPM            (82fed3fea9bcd77fc870a1e4c8b62870) C:\WINDOWS\system32\DRIVERS\tpm.sys
16:09:49.0531 3924        TPM ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0531 3924        TPM - detected UnsignedFile.Multi.Generic (1)
16:09:49.0562 3924        TrkWks          (626504572b175867f30f3215c04b3e2f) C:\WINDOWS\system32\trkwks.dll
16:09:49.0578 3924        TrkWks ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0578 3924        TrkWks - detected UnsignedFile.Multi.Generic (1)
16:09:49.0687 3924        TSSCoreService  (4a4ffdeb90a151b734a0bea3d420fd3b) C:\Programme\Lenovo\Client Security Solution\tvttcsd.exe
16:09:49.0718 3924        TSSCoreService - ok
16:09:49.0781 3924        TVT Backup Protection Service (d6ee5dcb3ec401baa10395809047935e) C:\Programme\Lenovo\Rescue and Recovery\rrpservice.exe
16:09:49.0796 3924        TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0796 3924        TVT Backup Protection Service - detected UnsignedFile.Multi.Generic (1)
16:09:49.0843 3924        TVT Backup Service (0db73f3fb565cf028c7458c70fa59121) C:\Programme\Lenovo\Rescue and Recovery\rrservice.exe
16:09:49.0890 3924        TVT Backup Service ( UnsignedFile.Multi.Generic ) - warning
16:09:49.0890 3924        TVT Backup Service - detected UnsignedFile.Multi.Generic (1)
16:09:50.0078 3924        TVT Scheduler  (6c69fe90f0cc12ef0638ae10dfa4db4e) c:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\tvtsched.exe
16:09:50.0156 3924        TVT Scheduler ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0156 3924        TVT Scheduler - detected UnsignedFile.Multi.Generic (1)
16:09:50.0328 3924        tvtfilter      (49258a02a1e8d304ed88b0f1c56b1738) C:\WINDOWS\system32\DRIVERS\tvtfilter.sys
16:09:50.0343 3924        tvtfilter ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0343 3924        tvtfilter - detected UnsignedFile.Multi.Generic (1)
16:09:50.0343 3924        TVTI2C          (7e66dda1ef146bfc3a6e36e08e036602) C:\WINDOWS\system32\DRIVERS\Tvti2c.sys
16:09:50.0359 3924        TVTI2C - ok
16:09:50.0421 3924        tvtumon        (a6e0aafbe64592871f9a9f38a61c1fa5) C:\WINDOWS\system32\DRIVERS\tvtumon.sys
16:09:50.0421 3924        tvtumon - ok
16:09:50.0484 3924        TVT_UpdateMonitor (3152355ea8e8274d4fda092f454da7c0) C:\Programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe
16:09:50.0500 3924        TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0500 3924        TVT_UpdateMonitor - detected UnsignedFile.Multi.Generic (1)
16:09:50.0546 3924        Udfs            (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
16:09:50.0562 3924        Udfs ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0562 3924        Udfs - detected UnsignedFile.Multi.Generic (1)
16:09:50.0593 3924        ultra          (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
16:09:50.0609 3924        ultra ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0609 3924        ultra - detected UnsignedFile.Multi.Generic (1)
16:09:50.0640 3924        Update          (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
16:09:50.0656 3924        Update ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0656 3924        Update - detected UnsignedFile.Multi.Generic (1)
16:09:50.0687 3924        upnphost        (1dfd8975d8c89214b98d9387c1125b49) C:\WINDOWS\System32\upnphost.dll
16:09:50.0703 3924        upnphost ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0703 3924        upnphost - detected UnsignedFile.Multi.Generic (1)
16:09:50.0718 3924        UPS            (9b11e6118958e63e1fef129466e2bda7) C:\WINDOWS\System32\ups.exe
16:09:50.0718 3924        UPS ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0718 3924        UPS - detected UnsignedFile.Multi.Generic (1)
16:09:50.0750 3924        USBDLM          (7ee4372b18b6f3d06a0e02fb2e2c0a48) C:\USBDLM\USBDLM.exe
16:09:50.0765 3924        USBDLM ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0765 3924        USBDLM - detected UnsignedFile.Multi.Generic (1)
16:09:50.0796 3924        usbehci        (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
16:09:50.0796 3924        usbehci ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0796 3924        usbehci - detected UnsignedFile.Multi.Generic (1)
16:09:50.0812 3924        usbhub          (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
16:09:50.0812 3924        usbhub ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0812 3924        usbhub - detected UnsignedFile.Multi.Generic (1)
16:09:50.0828 3924        usbohci        (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
16:09:50.0828 3924        usbohci ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0828 3924        usbohci - detected UnsignedFile.Multi.Generic (1)
16:09:50.0875 3924        usbprint        (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
16:09:50.0890 3924        usbprint ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0890 3924        usbprint - detected UnsignedFile.Multi.Generic (1)
16:09:50.0937 3924        usbscan        (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
16:09:50.0937 3924        usbscan ( UnsignedFile.Multi.Generic ) - warning
16:09:50.0937 3924        usbscan - detected UnsignedFile.Multi.Generic (1)
16:09:51.0000 3924        USBSTOR        (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
16:09:51.0015 3924        USBSTOR ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0015 3924        USBSTOR - detected UnsignedFile.Multi.Generic (1)
16:09:51.0031 3924        usbuhci        (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
16:09:51.0031 3924        usbuhci ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0031 3924        usbuhci - detected UnsignedFile.Multi.Generic (1)
16:09:51.0062 3924        VgaSave        (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
16:09:51.0062 3924        VgaSave ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0062 3924        VgaSave - detected UnsignedFile.Multi.Generic (1)
16:09:51.0078 3924        viaagp          (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
16:09:51.0093 3924        viaagp ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0093 3924        viaagp - detected UnsignedFile.Multi.Generic (1)
16:09:51.0125 3924        ViaIde          (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
16:09:51.0125 3924        ViaIde ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0125 3924        ViaIde - detected UnsignedFile.Multi.Generic (1)
16:09:51.0156 3924        VolSnap        (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys
16:09:51.0171 3924        VolSnap ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0171 3924        VolSnap - detected UnsignedFile.Multi.Generic (1)
16:09:51.0218 3924        VSS            (68f106273be29e7b7ef8266977268e78) C:\WINDOWS\System32\vssvc.exe
16:09:51.0234 3924        VSS ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0234 3924        VSS - detected UnsignedFile.Multi.Generic (1)
16:09:51.0296 3924        W32Time        (7b353059e665f8b7ad2bbeaef597cf45) C:\WINDOWS\system32\w32time.dll
16:09:51.0312 3924        W32Time ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0312 3924        W32Time - detected UnsignedFile.Multi.Generic (1)
16:09:51.0328 3924        Wanarp          (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
16:09:51.0343 3924        Wanarp ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0343 3924        Wanarp - detected UnsignedFile.Multi.Generic (1)
16:09:51.0343 3924        WDICA - ok
16:09:51.0359 3924        wdmaud          (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
16:09:51.0375 3924        wdmaud ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0375 3924        wdmaud - detected UnsignedFile.Multi.Generic (1)
16:09:51.0437 3924        WebClient      (81727c9873e3905a2ffc1ebd07265002) C:\WINDOWS\System32\webclnt.dll
16:09:51.0437 3924        WebClient ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0437 3924        WebClient - detected UnsignedFile.Multi.Generic (1)
16:09:51.0531 3924        winmgmt        (6f3f3973d97714cc5f906a19fe883729) C:\WINDOWS\system32\wbem\WMIsvc.dll
16:09:51.0531 3924        winmgmt ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0531 3924        winmgmt - detected UnsignedFile.Multi.Generic (1)
16:09:51.0578 3924        WmdmPmSN        (051b1bdecd6dee18c771b5d5ec7f044d) C:\WINDOWS\system32\MsPMSNSv.dll
16:09:51.0578 3924        WmdmPmSN ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0578 3924        WmdmPmSN - detected UnsignedFile.Multi.Generic (1)
16:09:51.0671 3924        Wmi            (ffa4d901d46d07a5bab2d8307fbb51a6) C:\WINDOWS\System32\advapi32.dll
16:09:51.0687 3924        Wmi ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0687 3924        Wmi - detected UnsignedFile.Multi.Generic (1)
16:09:51.0734 3924        WmiApSrv        (93908111ba57a6e60ec2fa2de202105c) C:\WINDOWS\system32\wbem\wmiapsrv.exe
16:09:51.0750 3924        WmiApSrv ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0750 3924        WmiApSrv - detected UnsignedFile.Multi.Generic (1)
16:09:51.0937 3924        WMPNetworkSvc  (d3dbd6e76f4be9bee67eb631488b5f29) C:\Programme\Windows Media Player\WMPNetwk.exe
16:09:51.0984 3924        WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:51.0984 3924        WMPNetworkSvc - detected UnsignedFile.Multi.Generic (1)
16:09:52.0062 3924        WS2IFSL        (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
16:09:52.0062 3924        WS2IFSL ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0062 3924        WS2IFSL - detected UnsignedFile.Multi.Generic (1)
16:09:52.0109 3924        wuauserv        (7b4fe05202aa6bf9f4dfd0e6a0d8a085) C:\WINDOWS\system32\wuauserv.dll
16:09:52.0109 3924        wuauserv ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0109 3924        wuauserv - detected UnsignedFile.Multi.Generic (1)
16:09:52.0156 3924        WudfPf          (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
16:09:52.0156 3924        WudfPf ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0156 3924        WudfPf - detected UnsignedFile.Multi.Generic (1)
16:09:52.0171 3924        WudfRd          (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
16:09:52.0171 3924        WudfRd ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0171 3924        WudfRd - detected UnsignedFile.Multi.Generic (1)
16:09:52.0218 3924        WudfSvc        (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
16:09:52.0234 3924        WudfSvc ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0234 3924        WudfSvc - detected UnsignedFile.Multi.Generic (1)
16:09:52.0296 3924        WZCSVC          (c4f109c005f6725162d2d12ca751e4a7) C:\WINDOWS\System32\wzcsvc.dll
16:09:52.0312 3924        WZCSVC ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0312 3924        WZCSVC - detected UnsignedFile.Multi.Generic (1)
16:09:52.0359 3924        xmlprov        (0ada34871a2e1cd2caafed1237a47750) C:\WINDOWS\System32\xmlprov.dll
16:09:52.0375 3924        xmlprov ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0375 3924        xmlprov - detected UnsignedFile.Multi.Generic (1)
16:09:52.0421 3924        yukonwxp        (f44f7f71b3c84f8ee96c3bfd3915c25f) C:\WINDOWS\system32\DRIVERS\yk51x86.sys
16:09:52.0437 3924        yukonwxp ( UnsignedFile.Multi.Generic ) - warning
16:09:52.0437 3924        yukonwxp - detected UnsignedFile.Multi.Generic (1)
16:09:52.0468 3924        MBR (0x1B8)    (c071872809c5cc9b673149d98a04024e) \Device\Harddisk0\DR0
16:09:52.0890 3924        \Device\Harddisk0\DR0 - ok
16:09:52.0890 3924        Boot (0x1200)  (99a7a05844a4f2828a17f7bce039d44d) \Device\Harddisk0\DR0\Partition0
16:09:52.0890 3924        \Device\Harddisk0\DR0\Partition0 - ok
16:09:52.0890 3924        ============================================================
16:09:52.0890 3924        Scan finished
16:09:52.0890 3924        ============================================================
16:09:53.0015 4088        Detected object count: 260
16:09:53.0015 4088        Actual detected object count: 260
16:10:54.0468 4088        abp480n5 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0468 4088        abp480n5 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0468 4088        ac97intc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0468 4088        ac97intc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0484 4088        ACPI ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0484 4088        ACPI ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0484 4088        ACPIEC ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0484 4088        ACPIEC ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0484 4088        adpu160m ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0484 4088        adpu160m ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0500 4088        aec ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088        aec ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0500 4088        AFD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088        AFD ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0500 4088        agp440 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088        agp440 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0500 4088        agpCPQ ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088        agpCPQ ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0500 4088        Aha154x ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088        Aha154x ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0500 4088        aic78u2 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088        aic78u2 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0500 4088        aic78xx ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0500 4088        aic78xx ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0515 4088        Akamai ( HiddenFile.Multi.Generic ) - skipped by user
16:10:54.0515 4088        Akamai ( HiddenFile.Multi.Generic ) - User select action: Skip
16:10:54.0515 4088        Alerter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0515 4088        Alerter ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0531 4088        ALG ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0531 4088        ALG ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0531 4088        AliIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0531 4088        AliIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0546 4088        alim1541 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0546 4088        alim1541 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0546 4088        amdagp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0546 4088        amdagp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0562 4088        amsint ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0562 4088        amsint ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0562 4088        AppMgmt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0562 4088        AppMgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0562 4088        asc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0562 4088        asc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0578 4088        asc3350p ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0578 4088        asc3350p ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0578 4088        asc3550 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0578 4088        asc3550 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0593 4088        AsyncMac ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0593 4088        AsyncMac ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0593 4088        atapi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0593 4088        atapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0609 4088        Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0609 4088        Ati HotKey Poller ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0609 4088        ati2mtag ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0609 4088        ati2mtag ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0625 4088        Atmarpc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0625 4088        Atmarpc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0625 4088        AudioSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0625 4088        AudioSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0640 4088        audstub ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0640 4088        audstub ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0640 4088        Beep ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0640 4088        Beep ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0640 4088        BITS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0640 4088        BITS ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0656 4088        Browser ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0656 4088        Browser ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0656 4088        cbidf ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0656 4088        cbidf ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0671 4088        cbidf2k ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0671 4088        cbidf2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0671 4088        cd20xrnt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0671 4088        cd20xrnt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0687 4088        Cdaudio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0687 4088        Cdaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0687 4088        Cdfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0687 4088        Cdfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0687 4088        Cdrom ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0687 4088        Cdrom ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0703 4088        CiSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0703 4088        CiSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0703 4088        ClipSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0703 4088        ClipSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0718 4088        CmdIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0718 4088        CmdIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0718 4088        Cpqarray ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0718 4088        Cpqarray ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0718 4088        CryptSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0718 4088        CryptSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0734 4088        dac2w2k ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0734 4088        dac2w2k ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0734 4088        dac960nt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0734 4088        dac960nt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0750 4088        DcomLaunch ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0750 4088        DcomLaunch ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0750 4088        DgiVecp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0750 4088        DgiVecp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0750 4088        Dhcp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0750 4088        Dhcp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0765 4088        Disk ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0765 4088        Disk ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0765 4088        dmboot ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0765 4088        dmboot ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0781 4088        dmio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0781 4088        dmio ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0781 4088        dmload ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0781 4088        dmload ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0781 4088        dmserver ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0781 4088        dmserver ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0796 4088        DMusic ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0796 4088        DMusic ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0796 4088        Dnscache ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0796 4088        Dnscache ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0812 4088        Dot3svc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0812 4088        Dot3svc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0812 4088        dpti2o ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0812 4088        dpti2o ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0812 4088        drmkaud ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0812 4088        drmkaud ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0828 4088        E100B ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0828 4088        E100B ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0828 4088        EapHost ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0828 4088        EapHost ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0828 4088        ERSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0828 4088        ERSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0843 4088        Eventlog ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0843 4088        Eventlog ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0843 4088        EventSystem ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0843 4088        EventSystem ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0843 4088        Fastfat ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0843 4088        Fastfat ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0859 4088        FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0859 4088        FastUserSwitchingCompatibility ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0859 4088        Fdc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0859 4088        Fdc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0875 4088        Fips ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0875 4088        Fips ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0875 4088        Flpydisk ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0875 4088        Flpydisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0875 4088        FltMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0875 4088        FltMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0890 4088        Fs_Rec ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0890 4088        Fs_Rec ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0890 4088        Ftdisk ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0890 4088        Ftdisk ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0890 4088        G400 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0890 4088        G400 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0906 4088        Gpc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0906 4088        Gpc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0906 4088        HDAudBus ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0906 4088        HDAudBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0906 4088        helpsvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0906 4088        helpsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0921 4088        HidUsb ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0921 4088        HidUsb ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0921 4088        hkmsvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0921 4088        hkmsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0921 4088        hpn ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0921 4088        hpn ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0937 4088        HTTP ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0937 4088        HTTP ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0937 4088        HTTPFilter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0937 4088        HTTPFilter ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0937 4088        i2omgmt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0937 4088        i2omgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0953 4088        i2omp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0953 4088        i2omp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0953 4088        i8042prt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0953 4088        i8042prt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0953 4088        iaStor ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0953 4088        iaStor ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0968 4088        Imapi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0968 4088        Imapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0968 4088        ImapiService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0968 4088        ImapiService ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0968 4088        ini910u ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0968 4088        ini910u ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0984 4088        IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0984 4088        IntcAzAudAddService ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0984 4088        IntelIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0984 4088        IntelIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:54.0984 4088        Ip6Fw ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:54.0984 4088        Ip6Fw ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0000 4088        IpFilterDriver ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0000 4088        IpFilterDriver ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0000 4088        IpInIp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0000 4088        IpInIp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0000 4088        IpNat ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0000 4088        IpNat ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0015 4088        IPSec ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0015 4088        IPSec ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0015 4088        IRENUM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0015 4088        IRENUM ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0015 4088        isapnp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0015 4088        isapnp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0031 4088        Kbdclass ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088        Kbdclass ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0031 4088        kmixer ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088        kmixer ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0031 4088        KSecDD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088        KSecDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0031 4088        lanmanserver ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0031 4088        lanmanserver ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0046 4088        lanmanworkstation ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0046 4088        lanmanworkstation ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0046 4088        LmHosts ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0046 4088        LmHosts ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0046 4088        Messenger ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0046 4088        Messenger ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0062 4088        mnmdd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0062 4088        mnmdd ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0062 4088        mnmsrvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0062 4088        mnmsrvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0062 4088        Modem ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0062 4088        Modem ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0078 4088        Mouclass ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088        Mouclass ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0078 4088        mouhid ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088        mouhid ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0078 4088        MountMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088        MountMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0078 4088        mraid35x ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0078 4088        mraid35x ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0093 4088        MRxDAV ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0093 4088        MRxDAV ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0093 4088        MRxSmb ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0093 4088        MRxSmb ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0093 4088        MSDTC ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0093 4088        MSDTC ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0109 4088        Msfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0109 4088        Msfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0109 4088        MSKSSRV ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0109 4088        MSKSSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0109 4088        MSPCLOCK ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0109 4088        MSPCLOCK ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0125 4088        MSPQM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088        MSPQM ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0125 4088        mssmbios ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088        mssmbios ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0125 4088        Mup ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088        Mup ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0125 4088        napagent ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0125 4088        napagent ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0140 4088        NDIS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0140 4088        NDIS ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0140 4088        NdisTapi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0140 4088        NdisTapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0140 4088        Ndisuio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0140 4088        Ndisuio ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0156 4088        NdisWan ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088        NdisWan ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0156 4088        NDProxy ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088        NDProxy ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0156 4088        NetBIOS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088        NetBIOS ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0156 4088        NetBT ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0156 4088        NetBT ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0171 4088        NetDDE ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0171 4088        NetDDE ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0171 4088        NetDDEdsdm ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0171 4088        NetDDEdsdm ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0171 4088        Netlogon ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0171 4088        Netlogon ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0187 4088        Netman ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088        Netman ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0187 4088        Nla ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088        Nla ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0187 4088        Npfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088        Npfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0187 4088        Ntfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0187 4088        Ntfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0203 4088        NtLmSsp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088        NtLmSsp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0203 4088        NtmsSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088        NtmsSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0203 4088        Null ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088        Null ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0203 4088        nv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0203 4088        nv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0218 4088        NwlnkFlt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088        NwlnkFlt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0218 4088        NwlnkFwd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088        NwlnkFwd ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0218 4088        Parport ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088        Parport ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0218 4088        PartMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0218 4088        PartMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0234 4088        ParVdm ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088        ParVdm ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0234 4088        PCI ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088        PCI ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0234 4088        PCIIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088        PCIIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0234 4088        Pcmcia ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0234 4088        Pcmcia ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0250 4088        pelmouse ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088        pelmouse ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0250 4088        pelusblf ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088        pelusblf ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0250 4088        perc2 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088        perc2 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0250 4088        perc2hib ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0250 4088        perc2hib ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0265 4088        PlugPlay ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0265 4088        PlugPlay ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0265 4088        pmem ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0265 4088        pmem ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0265 4088        PolicyAgent ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0265 4088        PolicyAgent ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0281 4088        PptpMiniport ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088        PptpMiniport ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0281 4088        Processor ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088        Processor ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0281 4088        ProtectedStorage ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088        ProtectedStorage ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0281 4088        PSched ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0281 4088        PSched ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0296 4088        Ptilink ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088        Ptilink ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0296 4088        ql1080 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088        ql1080 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0296 4088        Ql10wnt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088        Ql10wnt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0296 4088        ql12160 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0296 4088        ql12160 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0312 4088        ql1240 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088        ql1240 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0312 4088        ql1280 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088        ql1280 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0312 4088        RasAcd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088        RasAcd ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0312 4088        RasAuto ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0312 4088        RasAuto ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0328 4088        Rasl2tp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088        Rasl2tp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0328 4088        RasMan ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088        RasMan ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0328 4088        RasPppoe ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088        RasPppoe ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0328 4088        Raspti ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0328 4088        Raspti ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0343 4088        Rdbss ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088        Rdbss ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0343 4088        RDPCDD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088        RDPCDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0343 4088        rdpdr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088        rdpdr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0343 4088        RDPWD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0343 4088        RDPWD ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0359 4088        RDSessMgr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0375 4088        RDSessMgr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0375 4088        redbook ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0375 4088        redbook ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0390 4088        RemoteAccess ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088        RemoteAccess ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0390 4088        RemoteRegistry ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088        RemoteRegistry ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0390 4088        RpcLocator ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088        RpcLocator ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0390 4088        RpcSs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088        RpcSs ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0390 4088        RSVP ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0390 4088        RSVP ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0406 4088        SamSs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088        SamSs ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0406 4088        SCardSvr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088        SCardSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0406 4088        Schedule ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088        Schedule ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0406 4088        Secdrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0406 4088        Secdrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0421 4088        seclogon ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088        seclogon ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0421 4088        SENS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088        SENS ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0421 4088        serenum ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088        serenum ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0421 4088        Serial ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0421 4088        Serial ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0437 4088        Sfloppy ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088        Sfloppy ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0437 4088        ShellHWDetection ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088        ShellHWDetection ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0437 4088        sisagp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088        sisagp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0437 4088        Sparrow ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0437 4088        Sparrow ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0453 4088        splitter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088        splitter ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0453 4088        Spooler ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088        Spooler ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0453 4088        sr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088        sr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0453 4088        srservice ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0453 4088        srservice ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0468 4088        Srv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088        Srv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0468 4088        SSDPSRV ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088        SSDPSRV ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0468 4088        stisvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088        stisvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0468 4088        SUService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088        SUService ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0468 4088        swenum ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0468 4088        swenum ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0484 4088        swmidi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088        swmidi ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0484 4088        symc810 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088        symc810 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0484 4088        symc8xx ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088        symc8xx ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0484 4088        sym_hi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0484 4088        sym_hi ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0500 4088        sym_u3 ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088        sym_u3 ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0500 4088        sysaudio ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088        sysaudio ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0500 4088        SysmonLog ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088        SysmonLog ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0500 4088        TapiSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0500 4088        TapiSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0515 4088        Tcpip ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088        Tcpip ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0515 4088        TDPIPE ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088        TDPIPE ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0515 4088        TDTCP ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088        TDTCP ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0515 4088        TermDD ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088        TermDD ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0515 4088        TermService ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0515 4088        TermService ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0531 4088        Themes ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088        Themes ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0531 4088        TlntSvr ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088        TlntSvr ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0531 4088        TosIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088        TosIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0531 4088        TPM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0531 4088        TPM ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0546 4088        TrkWks ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088        TrkWks ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0546 4088        TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088        TVT Backup Protection Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0546 4088        TVT Backup Service ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088        TVT Backup Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0546 4088        TVT Scheduler ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088        TVT Scheduler ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0546 4088        tvtfilter ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0546 4088        tvtfilter ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0562 4088        TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088        TVT_UpdateMonitor ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0562 4088        Udfs ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088        Udfs ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0562 4088        ultra ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088        ultra ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0562 4088        Update ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0562 4088        Update ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0578 4088        upnphost ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088        upnphost ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0578 4088        UPS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088        UPS ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0578 4088        USBDLM ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088        USBDLM ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0578 4088        usbehci ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088        usbehci ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0578 4088        usbhub ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0578 4088        usbhub ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0593 4088        usbohci ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088        usbohci ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0593 4088        usbprint ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088        usbprint ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0593 4088        usbscan ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088        usbscan ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0593 4088        USBSTOR ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0593 4088        USBSTOR ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0609 4088        usbuhci ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088        usbuhci ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0609 4088        VgaSave ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088        VgaSave ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0609 4088        viaagp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088        viaagp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0609 4088        ViaIde ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088        ViaIde ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0609 4088        VolSnap ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0609 4088        VolSnap ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0625 4088        VSS ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088        VSS ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0625 4088        W32Time ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088        W32Time ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0625 4088        Wanarp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088        Wanarp ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0625 4088        wdmaud ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088        wdmaud ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0625 4088        WebClient ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0625 4088        WebClient ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0640 4088        winmgmt ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088        winmgmt ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0640 4088        WmdmPmSN ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088        WmdmPmSN ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0640 4088        Wmi ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088        Wmi ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0640 4088        WmiApSrv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0640 4088        WmiApSrv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0656 4088        WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088        WMPNetworkSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0656 4088        WS2IFSL ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088        WS2IFSL ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0656 4088        wuauserv ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088        wuauserv ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0656 4088        WudfPf ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088        WudfPf ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0656 4088        WudfRd ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0656 4088        WudfRd ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0671 4088        WudfSvc ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088        WudfSvc ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0671 4088        WZCSVC ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088        WZCSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0671 4088        xmlprov ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088        xmlprov ( UnsignedFile.Multi.Generic ) - User select action: Skip
16:10:55.0671 4088        yukonwxp ( UnsignedFile.Multi.Generic ) - skipped by user
16:10:55.0671 4088        yukonwxp ( UnsignedFile.Multi.Generic ) - User select action: Skip


