Seite 2 von 2
ErsteErste 1 2
Zeige Ergebnis 11 bis 17 von 17

Thema: Netbook erbärmlich langsam

  1. #11
    Einsteiger
    Registriert seit
    21.12.2009
    Beiträge
    8

    AW: Netbook erbärmlich langsam

    Ja das ist ein Firmenrechner. Wär auch ganz wichtig dass du mir das sagst wenn hier das gesamte Netzwerk kompromittiert sein könnte. Ich habe gerade noch etwas Festgestellt: Mein Vater hat die ganzen Windows Sicherheitsupdates nie installiert. Kann ich das gerade nachholen oder soll ich es jetzt erstmal so lassen wärend wir daran arbeiten?

    Ich habe die Wiederherstellungskonsole jetzt installiert.Soll ichochmal ComboFix laufen lassen?

  2. #12
    Moderator Team-Mitglied Benutzerbild von schrauber
    Registriert seit
    11.02.2008
    Ort
    Saarland
    Beiträge
    9.736

    AW: Netbook erbärmlich langsam

    Ehm, ich würde Dich mal bitte auf die Forenregeln verweisen. Firmenrechner dürfen hier nicht bereinigt werden
    gruß schrauber

    Neu hier? | HJT-Anleitung | Malware-Bereinigung | Forenregeln | Spenden

    Proud Member of ASAP

  3. #13
    Einsteiger
    Registriert seit
    21.12.2009
    Beiträge
    8

    AW: Netbook erbärmlich langsam

    Ich finde grade den Eintrag in den Regeln nicht. Die Frage ist ja auch ab wann das unter Firmenrechner fällt.Der Übergang zu Privat ist hier aber eh fließend. Wenns rechtlich um die Kommerzielle Nutzung geht ,dann ist das kein Firmenrechner. Es geht hier nur darum ob ich denen jetzt sag "Leute holt euch mal dringend einen Spezialisten der euer Netzwerk durchcheckt." Denn der Rechner hängt eben an deren Netzwerk.

    Könntest du mir denn bitte wenigstens sagen ob überhaupt was dran ist?

  4. #14
    Moderator Team-Mitglied Benutzerbild von schrauber
    Registriert seit
    11.02.2008
    Ort
    Saarland
    Beiträge
    9.736

    AW: Netbook erbärmlich langsam

    Lass Combofix nach Installation der Wiederherstellungskonsole nochma laufen und poste das Log, dann mach ich ma ein Fazit .
    gruß schrauber

    Neu hier? | HJT-Anleitung | Malware-Bereinigung | Forenregeln | Spenden

    Proud Member of ASAP

  5. #15
    Einsteiger
    Registriert seit
    21.12.2009
    Beiträge
    8

    AW: Netbook erbärmlich langsam

    Ok danke Dir! So siehts aus:
    Code:
    ComboFix 09-12-29.03 - gustav 29.12.2009  22:03:34.3.1 - x86
    Microsoft Windows XP Professional  5.1.2600.3.1252.49.1031.18.1790.1271 [GMT 1:00]
    ausgeführt von:: c:\dokumente und einstellungen\gustav\Desktop\Combo-Fix.exe
    AV: AntiVir Desktop *On-access scanning disabled* (Updated) {C19476D9-52BC-4E93-8AF3-CCF59F7AE8FE}
    .
    
    (((((((((((((((((((((((   Dateien erstellt von 2009-11-28 bis 2009-12-29  ))))))))))))))))))))))))))))))
    .
    
    2009-12-27 22:39 . 2009-06-21 21:45	153088	-c----w-	c:\windows\system32\dllcache\triedit.dll
    2009-12-21 19:21 . 2009-12-21 19:21	--------	d-----w-	c:\dokumente und einstellungen\Default User\Lokale Einstellungen\Anwendungsdaten\Microsoft Help
    2009-12-21 16:43 . 2009-12-21 16:43	--------	d-----w-	c:\programme\Trend Micro
    2009-12-21 11:59 . 2009-12-21 11:59	--------	d-----r-	c:\dokumente und einstellungen\LocalService\Favoriten
    
    .
    ((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2009-12-28 18:59 . 2004-08-04 12:00	85732	----a-w-	c:\windows\system32\perfc007.dat
    2009-12-28 18:59 . 2004-08-04 12:00	462906	----a-w-	c:\windows\system32\perfh007.dat
    2009-12-27 23:10 . 2009-02-23 11:10	--------	d-----w-	c:\dokumente und einstellungen\All Users\Anwendungsdaten\Microsoft Help
    2009-12-22 06:47 . 2009-02-23 09:20	50256	----a-w-	c:\dokumente und einstellungen\gustav\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT
    2009-12-21 19:20 . 2009-02-23 11:16	--------	d-----w-	c:\programme\Microsoft Works
    2009-12-15 13:20 . 2009-04-01 17:48	56816	----a-w-	c:\windows\system32\drivers\avgntflt.sys
    2009-11-23 18:54 . 2009-11-23 18:54	--------	d-----w-	c:\dokumente und einstellungen\gustav\Anwendungsdaten\Amazon
    2009-11-23 18:53 . 2009-11-23 18:53	--------	d-----w-	c:\programme\Amazon
    2009-11-12 07:35 . 2009-03-03 22:04	--------	d-----w-	c:\dokumente und einstellungen\gustav\Anwendungsdaten\Skype
    2009-11-11 21:33 . 2009-03-03 22:07	--------	d-----w-	c:\dokumente und einstellungen\gustav\Anwendungsdaten\skypePM
    2009-10-29 07:40 . 2004-08-04 12:00	916480	----a-w-	c:\windows\system32\wininet.dll
    2009-10-21 05:38 . 2004-08-04 12:00	75776	----a-w-	c:\windows\system32\strmfilt.dll
    2009-10-21 05:38 . 2004-08-04 12:00	25088	----a-w-	c:\windows\system32\httpapi.dll
    2009-10-20 16:20 . 2004-08-04 12:00	265728	----a-w-	c:\windows\system32\drivers\http.sys
    2009-10-13 10:32 . 2004-08-04 12:00	271360	----a-w-	c:\windows\system32\oakley.dll
    2009-10-12 13:38 . 2004-08-04 12:00	79872	----a-w-	c:\windows\system32\raschap.dll
    2009-10-12 13:38 . 2004-08-04 12:00	150528	----a-w-	c:\windows\system32\rastls.dll
    .
    
