|
Plagegeister aller Art und deren Bekämpfung: LyricsContainer loswerdenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
30.07.2013, 12:30 | #1 |
| LyricsContainer loswerden Hallo ihr lieben Leute vom Trojaner-board Ich habe folgendes Problem: Meine Mutter hat vor einer Woche einen neuen Pc bekommen, welcher das Betriebssystem Windows 8 hat. Sie ist damit nicht zurechtgekommen und hat meinen Vater um Hilfe gebeten, dieser hat die letzten Tage irgendwelche Sachen aus dem Internet gedownloadet und jetzt wird meine Mutter beim surfen im Internet mit Unmengen an Werbung zugespamt. Es tauchen Pop-ups und vermehrt Werbe-ads auf auch auf eigentlich werbefreien Seiten. In diesen stehen neben der normalen Werbung auch Dinge wie "ihr adobe flashplayer muss aktuallisiert werden, klicken sie hier" und andere Aufforderungen zum Downloaden. Einige Wörter sind grün markiert und doppelt unterstrichen, sie zeigen beim Überfahren mit der Maus Werbung an. Zudem ist der PC im Moment extrem langsam. Ich habe mir ein paar der in letzter Zeit gedownloadeten Dateien angesehen und mir ist dabei etwas mit dem Namen "lyricsContainer" aufgefallen. Nach kurzem Googlen habe ich drei Seiten gefunden die alle meinten das es sich hierbei um ein Virus handelt und eine Anleitung zum löschen desjenigem gaben, da die auf diesen Seiten verwendete Grammatik jedoch schlimmer als grauenhaft war habe ich keinen der dortigen Schritte beachtet sondern mich lieber gleich an euch gewannt. Ich habe die Datei noch nicht gelöscht. Das auf dem Computer installierte Antivierensystem ist Norton, der heutige Scan damit hat jedoch nichts ergeben, jedoch meinte mein Vater das es wohl vorgestern was davon meinte zwei Fehler nicht beheben zu können. Ich hoffe ihr könnt mir bald helfen LG GamerWolf |
30.07.2013, 12:42 | #2 |
/// the machine /// TB-Ausbilder | LyricsContainer loswerden hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
30.07.2013, 14:05 | #3 |
| LyricsContainer loswerden Viele dank für deine Hilfe ^^
__________________FRST.txt FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03 Ran by Monika (administrator) on 30-07-2013 14:10:57 Running from C:\Users\Monika\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe () C:\Windows\system32\dmwu.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (McAfee, Inc.) C:\Program Files\McAfee\AppStats\MfeASUM.exe (McAfee, Inc.) C:\windows\system32\mfevtps.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (Symantec) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe (Iminent) C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe () C:\Program Files\Updater By Sweetpacks\ExtensionUpdaterService.exe (Wajam) C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe (cake bake) C:\Program Files (x86)\Web Cake\WebCakeDesktop.Updater.exe (Atheros) C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe (Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (AMD) C:\Windows\system32\atieclxx.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Bake Cake) C:\Users\Monika\AppData\Roaming\Web Cake\WebCakeDesktop.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Symantec) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12921488 2012-07-02] (Realtek Semiconductor) HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! HKCU\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE [283232 2012-11-01] (SEIKO EPSON CORPORATION) HKCU\...\Run: [NTRedirect] - C:\Windows\SysWOW64\rundll32.exe [48640 2012-07-26] (Microsoft Corporation) <===== ATTENTION HKCU\...\Run: [WebCake Desktop] - C:\Users\Monika\AppData\Roaming\Web Cake\WebCakeDesktop.exe [52504 2013-07-26] (Bake Cake) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-29] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SSDMonitor] - C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe [104480 2012-09-29] (Symantec) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-13] (Acer Incorporated) HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-13] (Acer Incorporated) Startup: C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://mysearch.sweetpacks.com/?src=10&st=12&crg=3.5000006.10053&barid={DCAB36ED-F61C-11E2-BE79-ECA86BDEB644} SearchScopes: HKLM - DefaultScope {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://mysearch.sweetpacks.com/?src=6&q={searchTerms}&st=12&crg=3.5000006.10053&barid={DCAB36ED-F61C-11E2-BE79-ECA86BDEB644} SearchScopes: HKLM-x32 - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://mysearch.sweetpacks.com/?src=6&q={searchTerms}&st=12&crg=3.5000006.10053&barid={DCAB36ED-F61C-11E2-BE79-ECA86BDEB644} SearchScopes: HKCU - DefaultScope {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=C471ECA86BDEB644&affID=119557&tsp=4955 SearchScopes: HKCU - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = hxxp://mysearch.sweetpacks.com/?src=6&q={searchTerms}&st=12&crg=3.5000006.10053&barid={DCAB36ED-F61C-11E2-BE79-ECA86BDEB644} BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Updater By Sweetpacks - {DEDAF650-12B8-48f5-A843-BBA100716106} - C:\Program Files\Updater By Sweetpacks\Extension64.dll () BHO-x32: WebCake - {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} - C:\Program Files (x86)\Web Cake\WebCakeIEClient.dll (Web Cake LLC) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: IMinent WebBooster (BHO) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent) BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam) BHO-x32: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\coIEPlg.dll (Symantec Corporation) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.22.0\bh\delta.dll (Delta-search.com) BHO-x32: LyricsContainer - {DA3D98A6-868D-4E1B-BB78-0887230DA405} - C:\Program Files (x86)\LyricsContainer\125.dll (RYD Software) BHO-x32: Updater By Sweetpacks - {DEDAF650-12B8-48f5-A843-BBA100716106} - C:\Program Files\Updater By Sweetpacks\Extension32.dll () BHO-x32: SweetPacks Browser Helper - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM-x32 - SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File Toolbar: HKCU - No Name - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - No File Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default FF Homepage: hxxp://www.web.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default\searchplugins\Sweetpacks Search.xml FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Firefox\Extensions: [{DEDAF650-12B8-48f5-A843-BBA100716106}] C:\Program Files\Updater By Sweetpacks\Firefox FF Extension: Updater By Sweetpacks - C:\Program Files\Updater By Sweetpacks\Firefox FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [{DEDAF650-12B8-48f5-A843-BBA100716106}] C:\Program Files\Updater By Sweetpacks\Firefox FF Extension: Updater By Sweetpacks - C:\Program Files\Updater By Sweetpacks\Firefox FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.0.26\coFFPlgn\ FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.0.26\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\IPSFFPlgn\ FF HKCU\...