cosinus 21.07.2012 13:26

Dann bitte jetzt CF ausführen:

ComboFix

Ein Leitfaden und Tutorium zur Nutzung von ComboFix
  • Schliesse alle Programme, vor allem dein Antivirenprogramm und andere Hintergrundwächter sowie deinen Internetbrowser.
  • Starte combofix.exe von deinem Desktop aus, bestätige die Warnmeldungen, führe die Updates durch (falls vorgeschlagen), installiere die Wiederherstellungskonsole (falls vorgeschlagen) und lass dein System durchsuchen.
    Vermeide es auch während Combofix läuft die Maus und Tastatur zu benutzen.
  • Im Anschluss öffnet sich automatisch eine combofix.txt, diesen Inhalt bitte kopieren ([Strg]a, [Strg]c) und in deinen Beitrag einfügen ([Strg]v). Die Datei findest du außerdem unter: C:\ComboFix.txt.
Wichtiger Hinweis:
Combofix darf ausschließlich ausgeführt werden, wenn ein Kompetenzler dies ausdrücklich empfohlen hat!

Es sollte nie auf eigene Initiative hin ausgeführt werden! Eine falsche Benutzung kann ernsthafte Computerprobleme nach sich ziehen und eine Bereinigung der Infektion noch erschweren.

Solltest du nach der Ausführung von Combofix Probleme beim Starten von Anwendungen haben und Meldungen erhalten wie

Zitat:

Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
startest du Windows dann manuell neu und die Fehlermeldungen sollten nicht mehr auftauchen.

strobl 21.07.2012 16:29

Beim Versuch ComboFix zu starten erscheint ein Dialogfenster:

"Dieser PC verfügt nicht über die Microsoft-Wiederherstellungskonsole.Ohne die kann ComboFix die Reparatur einiger schweren Infektionen nicht vornehmen.Klicke auf "Ja", um die Konsole herunterzuladen.

NB! Dies braucht eine funktionierende Internetverbindung.

Soll ich diese Konsole herunterladen?

Danke!

Ich wollte bis auf Ihre Antwort Avira und Windows-Firewall wieder aktivieren.
Mit Avira hat es geklappt.

Windows-Firewall bleibt inaktiv. Ich bin nach der Empfehlung im
Sicherheitscenter (Windows) gegangen und in der Systemsteurung Symbol "Windows-Firewall" angeklickt. Erscheint ein Infofenster" Aufgrund eines unbekannten Problems können die Einstellungen nicht angezeigt werden".

Das hat bestimmt mit ComboFix zu tun.

Vor dem Start ComboFix habe ich Avira deaktiviert. Nach dem Start hat ComboFix befohlen "Avira deaktivieren" ? Ich habe auf Ja geklickt.Dann kam ein nächstes Fenster mit Warnung. Ich dachte, dass ich zurückkehren kann und noch mal auf Avira einen Blick werfe. Die Situation war nicht eindeutig und habe ich den PC ausgeschaltet (also, vor dem Scannen).

cosinus 23.07.2012 13:45

Ja diese Wiederherstellungskonsole muss installiert werden! Und natürlich brauchst du dafür eine Internetverbindung! Um die Windows-Firewall kümmern wir uns später!

strobl 23.07.2012 19:50

Hier ist ComboFix-Log:

Code:

