Zeige Ergebnis 1 bis 6 von 6

Thema: Virus?

  1. #1
    Einsteiger
    Registriert seit
    07.01.2010
    Beiträge
    2

    Idee Virus?

    Huhu
    Ich wollte mal fragen.. Ob ich einen Virus habe oder nicht?
    Mein Passwort in World Of Warcraft ändert sich ständig, so dass ich jedesmal meine Geheimfrage eingeben muss, was ich aber auf nem anderem Pc mache.
    Hier mal die LogFiles
    Malwarebytes' Anti-Malware 1.43
    Datenbank Version: 3507
    Windows 5.1.2600 Service Pack 3
    Internet Explorer 6.0.2900.5512

    07.01.2010 14:21:41
    mbam-log-2010-01-07 (14-21-41).txt

    Scan-Methode: Quick-Scan
    Durchsuchte Objekte: 102799
    Laufzeit: 3 minute(s), 31 second(s)

    Infizierte Speicherprozesse: 0
    Infizierte Speichermodule: 0
    Infizierte Registrierungsschlüssel: 0
    Infizierte Registrierungswerte: 0
    Infizierte Dateiobjekte der Registrierung: 0
    Infizierte Verzeichnisse: 0
    Infizierte Dateien: 0

    Infizierte Speicherprozesse:
    (Keine bösartigen Objekte gefunden)

    Infizierte Speichermodule:
    (Keine bösartigen Objekte gefunden)

    Infizierte Registrierungsschlüssel:
    (Keine bösartigen Objekte gefunden)

    Infizierte Registrierungswerte:
    (Keine bösartigen Objekte gefunden)

    Infizierte Dateiobjekte der Registrierung:
    (Keine bösartigen Objekte gefunden)

    Infizierte Verzeichnisse:
    (Keine bösartigen Objekte gefunden)

    Infizierte Dateien:
    (Keine bösartigen Objekte gefunden)
    Und hier von Hijack this
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 13:59:50, on 07.01.2010
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programme\Alwil Software\Avast4\aswUpdSv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Programme\Alwil Software\Avast4\ashServ.exe
    C:\Programme\Java\j2re1.4.2_01\bin\jusched.exe
    C:\Programme\VIA\VIAudioi\HDADeck\HDeck.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programme\Vtune\TBPanel.exe
    C:\Programme\Messenger\msmsgs.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Programme\Alwil Software\Avast4\ashMaiSv.exe
    C:\Programme\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Programme\Skype\Phone\Skype.exe
    C:\Programme\Mozilla Firefox\firefox.exe
    C:\Programme\Skype\Toolbars\Shared\SkypeNames.exe
    C:\PROGRA~1\FREEDO~1\fdm.exe
    C:\Programme\Trend Micro\HijackThis\HijackThis.exe

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG9\avgssie.dll (file missing)
    O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Programme\Free Download Manager\iefdm2.dll
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\j2re1.4.2_01\bin\jusched.exe
    O4 - HKLM\..\Run: [HDAudDeck] C:\Programme\VIA\VIAudioi\HDADeck\HDeck.exe 1
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [TBPanel] C:\Programme\Vtune\TBPanel.exe /A
    O4 - HKCU\..\Run: [MSMSGS] "C:\Programme\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Programme\Gemeinsame Dateien\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MSI" TRANSFORMS="C:\Programme\Gemeinsame Dateien\Wise Installation Wizard\WISC5C1C0F0D62F4DBF81D4D7EF397C228B_9_09_0814.MST" WISE_SETUP_EXE_PATH="d:\Support\PhysX_9.09.0814_SystemSoftwa re.exe"
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOKALER DIENST')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETZWERKDIENST')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O8 - Extra context menu item: Alles mit FDM herunterladen - file://C:\Programme\Free Download Manager\dlall.htm
    O8 - Extra context menu item: Auswahl mit FDM herunterladen - file://C:\Programme\Free Download Manager\dlselected.htm
    O8 - Extra context menu item: Datei mit FDM herunterladen - file://C:\Programme\Free Download Manager\dllink.htm
    O8 - Extra context menu item: Videos mit FDM herunterladen - file://C:\Programme\Free Download Manager\dlfvideo.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\j2re1.4.2_01\bin\npjpi142_01.dll
    O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\j2re1.4.2_01\bin\npjpi142_01.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe
    O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\prxernsp.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\prxerdrv.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\prxerdrv.dll
    O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/Driver...reqlab_nvd.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{08AEED6F-41C3-4ECD-BADD-9DCB019298A3}: NameServer = 62.220.18.8,89.246.64.8
    O17 - HKLM\System\CS1\Services\Tcpip\..\{08AEED6F-41C3-4ECD-BADD-9DCB019298A3}: NameServer = 62.220.18.8,89.246.64.8
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\GEMEIN~1\Skype\SKYPE4~1.DLL
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Programme\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Programme\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Programme\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Programme\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Google Update Service (gupdate1ca874d27b274de) (gupdate1ca874d27b274de) - Google Inc. - C:\Programme\Google\Update\GoogleUpdate.exe
    O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

    --
    End of file - 6034 bytes
    Ich hoffe ihr könnt mir helfen


    Code:
    OTL Extras logfile created on: 07.01.2010 18:19:34 - Run 1
    OTL by OldTimer - Version 3.1.21.0     Folder = C:\Dokumente und Einstellungen\Leonn\Desktop
    Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 6.0.2900.5512)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
     
    2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 72,00% Memory free
    4,00 Gb Paging File | 3,00 Gb Available in Paging File | 87,00% Paging File free
    Paging file location(s): C:\pagefile.sys 0 0 [binary data]
     
    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
    Drive C: | 149,04 Gb Total Space | 97,36 Gb Free Space | 65,32% Space Free | Partition Type: NTFS
    Drive D: | 2,21 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded
     
    Computer Name: LEON-47M3L9Z99U
    Current User Name: Leonn
    Logged in as Administrator.
     
    Current Boot Mode: Normal
    Scan Mode: Current user
    Company Name Whitelist: Off
    Skip Microsoft Files: Off
    File Age = 30 Days
    Output = Minimal
     
    ========== Extra Registry (SafeList) ==========
     
     
    ========== File Associations ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .html [@ = htmlfile] -- C:\Programme\Internet Explorer\iexplore.exe (Microsoft Corporation)
     
    [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
    .html [@ = FirefoxHTML] -- C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
     
    ========== Shell Spawning ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    htmlfile [edit] -- Reg Error: Key error.
    htmlfile [open] -- "C:\Programme\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Programme\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    http [open] -- "C:\Programme\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
    https [open] -- "C:\Programme\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
    Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Programme\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Programme\Internet Explorer\iexplore.exe" (Microsoft Corporation)
     
    ========== Security Center Settings ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "AntiVirusDisableNotify" = 0
    "FirewallDisableNotify" = 0
    "UpdatesDisableNotify" = 0
    "AntiVirusOverride" = 0
    "FirewallOverride" = 0
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0
    "DoNotAllowExceptions" = 0
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
    "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
    "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
     
    ========== Authorized Applications List ==========
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
     
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "C:\Programme\Skype\Plugin Manager\skypePM.exe" = C:\Programme\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager -- (Skype Technologies)
    "C:\World of Warcraft\WoW-3.2.0-deDE-downloader.exe" = C:\World of Warcraft\WoW-3.2.0-deDE-downloader.exe:*:Enabled:Blizzard Downloader -- (Blizzard Entertainment)
    "C:\World of Warcraft\Launcher.exe" = C:\World of Warcraft\Launcher.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment)
    "C:\Programme\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe" = C:\Programme\Electronic Arts\Crytek\Crysis SP Demo\Bin32\Crysis.exe:*:Enabled:Crysis_32_sp_demo -- (Crytek GmbH)
    "C:\Programme\ICQ6.5\ICQ.exe" = C:\Programme\ICQ6.5\ICQ.exe:*:Enabled:ICQ6 -- (ICQ, LLC.)
    "C:\Programme\Free Download Manager\fdm.exe" = C:\Programme\Free Download Manager\fdm.exe:*:Enabled:Free Download Manager -- (FreeDownloadManager.ORG)
    "C:\WINDOWS\system32\dpvsetup.exe" = C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test -- (Microsoft Corporation)
    "C:\Programme\Steam\SteamApps\agnus570\counter-strike source\hl2.exe" = C:\Programme\Steam\SteamApps\agnus570\counter-strike source\hl2.exe:*:Enabled:hl2 -- ()
    "C:\Programme\Skype\Phone\Skype.exe" = C:\Programme\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)
     
     
    ========== HKEY_LOCAL_MACHINE Uninstall List ==========
     
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam(TM)
    "{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter
    "{1545207E-C6F3-31D7-9918-BDBB65075FBF}" = Microsoft .NET Framework 3.5 Language Pack - deu
    "{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
    "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform
    "{350C97B3-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
    "{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
    "{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
    "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
    "{60DE4033-9503-48D1-A483-7846BD217CA9}" = ICQ6.5
    "{7148F0A8-6813-11D6-A77B-00B0D0142010}" = Java 2 Runtime Environment, SE v1.4.2_01
    "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
    "{7F3AD00A-1819-4B15-BB7D-08B3586336D7}" = 3DMark06
    "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
    "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
    "{92AF2F5A-4407-4A03-A80A-5A2582264746}" = Crysis(R) SP Demo
    "{9309DD7E-EBFE-3C95-8B47-30D3A012F606}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - DEU
    "{9580813D-94B1-4C28-9426-A441E2BB29A5}" = Counter-Strike: Source
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{A1071AEB-B0EF-3F5F-BC84-83A270EBE496}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - DEU
    "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{A96E97134CA649888820BCDE5E300BBD}" = H.264 Decoder
    "{AAC389499AEF40428987B3D30CFC76C9}" = MKV Splitter
    "{AEF9DC35ADDF4825B049ACBFD1C6EB37}" = AAC Decoder
    "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
    "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
    "{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
    "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
    "{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}" = NVIDIA PhysX
    "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
    "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
    "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
    "{E78BFA60-5393-4C38-82AB-E8019E464EB4}" = Microsoft .NET Framework 1.1 German Language Pack
    "{F0C289D1-44A9-4792-AF00-380FBB5C3232}" = MEGA ePower 85 PLC Utility
    "Adobe Acrobat 5.0" = Adobe Acrobat 5.0
    "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
    "avast!" = avast! Antivirus
    "CCleaner" = CCleaner
    "DivX Plus DirectShow Filters" = DivX Plus DirectShow Filters
    "Free Audio CD Burner_is1" = Free Audio CD Burner version 1.2
    "Free Download Manager_is1" = Free Download Manager 3.0
    "Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.2
    "Google Chrome" = Google Chrome
    "HijackThis" = HijackThis 2.0.2
    "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Plattform-Geräte-Manager
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
    "Microsoft .NET Framework 1.1  (1033)" = Microsoft .NET Framework 1.1
    "Microsoft .NET Framework 3.5 Language Pack - deu" = Microsoft .NET Framework 3.5 Language Pack - DEU
    "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
    "Mozilla Firefox (3.5.6)" = Mozilla Firefox (3.5.6)
    "NVIDIA Display Control Panel" = NVIDIA Display Control Panel
    "NVIDIA Drivers" = NVIDIA Drivers
    "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
    "OpenAL" = OpenAL
    "PerformanceTest 7_is1" = PerformanceTest v7.0
    "Proxifier_is1" = Proxifier version 2.9
    "SystemRequirementsLab" = System Requirements Lab
    "Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
    "TeamSpeak 3 Client" = TeamSpeak 3 Client
    "Uninstall_is1" = Uninstall 1.0.0.1
    "Vtune_is1" = Vtune 7.6
    "Windows XP Service Pack" = Windows XP Service Pack 3
    "WinRAR archiver" = WinRAR
    "World of Warcraft" = World of Warcraft
    "XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
    "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
     
    ========== Last 10 Event Log Errors ==========
     
    [ Application Events ]
    Error - 26.12.2009 17:42:52 | Computer Name = LEON-47M3L9Z99U | Source = .NET Runtime 2.0 Error Reporting | ID = 1000
    Description = Faulting application presentationfontcache.exe, version 3.0.6920.1109,
     stamp 470bc696, faulting module mscorwks.dll, version 2.0.50727.1433, stamp 471ef729,
     debug? 0, fault address 0x001496a2.
     
    Error - 27.12.2009 08:07:20 | Computer Name = LEON-47M3L9Z99U | Source = Application Hang | ID = 1002
    Description = Stillstehende Anwendung Neuz.exe, Version 3.8.22.1, Stillstandmodul
     hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000.
     
    [ System Events ]
    Error - 30.12.2009 07:25:22 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7000
    Description = Der Dienst "Cardex" wurde aufgrund folgenden Fehlers nicht gestartet:
       %%183
     
    Error - 30.12.2009 18:52:01 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7000
    Description = Der Dienst "Cardex" wurde aufgrund folgenden Fehlers nicht gestartet:
       %%183
     
    Error - 31.12.2009 07:15:03 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7000
    Description = Der Dienst "Cardex" wurde aufgrund folgenden Fehlers nicht gestartet:
       %%183
     
    Error - 01.01.2010 07:27:17 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7000
    Description = Der Dienst "Cardex" wurde aufgrund folgenden Fehlers nicht gestartet:
       %%183
     
    Error - 02.01.2010 07:36:08 | Computer Name = LEON-47M3L9Z99U | Source = System Error | ID = 1003
    Description = Fehlercode 100000d1, 1. Parameter b4e96b14, 2. Parameter 00000002,
     3. Parameter 00000008, 4. Parameter b4e96b14.
     
    Error - 06.01.2010 12:33:16 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7034
    Description = Dienst "AVG Free E-mail Scanner" wurde unerwartet beendet. Dies ist
     bereits 1 Mal passiert.
     
    Error - 07.01.2010 08:54:32 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7000
    Description = Der Dienst "Cardex" wurde aufgrund folgenden Fehlers nicht gestartet:
       %%183
     
    Error - 07.01.2010 08:57:13 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7009
    Description = Zeitüberschreitung (30000 ms) beim Verbindungsversuch mit Dienst WMI-Leistungsadapter.
     
    Error - 07.01.2010 08:57:13 | Computer Name = LEON-47M3L9Z99U | Source = Service Control Manager | ID = 7000
    Description = Der Dienst "WMI-Leistungsadapter" wurde aufgrund folgenden Fehlers
     nicht gestartet:   %%1053
     
    Error - 07.01.2010 08:58:47 | Computer Name = LEON-47M3L9Z99U | Source = DCOM | ID = 10010
    Description = Der Server "{781B925F-0BF8-4C7B-A2A8-A8B11B488A07}" konnte innerhalb
     des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
     
     
    < End of report >
    Code:
    OTL logfile created on: 07.01.2010 18:19:34 - Run 1
    OTL by OldTimer - Version 3.1.21.0     Folder = C:\Dokumente und Einstellungen\Leonn\Desktop
    Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 6.0.2900.5512)
    Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
     
    2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 72,00% Memory free
    4,00 Gb Paging File | 3,00 Gb Available in Paging File | 87,00% Paging File free
    Paging file location(s): C:\pagefile.sys 0 0 [binary data]
     
    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programme
    Drive C: | 149,04 Gb Total Space | 97,36 Gb Free Space | 65,32% Space Free | Partition Type: NTFS
    Drive D: | 2,21 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded
     
    Computer Name: LEON-47M3L9Z99U
    Current User Name: Leonn
    Logged in as Administrator.
     
    Current Boot Mode: Normal
    Scan Mode: Current user
    Company Name Whitelist: Off
    Skip Microsoft Files: Off
    File Age = 30 Days
    Output = Minimal
     
    ========== Processes (SafeList) ==========
     
    PRC - C:\Dokumente und Einstellungen\Leonn\Desktop\OTL.exe (OldTimer Tools)
    PRC - C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation)
    PRC - C:\Programme\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
    PRC - C:\Programme\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
    PRC - C:\Programme\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
    PRC - C:\Programme\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
    PRC - C:\Programme\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
    PRC - C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
    PRC - C:\Programme\Skype\Phone\Skype.exe (Skype Technologies S.A.)
    PRC - C:\Programme\Skype\Plugin Manager\skypePM.exe (Skype Technologies)
    PRC - C:\Programme\Vtune\TBPANEL.exe ()
    PRC - C:\Programme\Skype\Toolbars\Shared\SkypeNames.exe (Skype Technologies S.A.)
    PRC - C:\Programme\Free Download Manager\fdm.exe (FreeDownloadManager.ORG)
    PRC - C:\Programme\VIA\VIAudioi\HDADeck\HDeck.exe (VIA Technologies, Inc.)
    PRC - C:\Programme\Windows Media Player\wmplayer.exe (Microsoft Corporation)
    PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    PRC - C:\Programme\Java\j2re1.4.2_01\bin\jusched.exe ()
     
     
    ========== Modules (SafeList) ==========
     
    MOD - C:\Dokumente und Einstellungen\Leonn\Desktop\OTL.exe (OldTimer Tools)
     
     
    ========== Win32 Services (SafeList) ==========
     
    SRV - (npggsvc) -- C:\WINDOWS\System32\GameMon.des (INCA Internet Co., Ltd.)
    SRV - (gupdate1ca874d27b274de) Google Update Service (gupdate1ca874d27b274de) -- C:\Programme\Google\Update\GoogleUpdate.exe (Google Inc.)
    SRV - (avast! Antivirus) -- C:\Programme\Alwil Software\Avast4\ashServ.exe (ALWIL Software)
    SRV - (avast! Mail Scanner) -- C:\Programme\Alwil Software\Avast4\ashMaiSv.exe (ALWIL Software)
    SRV - (avast! Web Scanner) -- C:\Programme\Alwil Software\Avast4\ashWebSv.exe (ALWIL Software)
    SRV - (aswUpdSv) -- C:\Programme\Alwil Software\Avast4\aswUpdSv.exe (ALWIL Software)
    SRV - (nvsvc) -- C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation)
     