    (((((((((((((((((((((((((((((   SnapShot@2009-12-26_22.37.53   )))))))))))))))))))))))))))))))))))))))))
    .
    - 2009-02-20 12:38 . 2009-07-14 11:03	46080              c:\windows\system32\tzchange.exe
    + 2009-02-20 12:38 . 2009-10-28 15:07	46080              c:\windows\system32\tzchange.exe
    + 2004-08-04 12:00 . 2009-12-28 18:59	72238              c:\windows\system32\perfc009.dat
    - 2004-08-04 12:00 . 2009-12-26 22:17	72238              c:\windows\system32\perfc009.dat
    - 2007-08-13 17:54 . 2009-07-03 16:55	55296              c:\windows\system32\msfeedsbs.dll
    + 2007-08-13 17:54 . 2009-10-29 07:40	55296              c:\windows\system32\msfeedsbs.dll
    + 2004-08-04 12:00 . 2009-09-04 21:03	58880              c:\windows\system32\msasn1.dll
    + 2004-08-04 12:00 . 2009-10-29 07:40	25600              c:\windows\system32\jsproxy.dll
    - 2004-08-04 12:00 . 2009-07-03 16:55	25600              c:\windows\system32\jsproxy.dll
    - 2009-06-17 08:10 . 2009-07-03 16:55	12800              c:\windows\system32\dllcache\xpshims.dll
    + 2009-06-17 08:10 . 2009-10-29 07:40	12800              c:\windows\system32\dllcache\xpshims.dll
    + 2009-10-21 05:38 . 2009-10-21 05:38	75776              c:\windows\system32\dllcache\strmfilt.dll
    + 2009-10-12 13:38 . 2009-10-12 13:38	79872              c:\windows\system32\dllcache\raschap.dll
    - 2009-02-20 13:08 . 2009-07-03 16:55	55296              c:\windows\system32\dllcache\msfeedsbs.dll
    + 2009-02-20 13:08 . 2009-10-29 07:40	55296              c:\windows\system32\dllcache\msfeedsbs.dll
    + 2009-09-04 21:03 . 2009-09-04 21:03	58880              c:\windows\system32\dllcache\msasn1.dll
    - 2007-08-13 17:54 . 2009-07-03 16:55	25600              c:\windows\system32\dllcache\jsproxy.dll
    + 2007-08-13 17:54 . 2009-10-29 07:40	25600              c:\windows\system32\dllcache\jsproxy.dll
    + 2009-10-21 05:38 . 2009-10-21 05:38	25088              c:\windows\system32\dllcache\httpapi.dll
    + 2009-06-24 18:56 . 2009-06-24 18:56	73728              c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
    + 2008-05-27 23:49 . 2008-05-27 23:49	77824              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
    - 2007-04-13 19:58 . 2007-04-13 19:58	77824              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
    + 2008-05-27 23:49 . 2008-05-27 23:49	86016              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
    - 2007-04-13 19:57 . 2007-04-13 19:57	86016              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
    + 2008-05-27 23:49 . 2008-05-27 23:49	81920              c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
    - 2007-04-13 19:57 . 2007-04-13 19:57	81920              c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
    - 2007-04-13 20:30 . 2007-04-13 20:30	32768              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
    + 2008-05-28 00:30 . 2008-05-28 00:30	32768              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
    + 2009-12-27 17:42 . 2009-12-27 17:42	32768              c:\windows\Installer\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}\icon.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	35088              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	35088              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\oisicon.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	18704              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	18704              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\mspicons.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	20240              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	20240              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\cagicon.exe
    + 2009-12-27 23:09 . 2009-07-03 16:55	12800              c:\windows\ie8updates\KB976325-IE8\xpshims.dll
    + 2009-12-27 23:09 . 2009-07-03 16:55	55296              c:\windows\ie8updates\KB976325-IE8\msfeedsbs.dll
    + 2009-12-27 23:09 . 2009-07-03 16:55	25600              c:\windows\ie8updates\KB976325-IE8\jsproxy.dll
    + 2009-12-27 17:47 . 2009-12-27 17:47	90112              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_95ba21fb\System.Drawing.Design.dll
    + 2009-12-27 17:47 . 2009-12-27 17:47	61440              c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_667f6fe7\CustomMarshalers.dll
    + 2009-12-28 19:04 . 2009-12-28 19:04	60928              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\b4a9e413d5cd6d6ec2d50aa05381e293\UIAutomationProvider.ni.dll
    + 2009-12-28 19:01 . 2009-12-28 19:01	47104              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\3dd0f86c966c75755d62eab8ddf0634c\PresentationFontCache.ni.exe
    + 2009-12-28 18:58 . 2009-12-28 18:58	39424              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\034d081fe294bab1ee1ecc98c1181424\PresentationCFFRasterizer.ni.dll
    + 2009-12-29 21:07 . 2009-12-29 21:07	25600              c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\e63d6d26b8a664cfdfbd4ad75e03c14d\Accessibility.ni.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	77824              c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	77824              c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	81920              c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	81920              c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	81920              c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	81920              c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	32768              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	32768              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	12800              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	12800              c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	28672              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	28672              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	77824              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	77824              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	36864              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	36864              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	77824              c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	77824              c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	13312              c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	13312              c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	10752              c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	10752              c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	72192              c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	72192              c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	69120              c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	69120              c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	8192              c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	8192              c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
    + 2009-02-25 13:45 . 2009-12-27 23:11	4096              c:\windows\Installer\{913A0407-6000-11D3-8CFE-0150048383C9}\opwicon.exe
    - 2009-02-25 13:45 . 2009-09-27 17:16	4096              c:\windows\Installer\{913A0407-6000-11D3-8CFE-0150048383C9}\opwicon.exe
    + 2009-12-27 23:15 . 2009-12-27 23:15	7168              c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	7168              c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	5632              c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	5632              c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	6656              c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	6656              c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	8192              c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	8192              c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	113664              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	113664              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	258048              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	258048              c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
