![]() |
|
Plagegeister aller Art und deren Bekämpfung: Keine InternetverbindungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
![]() ![]() | ![]() Keine Internetverbindung Hallo. Gerade macht mein eigener Laptop ein paar Probleme. Er verbindet sivh immer nur eingeschränkt mit dem wlan und überhäupt nicht über kabel. Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-06-2013 03 (ATTENTION: FRST version is 21 days old) Ran by K.Badekow (administrator) on 02-07-2013 12:50:52 Running from D:\Rapidshare Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\PROGRA~2\AVG\AVG2013\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe () C:\Program Files (x86)\Guard-ICQ\GuardICQ.exe (HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (iAnywhere Solutions, Inc.) C:\Program Files (x86)\Sybase\SQL Anywhere 9\win32\dbsrv9.exe (NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\ncpclcfg.exe (NCP Engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\ncprwsnt.exe () C:\Program Files (x86)\NCP\SecureClient\NCPSEC.EXE (NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgemca.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (CANON INC.) C:\Windows\System32\spool\drivers\x64\3\CNAP2LAK.EXE (Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Dropbox, Inc.) C:\Users\K.Badekow\AppData\Roaming\Dropbox\bin\Dropbox.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (CANON INC.) C:\Windows\system32\spool\DRIVERS\x64\3\CNAP2RPK.EXE (CANON INC.) C:\Windows\system32\spool\DRIVERS\x64\3\CNACBSWK.EXE (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\NcpBudgetGui.exe (NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [1580368 2010-11-03] (Logitech, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [444904 2012-09-20] (Adobe Systems Incorporated) HKLM\...\Run: [CNAP2 Launcher] C:\Windows\system32\spool\DRIVERS\x64\3\CNAP2LAK.EXE [226784 2010-10-14] (CANON INC.) HKLM\...\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" [170496 2013-04-13] (Sun Microsystems, Inc.) HKCU\...\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [1475584 2010-11-21] (Microsoft Corporation) HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3481408 2012-02-13] (DT Soft Ltd) HKCU\...\Policies\system: [disableregistrytools] 0 HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [PDFPrint] C:\Program Files (x86)\PDF24\pdf24.exe [162856 2013-03-20] (Geek Software GmbH) HKLM-x32\...\Run: [NcpBudgetGui] "C:\Program Files (x86)\NCP\SecureClient\NcpBudgetGui.exe" -start [1001472 2013-01-07] (NCP engineering GmbH) HKLM-x32\...\Run: [NcpPopup] "C:\Program Files (x86)\NCP\SecureClient\ncppopup.exe" noerrmsg [1011280 2012-03-20] (NCP engineering GmbH) HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642656 2013-03-28] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [NcpRsuGui] "C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe" -gui [883792 2011-08-22] (NCP engineering GmbH) HKLM-x32\...\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY [4408368 2013-04-29] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) Startup: C:\Users\K.Badekow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\K.Badekow\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU SearchScopes: DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=109958&tt=101012_24_4112_6&babsrc=SP_ss&mntrId=926aa9df00000000000074de2bad3d8f SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=109958&tt=101012_24_4112_6&babsrc=SP_ss&mntrId=926aa9df00000000000074de2bad3d8f BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll No File BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: ICQ Sparberater - {0766C1B9-B2DC-46E5-8934-4F3D6B42B1BD} - C:\Program Files (x86)\icq\Internet Explorer\icq.dll (solute gmbh) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO-x32: No Name - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM-x32 - No Name - {98889811-442D-49dd-99D7-DC866BE87DBC} - No File DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll No File Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Winsock: Catalog9 11 %SystemRoot%\system32\vsocklib.dll [63088] (VMware, Inc.) Winsock: Catalog9 12 %SystemRoot%\system32\vsocklib.dll [63088] (VMware, Inc.) Winsock: Catalog9-x64 11 %SystemRoot%\system32\vsocklib.dll [67184] (VMware, Inc.) Winsock: Catalog9-x64 12 %SystemRoot%\system32\vsocklib.dll [67184] (VMware, Inc.) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\K.Badekow\AppData\Roaming\Mozilla\Firefox\Profiles\vmhd2vpj.default FF SelectedSearchEngine: Search the web (Babylon) FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) FF Plugin-x32: @rim.com/npappworld - C:\Program Files (x86)\Research In Motion Limited\Browser-Plug-In f�r BlackBerry App World\npappworld.dll () FF Plugin-x32: @RIM.com/WebSLLauncher,version=1.0 - C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll () FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin-x32: adobe.com/AdobeExManDetect - D:\Adobe InDesign\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll No File ==================== Services (Whitelisted) ================= R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4937264 2013-05-14] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-04-18] (AVG Technologies CZ, s.r.o.) R2 Guard.Mail.ru; C:\Program Files (x86)\Guard-ICQ\GuardICQ.exe [1564368 2012-02-16] () S3 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] () R2 Lexware_Professional_Datenbank; C:\Program Files (x86)\Sybase\SQL Anywhere 9\win32\dbsrv9.exe [83248 2008-07-02] (iAnywhere Solutions, Inc.) R2 ncpclcfg; C:\Program Files (x86)\NCP\SecureClient\ncpclcfg.exe [139896 2012-07-12] (NCP engineering GmbH) R2 ncprwsnt; C:\Program Files (x86)\NCP\SecureClient\ncprwsnt.exe [1650736 2013-01-16] (NCP Engineering GmbH) R2 NcpSec; C:\Program Files (x86)\NCP\SecureClient\NCPSEC.EXE [119808 2011-04-21] () R2 rwsrsu; C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe [883792 2011-08-22] (NCP engineering GmbH) S3 TVersityMediaServer; C:\ProgramData\TVersity\Media Server\MediaServer.exe [1249064 2011-07-29] () ==================== Drivers (Whitelisted) ==================== R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-03-29] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-02-08] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206136 2013-02-08] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311096 2013-02-08] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-02-08] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-02-08] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) S3 dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys [20552 2010-09-06] (Devguru Co., Ltd) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-02-17] (DT Soft Ltd) S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] () S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] () R3 L1C; C:\Windows\System32\DRIVERS\L1C60x64.sys [75888 2010-09-27] (Atheros Communications, Inc.) S3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] () S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] () S3 ncpfilt; C:\Windows\System32\DRIVERS\ncplelhp.sys [102800 2013-01-16] (NCP Engineering GmbH) S3 ncplelhp; C:\Windows\System32\DRIVERS\ncplelhp.sys [102800 2013-01-16] (NCP Engineering GmbH) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [74752 2011-07-25] (Research In Motion Limited) R3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [44032 2011-07-20] (Research in Motion Ltd) S3 VGPU; System32\drivers\rdvgkmd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-02 12:43 - 2013-07-02 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{E6CEFBA5-0C25-4095-B20F-13B3072B6995} 2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Windows\erdnt 2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Qoobox 2013-07-01 11:05 - 2013-07-01 11:05 - 00000000 ____D C:\FRST 2013-06-29 22:04 - 2013-06-29 22:05 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4105C62B-65D6-414B-B50A-B543148C4F2E} 2013-06-29 21:17 - 2013-06-29 21:17 - 00000000 ____D C:\Program Files\Adobe 2013-06-29 21:08 - 2013-06-29 21:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{754EBE3D-CD32-4C44-A42D-18006450009A} 2013-06-29 20:56 - 2013-06-29 20:57 - 00276088 ____A C:\Windows\Minidump\062913-37393-01.dmp 2013-06-29 09:08 - 2013-06-29 09:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{F520A111-6D29-4EFD-863A-69C3ADEC4DDA} 2013-06-28 11:14 - 2013-06-28 11:14 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{9F928144-95BF-4577-8C67-EFF672D1F808} 2013-06-27 21:03 - 2013-06-27 21:05 - 00000000 ____D C:\tmp 2013-06-27 20:59 - 2013-06-27 20:59 - 00000561 ____A C:\Users\Public\Desktop\FLAC To MP3.lnk 2013-06-27 17:27 - 2013-06-27 17:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{56D12B53-1636-45D7-B134-6BB274AD6F76} 2013-06-26 12:06 - 2013-06-26 12:06 - 00001550 ____A C:\Users\Public\Desktop\Adobe Application Manager.lnk 2013-06-26 09:58 - 2013-06-26 09:58 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\PDAppFlex 2013-06-26 09:37 - 2013-06-26 09:37 - 00000000 ____D C:\Users\K.Badekow\.android 2013-06-26 09:35 - 2013-06-26 09:35 - 00007334 ____A C:\Users\K.Badekow\Desktop\OpenDocument Text (neu).odt 2013-06-26 08:22 - 2013-06-26 08:25 - 00000000 ____D C:\Users\K.Badekow\Documents\Songtexte 