\Firefox\Extensions: [Lyrics@LyricsContainer.co] C:\Program Files (x86)\LyricsContainer\125.xpi FF Extension: No Name - C:\Program Files (x86)\LyricsContainer\125.xpi ==================== Services (Whitelisted) ================= S3 DiskDoctorService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\Disk Doctor\DiskDoctorSrv.exe [1147424 2012-09-29] (Symantec Corporation) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-23] (Acer Incorporated) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [1645360 2013-06-30] () R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [241456 2013-02-19] (McAfee, Inc.) R2 MfeASUM; C:\Program Files\McAfee\AppStats\MfeASUM.exe [335216 2013-07-14] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218760 2013-02-19] (McAfee, Inc.) R2 mfevtp; C:\windows\system32\mfevtps.exe [182752 2013-02-19] (McAfee, Inc.) R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe [144520 2012-12-24] (Symantec Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation) R2 NU16StartManagerSvc; C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe [792608 2012-09-29] (Symantec) S3 SpeedDiskService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\SpeedDiskSrv.exe [1160224 2012-09-29] (Symantec Corporation) R2 SProtection; C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe [2729512 2013-07-02] (Iminent) R2 Updater By Sweetpacks; C:\Program Files\Updater By Sweetpacks\ExtensionUpdaterService.exe [188760 2013-05-29] () R2 WajamUpdater; C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe [109064 2013-04-22] (Wajam) R2 WebCakeUpdater; C:\Program Files (x86)\Web Cake\WebCakeDesktop.Updater.exe [50968 2013-07-26] (cake bake) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-29] (Microsoft Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536 2012-08-01] (Atheros) S2 McAfee SiteAdvisor Service; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [x] ==================== Drivers (Whitelisted) ==================== R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [91648 2012-08-21] (Advanced Micro Devices) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-07-15] (Symantec Corporation) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-07-15] (Symantec Corporation) R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation) R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DD03000.01A\ccSetx64.sys [168096 2012-11-16] (Symantec Corporation) S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-02-19] (McAfee, Inc.) R3 e1cexpress; C:\Windows\system32\DRIVERS\e1c63x64.sys [498032 2012-07-12] (Intel Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-07-26] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-07-26] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-07-26] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130727.001\IDSvia64.sys [513184 2013-07-26] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130727.001\IDSvia64.sys [513184 2013-07-26] (Symantec Corporation) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179280 2013-02-19] (McAfee, Inc.) R1 MfeASKM; C:\Program Files\McAfee\AppStats\MfeASKM.sys [31408 2013-07-14] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309840 2013-02-19] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69168 2013-02-19] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [515968 2013-02-19] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [771536 2013-02-19] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106552 2013-02-19] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [340216 2013-02-19] (McAfee, Inc.) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130729.019\ENG64.SYS [126040 2013-07-26] (Symantec Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130729.019\ENG64.SYS [126040 2013-07-26] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130729.019\EX64.SYS [2098776 2013-07-26] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130729.019\EX64.SYS [2098776 2013-07-26] (Symantec Corporation) R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\NAVx64\1404000.028\SymELAM.sys [23448 2012-11-15] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-07-26] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-30 14:10 - 2013-07-30 14:10 - 00000000 ____D C:\FRST 2013-07-30 14:09 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Downloads\FRST64.exe 2013-07-30 14:08 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Desktop\FRST64.exe 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302750.txt 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302078.txt 2013-07-30 13:36 - 2013-07-30 13:36 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-30 13:36 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190098171.txt 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190084343.txt 2013-07-29 22:11 - 2013-07-29 22:11 - 00002360 _____ C:\{60CCBC6A-DDF1-4E4B-BA53-B1B969F8BC46} 2013-07-29 22:10 - 2013-07-29 22:10 - 00002344 _____ C:\{4172ADAC-5061-466B-9A16-5AF53570ABAB} 2013-07-29 22:06 - 2013-07-29 22:06 - 00002360 _____ C:\{DF5ADA51-F2BE-4A00-832D-9B1F33D4F6A9} 2013-07-29 21:46 - 2013-07-29 21:46 - 00002488 _____ C:\{03947D0E-D470-4B1D-B542-B894F52A0016} 2013-07-29 21:45 - 2013-07-29 21:45 - 00002504 _____ C:\{84749585-6701-4916-80DF-DD792B4FD167} 2013-07-29 21:35 - 2013-07-29 21:35 - 00003112 _____ C:\{93234576-3313-4230-95AF-4793795C0993} 2013-07-29 21:05 - 2013-07-29 21:05 - 00003456 _____ C:\{FE57C4B5-B33F-40D8-A4BD-691F37C7709F} 2013-07-29 20:51 - 2013-07-29 20:51 - 00002992 _____ C:\{3E61799B-6C1A-4779-895F-B5A05482CAAA} 2013-07-29 17:56 - 2013-07-29 17:56 - 00000000 ____D C:\Users\Monika\AppData\Roaming\WildTangent 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109818078.txt 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109814671.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600562.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600406.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18642921.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18639875.txt 2013-07-27 21:18 - 2013-07-27 21:18 - 00000117 _____ C:\Windows\system32\netcfg-8738921.txt 2013-07-27 19:53 - 2013-07-27 19:53 - 00000117 _____ C:\Windows\system32\netcfg-3651562.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527390.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527000.txt 2013-07-27 19:50 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3452265.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383671.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383390.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-739250.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-736687.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-546234.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-489406.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-238171.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-226062.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-187421.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-143140.txt 2013-07-27 18:54 - 2013-07-27 18:54 - 00000117 _____ C:\Windows\system32\netcfg-110437.txt 2013-07-27 18:53 - 2013-07-27 18:53 - 00000117 _____ C:\Windows\system32\netcfg-43984.txt 2013-07-27 18:52 - 2013-07-27 18:52 - 00000117 _____ C:\Windows\system32\netcfg-1154218.txt 2013-07-27 18:48 - 2013-07-27 18:48 - 00000117 _____ C:\Windows\system32\netcfg-917390.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-872453.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-858968.txt 2013-07-27 18:42 - 2013-07-27 18:42 - 00000117 _____ C:\Windows\system32\netcfg-550406.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-61531.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-39984.txt 2013-07-27 18:00 - 2013-07-27 18:00 - 00000573 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bibliotheken.lnk 2013-07-27 17:42 - 2013-07-27 17:43 - 00001343 _____ C:\Windows\IE10_main.log 2013-07-27 17:42 - 2013-07-27 16:13 - 51415040 _____ (Microsoft Corporation) C:\Users\Monika\Downloads\IE10-Windows6.1-x64-de-de.exe 2013-07-27 17:20 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-66218.txt 2013-07-27 17:19 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-42281.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439562.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439250.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-69781.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-55250.txt 2013-07-27 16:17 - 2013-07-27 16:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-27 16:16 - 2013-07-27 17:36 - 00006207 _____ C:\Windows\IE9_main.log 2013-07-27 16:15 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika\Qtrax 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-773281.txt 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-762921.