Hallo.
Gerade macht mein eigener Laptop ein paar Probleme.
Er verbindet sivh immer nur eingeschränkt mit dem wlan und überhäupt nicht über kabel.
Code:
Alles auswählen Aufklappen ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-06-2013 03 (ATTENTION: FRST version is 21 days old)
Ran by K.Badekow (administrator) on 02-07-2013 12:50:52
Running from D:\Rapidshare
Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\PROGRA~2\AVG\AVG2013\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
() C:\Program Files (x86)\Guard-ICQ\GuardICQ.exe
(HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
() C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
(iAnywhere Solutions, Inc.) C:\Program Files (x86)\Sybase\SQL Anywhere 9\win32\dbsrv9.exe
(NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\ncpclcfg.exe
(NCP Engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\ncprwsnt.exe
() C:\Program Files (x86)\NCP\SecureClient\NCPSEC.EXE
(NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgemca.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(CANON INC.) C:\Windows\System32\spool\drivers\x64\3\CNAP2LAK.EXE
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Dropbox, Inc.) C:\Users\K.Badekow\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(CANON INC.) C:\Windows\system32\spool\DRIVERS\x64\3\CNAP2RPK.EXE
(CANON INC.) C:\Windows\system32\spool\DRIVERS\x64\3\CNACBSWK.EXE
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\NcpBudgetGui.exe
(NCP engineering GmbH) C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [1580368 2010-11-03] (Logitech, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [444904 2012-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [CNAP2 Launcher] C:\Windows\system32\spool\DRIVERS\x64\3\CNAP2LAK.EXE [226784 2010-10-14] (CANON INC.)
HKLM\...\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" [170496 2013-04-13] (Sun Microsystems, Inc.)
HKCU\...\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [1475584 2010-11-21] (Microsoft Corporation)
HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3481408 2012-02-13] (DT Soft Ltd)
HKCU\...\Policies\system: [disableregistrytools] 0
HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [PDFPrint] C:\Program Files (x86)\PDF24\pdf24.exe [162856 2013-03-20] (Geek Software GmbH)
HKLM-x32\...\Run: [NcpBudgetGui] "C:\Program Files (x86)\NCP\SecureClient\NcpBudgetGui.exe" -start [1001472 2013-01-07] (NCP engineering GmbH)
HKLM-x32\...\Run: [NcpPopup] "C:\Program Files (x86)\NCP\SecureClient\ncppopup.exe" noerrmsg [1011280 2012-03-20] (NCP engineering GmbH)
HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [642656 2013-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [NcpRsuGui] "C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe" -gui [883792 2011-08-22] (NCP engineering GmbH)
HKLM-x32\...\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY [4408368 2013-04-29] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
Startup: C:\Users\K.Badekow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\K.Badekow\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU SearchScopes: DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=109958&tt=101012_24_4112_6&babsrc=SP_ss&mntrId=926aa9df00000000000074de2bad3d8f
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=109958&tt=101012_24_4112_6&babsrc=SP_ss&mntrId=926aa9df00000000000074de2bad3d8f
BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll No File
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: ICQ Sparberater - {0766C1B9-B2DC-46E5-8934-4F3D6B42B1BD} - C:\Program Files (x86)\icq\Internet Explorer\icq.dll (solute gmbh)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: No Name - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - No Name - {98889811-442D-49dd-99D7-DC866BE87DBC} - No File
DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll No File
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Winsock: Catalog9 11 %SystemRoot%\system32\vsocklib.dll [63088] (VMware, Inc.)
Winsock: Catalog9 12 %SystemRoot%\system32\vsocklib.dll [63088] (VMware, Inc.)
Winsock: Catalog9-x64 11 %SystemRoot%\system32\vsocklib.dll [67184] (VMware, Inc.)
Winsock: Catalog9-x64 12 %SystemRoot%\system32\vsocklib.dll [67184] (VMware, Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\K.Badekow\AppData\Roaming\Mozilla\Firefox\Profiles\vmhd2vpj.default
FF SelectedSearchEngine: Search the web (Babylon)
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF Plugin-x32: @rim.com/npappworld - C:\Program Files (x86)\Research In Motion Limited\Browser-Plug-In f�r BlackBerry App World\npappworld.dll ()
FF Plugin-x32: @RIM.com/WebSLLauncher,version=1.0 - C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect - D:\Adobe InDesign\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll No File
==================== Services (Whitelisted) =================
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4937264 2013-05-14] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-04-18] (AVG Technologies CZ, s.r.o.)