2013-06-26 08:22 - 2013-06-26 08:22 - 00003498 ____A C:\Users\K.Badekow\Desktop\Projektarbeit.lnk 2013-06-26 08:11 - 2013-06-26 08:11 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{128BC551-4EE5-4B69-955E-030FE2EE38CC} 2013-06-25 18:47 - 2013-06-25 18:47 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4717120F-BF25-477D-9049-681B5FA7F326} 2013-06-24 13:12 - 2013-06-24 13:12 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\TERA 2013-06-24 12:51 - 2013-06-24 12:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{65E7A4AF-91BF-491E-A875-EA44802BA86C} 2013-06-24 11:39 - 2013-06-24 11:39 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-06-24 11:39 - 2013-06-24 11:39 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-06-22 12:43 - 2013-06-22 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2ECB220E-1744-472E-B0E9-F3D2B33C6B29} 2013-06-21 13:28 - 2013-06-21 13:28 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2A6B4077-791F-44FE-B554-464D24DE1A50} 2013-06-20 10:35 - 2013-06-20 10:36 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7B35B0F4-B460-4D27-ADBF-2B7607A477A0} 2013-06-19 18:49 - 2013-06-19 18:49 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D2CF201F-47E1-46D0-9AB7-307303E5B4DB} 2013-06-18 11:27 - 2013-06-18 11:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{A6CBDF6B-B792-4F31-BC5F-491FF9699B57} 2013-06-17 15:26 - 2013-06-17 15:26 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2535FBC9-68F1-4230-A1D3-30148137CA25} 2013-06-15 22:23 - 2013-06-15 22:24 - 00000000 ____D C:\Program Files (x86)\PS3 Media Server 2013-06-15 15:06 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-15 15:06 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-15 15:06 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-15 15:06 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-15 15:06 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-15 15:06 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-15 15:06 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-15 15:06 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-15 15:06 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-15 15:06 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-15 15:06 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-15 15:06 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-15 11:05 - 2013-06-15 11:05 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{CF1E691A-FB33-45B6-BCDD-8433F62DA873} 2013-06-14 22:01 - 2013-06-14 22:02 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D6510E01-74D2-42BA-BB76-A5C8D525B3F2} 2013-06-14 08:06 - 2013-06-14 08:06 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{8469943F-2959-42B5-93AF-45716B3B09B9} 2013-06-12 08:34 - 2013-06-12 08:35 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7882D4C6-F219-4280-90FF-AAE445BD7B45} 2013-06-11 22:53 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-11 22:53 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-11 22:53 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-11 22:53 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-11 22:53 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-11 22:53 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-11 22:53 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-11 22:53 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-11 22:53 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-11 22:53 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-11 22:53 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-11 22:53 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-11 22:53 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-11 22:53 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-11 22:53 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-11 22:53 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-11 22:53 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-11 22:53 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-11 22:53 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-11 19:52 - 2013-06-11 19:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{FA625A9A-EB29-492B-8508-32FEE2B4D531} 2013-06-11 19:32 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-11 19:32 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-11 19:32 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-11 19:32 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-11 19:32 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-11 19:32 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-11 19:32 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-11 