    - 2004-08-04 12:00 . 2008-04-14 06:52	485376              c:\windows\system32\wmspdmod.dll
    + 2004-08-04 12:00 . 2009-04-03 11:15	485376              c:\windows\system32\wmspdmod.dll
    + 2004-08-04 12:00 . 2009-08-25 09:17	354816              c:\windows\system32\winhttp.dll
    - 2004-08-04 12:00 . 2008-10-03 10:03	247326              c:\windows\system32\strmdll.dll
    + 2004-08-04 12:00 . 2009-08-26 08:00	247326              c:\windows\system32\strmdll.dll
    + 2004-08-04 12:00 . 2009-12-28 18:59	444362              c:\windows\system32\perfh009.dat
    - 2004-08-04 12:00 . 2009-12-26 22:17	444362              c:\windows\system32\perfh009.dat
    + 2004-08-04 12:00 . 2009-10-29 07:40	206848              c:\windows\system32\occache.dll
    - 2004-08-04 12:00 . 2009-07-03 16:55	206848              c:\windows\system32\occache.dll
    + 2004-08-04 12:00 . 2009-09-11 14:17	136192              c:\windows\system32\msv1_0.dll
    - 2004-08-04 12:00 . 2009-06-25 08:25	136192              c:\windows\system32\msv1_0.dll
    + 2007-08-13 17:54 . 2009-10-29 07:40	594432              c:\windows\system32\msfeeds.dll
    - 2007-08-13 17:54 . 2009-07-03 16:55	594432              c:\windows\system32\msfeeds.dll
    + 2004-08-04 12:00 . 2009-06-22 06:45	726528              c:\windows\system32\jscript.dll
    - 2004-08-04 12:00 . 2009-03-08 02:33	726528              c:\windows\system32\jscript.dll
    + 2004-08-04 12:00 . 2009-10-29 07:40	184320              c:\windows\system32\iepeers.dll
    - 2004-08-04 12:00 . 2009-07-03 16:55	184320              c:\windows\system32\iepeers.dll
    + 2004-08-04 12:00 . 2009-10-29 07:40	387584              c:\windows\system32\iedkcs32.dll
    - 2004-08-04 12:00 . 2009-07-03 11:01	173056              c:\windows\system32\ie4uinit.exe
    + 2004-08-04 12:00 . 2009-10-28 14:40	173056              c:\windows\system32\ie4uinit.exe
    - 2009-02-20 08:37 . 2009-12-22 06:45	357744              c:\windows\system32\FNTCACHE.DAT
    + 2009-02-20 08:37 . 2009-12-28 18:54	357744              c:\windows\system32\FNTCACHE.DAT
    - 2004-08-04 12:00 . 2008-04-14 06:52	485376              c:\windows\system32\dllcache\wmspdmod.dll
    + 2004-08-04 12:00 . 2009-04-03 11:15	485376              c:\windows\system32\dllcache\wmspdmod.dll
    + 2007-08-13 17:54 . 2009-10-29 07:40	916480              c:\windows\system32\dllcache\wininet.dll
    + 2008-12-16 12:30 . 2009-08-25 09:17	354816              c:\windows\system32\dllcache\winhttp.dll
    + 2004-08-04 12:00 . 2009-08-26 08:00	247326              c:\windows\system32\dllcache\strmdll.dll
    - 2004-08-04 12:00 . 2008-10-03 10:03	247326              c:\windows\system32\dllcache\strmdll.dll
    + 2009-10-12 13:38 . 2009-10-12 13:38	150528              c:\windows\system32\dllcache\rastls.dll
    + 2007-08-13 17:44 . 2009-10-29 07:40	206848              c:\windows\system32\dllcache\occache.dll
    - 2007-08-13 17:44 . 2009-07-03 16:55	206848              c:\windows\system32\dllcache\occache.dll
    + 2009-10-13 10:32 . 2009-10-13 10:32	271360              c:\windows\system32\dllcache\oakley.dll
    + 2009-06-25 08:25 . 2009-09-11 14:17	136192              c:\windows\system32\dllcache\msv1_0.dll
    - 2009-06-25 08:25 . 2009-06-25 08:25	136192              c:\windows\system32\dllcache\msv1_0.dll
    + 2009-02-20 13:08 . 2009-10-29 07:40	594432              c:\windows\system32\dllcache\msfeeds.dll
    - 2009-02-20 13:08 . 2009-07-03 16:55	594432              c:\windows\system32\dllcache\msfeeds.dll
    - 2007-08-13 17:38 . 2009-03-08 02:33	726528              c:\windows\system32\dllcache\jscript.dll
    + 2007-08-13 17:38 . 2009-06-22 06:45	726528              c:\windows\system32\dllcache\jscript.dll
    - 2009-06-17 08:10 . 2009-07-03 16:55	246272              c:\windows\system32\dllcache\ieproxy.dll
    + 2009-06-17 08:10 . 2009-10-29 07:40	246272              c:\windows\system32\dllcache\ieproxy.dll
    + 2007-08-13 17:54 . 2009-10-29 07:40	184320              c:\windows\system32\dllcache\iepeers.dll
    - 2007-08-13 17:54 . 2009-07-03 16:55	184320              c:\windows\system32\dllcache\iepeers.dll
    + 2007-08-13 17:39 . 2009-10-29 07:40	387584              c:\windows\system32\dllcache\iedkcs32.dll
    - 2007-08-13 17:39 . 2009-07-03 11:01	173056              c:\windows\system32\dllcache\ie4uinit.exe
    + 2007-08-13 17:39 . 2009-10-28 14:40	173056              c:\windows\system32\dllcache\ie4uinit.exe
    + 2009-10-20 16:20 . 2009-10-20 16:20	265728              c:\windows\system32\dllcache\http.sys
    + 2009-08-07 22:51 . 2009-08-07 22:51	989016              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
    - 2007-04-13 19:58 . 2007-04-13 19:58	102400              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
    + 2008-05-27 23:49 . 2008-05-27 23:49	102400              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
    - 2007-04-13 19:56 . 2007-04-13 19:56	315392              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
    + 2008-05-27 23:48 . 2008-05-27 23:48	315392              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
    - 2007-04-13 20:30 . 2007-04-13 20:30	258048              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
    + 2008-05-28 00:30 . 2008-05-28 00:30	258048              c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
    + 2009-09-03 10:25 . 2009-09-03 10:25	627200              c:\windows\Installer\1fcd4b.msp
    + 2009-12-27 17:42 . 2009-12-27 17:42	429568              c:\windows\Installer\108ca6a.msi
    - 2009-02-25 13:45 . 2009-09-27 17:16	147456              c:\windows\Installer\{913A0407-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
    + 2009-02-25 13:45 . 2009-12-27 23:11	147456              c:\windows\Installer\{913A0407-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
    - 2009-02-25 13:45 . 2009-09-27 17:16	135168              c:\windows\Installer\{913A0407-6000-11D3-8CFE-0150048383C9}\misc.exe
    + 2009-02-25 13:45 . 2009-12-27 23:11	135168              c:\windows\Installer\{913A0407-6000-11D3-8CFE-0150048383C9}\misc.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	888080              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	888080              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	272648              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\pubs.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	272648              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\pubs.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	922384              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\pptico.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	922384              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\pptico.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	845584              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\outicon.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	845584              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\outicon.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	217864              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\misc.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	217864              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\misc.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	184080              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\joticon.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	184080              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\joticon.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	159504              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\inficon.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	159504              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\inficon.exe