R2 Guard.Mail.ru; C:\Program Files (x86)\Guard-ICQ\GuardICQ.exe [1564368 2012-02-16] ()
S3 HP DS Service; C:\Program Files (x86)\HP\HPBDSService\HPBDSService.exe [13824 2010-10-27] (Hewlett-Packard Company)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] ()
R2 Lexware_Professional_Datenbank; C:\Program Files (x86)\Sybase\SQL Anywhere 9\win32\dbsrv9.exe [83248 2008-07-02] (iAnywhere Solutions, Inc.)
R2 ncpclcfg; C:\Program Files (x86)\NCP\SecureClient\ncpclcfg.exe [139896 2012-07-12] (NCP engineering GmbH)
R2 ncprwsnt; C:\Program Files (x86)\NCP\SecureClient\ncprwsnt.exe [1650736 2013-01-16] (NCP Engineering GmbH)
R2 NcpSec; C:\Program Files (x86)\NCP\SecureClient\NCPSEC.EXE [119808 2011-04-21] ()
R2 rwsrsu; C:\Program Files (x86)\NCP\SecureClient\rwsrsu.exe [883792 2011-08-22] (NCP engineering GmbH)
S3 TVersityMediaServer; C:\ProgramData\TVersity\Media Server\MediaServer.exe [1249064 2011-07-29] ()
==================== Drivers (Whitelisted) ====================
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-03-29] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-02-08] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206136 2013-02-08] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311096 2013-02-08] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-02-08] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-02-08] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.)
S3 dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys [20552 2010-09-06] (Devguru Co., Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-02-17] (DT Soft Ltd)
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] ()
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] ()
R3 L1C; C:\Windows\System32\DRIVERS\L1C60x64.sys [75888 2010-09-27] (Atheros Communications, Inc.)
S3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S3 ncpfilt; C:\Windows\System32\DRIVERS\ncplelhp.sys [102800 2013-01-16] (NCP Engineering GmbH)
S3 ncplelhp; C:\Windows\System32\DRIVERS\ncplelhp.sys [102800 2013-01-16] (NCP Engineering GmbH)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [74752 2011-07-25] (Research In Motion Limited)
R3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [44032 2011-07-20] (Research in Motion Ltd)
S3 VGPU; System32\drivers\rdvgkmd.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-02 12:43 - 2013-07-02 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{E6CEFBA5-0C25-4095-B20F-13B3072B6995}
2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Windows\erdnt
2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Qoobox
2013-07-01 11:05 - 2013-07-01 11:05 - 00000000 ____D C:\FRST
2013-06-29 22:04 - 2013-06-29 22:05 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4105C62B-65D6-414B-B50A-B543148C4F2E}
2013-06-29 21:17 - 2013-06-29 21:17 - 00000000 ____D C:\Program Files\Adobe
2013-06-29 21:08 - 2013-06-29 21:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{754EBE3D-CD32-4C44-A42D-18006450009A}
2013-06-29 20:56 - 2013-06-29 20:57 - 00276088 ____A C:\Windows\Minidump\062913-37393-01.dmp
2013-06-29 09:08 - 2013-06-29 09:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{F520A111-6D29-4EFD-863A-69C3ADEC4DDA}
2013-06-28 11:14 - 2013-06-28 11:14 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{9F928144-95BF-4577-8C67-EFF672D1F808}
2013-06-27 21:03 - 2013-06-27 21:05 - 00000000 ____D C:\tmp
2013-06-27 20:59 - 2013-06-27 20:59 - 00000561 ____A C:\Users\Public\Desktop\FLAC To MP3.lnk
2013-06-27 17:27 - 2013-06-27 17:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{56D12B53-1636-45D7-B134-6BB274AD6F76}
2013-06-26 12:06 - 2013-06-26 12:06 - 00001550 ____A C:\Users\Public\Desktop\Adobe Application Manager.lnk
2013-06-26 09:58 - 2013-06-26 09:58 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\PDAppFlex
2013-06-26 09:37 - 2013-06-26 09:37 - 00000000 ____D C:\Users\K.Badekow\.android
2013-06-26 09:35 - 2013-06-26 09:35 - 00007334 ____A C:\Users\K.Badekow\Desktop\OpenDocument Text (neu).odt
2013-06-26 08:22 - 2013-06-26 08:25 - 00000000 ____D C:\Users\K.Badekow\Documents\Songtexte
2013-06-26 08:22 - 2013-06-26 08:22 - 00003498 ____A C:\Users\K.Badekow\Desktop\Projektarbeit.lnk
2013-06-26 08:11 - 2013-06-26 08:11 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{128BC551-4EE5-4B69-955E-030FE2EE38CC}
2013-06-25 18:47 - 2013-06-25 18:47 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4717120F-BF25-477D-9049-681B5FA7F326}
2013-06-24 13:12 - 2013-06-24 13:12 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\TERA