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4946984.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4923734.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4919765.txt 2013-07-27 14:55 - 2013-07-27 14:55 - 00000117 _____ C:\Windows\system32\netcfg-4254687.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2138906.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2137109.txt 2013-07-27 14:05 - 2013-07-27 14:05 - 00202968 _____ C:\Users\Monika\Downloads\Setup.exe 2013-07-27 14:02 - 2013-07-27 14:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Macromedia 2013-07-27 13:59 - 2013-07-30 13:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-27 13:59 - 2013-07-27 13:59 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-27 13:45 - 2013-07-27 13:46 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Mozilla 2013-07-27 13:45 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Local\Mozilla 2013-07-27 13:41 - 2013-07-27 13:41 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-27 13:37 - 2013-07-27 13:37 - 21670584 _____ (Mozilla) C:\Users\Monika\Downloads\Firefox Setup 22.0.exe 2013-07-27 13:01 - 2013-07-27 13:02 - 00000000 ____D C:\Windows\System32\Tasks\Norton AntiVirus 2013-07-27 12:48 - 2013-07-27 13:09 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Systweak 2013-07-27 12:47 - 2013-02-28 16:27 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe 2013-07-27 12:43 - 2013-07-27 12:43 - 04365864 _____ (Systweak Inc ) C:\Users\Monika\Downloads\rcpsetup_matomy_my30679.exe 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48362218.txt 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48350546.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47114468.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47101875.txt 2013-07-27 11:32 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-44535890.txt 2013-07-27 11:03 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-42757640.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41528171.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41522828.txt 2013-07-27 07:55 - 2013-07-27 07:55 - 00000296 _____ C:\Windows\Tasks\NUSchedule.job 2013-07-27 07:54 - 2013-07-30 12:27 - 00000304 _____ C:\Windows\Tasks\NUAutoUpdate.job 2013-07-27 07:54 - 2013-07-27 07:54 - 00002520 _____ C:\Windows\System32\Tasks\NUAutoUpdate 2013-07-27 07:54 - 2013-07-27 07:54 - 00000000 ____D C:\Users\Monika\Documents\Norton Utilities 16 2013-07-27 07:53 - 2013-07-27 07:53 - 00001227 _____ C:\Users\Public\Desktop\Norton Utilities 16.lnk 2013-07-27 07:53 - 2012-09-29 22:50 - 00512544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml.dll 2013-07-27 07:53 - 2012-09-29 22:49 - 00040992 _____ C:\Windows\system32\CleanMFT64.exe 2013-07-27 07:53 - 2011-07-26 16:15 - 01233920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4.dll 2013-07-27 07:53 - 2011-07-26 16:15 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll 2013-07-27 07:53 - 2011-07-26 16:15 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4a.dll 2013-07-27 07:53 - 2008-09-17 21:17 - 00658432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCT2.OCX 2013-07-27 07:53 - 2008-04-02 15:54 - 01101824 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBox210.ocx 2013-07-27 07:53 - 2008-04-02 15:53 - 00880640 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBox10.ocx 2013-07-27 07:53 - 2008-04-02 15:53 - 00212992 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBoxVB12.ocx 2013-07-27 07:52 - 2013-07-27 07:52 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Product_NU16 2013-07-27 07:50 - 2013-07-27 07:50 - 23459280 _____ (Symantec) C:\Users\Monika\Downloads\nu16.0.0.126-SMUI.exe 2013-07-27 07:42 - 2013-07-27 07:42 - 00000117 _____ C:\Windows\system32\netcfg-30713234.txt 2013-07-27 07:06 - 2013-07-27 07:06 - 00000117 _____ C:\Windows\system32\netcfg-28574015.txt 2013-07-27 07:01 - 2013-07-27 07:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton Identity Safe 2013-07-27 06:39 - 2013-07-27 06:39 - 00000117 _____ C:\Windows\system32\netcfg-26923312.txt 2013-07-27 03:01 - 2013-07-27 03:01 - 00000117 _____ C:\Windows\system32\netcfg-13861609.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13762328.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13751921.txt 2013-07-26 23:31 - 2013-07-27 15:39 - 00000000 ____D C:\Windows\system32\Drivers\NSTx64 2013-07-26 23:30 - 2013-07-26 23:42 - 00177312 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2013-07-26 23:30 - 2013-07-26 23:42 - 00007631 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2013-07-26 23:30 - 2013-07-26 23:31 - 00000000 ____D C:\Program Files (x86)\Norton Identity Safe 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Symantec 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared 2013-07-26 23:29 - 2013-07-27 12:52 - 00003218 _____ C:\Windows\System32\Tasks\Norton WSC Integration 2013-07-26 23:29 - 2013-07-27 12:52 - 00002401 _____ C:\Users\Public\Desktop\Norton AntiVirus.lnk 2013-07-26 23:24 - 2013-07-27 12:52 - 00000000 ____D C:\Windows\system32\Drivers\NAVx64 2013-07-26 23:24 - 2013-07-26 23:24 - 00000000 ____D C:\Program Files (x86)\Norton AntiVirus 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2381562.txt 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2376828.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1458984.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1453328.txt 2013-07-26 22:23 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-436312.txt 2013-07-26 22:22 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-427640.txt 2013-07-26 22:20 - 2013-07-26 22:20 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-26 20:49 - 2013-07-26 20:54 - 172886528 ____N (Symantec Corporation) C:\Users\Monika\Downloads\NAV-TW-30-20-3-0-36-GE.exe 2013-07-26 20:29 - 2013-07-26 20:29 - 00000000 ____D C:\Users\Monika\Documents\Symantec 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2963734.txt 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2955812.txt 2013-07-26 20:00 - 2013-07-26 20:00 - 00000000 ____D C:\Program Files\Updater By Sweetpacks 2013-07-26 19:59 - 2013-07-30 12:27 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Web Cake 2013-07-26 19:59 - 2013-07-26 19:59 - 00000000 ____D C:\Program Files (x86)\Web Cake 2013-07-26 19:59 - 2013-07-26 19:59 - 00000000 ____D C:\Program Files (x86)\SweetIM 2013-07-26 19:58 - 2013-07-27 02:59 - 00000000 ____D C:\Windows\SysWOW64\jmdp 2013-07-26 19:58 - 2013-07-26 19:58 - 00000000 ____D C:\Windows\SysWOW64\WNLT 2013-07-26 19:58 - 2013-07-26 19:58 - 00000000 ____D C:\Windows\SysWOW64\ARFC 2013-07-26 19:58 - 2013-06-30 18:10 - 01645360 _____ C:\Windows\system32\dmwu.exe 2013-07-26 19:58 - 2013-06-30 18:07 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22774765.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22744671.txt 2013-07-26 19:27 - 2013-07-26 19:27 - 00000117 _____ C:\Windows\system32\netcfg-22718453.txt 2013-07-26 19:26 - 2013-07-26 19:26 - 00000117 _____ C:\Windows\system32\netcfg-22684562.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22620921.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22576078.txt 2013-07-26 19:22 - 2013-07-26 19:22 - 00000117 _____ C:\Windows\system32\netcfg-22440609.txt 2013-07-26 19:21 - 2013-07-26 19:21 - 00000117 _____ C:\Windows\system32\netcfg-22395437.txt 2013-07-26 19:13 - 2013-07-26 19:13 - 00000117 _____ C:\Windows\system32\netcfg-21869453.txt 2013-07-26 19:11 - 2013-07-26 19:11 - 00000117 _____ C:\Windows\system32\netcfg-21764187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21668187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21637343.txt 2013-07-26 19:06 - 2013-07-26 19:06 - 00000117 _____ C:\Windows\system32\netcfg-21487671.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15365046.