     
    ========== Driver Services (SafeList) ==========
     
    DRV - (aswMon2) -- C:\WINDOWS\system32\drivers\aswmon2.sys (ALWIL Software)
    DRV - (aswSP) -- C:\WINDOWS\system32\drivers\aswSP.sys (ALWIL Software)
    DRV - (aswFsBlk) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys (ALWIL Software)
    DRV - (aswTdi) -- C:\WINDOWS\system32\drivers\aswTdi.sys (ALWIL Software)
    DRV - (aswRdr) -- C:\WINDOWS\system32\drivers\aswRdr.sys (ALWIL Software)
    DRV - (Aavmker4) -- C:\WINDOWS\system32\drivers\aavmker4.sys (ALWIL Software)
    DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
    DRV - (PxHelp20) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
    DRV - (ENTECH) -- C:\WINDOWS\system32\drivers\Entech.sys (EnTech Taiwan)
    DRV - (VIAHdAudAddService) -- C:\WINDOWS\system32\drivers\viahduaa.sys (VIA Technologies, Inc.)
    DRV - (Secdrv) -- C:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
    DRV - (HDAudBus) -- C:\WINDOWS\system32\drivers\hdaudbus.sys (Windows (R) Server 2003 DDK provider)
    DRV - (monfilt) -- C:\WINDOWS\system32\drivers\monfilt.sys (Creative Technology Ltd.)
    DRV - (nvnetbus) -- C:\WINDOWS\system32\drivers\nvnetbus.sys (NVIDIA Corporation)
    DRV - (NVENETFD) -- C:\WINDOWS\system32\drivers\NVENETFD.sys (NVIDIA Corporation)
    DRV - (nvsmu) -- C:\WINDOWS\system32\drivers\nvsmu.sys (NVIDIA Corporation)
    DRV - (TBPanel) -- C:\WINDOWS\system32\drivers\TBPanel.sys (Windows (R) 2000 DDK provider)
    DRV - (Cardex) -- C:\WINDOWS\system32\drivers\TBPanel.sys (Windows (R) 2000 DDK provider)
    DRV - (Ptilink) -- C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)
     
     
    ========== Standard Registry (SafeList) ==========
     
     
    ========== Internet Explorer ==========
     
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
     
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
     
    ========== FireFox ==========
     
    FF - prefs.js..extensions.enabledItems: fdm_ffext@freedownloadmanager.org:1.3.4
    FF - prefs.js..extensions.enabledItems: {B13721C7-F507-4982-B2E5-502A71474FED}:3.3.0.3971
     
    FF - HKLM\software\mozilla\Mozilla Firefox 3.5.6\extensions\\Components: C:\Programme\Mozilla Firefox\components [2009.12.25 00:01:16 | 00,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.5.6\extensions\\Plugins: C:\Programme\Mozilla Firefox\plugins [2009.12.28 10:44:19 | 00,000,000 | ---D | M]
     
    [2009.12.25 00:01:19 | 00,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Mozilla\Extensions
    [2010.01.07 14:17:55 | 00,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Mozilla\Firefox\Profiles\d2q9pbo6.default\extensions
    [2010.01.07 15:41:40 | 00,000,000 | ---D | M] -- C:\Programme\Mozilla Firefox\extensions
    [2009.12.02 09:31:53 | 00,001,392 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\amazondotcom-de.xml
    [2009.12.02 09:31:53 | 00,002,344 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\eBay-de.xml
    [2009.12.02 09:31:53 | 00,006,805 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\leo_ende_de.xml
    [2009.12.02 09:31:53 | 00,001,178 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\wikipedia-de.xml
    [2009.12.02 09:31:53 | 00,000,801 | ---- | M] () -- C:\Programme\Mozilla Firefox\searchplugins\yahoo-de.xml
     
    O1 HOSTS File: (820 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1       localhost
    O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx ()
    O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programme\AVG\AVG9\avgssie.dll File not found
    O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Programme\Free Download Manager\iefdm2.dll ()
    O4 - HKLM..\Run: [avast!] C:\Programme\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
    O4 - HKLM..\Run: [HDAudDeck] C:\Programme\VIA\VIAudioi\HDADeck\HDeck.exe (VIA Technologies, Inc.)
    O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
    O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
    O4 - HKLM..\Run: [nwiz]  File not found
    O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Programme\Java\j2re1.4.2_01\bin\jusched.exe ()
    O4 - HKCU..\Run: [TBPanel] C:\Programme\Vtune\TBPanel.exe ()
    O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O8 - Extra context menu item: Alles mit FDM herunterladen - C:\Programme\Free Download Manager\dlall.htm ()
    O8 - Extra context menu item: Auswahl mit FDM herunterladen - C:\Programme\Free Download Manager\dlselected.htm ()
    O8 - Extra context menu item: Datei mit FDM herunterladen - C:\Programme\Free Download Manager\dllink.htm ()
    O8 - Extra context menu item: Videos mit FDM herunterladen - C:\Programme\Free Download Manager\dlfvideo.htm ()
    O9 - Extra 'Tools' menuitem : Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
    O9 - Extra Button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)
    O9 - Extra 'Tools' menuitem : ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programme\ICQ6.5\ICQ.exe (ICQ, LLC.)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\PrxerNsp.dll (Initex Software)
    O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\PrxerDrv.dll (Initex Software)
    O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\PrxerDrv.dll (Initex Software)
    O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
    O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_01)
    O16 - DPF: {CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_01)
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
    O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\Ole DB\msdaipp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Gemeinsame Dateien\Skype\Skype4COM.dll (Skype Technologies)
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O24 - Desktop Components:0 (Die derzeitige Homepage) - About:Home
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2009.12.24 23:30:49 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
    O32 - AutoRun File - [2005.09.12 01:00:34 | 00,028,672 | R--- | M] (Dipl.-Ing. Stefan Krueger <skrueger@installsite.org>) - D:\autorun.exe -- [ CDFS ]
    O32 - AutoRun File - [2005.09.12 01:00:34 | 00,000,043 | R--- | M] () - D:\autorun.inf -- [ CDFS ]
    O32 - AutoRun File - [2005.09.12 01:00:34 | 00,001,042 | R--- | M] () - D:\autorun.ini -- [ CDFS ]
    O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
    O34 - HKLM BootExecute: (aswBoot.exe /M:b4bec14619) - C:\WINDOWS\System32\aswBoot.exe (ALWIL Software)
    O35 - comfile [open] -- "%1" %*
    O35 - exefile [open] -- "%1" %*
     