ComboFix 12-07-24.01 - User 23.07.2012  20:40:58.1.2 - x86
Microsoft Windows XP Professional  5.1.2600.3.1252.49.1031.18.1791.1067 [GMT 2:00]
ausgeführt von:: c:\dokumente und einstellungen\User\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
((((((((((((((((((((((((((((((((((((  Weitere Löschungen  ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\dokumente und einstellungen\All Users\Anwendungsdaten\cf
c:\dokumente und einstellungen\User\4.0
c:\dokumente und einstellungen\User\Anwendungsdaten\AdobeDLM.log
c:\windows\IsUn0407.exe
c:\windows\system32\Thumbs.db
.
.
(((((((((((((((((((((((  Dateien erstellt von 2012-06-23 bis 2012-07-23  ))))))))))))))))))))))))))))))
.
.
2012-07-19 17:27 . 2012-07-19 17:27        --------        d-----w-        C:\_OTL
2012-07-04 17:01 . 2012-07-04 17:01        770384        ----a-w-        c:\programme\Mozilla Firefox\msvcr100.dll
2012-07-04 17:01 . 2012-07-04 17:01        421200        ----a-w-        c:\programme\Mozilla Firefox\msvcp100.dll
2012-06-30 15:36 . 2012-06-30 15:36        73728        ----a-w-        c:\windows\system32\javacpl.cpl
2012-06-30 15:36 . 2012-06-30 15:36        476936        ----a-w-        c:\windows\system32\npdeployJava1.dll
2012-06-30 14:52 . 2012-07-13 15:05        70344        ----a-w-        c:\windows\system32\FlashPlayerCPLApp.cpl
2012-06-30 14:52 . 2012-07-13 15:05        426184        ----a-w-        c:\windows\system32\FlashPlayerApp.exe
.
.
.
((((((((((((((((((((((((((((((((((((  Find3M Bericht  ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-30 15:36 . 2010-05-15 09:20        472840        ----a-w-        c:\windows\system32\deployJava1.dll
2012-06-13 13:55 . 2006-01-27 01:00        1866240        ------w-        c:\windows\system32\win32k.sys
2012-06-05 15:49 . 2008-04-14 02:22        1372672        ------w-        c:\windows\system32\msxml6.dll
2012-06-05 15:49 . 2006-01-27 01:01        1172480        ----a-w-        c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2006-01-27 01:01        152576        ----a-w-        c:\windows\system32\schannel.dll
2012-06-02 13:19 . 2009-01-12 14:20        18456        ----a-w-        c:\windows\system32\wuaueng.dll.mui
2012-06-02 13:19 . 2009-01-12 14:20        15896        ----a-w-        c:\windows\system32\wuapi.dll.mui
2012-06-02 13:19 . 2006-01-27 02:16        329240        ----a-w-        c:\windows\system32\wucltui.dll
2012-06-02 13:19 . 2006-01-27 02:16        219160        ----a-w-        c:\windows\system32\wuaucpl.cpl
2012-06-02 13:19 . 2006-01-27 02:16        210968        ----a-w-        c:\windows\system32\wuweb.dll
2012-06-02 13:19 . 2009-01-12 14:20        45080        ----a-w-        c:\windows\system32\wups2.dll
2012-06-02 13:19 . 2009-01-12 14:20        15896        ----a-w-        c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 13:19 . 2006-01-27 02:16        53784        ----a-w-        c:\windows\system32\wuauclt.exe
2012-06-02 13:19 . 2006-01-27 02:16        35864        ----a-w-        c:\windows\system32\wups.dll
2012-06-02 13:19 . 2006-01-27 01:00        97304        ----a-w-        c:\windows\system32\cdm.dll
2012-06-02 13:19 . 2009-01-12 14:20        23576        ----a-w-        c:\windows\system32\wucltui.dll.mui
2012-06-02 13:19 . 2006-01-27 02:16        577048        ----a-w-        c:\windows\system32\wuapi.dll
2012-06-02 13:19 . 2006-01-27 02:16        1933848        ----a-w-        c:\windows\system32\wuaueng.dll
2012-05-31 13:22 . 2006-01-27 01:00        604160        ----a-w-        c:\windows\system32\crypt32.dll
2012-05-15 15:37 . 2006-01-27 01:01        832512        ----a-w-        c:\windows\system32\wininet.dll
2012-05-11 15:14 . 2011-10-24 17:41        83392        ----a-w-        c:\windows\system32\drivers\avgntflt.sys
2012-05-11 15:14 . 2011-10-24 17:41        137928        ----a-w-        c:\windows\system32\drivers\avipbb.sys
2012-05-05 03:14 . 2006-01-27 01:00        2150912        ------w-        c:\windows\system32\ntoskrnl.exe
2012-05-05 03:14 . 2004-08-04 00:50        2029056        ------w-        c:\windows\system32\ntkrnlpa.exe
2012-05-02 13:46 . 2006-01-27 01:00        139656        ------w-        c:\windows\system32\drivers\rdpwd.sys
2012-07-20 13:56 . 2011-07-15 20:48        136672        ----a-w-        c:\programme\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
.
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2004-08-04 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys
.
[-] 2004-08-04 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
.
[-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys
[-] 2008-04-14 . 1704D8C4C8807B889E43C649B478A452 . 25216 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2004-08-04 . B128FC0A5CD83F669D5DE4B58F77C7D6 . 25216 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys
.
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2004-08-04 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys
.
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2004-08-04 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntfs.sys
.
[-] 2004-08-04 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
.
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[-] 2006-01-13 . 5562CC0A47B2AEF06D3417B733F3C195 . 360448 . . [5.1.2600.2827] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
.
[-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\browser.dll
[-] 2008-04-14 . B42057F06BBB98B31876C0B3F2B54E33 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2004-08-04 . D8653DCD80CF2EBB333FC4FCC43A7DEF . 77312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\browser.dll
.
[-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe
[-] 2008-04-14 . AFB8261B56CBA0D86AEB6DF682AF9785 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2004-08-04 . 183805EB05BCA5A1E4AAAED4D2BE3690 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe
.
[-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll
[-] 2008-04-14 . E6D88F1F6745BF00B57E7855A2AB696C . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2004-08-04 . CDF4DA6B518105343FE9E8AFBBF8FBF4 . 198144 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netman.dll
.
[-] 2008-04-14 02:22 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 02:22 . D0DE8A2EC95184E5193BB4B3112E29DF . 846848 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[-] 2004-08-04 12:00 . 4B9D9E2708019763C5A72DA776DB1158 . 846848 . . [2001.12.4414.258] . . c:\windows\$NtServicePackUninstall$\comres.dll
.
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . D6F603772A789BB3228F310D650B8BD1 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll
[-] 2004-08-04 . 3A5E54A9AB96EF2D273B58136FB58EFE . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll
.
[-] 2009-02-09 . D3D765E8455A961AE567B408F767D4F9 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . 3127AFBF2C1ED0AB14A1BBB7AAECB85B . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
[-] 2008-04-14 . E970C2296916BF4A2F958680016FE312 . 399360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rpcss.dll
[-] 2005-07-26 . DBA9F9C00A7A2B45EB8E451C2B6D10E9 . 398336 . . [5.1.2600.2726] . . c:\windows\$hf_mig$\KB902400\SP2QFE\rpcss.dll
[-] 2005-07-26 . 891E3E4537C6DFCAE475073FC49CE9CB . 397824 . . [5.1.2600.2726] . . c:\windows\$NtServicePackUninstall$\rpcss.dll
.
[-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-09 . A3EDBE9053889FB24AB22492472B39DC . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-09 . F0A7D59AF279326528715B206669B86C . 111104 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
[-] 2008-04-14 . 4BB6A83640F1D1792AD21CE767B621C6 . 109056 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\services.exe
[-] 2004-08-04 . EDB6B81761BD60F32F740BBC40AFB676 . 108544 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\services.exe
.
[-] 2010-08-17 . 258DD5D4283FD9F9A7166BE9AE45CE73 . 58880 . . [5.1.2600.6024] . . c:\windows\$hf_mig$\KB2347290\SP3QFE\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\spoolsv.exe
[-] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\dllcache\spoolsv.exe
[-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB2347290$\spoolsv.exe
[-] 2008-04-14 . 39356A9CDB6753A6D13A4072A9F5A4BB . 57856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\spoolsv.exe
[-] 2005-06-11 . AD3D9D191AEA7B5445FE1D82FFBB4788 . 57856 . . [5.1.2600.2696] . . c:\windows\$hf_mig$\KB896423\SP2QFE\spoolsv.exe
[-] 2005-06-10 . DA81EC57ACD4CDC3D4C51CF3D409AF9F . 57856 . . [5.1.2600.2696] . . c:\windows\$NtServicePackUninstall$\spoolsv.exe
.
[-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . F09A527B422E25C478E38CAA0E44417A . 513024 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2005-04-01 . B0B3908F5432F9DBBCD83CA4C33F0D82 . 507904 . . [5.1.2600.2645] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2010-08-23 . 1438703F3D9FFE111DA3869E4F3EEE73 . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll
[-] 2010-08-23 . 2B6ADE29F8D00EEFA5FA2250CBE094AD . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
[-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\$NtUninstallKB2296011$\comctl32.dll
[-] 2008-04-14 . AD28671D1B83A386B070DC451A113C13 . 617472 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2008-04-14 . 3C93CE6C6985C55952B7BE6673E9FD15 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
[-] 2006-08-25 . EE82D1393169AC6BDF6016F4EA8D2B79 . 617472 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[-] 2006-08-25 . F64451D07B9368B46AB31172D56D1804 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[-] 2004-08-04 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
[-] 2004-08-04 . 9D0F57B9C65BF8A07DB655A9ED6EB2EE . 1050624 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
.
[-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll
[-] 2008-04-14 . 611F824E5C703A5A899F84C5F1699E4D . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2004-08-04 . 1A5F9DB98DF7955B4C7CBDBF2C638238 . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll
.
[-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:26 . AF4F6B5739D18CA7972AB53E091CBC74 . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:23 . ADA7241C16F3F42C7F210539FAD5F3AA . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-04-14 02:22 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 02:22 . 0F3EDAEE1EF97CF3DB2BE23A7289B78C . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll
[-] 2005-07-26 04:29 . 0D0F85237E32538F58278D673032676A . 243200 . . [2001.12.4414.308] . . c:\windows\$hf_mig$\KB902400\SP2QFE\es.dll
[-] 2005-07-26 03:39 . BEBC63622BDC30053A3145EBD90AF450 . 243200 . . [2001.12.4414.308] . . c:\windows\$NtServicePackUninstall$\es.dll
.
[-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll
[-] 2008-04-14 . F9954695D246B33A5BF105029A4C6AB6 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2004-08-04 . 94101D13A1818A9D08337EEC12ED277A . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll
.
[-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
[-] 2009-03-21 . B055C64AABC1A3E3DE57EC8025CAD283 . 1063424 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll
[-] 2009-03-21 . 3EB703BFC2ED26A3D8ACB8626AB2C006 . 1065472 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
[-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll
[-] 2008-04-14 . 4C897C69754D88F496339B1A666907C1 . 1063424 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kernel32.dll
[-] 2006-07-05 . 0BEFE0BF274818EC0785B7B842967313 . 1058816 . . [5.1.2600.2945] . . c:\windows\$hf_mig$\KB917422\SP2QFE\kernel32.dll
[-] 2006-07-05 . E42795D2E7725D378EE2A4BFA6FE9DB3 . 1057792 . . [5.1.2600.2945] . . c:\windows\$NtServicePackUninstall$\kernel32.dll
.
[-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll
[-] 2008-04-14 . 5543A9D4A1D0F9F84092482A9373A024 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2005-09-01 . F2AFE60F01040B23207D8EB7DC26EC96 . 19968 . . [5.1.2600.2751] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll
.
[-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll
[-] 2008-04-14 . F38F3C47BBFFD748C1359AB171C3A630 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2004-08-04 . B4AD65C79F85C61D32C015B11E03CAAD . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll
.
[-] 2012-04-23 . 65674C3F0F90BDD6636A39EDCCF5D5B6 . 3618816 . . [7.00.6000.17110] . . c:\windows\system32\mshtml.dll
[-] 2012-04-23 . 65674C3F0F90BDD6636A39EDCCF5D5B6 . 3618816 . . [7.00.6000.17110] . . c:\windows\system32\dllcache\mshtml.dll
[-] 2012-04-23 . A56B9CF11527708705BBED3A835FE2CF . 3620864 . . [7.00.6000.21312] . . c:\windows\$hf_mig$\KB2699988-IE7\SP3QFE\mshtml.dll
[-] 2012-03-01 . D0FB9423F94B7C932A3E353863972FD5 . 3616768 . . [7.00.6000.17109] . . c:\windows\ie7updates\KB2699988-IE7\mshtml.dll
[-] 2012-03-01 . 3E1D28D159CED148726D2E7B6543DC5D . 3619328 . . [7.00.6000.21311] . . c:\windows\$hf_mig$\KB2675157-IE7\SP3QFE\mshtml.dll
[-] 2011-12-19 . 5F6D9147BB32636511E1D691A4BA64D9 . 3616768 . . [7.00.6000.17108] . . c:\windows\ie7updates\KB2675157-IE7\mshtml.dll
[-] 2011-12-19 . FF2F416EC804939371B2DF401C67A5FB . 3618816 . . [7.00.6000.21310] . . c:\windows\$hf_mig$\KB2647516-IE7\SP3QFE\mshtml.dll
[-] 2011-11-04 . A9748CCF8B735D3834F57F0B48A89078 . 3616256 . . [7.00.6000.17107] . . c:\windows\ie7updates\KB2647516-IE7\mshtml.dll
[-] 2011-11-04 . 429AEF742D0A4CD9C2F2C67A6AC2FB01 . 3618304 . . [7.00.6000.21309] . . c:\windows\$hf_mig$\KB2618444-IE7\SP3QFE\mshtml.dll
[-] 2011-09-05 . 949BEBED3B69B4577D3B1FDA24D7FB3E . 3615744 . . [7.00.6000.17104] . . c:\windows\ie7updates\KB2618444-IE7\mshtml.dll
[-] 2011-08-18 . 55C1F4E285A9A3776C060D82EBFCDEB0 . 3617792 . . [7.00.6000.21306] . . c:\windows\$hf_mig$\KB2586448-IE7\SP3QFE\mshtml.dll
[-] 2011-07-22 . 4D5EA9CACBD06FA00B0EE0173F59156F . 3613696 . . [7.00.6000.17102] . . c:\windows\ie7updates\KB2586448-IE7\mshtml.dll
[-] 2011-07-22 . 11CD2E4815B15EEDE64CFDCDD494E8C0 . 3615744 . . [7.00.6000.21305] . . c:\windows\$hf_mig$\KB2559049-IE7\SP3QFE\mshtml.dll
[-] 2011-04-25 . E2F68B1B643A32B6D0C07386ECF8FC26 . 3608576 . . [7.00.6000.17098] . . c:\windows\ie7updates\KB2559049-IE7\mshtml.dll
[-] 2011-04-25 . F8F9909B85B18C8BD480E3A433C3ADA7 . 3610624 . . [7.00.6000.21300] . . c:\windows\$hf_mig$\KB2530548-IE7\SP3QFE\mshtml.dll
[-] 2011-02-17 . 7D09283AA1B4AAA7DEB8BB2504CBFB41 . 3609600 . . [7.00.6000.21299] . . c:\windows\$hf_mig$\KB2497640-IE7\SP3QFE\mshtml.dll
[-] 2011-02-17 . F151C3361111788527C625BF68541FF5 . 3607040 . . [7.00.6000.17097] . . c:\windows\ie7updates\KB2530548-IE7\mshtml.dll
[-] 2010-12-20 . 6BF883B318B70E8013ED5D2976DF5246 . 3609088 . . [7.00.6000.21297] . . c:\windows\$hf_mig$\KB2482017-IE7\SP3QFE\mshtml.dll
[-] 2010-12-20 . 104C6D442D68D15633E7866BA8FD6AD8 . 3606528 . . [7.00.6000.17095] . . c:\windows\ie7updates\KB2497640-IE7\mshtml.dll
[-] 2010-11-06 . DE049C4E531448E846E7C012763D530A . 3604480 . . [7.00.6000.17093] . . c:\windows\ie7updates\KB2482017-IE7\mshtml.dll
[-] 2010-11-06 . 76BFB01D6DE3AB3C2CA13470DEAB4B93 . 3607040 . . [7.00.6000.21295] . . c:\windows\$hf_mig$\KB2416400-IE7\SP3QFE\mshtml.dll
[-] 2010-09-09 . BCEE4AF10B40BF085203AA164D8D8193 . 3601920 . . [7.00.6000.17092] . . c:\windows\ie7updates\KB2416400-IE7\mshtml.dll
[-] 2010-09-09 . A5261D5EFC95731992DC0640FCC49B6C . 3605504 . . [7.00.6000.21294] . . c:\windows\$hf_mig$\KB2360131-IE7\SP3QFE\mshtml.dll
[-] 2010-06-24 . 118F0D56684A6114713E5B6D6C842133 . 3603968 . . [7.00.6000.21283] . . c:\windows\$hf_mig$\KB2183461-IE7\SP3QFE\mshtml.dll
[-] 2010-06-24 . E1ED02EE84A8E8B31A344FCB2D626791 . 3600896 . . [7.00.6000.17080] . . c:\windows\ie7updates\KB2360131-IE7\mshtml.dll
[-] 2010-05-04 . 56B556FFAC4A62C51D0DAF10F6B2B554 . 3600384 . . [7.00.6000.17063] . . c:\windows\ie7updates\KB2183461-IE7\mshtml.dll
[-] 2010-05-04 . C302A90ED9202465BA99EB4A6534FF54 . 3603456 . . [7.00.6000.21264] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\mshtml.dll
[-] 2010-03-11 . 49980F3384CFAF1E349A8CABE1C52D1B . 3599872 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\mshtml.dll
[-] 2010-03-11 . 933BE33EA6098E87FAF092741166A4E7 . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll
[-] 2010-01-05 . EFA849C79A3EBBC028E5ABE1BFC0FA15 . 3599360 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll
[-] 2010-01-05 . FB09490E1D218772550A8A5823826677 . 3602944 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\mshtml.dll
[-] 2009-10-29 . ECE8C5082CD8370BDAC3F6B7004A7A1A . 3598336 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\mshtml.dll
[-] 2009-10-29 . 41080B245B3931133878A2B20ED48C1B . 3602432 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\mshtml.dll
[-] 2009-10-21 . AFBD8339073CD05B2BBEB2089E2C9233 . 3598336 . . [7.00.6000.16939] . . c:\windows\ie7updates\KB976325-IE7\mshtml.dll
[-] 2009-10-21 . 45F5209869362161862057955A323208 . 3602432 . . [7.00.6000.21142] . . c:\windows\$hf_mig$\KB976749-IE7\SP3QFE\mshtml.dll
[-] 2009-08-29 . 66746BD88F71770815E12E6C6CAEF3EA . 3598336 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976749-IE7\mshtml.dll
[-] 2009-08-29 . 3701C2F766865BEF9F5987E8AB95A6DA . 3600384 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\mshtml.dll
[-] 2009-07-19 . 7DB04886F1455D9057F54A51E5A7BB32 . 3597824 . . [7.00.6000.16890] . . c:\windows\ie7updates\KB974455-IE7\mshtml.dll
[-] 2009-07-19 . B553564076B41EBEA822B968D7C71C47 . 3600384 . . [7.00.6000.21089] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\mshtml.dll
[-] 2009-04-29 . A0236D46EFCEF98D6703DD5A76AA1CB2 . 3596288 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\mshtml.dll
[-] 2009-04-29 . 6770B436928E450F5B4866BDC59549CC . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll
[-] 2009-02-21 . 77605BDA8141E1F7D3B1321E31CA482B . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll
[-] 2009-02-20 . EE15CE7504EB54258F361AD7595E9077 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll
[-] 2009-01-16 . A76EEDA793C9BFC0C1B8C5F3439D8A39 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll
[-] 2009-01-16 . B44AC6A49DA4A5BAA7AFEA0AA6E5B967 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll
[-] 2008-12-13 . 6C8D1CF85533A3792DCDDAAE42DBB161 . 3593216 . . [7.00.6000.16788] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll
[-] 2008-12-13 . E0825D1BC0F0C2B5CA434F7E9CCF10AE . 3594752 . . [7.00.6000.20973] . . c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
[-] 2008-10-16 . C998B6D5E64E11CE8EA8BB22A51CA570 . 3595264 . . [7.00.6000.20935] . . c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
[-] 2008-04-14 . 72AE55A9FFBC60650339CB12E35C7DD5 . 3066880 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\mshtml.dll
[-] 2006-11-07 . CBF04597F9CF7739E572276A2698FDD3 . 3577856 . . [7.00.5730.11] . . c:\windows\ie7updates\KB960714-IE7\mshtml.dll
[-] 2006-02-01 . E8526A66802AC6213762D97BD0FA334C . 3035648 . . [6.00.2900.2838] . . c:\windows\ie7\mshtml.dll
[-] 2005-11-24 . 8ABDBAE6032562F17DCF962847ABB811 . 3016192 . . [6.00.2900.2802] . . c:\windows\$hf_mig$\KB905915\SP2QFE\mshtml.dll
[-] 2005-11-23 . 03F9910F7958A36088B9D8CD262903AE . 3013632 . . [6.00.2900.2802] . . c:\windows\$NtUninstallKB905915$\mshtml.dll
.
[-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll
[-] 2008-04-14 . C6A6E53A0C34EC87883137A6CB87AE5E . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . C536AAD8A71608FE33CD956214EDD366 . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll
[-] 2004-08-04 . B30BAA48E5063E71C76280E34E7E4802 . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll
[-] 2004-08-04 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
[-] 2004-08-04 . 365B3C43810E1CF41B3BE1E7180F583B . 343040 . . [7.0.2600.2180] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\msvcrt.dll
.
[-] 2008-06-20 . ACD8BD448A74F344D46FCAF21BAB92AF . 247296 . . [5.1.2600.5625] . . c:\windows\$NtUninstallKB2509553$\mswsock.dll
[-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB2509553\SP3QFE\mswsock.dll
[-] 2008-06-20 . 4AA50627B01C0E9C6B4C6BD3AF648F12 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . F1B67B6B0751AE0E6E964B02821206A3 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . F12B9D9A069331877D006CC81B4735F9 . 247296 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll
[-] 2004-08-04 . B36E08F680BAE4DFC5C24D00A2DFC9E7 . 247296 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\mswsock.dll
.
[-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll
[-] 2008-04-14 . 0098D35F91DEAB9C127360A877F2CF84 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2004-08-04 . D27395EDCD3416AFD125A9370DCB585C . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll
.
[-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll
[-] 2008-04-14 . C8C0BDABC966B6C24D337DF0A0A399E1 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2004-08-04 . 5604574D490B798BD9A946B021A766AD . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll
.
[-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll
[-] 2008-04-14 . 5132443DF6FC3771A17AB4AE55DCBC28 . 187904 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2004-08-04 . 64DC26B3CF7BCCAD431CE360A4C625D5 . 186880 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll
.
[-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll
[-] 2008-04-14 . 44161A59DC33AC2EA9C95438ADFFFB7F . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2004-08-04 . F62934BC94299083EBFC8810242D8640 . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll
.
[-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe
[-] 2008-04-14 . 4FBC75B74479C7A6F829E0CA19DF3366 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2004-08-04 . 65A819B121EB6FDAB4400EA42BDFFE64 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe
.
[-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll
[-] 2008-04-14 . 05903CAC4B98908D55EA5774775B382E . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2005-07-08 . F07061E18613F336A3120229097F7635 . 249344 . . [5.1.2600.2716] . . c:\windows\$hf_mig$\KB893756\SP2QFE\tapisrv.dll
[-] 2005-07-08 . 427D7EB3B453347082C8F4B370065D60 . 249344 . . [5.1.2600.2716] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll
.
[-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . B0050CC5340E3A0760DD8B417FF7AEBD . 580096 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2005-03-02 . 4C90159A69A5FD3EB39C71411F28FCFF . 578560 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\user32.dll
[-] 2005-03-02 . 4C90159A69A5FD3EB39C71411F28FCFF . 578560 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\user32.dll
[-] 2005-03-02 . 3751D7CF0E0A113D84414992146BCE6A . 578560 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\user32.dll
.
[-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2008-04-14 . 788F95312E26389D596C0FA55834E106 . 26624 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2004-08-04 . D1E53DC57143F2584B1DD53B036C0633 . 25088 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe
.
[-] 2012-05-15 . B2FB8A88EBFDA2AF550CFFC1F25517AB . 832512 . . [7.00.6000.17111] . . c:\windows\system32\wininet.dll
[-] 2012-05-15 . B2FB8A88EBFDA2AF550CFFC1F25517AB . 832512 . . [7.00.6000.17111] . . c:\windows\system32\dllcache\wininet.dll
[-] 2012-05-15 . E7EEB502B8C3057D96E1447BC851F565 . 841216 . . [7.00.6000.21313] . . c:\windows\$hf_mig$\KB2699988-IE7\SP3QFE\wininet.dll
[-] 2012-03-01 . E6F509D60102B0ED953055AD293AB1F8 . 832512 . . [7.00.6000.17109] . . c:\windows\ie7updates\KB2699988-IE7\wininet.dll
[-] 2012-03-01 . 4DA5AC13C9E635428FB690FA01107397 . 841216 . . [7.00.6000.21311] . . c:\windows\$hf_mig$\KB2675157-IE7\SP3QFE\wininet.dll
[-] 2011-12-19 . 9D117DA0C01D2AA20A5F75DF188E83C7 . 832512 . . [7.00.6000.17108] . . c:\windows\ie7updates\KB2675157-IE7\wininet.dll
[-] 2011-12-19 . D7C8B47B787A20C5B9FE88965392AF2F . 841216 . . [7.00.6000.21310] . . c:\windows\$hf_mig$\KB2647516-IE7\SP3QFE\wininet.dll
[-] 2011-10-31 . 01BDE5984B35C367A3FDCC0EE8ED30E7 . 832512 . . [7.00.6000.17106] . . c:\windows\ie7updates\KB2647516-IE7\wininet.dll
[-] 2011-10-31 . BB152F931473A871C8CB0F7040147D03 . 841216 . . [7.00.6000.21308] . . c:\windows\$hf_mig$\KB2618444-IE7\SP3QFE\wininet.dll
[-] 2011-08-17 . AE55A628C1688AA66AE39D2B93BDE312 . 832512 . . [7.00.6000.17103] . . c:\windows\ie7updates\KB2618444-IE7\wininet.dll
[-] 2011-08-17 . BADFC58ACD58FB83C7FB968FE2571154 . 841216 . . [7.00.6000.21306] . . c:\windows\$hf_mig$\KB2586448-IE7\SP3QFE\wininet.dll
[-] 2011-06-21 . 0697B0F3FD198C5AF0876449789EB1D3 . 832512 . . [7.00.6000.17099] . . c:\windows\ie7updates\KB2586448-IE7\wininet.dll
[-] 2011-06-21 . CA3F86FD98DBEF99E8CBB5C5EC533E4E . 841216 . . [7.00.6000.21302] . . c:\windows\$hf_mig$\KB2559049-IE7\SP3QFE\wininet.dll
[-] 2011-04-25 . 36F92E2E8B0E6EBB02CC9EEEA2983C1E . 832512 . . [7.00.6000.17098] . . c:\windows\ie7updates\KB2559049-IE7\wininet.dll
[-] 2011-04-25 . C843BCAFB1C22AF2399FD5AA92257D4D . 841216 . . [7.00.6000.21300] . . c:\windows\$hf_mig$\KB2530548-IE7\SP3QFE\wininet.dll
[-] 2011-02-17 . 60A31B042CB6600EEB4357AFF19D345C . 841216 . . [7.00.6000.21298] . . c:\windows\$hf_mig$\KB2497640-IE7\SP3QFE\wininet.dll
[-] 2011-02-17 . B699449B3CB14E5D553688814D19FF56 . 832512 . . [7.00.6000.17096] . . c:\windows\ie7updates\KB2530548-IE7\wininet.dll
[-] 2010-12-20 . BD4C6C6694C20480599E75813C230EFC . 841216 . . [7.00.6000.21297] . . c:\windows\$hf_mig$\KB2482017-IE7\SP3QFE\wininet.dll
[-] 2010-12-20 . A2D15AB60F75AA102ED5234CA80688AD . 832512 . . [7.00.6000.17095] . . c:\windows\ie7updates\KB2497640-IE7\wininet.dll
[-] 2010-11-06 . A1A23A6C6DCA6B567106552475A65B79 . 832512 . . [7.00.6000.17093] . . c:\windows\ie7updates\KB2482017-IE7\wininet.dll
[-] 2010-11-06 . 512A074E47388E9252B1ADE326317CE9 . 841216 . . [7.00.6000.21295] . . c:\windows\$hf_mig$\KB2416400-IE7\SP3QFE\wininet.dll
[-] 2010-09-09 . 6BCB6C8396D75FA1676B65790EA17E4B . 832512 . . [7.00.6000.17091] . . c:\windows\ie7updates\KB2416400-IE7\wininet.dll
[-] 2010-09-09 . 859559B2F2B9B437DD279AC7EA68BE40 . 841216 . . [7.00.6000.21293] . . c:\windows\$hf_mig$\KB2360131-IE7\SP3QFE\wininet.dll
[-] 2010-06-24 . A85BA5BA928351CC7117123D53123384 . 841216 . . [7.00.6000.21283] . . c:\windows\$hf_mig$\KB2183461-IE7\SP3QFE\wininet.dll
[-] 2010-06-24 . F35DCEC860FDB1F17DE7D543D182B169 . 832512 . . [7.00.6000.17080] . . c:\windows\ie7updates\KB2360131-IE7\wininet.dll
[-] 2010-05-04 . 0AFFC00B24F30716688CF08ECFE377E9 . 832512 . . [7.00.6000.17055] . . c:\windows\ie7updates\KB2183461-IE7\wininet.dll
[-] 2010-05-04 . 6A2F855F0D2A09216656153636080D1E . 841216 . . [7.00.6000.21256] . . c:\windows\$hf_mig$\KB982381-IE7\SP3QFE\wininet.dll
[-] 2010-03-11 . 667D6FFC648739EB24931E9B2BC685D1 . 832512 . . [7.00.6000.17023] . . c:\windows\ie7updates\KB982381-IE7\wininet.dll
[-] 2010-03-11 . A20419E3612073BB2B5707EDA26173E6 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll
[-] 2010-01-05 . B0F874F81444643FCDA267033D630113 . 832512 . . [7.00.6000.16981] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll
[-] 2010-01-05 . C14A55B0286B5C2A910AEA3CE1DB7D76 . 841216 . . [7.00.6000.21183] . . c:\windows\$hf_mig$\KB978207-IE7\SP3QFE\wininet.dll