2013-06-24 12:51 - 2013-06-24 12:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{65E7A4AF-91BF-491E-A875-EA44802BA86C}
2013-06-24 11:39 - 2013-06-24 11:39 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-06-24 11:39 - 2013-06-24 11:39 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-06-22 12:43 - 2013-06-22 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2ECB220E-1744-472E-B0E9-F3D2B33C6B29}
2013-06-21 13:28 - 2013-06-21 13:28 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2A6B4077-791F-44FE-B554-464D24DE1A50}
2013-06-20 10:35 - 2013-06-20 10:36 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7B35B0F4-B460-4D27-ADBF-2B7607A477A0}
2013-06-19 18:49 - 2013-06-19 18:49 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D2CF201F-47E1-46D0-9AB7-307303E5B4DB}
2013-06-18 11:27 - 2013-06-18 11:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{A6CBDF6B-B792-4F31-BC5F-491FF9699B57}
2013-06-17 15:26 - 2013-06-17 15:26 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2535FBC9-68F1-4230-A1D3-30148137CA25}
2013-06-15 22:23 - 2013-06-15 22:24 - 00000000 ____D C:\Program Files (x86)\PS3 Media Server
2013-06-15 15:06 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-15 15:06 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-15 15:06 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-15 15:06 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-15 15:06 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-15 15:06 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-15 15:06 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-15 15:06 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-15 15:06 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-15 15:06 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-15 15:06 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-15 15:06 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-15 11:05 - 2013-06-15 11:05 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{CF1E691A-FB33-45B6-BCDD-8433F62DA873}
2013-06-14 22:01 - 2013-06-14 22:02 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D6510E01-74D2-42BA-BB76-A5C8D525B3F2}
2013-06-14 08:06 - 2013-06-14 08:06 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{8469943F-2959-42B5-93AF-45716B3B09B9}
2013-06-12 08:34 - 2013-06-12 08:35 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7882D4C6-F219-4280-90FF-AAE445BD7B45}
2013-06-11 22:53 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-06-11 22:53 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-06-11 22:53 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-06-11 22:53 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-06-11 22:53 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-06-11 22:53 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-06-11 22:53 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-06-11 22:53 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-06-11 22:53 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-06-11 22:53 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-06-11 22:53 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-06-11 22:53 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-06-11 22:53 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-06-11 22:53 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-06-11 22:53 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-06-11 22:53 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-06-11 22:53 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-06-11 22:53 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-06-11 22:53 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-06-11 19:52 - 2013-06-11 19:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{FA625A9A-EB29-492B-8508-32FEE2B4D531}
2013-06-11 19:32 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll
2013-06-11 19:32 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2013-06-11 19:32 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-06-11 19:32 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll
2013-06-11 19:32 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2013-06-11 19:32 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-06-11 19:32 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll
2013-06-11 19:31 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2013-06-11 19:31 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2013-06-11 19:31 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2013-06-11 19:31 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll
2013-06-11 19:31 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-06-11 19:31 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-06-11 19:31 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-06-11 19:31 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe
2013-06-11 19:31 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2013-06-11 19:31 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2013-06-11 19:31 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-06-11 19:31 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll
2013-06-09 21:01 - 2013-06-09 21:01 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{3C1934F7-C6DF-49B3-BDAD-6A151B7341FA}
2013-06-07 17:33 - 2013-06-07 17:33 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{BC0028D6-5C2A-45A7-82B2-A8D929F7FFE9}
2013-06-06 21:37 - 2013-06-06 21:37 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{448FE722-BA76-40B6-A6B9-044096689F8D}
2013-06-06 08:53 - 2013-06-06 08:53 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{EA4EC261-94DA-4147-9A9F-814BD04620DE}
2013-06-05 06:24 - 2013-06-05 06:24 - 00001149 ____A C:\Users\K.Badekow\Desktop\Free FLV Converter.lnk
2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\FreeFLVConverter
2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Program Files (x86)\Free FLV Converter
2013-06-05 06:24 - 2012-10-17 16:37 - 00397312 ____A (Koyote Soft) C:\Windows\SysWOW64\TubeFinder.exe
2013-06-05 06:24 - 2011-09-28 09:18 - 00364544 ____A C:\Windows\SysWOW64\PropertyGrid.ocx
2013-06-05 06:24 - 2011-09-28 09:18 - 00208500 ____A C:\Windows\SysWOW64\ReyXpBasics.tlb
2013-06-05 06:24 - 2011-09-28 09:18 - 00152848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX
2013-06-05 06:24 - 2011-09-28 09:18 - 00141312 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCFR.DLL
2013-06-05 06:24 - 2011-09-28 09:18 - 00119568 ____A (Microsoft Corporation) C:\Windows\SysWOW64\VB6FR.DLL
2013-06-05 06:24 - 2011-09-28 09:18 - 00101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\VB6STKIT.DLL
2013-06-05 06:24 - 2011-09-28 09:18 - 00084512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PICCLP32.OCX
2013-06-05 06:24 - 2011-09-28 09:18 - 00032768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\CMDLGFR.DLL
2013-06-05 06:24 - 2011-09-28 09:18 - 00024576 ____A C:\Windows\SysWOW64\ControlSubX.ocx
2013-06-05 06:24 - 2011-09-28 09:18 - 00009728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\PCCLPFR.DLL
2013-06-04 17:13 - 2013-06-04 17:13 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{1A583EA5-E510-437D-AF08-DBAF5868DF17}
2013-06-03 18:45 - 2013-06-03 18:45 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{33FE1A42-0519-4B1F-997C-500E38842510}
2013-06-02 21:10 - 2013-06-02 21:11 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7F07F3D4-79CC-439B-BEDE-E8941DA407A3}
==================== One Month Modified Files and Folders =======
2013-07-02 12:49 - 2009-07-14 06:45 - 00021280 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-02 12:49 - 2009-07-14 06:45 - 00021280 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-02 12:47 - 2012-02-16 21:41 - 00000000 ____D C:\ProgramData\MFAData
2013-07-02 12:43 - 2013-07-02 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{E6CEFBA5-0C25-4095-B20F-13B3072B6995}
2013-07-02 12:42 - 2013-05-02 23:57 - 00000334 ____A C:\Windows\Tasks\GlaryInitialize.job
2013-07-02 12:42 - 2013-02-01 12:09 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\Dropbox
2013-07-02 12:42 - 2013-01-19 15:23 - 00000431 ____A C:\Windows\System32\Drivers\etc\hosts.ics
2013-07-02 12:42 - 2012-05-17 12:45 - 00000000 ____D C:\ProgramData\VMware
2013-07-02 12:41 - 2012-01-10 21:14 - 00094668 ____A C:\Windows\setupact.log
2013-07-02 12:41 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-07-01 11:21 - 2012-02-16 10:29 - 01971468 ____A C:\Windows\WindowsUpdate.log
2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Windows\erdnt
2013-07-01 11:19 - 2013-07-01 11:19 - 00000000 ____D C:\Qoobox
2013-07-01 11:17 - 2012-08-04 09:40 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-01 11:05 - 2013-07-01 11:05 - 00000000 ____D C:\FRST
2013-07-01 11:04 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF
2013-06-29 22:05 - 2013-06-29 22:04 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4105C62B-65D6-414B-B50A-B543148C4F2E}
2013-06-29 21:19 - 2012-05-18 22:18 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-06-29 21:17 - 2013-06-29 21:17 - 00000000 ____D C:\Program Files\Adobe