    ========== Files/Folders - Created Within 30 Days ==========
     
    [2010.01.07 18:15:32 | 00,513,536 | ---- | C] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Leonn\Desktop\OTL.exe
    [2010.01.07 14:48:10 | 00,000,000 | ---D | C] -- C:\Programme\CCleaner
    [2010.01.07 14:14:23 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Malwarebytes
    [2010.01.07 14:14:19 | 00,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
    [2010.01.07 14:14:17 | 00,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
    [2010.01.07 14:14:17 | 00,000,000 | ---D | C] -- C:\Programme\Malwarebytes' Anti-Malware
    [2010.01.07 14:14:17 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes
    [2010.01.07 13:59:31 | 00,000,000 | ---D | C] -- C:\Programme\Trend Micro
    [2010.01.06 20:05:29 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Kaspersky Lab Setup Files
    [2010.01.06 17:44:49 | 00,023,120 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
    [2010.01.06 17:44:48 | 00,048,560 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
    [2010.01.06 17:44:47 | 00,027,408 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
    [2010.01.06 17:44:46 | 00,097,480 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\AvastSS.scr
    [2010.01.06 17:44:45 | 00,114,768 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
    [2010.01.06 17:44:45 | 00,094,160 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
    [2010.01.06 17:44:45 | 00,093,424 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
    [2010.01.06 17:44:45 | 00,020,560 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
    [2010.01.06 17:39:46 | 00,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft
    [2010.01.06 17:39:32 | 01,280,480 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe
    [2010.01.06 17:39:32 | 01,060,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFC71.dll
    [2010.01.06 17:39:32 | 00,499,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSVCP71.dll
    [2010.01.06 17:39:32 | 00,348,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSVCR71.dll
    [2010.01.06 17:39:26 | 00,000,000 | ---D | C] -- C:\Programme\Alwil Software
    [2010.01.06 17:37:22 | 00,000,000 | --SD | M] -- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\Microsoft
    [2010.01.06 17:37:22 | 00,000,000 | --SD | M] -- C:\Dokumente und Einstellungen\LocalService\Anwendungsdaten\Microsoft
    [2010.01.06 17:37:22 | 00,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft
    [2010.01.06 17:26:05 | 00,000,000 | -H-D | C] -- C:\$AVG
    [2010.01.06 17:25:32 | 00,000,000 | ---D | C] -- C:\Programme\AVG
    [2010.01.06 17:25:31 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\avg9
    [2010.01.03 16:42:07 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\ICQ
    [2010.01.03 12:16:45 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Acreon
    [2010.01.03 12:16:43 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\._Revolution_
    [2009.12.30 23:51:47 | 00,000,000 | ---D | C] -- C:\WINDOWS\Minidump
    [2009.12.30 14:41:23 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\DVDVideoSoft
    [2009.12.30 14:41:17 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\DVDVideoSoft
    [2009.12.30 14:41:17 | 00,000,000 | ---D | C] -- C:\Programme\DVDVideoSoft
    [2009.12.28 12:29:12 | 00,000,000 | ---D | C] -- C:\3d92272009b7ffaf47378ce499ad
    [2009.12.28 02:34:19 | 00,112,640 | ---- | C] (inmate) -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\PIC 0_38.scr
    [2009.12.28 00:50:00 | 00,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Google
    [2009.12.28 00:34:53 | 01,628,920 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxsfs.dll
    [2009.12.28 00:34:53 | 00,551,672 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\px.dll
    [2009.12.28 00:34:53 | 00,518,904 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxdrv.dll
    [2009.12.28 00:34:53 | 00,379,640 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxwave.dll
    [2009.12.28 00:34:53 | 00,187,128 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxmas.dll
    [2009.12.28 00:34:53 | 00,129,784 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxafs.dll
    [2009.12.28 00:34:53 | 00,120,056 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxcpyi64.exe
    [2009.12.28 00:34:53 | 00,118,520 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxinsi64.exe
    [2009.12.28 00:34:53 | 00,088,824 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\vxblock.dll
    [2009.12.28 00:34:53 | 00,072,440 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxhpinst.exe
    [2009.12.28 00:34:53 | 00,066,296 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxcpya64.exe
    [2009.12.28 00:34:53 | 00,064,760 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\pxinsa64.exe
    [2009.12.28 00:34:53 | 00,043,528 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\drivers\PxHelp20.sys
    [2009.12.28 00:34:53 | 00,009,464 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\drivers\cdralw2k.sys
    [2009.12.28 00:34:53 | 00,009,336 | ---- | C] (Sonic Solutions) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys
    [2009.12.28 00:34:42 | 00,000,000 | ---D | M] -- C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Google
    [2009.12.28 00:34:35 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\Google
    [2009.12.28 00:34:34 | 00,000,000 | ---D | C] -- C:\Programme\Google
    [2009.12.28 00:31:14 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\DivX Shared
    [2009.12.28 00:31:14 | 00,000,000 | ---D | C] -- C:\Programme\DivX
    [2009.12.28 00:31:13 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Eigene Videos
    [2009.12.28 00:24:11 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NOS
    [2009.12.27 19:06:18 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\TeamViewer
    [2009.12.27 19:06:09 | 00,000,000 | ---D | C] -- C:\Programme\TeamViewer
    [2009.12.27 19:05:58 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\temp
    [2009.12.27 17:36:52 | 00,000,000 | ---D | C] -- C:\Programme\Steam
    [2009.12.27 17:27:22 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\teamspeak2
    [2009.12.27 17:27:19 | 00,034,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\lhacm.acm
    [2009.12.27 17:27:16 | 00,000,000 | ---D | C] -- C:\Programme\Teamspeak2_RC2
    [2009.12.27 17:25:52 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\TS3Client
    [2009.12.27 17:25:16 | 00,000,000 | ---D | C] -- C:\Programme\TeamSpeak 3 Client
    [2009.12.27 17:12:42 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Skype
    [2009.12.27 17:12:35 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Skype
    [2009.12.27 17:10:57 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
    [2009.12.27 16:59:17 | 00,073,728 | ---- | C] (Initex Software) -- C:\WINDOWS\System32\PrxerDrv.dll
    [2009.12.27 16:59:17 | 00,061,440 | ---- | C] (Initex Software) -- C:\WINDOWS\System32\PrxerNsp.dll
    [2009.12.27 16:59:17 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SPORDER.DLL
    [2009.12.27 16:59:17 | 00,000,000 | ---D | C] -- C:\Programme\Proxifier
    [2009.12.26 22:51:06 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\Identities
    [2009.12.26 22:42:23 | 00,000,000 | ---D | C] -- C:\Programme\MSBuild
    [2009.12.26 22:42:18 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
    [2009.12.26 22:42:13 | 00,000,000 | ---D | C] -- C:\Programme\Reference Assemblies
    [2009.12.26 22:42:13 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
    [2009.12.26 22:41:47 | 00,014,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg2.dll
    [2009.12.26 22:30:23 | 03,404,560 | ---- | C] (INCA Internet Co., Ltd.) -- C:\WINDOWS\System32\GameMon.des
    [2009.12.26 22:29:31 | 00,004,682 | ---- | C] (INCA Internet Co., Ltd.) -- C:\WINDOWS\System32\npptNT2.sys
    [2009.12.26 22:29:24 | 00,000,000 | ---D | C] -- C:\Program Files
    [2009.12.26 22:23:37 | 00,000,000 | ---D | C] -- C:\Programme\gPotato.eu
    [2009.12.26 19:55:47 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\ICQ
    [2009.12.26 19:55:25 | 00,000,000 | ---D | C] -- C:\Programme\ICQ6.5
    [2009.12.26 14:07:24 | 00,413,696 | ---- | C] (Creative Labs) -- C:\WINDOWS\System32\wrap_oal.dll
    [2009.12.26 14:07:24 | 00,110,592 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\System32\OpenAL32.dll
    [2009.12.26 14:07:24 | 00,000,000 | ---D | C] -- C:\Programme\OpenAL
    [2009.12.26 14:06:59 | 00,027,672 | R--- | C] (EnTech Taiwan) -- C:\WINDOWS\System32\drivers\Entech.sys
    [2009.12.26 14:06:59 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Futuremark
    [2009.12.26 14:06:58 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Futuremark Shared
    [2009.12.26 14:06:09 | 00,000,000 | ---D | C] -- C:\Programme\Futuremark
    [2009.12.26 12:15:37 | 00,000,000 | -HSD | C] -- C:\RECYCLER
    [2009.12.26 00:53:34 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\ApplicationHistory
    [2009.12.26 00:47:10 | 00,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aclayers.dll
    [2009.12.26 00:43:01 | 02,191,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
    [2009.12.26 00:43:00 | 02,147,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
    [2009.12.26 00:43:00 | 00,737,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lsasrv.dll
    [2009.12.26 00:42:59 | 02,026,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
    [2009.12.26 00:42:30 | 00,333,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srv.sys
    [2009.12.26 00:42:18 | 00,455,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
    [2009.12.26 00:42:08 | 01,172,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml3.dll
    [2009.12.26 00:42:05 | 00,337,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\netapi32.dll
    [2009.12.26 00:42:02 | 00,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadce.dll
    [2009.12.26 00:41:43 | 00,691,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcomm.dll
    [2009.12.26 00:41:26 | 00,273,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bthport.sys
    [2009.12.26 00:41:23 | 00,203,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rmcast.sys
    [2009.12.26 00:40:50 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Windows Genuine Advantage
    [2009.12.26 00:40:43 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
    [2009.12.26 00:40:42 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
    [2009.12.26 00:37:06 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
    [2009.12.26 00:36:19 | 00,000,000 | ---D | C] -- C:\WINDOWS\pss
    [2009.12.25 23:45:00 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\My Games
    [2009.12.25 23:41:52 | 00,000,000 | ---D | C] -- C:\Programme\Electronic Arts
    [2009.12.25 21:50:21 | 00,000,000 | ---D | C] -- C:\Downloads
    [2009.12.25 21:49:28 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Free Download Manager
    [2009.12.25 21:49:25 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\FreeDownloadManager.ORG
    [2009.12.25 21:49:25 | 00,000,000 | ---D | C] -- C:\Programme\Free Download Manager
    [2009.12.25 21:46:03 | 00,000,000 | ---D | C] -- C:\Programme\MSI
    [2009.12.25 13:12:05 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\PassMark
    [2009.12.25 13:12:04 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\PassMark
    [2009.12.25 13:11:53 | 00,000,000 | ---D | C] -- C:\Programme\PerformanceTest
    [2009.12.25 13:11:53 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\PassMark
    [2009.12.25 12:58:07 | 00,000,000 | ---D | C] -- C:\WINDOWS\Profiles
    [2009.12.25 12:58:06 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\My eBooks
    [2009.12.25 12:58:06 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\InterTrust
    [2009.12.25 12:58:06 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Adobe
    [2009.12.25 12:58:06 | 00,000,000 | ---D | C] -- C:\Programme\Adobe
    [2009.12.25 12:57:20 | 00,306,688 | ---- | C] (InstallShield Software Corporation) -- C:\WINDOWS\IsUninst.exe
    [2009.12.25 12:53:31 | 00,193,536 | ---- | C] (Gregory Maynard-Hoare) -- C:\RefreshLock.exe
    [2009.12.25 12:04:38 | 00,000,000 | ---D | C] -- C:\Programme\AGEIA Technologies
    [2009.12.25 12:04:38 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\AGEIA
    [2009.12.25 12:03:47 | 11,374,592 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcompiler.dll
    [2009.12.25 12:03:47 | 00,069,632 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll
    [2009.12.25 12:03:44 | 00,000,000 | ---D | C] -- C:\NVIDIA
    [2009.12.25 11:58:50 | 00,000,000 | ---D | C] -- C:\Programme\SystemRequirementsLab
    [2009.12.25 10:57:26 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\Blizzard Entertainment
    [2009.12.25 10:31:08 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Blizzard Entertainment
    [2009.12.25 10:28:09 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\WinRAR
    [2009.12.25 10:27:58 | 00,000,000 | ---D | C] -- C:\Programme\WinRAR
    [2009.12.25 01:10:38 | 00,000,000 | ---D | C] -- C:\World of Warcraft
    [2009.12.25 00:36:29 | 00,000,000 | ---D | C] -- C:\World of Warcraft.temp
    [2009.12.25 00:35:58 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Blizzard
    [2009.12.25 00:35:07 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Blizzard Entertainment
    [2009.12.25 00:30:07 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Videos
    [2009.12.25 00:29:48 | 00,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
    [2009.12.25 00:29:46 | 00,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
    [2009.12.25 00:24:57 | 01,372,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6.dll
    [2009.12.25 00:24:57 | 00,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml6r.dll
    [2009.12.25 00:24:57 | 00,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxml6r.dll
    [2009.12.25 00:24:56 | 01,119,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmsdmoe2.dll
    [2009.12.25 00:24:56 | 01,001,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmvdmoe2.dll
    [2009.12.25 00:24:56 | 00,897,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmspdmoe.dll
    [2009.12.25 00:24:56 | 00,485,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmspdmod.dll
    [2009.12.25 00:24:56 | 00,233,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpdxm.dll
    [2009.12.25 00:24:56 | 00,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpns.dll
    [2009.12.25 00:24:56 | 00,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpband.dll
    [2009.12.25 00:24:55 | 04,874,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmp.dll
    [2009.12.25 00:24:55 | 00,202,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmerror.dll
    [2009.12.25 00:24:55 | 00,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmidx.dll
    [2009.12.25 00:24:55 | 00,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpasf.dll
    [2009.12.25 00:24:54 | 00,786,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migrate.exe
    [2009.12.25 00:24:54 | 00,384,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mp4sdmod.dll
    [2009.12.25 00:24:54 | 00,368,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpvis.dll
    [2009.12.25 00:24:54 | 00,310,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mp43dmod.dll
    [2009.12.25 00:24:54 | 00,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msaud32.acm
    [2009.12.25 00:24:54 | 00,290,816 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\System32\dllcache\l3codeca.acm
    [2009.12.25 00:24:54 | 00,086,016 | ---- | C] (Sipro Lab Telecom Inc.) -- C:\WINDOWS\System32\dllcache\sl_anet.acm
    [2009.12.25 00:24:54 | 00,052,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspmsnsv.dll
    [2009.12.25 00:24:53 | 01,119,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmsdmoe2.dll
    [2009.12.25 00:24:53 | 01,001,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmvdmoe2.dll
    [2009.12.25 00:24:53 | 00,897,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmspdmoe.dll
    [2009.12.25 00:24:53 | 00,485,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmspdmod.dll
    [2009.12.25 00:24:53 | 00,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmidx.dll
    [2009.12.25 00:24:53 | 00,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmpasf.dll
    [2009.12.25 00:24:52 | 00,384,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mp4sdmod.dll
    [2009.12.25 00:24:52 | 00,310,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mp43dmod.dll
    [2009.12.25 00:24:52 | 00,202,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmerror.dll
    [2009.12.25 00:24:51 | 00,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\irbus.sys
    [2009.12.25 00:24:51 | 00,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsdupd.exe
    [2009.12.25 00:24:49 | 01,888,992 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3duag.dll
    [2009.12.25 00:24:49 | 00,870,784 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3d1ag.dll
    [2009.12.25 00:24:49 | 00,516,768 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ativvaxx.dll
    [2009.12.25 00:24:49 | 00,377,984 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvaa.dll
    [2009.12.25 00:24:49 | 00,233,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\azroles.dll
    [2009.12.25 00:24:49 | 00,229,376 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2cqag.dll
    [2009.12.25 00:24:49 | 00,201,728 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvag.dll
    [2009.12.25 00:24:49 | 00,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\aaclient.dll
    [2009.12.25 00:24:49 | 00,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bthprops.cpl
    [2009.12.25 00:24:49 | 00,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\blastcln.exe
    [2009.12.25 00:24:49 | 00,050,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\btpanui.dll
    [2009.12.25 00:24:49 | 00,032,768 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativtmxx.dll
    [2009.12.25 00:24:49 | 00,023,040 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativmvxx.ax
    [2009.12.25 00:24:49 | 00,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bthci.dll
    [2009.12.25 00:24:49 | 00,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\auditusr.exe
    [2009.12.25 00:24:49 | 00,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cmsetacl.dll
    [2009.12.25 00:24:49 | 00,009,728 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativdaxx.ax
    [2009.12.25 00:24:49 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx2.dll
    [2009.12.25 00:24:49 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx4.dll
    [2009.12.25 00:24:49 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx3.dll
    [2009.12.25 00:24:48 | 00,651,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3ui.dll
    [2009.12.25 00:24:48 | 00,371,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\html.iec
    [2009.12.25 00:24:48 | 00,193,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fsquirt.exe
    [2009.12.25 00:24:48 | 00,184,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapp3hst.dll
    [2009.12.25 00:24:48 | 00,182,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapphost.dll
    [2009.12.25 00:24:48 | 00,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eappcfg.dll
    [2009.12.25 00:24:48 | 00,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eappgnui.dll
    [2009.12.25 00:24:48 | 00,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieencode.dll
    [2009.12.25 00:24:48 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\firewall.cpl
    [2009.12.25 00:24:48 | 00,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3cfg.dll
    [2009.12.25 00:24:48 | 00,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fwcfg.dll
    [2009.12.25 00:24:48 | 00,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapqec.dll
    [2009.12.25 00:24:48 | 00,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3msm.dll
    [2009.12.25 00:24:48 | 00,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dhcpqec.dll
    [2009.12.25 00:24:48 | 00,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eappprxy.dll
    [2009.12.25 00:24:48 | 00,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3gpclnt.dll
    [2009.12.25 00:24:48 | 00,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dimsroam.dll
    [2009.12.25 00:24:48 | 00,032,285 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\hsfcisp2.dll
    [2009.12.25 00:24:48 | 00,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\eapolqec.dll
    [2009.12.25 00:24:48 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3api.dll
    [2009.12.25 00:24:48 | 00,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\httpapi.dll
    [2009.12.25 00:24:48 | 00,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fltmc.exe
    [2009.12.25 00:24:48 | 00,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dot3dlg.dll
    [2009.12.25 00:24:47 | 00,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcex.dll
    [2009.12.25 00:24:47 | 00,380,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irprops.cpl
    [2009.12.25 00:24:47 | 00,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\microsoft.managementconsole.dll
    [2009.12.25 00:24:47 | 00,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdadiag.dll
    [2009.12.25 00:24:47 | 00,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcfxcommon.dll
    [2009.12.25 00:24:47 | 00,086,016 | ---- | C] (Conexant) -- C:\WINDOWS\System32\mdmxsdk.dll
    [2009.12.25 00:24:47 | 00,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\l2gpstore.dll
    [2009.12.25 00:24:47 | 00,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcperf.exe
    [2009.12.25 00:24:47 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsmsno.dll
    [2009.12.25 00:24:47 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsmsfi.dll
    [2009.12.25 00:24:47 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdukx.dll
    [2009.12.25 00:24:47 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdno1.dll
    [2009.12.25 00:24:47 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdfi1.dll
    [2009.12.25 00:24:47 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinmal.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpash.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdnepr.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmlt48.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmlt47.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdiultn.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinben.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdinbe1.dll
    [2009.12.25 00:24:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbhc.dll
    [2009.12.25 00:24:47 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmaori.dll
    [2009.12.25 00:24:46 | 02,981,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpsp2res.dll
    [2009.12.25 00:24:46 | 01,737,856 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\mtxparhd.dll
    [2009.12.25 00:24:46 | 00,438,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpob2res.dll
    [2009.12.25 00:24:46 | 00,412,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\photometadatahandler.dll
    [2009.12.25 00:24:46 | 00,397,056 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\s3gnb.dll
    [2009.12.25 00:24:46 | 00,313,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\p2pgraph.dll
    [2009.12.25 00:24:46 | 00,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rhttpaa.dll
    [2009.12.25 00:24:46 | 00,286,792 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slextspk.dll
    [2009.12.25 00:24:46 | 00,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napmontr.dll
    [2009.12.25 00:24:46 | 00,188,508 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slgen.dll
    [2009.12.25 00:24:46 | 00,177,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napstat.exe
    [2009.12.25 00:24:46 | 00,155,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssha.dll
    [2009.12.25 00:24:46 | 00,153,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\p2p.dll
    [2009.12.25 00:24:46 | 00,151,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qagent.dll
    [2009.12.25 00:24:46 | 00,145,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\onex.dll
    [2009.12.25 00:24:46 | 00,115,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\p2pnetsh.dll
    [2009.12.25 00:24:46 | 00,105,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\p2pgasvc.dll
    [2009.12.25 00:24:46 | 00,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msshavmsg.dll
    [2009.12.25 00:24:46 | 00,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qutil.dll
    [2009.12.25 00:24:46 | 00,073,832 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slcoinst.dll
    [2009.12.25 00:24:46 | 00,073,796 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slserv.exe
    [2009.12.25 00:24:46 | 00,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qcliprov.dll
    [2009.12.25 00:24:46 | 00,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rasqec.dll
    [2009.12.25 00:24:46 | 00,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\powercfg.exe
    [2009.12.25 00:24:46 | 00,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slrundll.exe
    [2009.12.25 00:24:46 | 00,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\setupn.exe
    [2009.12.25 00:24:46 | 00,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\napipsec.dll
    [2009.12.25 00:24:46 | 00,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sdhcinst.dll
    [2009.12.25 00:24:46 | 00,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\netsetup.cpl
    [2009.12.25 00:24:46 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\smbinst.exe
    [2009.12.25 00:24:45 | 00,779,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpsp3res.dll
    [2009.12.25 00:24:45 | 00,712,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\windowscodecs.dll
    [2009.12.25 00:24:45 | 00,575,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll
    [2009.12.25 00:24:45 | 00,575,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuapi.dll
    [2009.12.25 00:24:45 | 00,346,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\windowscodecsext.dll
    [2009.12.25 00:24:45 | 00,276,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmphoto.dll
    [2009.12.25 00:24:45 | 00,217,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaucpl.cpl
    [2009.12.25 00:24:45 | 00,168,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuauclt1.exe
    [2009.12.25 00:24:45 | 00,148,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wscui.cpl
    [2009.12.25 00:24:45 | 00,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\strmfilt.dll
    [2009.12.25 00:24:45 | 00,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wlanapi.dll
    [2009.12.25 00:24:45 | 00,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsgqec.dll
    [2009.12.25 00:24:45 | 00,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vidcap.ax
    [2009.12.25 00:24:45 | 00,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\verclsid.exe
    [2009.12.25 00:24:45 | 00,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winshfhc.dll
    [2009.12.25 00:24:45 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wscntfy.exe
    [2009.12.25 00:24:44 | 00,327,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll
    [2009.12.25 00:24:44 | 00,327,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wucltui.dll
    [2009.12.25 00:24:44 | 00,209,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuweb.dll
    [2009.12.25 00:24:44 | 00,183,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuaueng1.dll
    [2009.12.25 00:24:44 | 00,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xmlprovi.dll