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15352375.txt 2013-07-26 13:24 - 2013-07-26 13:24 - 00000117 _____ C:\Windows\system32\netcfg-939625.txt 2013-07-26 13:04 - 2013-07-30 12:27 - 00000000 ____D C:\ProgramData\Adobe 2013-07-26 13:04 - 2013-07-26 13:04 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2013-07-26 13:04 - 2013-07-26 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-26 13:02 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-26 13:02 - 2013-07-29 14:40 - 00000000 ____D C:\Users\Monika\AppData\Local\Adobe 2013-07-26 13:02 - 2013-07-26 13:02 - 00003388 _____ C:\Windows\System32\Tasks\EPUpdater 2013-07-26 13:02 - 2013-07-26 13:02 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-26 13:02 - 2013-07-26 13:02 - 00000424 _____ C:\Windows\Tasks\LyricsContainer Update.job 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Iminent 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Babylon 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\BabSolution 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\ProgramData\Iminent 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\ProgramData\Babylon 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Wajam 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\LyricsContainer 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Iminent 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Delta 2013-07-26 13:01 - 2013-07-26 13:01 - 00278080 _____ C:\Users\Monika\Downloads\Adobe_Reader.exe 2013-07-26 13:01 - 2013-07-26 13:01 - 00278080 _____ C:\Program Files\Adobe_Reader.exe 2013-07-26 12:50 - 2013-07-26 12:50 - 00000117 _____ C:\Windows\system32\netcfg-96057562.txt 2013-07-26 11:33 - 2013-07-26 12:49 - 00000117 _____ C:\Windows\system32\netcfg-91473531.txt 2013-07-26 10:41 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-88372843.txt 2013-07-26 10:34 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-87954343.txt 2013-07-26 10:02 - 2013-07-26 10:02 - 00000117 _____ C:\Windows\system32\netcfg-86024750.txt 2013-07-26 09:21 - 2013-07-26 09:21 - 00000117 _____ C:\Windows\system32\netcfg-83573921.txt 2013-07-26 09:06 - 2013-07-26 09:06 - 00000117 _____ C:\Windows\system32\netcfg-82667046.txt 2013-07-25 21:07 - 2013-07-25 21:07 - 00000117 _____ C:\Windows\system32\netcfg-39516203.txt 2013-07-25 20:51 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-38566875.txt 2013-07-25 20:37 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-37716187.txt 2013-07-25 19:07 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-32304406.txt 2013-07-25 18:31 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-30157375.txt 2013-07-25 18:14 - 2013-07-25 18:14 - 00000117 _____ C:\Windows\system32\netcfg-29135515.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18979078.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18960578.txt 2013-07-25 11:24 - 2013-07-25 11:24 - 00000117 _____ C:\Windows\system32\netcfg-4559890.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2919468.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2916578.txt 2013-07-25 10:08 - 2013-07-25 10:08 - 00000000 __SHD C:\found.000 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-876241609.txt 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-868638687.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867425234.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867424328.txt 2013-07-24 13:51 - 2013-07-24 13:51 - 00000117 _____ C:\Windows\system32\netcfg-857660140.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854366406.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854365312.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843513437.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843512187.txt 2013-07-24 08:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-839622015.txt 2013-07-23 21:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-800000062.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966859.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966234.txt 2013-07-23 14:36 - 2013-07-23 14:36 - 00000117 _____ C:\Windows\system32\netcfg-773968500.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763215953.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763206187.txt 2013-07-23 10:40 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-759818500.txt 2013-07-23 10:09 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-757969906.txt 2013-07-23 09:44 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-756458812.txt 2013-07-22 14:15 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-686334296.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686296750.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686292093.txt 2013-07-22 09:55 - 2013-07-22 09:55 - 00000117 _____ C:\Windows\system32\netcfg-670723500.txt 2013-07-22 09:50 - 2013-07-22 09:50 - 00000117 _____ C:\Windows\system32\netcfg-670428875.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669183625.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669181218.txt 2013-07-20 20:58 - 2013-07-22 08:28 - 00000117 _____ C:\Windows\system32\netcfg-537704375.txt 2013-07-20 20:57 - 2013-07-20 20:57 - 00000117 _____ C:\Windows\system32\netcfg-537654625.txt 2013-07-19 13:26 - 2013-07-20 14:03 - 00000117 _____ C:\Windows\system32\netcfg-424205500.txt 2013-07-19 13:26 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424195484.txt 2013-07-19 09:26 - 2013-07-19 09:26 - 00000117 _____ C:\Windows\system32\netcfg-409788109.txt 2013-07-19 09:03 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-408437468.txt 2013-07-18 20:56 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-364802281.txt 2013-07-18 20:56 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364791000.txt 2013-07-18 16:56 - 2013-07-18 16:56 - 00000117 _____ C:\Windows\system32\netcfg-350382796.txt 2013-07-18 14:14 - 2013-07-18 14:14 - 00000117 _____ C:\Windows\system32\netcfg-340660375.txt 2013-07-18 14:13 - 2013-07-18 14:13 - 00000117 _____ C:\Windows\system32\netcfg-340653968.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325006468.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325002125.txt 2013-07-17 18:48 - 2013-07-17 18:48 - 00000117 _____ C:\Windows\system32\netcfg-270720265.txt 2013-07-17 14:07 - 2013-07-17 14:15 - 00000117 _____ C:\Windows\system32\netcfg-253901531.txt 2013-07-17 13:48 - 2013-07-17 13:48 - 00000117 _____ C:\Windows\system32\netcfg-252716953.txt 2013-07-17 13:02 - 2013-07-17 13:02 - 00000117 _____ C:\Windows\system32\netcfg-249998234.txt 2013-07-17 12:47 - 2013-07-17 12:47 - 00000117 _____ C:\Windows\system32\netcfg-249070609.txt 2013-07-17 12:46 - 2013-07-17 12:46 - 00000117 _____ C:\Windows\system32\netcfg-249038062.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248256921.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248253812.txt 2013-07-16 19:13 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-185868437.txt 2013-07-16 18:39 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-183800843.txt 2013-07-16 07:25 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-143384765.txt 2013-07-16 07:25 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143367468.txt 2013-07-16 03:25 - 2013-07-16 03:25 - 00000117 _____ C:\Windows\system32\netcfg-128966765.txt 2013-07-16 02:59 - 2013-07-16 02:59 - 00000117 _____ C:\Windows\system32\netcfg-127434656.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-96911593.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111329546.