19:31 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-11 19:31 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-11 19:31 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-11 19:31 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-11 19:31 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-11 19:31 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-11 19:31 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-11 19:31 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-11 19:31 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-11 19:31 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-11 19:31 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-11 19:31 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-09 21:01 - 2013-06-09 21:01 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{3C1934F7-C6DF-49B3-BDAD-6A151B7341FA} 2013-06-07 17:33 - 2013-06-07 17:33 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{BC0028D6-5C2A-45A7-82B2-A8D929F7FFE9} 2013-06-06 21:37 - 2013-06-06 21:37 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{448FE722-BA76-40B6-A6B9-044096689F8D} 2013-06-06 08:53 - 2013-06-06 08:53 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{EA4EC261-94DA-4147-9A9F-814BD04620DE} 2013-06-05 06:24 - 2013-06-05 06:24 - 00001149 ____A C:\Users\K.Badekow\Desktop\Free FLV Converter.lnk 2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\FreeFLVConverter 2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Program Files (x86)\Free FLV Converter 2013-06-05 06:24 - 2012-10-17 16:37 - 00397312 ____A (Koyote Soft) C:\Windows\SysWOW64\TubeFinder.exe 2013-06-05 06:24 - 2011-09-28 09:18 - 00364544 ____A C:\Windows\SysWOW64\PropertyGrid.ocx 2013-06-05 06:24 - 2011-09-28 09:18 - 00208500 ____A C:\Windows\SysWOW64\ReyXpBasics.tlb 2013-06-05 06:24 - 2011-09-28 09:18 - 00152848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX 2013-06-05 06:24 - 2011-09-28 09:18 - 00141312 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCFR.DLL 2013-06-05 06:24 - 2011-09-28 09:18 - 00119568 ____A (Microsoft Corporation) C:\Windows\SysWOW64\VB6FR.DLL 2013-06-05 06:24 - 2011-09-28 09:18 - 00101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\VB6STKIT.DLL 2013-06-05 06:24 - 2011-09-28 09:18 - 00084512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PICCLP32.OCX 2013-06-05 06:24 - 2011-09-28 09:18 - 00032768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\CMDLGFR.DLL 2013-06-05 06:24 - 2011-09-28 09:18 - 00024576 ____A C:\Windows\SysWOW64\ControlSubX.ocx 2013-06-05 06:24 - 2011-09-28 09:18 - 00009728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PCCLPFR.DLL 2013-06-04 17:13 - 2013-06-04 17:13 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{1A583EA5-E510-437D-AF08-DBAF5868DF17} 2013-06-03 18:45 - 2013-06-03 18:45 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{33FE1A42-0519-4B1F-997C-500E38842510} 2013-06-02 21:10 - 2013-06-02 21:11 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7F07F3D4-79CC-439B-BEDE-E8941DA407A3} ==================== One Month Modified Files and Folders ======= 2013-07-02 12:49 - 2009-07-14 06:45 - 00021280 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-02 12:49 - 2009-07-14 06:45 - 00021280 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-02 12:47 - 2012-02-16 21:41 - 00000000 ____D C:\ProgramData\MFAData 2013-07-02 12:43 - 2013-07-02 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{E6CEFBA5-0C25-4095-B20F-13B3072B6995} 2013-07-02 12:42 - 2013-05-02 23:57 - 00000334 ____A C:\Windows\Tasks\GlaryInitialize.job 2013-07-02 12:42 - 2013-02-01 12:09 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\Dropbox 2013-07-02 12:42 - 2013-01-19 15:23 - 00000431 ____A C:\Windows\System32\Drivers\etc\hosts.ics 2013-07-02 12:42 - 2012-05-17 12:45 - 00000000 ____D C:\ProgramData\VMware 2013-07-02 12:41 - 2012-01-10 21:14 - 00094668 ____A C:\Windows\setupact.log 2013-07-02 12:41 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-01 11:21 - 2012-02-16 10:29 - 01971468 ____A C:\Windows\WindowsUpdate.log 2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Windows\erdnt 2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Qoobox 2013-07-01 11:17 - 2012-08-04 09:40 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-01 11:05 - 2013-07-01 11:05 - 00000000 ____D C:\FRST 2013-07-01 11:04 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF 2013-06-29 22:05 - 2013-06-29 22:04 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4105C62B-65D6-414B-B50A-B543148C4F2E} 2013-06-29 21:19 - 2012-05-18 22:18 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2013-06-29 