    [2009.12.25 00:24:44 | 00,035,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wups.dll
    [2009.12.25 00:24:44 | 00,035,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wups.dll
    [2009.12.25 00:24:44 | 00,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\slrundll.exe
    [2009.12.25 00:24:44 | 00,000,000 | ---D | C] -- C:\WINDOWS\provisioning
    [2009.12.25 00:24:44 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\de-de
    [2009.12.25 00:24:42 | 00,000,000 | ---D | C] -- C:\WINDOWS\peernet
    [2009.12.25 00:24:42 | 00,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
    [2009.12.25 00:24:42 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\de
    [2009.12.25 00:24:42 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
    [2009.12.25 00:23:33 | 00,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
    [2009.12.25 00:23:29 | 00,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\custsat.dll
    [2009.12.25 00:22:03 | 00,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
    [2009.12.25 00:22:02 | 00,701,952 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys
    [2009.12.25 00:22:02 | 00,327,168 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtaa.sys
    [2009.12.25 00:22:02 | 00,104,960 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinrvxx.sys
    [2009.12.25 00:22:02 | 00,073,216 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atintuxx.sys
    [2009.12.25 00:22:02 | 00,063,663 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1rvxx.sys
    [2009.12.25 00:22:02 | 00,057,856 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinbtxx.sys
    [2009.12.25 00:22:02 | 00,056,623 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1btxx.sys
    [2009.12.25 00:22:02 | 00,052,224 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinraxx.sys
    [2009.12.25 00:22:02 | 00,043,008 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\drivers\amdagp.sys
    [2009.12.25 00:22:02 | 00,036,463 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1tuxx.sys
    [2009.12.25 00:22:02 | 00,034,735 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xsxx.sys
    [2009.12.25 00:22:02 | 00,030,671 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1raxx.sys
    [2009.12.25 00:22:02 | 00,029,455 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xbxx.sys
    [2009.12.25 00:22:02 | 00,028,672 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinsnxx.sys
    [2009.12.25 00:22:02 | 00,026,367 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1snxx.sys
    [2009.12.25 00:22:02 | 00,021,343 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1ttxx.sys
    [2009.12.25 00:22:02 | 00,014,336 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinpdxx.sys
    [2009.12.25 00:22:02 | 00,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinttxx.sys
    [2009.12.25 00:22:02 | 00,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinmdxx.sys
    [2009.12.25 00:22:02 | 00,012,047 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1pdxx.sys
    [2009.12.25 00:22:02 | 00,011,615 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1mdxx.sys
    [2009.12.25 00:22:02 | 00,004,255 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv01nt5.dll
    [2009.12.25 00:22:02 | 00,003,967 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv02nt5.dll
    [2009.12.25 00:22:02 | 00,003,775 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv11nt5.dll
    [2009.12.25 00:22:02 | 00,003,711 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv09nt5.dll
    [2009.12.25 00:22:02 | 00,003,647 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv07nt5.dll
    [2009.12.25 00:22:02 | 00,003,615 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv05nt5.dll
    [2009.12.25 00:22:02 | 00,003,135 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv08nt5.dll
    [2009.12.25 00:22:01 | 01,041,536 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\drivers\hsfdpsp2.sys
    [2009.12.25 00:22:01 | 00,685,056 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\drivers\hsfcxts2.sys
    [2009.12.25 00:22:01 | 00,220,032 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\drivers\hsfbs2s2.sys
    [2009.12.25 00:22:01 | 00,063,488 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxsxx.sys
    [2009.12.25 00:22:01 | 00,036,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bthprint.sys
    [2009.12.25 00:22:01 | 00,031,744 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxbxx.sys
    [2009.12.25 00:22:01 | 00,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv04nt5.dll
    [2009.12.25 00:22:01 | 00,021,183 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv01nt5.dll
    [2009.12.25 00:22:01 | 00,017,279 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv10nt5.dll
    [2009.12.25 00:22:01 | 00,015,423 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\ch7xxnt5.dll
    [2009.12.25 00:22:01 | 00,014,143 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv06nt5.dll
    [2009.12.25 00:22:01 | 00,011,359 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv02nt5.dll
    [2009.12.25 00:22:00 | 01,309,184 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlstrm.sys
    [2009.12.25 00:22:00 | 00,452,736 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\drivers\mtxparhm.sys
    [2009.12.25 00:22:00 | 00,404,990 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slntamr.sys
    [2009.12.25 00:22:00 | 00,180,360 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\ntmtlfax.sys
    [2009.12.25 00:22:00 | 00,166,912 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\drivers\s3gnbm.sys
    [2009.12.25 00:22:00 | 00,129,535 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnt7554.sys
    [2009.12.25 00:22:00 | 00,126,686 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlmnt5.sys
    [2009.12.25 00:22:00 | 00,095,424 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnthal.sys
    [2009.12.25 00:22:00 | 00,040,960 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\WINDOWS\System32\drivers\sisagp.sys
    [2009.12.25 00:22:00 | 00,030,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rndismpx.sys
    [2009.12.25 00:22:00 | 00,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv10nt.sys
    [2009.12.25 00:22:00 | 00,022,271 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv06nt.sys
    [2009.12.25 00:22:00 | 00,013,776 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\recagent.sys
    [2009.12.25 00:22:00 | 00,013,240 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slwdmsup.sys
    [2009.12.25 00:22:00 | 00,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usb8023x.sys
    [2009.12.25 00:22:00 | 00,012,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mutohpen.sys
    [2009.12.25 00:22:00 | 00,011,935 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv11nt.sys
    [2009.12.25 00:22:00 | 00,011,871 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv09nt.sys
    [2009.12.25 00:22:00 | 00,011,868 | ---- | C] (Conexant) -- C:\WINDOWS\System32\drivers\mdmxsdk.sys
    [2009.12.25 00:22:00 | 00,011,807 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv07nt.sys
    [2009.12.25 00:22:00 | 00,011,325 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\vchnt5.dll
    [2009.12.25 00:22:00 | 00,011,295 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv08nt.sys
    [2009.12.25 00:22:00 | 00,005,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\smbali.sys
    [2009.12.25 00:22:00 | 00,003,901 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\siint5.dll
    [2009.12.25 00:21:10 | 00,018,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
    [2009.12.25 00:21:01 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
    [2009.12.25 00:19:42 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
    [2009.12.25 00:19:42 | 00,000,000 | ---D | C] -- C:\WINDOWS\EHome
    [2009.12.25 00:17:49 | 00,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
    [2009.12.25 00:17:49 | 00,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
    [2009.12.25 00:17:49 | 00,000,000 | R--D | C] -- C:\WINDOWS\Web
    [2009.12.25 00:17:49 | 00,000,000 | -H-D | C] -- C:\WINDOWS\inf
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\twain_32
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Temp
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\system32
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\system
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\security
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Resources
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\repair
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\mui
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\msapps
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\msagent
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Media
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\java
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\ime
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Help
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\export
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Debug
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Cursors
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\config
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\Config
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\addins
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
    [2009.12.25 00:17:49 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
    [2009.12.25 00:04:32 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\skypePM
    [2009.12.25 00:04:04 | 00,191,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\iuengine.dll
    [2009.12.25 00:03:00 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Macromedia
    [2009.12.25 00:03:00 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Adobe
    [2009.12.25 00:02:53 | 00,000,000 | R--D | C] -- C:\Programme\Skype
    [2009.12.25 00:02:50 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Skype
    [2009.12.25 00:01:40 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Downloads
    [2009.12.25 00:01:16 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\Mozilla
    [2009.12.25 00:01:16 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Mozilla
    [2009.12.25 00:01:13 | 00,000,000 | ---D | C] -- C:\Programme\Mozilla Firefox
    [2009.12.25 00:00:55 | 07,921,616 | ---- | C] (Mozilla) -- C:\Dokumente und Einstellungen\Leonn\Desktop\Firefox Setup 3.5.6.exe
    [2009.12.25 00:00:14 | 00,000,000 | --SD | C] -- C:\Dokumente und Einstellungen\Leonn\UserData
    [2009.12.24 23:56:46 | 00,199,168 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\fdco1ins.dll
    [2009.12.24 23:56:46 | 00,199,168 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\fdco1.dll
    [2009.12.24 23:56:46 | 00,054,016 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\NVENETFD.sys
    [2009.12.24 23:56:45 | 00,442,368 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvunrm.exe
    [2009.12.24 23:56:44 | 00,035,840 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvconrm.dll
    [2009.12.24 23:56:44 | 00,009,216 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\bdco1ins.dll
    [2009.12.24 23:56:44 | 00,009,216 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\bdco1.dll
    [2009.12.24 23:56:43 | 00,950,272 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvnrm.sys
    [2009.12.24 23:56:43 | 00,022,016 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvnetbus.sys
    [2009.12.24 23:56:42 | 00,356,352 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvusmu.exe
    [2009.12.24 23:56:42 | 00,013,312 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvsmu.sys
    [2009.12.24 23:56:41 | 00,442,368 | R--- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvusmb.exe
    [2009.12.24 23:56:04 | 00,592,488 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\NVUNINST.EXE
    [2009.12.24 23:55:38 | 00,000,000 | -H-D | C] -- C:\Programme\InstallShield Installation Information
    [2009.12.24 23:55:33 | 00,008,704 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\WINDOWS\System32\viahdcpl.cpl
    [2009.12.24 23:55:16 | 00,060,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\drmk.sys
    [2009.12.24 23:55:05 | 00,026,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spupdsvc.exe
    [2009.12.24 23:54:57 | 00,331,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\difxapi.dll
    [2009.12.24 23:54:57 | 00,000,000 | ---D | C] -- C:\Programme\VIA
    [2009.12.24 23:54:04 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Tools
    [2009.12.24 23:53:57 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\InstallShield
    [2009.12.24 23:53:20 | 00,004,864 | R--- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\WINDOWS\System32\drivers\PortIo.sys
    [2009.12.24 23:49:41 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Wise Installation Wizard
    [2009.12.24 23:49:18 | 00,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
    [2009.12.24 23:49:09 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NVIDIA Corporation
    [2009.12.24 23:48:20 | 00,000,000 | ---D | C] -- C:\Programme\NVIDIA Corporation
    [2009.12.24 23:43:35 | 00,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
    [2009.12.24 23:43:22 | 05,501,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dcsx_42.dll
    [2009.12.24 23:43:22 | 01,974,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_42.dll
    [2009.12.24 23:43:22 | 00,515,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_5.dll
    [2009.12.24 23:43:22 | 00,238,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_5.dll
    [2009.12.24 23:43:21 | 01,892,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_42.dll
    [2009.12.24 23:43:21 | 01,846,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_41.dll
    [2009.12.24 23:43:21 | 00,453,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_42.dll
    [2009.12.24 23:43:21 | 00,453,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_41.dll
    [2009.12.24 23:43:21 | 00,235,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx11_42.dll
    [2009.12.24 23:43:20 | 04,178,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_41.dll
    [2009.12.24 23:43:20 | 00,517,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_4.dll
    [2009.12.24 23:43:20 | 00,235,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_4.dll
    [2009.12.24 23:43:20 | 00,069,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_3.dll
    [2009.12.24 23:43:20 | 00,022,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_6.dll
    [2009.12.24 23:43:19 | 04,379,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_40.dll
    [2009.12.24 23:43:19 | 02,036,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_40.dll
    [2009.12.24 23:43:19 | 00,514,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_3.dll
    [2009.12.24 23:43:19 | 00,452,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_40.dll
    [2009.12.24 23:43:19 | 00,235,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_3.dll
    [2009.12.24 23:43:19 | 00,070,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_2.dll
    [2009.12.24 23:43:18 | 01,493,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_39.dll
    [2009.12.24 23:43:18 | 00,509,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_2.dll
    [2009.12.24 23:43:18 | 00,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_39.dll
    [2009.12.24 23:43:18 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_2.dll
    [2009.12.24 23:43:18 | 00,068,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_1.dll
    [2009.12.24 23:43:18 | 00,023,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_5.dll
    [2009.12.24 23:43:17 | 03,851,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_39.dll
    [2009.12.24 23:43:17 | 00,507,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_1.dll
    [2009.12.24 23:43:17 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_1.dll
    [2009.12.24 23:43:17 | 00,065,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_0.dll
    [2009.12.24 23:43:17 | 00,025,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_4.dll
    [2009.12.24 23:43:16 | 03,850,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_38.dll
    [2009.12.24 23:43:16 | 01,491,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_38.dll
    [2009.12.24 23:43:16 | 00,479,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_0.dll
    [2009.12.24 23:43:16 | 00,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_38.dll
    [2009.12.24 23:43:16 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_0.dll
    [2009.12.24 23:43:15 | 03,786,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_37.dll
    [2009.12.24 23:43:15 | 01,420,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_37.dll
    [2009.12.24 23:43:15 | 00,462,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_37.dll
    [2009.12.24 23:43:15 | 00,267,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_10.dll
    [2009.12.24 23:43:15 | 00,025,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_3.dll
    [2009.12.24 23:43:14 | 03,734,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_36.dll
    [2009.12.24 23:43:14 | 01,374,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_36.dll
    [2009.12.24 23:43:14 | 00,444,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_36.dll
    [2009.12.24 23:43:14 | 00,267,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_9.dll
    [2009.12.24 23:43:13 | 03,727,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_35.dll
    [2009.12.24 23:43:13 | 01,358,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_35.dll
    [2009.12.24 23:43:13 | 01,124,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_34.dll
    [2009.12.24 23:43:13 | 00,444,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_35.dll
    [2009.12.24 23:43:13 | 00,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_34.dll
    [2009.12.24 23:43:13 | 00,266,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_8.dll
    [2009.12.24 23:43:13 | 00,017,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_2.dll
    [2009.12.24 23:43:12 | 03,497,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_34.dll
    [2009.12.24 23:43:12 | 01,123,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_33.dll
    [2009.12.24 23:43:12 | 00,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_33.dll
    [2009.12.24 23:43:12 | 00,261,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_7.dll
    [2009.12.24 23:43:12 | 00,081,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_3.dll
    [2009.12.24 23:43:11 | 03,495,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_33.dll
    [2009.12.24 23:43:11 | 03,426,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_32.dll
    [2009.12.24 23:43:11 | 00,255,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_6.dll
    [2009.12.24 23:43:11 | 00,251,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_5.dll
    [2009.12.24 23:43:11 | 00,237,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_4.dll
    [2009.12.24 23:43:11 | 00,015,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_1.dll
    [2009.12.24 23:43:10 | 02,414,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_31.dll
    [2009.12.24 23:43:10 | 00,236,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_3.dll
    [2009.12.24 23:43:10 | 00,230,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_2.dll
    [2009.12.24 23:43:10 | 00,229,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_1.dll
    [2009.12.24 23:43:10 | 00,062,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_2.dll
    [2009.12.24 23:43:10 | 00,062,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_1.dll
    [2009.12.24 23:43:06 | 02,388,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_30.dll
    [2009.12.24 23:43:06 | 02,332,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_29.dll
    [2009.12.24 23:43:06 | 00,230,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_0.dll
    [2009.12.24 23:43:06 | 00,014,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_0.dll
    [2009.12.24 23:43:05 | 02,337,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_25.dll
    [2009.12.24 23:43:05 | 02,323,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_28.dll
    [2009.12.24 23:43:05 | 02,319,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_27.dll
    [2009.12.24 23:43:05 | 02,297,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_26.dll
    [2009.12.24 23:43:05 | 02,222,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_24.dll
    [2009.12.24 23:43:05 | 00,061,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput9_1_0.dll
    [2009.12.24 23:42:55 | 00,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
    [2009.12.24 23:42:36 | 00,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wstdecod.dll
    [2009.12.24 23:42:36 | 00,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vbisurf.ax
    [2009.12.24 23:42:35 | 00,141,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ks.sys
    [2009.12.24 23:42:35 | 00,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax
    [2009.12.24 23:42:35 | 00,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kswdmcap.ax
    [2009.12.24 23:42:35 | 00,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kstvtune.ax
    [2009.12.24 23:42:35 | 00,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\msdv.sys
    [2009.12.24 23:42:35 | 00,049,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\stream.sys
    [2009.12.24 23:42:35 | 00,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksxbar.ax
    [2009.12.24 23:42:35 | 00,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bdaplgin.ax
    [2009.12.24 23:42:35 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsink.ax
    [2009.12.24 23:42:35 | 00,015,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mpe.sys
    [2009.12.24 23:42:35 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksolay.ax
    [2009.12.24 23:42:35 | 00,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bdasup.sys
    [2009.12.24 23:42:35 | 00,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser.dll
    [2009.12.24 23:42:34 | 01,296,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\quartz.dll
    [2009.12.24 23:42:34 | 00,563,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qedit.dll
    [2009.12.24 23:42:34 | 00,387,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qdvd.dll
    [2009.12.24 23:42:34 | 00,279,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qdv.dll
    [2009.12.24 23:42:34 | 00,237,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qasf.dll
    [2009.12.24 23:42:34 | 00,206,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mswebdvd.dll
    [2009.12.24 23:42:34 | 00,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qcap.dll
    [2009.12.24 23:42:34 | 00,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\devenum.dll
    [2009.12.24 23:42:34 | 00,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mciqtz32.dll
    [2009.12.24 23:42:34 | 00,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\encapi.dll
    [2009.12.24 23:42:33 | 02,113,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdiagn.dll
    [2009.12.24 23:42:33 | 01,689,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3d9.dll
    [2009.12.24 23:42:33 | 01,298,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdiag.exe
    [2009.12.24 23:42:33 | 01,293,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dsound3d.dll
    [2009.12.24 23:42:33 | 01,227,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dx8vb.dll
    [2009.12.24 23:42:33 | 01,179,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3d8.dll
    [2009.12.24 23:42:33 | 00,824,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dim700.dll
    [2009.12.24 23:42:33 | 00,619,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dx7vb.dll
    [2009.12.24 23:42:33 | 00,375,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnet.dll
    [2009.12.24 23:42:33 | 00,367,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dsound.dll
    [2009.12.24 23:42:33 | 00,279,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ddraw.dll
    [2009.12.24 23:42:33 | 00,229,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dplayx.dll
    [2009.12.24 23:42:33 | 00,214,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpvoice.dll
    [2009.12.24 23:42:33 | 00,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dsdmo.dll
    [2009.12.24 23:42:33 | 00,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmime.dll
    [2009.12.24 23:42:33 | 00,116,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpvvox.dll
    [2009.12.24 23:42:33 | 00,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmstyle.dll
    [2009.12.24 23:42:33 | 00,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmusic.dll
    [2009.12.24 23:42:33 | 00,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmsynth.dll
    [2009.12.24 23:42:33 | 00,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpvsetup.exe
    [2009.12.24 23:42:33 | 00,082,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmscript.dll
    [2009.12.24 23:42:33 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdllreg.exe
    [2009.12.24 23:42:33 | 00,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dsdmoprp.dll
    [2009.12.24 23:42:33 | 00,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmcompos.dll
    [2009.12.24 23:42:33 | 00,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnhupnp.dll
    [2009.12.24 23:42:33 | 00,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpwsockx.dll
    [2009.12.24 23:42:33 | 00,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmloader.dll
    [2009.12.24 23:42:33 | 00,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnhpast.dll
    [2009.12.24 23:42:33 | 00,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dplaysvr.exe
    [2009.12.24 23:42:33 | 00,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dmband.dll
    [2009.12.24 23:42:33 | 00,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ddrawex.dll
    [2009.12.24 23:42:33 | 00,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpmodemx.dll
    [2009.12.24 23:42:33 | 00,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpvacm.dll
    [2009.12.24 23:42:33 | 00,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dswave.dll
    [2009.12.24 23:42:33 | 00,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnsvr.exe
    [2009.12.24 23:42:33 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3d8thk.dll
    [2009.12.24 23:42:33 | 00,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnlobby.dll
    [2009.12.24 23:42:33 | 00,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnaddr.dll
    [2009.12.24 23:41:40 | 00,000,000 | ---D | C] -- C:\WINDOWS\Logs
    [2009.12.24 23:41:39 | 00,012,256 | ---- | C] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\System32\drivers\TBPanel.sys
    [2009.12.24 23:41:38 | 00,000,000 | ---D | C] -- C:\Programme\Vtune
    [2009.12.24 23:40:16 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Identities
    [2009.12.24 23:40:11 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Eigene Musik
    [2009.12.24 23:40:05 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\Microsoft
    [2009.12.24 23:40:04 | 00,000,000 | --SD | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Microsoft
    [2009.12.24 23:40:04 | 00,000,000 | --SD | C] -- C:\Dokumente und Einstellungen\Leonn\Cookies
    [2009.12.24 23:40:04 | 00,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\Leonn\SendTo
    [2009.12.24 23:40:04 | 00,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\Leonn\Recent
    [2009.12.24 23:40:04 | 00,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten
    [2009.12.24 23:40:04 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\Leonn\Startmenü