[-] 2009-10-29 . A20B2C09CCE24D136F0519323A3F7072 . 832512 . . [7.00.6000.16945] . . c:\windows\ie7updates\KB978207-IE7\wininet.dll
[-] 2009-10-29 . 9B5D0E4E82FFC178D82206D93D89C71C . 841216 . . [7.00.6000.21148] . . c:\windows\$hf_mig$\KB976325-IE7\SP3QFE\wininet.dll
[-] 2009-08-29 . CB74316772D625807EF16F6701F2A25E . 832512 . . [7.00.6000.16915] . . c:\windows\ie7updates\KB976325-IE7\wininet.dll
[-] 2009-08-29 . BA0DE4DD7959D0638EAD5B400294C416 . 840704 . . [7.00.6000.21115] . . c:\windows\$hf_mig$\KB974455-IE7\SP3QFE\wininet.dll
[-] 2009-06-29 . 93552887262FEE6DD5D98E452FCD495A . 828928 . . [7.00.6000.21073] . . c:\windows\$hf_mig$\KB972260-IE7\SP3QFE\wininet.dll
[-] 2009-06-29 . 90590032B6E9EF719F5E78FCD2AD2CBC . 827392 . . [7.00.6000.16876] . . c:\windows\ie7updates\KB974455-IE7\wininet.dll
[-] 2009-04-29 . B7E6D6663CB6BC05316FEB978217360D . 827392 . . [7.00.6000.16850] . . c:\windows\ie7updates\KB972260-IE7\wininet.dll
[-] 2009-04-29 . F5D59B0B453F8AF7ADC7AFB34D39C441 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll
[-] 2009-03-03 . AF68C6F857EB438770E86FFEE013F04D . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll
[-] 2009-03-03 . 9F434E15A82D1322FB6860E317783E57 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll
[-] 2008-12-20 . 2B5AE9ACD86E1B8B86D62E153DE130AB . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll
[-] 2008-12-20 . C3D4047626F8CC8EC7DD7558FA5CC2E2 . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll
[-] 2008-10-16 . CBAAEBDFC6F9291D2D31E36FE1AD19AC . 826368 . . [7.00.6000.16762] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll
[-] 2008-10-16 . 5A1F997EC096EF26F3A3880347F5F9D8 . 827904 . . [7.00.6000.20935] . . c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
[-] 2008-04-14 . B4AEE98A48917B274FACFB78BBE0BC84 . 671744 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\wininet.dll
[-] 2006-11-07 . 92995334F993E6E49C25C6D02EC04401 . 818688 . . [7.00.5730.11] . . c:\windows\ie7updates\KB958215-IE7\wininet.dll
[-] 2006-01-09 . 957B39EFDAAFC58F43FB233933265F95 . 667648 . . [6.00.2900.2823] . . c:\windows\ie7\wininet.dll
[-] 2005-10-21 . F3118DF4ABD118B11326D1C7A0093867 . 667136 . . [6.00.2900.2781] . . c:\windows\$hf_mig$\KB905915\SP2QFE\wininet.dll
[-] 2005-10-21 . 19625F6F8357C2306BA4B3583C705836 . 664064 . . [6.00.2900.2781] . . c:\windows\$NtUninstallKB905915$\wininet.dll
.
[-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll
[-] 2008-04-14 . 6A35E2D6F5F052C84EC2CEB296389439 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2004-08-04 . D569240A22421D5F670BB6FB6DD522B5 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll
.
[-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2help.dll
[-] 2008-04-14 . C7D8A0517CBF16B84F657DE87EBE9D4B . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
[-] 2004-08-04 . B3ADA72D1E3E10A8F6430669DFC38ED0 . 19968 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2help.dll
.
[-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 418045A93CD87A352098AB7DABE1B53E . 1036800 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[-] 2004-08-04 . 22FE1BE02EADDE1632E478E4125639E0 . 1035264 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
.
[-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[-] 2008-04-14 . AD9226BF3CED13636083BB9C76E9D2A2 . 153600 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regedit.exe
[-] 2004-08-04 . 8193CE5FB09E83F2699FD65BBCBE2FD2 . 153600 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regedit.exe
.
[-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\ole32.dll
[-] 2011-11-01 . 6AD6619E7523E27B771569C26F408F0A . 1288704 . . [5.1.2600.6168] . . c:\windows\system32\dllcache\ole32.dll
[-] 2011-11-01 . D684C601EC79D9543D50EB2DB124FE78 . 1289216 . . [5.1.2600.6168] . . c:\windows\$hf_mig$\KB2624667\SP3QFE\ole32.dll
[-] 2010-07-16 . B28AF7976F2D8109C0DC2CF2460BEDC2 . 1288192 . . [5.1.2600.6010] . . c:\windows\$NtUninstallKB2624667$\ole32.dll
[-] 2010-07-16 . B3D7633CF83B09042A49810A7A72ADED . 1289216 . . [5.1.2600.6010] . . c:\windows\$hf_mig$\KB979687\SP3QFE\ole32.dll
[-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB979687$\ole32.dll
[-] 2008-04-14 . E08D638BA3D3DD6DF6E31216AB66AE0B . 1287680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ole32.dll
[-] 2005-07-26 . 24EDF93FD04CA1A98D32F092DD4F9953 . 1286144 . . [5.1.2600.2726] . . c:\windows\$hf_mig$\KB902400\SP2QFE\ole32.dll
[-] 2005-07-26 . CC50261CA5DC93A47D6CF548C4223F44 . 1285120 . . [5.1.2600.2726] . . c:\windows\$NtServicePackUninstall$\ole32.dll
.
[-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\usp10.dll
[-] 2010-04-16 . 45954AFB7AE6E29B23C56B830C820A11 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\dllcache\usp10.dll
[-] 2010-04-16 . EB2AD9C7DADE6C63F5F933881BA2A430 . 406016 . . [1.0420.2600.5969] . . c:\windows\$hf_mig$\KB981322\SP3QFE\usp10.dll
[-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\$NtUninstallKB981322$\usp10.dll
[-] 2008-04-14 . 052F968390A85D37D5EE8BE3AB2A83A2 . 406016 . . [1.0420.2600.5512] . . c:\windows\ServicePackFiles\i386\usp10.dll
[-] 2004-08-04 . E4E40EAFF464EBE7752BAD3D82AF1715 . 406528 . . [1.0420.2600.2180] . . c:\windows\$NtServicePackUninstall$\usp10.dll
.
[-] 2008-04-14 . 671ABB33C712B1585A5BF7ADD36AD96E . 4096 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\ksuser.dll
[-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\ksuser.dll
[-] 2004-08-03 . 4721744CE11F385073F6F9F7831752C7 . 4096 . . [5.3.2600.2180] . . c:\windows\system32\ksuser.dll
.
[-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . 01B4E6E990B6C5EA8856D96C7FD044B2 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2004-08-04 . 7CE20569925DF6789C31799F0C538F29 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
.
[-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\shsvcs.dll
[-] 2009-07-27 . 2DB7D303C36DDD055215052F118E8E75 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\dllcache\shsvcs.dll
[-] 2009-07-27 . 927666F4228E3FBBC3D1171581DC8BDC . 135680 . . [6.00.2900.5853] . . c:\windows\$hf_mig$\KB971029\SP3QFE\shsvcs.dll
[-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\$NtUninstallKB971029$\shsvcs.dll
[-] 2008-04-14 . 40602EBFBE06AA075C8E4560743F6883 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll
[-] 2004-08-04 . BAC5F7F0C2B8C1B9832594851E0F9914 . 135168 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll
.
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2008-04-14 . EDAFBE25FB6480CE68F688BA691890DC . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2004-08-04 . 7D3E0BEB62799112F5C9FF717D72BF29 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe
.
[-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2008-04-14 . 0ADA34871A2E1CD2CAAFED1237A47750 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2004-08-04 . 8302DE1C64618D72346DD0034DBC5D9B . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll
.
[-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll
[-] 2008-04-14 . 04955AA695448C181B367D964AF158AA . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2004-08-04 . B932C077D5A65B71B4512544AC404CB4 . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll
.
[-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll
[-] 2008-04-14 . 5251425B86EA4A3532B8BB8D14044E61 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2004-08-04 . 80F7B7198B869C07C98627AF812D68B6 . 1548288 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll
.
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ipsec.sys
[-] 2008-04-13 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
[-] 2004-08-04 . 64537AA5C003A6AFEEE1DF819062D0D1 . 74752 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ipsec.sys
.
[-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll
[-] 2008-04-14 . E4CD1F3D84E1C2CA0B8CF7501E201593 . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2004-08-04 . AE81CF7D7CFA79CD03E8FB99788A7E09 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll
.
[-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll
[-] 2008-04-14 . A050194A44D7FA8D7186ED2F4E8367AE . 193536 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2004-08-04 . D5E73842F38E24457C63FEF8CEFFBE19 . 192000 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll
.
[-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll
[-] 2008-04-14 . 4DF5B05DFAEC29E13E1ED6F6EE12C500 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2004-08-04 . 6FA03B462B2FFFE2627171B7FE73EE29 . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll
.
[-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll
[-] 2008-04-14 . B7DE02C863D8F5A005A7BF375375A6A4 . 297472 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2004-08-04 . 1850BC10DE5DCCCEDE063FC2D0F2CEDA . 297472 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\termsrv.dll
.
[-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 . 0DAF0705D7B39C94E287913226688804 . 348672 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[-] 2004-08-04 . AE93E415220A4C0112768A0DEE36D28D . 348672 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\hnetcfg.dll
.
[-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll
[-] 2008-04-14 . D45960BE52C3C610D361977057F98C54 . 175616 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2004-08-04 . BECD5328E7869807D6557BE4FE60C72F . 175616 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll
.
[-] 2004-08-04 . 9E1CA3160DAFB159CA14F83B1E317F75 . 12160 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
.
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
[-] 2004-08-03 21:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\$NtServicePackUninstall$\aec.sys
.
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2004-08-04 . 2C428FA0C3E3A01ED93C9B2A27D8D4BB . 42368 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\agp440.sys
.
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2004-08-04 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys
.
[-] 2010-09-18 07:18 . 4891FCDAE77486BFB56999AA217651FA . 953856 . . [4.1.6151] . . c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll
[-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll
[-] 2010-09-18 06:52 . 1614669828A32BCD06E1BE6F334BB888 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 02:22 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\$NtUninstallKB2387149$\mfc40u.dll
[-] 2008-04-14 02:22 . ACC19BA6876AF18768EE87931CAD14E2 . 927504 . . [4.1.0.61] . . c:\windows\ServicePackFiles\i386\mfc40u.dll
[-] 2004-08-04 12:00 . 31DD27AB47F62D383505F35CA972748B . 924432 . . [4.1.6140] . . c:\windows\$NtServicePackUninstall$\mfc40u.dll
.
[-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll
[-] 2008-04-14 . B7550A7107281D170CE85524B1488C98 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2004-08-04 . E5215AB942C5AC5F7EB0E54871D7A27C . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll
.
[-] 2009-01-30 18:33 . 051B1BDECD6DEE18C771B5D5EC7F044D . 27136 . . [11.0.5721.5262] . . c:\windows\system32\mspmsnsv.dll
[-] 2009-01-30 18:33 . 051B1BDECD6DEE18C771B5D5EC7F044D . 27136 . . [11.0.5721.5262] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll
[-] 2005-01-28 12:44 . 140EF97B64F560FD78643CAE2CDAD838 . 25088 . . [10.0.3790.3802] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\MsPMSNSv.dll
[-] 2004-08-04 12:00 . D68CC4EBF7B03FD770D5962295AD814E . 52736 . . [9.0.1.56] . . c:\windows\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\MsPMSNSv.dll
.
[-] 2012-05-05 . 0A7BFA15D9F9432DB882CD2A174E7F7F . 2071424 . . [5.1.2600.6223] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
[-] 2012-05-05 . 0A7BFA15D9F9432DB882CD2A174E7F7F . 2071424 . . [5.1.2600.6223] . . c:\windows\system32\dllcache\ntkrnlpa.exe
[-] 2012-05-05 . BE4A6D3DB8E11A1B644B8675FE7D1A43 . 2029056 . . [5.1.2600.6223] . . c:\windows\system32\ntkrnlpa.exe
[-] 2012-05-05 . 339D9DA45F631C9D9D7132D9F6957943 . 2071424 . . [5.1.2600.6223] . . c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrnlpa.exe
[-] 2012-04-11 . 12E964E3514BC6ECD028A792F23E1976 . 2029056 . . [5.1.2600.6206] . . c:\windows\$NtUninstallKB2707511$\ntkrnlpa.exe
[-] 2012-04-11 . C3124524EDDDA49504AE558352440F65 . 2071424 . . [5.1.2600.6206] . . c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrnlpa.exe
[-] 2011-10-26 . 07FD1B85212CB29D3D75932B8C3FD210 . 2029568 . . [5.1.2600.6165] . . c:\windows\$NtUninstallKB2676562$\ntkrnlpa.exe
[-] 2011-10-26 . ADD968B4D4A095407FD5B915F89BA8B5 . 2071680 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntkrnlpa.exe
[-] 2010-12-09 . 7B1CA0A6C042E4B90A18B49ED73CBA76 . 2071680 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntkrnlpa.exe
[-] 2010-12-09 . 56371A8F18F7D9570A11B1C54D602A2A . 2029568 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntkrnlpa.exe
[-] 2010-04-28 . 4EACA49489EB3C4A2E83C5546EB5884C . 2069248 . . [5.1.2600.5973] . . c:\windows\$hf_mig$\KB981852\SP3QFE\ntkrnlpa.exe
[-] 2010-04-28 . 6D8D53C3EE866AB72AC73A68808E7371 . 2027008 . . [5.1.2600.5973] . . c:\windows\$NtUninstallKB2393802$\ntkrnlpa.exe
[-] 2010-02-16 . 1DFCBCFD1C9016C051BE6D7243459CCA . 2027008 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB981852$\ntkrnlpa.exe
[-] 2010-02-16 . CEE28C8C47E52F185F9F8F3A2E31880C . 2069248 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntkrnlpa.exe
[-] 2009-12-09 . 2E72317A93EF61138E43DCF7CD423EDF . 2068480 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165\SP3QFE\ntkrnlpa.exe
[-] 2009-12-09 . 1143EBE276EA80A88942A21613078088 . 2026496 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntkrnlpa.exe
[-] 2009-08-04 . C50ED62BB5CDC5AD4F3985ED39C6AE87 . 2068480 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntkrnlpa.exe
[-] 2009-08-04 . 1FF1F43613BA7510A5A975ED034EB8E0 . 2026496 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165$\ntkrnlpa.exe
[-] 2009-02-09 . 43FBA8A9CBEEA36EA95AF77CD538200A . 2026496 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntkrnlpa.exe
[-] 2009-02-09 . 1F9DA92672B8B5720C5FB1E87D8F249F . 2068480 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
[-] 2008-08-14 . C789B5AEA9AB71C5BEF6DD568F744842 . 2068352 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
[-] 2008-08-14 . 13334FAF18AB3B9083B8DD8A668B8BB6 . 2026496 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe
[-] 2008-04-14 . FEFB3BDA35CF469809B0C89AB6833AFC . 2026496 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe
[-] 2008-04-14 . E51980EF65CED4490A7395A06C08DA34 . 2068224 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntkrnlpa.exe
[-] 2005-03-02 . 5B765E49A8A454A6125958EE25BE65CC . 2017792 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\ntkrnlpa.exe
[-] 2005-03-02 . AE8364004BBFD70461D2EF34888D3360 . 2059264 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
[-] 2005-03-02 . BDFF8FFA77EE7DF9758EF8C1E0DA8EFF . 2059136 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\ntkrnlpa.exe
.
[-] 2008-04-14 02:22 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll
[-] 2008-04-14 02:22 . 56AF4064996FA5BAC9C449B1514B4770 . 438272 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2004-08-04 12:00 . 428AA946A8D9F32DBB4260C8E6E13377 . 438272 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll
.
[-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll
[-] 2008-04-14 . 1DFD8975D8C89214B98D9387C1125B49 . 186880 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2004-08-04 . 09D4A2D7C5A8ABEC227D118765FAADDF . 185856 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\upnphost.dll
.
[-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll
[-] 2008-04-14 . 9236E736EDB57BE7D1EF6274410E3BAC . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2004-08-04 . 7DB3393F98E4211F5CE8F003DE0615CF . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll
.
[-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\d3d9.dll
[-] 2008-04-14 . 36969CF86E51EC8ED202B40F2FA80AA6 . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll
[-] 2004-08-04 . 20AE7889467887B869F30308EEED9A2A . 1689088 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\d3d9.dll
.
[-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\ServicePackFiles\i386\ddraw.dll
[-] 2008-04-14 . 4A37188B83B00DD9CFBA049687AD0DAF . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll
[-] 2004-08-04 . CAC545A56482DE01640E6B791DE19944 . 266240 . . [5.03.2600.2180] . . c:\windows\$NtServicePackUninstall$\ddraw.dll
.
[-] 2008-04-14 02:22 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\olepro32.dll
[-] 2008-04-14 02:22 . 5D7F5A46975D2E59A6FECB6C231D200F . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll
[-] 2004-08-04 12:00 . 1404D3DD4ED4F5E2A938B43794049A81 . 83456 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\olepro32.dll
.
[-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\perfctrs.dll
[-] 2008-04-14 . C47FD93010649AC0D79022D9B69ADBE4 . 41984 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
[-] 2004-08-04 . 007BFD01772B5202C5CE4F208A2F3F46 . 41984 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\perfctrs.dll
.
[-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\version.dll
[-] 2008-04-14 . F86000634319F71535BCE6B06995EE99 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll
[-] 2004-08-04 . 4EF2FDC0A085C8339ED4D9C59CE8FC60 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\version.dll
.
[-] 2012-05-05 . 6005B4877E0E9AFB992615A0D5130D11 . 2194944 . . [5.1.2600.6223] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
[-] 2012-05-05 . 6005B4877E0E9AFB992615A0D5130D11 . 2194944 . . [5.1.2600.6223] . . c:\windows\system32\dllcache\ntoskrnl.exe
[-] 2012-05-05 . 916B2FD262DDD2DD31EB5B80B5645516 . 2150912 . . [5.1.2600.6223] . . c:\windows\system32\ntoskrnl.exe
[-] 2012-05-05 . C11516E90F6D8C45329A070429392A04 . 2194944 . . [5.1.2600.6223] . . c:\windows\$hf_mig$\KB2707511\SP3QFE\ntoskrnl.exe
[-] 2012-04-11 . 1055CB3C62F7007EBD5ECB1E5CC8069E . 2150912 . . [5.1.2600.6206] . . c:\windows\$NtUninstallKB2707511$\ntoskrnl.exe
[-] 2012-04-11 . 35BEC26067274CCFE4BE16CA22E54557 . 2194944 . . [5.1.2600.6206] . . c:\windows\$hf_mig$\KB2676562\SP3QFE\ntoskrnl.exe
[-] 2011-10-26 . 63907C9E2D9EEA3ADA8263F0A8D79797 . 2151424 . . [5.1.2600.6165] . . c:\windows\$NtUninstallKB2676562$\ntoskrnl.exe
[-] 2011-10-26 . 43BA9F58FD87BBF57F958C06241F2C9C . 2195072 . . [5.1.2600.6165] . . c:\windows\$hf_mig$\KB2633171\SP3QFE\ntoskrnl.exe
[-] 2010-12-09 . 2A5A8BE47E1F8E55520FB4031E21D129 . 2195072 . . [5.1.2600.6055] . . c:\windows\$hf_mig$\KB2393802\SP3QFE\ntoskrnl.exe
[-] 2010-12-09 . DAC0BE266F11618A2B9A6EC4D1F255ED . 2151424 . . [5.1.2600.6055] . . c:\windows\$NtUninstallKB2633171$\ntoskrnl.exe
[-] 2010-04-28 . 490911C4B913989D4958543FED2C8F21 . 2148864 . . [5.1.2600.5973] . . c:\windows\$NtUninstallKB2393802$\ntoskrnl.exe
[-] 2010-04-28 . 6AF2E8CEB03F7CB3B8183359563DBB87 . 2192384 . . [5.1.2600.5973] . . c:\windows\$hf_mig$\KB981852\SP3QFE\ntoskrnl.exe
[-] 2010-02-16 . E1BD0FAFF2C1D0A825CBA97DCF0DDDAE . 2148864 . . [5.1.2600.5938] . . c:\windows\$NtUninstallKB981852$\ntoskrnl.exe
[-] 2010-02-16 . 4456016C2FF1A8CCCAC8309C9B76E2F5 . 2192384 . . [5.1.2600.5938] . . c:\windows\$hf_mig$\KB979683\SP3QFE\ntoskrnl.exe
[-] 2009-12-09 . A97847B2D30F4A299B35239D26BAD948 . 2191616 . . [5.1.2600.5913] . . c:\windows\$hf_mig$\KB977165\SP3QFE\ntoskrnl.exe
[-] 2009-12-09 . D4128AA197DD8F3120FC80008AB66CF7 . 2147840 . . [5.1.2600.5913] . . c:\windows\$NtUninstallKB979683$\ntoskrnl.exe
[-] 2009-08-04 . 96D6882D49438D58B0DE0F7E8C8D241B . 2147840 . . [5.1.2600.5857] . . c:\windows\$NtUninstallKB977165$\ntoskrnl.exe
[-] 2009-08-04 . 4B86421F2D85D9A4ECB06885C40B8EEB . 2191616 . . [5.1.2600.5857] . . c:\windows\$hf_mig$\KB971486\SP3QFE\ntoskrnl.exe
[-] 2009-02-10 . D3453310FC92736E674FFDC6E3F455B7 . 2191488 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
[-] 2009-02-09 . 18D976FE984BDA3DAC8164B05D69205D . 2147840 . . [5.1.2600.5755] . . c:\windows\$NtUninstallKB971486$\ntoskrnl.exe
[-] 2008-08-14 . 59282EFE7147C011530E51FF92BA86AC . 2191488 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
[-] 2008-08-14 . 5961DD3AEC44962A76F0D8D895C172F1 . 2147840 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe
[-] 2008-04-14 . 354C9291513BCE4D0ED6B0C6A15470F8 . 2191360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntoskrnl.exe
[-] 2008-04-14 . 88077F757C6C793C33408D878B6E0F76 . 2147840 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe
[-] 2005-03-02 . EB5538A452E0E99169E2B6CDB62FF9D2 . 2181888 . . [5.1.2600.2622] . . c:\windows\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
[-] 2005-03-02 . F76176EB18B523CFBEF252308DAA9CA8 . 2138112 . . [5.1.2600.2622] . . c:\windows\$NtServicePackUninstall$\ntoskrnl.exe
[-] 2005-03-02 . 7189A2391ADC1F65C9AE87B0ABE0F945 . 2181632 . . [5.1.2600.2622] . . c:\windows\$NtUninstallKB890859$\ntoskrnl.exe
.
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . FE77A85495065F3AD59C5C65B6C54182 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-04 . 015F302C4CF961F20C3F98F3A7CA7917 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
.
[-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\w32time.dll
[-] 2008-04-14 . 7B353059E665F8B7AD2BBEAEF597CF45 . 177152 . . [5.1.2600.5512] . . c:\windows\system32\w32time.dll
[-] 2004-08-04 . C6D874CD2A5B83CD11CDEBD28A638584 . 176640 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\w32time.dll
.
[-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wiaservc.dll
[-] 2008-04-14 . BC2C5985611C5356B24AEB370953DED9 . 334336 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll
[-] 2004-08-04 . 7E751068ADA60FC77638622E86A7CD9E . 333824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wiaservc.dll
.
[-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\midimap.dll
[-] 2008-04-14 . 2CF969B9BF1EF069075DCDCE309FAAE1 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll
[-] 2004-08-04 . 32641AE4D340C1AC2D9B3A3BD71F5C47 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\midimap.dll
.
[-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\rasadhlp.dll
[-] 2008-04-14 . 469FED8597896DB77B49384BE90E2E0A . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll
[-] 2006-06-26 . 45F87F6E7AB4F79B5C719B78C289DB66 . 7680 . . [5.1.2600.2938] . . c:\windows\$hf_mig$\KB920683\SP2QFE\rasadhlp.dll
[-] 2006-06-26 . DC940E8932827D65180F6A71BD4BD878 . 8192 . . [5.1.2600.2938] . . c:\windows\$NtServicePackUninstall$\rasadhlp.dll
.
((((((((((((((((((((((((((((  Autostartpunkte der Registrierung  ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Akamai NetSession Interface"="c:\dokumente und einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe" [2012-05-26 4327744]
"WMPNSCFG"="c:\programme\Windows Media Player\WMPNSCFG.exe" [2009-02-04 204288]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Mouse Suite 98 Daemon"="ICO.EXE" [2008-06-27 53248]
"TVT Scheduler Proxy"="c:\programme\Gemeinsame Dateien\Lenovo\Scheduler\scheduler_proxy.exe" [2008-05-14 487424]
"cssauth"="c:\programme\Lenovo\Client Security Solution\cssauth.exe" [2008-06-13 3073336]
"Samsung LBP SM"="c:\windows\Samsung\LaserSMMgr\ssmmgr.exe" [2003-04-04 266240]
"Adobe ARM"="c:\programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"avgnt"="c:\programme\Avira\AntiVir Desktop\avgnt.exe" [2012-05-11 348624]
"RTHDCPL"="RTHDCPL.EXE" [2008-06-27 16875008]
"SunJavaUpdateSched"="c:\programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" [2012-01-18 254696]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [24.10.2011 19:41 36000]
R1 tvtumon;tvtumon;c:\windows\system32\drivers\tvtumon.sys [09.05.2008 06:50 46144]
R2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe -k Akamai [27.01.2006 03:01 14336]
R2 AntiVirSchedulerService;Avira Planer;c:\programme\Avira\AntiVir Desktop\sched.exe [24.10.2011 19:41 86224]
R2 AntiVirWebService;Avira Browser Schutz;c:\programme\Avira\AntiVir Desktop\avwebgrd.exe [24.10.2011 19:41 465360]
R2 TVT Backup Protection Service;TVT Backup Protection Service;c:\programme\Lenovo\Rescue and Recovery\rrpservice.exe [14.05.2008 17:25 520192]
R2 TVT_UpdateMonitor;TVT Windows Update Monitor;c:\programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe [09.05.2008 06:50 253952]
R2 USBDLM;USBDLM;c:\usbdlm\USBDLM.exe [19.10.2007 12:21 134656]
R3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\drivers\tvti2c.sys [22.02.2008 16:54 37312]
S2 SessionLauncher;SessionLauncher;c:\dokume~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe --> c:\dokume~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe [?]
S2 SSPORT;SSPORT;\??\c:\windows\system32\Drivers\SSPORT.sys --> c:\windows\system32\Drivers\SSPORT.sys [?]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [30.06.2012 16:52 250056]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\programme\Mozilla Maintenance Service\maintenanceservice.exe [01.05.2012 11:43 113120]
S3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe -k nosGetPlusHelper [27.01.2006 03:01 14336]
S3 RoxMediaDB10;RoxMediaDB10;c:\programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [25.04.2008 09:15 1120752]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
getPlusHelper        REG_MULTI_SZ          getPlusHelper
Akamai        REG_MULTI_SZ          Akamai
nosGetPlusHelper        REG_MULTI_SZ          nosGetPlusHelper
.
Inhalt des "geplante Tasks" Ordners
.
2012-07-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-30 15:05]
.
2012-07-22 c:\windows\Tasks\Auf Updates für Windows Live Toolbar prüfen.job
- c:\programme\Windows Live Toolbar\MSNTBUP.EXE [2007-02-12 14:54]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = <local>
IE: &Windows Live Search - c:\programme\Windows Live Toolbar\msntb.dll/search.htm
LSP: c:\programme\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\dokumente und einstellungen\User\Anwendungsdaten\Mozilla\Firefox\Profiles\rcaey5bp.default\
FF - prefs.js: browser.search.defaulturl -
FF - prefs.js: browser.search.selectedEngine -
FF - prefs.js: browser.startup.homepage - www.google.de
FF - user.js: yahoo.homepage.dontask - true
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
AddRemove-Microsoft Interactive Training - c:\windows\IsUn0407.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2012-07-23 20:44
Windows 5.1.2600 Service Pack 3 NTFS
.
Scanne versteckte Prozesse...
.
Scanne versteckte Autostarteinträge...
.
Scanne versteckte Dateien...
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Akamai]
"ServiceDll"="c:\programme\gemeinsame dateien\akamai/netsession_win_4f7fccd.dll"
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'winlogon.exe'(740)
c:\windows\system32\Ati2evxx.dll
.
- - - - - - - > 'lsass.exe'(796)
c:\programme\Avira\AntiVir Desktop\avsda.dll
.
Zeit der Fertigstellung: 2012-07-23  20:47:06
ComboFix-quarantined-files.txt  2012-07-23 18:47
.
Vor Suchlauf: 20 Verzeichnis(se), 280.288.948.224 Bytes frei
Nach Suchlauf: 23 Verzeichnis(se), 280.493.187.072 Bytes frei
.
WindowsXP-KB310994-SP2-Pro-BootDisk-DEU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - C2A2B38F561F0B93CF16A0A1F00F185B