2013-06-29 21:17 - 2012-05-15 20:49 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-06-29 21:17 - 2012-02-16 20:30 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\Adobe
2013-06-29 21:16 - 2012-02-16 21:36 - 00000000 ____D C:\ProgramData\Adobe
2013-06-29 21:08 - 2013-06-29 21:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{754EBE3D-CD32-4C44-A42D-18006450009A}
2013-06-29 20:57 - 2013-06-29 20:56 - 00276088 ____A C:\Windows\Minidump\062913-37393-01.dmp
2013-06-29 20:56 - 2012-10-02 09:22 - 593580212 ____A C:\Windows\MEMORY.DMP
2013-06-29 20:56 - 2012-10-02 09:22 - 00000000 ____D C:\Windows\Minidump
2013-06-29 20:53 - 2012-05-17 13:17 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\VMware
2013-06-29 20:50 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\System32\FxsTmp
2013-06-29 20:47 - 2012-05-17 12:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\VMware
2013-06-29 09:08 - 2013-06-29 09:08 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{F520A111-6D29-4EFD-863A-69C3ADEC4DDA}
2013-06-28 11:14 - 2013-06-28 11:14 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{9F928144-95BF-4577-8C67-EFF672D1F808}
2013-06-28 10:51 - 2012-02-19 13:20 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\Adobe
2013-06-28 01:48 - 2012-03-11 15:28 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\Skype
2013-06-27 22:31 - 2013-01-30 19:56 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-06-27 22:31 - 2012-03-11 15:27 - 00000000 ____D C:\ProgramData\Skype
2013-06-27 21:59 - 2012-02-17 03:00 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\vlc
2013-06-27 21:05 - 2013-06-27 21:03 - 00000000 ____D C:\tmp
2013-06-27 21:03 - 2012-02-16 10:37 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\VirtualStore
2013-06-27 20:59 - 2013-06-27 20:59 - 00000561 ____A C:\Users\Public\Desktop\FLAC To MP3.lnk
2013-06-27 19:12 - 2013-04-27 12:49 - 00001992 ___AH C:\Users\K.Badekow\Documents\Default.rdp
2013-06-27 17:27 - 2013-06-27 17:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{56D12B53-1636-45D7-B134-6BB274AD6F76}
2013-06-27 10:30 - 2013-05-31 20:43 - 00010304 ____A C:\Users\K.Badekow\Desktop\mtl.ods
2013-06-26 14:11 - 2012-12-02 15:54 - 00068376 ____A C:\Users\K.Badekow\AppData\Local\GDIPFONTCACHEV1.DAT
2013-06-26 14:09 - 2013-02-09 22:44 - 00000000 ____D C:\Users\K.Badekow\Documents\Rudeloff
2013-06-26 14:05 - 2009-07-14 06:45 - 04930256 ____A C:\Windows\System32\FNTCACHE.DAT
2013-06-26 12:19 - 2012-02-16 21:36 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-06-26 12:06 - 2013-06-26 12:06 - 00001550 ____A C:\Users\Public\Desktop\Adobe Application Manager.lnk
2013-06-26 11:59 - 2013-01-30 19:20 - 00000000 ____D C:\Users\K.Badekow\Documents\Betriebswirt
2013-06-26 09:58 - 2013-06-26 09:58 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\PDAppFlex
2013-06-26 09:37 - 2013-06-26 09:37 - 00000000 ____D C:\Users\K.Badekow\.android
2013-06-26 09:37 - 2012-02-16 10:36 - 00000000 ____D C:\users\K.Badekow
2013-06-26 09:35 - 2013-06-26 09:35 - 00007334 ____A C:\Users\K.Badekow\Desktop\OpenDocument Text (neu).odt
2013-06-26 08:25 - 2013-06-26 08:22 - 00000000 ____D C:\Users\K.Badekow\Documents\Songtexte
2013-06-26 08:22 - 2013-06-26 08:22 - 00003498 ____A C:\Users\K.Badekow\Desktop\Projektarbeit.lnk
2013-06-26 08:22 - 2013-04-18 18:37 - 00000000 ____D C:\Users\K.Badekow\Documents\Handelsgesellschaft Badekow
2013-06-26 08:11 - 2013-06-26 08:11 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{128BC551-4EE5-4B69-955E-030FE2EE38CC}
2013-06-25 20:46 - 2011-04-12 09:43 - 00713452 ____A C:\Windows\System32\perfh007.dat
2013-06-25 20:46 - 2011-04-12 09:43 - 00156276 ____A C:\Windows\System32\perfc007.dat
2013-06-25 20:46 - 2009-07-14 07:13 - 01659940 ____A C:\Windows\System32\PerfStringBackup.INI
2013-06-25 18:47 - 2013-06-25 18:47 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{4717120F-BF25-477D-9049-681B5FA7F326}
2013-06-24 13:12 - 2013-06-24 13:12 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\TERA
2013-06-24 12:52 - 2013-06-24 12:51 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{65E7A4AF-91BF-491E-A875-EA44802BA86C}
2013-06-24 11:39 - 2013-06-24 11:39 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-06-24 11:39 - 2013-06-24 11:39 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-06-24 11:39 - 2013-06-24 11:39 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-06-24 11:39 - 2012-02-16 21:43 - 00867240 ____A (Oracle Corporation) C:\Windows\SysWOW64\npdeployJava1.dll