    [2009.12.24 23:40:04 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\Leonn\Favoriten
    [2009.12.24 23:40:04 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien
    [2009.12.24 23:40:04 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Eigene Bilder
    [2009.12.24 23:40:04 | 00,000,000 | -H-D | C] -- C:\Dokumente und Einstellungen\Leonn\Vorlagen
    [2009.12.24 23:40:04 | 00,000,000 | -H-D | C] -- C:\Dokumente und Einstellungen\Leonn\Netzwerkumgebung
    [2009.12.24 23:40:04 | 00,000,000 | -H-D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen
    [2009.12.24 23:40:04 | 00,000,000 | -H-D | C] -- C:\Dokumente und Einstellungen\Leonn\Druckumgebung
    [2009.12.24 23:40:04 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Sun
    [2009.12.24 23:40:04 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Desktop
    [2009.12.24 23:40:04 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\{7148F0A6-6813-11D6-A77B-00B0D0142010}
    [2009.12.24 23:39:24 | 00,000,000 | -HSD | C] -- C:\System Volume Information
    [2009.12.24 23:37:59 | 00,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winzm.ime
    [2009.12.24 23:37:59 | 00,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winsp.ime
    [2009.12.24 23:37:59 | 00,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winpy.ime
    [2009.12.24 23:37:59 | 00,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winime.ime
    [2009.12.24 23:37:58 | 00,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winar30.ime
    [2009.12.24 23:37:58 | 00,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wingb.ime
    [2009.12.24 23:37:58 | 00,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll
    [2009.12.24 23:37:58 | 00,031,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys
    [2009.12.24 23:37:57 | 00,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ext.dll
    [2009.12.24 23:37:57 | 00,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll
    [2009.12.24 23:37:57 | 00,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamps51.dll
    [2009.12.24 23:37:57 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svapi.dll
    [2009.12.24 23:37:57 | 00,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ctrs51.dll
    [2009.12.24 23:37:56 | 00,426,041 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicepad.dll
    [2009.12.24 23:37:56 | 00,086,073 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicesub.dll
    [2009.12.24 23:37:56 | 00,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniime.dll
    [2009.12.24 23:37:56 | 00,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unicdime.ime
    [2009.12.24 23:37:55 | 00,455,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe
    [2009.12.24 23:37:55 | 00,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe
    [2009.12.24 23:37:55 | 00,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe
    [2009.12.24 23:37:55 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmigrate.dll
    [2009.12.24 23:37:54 | 00,571,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlgnt.ime
    [2009.12.24 23:37:54 | 00,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll
    [2009.12.24 23:37:54 | 00,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys
    [2009.12.24 23:37:54 | 00,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys
    [2009.12.24 23:37:54 | 00,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys
    [2009.12.24 23:37:53 | 00,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll
    [2009.12.24 23:37:53 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\status.dll
    [2009.12.24 23:37:52 | 00,143,422 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\softkey.dll
    [2009.12.24 23:37:52 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_snprfdll.dll
    [2009.12.24 23:37:51 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpctrs.dll
    [2009.12.24 23:37:51 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpstup.dll
    [2009.12.24 23:37:51 | 00,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpapi.dll
    [2009.12.24 23:37:51 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smimsgif.dll
    [2009.12.24 23:37:50 | 00,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll
    [2009.12.24 23:37:50 | 00,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll
    [2009.12.24 23:37:50 | 00,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll
    [2009.12.24 23:37:50 | 00,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll
    [2009.12.24 23:37:50 | 00,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll
    [2009.12.24 23:37:50 | 00,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll
    [2009.12.24 23:37:50 | 00,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll
    [2009.12.24 23:37:50 | 00,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll
    [2009.12.24 23:37:50 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll
    [2009.12.24 23:37:50 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll
    [2009.12.24 23:37:50 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll
    [2009.12.24 23:37:50 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll
    [2009.12.24 23:37:50 | 00,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll
    [2009.12.24 23:37:50 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsm.dll
    [2009.12.24 23:37:50 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsy.dll
    [2009.12.24 23:37:49 | 00,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\simptcp.dll
    [2009.12.24 23:37:48 | 00,205,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seo.dll
    [2009.12.24 23:37:48 | 00,081,408 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
    [2009.12.24 23:37:48 | 00,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_scripto.dll
    [2009.12.24 23:37:48 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seos.dll
    [2009.12.24 23:37:48 | 00,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_rwnh.dll
    [2009.12.24 23:37:47 | 00,081,408 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
    [2009.12.24 23:37:47 | 00,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\romanime.ime
    [2009.12.24 23:37:46 | 00,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quick.ime
    [2009.12.24 23:37:46 | 00,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe
    [2009.12.24 23:37:46 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe
    [2009.12.24 23:37:46 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe
    [2009.12.24 23:37:46 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe
    [2009.12.24 23:37:45 | 00,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll
    [2009.12.24 23:37:45 | 00,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe
    [2009.12.24 23:37:45 | 00,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmigrate.dll
    [2009.12.24 23:37:45 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll
    [2009.12.24 23:37:45 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll
    [2009.12.24 23:37:44 | 00,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlgnt.ime
    [2009.12.24 23:37:44 | 00,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phon.ime
    [2009.12.24 23:37:44 | 00,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlcsd.dll
    [2009.12.24 23:37:44 | 00,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pagecnt.dll
    [2009.12.24 23:37:44 | 00,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\permchk.dll
    [2009.12.24 23:37:43 | 00,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll
    [2009.12.24 23:37:43 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs404.dll
    [2009.12.24 23:37:43 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs804.dll
    [2009.12.24 23:37:43 | 00,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll
    [2009.12.24 23:37:42 | 00,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nextlink.dll
    [2009.12.24 23:37:42 | 00,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll
    [2009.12.24 23:37:40 | 00,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll
    [2009.12.24 23:37:39 | 01,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex
    [2009.12.24 23:37:39 | 00,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll
    [2009.12.24 23:37:36 | 00,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys
    [2009.12.24 23:37:36 | 00,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll
    [2009.12.24 23:37:35 | 00,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_mailmsg.dll
    [2009.12.24 23:37:35 | 00,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mdsync.dll
    [2009.12.24 23:37:35 | 00,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logscrpt.dll
    [2009.12.24 23:37:34 | 00,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\korwbrkr.dll
    [2009.12.24 23:37:30 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll
    [2009.12.24 23:37:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll
    [2009.12.24 23:37:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
    [2009.12.24 23:37:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll
    [2009.12.24 23:37:29 | 00,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll
    [2009.12.24 23:37:29 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll
    [2009.12.24 23:37:29 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll
    [2009.12.24 23:37:29 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll
    [2009.12.24 23:37:29 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll
    [2009.12.24 23:37:29 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll
    [2009.12.24 23:37:29 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll
    [2009.12.24 23:37:29 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll
    [2009.12.24 23:37:29 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll
    [2009.12.24 23:37:29 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll
    [2009.12.24 23:37:29 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll
    [2009.12.24 23:37:28 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll
    [2009.12.24 23:37:28 | 00,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll
    [2009.12.24 23:37:27 | 00,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll
    [2009.12.24 23:37:27 | 00,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iwrps.dll
    [2009.12.24 23:37:27 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isapips.dll
    [2009.12.24 23:37:27 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll
    [2009.12.24 23:37:27 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll
    [2009.12.24 23:37:27 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll
    [2009.12.24 23:37:27 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll
    [2009.12.24 23:37:27 | 00,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll
    [2009.12.24 23:37:27 | 00,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll
    [2009.12.24 23:37:26 | 00,315,455 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskf.dll
    [2009.12.24 23:37:26 | 00,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infoctrs.dll
    [2009.12.24 23:37:25 | 00,471,102 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskdic.dll
    [2009.12.24 23:37:25 | 00,274,489 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputyc.dll
    [2009.12.24 23:37:25 | 00,262,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputy.exe
    [2009.12.24 23:37:25 | 00,233,527 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjprw.exe
    [2009.12.24 23:37:25 | 00,208,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpmig.exe
    [2009.12.24 23:37:25 | 00,102,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imlang.dll
    [2009.12.24 23:37:25 | 00,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe
    [2009.12.24 23:37:25 | 00,045,109 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe
    [2009.12.24 23:37:24 | 00,716,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcus.dll
    [2009.12.24 23:37:24 | 00,368,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcic.dll
    [2009.12.24 23:37:24 | 00,307,257 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.exe
    [2009.12.24 23:37:24 | 00,155,705 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdsvr.exe
    [2009.12.24 23:37:24 | 00,081,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.dll
    [2009.12.24 23:37:24 | 00,057,398 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe
    [2009.12.24 23:37:23 | 00,811,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81k.dll
    [2009.12.24 23:37:23 | 00,340,023 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81.ime
    [2009.12.24 23:37:23 | 00,311,359 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe
    [2009.12.24 23:37:23 | 00,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrcic.dll
    [2009.12.24 23:37:23 | 00,102,463 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsm.dll
    [2009.12.24 23:37:23 | 00,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekr61.ime
    [2009.12.24 23:37:23 | 00,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmbx.dll
    [2009.12.24 23:37:23 | 00,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe
    [2009.12.24 23:37:22 | 00,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisclex4.dll
    [2009.12.24 23:37:22 | 00,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iiscrmap.dll
    [2009.12.24 23:37:22 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iissync.exe
    [2009.12.24 23:37:22 | 00,003,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iismui.dll
    [2009.12.24 23:37:17 | 10,129,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxkor.dll
    [2009.12.24 23:37:04 | 10,096,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxcht.dll
    [2009.12.24 23:37:03 | 00,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hanjadic.dll
    [2009.12.24 23:37:02 | 00,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsroute.dll
    [2009.12.24 23:37:02 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssend.exe
    [2009.12.24 23:37:01 | 00,139,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclntr.dll
    [2009.12.24 23:37:01 | 00,112,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscfgwz.dll
    [2009.12.24 23:37:00 | 00,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_fcachdll.dll
    [2009.12.24 23:37:00 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe
    [2009.12.24 23:37:00 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpctrs2.dll
    [2009.12.24 23:37:00 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
    [2009.12.24 23:36:59 | 00,514,587 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\edb500.dll
    [2009.12.24 23:36:59 | 00,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
    [2009.12.24 23:36:59 | 00,045,568 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
    [2009.12.24 23:36:59 | 00,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
    [2009.12.24 23:36:59 | 00,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys
    [2009.12.24 23:36:57 | 00,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dayi.ime
    [2009.12.24 23:36:56 | 00,057,399 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cplexe.exe
    [2009.12.24 23:36:56 | 00,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\counters.dll
    [2009.12.24 23:36:56 | 00,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe
    [2009.12.24 23:36:55 | 00,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\convlog.exe
    [2009.12.24 23:36:55 | 00,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\controt.dll
    [2009.12.24 23:36:54 | 00,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtbrkr.dll
    [2009.12.24 23:36:54 | 00,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintsetp.exe
    [2009.12.24 23:36:54 | 00,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintime.dll
    [2009.12.24 23:36:54 | 00,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtmbx.dll
    [2009.12.24 23:36:54 | 00,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtskdic.dll
    [2009.12.24 23:36:54 | 00,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintlgnt.ime
    [2009.12.24 23:36:53 | 01,677,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chsbrkr.dll
    [2009.12.24 23:36:53 | 00,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chajei.ime
    [2009.12.24 23:36:53 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe
    [2009.12.24 23:36:53 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe
    [2009.12.24 23:36:53 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe
    [2009.12.24 23:36:53 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe
    [2009.12.24 23:36:52 | 00,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
    [2009.12.24 23:36:52 | 00,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
    [2009.12.24 23:36:52 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll
    [2009.12.24 23:36:51 | 00,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\browscap.dll
    [2009.12.24 23:36:51 | 00,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\asptxn.dll
    [2009.12.24 23:36:51 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aspperf.dll
    [2009.12.24 23:36:51 | 00,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\authfilt.dll
    [2009.12.24 23:36:50 | 00,316,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqueue.dll
    [2009.12.24 23:36:50 | 00,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqadmin.dll
    [2009.12.24 23:36:49 | 00,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adrot.dll
    [2009.12.24 23:36:49 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admxprox.dll
    [2009.12.24 23:36:49 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_adsiisex.dll
    [2009.12.24 23:36:48 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamregps.dll
    [2009.12.24 23:36:47 | 02,134,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpsnap.dll
    [2009.12.24 23:36:46 | 00,175,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpadm.dll
    [2009.12.24 23:36:44 | 00,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetsloc.dll
    [2009.12.24 23:36:44 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.exe
    [2009.12.24 23:36:43 | 00,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisui.dll
    [2009.12.24 23:36:43 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisreset.exe
    [2009.12.24 23:36:43 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsapi2.dll
    [2009.12.24 23:36:43 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrstap.dll
    [2009.12.24 23:36:40 | 00,096,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\certmap.ocx
    [2009.12.24 23:36:38 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
    [2009.12.24 23:36:38 | 00,000,000 | ---D | C] -- C:\Programme\xerox
    [2009.12.24 23:36:38 | 00,000,000 | ---D | C] -- C:\Programme\microsoft frontpage
    [2009.12.24 23:35:58 | 00,000,000 | R-SD | C] -- C:\WINDOWS\assembly
    [2009.12.24 23:35:58 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTemp
    [2009.12.24 23:35:58 | 00,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
    [2009.12.24 23:33:01 | 00,061,547 | ---- | C] (Sun Microsystems) -- C:\WINDOWS\System32\jpicpl32.cpl
    [2009.12.24 23:32:56 | 00,000,000 | ---D | C] -- C:\Programme\Java
    [2009.12.24 23:32:56 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Java
    [2009.12.24 23:32:55 | 00,000,000 | -HSD | C] -- C:\WINDOWS\Installer
    [2009.12.24 23:32:41 | 00,000,000 | ---D | C] -- C:\Software
    [2009.12.24 23:32:39 | 00,000,000 | ---D | C] -- C:\Programme\Common Files
    [2009.12.24 23:32:22 | 00,000,000 | ---D | C] -- C:\cd4c651f416e6284906a9e155e3b
    [2009.12.24 23:32:08 | 00,000,000 | ---D | C] -- C:\26c0c56a927894df2c003ffd8e35d9
    [2009.12.24 23:31:16 | 00,000,000 | -H-D | C] -- C:\Programme\Uninstall Information
    [2009.12.24 23:31:13 | 00,000,000 | ---D | C] -- C:\37adc49bfc7ee3d1a57de97383df86c
    [2009.12.24 23:31:08 | 00,000,000 | ---D | C] -- C:\ac3
    [2009.12.24 23:31:02 | 00,000,000 | ---D | C] -- C:\1f4dd11
    [2009.12.24 23:30:59 | 00,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpsp1hfm.exe
    [2009.12.24 23:30:44 | 00,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mapi32.dll
    [2009.12.24 23:30:23 | 00,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen\All Users\DRM
    [2009.12.24 23:30:19 | 00,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
    [2009.12.24 23:30:19 | 00,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
    [2009.12.24 23:30:14 | 00,000,000 | ---D | C] -- C:\Programme\Online-Dienste
    [2009.12.24 23:30:02 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
    [2009.12.24 23:29:36 | 00,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrslv.dll
    [2009.12.24 23:29:36 | 00,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrcdlg.dll
    [2009.12.24 23:29:36 | 00,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\racpldlg.dll
    [2009.12.24 23:29:36 | 00,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\notiflag.exe
    [2009.12.24 23:29:36 | 00,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrdm.dll
    [2009.12.24 23:29:36 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\atrace.dll
    [2009.12.24 23:29:36 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\atrace.dll
    [2009.12.24 23:29:35 | 00,099,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helphost.exe
    [2009.12.24 23:29:35 | 00,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\brpinfo.dll
    [2009.12.24 23:29:35 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hcappres.dll
    [2009.12.24 23:29:27 | 00,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srdiag.exe
    [2009.12.24 23:29:27 | 00,032,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\isrdbg32.dll
    [2009.12.24 23:29:27 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmevtmsg.dll
    [2009.12.24 23:29:27 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmevtmsg.dll
    [2009.12.24 23:29:26 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wb32.exe
    [2009.12.24 23:29:26 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cb32.exe
    [2009.12.24 23:29:25 | 00,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\acctres.dll
    [2009.12.24 23:29:25 | 00,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\acctres.dll
    [2009.12.24 23:29:25 | 00,040,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msinfo32.exe
    [2009.12.24 23:29:25 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Dienste
    [2009.12.24 23:29:21 | 00,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwdial.dll
    [2009.12.24 23:29:21 | 00,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwphbk.dll
    [2009.12.24 23:29:21 | 00,000,000 | --SD | C] -- C:\WINDOWS\Tasks
    [2009.12.24 23:29:20 | 00,282,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcfg.dll
    [2009.12.24 23:29:20 | 00,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\isign32.dll
    [2009.12.24 23:29:20 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icfgnt5.dll
    [2009.12.24 23:29:20 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icfgnt5.dll
    [2009.12.24 23:29:19 | 00,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwtutor.exe
    [2009.12.24 23:29:19 | 00,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwres.dll
    [2009.12.24 23:29:19 | 00,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trialoc.dll
    [2009.12.24 23:29:19 | 00,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wisc10.dll
    [2009.12.24 23:29:19 | 00,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoapr.dll
    [2009.12.24 23:29:19 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe
    [2009.12.24 23:29:18 | 00,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoap1.dll
    [2009.12.24 23:29:18 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\MSSoap
    [2009.12.24 23:29:17 | 00,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieinfo5.ocx
    [2009.12.24 23:29:14 | 00,000,000 | ---D | C] -- C:\WINDOWS\srchasst
    [2009.12.24 23:29:13 | 00,778,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\setup_wm.exe
    [2009.12.24 23:29:13 | 00,520,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpvis.dll
    [2009.12.24 23:29:13 | 00,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dlimport.exe
    [2009.12.24 23:29:13 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
    [2009.12.24 23:29:12 | 00,331,839 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmmres.dll
    [2009.12.24 23:29:12 | 00,163,897 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmmutil.dll
    [2009.12.24 23:29:12 | 00,110,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmmfilt.dll
    [2009.12.24 23:29:12 | 00,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmplayer.exe
    [2009.12.24 23:29:12 | 00,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qmgrprxy.dll
    [2009.12.24 23:29:11 | 00,000,000 | ---D | C] -- C:\Programme\Movie Maker
    [2009.12.24 23:29:07 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
    [2009.12.24 23:29:07 | 00,000,000 | ---D | C] -- C:\WINDOWS\PCHealth
    [2009.12.24 23:29:06 | 00,364,544 | ---- | C] (Microsoft Corporation (written by Digital Renaissance Inc.)) -- C:\WINDOWS\System32\dllcache\npdsplay.dll
    [2009.12.24 23:29:06 | 00,226,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npdrmv2.dll
    [2009.12.24 23:29:06 | 00,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ils.dll
    [2009.12.24 23:29:06 | 00,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msconf.dll
    [2009.12.24 23:29:06 | 00,034,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mnmdd.dll
    [2009.12.24 23:29:06 | 00,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmmkcert.dll
    [2009.12.24 23:29:06 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npwmsdrm.dll
    [2009.12.24 23:29:06 | 00,004,639 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplayer2.exe
    [2009.12.24 23:29:03 | 00,000,000 | ---D | C] -- C:\Programme\NetMeeting
    [2009.12.24 23:29:02 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstinit.exe
    [2009.12.24 23:29:02 | 00,000,000 | ---D | C] -- C:\Programme\Outlook Express
    [2009.12.24 23:28:58 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\System
    [2009.12.24 23:28:58 | 00,000,000 | ---D | C] -- C:\Programme\Internet Explorer
    [2009.12.24 23:28:57 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Musik
    [2009.12.24 23:28:57 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\All Users\Dokumente\Eigene Bilder
    [2009.12.24 23:28:45 | 00,000,000 | ---D | C] -- C:\Programme\ComPlus Applications
    [2009.12.24 23:28:44 | 00,000,000 | ---D | C] -- C:\WINDOWS\Registration
    [2009.12.24 23:28:42 | 00,000,000 | -H-D | C] -- C:\Programme\WindowsUpdate
    [2009.12.24 23:28:42 | 00,000,000 | ---D | C] -- C:\Programme\Windows Media Player
    [2009.12.24 23:28:42 | 00,000,000 | ---D | C] -- C:\Programme\Online Services
    [2009.12.24 23:28:39 | 00,000,000 | ---D | C] -- C:\Programme\Messenger
    [2009.12.24 23:28:38 | 00,042,577 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckgzm.exe
    [2009.12.24 23:28:37 | 01,817,687 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckgres.dll
    [2009.12.24 23:28:37 | 00,781,397 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkrres.dll
    [2009.12.24 23:28:37 | 00,753,236 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvseres.dll
    [2009.12.24 23:28:37 | 00,082,501 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckg.dll
    [2009.12.24 23:28:37 | 00,048,706 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvse.dll
    [2009.12.24 23:28:37 | 00,042,575 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkrzm.exe
    [2009.12.24 23:28:37 | 00,042,574 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvsezm.exe