cosinus 24.07.2012 15:16

Bitte nun Logs mit GMER und OSAM erstellen und posten.
GMER stürzt häufiger ab, wenn das Tool auch beim 2. Mal nicht will, lass es einfach weg und führ nur OSAM aus - die Online-Abfrage durch OSAM bitte überspringen.
Bei OSAM bitte darauf auch achten, dass Du das Log auch als *.log und nicht *.html oder so abspeicherst.

Hinweis: Zum Entpacken von OSAM bitte WinRAR oder 7zip verwenden! Stell auch unbedingt den Virenscanner ab, besonders der Scanner von McAfee meldet oft einen Fehalarm in OSAM!

Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten".
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. (Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS-Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte der Scan abbrechen und das Programm abstürzen, dann teile mir das mit und wähle unter AV Scan die Einstellung (none).



Noch ein Hinweis: Sollte aswMBR abstürzen und es kommt eine Meldung wie "aswMBR.exe funktioniert nicht mehr, dann mach Folgendes:
Starte aswMBR neu, wähle unten links im Drop-Down-Menü (unten links im Fenster von aswMBR) bei "AV scan" (none) aus und klick nochmal auf den Scan-Button.

strobl 24.07.2012 20:45

Ich habe mit gmer gescannt. log war zu lange und das forum wollte die antwort in so einer form nicht. ich sollte zippen.
7zipp habe heruntergeladen und nichts verstanden, wie es geht.

habe ich irgendwo in meinem PC gmer-text ?

auf meinem PC liegt 71tr1vxs.exe unter dem Symbol Gmer.

cosinus 24.07.2012 21:58

Ist Google bei dir defekt? :(
Anleitungen wie man zippt gibt es nun wirklich zuhauf im Netz
Rechtsklick auf das GMER-Log => senden an => ZIP komprimierter Ordner

strobl 25.07.2012 14:06

ich finde gmer-log nicht.

wie kann man ihn finden?

Danke!

cosinus 25.07.2012 14:37

Lass GMER erstmal weg, kümmer dich um die anderen Logs!

strobl 25.07.2012 15:32

es gibt auch andere seltsame Sachen.

ich hatte auf der Taskleiste einen Sprachsymbol "DE" und konnte zwischen Sprachen umschalten. Jetzt ist es weg. Ich bin nach der Microsoft-Hilfe gegangen. Dort kann man sowas über : Regions- und Sprachoptionen- Register"Sprachen" - Details - Einstellungen- unten im Fenster Abteilung Einstellungen- Eingabegebietsschema-Leiste (und das ist deaktiviert; aktiv ist nur Feld daneben "Tastatur").

Windows-Firewall kann ich wieder öffnen.Dort sind 2 Ausnahmen geblockt:

gewisse Akamai Netsession Interface und Remoteunterstützung.

diese Sprachumschaltung ist für meine Arbeit sehr wichtig.

Haben Sie Ideen ,woran es liegen kann?

Danke!

Hier ist OSAM-Log:

Code:

Report of OSAM: Autorun Manager v5.0.11926.0
hxxp://www.online-solutions.ru/en/
Saved at 16:57:29 on 25.07.2012

OS: Windows XP Professional Service Pack 3 (Build 2600)
Default Browser: Mozilla Corporation Firefox 14.0.1

Scanner Settings
[x] Rootkits detection (hidden registry)
[x] Rootkits detection (hidden files)
[x] Retrieve files information
[x] Check Microsoft signatures

Filters
[ ] Trusted entries
[ ] Empty entries
[x] Hidden registry entries (rootkit activity)
[x] Exclusively opened files
[x] Not found files
[x] Files without detailed information
[x] Existing files
[ ] Non-startable services
[ ] Non-startable drivers
[x] Active entries
[x] Disabled entries


[Boot Execute]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Session Manager )-----
"BootExecute" - "Microsoft Corporation" - C:\WINDOWS\system32\autochk.exe

[Common]
-----( %SystemRoot%\Tasks )-----
"Auf Updates für Windows Live Toolbar prüfen.job" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\MSNTBUP.EXE
"Adobe Flash Player Updater.job" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
-----( HKLM\SOFTWARE\Microsoft\Windows Scripting Host\Locations )-----
"CScript" - "Microsoft Corporation" - C:\WINDOWS\System32\cscript.exe
"WScript" - "Microsoft Corporation" - C:\WINDOWS\System32\wscript.exe

[Control Panel Objects]
-----( %SystemRoot%\system32 )-----
"access.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\access.cpl
"ALSNDMGR.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\ALSNDMGR.CPL
"appwiz.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
"bthprops.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\bthprops.cpl
"desk.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\desk.cpl
"firewall.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\firewall.cpl
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
"hdwwiz.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\hdwwiz.cpl
"inetcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\inetcpl.cpl
"infocardcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\infocardcpl.cpl
"intl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\intl.cpl
"irprops.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\irprops.cpl
"javacpl.cpl" - "Sun Microsystems, Inc." - C:\WINDOWS\system32\javacpl.cpl
"joy.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\joy.cpl
"main.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\main.cpl
"mmsys.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\mmsys.cpl
"ncpa.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\ncpa.cpl
"netsetup.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\netsetup.cpl
"nusrmgr.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\nusrmgr.cpl
"nwc.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\nwc.cpl
"odbccp32.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\odbccp32.cpl
"powercfg.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\powercfg.cpl
"RTSndMgr.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\RTSndMgr.CPL
"sysdm.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\sysdm.cpl
"telephon.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\telephon.cpl
"timedate.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\timedate.cpl
"wscui.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\wscui.cpl
"wuaucpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\wuaucpl.cpl
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )-----
"Avira AntiVir Personal - Free Antivirus " - "Avira Operations GmbH & Co. KG" - C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl
"Internet Connection Firewall" - "Microsoft Corporation" - C:\WINDOWS\system32\Firewall.cpl
"NetSetupWizard" - "Microsoft Corporation" - C:\WINDOWS\system32\NetSetup.cpl
"Speech" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Speech\sapi.cpl

[Drivers]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
"AFD" (AFD) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\afd.sys
"Asynchroner RAS -Medientreiber" (AsyncMac) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\asyncmac.sys
"ati2mtag" (ati2mtag) - "ATI Technologies Inc." - C:\WINDOWS\System32\DRIVERS\ati2mtag.sys
"Audiostubtreiber" (audstub) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\audstub.sys
"avgntflt" (avgntflt) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avgntflt.sys
"avipbb" (avipbb) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avipbb.sys
"avkmgr" (avkmgr) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avkmgr.sys
"Beep" (Beep) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Beep.sys
"Bereitstellungspunkt-Manager" (MountMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\MountMgr.sys
"catchme" (catchme) - ? - C:\DOKUME~1\User\LOKALE~1\Temp\catchme.sys  (File not found)
"CD-ROM-Laufwerktreiber" (Cdrom) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\cdrom.sys
"Cdaudio" (Cdaudio) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Cdaudio.sys
"Cdfs" (Cdfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Cdfs.sys
"Changer" (Changer) - ? - C:\WINDOWS\system32\drivers\Changer.sys  (File not found)
"Diskettencontrollertreiber" (Fdc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\fdc.sys
"Diskettenlaufwerktreiber" (Flpydisk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\flpydisk.sys
"DLABMFSM" (DLABMFSM) - "Roxio" - C:\WINDOWS\System32\DLA\DLABMFSM.SYS
"DLABOIOM" (DLABOIOM) - "Roxio" - C:\WINDOWS\System32\DLA\DLABOIOM.SYS
"DLACDBHM" (DLACDBHM) - "Roxio" - C:\WINDOWS\System32\Drivers\DLACDBHM.SYS
"DLADResM" (DLADResM) - "Roxio" - C:\WINDOWS\System32\DLA\DLADResM.SYS
"DLAIFS_M" (DLAIFS_M) - "Roxio" - C:\WINDOWS\System32\DLA\DLAIFS_M.SYS
"DLAOPIOM" (DLAOPIOM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAOPIOM.SYS
"DLAPoolM" (DLAPoolM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAPoolM.SYS
"DLARTL_M" (DLARTL_M) - "Roxio" - C:\WINDOWS\System32\Drivers\DLARTL_M.SYS
"DLAUDFAM" (DLAUDFAM) - "Roxio" - C:\WINDOWS\System32\DLA\DLAUDFAM.SYS
"DLAUDF_M" (DLAUDF_M) - "Roxio" - C:\WINDOWS\System32\DLA\DLAUDF_M.SYS
"dmload" (dmload) - "Microsoft Corp., Veritas Software." - C:\WINDOWS\System32\drivers\dmload.sys
"DRVMCDB" (DRVMCDB) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\DRVMCDB.SYS
"DRVNDDM" (DRVNDDM) - "Roxio" - C:\WINDOWS\System32\Drivers\DRVNDDM.SYS
"Filtertreiber für CD-Brennen" (Imapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\imapi.sys
"Filtertreiber für digitale CD-Audiowiedergabe" (redbook) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\redbook.sys
"Filtertreiber für IP-Verkehr" (IpFilterDriver) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys
"Filtertreiber für IPX-Verkehr" (NwlnkFlt) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\nwlnkflt.sys
"Filtertreiber für Systemwiederherstellung" (sr) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\sr.sys
"Fips" (Fips) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Fips.sys
"FltMgr" (FltMgr) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\fltmgr.sys
"Fs_Rec" (Fs_Rec) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Fs_Rec.sys
"G400" (G400) - "Matrox Graphics Inc." - C:\WINDOWS\System32\DRIVERS\G400m.sys
"HTTP" (HTTP) - "Microsoft Corporation" - C:\WINDOWS\System32\Drivers\HTTP.sys
"i2omgmt" (i2omgmt) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\i2omgmt.sys
"i8042-Tastatur- und PS/2-Mausanschluss-Treiber" (i8042prt) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\i8042prt.sys
"Intel(r) 82801 Audiotreiber-Installationsdienst (WDM)" (ac97intc) - "Intel Corporation" - C:\WINDOWS\System32\drivers\ac97intc.sys
"Intel(R) PRO-Adaptertreiber" (E100B) - "Intel Corporation" - C:\WINDOWS\System32\DRIVERS\e100b325.sys
"IP/IP-Tunneltreiber" (IpInIp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipinip.sys
"IPSEC-Treiber" (IPSec) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipsec.sys
"IPv6-Windows-Firewalltreiber" (Ip6Fw) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\ip6fw.sys
"IR-Enumeratordienst" (IRENUM) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\irenum.sys
"KSecDD" (KSecDD) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\KSecDD.sys
"Laufwerktreiber" (Disk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\disk.sys
"lbrtfdc" (lbrtfdc) - ? - C:\WINDOWS\system32\drivers\lbrtfdc.sys  (File not found)
"Lenovo Parties Service Access Device Driver" (psadd) - "Lenovo (United States) Inc." - C:\WINDOWS\System32\DRIVERS\psadd.sys
"Lenovo SM bus driver" (TVTI2C) - "Lenovo (United States) Inc." - C:\WINDOWS\System32\DRIVERS\Tvti2c.sys
"Maus-HID-Treiber" (mouhid) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mouhid.sys
"Mausklassentreiber" (Mouclass) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mouclass.sys
"Microcode Updatetreiber" (Update) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\update.sys
"Microsoft ACPI-Treiber" (ACPI) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ACPI.sys
"Microsoft HID Class-Treiber" (HidUsb) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\hidusb.sys
"Microsoft Kernel GS Wavetablesynthesizer" (swmidi) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\swmidi.sys
"Microsoft Kernel-Audiosplitter" (splitter) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\splitter.sys
"Microsoft Kernel-DLS-Synthesizer" (DMusic) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\DMusic.sys
"Microsoft Kernel-DRM-Audioentschlüsselung" (drmkaud) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\drmkaud.sys
"Microsoft Kernel-Echounterdrückung" (aec) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\aec.sys
"Microsoft Kernel-Systemaudiogerät" (sysaudio) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\sysaudio.sys
"Microsoft Kernel-Waveaudiomixer" (kmixer) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\kmixer.sys
"Microsoft Proxy für Streaming Clock" (MSPCLOCK) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSPCLOCK.sys
"Microsoft Proxy für Streaming Quality Manager" (MSPQM) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSPQM.sys
"Microsoft Streaming Service Proxy" (MSKSSRV) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\MSKSSRV.sys
"Microsoft UAA-Bustreiber für High Definition Audio" (HDAudBus) - "Windows (R) Server 2003 DDK provider" - C:\WINDOWS\System32\DRIVERS\HDAudBus.sys
"Microsoft USB-Druckerklasse" (usbprint) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbprint.sys
"Microsoft-Systemverwaltungs-BIOS-Treiber" (mssmbios) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mssmbios.sys
"Miniporttreiber für erweiterten Microsoft USB 2.0-Hostcontroller" (usbehci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbehci.sys
"Miniporttreiber für Microsoft USB Open Host-Controller" (usbohci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbohci.sys
"Miniporttreiber für universellen Microsoft USB-Hostcontroller" (usbuhci) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbuhci.sys
"mnmdd" (mnmdd) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\mnmdd.sys
"Modem" (Modem) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Modem.sys
"Mouse Suite Driver" (pelmouse) - "Primax Electronics Ltd." - C:\WINDOWS\System32\DRIVERS\pelmouse.sys
"MRXSMB" (MRxSmb) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mrxsmb.sys
"Msfs" (Msfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Msfs.sys
"Mup" (Mup) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Mup.sys
"NDIS-Benutzermodus-E/A-Protokoll" (Ndisuio) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndisuio.sys
"NDIS-Systemtreiber" (NDIS) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\NDIS.sys
"NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller" (yukonwxp) - "Marvell" - C:\WINDOWS\System32\DRIVERS\yk51x86.sys
"NDProxy" (NDProxy) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\NDProxy.sys
"NetBios über TCP/IP" (NetBT) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\netbt.sys
"NetBIOS-Schnittstelle" (NetBIOS) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\netbios.sys
"Npfs" (Npfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Npfs.sys
"Ntfs" (Ntfs) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Ntfs.sys
"Null" (Null) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Null.sys
"nv" (nv) - "NVIDIA Corporation" - C:\WINDOWS\System32\DRIVERS\nv4_mini.sys
"Parallelanschluss (direkt)" (Raspti) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspti.sys
"Partitions-Manager" (PartMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\PartMgr.sys
"PCI-Bus-Treiber" (PCI) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\pci.sys
"PCIDump" (PCIDump) - ? - C:\WINDOWS\system32\drivers\PCIDump.sys  (File not found)
"PCIIde" (PCIIde) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\pciide.sys
"PDCOMP" (PDCOMP) - ? - C:\WINDOWS\system32\drivers\PDCOMP.sys  (File not found)
"PDFRAME" (PDFRAME) - ? - C:\WINDOWS\system32\drivers\PDFRAME.sys  (File not found)
"PDRELI" (PDRELI) - ? - C:\WINDOWS\system32\drivers\PDRELI.sys  (File not found)
"PDRFRAME" (PDRFRAME) - ? - C:\WINDOWS\system32\drivers\PDRFRAME.sys  (File not found)
"pmem" (pmem) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\pmemnt.sys
"PnP-ISA/EISA-Bus-Treiber" (isapnp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\isapnp.sys
"Protokoll für ATM ARP-Client" (Atmarpc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\atmarpc.sys
"Prozessortreiber" (Processor) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\processr.sys
"PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\PxHelp20.sys
"QoS-Paketplaner" (PSched) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\psched.sys
"RAS-IP-ARP-Treiber" (Wanarp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\wanarp.sys
"RAS-NDIS-TAPI-Treiber" (NdisTapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndistapi.sys
"RAS-NDIS-WAN-Treiber" (NdisWan) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ndiswan.sys
"Rdbss" (Rdbss) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rdbss.sys
"RDPCDD" (RDPCDD) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\RDPCDD.sys
"RDPWD" (RDPWD) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\RDPWD.sys
"Redirector für WebDav-Client" (MRxDAV) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\mrxdav.sys
"Remotezugriff-PPPOE-Treiber" (RasPppoe) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspppoe.sys
"Secdrv" (Secdrv) - "Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K." - C:\WINDOWS\System32\DRIVERS\secdrv.sys
"Serenum-Filtertreiber" (serenum) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\serenum.sys
"Service for Realtek HD Audio (WDM)" (IntcAzAudAddService) - "Realtek Semiconductor Corp." - C:\WINDOWS\System32\drivers\RtkHDAud.sys
"Sfloppy" (Sfloppy) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\Sfloppy.sys
"Software-Bus-Treiber" (swenum) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\swenum.sys
"Srv" (Srv) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\srv.sys
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\ssmdrv.sys
"SSPORT" (SSPORT) - ? - C:\WINDOWS\system32\Drivers\SSPORT.sys  (File not found)
"Standard-IDE/ESDI-Festplattencontroller" (atapi) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\atapi.sys
"Standardpaketklassifizierung" (Gpc) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\msgpc.sys
"Tastaturklassentreiber" (Kbdclass) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\kbdclass.sys
"TCP/IP-Protokolltreiber" (Tcpip) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\tcpip.sys
"TDPIPE" (TDPIPE) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\TDPIPE.sys
"TDTCP" (TDTCP) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\TDTCP.sys
"Team MFP Comm Driver" (DgiVecp) - "DeviceGuys, Inc." - C:\WINDOWS\System32\Drivers\DgiVecp.sys
"Terminal-Gerätetreiber" (TermDD) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\termdd.sys
"Treiber für automatische RAS-Verbindung" (RasAcd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rasacd.sys
"Treiber für die Verwaltung logischer Datenträger" (dmio) - "Microsoft Corp., Veritas Software" - C:\WINDOWS\System32\drivers\dmio.sys
"Treiber für direkte Parallelverbindung" (Ptilink) - "Parallel Technologies, Inc." - C:\WINDOWS\System32\DRIVERS\ptilink.sys
"Treiber für IPX-Verkehrsweiterleitung" (NwlnkFwd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\nwlnkfwd.sys
"Treiber für Microsoft WINMM-WDM-Audiokompatibilität" (wdmaud) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\wdmaud.sys
"Treiber für parallelen Anschluss" (Parport) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\parport.sys
"Treiber für seriellen Anschluss" (Serial) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\serial.sys
"Treiber für Terminalserver-Geräteumleitung" (rdpdr) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rdpdr.sys
"Treiber für Volume-Manager" (Ftdisk) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ftdisk.sys
"tvtfilter" (tvtfilter) - "Lenovo" - C:\WINDOWS\System32\DRIVERS\tvtfilter.sys
"tvtumon" (tvtumon) - "Lenovo" - C:\WINDOWS\System32\DRIVERS\tvtumon.sys
"USB Mouse Low Filter Driver" (pelusblf) - "Primax Electronics Ltd." - C:\WINDOWS\System32\DRIVERS\pelusblf.sys
"USB-Massenspeichertreiber" (USBSTOR) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS
"USB-Scannertreiber" (usbscan) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbscan.sys
"USB2-aktivierter Hub" (usbhub) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\usbhub.sys
"VGA-Anzeigecontroller." (VgaSave) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\vga.sys
"VolSnap" (VolSnap) - "Microsoft Corporation" - C:\WINDOWS\system32\drivers\VolSnap.sys
"WAN-Miniport (L2TP)" (Rasl2tp) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\rasl2tp.sys
"WAN-Miniport (PPTP)" (PptpMiniport) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\raspptp.sys
"WDICA" (WDICA) - ? - C:\WINDOWS\system32\drivers\WDICA.sys  (File not found)
"Winbond Trusted Platform Module" (TPM) - "Winbond Electronics Corp." - C:\WINDOWS\System32\DRIVERS\tpm.sys
"Windows Driver Foundation - User-mode Driver Framework Platform Driver" (WudfPf) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\WudfPf.sys
"Windows Driver Foundation - User-mode Driver Framework Reflector" (WudfRd) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\wudfrd.sys
"Windows Socket 2.0 Non-IFS Service Provider Support Environment" (WS2IFSL) - "Microsoft Corporation" - C:\WINDOWS\System32\drivers\ws2ifsl.sys
"Übersetzer für IP-Netzwerkadressen" (IpNat) - "Microsoft Corporation" - C:\WINDOWS\System32\DRIVERS\ipnat.sys