    + 2009-12-27 23:09 . 2009-07-03 16:55	915456              c:\windows\ie8updates\KB976325-IE8\wininet.dll
    + 2009-12-27 23:09 . 2009-05-26 11:40	388984              c:\windows\ie8updates\KB976325-IE8\spuninst\updspapi.dll
    + 2009-12-27 23:09 . 2009-05-26 11:40	234872              c:\windows\ie8updates\KB976325-IE8\spuninst\spuninst.exe
    + 2009-12-27 23:09 . 2009-07-03 16:55	206848              c:\windows\ie8updates\KB976325-IE8\occache.dll
    + 2009-12-27 23:09 . 2009-07-03 16:55	594432              c:\windows\ie8updates\KB976325-IE8\msfeeds.dll
    + 2009-12-27 23:09 . 2009-07-03 16:55	246272              c:\windows\ie8updates\KB976325-IE8\ieproxy.dll
    + 2009-12-27 23:09 . 2009-07-03 16:55	184320              c:\windows\ie8updates\KB976325-IE8\iepeers.dll
    + 2009-12-27 23:09 . 2009-07-03 16:55	386048              c:\windows\ie8updates\KB976325-IE8\iedkcs32.dll
    + 2009-12-27 23:09 . 2009-07-03 11:01	173056              c:\windows\ie8updates\KB976325-IE8\ie4uinit.exe
    + 2009-12-27 17:45 . 2008-07-08 13:00	388984              c:\windows\ie8updates\KB971961-IE8\spuninst\updspapi.dll
    + 2009-12-27 17:45 . 2008-07-08 13:00	234872              c:\windows\ie8updates\KB971961-IE8\spuninst\spuninst.exe
    + 2009-12-27 17:45 . 2009-03-08 02:33	726528              c:\windows\ie8updates\KB971961-IE8\jscript.dll
    + 2009-10-20 16:20 . 2009-10-20 16:20	265728              c:\windows\Driver Cache\i386\http.sys
    + 2009-12-27 17:48 . 2009-12-27 17:48	835584              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_609009bc\System.Drawing.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	192512              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_4b7a2964\System.Drawing.Design.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	118784              c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_dd3c7fb5\CustomMarshalers.dll
    + 2009-12-28 19:04 . 2009-12-28 19:04	240128              c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\bf92bc207f927cbbd6dfc9dc0c3eae68\WindowsFormsIntegration.ni.dll
    + 2009-12-28 19:04 . 2009-12-28 19:04	187904              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\6f488b7644dc50a083868e91a4014466\UIAutomationTypes.ni.dll
    + 2009-12-28 19:04 . 2009-12-28 19:04	447488              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\c2fbf25609b704061a93500efa6f241d\UIAutomationClient.ni.dll
    + 2009-12-29 21:09 . 2009-12-29 21:09	381440              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\6c273eb9d1ee8b66b5ecb073de4b785d\System.IO.Log.ni.dll
    + 2009-12-29 21:09 . 2009-12-29 21:09	212992              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\7222db518afb4eaaa138824278249bc7\System.IdentityModel.Selectors.ni.dll
    + 2009-12-28 19:03 . 2009-12-28 19:03	208384              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\ca6d7208c0fb72ff97429f2636ced321\System.Drawing.Design.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	258048              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\96f74da5fc40b92f09069230bc0df4f0\PresentationFramework.Royale.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	539648              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\3bb4d16b042b72c2c85a0f8ac9d48f28\PresentationFramework.Luna.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	368128              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\30c5c2682d3c5bdaa83bb9a36ee48afa\PresentationFramework.Aero.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	224768              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\07e952efd70f5608e221a008e6231ace\PresentationFramework.Classic.ni.dll
    + 2009-12-29 21:07 . 2009-12-29 21:07	842240              c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\85d7c111956b478766d90625b35d963f\AspNetMMCExt.ni.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	839680              c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	839680              c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	835584              c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	835584              c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	114688              c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	114688              c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	258048              c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	258048              c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	131072              c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	131072              c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	303104              c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	303104              c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	258048              c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	258048              c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	372736              c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	372736              c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	626688              c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	626688              c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	401408              c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	401408              c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	188416              c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	188416              c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	970752              c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	970752              c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	745472              c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	745472              c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	425984              c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	425984              c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	110592              c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	110592              c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	659456              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	659456              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	372736              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	372736              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	110592              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	110592              c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	749568              c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	749568              c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	655360              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	655360              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	348160              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	348160              c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	507904              c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	507904              c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	261632              c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	261632              c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	113664              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	113664              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	258048              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	258048              c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	486400              c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	486400              c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