    [2009.12.24 23:28:37 | 00,042,573 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvlzm.exe
    [2009.12.24 23:28:37 | 00,040,515 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkr.dll
    [2009.12.24 23:28:36 | 02,178,131 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvlres.dll
    [2009.12.24 23:28:36 | 01,175,635 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtzres.dll
    [2009.12.24 23:28:36 | 00,066,113 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvl.dll
    [2009.12.24 23:28:36 | 00,057,409 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtz.dll
    [2009.12.24 23:28:36 | 00,042,573 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtzzm.exe
    [2009.12.24 23:28:36 | 00,041,029 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zcorem.dll
    [2009.12.24 23:28:36 | 00,032,339 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniansi.dll
    [2009.12.24 23:28:36 | 00,013,894 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zonelibm.dll
    [2009.12.24 23:28:36 | 00,004,677 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zeeverm.dll
    [2009.12.24 23:28:35 | 01,042,515 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmnresm.dll
    [2009.12.24 23:28:35 | 00,217,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmnclim.dll
    [2009.12.24 23:28:35 | 00,113,222 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zoneclim.dll
    [2009.12.24 23:28:35 | 00,036,937 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zclientm.exe
    [2009.12.24 23:28:35 | 00,029,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\znetm.dll
    [2009.12.24 23:28:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\write.exe
    [2009.12.24 23:28:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\write.exe
    [2009.12.24 23:28:35 | 00,000,000 | ---D | C] -- C:\Programme\MSN Gaming Zone
    [2009.12.24 23:28:28 | 00,139,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndvol32.exe
    [2009.12.24 23:28:28 | 00,139,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sndvol32.exe
    [2009.12.24 23:28:28 | 00,133,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndrec32.exe
    [2009.12.24 23:28:28 | 00,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\access.cpl
    [2009.12.24 23:28:27 | 00,356,352 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hypertrm.dll
    [2009.12.24 23:28:27 | 00,232,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avtapi.dll
    [2009.12.24 23:28:27 | 00,232,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avtapi.dll
    [2009.12.24 23:28:27 | 00,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avwav.dll
    [2009.12.24 23:28:27 | 00,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avwav.dll
    [2009.12.24 23:28:27 | 00,044,544 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hticons.dll
    [2009.12.24 23:28:27 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avmeter.dll
    [2009.12.24 23:28:27 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avmeter.dll
    [2009.12.24 23:28:27 | 00,013,312 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\dllcache\htrn_jis.dll
    [2009.12.24 23:28:26 | 00,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winchat.exe
    [2009.12.24 23:28:26 | 00,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winchat.exe
    [2009.12.24 23:28:21 | 00,683,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\getuname.dll
    [2009.12.24 23:28:21 | 00,683,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\getuname.dll
    [2009.12.24 23:28:20 | 00,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winmine.exe
    [2009.12.24 23:28:20 | 00,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmine.exe
    [2009.12.24 23:28:20 | 00,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\calc.exe
    [2009.12.24 23:28:20 | 00,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe
    [2009.12.24 23:28:20 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\charmap.exe
    [2009.12.24 23:28:20 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\charmap.exe
    [2009.12.24 23:28:20 | 00,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sol.exe
    [2009.12.24 23:28:20 | 00,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sol.exe
    [2009.12.24 23:28:19 | 00,128,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mshearts.exe
    [2009.12.24 23:28:19 | 00,128,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshearts.exe
    [2009.12.24 23:28:19 | 00,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdshost.exe
    [2009.12.24 23:28:19 | 00,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\freecell.exe
    [2009.12.24 23:28:19 | 00,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\freecell.exe
    [2009.12.24 23:28:19 | 00,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe
    [2009.12.24 23:28:19 | 00,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsshutdn.exe
    [2009.12.24 23:28:19 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe
    [2009.12.24 23:28:19 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tskill.exe
    [2009.12.24 23:28:19 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe
    [2009.12.24 23:28:19 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsdiscon.exe
    [2009.12.24 23:28:19 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe
    [2009.12.24 23:28:19 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscon.exe
    [2009.12.24 23:28:19 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe
    [2009.12.24 23:28:19 | 00,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\reset.exe
    [2009.12.24 23:28:18 | 00,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcuiu.dll
    [2009.12.24 23:28:18 | 00,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe
    [2009.12.24 23:28:18 | 00,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\regini.exe
    [2009.12.24 23:28:18 | 00,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe
    [2009.12.24 23:28:18 | 00,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qwinsta.exe
    [2009.12.24 23:28:18 | 00,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe
    [2009.12.24 23:28:18 | 00,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msg.exe
    [2009.12.24 23:28:18 | 00,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qprocess.exe
    [2009.12.24 23:28:18 | 00,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe
    [2009.12.24 23:28:18 | 00,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qappsrv.exe
    [2009.12.24 23:28:18 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe
    [2009.12.24 23:28:18 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwinsta.exe
    [2009.12.24 23:28:18 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe
    [2009.12.24 23:28:18 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logoff.exe
    [2009.12.24 23:28:18 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cdmodem.dll
    [2009.12.24 23:28:18 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cdmodem.dll
    [2009.12.24 23:28:18 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe
    [2009.12.24 23:28:18 | 00,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shadow.exe
    [2009.12.24 23:28:18 | 00,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpcfgex.dll
    [2009.12.24 23:28:18 | 00,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpcfgex.dll
    [2009.12.24 23:28:17 | 00,956,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtctm.dll
    [2009.12.24 23:28:17 | 00,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxoci.dll
    [2009.12.24 23:28:17 | 00,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtclog.dll
    [2009.12.24 23:28:17 | 00,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xolehlp.dll
    [2009.12.24 23:28:16 | 00,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\colbact.dll
    [2009.12.24 23:28:16 | 00,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxlegih.dll
    [2009.12.24 23:28:16 | 00,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxdm.dll
    [2009.12.24 23:28:16 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comaddin.dll
    [2009.12.24 23:28:16 | 00,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtsadmin.tlb
    [2009.12.24 23:28:16 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dcomcnfg.exe
    [2009.12.24 23:28:16 | 00,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxex.dll
    [2009.12.24 23:28:15 | 00,539,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comuid.dll
    [2009.12.24 23:28:15 | 00,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrv.dll
    [2009.12.24 23:28:15 | 00,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsnap.dll
    [2009.12.24 23:28:15 | 00,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clbcatex.dll
    [2009.12.24 23:28:15 | 00,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comrepl.dll
    [2009.12.24 23:28:15 | 00,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvps.dll
    [2009.12.24 23:28:15 | 00,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\stclient.dll
    [2009.12.24 23:28:14 | 00,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmi2xml.dll
    [2009.12.24 23:28:11 | 00,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipicmp.dll
    [2009.12.24 23:28:11 | 00,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmimsg.dll
    [2009.12.24 23:28:11 | 00,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmitimep.dll
    [2009.12.24 23:28:10 | 00,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\updprov.dll
    [2009.12.24 23:28:10 | 00,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmplprov.dll
    [2009.12.24 23:28:10 | 00,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemdisp.tlb
    [2009.12.24 23:28:10 | 00,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trnsprov.dll
    [2009.12.24 23:28:10 | 00,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.tlb
    [2009.12.24 23:28:10 | 00,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmtr.dll
    [2009.12.24 23:28:10 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unsecapp.exe
    [2009.12.24 23:28:10 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmt.exe
    [2009.12.24 23:28:10 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.dll
    [2009.12.24 23:28:09 | 00,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msiprov.dll
    [2009.12.24 23:28:09 | 00,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpcons.dll
    [2009.12.24 23:28:08 | 00,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cmprops.dll
    [2009.12.24 23:28:08 | 00,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsprov.dll
    [2009.12.24 23:28:08 | 00,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\servdeps.dll
    [2009.12.24 23:28:08 | 00,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fwdprov.dll
    [2009.12.24 23:28:08 | 00,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmfutil.dll
    [2009.12.24 23:28:03 | 00,000,000 | ---D | C] -- C:\Programme\MSN
    [2009.12.24 23:28:02 | 00,539,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spider.exe
    [2009.12.24 23:28:02 | 00,346,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe
    [2009.12.24 23:28:02 | 00,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mplay32.exe
    [2009.12.24 23:28:02 | 00,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplay32.exe
    [2009.12.24 23:28:02 | 00,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clipbrd.exe
    [2009.12.24 23:28:02 | 00,000,000 | ---D | C] -- C:\Programme\Windows NT
    [2009.12.24 23:28:01 | 02,066,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstscax.dll
    [2009.12.24 23:28:01 | 01,929,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaueng.dll
    [2009.12.24 23:28:01 | 00,677,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstsc.exe
    [2009.12.24 23:28:01 | 00,394,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstsc.exe
    [2009.12.24 23:28:01 | 00,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscfgwmi.dll
    [2009.12.24 23:28:01 | 00,053,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauclt.exe
    [2009.12.24 23:28:00 | 00,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdchost.dll
    [2009.12.24 23:28:00 | 00,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpwsx.dll
    [2009.12.24 23:28:00 | 00,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpclip.exe
    [2009.12.24 23:28:00 | 00,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscupgrd.exe
    [2009.12.24 23:28:00 | 00,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscupgrd.exe
    [2009.12.24 23:28:00 | 00,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpsnd.dll
    [2009.12.24 23:28:00 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdsaddin.exe
    [2009.12.24 23:28:00 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icaapi.dll
    [2009.12.24 23:27:59 | 00,625,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvut.dll
    [2009.12.24 23:27:59 | 00,428,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcprx.dll
    [2009.12.24 23:27:59 | 00,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cfgbkend.dll
    [2009.12.24 23:27:59 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
    [2009.12.24 23:27:59 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
    [2009.12.24 23:27:58 | 01,267,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsvcs.dll
    [2009.12.24 23:27:55 | 00,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\licwmi.dll
    [2009.12.24 23:27:08 | 00,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\usbui.dll
    [2009.12.24 23:26:42 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\ODBC
    [2009.12.24 23:26:41 | 00,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spcommon.dll
    [2009.12.24 23:26:41 | 00,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spcplui.dll
    [2009.12.24 23:26:40 | 00,774,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spttseng.dll
    [2009.12.24 23:26:39 | 00,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sapisvr.exe
    [2009.12.24 23:26:39 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\SpeechEngines
    [2009.12.24 23:26:38 | 00,000,000 | R--D | C] -- C:\Programme
    [2009.12.24 23:26:38 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien\Microsoft Shared
    [2009.12.24 23:26:38 | 00,000,000 | ---D | C] -- C:\Programme\Gemeinsame Dateien
    [2009.12.24 23:26:36 | 00,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuq.dll
    [2009.12.24 23:26:36 | 00,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuf.dll
    [2009.12.24 23:26:36 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuq.dll
    [2009.12.24 23:26:36 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuf.dll
    [2009.12.24 23:26:36 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdazel.dll
    [2009.12.24 23:26:36 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdazel.dll
    [2009.12.24 23:26:35 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbduzb.dll
    [2009.12.24 23:26:35 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdur.dll
    [2009.12.24 23:26:35 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtat.dll
    [2009.12.24 23:26:35 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmon.dll
    [2009.12.24 23:26:35 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkyr.dll
    [2009.12.24 23:26:35 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkaz.dll
    [2009.12.24 23:26:35 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdaze.dll
    [2009.12.24 23:26:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbduzb.dll
    [2009.12.24 23:26:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdur.dll
    [2009.12.24 23:26:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtat.dll
    [2009.12.24 23:26:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdmon.dll
    [2009.12.24 23:26:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkyr.dll
    [2009.12.24 23:26:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkaz.dll
    [2009.12.24 23:26:35 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdaze.dll
    [2009.12.24 23:26:34 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycc.dll
    [2009.12.24 23:26:34 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru1.dll
    [2009.12.24 23:26:34 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru.dll
    [2009.12.24 23:26:34 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbu.dll
    [2009.12.24 23:26:34 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdblr.dll
    [2009.12.24 23:26:34 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycc.dll
    [2009.12.24 23:26:34 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru1.dll
    [2009.12.24 23:26:34 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru.dll
    [2009.12.24 23:26:34 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdbu.dll
    [2009.12.24 23:26:34 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdblr.dll
    [2009.12.24 23:26:33 | 00,008,192 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhept.dll
    [2009.12.24 23:26:33 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhept.dll
    [2009.12.24 23:26:33 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela3.dll
    [2009.12.24 23:26:33 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela3.dll
    [2009.12.24 23:26:33 | 00,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela2.dll
    [2009.12.24 23:26:33 | 00,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgkl.dll
    [2009.12.24 23:26:33 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela2.dll
    [2009.12.24 23:26:33 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgkl.dll
    [2009.12.24 23:26:33 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe319.dll
    [2009.12.24 23:26:33 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe220.dll
    [2009.12.24 23:26:33 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe.dll
    [2009.12.24 23:26:33 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe319.dll
    [2009.12.24 23:26:33 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe220.dll
    [2009.12.24 23:26:33 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe.dll
    [2009.12.24 23:26:31 | 00,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv1.dll
    [2009.12.24 23:26:31 | 00,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv.dll
    [2009.12.24 23:26:31 | 00,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdest.dll
    [2009.12.24 23:26:31 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv1.dll
    [2009.12.24 23:26:31 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv.dll
    [2009.12.24 23:26:31 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdest.dll
    [2009.12.24 23:26:31 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt1.dll
    [2009.12.24 23:26:31 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt.dll
    [2009.12.24 23:26:31 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt1.dll
    [2009.12.24 23:26:31 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt.dll
    [2009.12.24 23:26:30 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl1.dll
    [2009.12.24 23:26:30 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl.dll
    [2009.12.24 23:26:30 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl.dll
    [2009.12.24 23:26:30 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu.dll
    [2009.12.24 23:26:30 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz2.dll
    [2009.12.24 23:26:30 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl1.dll
    [2009.12.24 23:26:30 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl.dll
    [2009.12.24 23:26:30 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl.dll
    [2009.12.24 23:26:30 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu.dll
    [2009.12.24 23:26:30 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz2.dll
    [2009.12.24 23:26:30 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdro.dll
    [2009.12.24 23:26:30 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl1.dll
    [2009.12.24 23:26:30 | 00,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu1.dll
    [2009.12.24 23:26:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdro.dll
    [2009.12.24 23:26:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl1.dll
    [2009.12.24 23:26:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu1.dll
    [2009.12.24 23:26:29 | 00,007,168 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz.dll
    [2009.12.24 23:26:29 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz.dll
    [2009.12.24 23:26:29 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycl.dll
    [2009.12.24 23:26:29 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz1.dll
    [2009.12.24 23:26:29 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcr.dll
    [2009.12.24 23:26:29 | 00,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\KBDAL.DLL
    [2009.12.24 23:26:29 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycl.dll
    [2009.12.24 23:26:29 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz1.dll
    [2009.12.24 23:26:29 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcr.dll
    [2009.12.24 23:26:29 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdal.dll
    [2009.12.24 23:26:28 | 00,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dllcache\dgrpsetu.dll
    [2009.12.24 23:26:28 | 00,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dgrpsetu.dll
    [2009.12.24 23:26:28 | 00,086,556 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dllcache\dgsetup.dll
    [2009.12.24 23:26:28 | 00,086,556 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dgsetup.dll
    [2009.12.24 23:26:28 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
    [2009.12.24 23:26:28 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irclass.dll
    [2009.12.24 23:26:27 | 00,103,936 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\EqnClass.Dll
    [2009.12.24 23:26:27 | 00,103,936 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqnclass.dll
    [2009.12.24 23:26:27 | 00,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\olecli.dll
    [2009.12.24 23:26:27 | 00,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLECLI.DLL
    [2009.12.24 23:26:27 | 00,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
    [2009.12.24 23:26:27 | 00,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\dllcache\spxcoins.dll
    [2009.12.24 23:26:27 | 00,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\olesvr.dll
    [2009.12.24 23:26:27 | 00,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLESVR.DLL
    [2009.12.24 23:26:27 | 00,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tapi.dll
    [2009.12.24 23:26:27 | 00,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TAPI.DLL
    [2009.12.24 23:26:27 | 00,013,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wfwnet.drv
    [2009.12.24 23:26:27 | 00,013,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WFWNET.DRV
    [2009.12.24 23:26:27 | 00,009,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ver.dll
    [2009.12.24 23:26:27 | 00,009,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VER.DLL
    [2009.12.24 23:26:27 | 00,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shell.dll
    [2009.12.24 23:26:27 | 00,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SHELL.DLL
    [2009.12.24 23:26:27 | 00,004,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\timer.drv
    [2009.12.24 23:26:27 | 00,004,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TIMER.DRV
    [2009.12.24 23:26:27 | 00,003,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\system.drv
    [2009.12.24 23:26:27 | 00,003,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SYSTEM.DRV
    [2009.12.24 23:26:27 | 00,002,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vga.drv
    [2009.12.24 23:26:27 | 00,002,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VGA.DRV
    [2009.12.24 23:26:27 | 00,001,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sound.drv
    [2009.12.24 23:26:27 | 00,001,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SOUND.DRV
    [2009.12.24 23:26:26 | 00,127,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msvideo.dll
    [2009.12.24 23:26:26 | 00,127,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MSVIDEO.DLL
    [2009.12.24 23:26:26 | 00,109,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avifile.dll
    [2009.12.24 23:26:26 | 00,109,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVIFILE.DLL
    [2009.12.24 23:26:26 | 00,073,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mciavi.drv
    [2009.12.24 23:26:26 | 00,073,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIAVI.DRV
    [2009.12.24 23:26:26 | 00,070,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avicap.dll
    [2009.12.24 23:26:26 | 00,070,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVICAP.DLL
    [2009.12.24 23:26:26 | 00,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\mmsystem.dll
    [2009.12.24 23:26:26 | 00,033,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\commdlg.dll
    [2009.12.24 23:26:26 | 00,033,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\COMMDLG.DLL
    [2009.12.24 23:26:26 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mciwave.drv
    [2009.12.24 23:26:26 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIWAVE.DRV
    [2009.12.24 23:26:26 | 00,025,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mciseq.drv
    [2009.12.24 23:26:26 | 00,025,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCISEQ.DRV
    [2009.12.24 23:26:26 | 00,009,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lzexpand.dll
    [2009.12.24 23:26:26 | 00,009,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\LZEXPAND.DLL
    [2009.12.24 23:26:26 | 00,002,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mouse.drv
    [2009.12.24 23:26:26 | 00,002,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MOUSE.DRV
    [2009.12.24 23:26:26 | 00,002,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\keyboard.drv
    [2009.12.24 23:26:26 | 00,002,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\KEYBOARD.DRV
    [2009.12.24 23:26:26 | 00,001,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mmtask.tsk
    [2009.12.24 23:26:26 | 00,001,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMTASK.TSK
    [2009.12.24 23:26:25 | 00,146,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\winspool.drv
    [2009.12.24 23:26:25 | 00,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\storprop.dll
    [2009.12.24 23:26:25 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE
    [2009.12.24 23:26:25 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\taskman.exe
    [2009.12.24 23:26:25 | 00,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\batt.dll
    [2009.12.24 23:26:22 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\All Users\Startmenü
    [2009.12.24 23:26:22 | 00,000,000 | R--D | C] -- C:\Dokumente und Einstellungen\All Users\Dokumente
    [2009.12.24 23:26:22 | 00,000,000 | -H-D | C] -- C:\Dokumente und Einstellungen\All Users\Vorlagen
    [2009.12.24 23:26:22 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Favoriten
    [2009.12.24 23:26:22 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen\All Users\Desktop
    [2009.12.24 23:26:14 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
    [2009.12.24 23:26:14 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
    [2009.12.24 23:26:09 | 00,000,000 | --SD | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Microsoft
    [2009.12.24 23:26:09 | 00,000,000 | RH-D | C] -- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten
    [2009.12.24 23:25:53 | 00,000,000 | ---D | C] -- C:\Dokumente und Einstellungen
    [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
     