[Explorer]
-----( HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{BDEADF00-C265-11d0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL
-----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )-----
{7790769C-0471-11d2-AF11-00C04FA35D02} "Adressbuch 6" - "Microsoft Corporation" - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
>{60B49E34-C7CC-11D0-8953-00A0C90347FF} "Browser Customizations" - "Microsoft Corporation" - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS "Browseranpassungen" - "Microsoft Corporation" - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} "IE7 Uninstall Stub" - "Microsoft Corporation" - C:\WINDOWS\system32\ieudinit.exe
>{26923b43-4d38-484f-9b9e-de460746276c} "Internet Explorer" - "Microsoft Corporation" - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE
{89820200-ECBD-11cf-8B85-00AA005B4383} "Internet Explorer" - "Microsoft Corporation" - C:\WINDOWS\system32\ie4uinit.exe -BaseSettings
{44BBA840-CC51-11CF-AAFA-00AA00B6015C} "Microsoft Outlook Express 6" - "Microsoft Corporation" - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
>{22d6f312-b0f6-11d0-94ab-0080c74c7e95} "Microsoft Windows Media Player" - "Microsoft Corporation" - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
{6BF52A52-394A-11d3-B153-00C04F79FAA6} "Microsoft Windows Media Player" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub
{44BBA842-CC51-11CF-AAFA-00AA00B6015B} "NetMeeting 3.01" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
>{881dd1c5-3dcf-431b-b061-f3f88e8be88a} "Outlook Express" - "Microsoft Corporation" - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE
{89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" - "Microsoft Corporation" - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install
{2C7339CF-2B09-4501-B3F3-F3508C9228ED} "Themes Setup" - "Microsoft Corporation" - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
{89820200-ECBD-11cf-8B85-00AA005B4340} "Windows Desktop-Update" - "Microsoft Corporation" - regsvr32.exe /s /n /i:U shell32.dll
{5945c046-1e7d-11d1-bc44-00c04fd912be} "Windows Messenger 4.7" - "Microsoft Corporation" - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )-----
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.dll
{0D2E74C4-3C34-11d2-A27E-00C04FC30871} "{0D2E74C4-3C34-11d2-A27E-00C04FC30871}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{24F14F01-7B1C-11d1-838f-0000F80461CF} "{24F14F01-7B1C-11d1-838f-0000F80461CF}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{24F14F02-7B1C-11d1-838f-0000F80461CF} "{24F14F02-7B1C-11d1-838f-0000F80461CF}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{66742402-F9B9-11D1-A202-0000F81FEDEE} "{66742402-F9B9-11D1-A202-0000F81FEDEE}" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
-----( HKLM\Software\Classes\Protocols\Filter )-----
{32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} "AP Class Install Handler filter" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{8f6b0360-b80d-11d0-a9b3-006097942311} "AP encoding/decoding Filters" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll
{733AC4CB-F1A4-11d0-B951-00A0C90312E1} "WebView MIME Filter" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
-----( HKLM\Software\Classes\Protocols\Handler )-----
{3dd53d40-7b8b-11D0-b013-00aa0059ce02} "CDL: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{12D51199-0DB5-46FE-A120-47A3D7D937CC} "DVD: Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\msvidctl.dll
{79eac9e7-baf9-11ce-8c82-00aa004ba90b} "file:, local: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e7-baf9-11ce-8c82-00aa004ba90b} "file:, local: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e3-baf9-11ce-8c82-00aa004ba90b} "ftp: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e4-baf9-11ce-8c82-00aa004ba90b} "gopher: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e2-baf9-11ce-8c82-00aa004ba90b} "http: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{79eac9e5-baf9-11ce-8c82-00aa004ba90b} "https: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{05300401-BCBC-11d0-85E3-00C04FD85AB4} "MHTML Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\inetcomm.dll
{3050F406-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML About Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Javascript Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Javascript Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Mailto Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} "Microsoft HTML Resource Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{76E67A63-06E9-11D2-A840-006008059382} "Microsoft HTML Resource Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\mshtml.dll
{9D148291-B9C8-11D0-A4CC-0000F80149F6} "Microsoft InfoTech Protocols for IE 4.0" - "Microsoft Corporation" - C:\WINDOWS\system32\itss.dll
{9D148291-B9C8-11D0-A4CC-0000F80149F6} "Microsoft InfoTech Protocols for IE 4.0" - "Microsoft Corporation" - C:\WINDOWS\system32\itss.dll
{79eac9e6-baf9-11ce-8c82-00aa004ba90b} "mk: Asychronous Pluggable Protocol Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
{CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} "TV: Pluggable Protocol" - "Microsoft Corporation" - C:\WINDOWS\system32\msvidctl.dll
{13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} "WiaProtocol Class" - "Microsoft Corporation" - C:\WINDOWS\system32\wiascr.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler )-----
{438755C2-A8BA-11D1-B96B-00A0C90312E1} "Browseui preloader" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{8C7461EF-2B13-11d2-BE35-3078302C2030} "Component Categories cache daemon" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks )-----
{AEB6717E-7E19-11d0-97EE-00C04FD91972} "URL Exec Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )-----
{01E04581-4EEE-11d0-BFE9-00AA005B4383} "&Adresse" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{F2CF5485-4E02-4f68-819C-B92DE9277049} "&Links" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{32714800-2E5F-11d0-8B85-00AA0044F941} "&Nach Personen..." - "Microsoft Corporation" - C:\Programme\Outlook Express\wabfind.dll
{23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" - "Igor Pavlov" - C:\Dokumente und Einstellungen\User\Desktop\7-Zip\7-zip.dll
{7e653215-fa25-46bd-a339-34a2790f3cb7} "Accessible" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{88C6C381-2E85-11D0-94DE-444553540000} "ActiveX Cache Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\occache.dll
{A08C11D2-A228-11d0-825B-00AA005B4383} "Address EditBox" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{85BBD920-42A0-1069-A2E4-08002B30309D} "Aktenkoffer" - "Microsoft Corporation" - C:\WINDOWS\system32\syncui.dll
{875CB1A1-0F29-45de-A1AE-CFB4950D0B78} "Audio Media Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{91EA3F8B-C99B-11d0-9815-00C04FD91972} "Augmented Shell Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{6413BA2C-B461-11d1-A18A-080036B11A03} "Augmented Shell Folder 2" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} "Ausführen..." - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{5F327514-6C5E-4d60-8F16-D07FA08A78ED} "Auto Update Property Sheet Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\wuaucpl.cpl
{00E7B358-F65B-4dcf-83DF-CD026B94BFD4} "Automatische Diashowwiedergabe der Shell" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{87D62D94-71B3-4b9a-9489-5FE6850DC73E} "Avi Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{F61FFEC1-754F-11d0-80CA-00AA005B4383} "BandProxy" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{7A9D77BD-5403-11d2-8785-2E0420524153} "Benutzerkonten" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{add36aa8-751a-4579-a266-d66f5202ccbb} "Bestellung von Abzügen über das Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{67EA19A0-CCEF-11d0-8024-00C04FD75D13} "CDF Extension Copy Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{7D559C10-9FE9-11d0-93F7-00AA0059CE02} "Code Download Agent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{BD472F60-27FA-11cf-B8B4-444553540000} "Compressed (zipped) Folder Right Drag Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll
{888DCA60-FC0A-11CF-8F0F-00C04FD7D062} "Compressed (zipped) Folder SendTo Target" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll
{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} "CompressedFolder" - "Microsoft Corporation" - C:\WINDOWS\system32\zipfldr.dll
{E6CC6978-6B6E-11D0-BECA-00C04FD940BE} "ConnectionAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{42071714-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Anzeigeverschiebung" - ? -  (File not found | COM-object registry key not found)
{42071713-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Bildschirme" - "Microsoft Corporation" - C:\WINDOWS\system32\deskmon.dll
{42071712-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Grafikkarten" - "Microsoft Corporation" - C:\WINDOWS\system32\deskadp.dll
{7444C717-39BF-11D1-8CD9-00C04FC29D45} "CryptPKO Class" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptext.dll
{7444C719-39BF-11D1-8CD9-00C04FC29D45} "CryptSig Class" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptext.dll
{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A} "Custom MRU AutoCompleted List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{CFCCC7A0-A282-11D1-9082-006008059382} "Darwin App Publisher" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6} "DfsShell Class" - "Microsoft Corporation" - C:\WINDOWS\system32\dfsshlex.dll
{62AE1F9A-126A-11D0-A14B-0800361B1103} "Directory Context Menu Verbs" - "Microsoft Corporation" - C:\WINDOWS\system32\dsuiext.dll
{163FDC20-2ABC-11d0-88F0-00A024AB2DBB} "Directory Object Find" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{0D45D530-764B-11d0-A1CA-00AA00C16E65} "Directory Property UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dsuiext.dll
{8A23E65E-31C2-11d0-891C-00A024AB2DBB} "Directory Query UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{F020E586-5264-11d1-A532-0000F8757D7E} "Directory Start/Search Find" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{f92e8c40-3d33-11d2-b1aa-080036a75b03} "Display TroubleShoot CPL Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\deskperf.dll
{22BF0C20-6DA7-11D0-B373-00A0C9034938} "Download Status" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{60fd46de-f830-4894-a628-6fa81bc0190d} "Drop-Zielobjekt für den Fotodruck-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\photowiz.dll
{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} "E-Mail" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{00022613-0000-0000-C000-000000000046} "Eigenschaften für Multimediadatei" - "Microsoft Corporation" - C:\WINDOWS\system32\mmsys.cpl
{1F2E5C40-9550-11CE-99D2-00AA006E086C} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\rshx32.dll
{4E40F770-369C-11d0-8922-00A024AB2DBB} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\dssec.dll
{F37C5810-4D3F-11d0-B4BF-00AA00BBB723} "Erweiterung der Sicherheitsshell" - "Microsoft Corporation" - C:\WINDOWS\system32\rshx32.dll
{59099400-57FF-11CE-BD94-0020AF85B590} "Erweiterung für Datenträgerkopien" - "Microsoft Corporation" - C:\WINDOWS\system32\diskcopy.dll
{EFA24E64-B078-11d0-89E4-00C04FC9E26E} "Explorer-Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{692F0339-CBAA-47e6-B5B5-3B84DB604E87} "Extensions Manager Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\extmgr.dll
{7A80E4A8-8005-11D2-BCF8-00C04F72C717} "ExtractIcon Class" - "Microsoft Corporation" - C:\WINDOWS\System32\mmcshext.dll
{EFA24E61-B078-11d0-89E4-00C04FC9E26E} "Favorites Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" - "Microsoft Corporation" - c:\WINDOWS\system32\mscoree.dll
{3F30C968-480A-4C6C-862D-EFC0897BB84B} "GDI+ Dateiminiaturansicht-Extrahierungsprogramm" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{D6277990-4C6A-11CF-8D87-00AA0060F5BF} "Geplante Tasks" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll
{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} "Global Folder Settings" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{2559a1f1-21d7-11d4-bdaf-00c04f60b9f0} "Hilfe und Support" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{FF393560-C2A7-11CF-BFF4-444553540000} "History" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{EFA24E62-B078-11d0-89E4-00C04FC9E26E} "History Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{EAB841A0-9550-11cf-8C16-00805F1408F3} "HTML-Extrahierungsprogramm" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{88895560-9AA2-1069-930E-00AA0030EBC8} "HyperTerminal Icon Ext" - "Hilgraeve, Inc." - C:\WINDOWS\system32\hticons.dll
{DBCE2480-C732-101B-BE72-BA78E9AD5B27} "ICC-Profil" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll
{675F097E-4C4D-11D0-B6C1-0800091AA605} "ICM-Druckerverwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll
{5DB2625A-54DF-11D0-B6C4-0800091AA605} "ICM-Monitorverwaltung" - "Microsoft Corporation" - C:\WINDOWS\System32\icmui.dll
{176d6597-26d3-11d1-b350-080036a75b03} "ICM-Scannerverwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\icmui.dll
{3028902F-6374-48b2-8DC6-9725E775B926} "IE AutoComplete" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{73CFD649-CD48-4fd8-A272-2070EA56526B} "IE BandProxy" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{FDE7673D-2E19-4145-8376-BBD58C4BC7BA} "IE Custom MRU AutoCompleted List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{1C1EDB47-CE22-4bbb-B608-77B48F83C823} "IE Fade Task" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{6CF48EF8-44CD-45d2-8832-A16EA016311B} "IE IShellFolderBand" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{4B78D326-D922-44f9-AF2A-07805C2A3560} "IE Menu Band" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{205D7A97-F16D-4691-86EF-F3075DCCA57D} "IE Menu Desk Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{44C76ECD-F7FA-411c-9929-1B77BA77F524} "IE Menu Site" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{07C45BB1-4A8C-4642-A1F5-237E7215FF66} "IE Microsoft BrowserBand" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{6038EF75-ABFC-4e59-AB6F-12D397F6568D} "IE Microsoft History AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{B31C5FAE-961F-415b-BAF0-E697A5178B94} "IE Microsoft Multiple AutoComplete List Container" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{9D958C62-3954-4b44-8FAB-C4670C1DB4C2} "IE Microsoft Shell Folder AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8} "IE MRU AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{43886CD5-6529-41c4-A707-7B3C92C05E68} "IE Navigation Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{F83DAC1C-9BB9-4f2b-B619-09819DA81B0E} "IE Registry Tree Options Utility" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{9A096BB5-9DC3-4D1C-8526-C3CBF991EA4E} "IE RSS Feeds Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{30D02401-6A81-11d0-8274-00C04FD5AE38} "IE Search Band" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{E6EE9AAC-F76B-4947-8260-A9F136138E11} "IE Shell Band Site Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A} "IE Shell Rebar BandSite" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{6B4ECC4F-16D1-4474-94AB-5A763F2A54AE} "IE Tracking Shell Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{A2B0DD40-CC59-11d0-A3A5-00C04FD706EC} "IE4 Suite-Begrüßungsbildschirm" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{169A0691-8DF9-11d1-A1C4-00C04FD75D13} "In-pane search" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{0B124F8F-91F0-11D1-B8B5-006008059382} "Installed Apps Enumerator" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
{2559a1f4-21d7-11d4-bdaf-00c04f60b9f0} "Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{871C5380-42A0-1069-A2EA-08002B30309D} "Internet Name Space" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{FBF23B40-E3F0-101B-8488-00AA003E56F8} "Internet Shortcut" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{131A6951-7F78-11D0-A979-00C04FD705A2} "ISFBand OC" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{0CD7A5C0-9F37-11CE-AE65-08002B2E1262} "Kabinettdatei" - "Microsoft Corporation" - C:\WINDOWS\system32\cabview.dll
{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} "Kompatibilitätsseite" - "Microsoft Corporation" - C:\WINDOWS\system32\SlayerXP.dll
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Kontextmenü für die Verschlüsselung" - ? -  (File not found | COM-object registry key not found)
{143A62C8-C33B-11D1-84FE-00C04FA34A14} "Microsoft Agent Character Property Sheet Handler" - "Microsoft Corporation" - C:\WINDOWS\msagent\agentpsh.dll
{A5E46E3A-8849-11D1-9D8C-00C04FC99D61} "Microsoft Browser Architecture" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{BC476F4C-D9D7-4100-8D4E-E043F6DEC409} "Microsoft Browser Architecture" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{7BA4C742-9E81-11CF-99D3-00AA004AE837} "Microsoft BrowserBand" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{7988B573-EC89-11cf-9C00-00AA00A14F56} "Microsoft Disk Quota UI" - "Microsoft Corporation" - C:\WINDOWS\system32\dskquoui.dll
{6A205B57-2567-4A2C-B881-F787FAB579A3} "Microsoft DocProp Inplace Calendar Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{0EEA25CC-4362-4A12-850B-86EE61B0D3EB} "Microsoft DocProp Inplace Droplist Combo Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{A9CF0EAE-901A-4739-A481-E35B73E47F6D} "Microsoft DocProp Inplace Edit Box Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{8EE97210-FD1F-4B19-91DA-67914005F020} "Microsoft DocProp Inplace ML Edit Box Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{28F8A4AC-BBB3-4D9B-B177-82BFC914FA33} "Microsoft DocProp Inplace Time Control" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{883373C3-BF89-11D1-BE35-080036B11A03} "Microsoft DocProp Shell Ext" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop2.dll
{63da6ec0-2e98-11cf-8d82-444553540000} "Microsoft FTP Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\msieftp.dll
{00BB2764-6A77-11D0-A535-00C04FD7D062} "Microsoft History AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{5E6AB780-7743-11CF-A12B-00AA004AE837} "Microsoft Internet Toolbar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{00BB2765-6A77-11D0-A535-00C04FD7D062} "Microsoft Multiple AutoComplete List Container" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{2206CDB2-19C1-11D1-89E0-00C04FD7A829} "Microsoft OLE DB Service Component Data Links" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\System\Ole DB\oledb32.dll
{03C036F1-A186-11D0-824A-00AA005B4383} "Microsoft Shell Folder AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{3C374A40-BAE4-11CF-BF7D-00AA006946EE} "Microsoft Url History Service" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{CFBFAE00-17A6-11D0-99CB-00C04FD64497} "Microsoft Url Search Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{A6FD9E45-6E44-43f9-8644-08598F5A74D9} "Midi Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{6756A641-DE71-11d0-831B-00AA005B4383} "MRU AutoComplete List" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{ECF03A33-103D-11d2-854D-006008059367} "MyDocs Copy Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{ECF03A32-103D-11d2-854D-006008059367} "MyDocs Drop Target" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{4a7ded0a-ad25-11d0-98a8-0800361b1103} "MyDocs menu and properties" - "Microsoft Corporation" - C:\WINDOWS\system32\mydocs.dll
{7007ACC7-3202-11D1-AAD2-00805FC1270E} "Netzwerkverbindungen" - "Microsoft Corporation" - C:\WINDOWS\system32\NETSHELL.dll
{992CFFA0-F557-101A-88EC-00DD010CCC48} "Netzwerkverbindungen" - "Microsoft Corporation" - C:\WINDOWS\system32\NETSHELL.dll
{10CFC467-4392-11d2-8DB4-00C04FA31A66} "Offline Files Folder Options" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{750fdf0e-2a26-11d1-a3ea-080036587f03} "Offline Files Menu" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{3EA48300-8CF6-101B-84FB-666CCB9BCD32} "OLE-Eigenschaftenseite für Dokumente" - "Microsoft Corporation" - C:\WINDOWS\system32\docprop.dll
{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} "Ordner 'Offlinedateien'" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{58f1f272-9240-4f51-b6d4-fd63d1618591} "Passport-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{41E300E0-78B6-11ce-849B-444553540000} "PlusPack CPL-Erweiterung" - "Microsoft Corporation" - C:\WINDOWS\system32\themeui.dll
{35786D3C-B075-49b9-88DD-029876E11C01} "Portable Devices" - "Microsoft Corporation" - C:\WINDOWS\system32\wpdshext.dll
{D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} "Portable Devices Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\wpdshext.dll
{640167b4-59b0-47a6-b335-a6b3c0695aea} "Portable Media Devices" - "Microsoft Corporation" - C:\WINDOWS\system32\Audiodev.dll
{D8BD2030-6FC9-11D0-864F-00AA006809D9} "PostAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{9DB7A13C-F208-4981-8353-73CC61AE2783} "Previous Versions" - "Microsoft Corporation" - C:\WINDOWS\system32\twext.dll
{596AB062-B4D2-4215-9F74-E9109B0A8153} "Previous Versions Property Page" - "Microsoft Corporation" - C:\WINDOWS\system32\twext.dll
{AF4F6510-F982-11d0-8595-00AA004CD6D8} "Registry Tree Options Utility" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{F0152790-D56E-4445-850E-4F3117DB740C} "Remote Sessions CPL Extension" - "Microsoft Corporation" - C:\WINDOWS\system32\remotepg.dll
{5E44E225-A408-11CF-B581-008029601108} "Roxio DragToDisc Shell Extension" - "Roxio" - C:\Programme\Lenovo\Drag-to-Disc\Shellex.dll
{3F953603-1008-4f6e-A73A-04AAC7A992F1} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{83bbcbf3-b28a-4919-a5aa-73027445d672} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{905667aa-acd6-11d2-8080-00805f6596d2} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{E211B736-43FD-11D1-9EFB-0000F8757FCD} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} "Scanner und Kameras" - "Microsoft Corporation" - C:\WINDOWS\system32\wiashext.dll
{DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} "Scheduling UI icon handler" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll
{797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} "Scheduling UI property sheet handler" - "Microsoft Corporation" - C:\WINDOWS\system32\mstask.dll
{BD84B380-8CA2-1069-AB1D-08000948F534} "Schriftarten" - "Microsoft Corporation" - C:\WINDOWS\system32\fontext.dll
{D20EA4E1-3957-11d2-A40B-0C5020524152} "Schriftarten" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{9461b922-3c5a-11d2-bf8b-00c04fb93661} "Search Assistant OC" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} "Sendmail service" - "Microsoft Corporation" - C:\WINDOWS\system32\sendmail.dll
{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} "Sendmail service" - "Microsoft Corporation" - C:\WINDOWS\system32\sendmail.dll
{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} "Set Program Access and Defaults" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{352EC2B7-8B9A-11D1-B8AE-006008059382} "Shell Application Manager" - "Microsoft Corporation" - C:\WINDOWS\system32\appwiz.cpl
{0A89A860-D7B1-11CE-8350-444553540000} "Shell Automation Inproc Service" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{ECD4FC4E-521C-11D0-B792-00A0C90312E1} "Shell Band Site Menu" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{ECD4FC4C-521C-11D0-B792-00A0C90312E1} "Shell DeskBar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{3CCF8A41-5C85-11d0-9796-00AA00B90ADF} "Shell DeskBarApp" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{E7E4BC40-E76A-11CE-A9BB-00AA004AE837} "Shell DocObject Viewer" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\shlext.dll
{60254CA5-953B-11CF-8C96-00AA00B8708C} "Shell Extension For Windows Script Host" - "Microsoft Corporation" - C:\WINDOWS\system32\wshext.dll
{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll
{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} "Shell Image Data Factory" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{eb9b1153-3b57-4e68-959a-a3266bc3d7fe} "Shell Image Property Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{e84fda7c-1d6a-45f6-b725-cb260c236066} "Shell Image Verbs" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
{00BB2763-6A77-11D0-A535-00C04FD7D062} "Shell Microsoft AutoComplete" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{9E51E0D0-6E0F-11d2-9601-00C04FA31A86} "Shell properties for a DS object" - "Microsoft Corporation" - C:\WINDOWS\system32\dsquery.dll
{ECD4FC4D-521C-11D0-B792-00A0C90312E1} "Shell Rebar BandSite" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{21569614-B795-46b1-85F4-E737A8DC09AD} "Shell Search Band" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{56117100-C0CD-101B-81E2-00AA004AE837} "Shell-Datenauszughandler" - "Microsoft Corporation" - C:\WINDOWS\system32\shscrap.dll
{77597368-7b15-11d0-a0c2-080036af3f03} "Shellerweiterung für Webdrucker" - "Microsoft Corporation" - C:\WINDOWS\system32\printui.dll
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shellerweiterungen für die Dateikomprimierung" - ? -  (File not found | COM-object registry key not found)
{40dd6e20-7c17-11ce-a804-00aa003ca9f6} "Shellerweiterungen für Freigaben" - "Microsoft Corporation" - C:\WINDOWS\system32\ntshrui.dll
{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} "Shellerweiterungen für Freigaben" - "Microsoft Corporation" - C:\WINDOWS\system32\ntshrui.dll
{59be4990-f85c-11ce-aff7-00aa003ca9f6} "Shellerweiterungen für Microsoft Windows-Netzwerkobjekte" - "Microsoft Corporation" - C:\WINDOWS\system32\ntlanui2.dll
{e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll
{6b33163c-76a5-4b6c-bf21-45de9cd503a1} "Shellobjekt des Webpublishing-Assistenten" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{F5175861-2688-11d0-9C5E-00AA00A45957} "Subscription Folder" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{ABBE31D0-6DAE-11D0-BECA-00C04FD940BE} "Subscription Mgr" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} "Suchen" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{0DF44EAA-FF21-4412-828E-260A8728E7F1} "Taskleiste und Startmenü" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
{7BD29E00-76C1-11CF-9DD0-00A0C9034933} "Temporary Internet Files" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{7BD29E01-76C1-11CF-9DD0-00A0C9034933} "Temporary Internet Files" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{3DC7A020-0ACD-11CF-A9BB-00AA004AE837} "The Internet" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
{acf35015-526e-4230-9596-becbe19f0ac9} "Track Popup Bar" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7} "TrayAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{7376D660-C583-11d0-A3A5-00C04FD706EC} "TridentImageExtractor" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{DD313E04-FEFF-11d1-8ECD-0000F87A470C} "User Assist" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{D20EA4E1-3957-11d2-A40B-0C5020524153} "Verwaltung" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{40C3D757-D6E4-4b49-BB41-0E5BBEA28817} "Video Media Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{c5a40261-cd64-4ccf-84cb-c394da41d590} "Video Thumbnail Extractor" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{E4B29F9D-D390-480b-92FD-7DDB47101D71} "Wav Properties Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\shmedia.dll
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL
{07798131-AF23-11d1-9111-00A0C98BA67D} "Web Search" - "Microsoft Corporation" - C:\WINDOWS\system32\browseui.dll
{E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB} "WebCheck SyncMgr Handler" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB} "WebCheckChannelAgent" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{08165EA0-E946-11CF-9C87-00AA005127ED} "WebCheckWebCrawler" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{CC6EEFFB-43F6-46c5-9619-51D571967F7D} "Webpublishing-Assistent" - "Microsoft Corporation" - C:\WINDOWS\system32\netplwiz.dll
{45670FA8-ED97-4F44-BC93-305082590BFB} "Windows XPS Document Metadata Handler" - "Microsoft Corporation" - C:\WINDOWS\System32\XPSSHHDR.DLL
{44121072-A222-48f2-A58A-6D9AD51EBBE9} "Windows XPS Document Thumbnail Handler" - "Microsoft Corporation" - C:\WINDOWS\System32\XPSSHHDR.DLL
{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} "Windows-Sicherheit" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - ? - C:\Dokumente und Einstellungen\User\Eigene Dateien\rarext.dll  (File found, but it contains no detailed information)
{F1B9284F-E9DC-4e68-9D7E-42362A59F0FD} "WMP Add To Playlist Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll
{8DD448E6-C188-4aed-AF92-44956194EB1F} "WMP Burn Audio CD Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll
{CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C} "WMP Play As Playlist Launcher" - "Microsoft Corporation" - C:\WINDOWS\system32\wmpshell.dll
{9DBD2C50-62AD-11d0-B806-00C04FD706EC} "Zusammenfassungs-Miniaturansichthandler (DOCFILES)" - "Microsoft Corporation" - C:\WINDOWS\system32\shimgvw.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad )-----
{7849596a-48ea-486e-8937-a2a3009f31a9} "PostBootReminder object" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
{fbeb8a05-beee-4442-804e-409d6c4515e9} "ShellFolder for CD Burning" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
{35CEC8A3-2BE6-11D2-8773-92E220524153} "SysTray" - "Microsoft Corporation" - C:\WINDOWS\system32\stobject.dll
{E6FB5E20-DE35-11CF-9C87-00AA005127ED} "WebCheck" - "Microsoft Corporation" - C:\WINDOWS\system32\webcheck.dll
{AAA288BA-9A4C-45B0-95D7-94D524869DB5} "WPDShServiceObj Class" - "Microsoft Corporation" - C:\WINDOWS\system32\WPDShServiceObj.dll