21:17 - 2013-06-29 21:17 - 00000000 ____D C:\Program Files\Adobe 2013-06-29 21:17 - 2012-05-15 20:49 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-06-29 21:17 - 2012-02-16 20:30 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\Adobe 2013-06-29 21:16 - 2012-02-16 21:36 - 00000000 ____D C:\ProgramData\Adobe 2013-06-29 21:08 - 2013-06-29 21:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{754EBE3D-CD32-4C44-A42D-18006450009A} 2013-06-29 20:57 - 2013-06-29 20:56 - 00276088 ____A C:\Windows\Minidump\062913-37393-01.dmp 2013-06-29 20:56 - 2012-10-02 09:22 - 593580212 ____A C:\Windows\MEMORY.DMP 2013-06-29 20:56 - 2012-10-02 09:22 - 00000000 ____D C:\Windows\Minidump 2013-06-29 20:53 - 2012-05-17 13:17 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\VMware 2013-06-29 20:50 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\System32\FxsTmp 2013-06-29 20:47 - 2012-05-17 12:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\VMware 2013-06-29 09:08 - 2013-06-29 09:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{F520A111-6D29-4EFD-863A-69C3ADEC4DDA} 2013-06-28 11:14 - 2013-06-28 11:14 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{9F928144-95BF-4577-8C67-EFF672D1F808} 2013-06-28 10:51 - 2012-02-19 13:20 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\Adobe 2013-06-28 01:48 - 2012-03-11 15:28 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\Skype 2013-06-27 22:31 - 2013-01-30 19:56 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-27 22:31 - 2012-03-11 15:27 - 00000000 ____D C:\ProgramData\Skype 2013-06-27 21:59 - 2012-02-17 03:00 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\vlc 2013-06-27 21:05 - 2013-06-27 21:03 - 00000000 ____D C:\tmp 2013-06-27 21:03 - 2012-02-16 10:37 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\VirtualStore 2013-06-27 20:59 - 2013-06-27 20:59 - 00000561 ____A C:\Users\Public\Desktop\FLAC To MP3.lnk 2013-06-27 19:12 - 2013-04-27 12:49 - 00001992 ___AH C:\Users\K.Badekow\Documents\Default.rdp 2013-06-27 17:27 - 2013-06-27 17:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{56D12B53-1636-45D7-B134-6BB274AD6F76} 2013-06-27 10:30 - 2013-05-31 20:43 - 00010304 ____A C:\Users\K.Badekow\Desktop\mtl.ods 2013-06-26 14:11 - 2012-12-02 15:54 - 00068376 ____A C:\Users\K.Badekow\AppData\Local\GDIPFONTCACHEV1.DAT 2013-06-26 14:09 - 2013-02-09 22:44 - 00000000 ____D C:\Users\K.Badekow\Documents\Rudeloff 2013-06-26 14:05 - 2009-07-14 06:45 - 04930256 ____A C:\Windows\System32\FNTCACHE.DAT 2013-06-26 12:19 - 2012-02-16 21:36 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-06-26 12:06 - 2013-06-26 12:06 - 00001550 ____A C:\Users\Public\Desktop\Adobe Application Manager.lnk 2013-06-26 11:59 - 2013-01-30 19:20 - 00000000 ____D C:\Users\K.Badekow\Documents\Betriebswirt 2013-06-26 09:58 - 2013-06-26 09:58 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\PDAppFlex 2013-06-26 09:37 - 2013-06-26 09:37 - 00000000 ____D C:\Users\K.Badekow\.android 2013-06-26 09:37 - 2012-02-16 10:36 - 00000000 ____D C:\users\K.Badekow 2013-06-26 09:35 - 2013-06-26 09:35 - 00007334 ____A C:\Users\K.Badekow\Desktop\OpenDocument Text (neu).odt 2013-06-26 08:25 - 2013-06-26 08:22 - 00000000 ____D C:\Users\K.Badekow\Documents\Songtexte 2013-06-26 08:22 - 2013-06-26 08:22 - 00003498 ____A C:\Users\K.Badekow\Desktop\Projektarbeit.lnk 2013-06-26 08:22 - 2013-04-18 18:37 - 00000000 ____D C:\Users\K.Badekow\Documents\Handelsgesellschaft Badekow 2013-06-26 08:11 - 2013-06-26 08:11 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{128BC551-4EE5-4B69-955E-030FE2EE38CC} 2013-06-25 20:46 - 2011-04-12 09:43 - 00713452 ____A C:\Windows\System32\perfh007.dat 2013-06-25 20:46 - 2011-04-12 09:43 - 00156276 ____A C:\Windows\System32\perfc007.dat 2013-06-25 20:46 - 2009-07-14 07:13 - 01659940 ____A C:\Windows\System32\PerfStringBackup.INI 2013-06-25 18:47 - 2013-06-25 18:47 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4717120F-BF25-477D-9049-681B5FA7F326} 2013-06-24 13:12 - 2013-06-24 13:12 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\TERA 2013-06-24 12:52 - 2013-06-24 12:51 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{65E7A4AF-91BF-491E-A875-EA44802BA86C} 2013-06-24 11:39 - 2013-06-24 11:39 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-06-24 11:39 - 2013-06-24 11:39 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-06-24 11:39 - 2012-02-16 21:43 - 00867240 ____A (Oracle Corporation) C:\Windows\SysWOW64\npdeployJava1.dll 2013-06-24 11:39 - 2012-02-16 20:50 - 00789416 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-06-22 12:43 - 2013-06-22 