    ========== Files - Modified Within 30 Days ==========
     
    [2010.01.07 18:15:32 | 00,513,536 | ---- | M] (OldTimer Tools) -- C:\Dokumente und Einstellungen\Leonn\Desktop\OTL.exe
    [2010.01.07 17:50:00 | 00,001,088 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    [2010.01.07 15:28:43 | 00,000,637 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\World of Warcraft.lnk
    [2010.01.07 14:48:11 | 00,001,512 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\CCleaner.lnk
    [2010.01.07 14:14:22 | 00,000,676 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
    [2010.01.07 13:59:32 | 00,001,698 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\HijackThis.lnk
    [2010.01.07 13:54:30 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
    [2010.01.07 13:54:20 | 00,001,084 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    [2010.01.07 13:54:15 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
    [2010.01.07 13:54:10 | 00,273,036 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
    [2010.01.07 13:54:04 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
    [2010.01.07 06:57:39 | 01,572,864 | -H-- | M] () -- C:\Dokumente und Einstellungen\Leonn\NTUSER.DAT
    [2010.01.06 21:18:16 | 00,003,584 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2010.01.06 21:18:08 | 01,684,699 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\078.MPG
    [2010.01.06 17:44:49 | 00,001,673 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\avast! Antivirus.lnk
    [2010.01.06 17:44:45 | 00,003,002 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
    [2010.01.04 20:55:00 | 03,404,560 | ---- | M] (INCA Internet Co., Ltd.) -- C:\WINDOWS\System32\GameMon.des
    [2010.01.03 20:48:24 | 00,171,867 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\fhddfhdfh.JPG
    [2010.01.01 22:52:40 | 00,126,128 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\2std arbeit fürn arsch. xD .jpg
    [2009.12.31 23:48:26 | 00,003,481 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\N7ZCAL35ZLSCA58ZVFACAU3NBAWCA5AWMSNCA49EYAGCALIML4TCA3QZL5DCAC93SQ4CAM3VRGJCAEUUZFMCAAWYN95CA400BQ1CA2135GECAN5OWPSCAKIGEBQCA7PX2EMCAY5BOJ2CAXVLF5PCABRIHDL.jpg
    [2009.12.31 23:46:52 | 00,049,401 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\lololo=).JPG
    [2009.12.30 14:55:24 | 00,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
    [2009.12.30 14:54:58 | 00,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
    [2009.12.30 14:44:52 | 02,705,750 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\12-d-block_and_s-te-fan_ft._mc_villain-sound_of_thunder2.mp3
    [2009.12.30 14:41:24 | 00,000,906 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\DVDVideoSoft Free Studio.lnk
    [2009.12.30 02:33:24 | 01,024,280 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
    [2009.12.30 02:33:24 | 00,458,822 | ---- | M] () -- C:\WINDOWS\System32\perfh007.dat
    [2009.12.30 02:33:24 | 00,441,124 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
    [2009.12.30 02:33:24 | 00,084,326 | ---- | M] () -- C:\WINDOWS\System32\perfc007.dat
    [2009.12.30 02:33:24 | 00,071,060 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
    [2009.12.30 00:20:14 | 00,551,294 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\dgs.wav
    [2009.12.29 16:23:24 | 00,013,104 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT
    [2009.12.29 02:34:27 | 00,177,012 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\SpongebobOidaaaxD.JPG
    [2009.12.29 02:29:26 | 00,096,084 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\321.jpg
    [2009.12.28 22:40:18 | 00,411,080 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\WoWScrnShot_122809_223511.jpg
    [2009.12.28 18:38:32 | 00,015,910 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Bitte.jpg
    [2009.12.28 15:25:20 | 00,021,642 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Cute.jpg
    [2009.12.28 13:29:16 | 00,095,072 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
    [2009.12.28 12:21:11 | 00,000,503 | ---- | M] () -- C:\WINDOWS\win.ini
    [2009.12.28 12:21:11 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
    [2009.12.28 12:21:11 | 00,000,211 | RHS- | M] () -- C:\boot.ini
    [2009.12.28 02:34:55 | 00,112,640 | ---- | M] (inmate) -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\PIC 0_38.scr
    [2009.12.28 01:33:23 | 03,881,877 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\100_2109.JPG
    [2009.12.28 01:30:31 | 00,289,627 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\DSC01144.JPG
    [2009.12.28 01:29:01 | 00,038,094 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\6-9fed04f7d0654e5d7c1ec3232a35c595.jpg
    [2009.12.28 01:26:57 | 00,154,228 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Für Alex x3.jpeg
    [2009.12.28 00:35:13 | 00,001,777 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk
    [2009.12.28 00:34:56 | 00,000,767 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\DivX Player.lnk
    [2009.12.28 00:34:51 | 00,000,803 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\DivX Converter.lnk
    [2009.12.28 00:34:34 | 00,001,484 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\DivX Movies.lnk
    [2009.12.27 20:52:39 | 00,005,991 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\6-0bf37d92e6487029.jpg
    [2009.12.27 20:12:05 | 00,463,600 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\IMG_0018.JPG
    [2009.12.27 20:04:53 | 03,884,243 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\music.jpg
    [2009.12.27 19:04:18 | 00,000,180 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Current.prx
    [2009.12.27 18:17:31 | 00,001,517 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Counter-Strike Source.lnk
    [2009.12.27 17:36:53 | 00,000,453 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Steam.lnk
    [2009.12.27 17:27:19 | 00,034,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lhacm.acm
    [2009.12.27 17:27:18 | 00,000,645 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Teamspeak 2 RC2.lnk
    [2009.12.27 17:25:18 | 00,000,809 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\TeamSpeak 3 Client.lnk
    [2009.12.27 17:12:35 | 00,001,872 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Skype.lnk
    [2009.12.27 01:58:57 | 00,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
    [2009.12.27 01:57:46 | 05,355,416 | -H-- | M] () -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\IconCache.db
    [2009.12.26 22:28:31 | 00,000,735 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Flyff.lnk
    [2009.12.26 18:29:22 | 00,010,796 | -HS- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Folder.jpg
    [2009.12.26 18:29:22 | 00,010,796 | -HS- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\AlbumArt_{E4C6F7E4-5200-4C69-BFFE-DC48DE102ADB}_Large.jpg
    [2009.12.26 18:29:22 | 00,002,623 | -HS- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\AlbumArtSmall.jpg
    [2009.12.26 18:29:22 | 00,002,623 | -HS- | M] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\AlbumArt_{E4C6F7E4-5200-4C69-BFFE-DC48DE102ADB}_Small.jpg
    [2009.12.26 14:07:34 | 00,001,657 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\3DMark06.lnk
    [2009.12.26 14:07:24 | 00,413,696 | ---- | M] (Creative Labs) -- C:\WINDOWS\System32\wrap_oal.dll
    [2009.12.26 14:07:24 | 00,110,592 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\WINDOWS\System32\OpenAL32.dll
    [2009.12.26 00:53:34 | 00,000,138 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat
    [2009.12.25 23:43:51 | 00,001,009 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Crysis SP Demo.lnk
    [2009.12.25 22:33:20 | 00,000,350 | ---- | M] () -- C:\WINDOWS\RefreshLock.ini
    [2009.12.25 21:49:28 | 00,000,644 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Free Download Manager.lnk
    [2009.12.25 21:46:03 | 00,001,753 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\MEGA ePower 85 PLC Utility.lnk
    [2009.12.25 13:43:12 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
    [2009.12.25 13:43:08 | 00,004,444 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
    [2009.12.25 12:58:10 | 00,000,854 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Acrobat Reader 5.1.lnk
    [2009.12.25 02:40:02 | 00,000,892 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\World of Warcraft-Installationsprogramm.lnk
    [2009.12.25 00:36:29 | 00,000,000 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\World of Warcraft.lnk.temp
    [2009.12.25 00:30:55 | 00,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
    [2009.12.25 00:21:49 | 00,251,712 | RHS- | M] () -- C:\ntldr
    [2009.12.25 00:21:49 | 00,047,564 | RHS- | M] () -- C:\NTDETECT.COM
    [2009.12.25 00:04:32 | 00,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
    [2009.12.25 00:01:17 | 00,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
    [2009.12.25 00:01:14 | 00,001,566 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk
    [2009.12.25 00:00:55 | 07,921,616 | ---- | M] (Mozilla) -- C:\Dokumente und Einstellungen\Leonn\Desktop\Firefox Setup 3.5.6.exe
    [2009.12.24 23:55:34 | 00,000,821 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\HD ADeck.lnk
    [2009.12.24 23:43:34 | 00,000,192 | -HS- | M] () -- C:\Dokumente und Einstellungen\Leonn\ntuser.ini
    [2009.12.24 23:40:16 | 00,025,065 | ---- | M] () -- C:\WINDOWS\System32\wmpscheme.xml
    [2009.12.24 23:38:51 | 00,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
    [2009.12.24 23:38:10 | 00,000,237 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
    [2009.12.24 23:33:02 | 00,001,656 | ---- | M] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Java Web Start.lnk
    [2009.12.24 23:30:49 | 00,000,000 | RHS- | M] () -- C:\MSDOS.SYS
    [2009.12.24 23:30:49 | 00,000,000 | RHS- | M] () -- C:\IO.SYS
    [2009.12.24 23:30:49 | 00,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
    [2009.12.24 23:30:49 | 00,000,000 | ---- | M] () -- C:\CONFIG.SYS
    [2009.12.24 23:30:49 | 00,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
    [2009.12.24 23:30:47 | 00,299,552 | ---- | M] () -- C:\WINDOWS\WMSysPrx.prx
    [2009.12.24 23:30:47 | 00,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
    [2009.12.24 23:30:47 | 00,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
    [2009.12.24 23:30:44 | 00,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
    [2009.12.24 23:30:19 | 00,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
    [2009.12.24 23:30:19 | 00,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
    [2009.12.24 23:28:47 | 00,021,740 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
    [2009.12.24 23:28:45 | 00,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
    [2009.12.24 23:28:45 | 00,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
    [2009.12.13 21:35:25 | 73,110,5657 | ---- | M] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\WoW-3.2.0.10192-to-3.3.0.10958-deDE-patch.exe
    [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
     