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111318250.txt 2013-07-15 18:00 - 2013-07-15 18:00 - 00000117 _____ C:\Windows\system32\netcfg-95086156.txt 2013-07-15 17:59 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-95037218.txt 2013-07-15 17:19 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-92605953.txt 2013-07-15 16:03 - 2013-07-15 16:03 - 00000117 _____ C:\Windows\system32\netcfg-88044562.txt 2013-07-15 14:48 - 2013-07-15 14:48 - 00000117 _____ C:\Windows\system32\netcfg-83560750.txt 2013-07-15 14:41 - 2013-07-15 14:41 - 00000117 _____ C:\Windows\system32\netcfg-83120203.txt 2013-07-15 14:26 - 2013-07-20 16:27 - 00000000 ____D C:\Users\Monika\AppData\Local\CrashDumps 2013-07-15 14:20 - 2013-07-15 14:20 - 00000117 _____ C:\Windows\system32\netcfg-81866671.txt 2013-07-15 14:00 - 2013-07-15 14:00 - 00142304 _____ C:\Users\Monika\Downloads\1019914_6_2013_Tiefert.pdf.zip 2013-07-15 10:53 - 2013-07-15 10:53 - 00000117 _____ C:\Windows\system32\netcfg-69478109.txt 2013-07-15 10:25 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-67785421.txt 2013-07-15 07:41 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-57963437.txt 2013-07-15 07:09 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-56011750.txt 2013-07-15 07:08 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-55966531.txt 2013-07-14 17:06 - 2013-07-14 17:06 - 00000000 ____D C:\Users\Monika\Documents\OneNote-Notizbücher 2013-07-14 16:59 - 2013-07-14 16:59 - 00000117 _____ C:\Windows\system32\netcfg-5005468.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4638937.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4633625.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4614875.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000156 _____ C:\Windows\system32\netcfg-3963328.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3949421.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3925937.txt 2013-07-14 16:39 - 2013-07-28 08:06 - 00000434 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-07-14 16:38 - 2013-07-14 16:39 - 00000156 _____ C:\Windows\system32\netcfg-3781421.txt 2013-07-14 16:36 - 2013-07-14 16:36 - 00000117 _____ C:\Windows\system32\netcfg-3640453.txt 2013-07-14 15:55 - 2013-07-14 16:35 - 00000117 _____ C:\Windows\system32\netcfg-1180015.txt 2013-07-14 15:36 - 2013-07-14 15:36 - 00000117 _____ C:\Windows\system32\netcfg-32500.txt 2013-07-14 15:28 - 2013-07-14 15:28 - 00000000 _____ C:\Users\Monika\Sti_Trace.log 2013-07-14 15:25 - 2013-07-14 15:25 - 00000117 _____ C:\Windows\system32\netcfg-42218.txt 2013-07-14 15:22 - 2013-07-14 15:22 - 00000938 _____ C:\Users\Public\Desktop\EPSON Scan.lnk 2013-07-14 15:22 - 2013-07-14 15:22 - 00000000 ____D C:\Program Files (x86)\epson 2013-07-14 15:22 - 2012-07-24 00:00 - 00466432 _____ (Seiko Epson Corporation) C:\Windows\system32\esxw2ud.dll 2013-07-14 15:22 - 2011-12-12 00:00 - 00135824 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe 2013-07-14 15:00 - 2013-07-14 15:00 - 00028574 _____ C:\Users\Monika\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx 2013-07-14 15:00 - 2013-07-14 15:00 - 00008833 _____ C:\Users\Monika\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx 2013-07-14 14:34 - 2013-07-14 15:25 - 00421792 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-14 14:25 - 2013-07-14 14:26 - 00003548 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-52546.txt 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-51140.txt 2013-07-14 14:21 - 2013-07-14 14:25 - 00000000 ___RD C:\Windows\BrowserChoice 2013-07-14 14:14 - 2013-07-20 14:18 - 00000000 ____D C:\ProgramData\EPSON 2013-07-14 14:14 - 2013-07-14 14:14 - 00000000 ____D C:\Program Files\Common Files\EPSON 2013-07-14 14:14 - 2012-11-01 12:42 - 00120320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMILE.DLL 2013-07-14 14:14 - 2012-11-01 12:42 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ID4BILE.DLL 2013-07-14 14:14 - 2012-11-01 12:42 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2013-07-14 14:13 - 2013-07-14 14:13 - 00000000 _____ C:\Users\Monika\Desktop\Neues Textdokument.txt 2013-07-14 14:11 - 2013-07-14 14:11 - 00000117 _____ C:\Windows\system32\netcfg-19600390.txt 2013-07-14 14:09 - 2013-07-14 14:10 - 00000117 _____ C:\Windows\system32\netcfg-19483937.txt 2013-07-14 14:03 - 2013-07-14 14:03 - 00000117 _____ C:\Windows\system32\netcfg-19143062.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19110812.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19103671.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00001138 _____ C:\Windows\system32\netcfg-19006156.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00000117 _____ C:\Windows\system32\netcfg-19007046.txt 2013-07-14 13:58 - 2013-07-14 13:58 - 00002974 _____ C:\Windows\avmadd32.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00002596 _____ C:\Windows\avmadd321.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!BoxPrint 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!Box 2013-07-14 13:58 - 2006-12-14 13:42 - 00069120 ____R (AVM Berlin) C:\Windows\SysWOW64\avmadd32.dll 2013-07-14 13:58 - 2006-05-29 02:00 - 00016384 ____R (AVM Berlin GmbH) C:\Windows\SysWOW64\avmprmon.dll 2013-07-14 13:23 - 2013-07-14 13:30 - 01077248 _____ C:\Users\Monika\Documents\Pro Win A.pwbackup 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16605453.txt 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16604921.txt 2013-07-14 09:45 - 2013-06-24 00:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-14 08:49 - 2013-07-14 13:41 - 00000000 ____D C:\Program Files (x86)\proWIN Office 2013-07-14 08:49 - 2013-07-14 08:51 - 01077248 _____ C:\Users\Monika\Documents\ProWin.pwbackup 2013-07-14 08:49 - 2013-07-14 08:49 - 00002951 _____ C:\Users\Monika\Desktop\proWIN Office.lnk 2013-07-14 08:49 - 2013-07-14 08:49 - 00000094 _____ C:\Users\Monika\AppData\Local\fusioncache.dat 2013-07-14 08:49 - 2013-07-14 08:49 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\proWIN Office 2013-07-14 08:48 - 2013-07-14 08:48 - 01772970 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-13 20:35 - 2013-07-26 21:38 - 00000000 ____D C:\Users\Monika\AppData\Local\Deployment 2013-07-13 20:35 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Apps\2.0 2013-07-13 20:19 - 2012-11-10 06:23 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2013-07-13 20:19 - 2012-11-10 06:23 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2013-07-13 20:19 - 2012-11-10 06:22 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll 2013-07-13 20:19 - 2012-11-10 06:22 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\RDWebAI.dll 2013-07-13 20:19 - 2012-11-10 06:22 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VmHostAI.dll 2013-07-13 20:19 - 2012-11-10 06:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\appserverai.dll 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84742140.txt 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84725312.txt 2013-07-12 20:26 - 2013-07-12 20:26 - 00003030 _____ C:\Windows\System32\Tasks\{67E5FAFC-E470-4191-B77D-8CDABD36038F} 2013-07-12 20:22 - 2013-07-12 20:22 - 00000000 ____D C:\Neuer Ordner 2013-07-12 20:18 - 2013-07-12 20:18 - 00000000 ____D C:\Windows\PCHEALTH 2013-07-12 20:16 - 2013-07-12 20:16 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files\Microsoft Office 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-07-12 20:14 - 2013-07-14 14:59 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 __RHD C:\MSOCache 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ____D C:\Users\Monika\AppData\Local\Microsoft Help 2013-07-12 20:07 - 2013-04-16 04:34 - 01455368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-07-12 20:07 - 2013-01-10 03:40 - 00303848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-07-12 20:07 - 2012-11-26 06:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2013-07-12 20:07 - 2012-11-26 06:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2013-07-12 20:07 - 2012-10-10 09:04 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2013-07-12 20:07 - 2012-10-10 08:31 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2013-07-12 20:00 - 2013-05-31 01:14 - 04036096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 19:59 - 2013-05-04 09:45 - 02233600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-07-12 