    + 2009-12-27 22:40 . 2009-08-13 13:55	1748992              c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
    + 2009-07-20 23:03 . 2009-07-20 23:03	1348432              c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9876.0_x-ww_a621d1d5\msxml4.dll
    - 2004-08-04 12:00 . 2008-11-07 15:45	2174976              c:\windows\system32\WMVCore.dll
    + 2004-08-04 12:00 . 2009-05-26 15:53	2174976              c:\windows\system32\WMVCore.dll
    + 2004-08-04 12:00 . 2009-08-14 15:10	1850752              c:\windows\system32\win32k.sys
    + 2004-08-04 12:00 . 2009-10-29 07:40	1208832              c:\windows\system32\urlmon.dll
    - 2004-08-04 12:00 . 2009-07-03 16:55	1208832              c:\windows\system32\urlmon.dll
    - 2004-08-04 12:00 . 2008-04-14 06:52	1441792              c:\windows\system32\query.dll
    + 2004-08-04 12:00 . 2009-07-17 16:15	1441792              c:\windows\system32\query.dll
    + 2004-08-04 12:00 . 2009-08-04 21:56	2191488              c:\windows\system32\ntoskrnl.exe
    + 2004-08-04 00:50 . 2009-08-04 17:26	2068352              c:\windows\system32\ntkrnlpa.exe
    - 2004-08-04 00:50 . 2009-02-10 17:03	2068352              c:\windows\system32\ntkrnlpa.exe
    + 2009-02-20 12:38 . 2009-07-31 09:02	1372672              c:\windows\system32\msxml6.dll
    + 2009-07-20 23:05 . 2009-07-20 23:05	1348432              c:\windows\system32\msxml4.dll
    + 2004-08-04 12:00 . 2009-07-31 04:32	1172480              c:\windows\system32\msxml3.dll
    + 2004-08-04 12:00 . 2009-10-29 07:40	5940736              c:\windows\system32\mshtml.dll
    - 2007-08-13 17:34 . 2009-07-03 16:55	1985536              c:\windows\system32\iertutil.dll
    + 2007-08-13 17:34 . 2009-10-29 07:40	1985536              c:\windows\system32\iertutil.dll
    + 2009-08-17 22:33 . 2009-08-17 22:33	1193832              c:\windows\system32\FM20.DLL
    + 2004-08-04 12:00 . 2009-05-26 15:53	2174976              c:\windows\system32\dllcache\WMVCore.dll
    - 2004-08-04 12:00 . 2008-11-07 15:45	2174976              c:\windows\system32\dllcache\WMVCore.dll
    + 2009-02-20 12:52 . 2009-08-14 15:10	1850752              c:\windows\system32\dllcache\win32k.sys
    + 2007-08-13 17:54 . 2009-10-29 07:40	1208832              c:\windows\system32\dllcache\urlmon.dll
    - 2007-08-13 17:54 . 2009-07-03 16:55	1208832              c:\windows\system32\dllcache\urlmon.dll
    + 2009-07-17 16:15 . 2009-07-17 16:15	1441792              c:\windows\system32\dllcache\query.dll
    + 2009-02-20 12:52 . 2009-08-04 21:56	2191488              c:\windows\system32\dllcache\ntoskrnl.exe
    + 2009-02-20 12:52 . 2009-08-04 17:25	2026496              c:\windows\system32\dllcache\ntkrpamp.exe
    - 2009-02-20 12:52 . 2009-02-09 11:21	2026496              c:\windows\system32\dllcache\ntkrpamp.exe
    + 2009-02-20 12:52 . 2009-08-04 17:26	2068352              c:\windows\system32\dllcache\ntkrnlpa.exe
    - 2009-02-20 12:52 . 2009-02-10 17:03	2068352              c:\windows\system32\dllcache\ntkrnlpa.exe
    - 2009-02-20 12:52 . 2009-02-09 11:21	2147840              c:\windows\system32\dllcache\ntkrnlmp.exe
    + 2009-02-20 12:52 . 2009-08-04 17:26	2147840              c:\windows\system32\dllcache\ntkrnlmp.exe
    + 2009-02-20 12:38 . 2009-07-31 09:02	1372672              c:\windows\system32\dllcache\msxml6.dll
    + 2009-02-20 12:46 . 2009-07-31 04:32	1172480              c:\windows\system32\dllcache\msxml3.dll
    + 2007-08-13 17:54 . 2009-10-29 07:40	5940736              c:\windows\system32\dllcache\mshtml.dll
    + 2009-02-20 13:08 . 2009-10-29 07:40	1985536              c:\windows\system32\dllcache\iertutil.dll
    - 2009-02-20 13:08 . 2009-07-03 16:55	1985536              c:\windows\system32\dllcache\iertutil.dll
    + 2009-08-07 22:51 . 2009-08-07 22:51	5812560              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
    - 2008-11-25 02:59 . 2008-11-25 02:59	4546560              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
    + 2009-08-07 22:51 . 2009-08-07 22:51	4546560              c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
    + 2008-05-28 00:35 . 2008-05-28 00:35	1265664              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
    - 2007-04-13 20:35 . 2007-04-13 20:35	1265664              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
    + 2008-05-28 00:35 . 2008-05-28 00:35	1232896              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
    - 2007-04-13 20:35 . 2007-04-13 20:35	1232896              c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
    - 2007-04-13 19:57 . 2007-04-13 19:57	2514944              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
    + 2008-05-27 23:48 . 2008-05-27 23:48	2514944              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
    - 2007-04-13 19:57 . 2007-04-13 19:57	2523136              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
    + 2008-05-27 23:48 . 2008-05-27 23:48	2523136              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
    - 2007-04-13 19:50 . 2007-04-13 19:50	2142208              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
    + 2008-05-27 23:43 . 2008-05-27 23:43	2142208              c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
    + 2009-08-20 04:02 . 2009-08-20 04:02	5204992              c:\windows\Installer\1fcd42.msp
    + 2009-08-18 11:58 . 2009-08-18 11:58	8301056              c:\windows\Installer\1fcd39.msp
    + 2009-11-20 22:36 . 2009-11-20 22:36	5002752              c:\windows\Installer\1fcd23.msp
    + 2009-08-05 06:49 . 2009-08-05 06:49	3457024              c:\windows\Installer\1fcd0d.msp
    + 2009-07-27 03:31 . 2009-07-27 03:31	3738624              c:\windows\Installer\1fccf8.msp
    + 2009-08-18 11:57 . 2009-08-18 11:57	9122304              c:\windows\Installer\1fcce2.msp
    + 2009-09-18 08:30 . 2009-09-18 08:30	5016576              c:\windows\Installer\108cada.msp
    + 2009-10-16 06:09 . 2009-10-16 06:09	2518016              c:\windows\Installer\108cac4.msp
    + 2009-09-29 08:08 . 2009-09-29 08:08	6747648              c:\windows\Installer\108caae.msp
    + 2009-07-23 14:36 . 2009-07-23 14:36	7497216              c:\windows\Installer\108caa4.msp
    + 2009-08-18 12:08 . 2009-08-18 12:08	1373696              c:\windows\Installer\108ca7f.msp
    + 2009-02-23 11:17 . 2009-12-27 23:10	1172240              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	1172240              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
    - 2009-02-23 11:17 . 2009-12-21 19:21	1165584              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\accicons.exe
    + 2009-02-23 11:17 . 2009-12-27 23:10	1165584              c:\windows\Installer\{91120000-0030-0000-0000-0000000FF1CE}\accicons.exe
    + 2009-02-05 10:36 . 2009-02-05 10:36	1640800              c:\windows\Installer\$PatchCache$\Managed\00002119030000000000000000F01FEC\12.0.6425\OGL.DLL
    + 2009-03-06 03:26 . 2009-03-06 03:26	5291376              c:\windows\Installer\$PatchCache$\Managed\00002119030000000000000000F01FEC\12.0.6425\IPEDITOR.DLL
    + 2008-11-20 22:06 . 2008-11-20 22:06	1194848              c:\windows\Installer\$PatchCache$\Managed\00002119030000000000000000F01FEC\12.0.6425\FM20.DLL
    + 2009-12-27 23:09 . 2009-07-03 16:55	1208832              c:\windows\ie8updates\KB976325-IE8\urlmon.dll
    + 2009-12-27 23:09 . 2009-07-19 13:11	5937152              c:\windows\ie8updates\KB976325-IE8\mshtml.dll
    + 2009-12-27 23:09 . 2009-07-03 16:55	1985536              c:\windows\ie8updates\KB976325-IE8\iertutil.dll
    + 2009-02-20 12:52 . 2009-08-04 21:56	2191488              c:\windows\Driver Cache\i386\ntoskrnl.exe
    - 2009-02-20 12:52 . 2009-02-09 11:21	2026496              c:\windows\Driver Cache\i386\ntkrpamp.exe
    + 2009-02-20 12:52 . 2009-08-04 17:25	2026496              c:\windows\Driver Cache\i386\ntkrpamp.exe
    + 2009-02-20 12:52 . 2009-08-04 17:26	2068352              c:\windows\Driver Cache\i386\ntkrnlpa.exe
    - 2009-02-20 12:52 . 2009-02-10 17:03	2068352              c:\windows\Driver Cache\i386\ntkrnlpa.exe