2013-06-24 11:39 - 2012-02-16 20:50 - 00789416 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-06-22 12:43 - 2013-06-22 12:43 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2ECB220E-1744-472E-B0E9-F3D2B33C6B29}
2013-06-21 13:28 - 2013-06-21 13:28 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2A6B4077-791F-44FE-B554-464D24DE1A50}
2013-06-20 19:11 - 2013-04-19 22:50 - 00022318 ____A C:\Users\K.Badekow\Documents\Zeugnis Badekow2.odt
2013-06-20 10:36 - 2013-06-20 10:35 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7B35B0F4-B460-4D27-ADBF-2B7607A477A0}
2013-06-19 18:49 - 2013-06-19 18:49 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D2CF201F-47E1-46D0-9AB7-307303E5B4DB}
2013-06-18 11:27 - 2013-06-18 11:27 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{A6CBDF6B-B792-4F31-BC5F-491FF9699B57}
2013-06-17 15:26 - 2013-06-17 15:26 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{2535FBC9-68F1-4230-A1D3-30148137CA25}
2013-06-17 13:50 - 2010-11-21 05:47 - 00132972 ____A C:\Windows\PFRO.log
2013-06-15 22:24 - 2013-06-15 22:23 - 00000000 ____D C:\Program Files (x86)\PS3 Media Server
2013-06-15 22:24 - 2012-02-16 20:28 - 00000000 ____D C:\Users\K.Badekow\.dvdcss
2013-06-15 11:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-06-15 11:05 - 2013-06-15 11:05 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{CF1E691A-FB33-45B6-BCDD-8433F62DA873}
2013-06-14 22:02 - 2013-06-14 22:01 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{D6510E01-74D2-42BA-BB76-A5C8D525B3F2}
2013-06-14 08:06 - 2013-06-14 08:06 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{8469943F-2959-42B5-93AF-45716B3B09B9}
2013-06-12 08:35 - 2013-06-12 08:34 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7882D4C6-F219-4280-90FF-AAE445BD7B45}
2013-06-11 22:54 - 2012-01-10 20:35 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-06-11 22:00 - 2012-12-13 21:45 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\PokerStars.EU
2013-06-11 21:17 - 2012-04-05 22:04 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-06-11 21:17 - 2012-02-16 20:30 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-06-11 19:52 - 2013-06-11 19:52 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{FA625A9A-EB29-492B-8508-32FEE2B4D531}
2013-06-09 21:01 - 2013-06-09 21:01 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{3C1934F7-C6DF-49B3-BDAD-6A151B7341FA}
2013-06-08 16:08 - 2013-06-15 15:06 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-08 16:07 - 2013-06-15 15:06 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-08 16:06 - 2013-06-15 15:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-08 16:06 - 2013-06-15 15:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-08 16:06 - 2013-06-15 15:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-08 14:28 - 2013-06-15 15:06 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-08 13:42 - 2013-06-15 15:06 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-08 13:40 - 2013-06-15 15:06 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-08 13:40 - 2013-06-15 15:06 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-08 13:40 - 2013-06-15 15:06 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-08 13:40 - 2013-06-15 15:06 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-08 13:13 - 2013-06-15 15:06 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-07 17:33 - 2013-06-07 17:33 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{BC0028D6-5C2A-45A7-82B2-A8D929F7FFE9}
2013-06-06 21:37 - 2013-06-06 21:37 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{448FE722-BA76-40B6-A6B9-044096689F8D}
2013-06-06 08:53 - 2013-06-06 08:53 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{EA4EC261-94DA-4147-9A9F-814BD04620DE}
2013-06-05 06:24 - 2013-06-05 06:24 - 00001149 ____A C:\Users\K.Badekow\Desktop\Free FLV Converter.lnk
2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Users\K.Badekow\AppData\Roaming\FreeFLVConverter
2013-06-05 06:24 - 2013-06-05 06:24 - 00000000 ____D C:\Program Files (x86)\Free FLV Converter
2013-06-04 17:41 - 2013-04-09 20:59 - 00000000 ____D C:\ProgramData\Lexware
2013-06-04 17:13 - 2013-06-04 17:13 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{1A583EA5-E510-437D-AF08-DBAF5868DF17}
2013-06-03 18:45 - 2013-06-03 18:45 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{33FE1A42-0519-4B1F-997C-500E38842510}
2013-06-02 21:11 - 2013-06-02 21:10 - 00000000 ____D C:\Users\K.Badekow\AppData\Local\{7F07F3D4-79CC-439B-BEDE-E8941DA407A3}
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-06-23 20:36
End of log
Viele Grüße und vielen Dank
Kay