19:59 - 2013-04-24 01:13 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-07-12 19:59 - 2013-04-24 01:12 - 01569792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-07-12 19:59 - 2013-04-24 01:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-07-12 19:59 - 2013-04-24 00:56 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-07-12 19:59 - 2013-04-24 00:55 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-07-12 19:59 - 2013-04-24 00:55 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-07-12 19:59 - 2013-04-24 00:55 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-07-12 19:59 - 2013-03-02 11:59 - 00411880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2013-07-12 19:57 - 2013-06-01 11:25 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 19:57 - 2013-06-01 11:21 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 19:57 - 2013-03-02 10:23 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2013-07-12 19:57 - 2013-03-02 04:44 - 01011200 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2013-07-12 19:57 - 2012-12-15 06:55 - 00443392 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2013-07-12 19:57 - 2012-11-03 07:26 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\sysreset.exe 2013-07-12 19:57 - 2012-11-03 07:25 - 00945152 _____ (Microsoft Corporation) C:\Windows\system32\resetengmig.dll 2013-07-12 19:57 - 2012-10-24 05:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe 2013-07-12 19:57 - 2012-10-24 04:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2013-07-12 19:57 - 2012-10-06 06:53 - 02893824 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-07-12 19:57 - 2012-10-06 06:15 - 02400256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-07-12 19:56 - 2013-04-12 00:30 - 01421312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 19:56 - 2013-04-12 00:22 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-12 19:56 - 2013-03-02 10:22 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2013-07-12 19:56 - 2013-03-02 04:44 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2013-07-12 19:56 - 2013-02-02 13:19 - 00496872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-07-12 19:56 - 2013-02-02 13:19 - 00446184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2013-07-12 19:56 - 2013-02-02 13:19 - 00329960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2013-07-12 19:56 - 2013-02-02 13:19 - 00061672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys 2013-07-12 19:56 - 2013-02-02 12:54 - 01933544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2013-07-12 19:56 - 2013-02-02 12:28 - 00993512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-07-12 19:56 - 2013-02-02 10:40 - 10792448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlroamextension.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00370688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe 2013-07-12 19:56 - 2013-02-02 10:40 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe 2013-07-12 19:56 - 2013-02-02 10:39 - 05090816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll 2013-07-12 19:56 - 2013-02-02 10:38 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll 2013-07-12 19:56 - 2013-02-02 10:24 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2013-07-12 19:56 - 2013-02-02 10:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2013-07-12 19:56 - 2013-02-02 10:23 - 13643264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\wlroamextension.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2013-07-12 19:56 - 2013-02-02 10:22 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2013-07-12 19:56 - 2013-02-02 10:22 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 05977600 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00385024 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll 2013-07-12 19:56 - 2013-02-02 10:20 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2013-07-12 19:56 - 2013-02-02 10:20 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\hotspotauth.dll 2013-07-12 19:56 - 2013-02-02 09:25 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2013-07-12 19:56 - 2013-02-02 09:25 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-07-12 19:56 - 2013-02-02 09:25 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-07-12 19:56 - 2012-11-27 05:57 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys 2013-07-12 19:56 - 2012-11-20 06:56 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-07-12 19:56 - 2012-11-20 06:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidi2c.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00488168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00079080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00021736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-07-12 19:56 - 2012-09-20 08:32 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2013-07-12 19:56 - 2012-09-20 08:32 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2013-07-12 19:56 - 2012-09-20 08:09 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-07-12 19:55 - 2013-03-06 09:10 - 00112872 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2013-07-12 19:55 - 2013-03-06 08:59 - 00069864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2013-07-12 19:55 - 2013-03-06 08:31 - 19758592 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-07-12 19:55 - 2013-03-06 08:31 - 10116608 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2013-07-12 19:55 - 2013-03-06 08:31 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 17561600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 08857088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-07-12 19:55 - 2013-03-06 07:02 - 02035200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-07-12 19:55 - 2013-03-06 07:02 - 00754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2013-07-12 19:55 - 2013-02-12 02:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2013-07-12 19:55 - 2013-02-06 00:31 - 00622080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2013-07-12 19:55 - 2013-02-06 00:29 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2013-07-12 19:55 - 2013-02-06 00:28 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2013-07-12 19:55 - 2013-02-06 00:28 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2013-07-12 19:55 - 2013-02-02 07:41 - 01437184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2013-07-12 19:55 - 2013-02-02 07:31 - 01690624 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2013-07-12 19:55 - 2012-11-27 05:55 - 00029952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthhfHid.sys 2013-07-12 19:53 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-12 19:53 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-12 19:53 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-12 19:53 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-12 19:53 - 2013-05-16 00:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-07-12 19:53 - 2013-05-16 00:35 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-07-12 19:53 - 2013-05-14 15:14 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-12 19:53 - 2013-05-14 11:23 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-12 19:53 - 2013-04-29 00:28 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-12 19:53 - 2013-02-21 12:14 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-12 19:53 - 2013-02-21 12:14 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-12 19:53 - 2013-02-19 11:53 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-07-12 19:53 - 2012-11-08 06:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-12 19:53 - 2012-11-08 06:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-12 19:46 - 2013-05-04 08:59 - 02842112 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 19:46 - 2013-05-04 06:57 - 02620928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 19:46 - 2013-04-27 