    ========== Files Created - No Company Name ==========
     
    [2010.01.07 14:48:11 | 00,001,512 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\CCleaner.lnk
    [2010.01.07 14:14:22 | 00,000,676 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
    [2010.01.07 13:59:32 | 00,001,698 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\HijackThis.lnk
    [2010.01.06 21:18:16 | 00,003,584 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2010.01.06 21:17:51 | 01,684,699 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\078.MPG
    [2010.01.06 17:44:49 | 00,001,673 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\avast! Antivirus.lnk
    [2010.01.06 17:39:32 | 00,380,928 | ---- | C] () -- C:\WINDOWS\System32\actskin4.ocx
    [2010.01.03 20:48:24 | 00,171,867 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\fhddfhdfh.JPG
    [2010.01.02 23:51:38 | 02,542,728 | ---- | C] () -- C:\WowMatrix.exe
    [2010.01.01 22:52:32 | 00,126,128 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\2std arbeit fürn arsch. xD .jpg
    [2009.12.31 23:48:25 | 00,003,481 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\N7ZCAL35ZLSCA58ZVFACAU3NBAWCA5AWMSNCA49EYAGCALIML4TCA3QZL5DCAC93SQ4CAM3VRGJCAEUUZFMCAAWYN95CA400BQ1CA2135GECAN5OWPSCAKIGEBQCA7PX2EMCAY5BOJ2CAXVLF5PCABRIHDL.jpg
    [2009.12.31 23:46:48 | 00,049,401 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\lololo=).JPG
    [2009.12.30 14:41:24 | 00,000,906 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\DVDVideoSoft Free Studio.lnk
    [2009.12.30 00:20:01 | 00,551,294 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\dgs.wav
    [2009.12.29 02:33:30 | 00,177,012 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\SpongebobOidaaaxD.JPG
    [2009.12.29 02:29:05 | 00,096,084 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\321.jpg
    [2009.12.28 22:39:30 | 00,411,080 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\WoWScrnShot_122809_223511.jpg
    [2009.12.28 18:38:29 | 00,015,910 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Bitte.jpg
    [2009.12.28 15:25:16 | 00,021,642 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Cute.jpg
    [2009.12.28 01:29:38 | 00,289,627 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\DSC01144.JPG
    [2009.12.28 01:29:06 | 03,881,877 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\100_2109.JPG
    [2009.12.28 01:28:44 | 00,038,094 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\6-9fed04f7d0654e5d7c1ec3232a35c595.jpg
    [2009.12.28 01:26:19 | 00,154,228 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Für Alex x3.jpeg
    [2009.12.28 00:45:22 | 00,001,088 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    [2009.12.28 00:45:22 | 00,001,084 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    [2009.12.28 00:35:13 | 00,001,777 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk
    [2009.12.28 00:34:56 | 00,000,767 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\DivX Player.lnk
    [2009.12.28 00:34:51 | 00,000,803 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\DivX Converter.lnk
    [2009.12.28 00:31:14 | 00,001,484 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\DivX Movies.lnk
    [2009.12.27 20:52:28 | 00,005,991 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\6-0bf37d92e6487029.jpg
    [2009.12.27 20:11:35 | 00,463,600 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\IMG_0018.JPG
    [2009.12.27 20:01:05 | 03,884,243 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\music.jpg
    [2009.12.27 18:17:31 | 00,001,517 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Counter-Strike Source.lnk
    [2009.12.27 17:36:53 | 00,000,453 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Steam.lnk
    [2009.12.27 17:27:18 | 00,000,645 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Teamspeak 2 RC2.lnk
    [2009.12.27 17:25:18 | 00,000,809 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\TeamSpeak 3 Client.lnk
    [2009.12.27 17:12:35 | 00,001,872 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Skype.lnk
    [2009.12.27 16:59:19 | 00,000,180 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Anwendungsdaten\Current.prx
    [2009.12.26 22:29:31 | 00,005,174 | ---- | C] () -- C:\WINDOWS\System32\nppt9x.vxd
    [2009.12.26 22:28:31 | 00,000,735 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Flyff.lnk
    [2009.12.26 18:29:22 | 00,010,796 | -HS- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\Folder.jpg
    [2009.12.26 18:29:22 | 00,010,796 | -HS- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\AlbumArt_{E4C6F7E4-5200-4C69-BFFE-DC48DE102ADB}_Large.jpg
    [2009.12.26 18:29:22 | 00,002,623 | -HS- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\AlbumArtSmall.jpg
    [2009.12.26 18:29:22 | 00,002,623 | -HS- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\AlbumArt_{E4C6F7E4-5200-4C69-BFFE-DC48DE102ADB}_Small.jpg
    [2009.12.26 18:25:39 | 02,705,750 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Eigene Dateien\12-d-block_and_s-te-fan_ft._mc_villain-sound_of_thunder2.mp3
    [2009.12.26 14:07:34 | 00,001,657 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\3DMark06.lnk
    [2009.12.26 00:53:34 | 00,000,138 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Lokale Einstellungen\Anwendungsdaten\fusioncache.dat
    [2009.12.25 23:43:51 | 00,001,009 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Crysis SP Demo.lnk
    [2009.12.25 21:49:28 | 00,000,644 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\Free Download Manager.lnk
    [2009.12.25 21:46:03 | 00,001,753 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\MEGA ePower 85 PLC Utility.lnk
    [2009.12.25 13:43:13 | 00,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
    [2009.12.25 13:43:07 | 00,004,444 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF
    [2009.12.25 12:59:31 | 00,000,350 | ---- | C] () -- C:\WINDOWS\RefreshLock.ini
    [2009.12.25 12:58:10 | 00,000,854 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Acrobat Reader 5.1.lnk
    [2009.12.25 12:03:47 | 00,008,743 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb
    [2009.12.25 10:48:44 | 73,110,5657 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\WoW-3.2.0.10192-to-3.3.0.10958-deDE-patch.exe
    [2009.12.25 10:28:12 | 17,400,54112 | ---- | C] () -- C:\WoW-3.2.0-deDE-patch.exe
    [2009.12.25 01:10:37 | 00,000,637 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\World of Warcraft.lnk
    [2009.12.25 00:36:29 | 00,000,000 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\World of Warcraft.lnk.temp
    [2009.12.25 00:35:58 | 00,000,892 | ---- | C] () -- C:\Dokumente und Einstellungen\Leonn\Desktop\World of Warcraft-Installationsprogramm.lnk
    [2009.12.25 00:30:14 | 00,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
    [2009.12.25 00:25:17 | 00,000,237 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
    [2009.12.25 00:25:17 | 00,000,211 | RHS- | C] () -- C:\boot.ini
    [2009.12.25 00:24:56 | 00,660,224 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
    [2009.12.25 00:24:56 | 00,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
    [2009.12.25 00:24:56 | 00,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
    [2009.12.25 00:24:56 | 00,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
    [2009.12.25 00:24:56 | 00,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
    [2009.12.25 00:24:56 | 00,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
    [2009.12.25 00:24:56 | 00,076,456 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
    [2009.12.25 00:24:56 | 00,026,141 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
    [2009.12.25 00:24:56 | 00,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
    [2009.12.25 00:24:56 | 00,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
    [2009.12.25 00:24:56 | 00,001,730 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
    [2009.12.25 00:24:56 | 00,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
    [2009.12.25 00:24:55 | 00,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
    [2009.12.25 00:24:55 | 00,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
    [2009.12.25 00:24:55 | 00,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
    [2009.12.25 00:24:55 | 00,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
    [2009.12.25 00:24:55 | 00,058,216 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
    [2009.12.25 00:24:55 | 00,034,554 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
    [2009.12.25 00:24:55 | 00,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
    [2009.12.25 00:24:54 | 00,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
    [2009.12.25 00:24:54 | 00,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
    [2009.12.25 00:24:54 | 00,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
    [2009.12.25 00:24:54 | 00,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
    [2009.12.25 00:24:54 | 00,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
    [2009.12.25 00:24:54 | 00,184,109 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
    [2009.12.25 00:24:54 | 00,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
    [2009.12.25 00:24:54 | 00,084,531 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
    [2009.12.25 00:24:54 | 00,066,132 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
    [2009.12.25 00:24:54 | 00,036,610 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
    [2009.12.25 00:24:54 | 00,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
    [2009.12.25 00:24:54 | 00,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
    [2009.12.25 00:24:54 | 00,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
    [2009.12.25 00:24:54 | 00,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
    [2009.12.25 00:24:54 | 00,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
    [2009.12.25 00:24:54 | 00,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
    [2009.12.25 00:24:54 | 00,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
    [2009.12.25 00:24:54 | 00,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
    [2009.12.25 00:24:54 | 00,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
    [2009.12.25 00:24:54 | 00,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
    [2009.12.25 00:24:54 | 00,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
    [2009.12.25 00:24:54 | 00,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
    [2009.12.25 00:24:54 | 00,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
    [2009.12.25 00:24:54 | 00,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
    [2009.12.25 00:24:54 | 00,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
    [2009.12.25 00:24:54 | 00,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
    [2009.12.25 00:24:54 | 00,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
    [2009.12.25 00:24:54 | 00,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
    [2009.12.25 00:24:54 | 00,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
    [2009.12.25 00:24:54 | 00,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
    [2009.12.25 00:24:54 | 00,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
    [2009.12.25 00:24:54 | 00,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
    [2009.12.25 00:24:54 | 00,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
    [2009.12.25 00:24:54 | 00,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
    [2009.12.25 00:24:54 | 00,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
    [2009.12.25 00:24:54 | 00,001,810 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
    [2009.12.25 00:24:54 | 00,001,476 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
    [2009.12.25 00:24:54 | 00,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
    [2009.12.25 00:24:54 | 00,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
    [2009.12.25 00:24:54 | 00,001,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
    [2009.12.25 00:24:54 | 00,001,467 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
    [2009.12.25 00:24:54 | 00,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
    [2009.12.25 00:24:54 | 00,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
    [2009.12.25 00:24:54 | 00,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
    [2009.12.25 00:24:54 | 00,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
    [2009.12.25 00:24:54 | 00,001,261 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
    [2009.12.25 00:24:54 | 00,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
    [2009.12.25 00:24:54 | 00,001,055 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
    [2009.12.25 00:24:54 | 00,001,047 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
    [2009.12.25 00:24:54 | 00,001,038 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
    [2009.12.25 00:24:54 | 00,000,807 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
    [2009.12.25 00:24:54 | 00,000,800 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
    [2009.12.25 00:24:54 | 00,000,782 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
    [2009.12.25 00:24:54 | 00,000,779 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
    [2009.12.25 00:24:54 | 00,000,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
    [2009.12.25 00:24:54 | 00,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
    [2009.12.25 00:24:54 | 00,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
    [2009.12.25 00:24:54 | 00,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
    [2009.12.25 00:24:54 | 00,000,725 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
    [2009.12.25 00:24:54 | 00,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
    [2009.12.25 00:24:53 | 00,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
    [2009.12.25 00:24:53 | 00,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
    [2009.12.25 00:24:53 | 00,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
    [2009.12.25 00:24:51 | 00,239,616 | ---- | C] () -- C:\WINDOWS\System32\wstrenderer.ax
    [2009.12.25 00:24:51 | 00,164,352 | ---- | C] () -- C:\WINDOWS\System32\wstpager.ax
    [2009.12.25 00:24:51 | 00,053,248 | ---- | C] () -- C:\WINDOWS\System32\vbicodec.ax
    [2009.12.25 00:22:01 | 00,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
    [2009.12.25 00:22:01 | 00,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
    [2009.12.25 00:22:00 | 00,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
    [2009.12.25 00:04:32 | 00,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
    [2009.12.25 00:01:17 | 00,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
    [2009.12.25 00:01:14 | 00,001,566 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk
    [2009.12.24 23:56:45 | 00,005,836 | R--- | C] () -- C:\WINDOWS\System32\nvnrm.nvu
    [2009.12.24 23:56:45 | 00,003,948 | R--- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
    [2009.12.24 23:56:42 | 00,000,659 | R--- | C] () -- C:\WINDOWS\System32\nvsmu.nvu
    [2009.12.24 23:56:41 | 00,002,016 | R--- | C] () -- C:\WINDOWS\System32\nvsmb.nvu
    [2009.12.24 23:55:34 | 00,000,821 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\HD ADeck.lnk
    [2009.12.24 23:42:36 | 00,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
    [2009.12.24 23:42:36 | 00,033,280 | ---- | C] () -- C:\WINDOWS\System32\psisrndr.ax
    [2009.12.24 23:42:35 | 00,118,272 | ---- | C] () -- C:\WINDOWS\System32\mpeg2data.ax
    [2009.12.24 23:42:35 | 00,056,832 | ---- | C] () -- C:\WINDOWS\System32\msdvbnp.ax
    [2009.12.24 23:42:34 | 00,148,992 | ---- | C] () -- C:\WINDOWS\System32\mpg2splt.ax
    [2009.12.24 23:40:05 | 00,000,192 | -HS- | C] () -- C:\Dokumente und Einstellungen\Leonn\ntuser.ini
    [2009.12.24 23:40:04 | 01,572,864 | -H-- | C] () -- C:\Dokumente und Einstellungen\Leonn\NTUSER.DAT
    [2009.12.24 23:38:51 | 00,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
    [2009.12.24 23:38:06 | 00,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
    [2009.12.24 23:37:44 | 00,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
    [2009.12.24 23:37:34 | 01,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
    [2009.12.24 23:37:25 | 00,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
    [2009.12.24 23:37:24 | 00,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
    [2009.12.24 23:37:23 | 00,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
    [2009.12.24 23:37:09 | 13,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
    [2009.12.24 23:37:03 | 00,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
    [2009.12.24 23:36:54 | 00,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
    [2009.12.24 23:36:26 | 00,017,638 | ---- | C] () -- C:\WINDOWS\System32\OEMLOGO.BMP
    [2009.12.24 23:36:26 | 00,001,082 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
    [2009.12.24 23:33:02 | 00,001,656 | ---- | C] () -- C:\Dokumente und Einstellungen\All Users\Desktop\Java Web Start.lnk
    [2009.12.24 23:33:01 | 00,028,771 | ---- | C] () -- C:\WINDOWS\System32\javaw.exe
    [2009.12.24 23:33:01 | 00,024,673 | ---- | C] () -- C:\WINDOWS\System32\java.exe
    [2009.12.24 23:30:49 | 00,003,002 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
    [2009.12.24 23:30:49 | 00,000,000 | RHS- | C] () -- C:\MSDOS.SYS
    [2009.12.24 23:30:49 | 00,000,000 | RHS- | C] () -- C:\IO.SYS
    [2009.12.24 23:30:49 | 00,000,000 | ---- | C] () -- C:\CONFIG.SYS
    [2009.12.24 23:30:49 | 00,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
    [2009.12.24 23:30:48 | 00,025,065 | ---- | C] () -- C:\WINDOWS\System32\wmpscheme.xml
    [2009.12.24 23:30:47 | 00,299,552 | ---- | C] () -- C:\WINDOWS\WMSysPrx.prx
    [2009.12.24 23:30:47 | 00,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
    [2009.12.24 23:30:47 | 00,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
    [2009.12.24 23:30:19 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
    [2009.12.24 23:30:19 | 00,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
    [2009.12.24 23:30:16 | 00,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
    [2009.12.24 23:30:09 | 04,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
    [2009.12.24 23:29:33 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
    [2009.12.24 23:29:33 | 00,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
    [2009.12.24 23:29:27 | 00,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
    [2009.12.24 23:28:47 | 00,021,740 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
    [2009.12.24 23:28:22 | 00,065,954 | ---- | C] () -- C:\WINDOWS\Präriewind.bmp
    [2009.12.24 23:28:22 | 00,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe-Stuck.bmp
    [2009.12.24 23:28:22 | 00,026,680 | ---- | C] () -- C:\WINDOWS\Fächer.bmp
    [2009.12.24 23:28:22 | 00,026,582 | ---- | C] () -- C:\WINDOWS\Granit.bmp
    [2009.12.24 23:28:22 | 00,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
    [2009.12.24 23:28:22 | 00,017,336 | ---- | C] () -- C:\WINDOWS\Angler.bmp
    [2009.12.24 23:28:22 | 00,017,062 | ---- | C] () -- C:\WINDOWS\Kaffeetasse.bmp
    [2009.12.24 23:28:22 | 00,016,730 | ---- | C] () -- C:\WINDOWS\Feder.bmp
    [2009.12.24 23:28:22 | 00,009,522 | ---- | C] () -- C:\WINDOWS\Zapotek.bmp
    [2009.12.24 23:28:21 | 00,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
    [2009.12.24 23:28:21 | 00,065,978 | ---- | C] () -- C:\WINDOWS\Seifenblase.bmp
    [2009.12.24 23:28:21 | 00,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
    [2009.12.24 23:28:21 | 00,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
    [2009.12.24 23:28:21 | 00,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
    [2009.12.24 23:28:21 | 00,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
    [2009.12.24 23:28:21 | 00,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
    [2009.12.24 23:28:21 | 00,001,272 | ---- | C] () -- C:\WINDOWS\Blaue Spitzen 16.bmp
    [2009.12.24 23:28:20 | 00,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
    [2009.12.24 23:28:20 | 00,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
    [2009.12.24 23:28:19 | 00,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
    [2009.12.24 23:28:19 | 00,001,237 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
    [2009.12.24 23:28:17 | 00,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
    [2009.12.24 23:28:08 | 00,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
    [2009.12.24 23:26:44 | 00,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
    [2009.12.24 23:26:40 | 01,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
    [2009.12.24 23:26:40 | 00,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
    [2009.12.24 23:26:39 | 00,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
    [2009.12.24 23:26:39 | 00,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
    [2009.12.24 23:26:38 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
    [2009.12.24 23:26:36 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
    [2009.12.24 23:26:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
    [2009.12.24 23:26:36 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
    [2009.12.24 23:26:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
    [2009.12.24 23:26:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
    [2009.12.24 23:26:34 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
    [2009.12.24 23:26:33 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
    [2009.12.24 23:26:33 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
    [2009.12.24 23:26:32 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
    [2009.12.24 23:26:32 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
    [2009.12.24 23:26:32 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
    [2009.12.24 23:26:31 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
    [2009.12.24 23:26:31 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
    [2009.12.24 23:26:31 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
    [2009.12.24 23:26:29 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_852.nls
    [2009.12.24 23:26:29 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
    [2009.12.24 23:26:29 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
    [2009.12.24 23:26:29 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
    [2009.12.24 23:26:28 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
    [2009.12.24 23:26:25 | 00,001,806 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
    [2009.12.24 23:26:22 | 00,817,199 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
    [2009.12.24 23:26:22 | 00,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
    [2009.12.24 23:26:22 | 00,041,270 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
    [2009.12.24 23:26:22 | 00,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
    [2009.12.24 23:26:22 | 00,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
    [2009.12.24 23:26:22 | 00,007,506 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
    [2009.12.24 23:25:52 | 00,095,072 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
    [2009.08.03 00:21:54 | 00,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
    [2009.08.03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
    [2009.08.03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
    [2009.08.03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
    [2009.08.03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
    [2009.08.03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
    [2009.08.03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
    [2009.08.03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
    [2009.08.03 00:21:52 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
    [2009.08.03 00:21:52 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
    < End of report >
    Ich hoffe so ist es richtig
    Geändert von Flowerboy (07.01.2010 um 18:35 Uhr)

  2. #2
    Junior Team-Anwärter Benutzerbild von fingerschmuckrock
    Registriert seit
    24.10.2009
    Ort
    Würzburg
    Beiträge
    837

    AW: Virus?

    Willkommen im HijackThis.de Supportforum Flowerboy,

    ein System zu bereinigen ist unter Umständen aufwändig und mit einiger Arbeit für Dich verbunden.
    Bevor wir anfangen, hier noch ein paar lästige, aber wichtige und grundsätzliche Punkte, die von Dir zu beachten sind:
    • Respektiere unsere Forenregeln und
    • sei nicht zu ungeduldig, wenn es mal etwas länger dauert, bis wir antworten.
    • Es gibt grundsätzlich keinen Support per PN oder Mail.
    • Wir bereinigen keine Rechner, die geschäftlich genutzt werden,
    • und/oder Rechner, die Cracks oder sonstige Hacks enthalten, die es ermöglichen, Bezahlsoftware ohne Bezahlung zu nutzen.
    • Es ist wichtig, dass Du solange mitarbeitest, bis alle Punkte abgearbeitet sind und das Signal kommt, dass die Bereinigung beendet ist, auch wenn die Symptome vielleicht schon nach den ersten Aktionen verschwunden sein sollten.
    • Bitte alle Logfiles in Code-Tags posten.
    • Evtl. vorhandene persönliche Daten und Realnamen ggfs. anonymisieren.
    • Entfernungs-Programme (Removal-Tools) ausschließlich von den in unserer Anleitung angegebenen Links herunterladen!
    • Du kannst Deine Beiträge über den "Ändern-Button" jederzeit ergänzen/ändern/löschen.

    Wichtig:
    • Während unserer Reinigungphase nur Programme installieren und Scans durchführen, die wir anordnen.
    • Während der Bereinigung alle externen Medien, wie USB-Sticks, externe Festplatten und Flash-Karten an den Rechner anschließen!
    • Wenn Du dazu bereit bist, arbeite die folgenden Punkte unbedingt in der vorgegebenen Reihenfolge ab.
    • Das ist deshalb so wichtig, weil häufig der eine Punkt den anderen voraussetzt!
    • Wenn bei einem Punkt etwas unklar ist oder etwas nicht (wie geplant) funktioniert, bitte nachfragen, bevor Du weitermachst.
    • Berichte mir zu jedem Punkt, ob Du ihn erledigt hast.

    Vista User:
    • Bitte alle Programme und Tools, die wir anordnen, immer mit Rechtsklick und "als Administrator ausführen" starten.
    • Teile uns mit, falls auf dem Rechner eine 64Bit-Version von Vista läuft, da viele Entfernungs-Tools damit nicht funktionieren.





    ===== Punkt 1 =====



    Systemscan mit OTL

    Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
    • Doppelklick auf die OTL.exe
    • Vista User: Rechtsklick auf die OTL.exe und "als Administrator ausführen" wählen
    • Oben findest Du ein Kästchen mit Output. Wähle bitte Minimal Output
    • Unter Extra Registry, wähle bitte Use SafeList
    • Klicke nun auf Run Scan links oben
    • Wenn der Scan beendet wurde werden 2 Logfiles erstellt

    Poste die Logfiles in Code-Tags hier in den Thread.
    Geändert von fingerschmuckrock (07.01.2010 um 16:20 Uhr)

  3. #3
    Junior Team-Anwärter Benutzerbild von fingerschmuckrock
    Registriert seit
    24.10.2009
    Ort
    Würzburg
    Beiträge
    837

    AW: Virus?

    Editier bitte Deinen Post und setz die Logfiles in Codetags.
    Hier findest Du eine bebilderte Anleitung dazu.
    http://www.hijackthis-forum.de/154284-post3.html

  4. #4
    Einsteiger
    Registriert seit
    07.01.2010
    Beiträge
    2

    AW: Virus?

    So.. Ich hoffe das war so richtig

  5. #5
    Junior Team-Anwärter Benutzerbild von fingerschmuckrock
    Registriert seit
    24.10.2009
    Ort
    Würzburg
    Beiträge
    837

    AW: Virus?

    Zitat Zitat von Flowerboy Beitrag anzeigen
    So.. Ich hoffe das war so richtig
    Ja war richtig so, aber warum muß man sich deswegen weglachen?
    Ich habe die Arbeit mit den Logs, wenn bedingt durch die Forensoftware Zeilenumbrüche entstehen. Umsonst weisen wir nicht extra nochmal drauf hin


    ===== Punkt 1 =====

    Rootkit-Suche mit Gmer

    Was sind Rootkits?

    Wichtig: Bei jedem Rootkit-Scans soll/en:
    • alle anderen Programme gegen Viren, Spyware, usw. deaktiviert sein,
    • keine Verbindung zu einem Netzwerk/Internet bestehen (WLAN nicht vergessen),
    • nichts am Rechner getan werden,
    • nach jedem Scan der Rechner neu gestartet werden.
    • Nicht vergessen, nach dem Rootkit-Scan die Security-Programme wieder einzuschalten!

    Lade Dir Gmer von dieser Seite herunter
    (auf den Button Download EXE drücken) und das Programm auf dem Desktop speichern.
    • Gmer ist geeignet für => NT/W2K/XP/VISTA (nur 32Bit).
    • Alle anderen Programme sollen geschlossen sein.
    • Starte gmer.exe (hat einen willkürlichen Programm-Namen).
    • Vista-User mit Rechtsklick und als Administrator starten.
    • Gmer startet automatisch einen ersten Scan.
    • Sollte sich ein Fenster mit folgender Warnung öffnen:
      Code:
      WARNING !!!
      GMER has found system modification, which might have been caused by ROOTKIT activity.
      Do you want to fully scan your system?
    • Unbedingt auf "No" klicken,
      anschließend über den Copy-Button das bisherige Resultat in die Zwischenablage zu kopieren.
    • Füge das Log aus der Zwischenablage mit STRG + V in Deine Antwort in Deinem Thread ein.
      .
    • Falls das nicht der Fall war, wähle nun den Reiter "Rootkit/Malware",
    • Hake an: System, Sections, IAT/EAT, Devices, Modules, Processes, Threads, Libraries, Services, Registry und Files.
    • Wichtig: "Show all" darf nicht angehakt sein!
    • Starte den Scan durch Drücken des Buttons "Scan".
      Mache nichts am Computer während der Scan läuft.
    • Wenn der Scan fertig ist klicke auf "Copy" um das Log in die Zwischenablage zu kopieren.
      Mit "Ok" wird Gmer beendet.
    • Füge das Log aus der Zwischenablage in Deine Antwort hier ein (mit STRG + V).

    Antiviren-Programm und sonstige Scanner wieder einschalten, bevor Du ins Netz gehst!


    ===== Punkt 2 =====

    Poste dann das Log von Gmer, sowie ein nach einem Neustart erstelltes Logfile von OTL

  6. #6
    Moderator (global) Team-Mitglied Benutzerbild von Petra
    Registriert seit
    03.05.2007
    Ort
    Nähe Düsseldorf
    Beiträge
    24.796

    AW: Virus?

    Edit 31.01.2010:
    Thread wird mangels Rückmeldung geschlossen.
    Bei Bedarf schicke bitte eine PN an mich, ich kann den Thread ggfs. wieder öffnen.

Aktive Benutzer

Aktive Benutzer

Aktive Benutzer in diesem Thema: 1 (Registrierte Benutzer: 0, Gäste: 1)

     

Ähnliche Themen

  1. Antworten: 16
    Letzter Beitrag: 21.12.2008, 20:23
  2. Antworten: 5
    Letzter Beitrag: 30.09.2008, 19:52
  3. Virus oder kein Virus?
    Von tigerbine im Forum Archiv
    Antworten: 4
    Letzter Beitrag: 04.08.2008, 12:39
  4. VIRUS : not-a-virus:AdWare.Win32.cydoor
    Von 12bellis im Forum Archiv
    Antworten: 6
    Letzter Beitrag: 16.05.2008, 16:07
  5. Antworten: 2
    Letzter Beitrag: 03.04.2008, 04:23

Forumregeln

  • Es ist Ihnen nicht erlaubt, neue Themen zu verfassen.
  • Es ist Ihnen nicht erlaubt, auf Beiträge zu antworten.
  • Es ist Ihnen nicht erlaubt, Anhänge hochzuladen.
  • Es ist Ihnen nicht erlaubt, Ihre Beiträge zu bearbeiten.