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2ECB220E-1744-472E-B0E9-F3D2B33C6B29} 2013-06-21 13:28 - 2013-06-21 13:28 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2A6B4077-791F-44FE-B554-464D24DE1A50} 2013-06-20 19:11 - 2013-04-19 22:50 - 00022318 ____A C:\Users\K.Badekow\Documents\Zeugnis Badekow2.odt 2013-06-20 10:36 - 2013-06-20 10:35 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7B35B0F4-B460-4D27-ADBF-2B7607A477A0} 2013-06-19 18:49 - 2013-06-19 18:49 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D2CF201F-47E1-46D0-9AB7-307303E5B4DB} 2013-06-18 11:27 - 2013-06-18 11:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{A6CBDF6B-B792-4F31-BC5F-491FF9699B57} 2013-06-17 15:26 - 2013-06-17 15:26 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2535FBC9-68F1-4230-A1D3-30148137CA25} 2013-06-17 13:50 - 2010-11-21 05:47 - 00132972 ____A C:\Windows\PFRO.log 2013-06-15 22:24 - 2013-06-15 22:23 - 00000000 ____D C:\Program Files (x86)\PS3 Media Server 2013-06-15 22:24 - 2012-02-16 20:28 - 00000000 ____D C:\Users\K.Badekow\.dvdcss 2013-06-15 11:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-06-15 11:05 - 2013-06-15 11:05 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{CF1E691A-FB33-45B6-BCDD-8433F62DA873} 2013-06-14 22:02 - 2013-06-14 22:01 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D6510E01-74D2-42BA-BB76-A5C8D525B3F2} 2013-06-14 08:06 - 2013-06-14 08:06 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{8469943F-2959-42B5-93AF-45716B3B09B9} 2013-06-12 08:35 - 2013-06-12 08:34 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7882D4C6-F219-4280-90FF-AAE445BD7B45} 2013-06-11 22:54 - 2012-01-10 20:35 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-11 22:00 - 2012-12-13 21:45 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\PokerStars.EU 2013-06-11 21:17 - 2012-04-05 22:04 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-11 21:17 - 2012-02-16 20:30 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-11 19:52 - 2013-06-11 19:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{FA625A9A-EB29-492B-8508-32FEE2B4D531} 2013-06-09 21:01 - 2013-06-09 21:01 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{3C1934F7-C6DF-49B3-BDAD-6A151B7341FA} 2013-06-08 16:08 - 2013-06-15 15:06 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-15 15:06 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-15 15:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-15 15:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-15 15:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-15 15:06 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-15 15:06 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-15 15:06 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-15 15:06 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-15 15:06 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-15 15:06 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-15 15:06 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-07 17:33 - 2013-06-07 17:33 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{BC0028D6-5C2A-45A7-82B2-A8D929F7FFE9} 2013-06-06 21:37 - 2013-06-06 21:37 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{448FE722-BA76-40B6-A6B9-044096689F8D} 2013-06-06 08:53 - 2013-06-06 08:53 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{EA4EC261-94DA-4147-9A9F-814BD04620DE} 2013-06-05 06:24 - 2013-06-05 06:24 - 00001149 ____A C:\Users\K.Badekow\Desktop\Free FLV Converter.lnk 2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\FreeFLVConverter 2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Program Files (x86)\Free FLV Converter 2013-06-04 17:41 - 2013-04-09 20:59 - 00000000 ____D C:\ProgramData\Lexware 2013-06-04 17:13 - 2013-06-04 17:13 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{1A583EA5-E510-437D-AF08-DBAF5868DF17} 2013-06-03 18:45 - 2013-06-03 18:45 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{33FE1A42-0519-4B1F-997C-500E38842510} 2013-06-02 21:11 - 2013-06-02 21:10 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7F07F3D4-79CC-439B-BEDE-E8941DA407A3} ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-06-23 20:36 End of log Viele Grüße und vielen Dank Kay Geändert von Teronius (02.07.2013 um 12:12 Uhr) |
Themen zu Keine Internetverbindung |
administrator, adobe, adobe flash player, avg, browser, canon, desktop, dll, download, explorer, farbar, farbar recovery scan tool, firefox, flash player, frst.txt, helper, html, koyote, microsoft, minidump, mozilla, pdf, plug-in, registry, rundll, scan, search the web, services.exe, software, svchost.exe, system, winlogon.exe, wlan |