    + 2009-02-20 12:52 . 2009-08-04 17:26	2147840              c:\windows\Driver Cache\i386\ntkrnlmp.exe
    - 2009-02-20 12:52 . 2009-02-09 11:21	2147840              c:\windows\Driver Cache\i386\ntkrnlmp.exe
    + 2009-12-27 17:47 . 2009-12-27 17:47	1966080              c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_f414b0c7\System.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	4792320              c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_7327d3ed\System.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	2088960              c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_e4a40740\System.Xml.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	5513216              c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_d748d4fa\System.Xml.dll
    + 2009-12-27 17:47 . 2009-12-27 17:47	3018752              c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_c54008d9\System.Windows.Forms.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	7884800              c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_6364585f\System.Windows.Forms.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	2244608              c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_4ea644ab\System.Drawing.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	3395584              c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_c4700a69\System.Design.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	1470464              c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_6611ef63\System.Design.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	3391488              c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_948f34d5\mscorlib.dll
    + 2009-12-27 17:48 . 2009-12-27 17:48	8908800              c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_60f32a02\mscorlib.dll
    + 2009-12-28 18:58 . 2009-12-28 18:58	3313664              c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\204d6e5b335134f23ca37638b9227ecf\WindowsBase.ni.dll
    + 2009-12-28 19:04 . 2009-12-28 19:04	1049600              c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\0f2ed6a204eb13841e99b77025464afc\UIAutomationClientsideProviders.ni.dll
    + 2009-12-28 18:57 . 2009-12-28 18:57	7868416              c:\windows\assembly\NativeImages_v2.0.50727_32\System\3de5bd01124463d7862bd173af90bc83\System.ni.dll
    + 2009-12-28 19:04 . 2009-12-28 19:04	5450752              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\5913d3f81e77194ec833991b1047a532\System.Xml.ni.dll
    + 2009-12-28 19:03 . 2009-12-28 19:03	1917440              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\99594bae1d022502925f5b9dfcdaae9a\System.Speech.ni.dll
    + 2009-12-29 21:09 . 2009-12-29 21:09	2338304              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\67ad55827f2542552b576170f0a7dc56\System.Runtime.Serialization.ni.dll
    + 2009-12-28 19:03 . 2009-12-28 19:03	1035264              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\e5313735a40c0800f116e27fba4754db\System.Printing.ni.dll
    + 2009-12-29 21:09 . 2009-12-29 21:09	1056768              c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\c3b18fef5c6dc3bcdbe5df699fd21a55\System.IdentityModel.ni.dll
    + 2009-12-28 19:03 . 2009-12-28 19:03	1587200              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\abb2ac7e08bee026f857d8fa36f9fe6f\System.Drawing.ni.dll
    + 2009-12-28 19:03 . 2009-12-28 19:03	6616576              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\694c07365e0fd6bba0bc304d4d2404a7\System.Data.ni.dll
    + 2009-12-28 19:03 . 2009-12-28 19:03	2516480              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\32788c58ff9f8324460604cf1fe7681b\System.Data.Linq.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	2295296              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\c0a42d2ad8a4078040b334f6770ea11f\System.Core.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	2128896              c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\954685c29689d2a6126ceca1fd55e904\ReachFramework.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	1657856              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\a3a6f52ce1d09a7bdccc8e7fc664792d\PresentationUI.ni.dll
    + 2009-12-28 18:58 . 2009-12-28 18:58	1451008              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\f906701365083c1473db31519147e263\PresentationBuildTasks.ni.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	3149824              c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	3149824              c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
    + 2009-12-27 23:16 . 2009-12-27 23:16	2048000              c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	2048000              c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	5025792              c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	5025792              c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	5062656              c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	5062656              c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
    - 2009-06-17 08:24 . 2009-06-17 08:24	5242880              c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	5242880              c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	2933248              c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	2933248              c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
    - 2009-06-17 08:25 . 2009-06-17 08:25	4546560              c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
    + 2009-12-27 23:15 . 2009-12-27 23:15	4546560              c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
    + 2009-12-27 17:47 . 2009-12-27 17:47	1232896              c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
    - 2009-02-23 12:53 . 2009-02-23 12:53	1232896              c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
    - 2009-02-23 12:53 . 2009-02-23 12:53	1265664              c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
    + 2009-12-27 17:47 . 2009-12-27 17:47	1265664              c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
    + 2009-02-20 13:03 . 2009-12-01 11:06	25966024              c:\windows\system32\MRT.exe
    + 2007-08-13 17:54 . 2009-10-29 07:40	11069952              c:\windows\system32\ieframe.dll
    + 2009-02-20 13:08 . 2009-10-29 07:40	11069952              c:\windows\system32\dllcache\ieframe.dll
    + 2009-08-10 20:08 . 2009-08-10 20:08	11315712              c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp
    + 2009-08-14 19:32 . 2009-08-14 19:32	11110912              c:\windows\Installer\1fcd54.msp
    + 2009-08-10 13:09 . 2009-08-10 13:09	17254912              c:\windows\Installer\108ca96.msp
    + 2009-08-18 11:50 . 2009-08-18 11:50	12022272              c:\windows\Installer\108ca61.msp
    + 2009-12-27 23:09 . 2009-07-19 16:41	11067392              c:\windows\ie8updates\KB976325-IE8\ieframe.dll
    + 2009-12-28 19:04 . 2009-12-28 19:04	12430848              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\d2ea8d76f015817db1607075812b555f\System.Windows.Forms.ni.dll
    + 2009-12-28 19:03 . 2009-12-28 19:03	10683392              c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\8b82e08c008924d51833cb0884bcbfc5\System.Design.ni.dll
    + 2009-12-28 19:02 . 2009-12-28 19:02	14327808              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\58c7ac6b6054038dc9346d7ec8e32b4c\PresentationFramework.ni.dll
    + 2009-12-28 19:01 . 2009-12-28 19:01	12216320              c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\94badbd64df59de7da249f71da38b1c2\PresentationCore.ni.dll
    + 2009-12-28 18:55 . 2009-12-28 18:55	11486720              c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7124a40b9998f7b63c86bd1a2125ce26\mscorlib.ni.dll
    .
    -- Snapshot auf jetziges Datum zurückgesetzt --
    .
    ((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
    REGEDIT4
    