07:20 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2013-07-12 19:44 - 2012-10-24 05:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2013-07-12 19:44 - 2012-10-24 05:24 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2013-07-12 19:44 - 2012-10-24 05:24 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2013-07-12 19:44 - 2012-10-24 05:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2013-07-12 19:43 - 2012-11-03 07:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2013-07-12 19:43 - 2012-11-03 07:26 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe 2013-07-12 19:43 - 2012-11-03 07:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll 2013-07-12 19:43 - 2012-11-03 07:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll 2013-07-12 19:43 - 2012-11-03 07:04 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll 2013-07-12 19:43 - 2012-11-03 07:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll 2013-07-12 19:43 - 2012-11-03 07:00 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll 2013-07-12 19:42 - 2013-04-11 08:40 - 06987528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-07-12 19:42 - 2013-04-03 01:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-07-12 19:42 - 2013-04-03 01:12 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-07-12 19:42 - 2013-03-22 05:49 - 02382336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2013-07-12 19:42 - 2013-03-22 00:47 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2013-07-12 19:42 - 2013-03-15 02:17 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2013-07-12 19:42 - 2013-01-29 03:57 - 00035232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-07-12 19:42 - 2013-01-29 01:08 - 00230904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-07-12 19:42 - 2012-12-16 10:28 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-07-12 19:42 - 2012-12-16 10:20 - 00035328 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2013-07-12 19:42 - 2012-12-16 10:08 - 00362496 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-07-12 19:42 - 2012-12-16 09:57 - 00300032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2013-07-12 19:42 - 2012-11-08 06:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2013-07-12 19:42 - 2012-11-08 06:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2013-07-12 19:42 - 2012-11-08 06:20 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2013-07-12 19:42 - 2012-11-08 06:20 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2013-07-12 19:42 - 2012-11-08 06:02 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2013-07-12 19:42 - 2012-11-08 06:01 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2013-07-12 19:41 - 2012-11-01 06:41 - 01802240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2013-07-12 19:41 - 2012-11-01 06:41 - 01438720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2013-07-12 19:41 - 2012-11-01 06:40 - 02361344 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2013-07-12 19:41 - 2012-11-01 06:40 - 01836032 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2013-07-12 19:41 - 2012-11-01 06:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2013-07-12 19:41 - 2012-11-01 06:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2013-07-12 19:41 - 2012-11-01 06:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2013-07-12 19:41 - 2012-11-01 06:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2013-07-12 18:52 - 2013-07-14 15:21 - 00000000 ____D C:\Eimer 2013-07-12 18:47 - 2013-07-29 17:49 - 00000000 ____D C:\Users\Monika\AppData\Local\clear.fi 2013-07-12 18:47 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\PicStream 2013-07-12 18:45 - 2013-07-12 18:45 - 00000000 ____D C:\Users\Monika\AppData\Local\EgisTec IPS 2013-07-12 18:44 - 2013-07-29 15:42 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-1001 2013-07-12 18:44 - 2013-07-12 18:44 - 00000000 ____D C:\ProgramData\EgisTec 2013-07-12 18:37 - 2013-07-14 17:06 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-12 18:37 - 2013-07-14 14:26 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files\Preload 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files (x86)\OEM 2013-07-12 18:37 - 2012-08-24 05:39 - 00000000 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center 2013-07-12 18:36 - 2013-07-29 14:40 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Adobe 2013-07-12 18:36 - 2013-07-12 18:36 - 00001736 _____ C:\Users\Public\Desktop\Online kaufen.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00001446 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Macromedia 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Program Files\Accessory Store 2013-07-12 18:35 - 2013-07-30 13:20 - 01551590 _____ C:\Windows\WindowsUpdate.log 2013-07-12 18:35 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika 2013-07-12 18:35 - 2013-07-26 22:44 - 00000000 ____D C:\Users\Monika\AppData\Local\Packages 2013-07-12 18:35 - 2013-07-20 16:09 - 00000000 ____D C:\Users\Monika\AppData\Local\VirtualStore 2013-07-12 18:35 - 2013-07-12 18:35 - 00000020 ___SH C:\Users\Monika\ntuser.ini 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Vorlagen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Startmenü 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Netzwerkumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Lokale Einstellungen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Eigene Dateien 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Druckumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Musik 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Bilder 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Verlauf 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Anwendungsdaten 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Anwendungsdaten 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-228734.txt 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-225843.txt ==================== One Month Modified Files and Folders ======= 2013-07-30 14:10 - 2013-07-30 14:10 - 00000000 ____D C:\FRST 2013-07-30 14:09 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Downloads\FRST64.exe 2013-07-30 14:09 - 2013-07-30 14:08 - 01781589 _____ (Farbar) C:\Users\Monika\Desktop\FRST64.exe 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302750.txt 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302078.txt 2013-07-30 14:04 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-07-30 13:36 - 2013-07-30 13:36 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-30 13:36 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 13:36 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-30 13:26 - 2013-07-27 13:59 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-30 13:20 - 2013-07-12 18:35 - 01551590 _____ C:\Windows\WindowsUpdate.log 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190098171.txt 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190084343.txt 2013-07-30 12:27 - 2013-07-27 07:54 - 00000304 _____ C:\Windows\Tasks\NUAutoUpdate.job 2013-07-30 12:27 - 2013-07-26 19:59 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Web Cake 2013-07-30 12:27 - 2013-07-26 13:04 - 00000000 ____D C:\ProgramData\Adobe 2013-07-29 22:11 - 2013-07-29 22:11 - 00002360 _____ C:\{60CCBC6A-DDF1-4E4B-BA53-B1B969F8BC46} 2013-07-29 22:10 - 2013-07-29 22:10 - 00002344 _____ C:\{4172ADAC-5061-466B-9A16-5AF53570ABAB} 2013-07-29 22:06 - 2013-07-29 22:06 - 00002360 _____ C:\{DF5ADA51-F2BE-4A00-832D-9B1F33D4F6A9} 2013-07-29 21:46 - 2013-07-29 21:46 - 00002488 _____ C:\{03947D0E-D470-4B1D-B542-B894F52A0016} 2013-07-29 21:45 - 2013-07-29 21:45 - 00002504 _____ C:\{84749585-6701-4916-80DF-DD792B4FD167} 2013-07-29 21:35 - 2013-07-29 21:35 - 00003112 _____ C:\{93234576-3313-4230-95AF-4793795C0993} 2013-07-29 21:05 - 2013-07-29 21:05 - 00003456 _____ C:\{FE57C4B5-B33F-40D8-A4BD-691F37C7709F} 2013-07-29 20:51 - 2013-07-29 20:51 - 00002992 _____ C:\{3E61799B-6C1A-4779-895F-B5A05482CAAA} 2013-07-29 18:01 - 2012-10-22 04:51 - 00000000 ____D C:\ProgramData\WildTangent 2013-07-29 17:56 - 2013-07-29 17:56 - 00000000 ____D C:\Users\Monika\AppData\Roaming\WildTangent 2013-07-29 17:56 - 2012-10-22 04:51 - 00002658 ____N C:\Users\Public\Desktop\WildTangent Games App - acer.lnk 2013-07-29 17:56 - 2012-10-22 04:51 - 00000000 ____D C:\Program Files (x86)\WildTangent Games 2013-07-29 17:49 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\AppData\Local\clear.fi 2013-07-29 15:42 - 2013-07-12 18:44 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-1001 2013-07-29 14:40 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Adobe 2013-07-29 14:40 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Adobe 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109818078.txt 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109814671.