[Internet Explorer]
-----( HKCU\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars )-----
{EFA24E64-B078-11D0-89E4-00C04FC9E26E} "Explorer-Band" - "Microsoft Corporation" - C:\WINDOWS\system32\shdocvw.dll
{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} "File Search Explorer Band" - "Microsoft Corporation" - C:\WINDOWS\system32\SHELL32.dll
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )-----
<binary data> "ITBar7Layout" - ? -  (File not found | COM-object registry key not found)
<binary data> "Windows Live Toolbar" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll
-----( HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks )-----
{CFBFAE00-17A6-11D0-99CB-00C04FD64497} "Microsoft Url Search Hook" - "Microsoft Corporation" - C:\WINDOWS\system32\ieframe.dll
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )-----
{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA} "Java Plug-in 1.5.0_16" - "Sun Microsystems, Inc." - C:\Programme\Java\jre1.5.0_16\bin\npjpi150_16.dll / hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_16-windows-i586.cab
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_33" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_33.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
{6414512B-B978-451D-A0D8-FCFDF33E833C} "WUWebControl Class" - "Microsoft Corporation" - C:\WINDOWS\system32\wuweb.dll / hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1231769983625
{CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} "{CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7}" - ? -  (File not found | COM-object registry key not found) / hxxp://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} "{E2883E8F-472F-4FB0-9522-AC9BF37916A7}" - ? -  (File not found | COM-object registry key not found) / hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )-----
{F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} "ClsidExtension" - "Lenovo Group Limited" - C:\Programme\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
"Exec" - "Microsoft Corporation" - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
"Messenger" - "Microsoft Corporation" - C:\Programme\Messenger\msmsgs.exe
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar )-----
<binary data> "Windows Live Toolbar" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )-----
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" - "Adobe Systems Incorporated" - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
{BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} "IePasswordManagerHelper Class" - "Lenovo Group Limited" - C:\Programme\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jp2ssv.dll
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\ssv.dll
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} "Windows Live Toolbar Helper" - "Microsoft Corporation" - C:\Programme\Windows Live Toolbar\msntb.dll

[Known DLLs]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs )-----
"advapi32" - "Microsoft Corporation" - C:\WINDOWS\system32\advapi32.dll
"comdlg32" - "Microsoft Corporation" - C:\WINDOWS\system32\comdlg32.dll
"gdi32" - "Microsoft Corporation" - C:\WINDOWS\system32\gdi32.dll
"imagehlp" - "Microsoft Corporation" - C:\WINDOWS\system32\imagehlp.dll
"kernel32" - "Microsoft Corporation" - C:\WINDOWS\system32\kernel32.dll
"lz32" - "Microsoft Corporation" - C:\WINDOWS\system32\lz32.dll
"ole32" - "Microsoft Corporation" - C:\WINDOWS\system32\ole32.dll
"oleaut32" - "Microsoft Corporation" - C:\WINDOWS\system32\oleaut32.dll
"olecli32" - "Microsoft Corporation" - C:\WINDOWS\system32\olecli32.dll
"olecnv32" - "Microsoft Corporation" - C:\WINDOWS\system32\olecnv32.dll
"olesvr32" - "Microsoft Corporation" - C:\WINDOWS\system32\olesvr32.dll
"olethk32" - "Microsoft Corporation" - C:\WINDOWS\system32\olethk32.dll
"rpcrt4" - "Microsoft Corporation" - C:\WINDOWS\system32\rpcrt4.dll
"shell32" - "Microsoft Corporation" - C:\WINDOWS\system32\shell32.dll
"url" - "Microsoft Corporation" - C:\WINDOWS\system32\url.dll
"urlmon" - "Microsoft Corporation" - C:\WINDOWS\system32\urlmon.dll
"user32" - "Microsoft Corporation" - C:\WINDOWS\system32\user32.dll
"version" - "Microsoft Corporation" - C:\WINDOWS\system32\version.dll
"wininet" - "Microsoft Corporation" - C:\WINDOWS\system32\wininet.dll
"wldap32" - "Microsoft Corporation" - C:\WINDOWS\system32\wldap32.dll

[LSA Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Lsa )-----
"Authentication packages" - "Microsoft Corporation" - C:\WINDOWS\system32\msv1_0.dll
"Notification packages" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\kerberos.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\msv1_0.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\schannel.dll
"Security Packages" - "Microsoft Corporation" - C:\WINDOWS\system32\wdigest.dll
-----( HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders )-----
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\msapsspc.dll
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\schannel.dll
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\digest.dll
"SecurityProviders" - "Microsoft Corporation" - C:\WINDOWS\system32\msnsspc.dll

[Logon]
-----( %AllUsersProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\desktop.ini
-----( %UserProfile%\Startmenü\Programme\Autostart )-----
"desktop.ini" - ? - C:\Dokumente und Einstellungen\User\Startmenü\Programme\Autostart\desktop.ini
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )-----
"Akamai NetSession Interface" - "Akamai Technologies, Inc" - "C:\Dokumente und Einstellungen\User\Lokale Einstellungen\Anwendungsdaten\Akamai\netsession_win.exe"
"WMPNSCFG" - "Microsoft Corporation" - C:\Programme\Windows Media Player\WMPNSCFG.exe
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon )-----
"Shell" - "Microsoft Corporation" - C:\WINDOWS\Explorer.exe
"Userinit" - "Microsoft Corporation" - C:\WINDOWS\system32\userinit.exe
-----( HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd )-----
"StartupPrograms" - "Microsoft Corporation" - C:\WINDOWS\system32\rdpclip.exe
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )-----
"Adobe ARM" - "Adobe Systems Incorporated" - "C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe"
"avgnt" - "Avira Operations GmbH & Co. KG" - "C:\Programme\Avira\AntiVir Desktop\avgnt.exe" /min
"cssauth" - "Lenovo Group Limited" - "C:\Programme\Lenovo\Client Security Solution\cssauth.exe" silent
"Mouse Suite 98 Daemon" - "Primax Electronics Ltd." - ICO.EXE
"RTHDCPL" - "Realtek Semiconductor Corp." - RTHDCPL.EXE
"Samsung LBP SM" - "Samsung Electronics." - "C:\WINDOWS\Samsung\LaserSMMgr\ssmmgr.exe" /autorun
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe"
"TVT Scheduler Proxy" - "Lenovo Group Limited" - C:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\scheduler_proxy.exe

[Network Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order )-----
"Microsoft Windows-Netzwerk" - "Microsoft Corporation" - C:\WINDOWS\System32\ntlanman.dll
"Microsoft-Terminaldienste" - "Microsoft Corporation" - C:\WINDOWS\System32\drprov.dll
"Web Client Network" - "Microsoft Corporation" - C:\WINDOWS\System32\davclnt.dll

[Print Monitors]
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )-----
"BJ Language Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\cnbjmon.dll
"Local Port" - "Microsoft Corporation" - C:\WINDOWS\system32\localspl.dll
"PJL Language Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\pjlmon.dll
"ssgb7 Langmon" - "Samsung Electronics." - C:\WINDOWS\system32\SSGB7MON.DLL
"Standard TCP/IP Port" - "Microsoft Corporation" - C:\WINDOWS\system32\tcpmon.dll
"SUGE1 Langmon" - "Samsung Electronics." - C:\WINDOWS\system32\SUGE1LMK.DLL
"USB Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\usbmon.dll