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "pdfSaver3"="c:\programme\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe" [2004-09-05 380928]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "VTTimer"="VTTimer.exe" [2008-04-16 81920]
    "S3Trayp"="S3Trayp.exe" [2007-09-30 200704]
    "SoundMAXPnP"="c:\programme\Analog Devices\Core\smax4pnp.exe" [2008-04-04 1044480]
    "SynTPEnh"="c:\programme\Synaptics\SynTP\SynTPEnh.exe" [2008-01-18 1028096]
    "AccelerometerSysTrayApplet"="c:\windows\system32\AccelerometerSt.Exe" [2008-04-11 77672]
    "QlbCtrl"="c:\programme\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2007-11-06 177456]
    "CanonSolutionMenu"="c:\programme\Canon\SolutionMenu\CNSLMAIN.exe" [2008-03-10 689488]
    "CanonMyPrinter"="c:\programme\Canon\MyPrinter\BJMyPrt.exe" [2008-03-17 1848648]
    "Synchronization Manager"="c:\windows\system32\mobsync.exe" [2008-04-14 144384]
    "MMReminderService"="c:\programme\Mindjet\MindManager 6\MMReminderService.exe" [2006-12-13 31232]
    "Adobe Reader Speed Launcher"="c:\programme\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]
    "avgnt"="c:\programme\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]
    "DataCardMonitor"="c:\programme\T-Mobile\web'n'walk Manager\DataCardMonitor.exe" [2009-04-28 253952]
    
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
    
    c:\dokumente und einstellungen\All Users\Startmen\Programme\Autostart\
    BTTray.lnk - c:\programme\WIDCOMM\Bluetooth Software\BTTray.exe [2008-3-31 576104]
    WTGU.lnk - c:\programme\T-Mobile\web'n'walk Manager\WTGU.exe [2009-4-28 857544]
    
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
    "NoWelcomeScreen"= 1 (0x1)
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
    @="Driver"
    
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
    "AntiVirMailService"=2 (0x2)
    "AVEService"=2 (0x2)
    
    [HKEY_LOCAL_MACHINE\software\microsoft\security center]
    "AntiVirusOverride"=dword:00000001
    
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "c:\\Programme\\Google\\Google SketchUp 6\\SketchUp.exe"=
    "c:\\Programme\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
    "c:\\Programme\\Google\\Google SketchUp 7\\SketchUp.exe"=
    "c:\\Programme\\Skype\\Phone\\Skype.exe"=
    
    R0 SFAUDIO;Sonic Focus DSP Driver;c:\windows\system32\drivers\sfaudio.sys [28.03.2008 10:14 24064]
    R2 AntiVirMailService;Avira AntiVir MailGuard;c:\programme\Avira\AntiVir Desktop\avmailc.exe [01.04.2009 18:48 194817]
    R2 AntiVirSchedulerService;Avira AntiVir Planer;c:\programme\Avira\AntiVir Desktop\sched.exe [01.04.2009 18:48 108289]
    R2 AntiVirWebService;Avira AntiVir WebGuard;c:\programme\Avira\AntiVir Desktop\avwebgrd.exe [01.04.2009 18:48 434945]
    R2 CbmDev1;CbmDev1;c:\windows\system32\drivers\cbmdev1.sys [25.02.2009 11:04 12704]
    R2 CbmDev2;CbmDev2;c:\windows\system32\drivers\cbmdev2.sys [25.02.2009 11:04 12704]
    R2 CbmDev3;CbmDev3;c:\windows\system32\drivers\cbmdev3.sys [25.02.2009 11:04 12704]
    R3 S3GIGP;S3GIGP;c:\windows\system32\drivers\S3gIGPm.sys [21.07.2008 18:48 605696]
    S3 SCR3XX2K;SCR3xx USB SmartCardReader;c:\windows\system32\drivers\SCR3XX2K.sys [18.10.2007 04:41 56448]
    .
    .
    ------- Zusätzlicher Suchlauf -------
    .
    uStart Page = hxxp://www.google.de/
    IE: Nach Microsoft E&xel exportieren - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
    IE: Senden an &Bluetooth-Gerät... - c:\programme\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    IE: Senden an Bluetooth - c:\programme\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    LSP: c:\programme\Avira\AntiVir Desktop\avsda.dll
    LSP: bmnet.dll
    FF - ProfilePath - c:\dokumente und einstellungen\gustav\Anwendungsdaten\Mozilla\Firefox\Profiles\9htk6jvt.default\
    FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/
    FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
    .
    
    **************************************************************************
    
    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2009-12-29 22:09
    Windows 5.1.2600 Service Pack 3 NTFS
    
    Scanne versteckte Prozesse... 
    
    Scanne versteckte Autostarteinträge... 
    
    HKLM\Software\Microsoft\Windows\CurrentVersion\Run
      DataCardMonitor = c:\programme\T-Mobile\web'n'walk Manager\DataCardMonitor.exe?p.exe??????E? ???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????                          ???????? ?????????????? 
    
    Scanne versteckte Dateien... 
    
    Scan erfolgreich abgeschlossen
    versteckte Dateien: 0
    
    **************************************************************************
    .
    --------------------- Durch laufende Prozesse gestartete DLLs ---------------------
    
    - - - - - - - > 'winlogon.exe'(840)
    c:\programme\Avira\AntiVir Desktop\avsda.dll
    c:\windows\system32\bmnet.dll
    
    - - - - - - - > 'lsass.exe'(896)
    c:\programme\Avira\AntiVir Desktop\avsda.dll
    c:\windows\system32\bmnet.dll
    
    - - - - - - - > 'explorer.exe'(2012)
    c:\windows\system32\btmmhook.dll
    c:\windows\system32\webcheck.dll
    .
    Zeit der Fertigstellung: 2009-12-29  22:12:45
    ComboFix-quarantined-files.txt  2009-12-29 21:12
    ComboFix2.txt  2009-12-27 13:18
    ComboFix3.txt  2009-12-26 22:40
    
    Vor Suchlauf: 9 Verzeichnis(se), 83.972.014.080 Bytes frei
    Nach Suchlauf: 11 Verzeichnis(se), 83.946.348.544 Bytes frei
    
    - - End Of File - - B60BFACF301285648471621D50BF3A7C

  6. #16
    Moderator Team-Mitglied Benutzerbild von schrauber
    Registriert seit
    11.02.2008
    Ort
    Saarland
    Beiträge
    9.736

    AW: Netbook erbärmlich langsam

    Datei-Kontrolle
    (Solltest du die Datei(en) nicht finden, kannst du den Process Explorer verwenden, um uns die angeforderten Angaben zu zeigen)
    Mach bitte einen Rechtsklick auf die im folgenden genannte(n) Datei(en) (mit der Maus), schau dir an, was unter Eigenschaften steht, kopiere diese Angaben (Datei Version, Beschreibung der Datei, Copyright bei wem? FirmenName) hier in deinen Thread von:
    c:\windows\system32\drivers\cbmdev1.sys
    c:\windows\system32\drivers\cbmdev2.sys
    c:\windows\system32\drivers\cbmdev3.sys

    Datei Überprüfung
    Kannst du >>diese<< Datei(en) vorzugsweise mit Virustotal scannen und wenn das Ergebnis vorliegt, den kleinen Button "filter" drücken, dann das Ergebnis (egal wie es aussieht) kopieren und hier posten.
    Alternativ kannst du diese Datei(en) auch bei virscan oder bei jotti scannen lassen
    :

    c:\windows\system32\drivers\cbmdev1.sys
    c:\windows\system32\drivers\cbmdev2.sys
    c:\windows\system32\drivers\cbmdev3.sys
    Teile uns >>alle Einzel-Scan-Ergebnisse mittels copy&paste<< mit, inklusive Dateigröße und Name, MD5 und SHA1 (Beispiel).

    Bitte die Dateien im Falle, dass es sich um Malware handelt,
    nicht löschen,
    da wir sie zu den Herstellern von AntiVirus-, AntiSpyware Programmen und Removern
    hochladen lassen möchten,
    damit die Systeme unserer User in Zukunft geschützt werden können.
    gruß schrauber

    Neu hier? | HJT-Anleitung | Malware-Bereinigung | Forenregeln | Spenden

    Proud Member of ASAP

  7. #17
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    24.959

    AW: Netbook erbärmlich langsam

    Edit 31.01.2010:
    Thread wird mangels Rückmeldung geschlossen.
    Bei Bedarf schicke bitte eine PN an mich, ich kann den Thread ggfs. wieder öffnen.

Seite 2 von 2
ErsteErste 1 2

Aktive Benutzer

Aktive Benutzer

Aktive Benutzer in diesem Thema: 1 (Registrierte Benutzer: 0, Gäste: 1)

     

Ähnliche Themen

  1. Antworten: 3
    Letzter Beitrag: 11.10.2009, 21:20
  2. Antworten: 1
    Letzter Beitrag: 28.08.2009, 19:16
  3. Antworten: 40
    Letzter Beitrag: 24.02.2008, 22:43
  4. Rechner Bootet langsam - Virenscan langsam
    Von Jürgen52 im Forum Archiv
    Antworten: 1
    Letzter Beitrag: 05.11.2006, 18:10

Forumregeln

  • Es ist Ihnen nicht erlaubt, neue Themen zu verfassen.
  • Es ist Ihnen nicht erlaubt, auf Beiträge zu antworten.
  • Es ist Ihnen nicht erlaubt, Anhänge hochzuladen.
  • Es ist Ihnen nicht erlaubt, Ihre Beiträge zu bearbeiten.