[Services]
-----( HKLM\SYSTEM\CurrentControlSet\Services )-----
".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
"Ablagemappe" (ClipSrv) - "Microsoft Corporation" - C:\WINDOWS\system32\clipsrv.exe
"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc) - "Adobe Systems Incorporated" - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
"Akamai NetSession Interface" (Akamai) - "Akamai Technologies, Inc" - c:\programme\gemeinsame dateien\akamai\netsession_win_4f7fccd.dll
"Anmeldedienst" (Netlogon) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"Anwendungsverwaltung" (AppMgmt) - "Microsoft Corporation" - C:\WINDOWS\System32\appmgmts.dll
"Arbeitsstationsdienst" (lanmanworkstation) - "Microsoft Corporation" - C:\WINDOWS\System32\wkssvc.dll
"ASP.NET-Zustandsdienst" (aspnet_state) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
"Ati HotKey Poller" (Ati HotKey Poller) - "ATI Technologies Inc." - C:\WINDOWS\system32\Ati2evxx.exe
"Automatic Updates" (wuauserv) - "Microsoft Corporation" - C:\WINDOWS\system32\wuauserv.dll
"Automatische Konfiguration (verkabelt)" (Dot3svc) - "Microsoft Corporation" - C:\WINDOWS\System32\dot3svc.dll
"Avira Browser Schutz" (AntiVirWebService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\AVWEBGRD.EXE
"Avira Echtzeit Scanner" (AntiVirService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\avguard.exe
"Avira Planer" (AntiVirSchedulerService) - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\sched.exe
"COM+-Ereignissystem" (EventSystem) - "Microsoft Corporation" - C:\WINDOWS\system32\es.dll
"COM+-Systemanwendung" (COMSysApp) - "Microsoft Corporation" - C:\WINDOWS\system32\dllhost.exe
"Computerbrowser" (Browser) - "Microsoft Corporation" - C:\WINDOWS\System32\browser.dll
"CryptSvc" (CryptSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\cryptsvc.dll
"DCOM-Server-Prozessstart" (DcomLaunch) - "Microsoft Corporation" - C:\WINDOWS\system32\rpcss.dll
"Designs" (Themes) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll
"DHCP-Client" (Dhcp) - "Microsoft Corporation" - C:\WINDOWS\System32\dhcpcsvc.dll
"Dienst für Seriennummern der tragbaren Medien" (WmdmPmSN) - "Microsoft Corporation" - C:\WINDOWS\system32\MsPMSNSv.dll
"Distributed Transaction Coordinator" (MSDTC) - "Microsoft Corporation" - C:\WINDOWS\system32\msdtc.exe
"DNS-Client" (Dnscache) - "Microsoft Corporation" - C:\WINDOWS\System32\dnsrslvr.dll
"Druckwarteschlange" (Spooler) - "Microsoft Corporation" - C:\WINDOWS\system32\spoolsv.exe
"Ereignisprotokoll" (Eventlog) - "Microsoft Corporation" - C:\WINDOWS\system32\services.exe
"Extensible Authentication-Protokolldienst" (EapHost) - "Microsoft Corporation" - C:\WINDOWS\System32\eapsvc.dll
"Fehlerberichterstattungsdienst" (ERSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\ersvc.dll
"Gatewaydienst auf Anwendungsebene" (ALG) - "Microsoft Corporation" - C:\WINDOWS\System32\alg.exe
"Geschützter Speicher" (ProtectedStorage) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"getPlus(R) Helper" (getPlusHelper) - "NOS Microsystems Ltd." - C:\Programme\NOS\bin\getPlus_Helper.dll
"getPlus(R) Helper 3004" (nosGetPlusHelper) - "NOS Microsystems Ltd." - C:\Programme\NOS\bin\getPlus_Helper_3004.dll
"Hilfe und Support" (helpsvc) - "Microsoft Corporation" - C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
"HTTP-SSL" (HTTPFilter) - "Microsoft Corporation" - C:\WINDOWS\System32\w3ssl.dll
"IMAPI-CD-Brenn-COM-Dienste" (ImapiService) - "Microsoft Corporation" - C:\WINDOWS\system32\imapi.exe
"Indexdienst" (CiSvc) - "Microsoft Corporation" - C:\WINDOWS\system32\cisvc.exe
"Integritätsschlüssel- und Zertifikatverwaltungsdienst" (hkmsvc) - "Microsoft Corporation" - C:\WINDOWS\System32\kmsvc.dll
"Intelligenter Hintergrundübertragungsdienst" (BITS) - "Microsoft Corporation" - C:\WINDOWS\system32\qmgr.dll
"IPSEC-Dienste" (PolicyAgent) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"IviRegMgr" (IviRegMgr) - "InterVideo" - C:\Programme\Gemeinsame Dateien\InterVideo\RegMgr\iviRegMgr.exe
"Java Quick Starter" (JavaQuickStarterService) - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jqs.exe
"Kompatibilität für schnelle Benutzerumschaltung" (FastUserSwitchingCompatibility) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll
"Konfigurationsfreie drahtlose Verbindung" (WZCSVC) - "Microsoft Corporation" - C:\WINDOWS\System32\wzcsvc.dll
"Leistungsdatenprotokolle und Warnungen" (SysmonLog) - "Microsoft Corporation" - C:\WINDOWS\system32\smlogsvc.exe
"Mozilla Maintenance Service" (MozillaMaintenance) - "Mozilla Foundation" - C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe
"MS Software Shadow Copy Provider" (SwPrv) - "Microsoft Corporation" - C:\WINDOWS\system32\dllhost.exe
"NAP-Agent (Network Access Protection)" (napagent) - "Microsoft Corporation" - C:\WINDOWS\System32\qagentrt.dll
"NetMeeting-Remotedesktop-Freigabe" (mnmsrvc) - "Microsoft Corporation" - C:\WINDOWS\system32\mnmsrvc.exe
"Netzwerkverbindungen" (Netman) - "Microsoft Corporation" - C:\WINDOWS\System32\netman.dll
"Netzwerkversorgungsdienst" (xmlprov) - "Microsoft Corporation" - C:\WINDOWS\System32\xmlprov.dll
"NLA (Network Location Awareness)" (Nla) - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll
"NT-LM-Sicherheitsdienst" (NtLmSsp) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"Plug & Play" (PlugPlay) - "Microsoft Corporation" - C:\WINDOWS\system32\services.exe
"QoS-RSVP" (RSVP) - "Microsoft Corporation" - C:\WINDOWS\system32\rsvp.exe
"RAS-Verbindungsverwaltung" (RasMan) - "Microsoft Corporation" - C:\WINDOWS\System32\rasmans.dll
"Remote-Registrierung" (RemoteRegistry) - "Microsoft Corporation" - C:\WINDOWS\system32\regsvc.dll
"Remoteprozeduraufruf (RPC)" (RpcSs) - "Microsoft Corporation" - C:\WINDOWS\System32\rpcss.dll
"RoxMediaDB10" (RoxMediaDB10) - "Sonic Solutions" - C:\Programme\Gemeinsame Dateien\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
"RPC-Locator" (RpcLocator) - "Microsoft Corporation" - C:\WINDOWS\system32\locator.exe
"Secondary Logon" (seclogon) - "Microsoft Corporation" - C:\WINDOWS\System32\seclogon.dll
"Server" (lanmanserver) - "Microsoft Corporation" - C:\WINDOWS\System32\srvsvc.dll
"SessionLauncher" (SessionLauncher) - ? - C:\DOKUME~1\ADMINI~1\LOKALE~1\Temp\DX9\SessionLauncher.exe  (File not found)
"SharedAccess" (SharedAccess) - "Microsoft Corporation" - C:\WINDOWS\System32\ipnathlp.dll
"Shellhardwareerkennung" (ShellHWDetection) - "Microsoft Corporation" - C:\WINDOWS\System32\shsvcs.dll
"Sicherheitskontenverwaltung" (SamSs) - "Microsoft Corporation" - C:\WINDOWS\system32\lsass.exe
"Sitzungs-Manager für Remotedesktophilfe" (RDSessMgr) - "Microsoft Corporation" - C:\WINDOWS\system32\sessmgr.exe
"Smartcard" (SCardSvr) - "Microsoft Corporation" - C:\WINDOWS\System32\SCardSvr.exe
"SSDP-Suchdienst" (SSDPSRV) - "Microsoft Corporation" - C:\WINDOWS\System32\ssdpsrv.dll
"stllssvr" (stllssvr) - "MicroVision Development, Inc." - C:\Programme\Gemeinsame Dateien\SureThing Shared\stllssvr.exe
"System Update" (SUService) - "Lenovo Group Limited" - c:\programme\lenovo\system update\suservice.exe
"Systemereignisbenachrichtigung" (SENS) - "Microsoft Corporation" - C:\WINDOWS\system32\sens.dll
"Systemwiederherstellungsdienst" (srservice) - "Microsoft Corporation" - C:\WINDOWS\system32\srsvc.dll
"Taskplaner" (Schedule) - "Microsoft Corporation" - C:\WINDOWS\system32\schedsvc.dll
"TCP/IP-NetBIOS-Hilfsprogramm" (LmHosts) - "Microsoft Corporation" - C:\WINDOWS\System32\lmhsvc.dll
"Telefonie" (TapiSrv) - "Microsoft Corporation" - C:\WINDOWS\System32\tapisrv.dll
"Telnet" (TlntSvr) - "Microsoft Corporation" - C:\WINDOWS\system32\tlntsvr.exe
"Terminaldienste" (TermService) - "Microsoft Corporation" - C:\WINDOWS\System32\termsrv.dll
"ThinkVantage Registry Monitor Service" (ThinkVantage Registry Monitor Service) - "Lenovo Group Limited" - c:\Programme\Gemeinsame Dateien\Lenovo\tvt_reg_monitor_svc.exe
"Treibererweiterungen für Windows-Verwaltungsinstrumentation" (Wmi) - "Microsoft Corporation" - C:\WINDOWS\System32\advapi32.dll
"TSS Core Service" (TSSCoreService) - "Lenovo" - C:\Programme\Lenovo\Client Security Solution\tvttcsd.exe
"TVT Backup Protection Service" (TVT Backup Protection Service) - ? - C:\Programme\Lenovo\Rescue and Recovery\rrpservice.exe
"TVT Backup Service" (TVT Backup Service) - "Lenovo Group Limited" - C:\Programme\Lenovo\Rescue and Recovery\rrservice.exe
"TVT Scheduler" (TVT Scheduler) - "Lenovo Group Limited" - c:\Programme\Gemeinsame Dateien\Lenovo\Scheduler\tvtsched.exe
"TVT Windows Update Monitor" (TVT_UpdateMonitor) - "Lenovo Group Limited" - C:\Programme\Lenovo\Rescue and Recovery\UpdateMonitor.exe
"Universeller Plug & Play-Gerätehost" (upnphost) - "Microsoft Corporation" - C:\WINDOWS\System32\upnphost.dll
"Unterbrechungsfreie Stromversorgung" (UPS) - "Microsoft Corporation" - C:\WINDOWS\System32\ups.exe
"USBDLM" (USBDLM) - "Uwe Sieber - www.uwe-sieber.de" - C:\USBDLM\USBDLM.exe
"Verwaltung für automatische RAS-Verbindung" (RasAuto) - "Microsoft Corporation" - C:\WINDOWS\System32\rasauto.dll
"Verwaltung logischer Datenträger" (dmserver) - "Microsoft Corp." - C:\WINDOWS\System32\dmserver.dll
"Verwaltungsdienst für die Verwaltung logischer Datenträger" (dmadmin) - "Microsoft Corp., Veritas Software" - C:\WINDOWS\System32\dmadmin.exe
"Volumeschattenkopie" (VSS) - "Microsoft Corporation" - C:\WINDOWS\System32\vssvc.exe
"Webclient" (WebClient) - "Microsoft Corporation" - C:\WINDOWS\System32\webclnt.dll
"Wechselmedien" (NtmsSvc) - "Microsoft Corporation" - C:\WINDOWS\system32\ntmssvc.dll
"Windows Audio" (AudioSrv) - "Microsoft Corporation" - C:\WINDOWS\System32\audiosrv.dll
"Windows CardSpace" (idsvc) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
"Windows Driver Foundation - User-mode Driver Framework" (WudfSvc) - "Microsoft Corporation" - C:\WINDOWS\System32\WUDFSvc.dll
"Windows Installer" (MSIServer) - "Microsoft Corporation" - C:\WINDOWS\system32\msiexec.exe
"Windows Media Player-Netzwerkfreigabedienst" (WMPNetworkSvc) - "Microsoft Corporation" - C:\Programme\Windows Media Player\WMPNetwk.exe
"Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) - "Microsoft Corporation" - c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
"Windows-Bilderfassung (WIA)" (stisvc) - "Microsoft Corporation" - C:\WINDOWS\system32\wiaservc.dll
"Windows-Verwaltungsinstrumentation" (winmgmt) - "Microsoft Corporation" - C:\WINDOWS\system32\wbem\WMIsvc.dll
"Windows-Zeitgeber" (W32Time) - "Microsoft Corporation" - C:\WINDOWS\system32\w32time.dll
"WMI-Leistungsadapter" (WmiApSrv) - "Microsoft Corporation" - C:\WINDOWS\system32\wbem\wmiapsrv.exe
"wscsvc" (wscsvc) - "Microsoft Corporation" - C:\WINDOWS\system32\wscsvc.dll
"Überwachung verteilter Verknüpfungen (Client)" (TrkWks) - "Microsoft Corporation" - C:\WINDOWS\system32\trkwks.dll

[Winlogon]
-----( HKCU\Control Panel\Desktop )-----
"SCRNSAVE.EXE" - "Microsoft Corporation" - C:\WINDOWS\System32\logon.scr
-----( HKCU\Control Panel\IOProcs )-----
"MVB" - ? - mvfs32.dll  (File not found)
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon )-----
"UIHost" - "Microsoft Corporation" - C:\WINDOWS\system32\logonui.exe
"VmApplet" - "Microsoft Corporation" - C:\WINDOWS\system32\sysdm.cpl
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions )-----
{B587E2B1-4D59-4e7e-AED9-22B9DF11D053} "802.3 Group Policy" - "Microsoft Corporation" - C:\WINDOWS\system32\dot3gpclnt.dll
{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} "Drahtlos" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A} "EFS recovery" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll
{25537BA6-77A8-11D2-9B6C-0000F8080861} "Folder Redirection" - "Microsoft Corporation" - C:\WINDOWS\system32\fdeploy.dll
{A2E30F80-D7DE-11d2-BBDE-00C04F86AE3B} "Internet Explorer Branding" - "Microsoft Corporation" - C:\WINDOWS\system32\iedkcs32.dll
{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} "Internet Explorer Zonemapping" - "Microsoft Corporation" - C:\WINDOWS\system32\iedkcs32.dll
{e437bc1c-aa7d-11d2-a382-00c04f991e27} "IP-Sicherheit" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{C631DF4C-088F-4156-B058-4375F0853CD8} "Microsoft Offline Files" - "Microsoft Corporation" - C:\WINDOWS\System32\cscui.dll
{3610eda5-77ef-11d2-8dc5-00c04fa31a66} "Microsoft-Datenträgerkontingent" - "Microsoft Corporation" - C:\WINDOWS\system32\dskquota.dll
{426031c0-0b47-4852-b0ca-ac3d37bfcb39} "QoS-Paketplaner" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{827D319E-6EAC-11D2-A4EA-00C04F79F83A} "Security" - "Microsoft Corporation" - C:\WINDOWS\system32\scecli.dll
{42B5FAAE-6536-11d2-AE5A-0000F87571E3} "Skripts" - "Microsoft Corporation" - C:\WINDOWS\system32\gptext.dll
{c6dc5466-785a-11d2-84d0-00c04fb169f7} "Softwareinstallation" - "Microsoft Corporation" - C:\WINDOWS\system32\appmgmts.dll
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify )-----
"AtiExtEvent" - "ATI Technologies Inc." - C:\WINDOWS\system32\Ati2evxx.dll
"crypt32chain" - "Microsoft Corporation" - C:\WINDOWS\system32\crypt32.dll
"cryptnet" - "Microsoft Corporation" - C:\WINDOWS\system32\cryptnet.dll
"cscdll" - "Microsoft Corporation" - C:\WINDOWS\system32\cscdll.dll
"dimsntfy" - "Microsoft Corporation" - C:\WINDOWS\System32\dimsntfy.dll
"ScCertProp" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll
"Schedule" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll
"sclgntfy" - "Microsoft Corporation" - C:\WINDOWS\system32\sclgntfy.dll
"SensLogn" - "Microsoft Corporation" - C:\WINDOWS\system32\WlNotify.dll
"termsrv" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll
"WgaLogon" - "Microsoft Corporation" - C:\WINDOWS\system32\WgaLogon.dll
"wlballoon" - "Microsoft Corporation" - C:\WINDOWS\system32\wlnotify.dll

[Winsock Providers]
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries )-----
"NLA-Namespace" - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll
"NTDS" - "Microsoft Corporation" - C:\WINDOWS\System32\winrnr.dll
"TCP/IP" - "Microsoft Corporation" - C:\WINDOWS\System32\mswsock.dll
-----( HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries )-----
"AVSDA" - "Avira Operations GmbH & Co. KG" - C:\Programme\Avira\AntiVir Desktop\avsda.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{100D944F-07DC-4690-9947-A887FE9B5CD0}] DATAGRAM 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{100D944F-07DC-4690-9947-A887FE9B5CD0}] SEQPACKET 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F48562B-63DE-4625-A4AA-0F5E50311094}] DATAGRAM 2" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F48562B-63DE-4625-A4AA-0F5E50311094}] SEQPACKET 2" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{926B4AD2-3054-49CE-B948-DA446FB3BEAA}] DATAGRAM 0" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD NetBIOS [\Device\NetBT_Tcpip_{926B4AD2-3054-49CE-B948-DA446FB3BEAA}] SEQPACKET 0" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD Tcpip [RAW/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD Tcpip [TCP/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"MSAFD Tcpip [UDP/IP]" - "Microsoft Corporation" - C:\WINDOWS\system32\mswsock.dll
"RSVP TCP Service Provider" - "Microsoft Corporation" - C:\WINDOWS\system32\rsvpsp.dll
"RSVP UDP Service Provider" - "Microsoft Corporation" - C:\WINDOWS\system32\rsvpsp.dll

===[ Logfile end ]=========================================[ Logfile end ]===

If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru

Hier ist aswMBR-Log:

Code:

aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-25 17:04:13
-----------------------------
17:04:13.421    OS Version: Windows 5.1.2600 Service Pack 3
17:04:13.421    Number of processors: 2 586 0x6B02
17:04:13.421    ComputerName: HEIM-PC  UserName: User
17:04:13.937    Initialize success
17:09:52.796    AVAST engine defs: 12072500
17:10:19.671    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T1L0-c
17:10:19.671    Disk 0 Vendor: WDC_WD3200AAJS-08B4A0 01.03A01 Size: 305245MB BusType: 3
17:10:19.687    Disk 0 MBR read successfully
17:10:19.687    Disk 0 MBR scan
17:10:19.718    Disk 0 unknown MBR code
17:10:19.734    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS      301687 MB offset 2048
17:10:19.765    Disk 0 Partition 2 00    12  Compaq diag MSDOS5.0    3556 MB offset 617857024
17:10:19.765    Disk 0 scanning sectors +625139712
17:10:19.828    Disk 0 scanning C:\WINDOWS\system32\drivers
17:10:27.437    Service scanning
17:10:40.859    Modules scanning
17:10:42.359    Module: C:\WINDOWS\System32\drivers\dxgthk.sys  **SUSPICIOUS**
17:10:44.375    Module: C:\WINDOWS\system32\ntdll.dll  **SUSPICIOUS**
17:10:44.375    Disk 0 trace - called modules:
17:10:44.406    ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
17:10:44.406    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a440ab8]
17:10:44.421    3 CLASSPNP.SYS[ba0e8fd7] -> nt!IofCallDriver -> \Device\0000006a[0x8a49ebe0]
17:10:44.421    5 ACPI.sys[b9f7e620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T1L0-c[0x8a4468e8]
17:10:45.187    AVAST engine scan C:\WINDOWS
17:10:51.640    AVAST engine scan C:\WINDOWS\system32
17:12:59.281    AVAST engine scan C:\WINDOWS\system32\drivers
17:13:16.015    AVAST engine scan C:\Dokumente und Einstellungen\User
17:14:55.921    AVAST engine scan C:\Dokumente und Einstellungen\All Users
17:15:13.000    Scan finished successfully
17:15:47.671    Disk 0 MBR has been saved successfully to "C:\Dokumente und Einstellungen\User\Desktop\MBR.dat"
17:15:47.671    The log file has been saved successfully to "C:\Dokumente und Einstellungen\User\Desktop\aswMBR.txt"

Problem mit Eingabegebietsleiste habe ich gelöst (gegoogelt:daumenhoc)

cosinus 26.07.2012 09:37

Zitat:

ich hatte auf der Taskleiste einen Sprachsymbol "DE" und konnte zwischen Sprachen umschalten.
Und was ist daran seltsam :balla:
Man kann diese Leiste schließen oder nicht was bitte ist daran ein Fehler?!
Und wozu brauchst du zwei verschiedene Tastaturlayouts? Mit das erste was ich auf einem Windows mache ist dieses dämliche zweite EN-Tastaturlayout zu entfernen!
Da Google nicht defekt ist, dürftest du auch reichtlich Infos darüber finden zum Thema "Eingabegebietsschemaleiste" :pfeiff:


Wir sollten den MBR fixen, sichere für den Fall der Fälle ALLE wichtigen Daten, auch wenn meistens alles glatt geht.

Hinweis: Mach bitte NICHT den MBR-Fix, wenn du noch andere Betriebssysteme wie zB Ubuntu installiert hast, ein MBR-Fix mit Windows-Tools macht ein parallel installiertes (Dualboot) Linux unbootbar.
Mach den Fix auch dann nicht, wenn du zB mit TrueCrypt oder anderen Verschlüsselungsprogrammen eine Vollverschlüsselung der Windowspartition bzw. gesamten Festplatte hast


Starte nach der Datensicherung aswmbr erneut und klick auf den Button FIXMBR.

Hinweis: Bitte den Virenscanner abstellen bevor du aswMBR ausführst, denn v.a. Avira meldet darin oft einen Fehalalrm!

Anschließend Windows neu starten und ein neues Log mit aswMBR machen.

strobl 26.07.2012 19:39

ich habe leider nicht richtig verstanden, was Sie mit Eingabegebietsleiste meinen.

Ich beschreibe nur kurz den Sachverhalt. Vielleicht mache ich was falsch.

Ich schreibe in 2 Sprachen und muss meine 2-sprachige Tastatur immer wieder umschalten. Dafür habe in der Taskleiste einen Sprachsymbol. Beim Klick drauf erscheint kleines Fenster mit der Sprachauswahl. Dann wähle ich eine Sprache aus, die ich im Moment brauche. Nach den o.g. Scan- Aktionen ist der Sprach-Symbol verschwunden. Es kann sein, dass einige andere Wege zum Tastaturaktivieren existieren. Ich kenne sie aber nicht. Die Hilfe in meinem PC hat ein Vorgehen vorgeschlagen, wie ich mein Problem lösen kann. Ein Fenster, das eine Schlüsselrolle dabei spielt, war deaktiviert.Deshalb war der Vorschlag nutzlos. Auf einer Internet-Seite habe ich eine Empfehlung gefunden. Es hat funktioniert. Logisch oder intuitiv wäre ich selber auf diese Lösung nicht gekommen. Windows macht sich eben keine Mühe alles verständlich zu erklären.

Sie schreiben, dass ich eine Datensicherung machen soll. Ich habe zu Hause das noch nicht gemacht ( ich weiss, das es leichtsinnig ist. - Berührungsangst ). Ich habe sehr viele wichtige Daten, worin ich viel Zeit investierte. Soll es USB-Stick oder CD sein?


Alle Zeitangaben in WEZ +1. Es ist jetzt 14:20 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131