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600562.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600406.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18642921.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18639875.txt 2013-07-28 08:06 - 2013-07-14 16:39 - 00000434 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-07-28 08:06 - 2012-10-22 03:29 - 00697304 _____ C:\Windows\PFRO.log 2013-07-28 08:06 - 2012-07-26 10:12 - 00000000 ___HD C:\Windows\ELAMBKUP 2013-07-28 08:06 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-27 21:18 - 2013-07-27 21:18 - 00000117 _____ C:\Windows\system32\netcfg-8738921.txt 2013-07-27 19:53 - 2013-07-27 19:53 - 00000117 _____ C:\Windows\system32\netcfg-3651562.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527390.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527000.txt 2013-07-27 19:51 - 2013-07-27 19:50 - 00000117 _____ C:\Windows\system32\netcfg-3452265.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383671.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383390.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-739250.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-736687.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-546234.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-489406.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-238171.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-226062.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-187421.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-143140.txt 2013-07-27 18:55 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-07-27 18:54 - 2013-07-27 18:54 - 00000117 _____ C:\Windows\system32\netcfg-110437.txt 2013-07-27 18:53 - 2013-07-27 18:53 - 00000117 _____ C:\Windows\system32\netcfg-43984.txt 2013-07-27 18:52 - 2013-07-27 18:52 - 00000117 _____ C:\Windows\system32\netcfg-1154218.txt 2013-07-27 18:48 - 2013-07-27 18:48 - 00000117 _____ C:\Windows\system32\netcfg-917390.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-872453.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-858968.txt 2013-07-27 18:42 - 2013-07-27 18:42 - 00000117 _____ C:\Windows\system32\netcfg-550406.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-61531.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-39984.txt 2013-07-27 18:00 - 2013-07-27 18:00 - 00000573 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bibliotheken.lnk 2013-07-27 17:43 - 2013-07-27 17:42 - 00001343 _____ C:\Windows\IE10_main.log 2013-07-27 17:36 - 2013-07-27 16:16 - 00006207 _____ C:\Windows\IE9_main.log 2013-07-27 17:20 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-66218.txt 2013-07-27 17:20 - 2013-07-27 17:19 - 00000117 _____ C:\Windows\system32\netcfg-42281.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439562.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439250.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-69781.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-55250.txt 2013-07-27 16:17 - 2013-07-27 16:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-27 16:15 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika\Qtrax 2013-07-27 16:15 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika 2013-07-27 16:13 - 2013-07-27 17:42 - 51415040 _____ (Microsoft Corporation) C:\Users\Monika\Downloads\IE10-Windows6.1-x64-de-de.exe 2013-07-27 15:39 - 2013-07-26 23:31 - 00000000 ____D C:\Windows\system32\Drivers\NSTx64 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-773281.txt 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-762921.txt 2013-07-27 15:18 - 2012-10-22 04:57 - 00000000 ____D C:\ProgramData\Acer 2013-07-27 15:17 - 2012-10-22 04:57 - 00000000 ____D C:\Program Files (x86)\Acer 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4946984.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4923734.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4919765.txt 2013-07-27 14:55 - 2013-07-27 14:55 - 00000117 _____ C:\Windows\system32\netcfg-4254687.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2138906.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2137109.txt 2013-07-27 14:05 - 2013-07-27 14:05 - 00202968 _____ C:\Users\Monika\Downloads\Setup.exe 2013-07-27 14:02 - 2013-07-27 14:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Macromedia 2013-07-27 13:59 - 2013-07-27 13:59 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-27 13:46 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Mozilla 2013-07-27 13:45 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Local\Mozilla 2013-07-27 13:41 - 2013-07-27 13:41 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-27 13:37 - 2013-07-27 13:37 - 21670584 _____ (Mozilla) C:\Users\Monika\Downloads\Firefox Setup 22.0.exe 2013-07-27 13:09 - 2013-07-27 12:48 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Systweak 2013-07-27 13:02 - 2013-07-27 13:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton AntiVirus 2013-07-27 12:56 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-07-27 12:52 - 2013-07-26 23:29 - 00003218 _____ C:\Windows\System32\Tasks\Norton WSC Integration 2013-07-27 12:52 - 2013-07-26 23:29 - 00002401 _____ C:\Users\Public\Desktop\Norton AntiVirus.lnk 2013-07-27 12:52 - 2013-07-26 23:24 - 00000000 ____D C:\Windows\system32\Drivers\NAVx64 2013-07-27 12:50 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-07-27 12:43 - 2013-07-27 12:43 - 04365864 _____ (Systweak Inc ) C:\Users\Monika\Downloads\rcpsetup_matomy_my30679.exe 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48362218.txt 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48350546.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47114468.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47101875.txt 2013-07-27 11:32 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-44535890.txt 2013-07-27 11:32 - 2013-07-27 11:03 - 00000117 _____ C:\Windows\system32\netcfg-42757640.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41528171.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41522828.txt 2013-07-27 07:57 - 2012-12-22 04:56 - 00761898 _____ C:\Windows\system32\perfh007.dat 2013-07-27 07:57 - 2012-12-22 04:56 - 00160028 _____ C:\Windows\system32\perfc007.dat 2013-07-27 07:57 - 2012-07-26 09:28 - 01772590 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-27 07:55 - 2013-07-27 07:55 - 00000296 _____ C:\Windows\Tasks\NUSchedule.job 2013-07-27 07:54 - 2013-07-27 07:54 - 00002520 _____ C:\Windows\System32\Tasks\NUAutoUpdate 2013-07-27 07:54 - 2013-07-27 07:54 - 00000000 ____D C:\Users\Monika\Documents\Norton Utilities 16 2013-07-27 07:53 - 2013-07-27 07:53 - 00001227 _____ C:\Users\Public\Desktop\Norton Utilities 16.lnk 2013-07-27 07:53 - 2012-12-21 20:31 - 00000000 ____D C:\ProgramData\Symantec 2013-07-27 07:52 - 2013-07-27 07:52 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Product_NU16 2013-07-27 07:52 - 2012-12-21 20:31 - 00000000 ____D C:\Program Files (x86)\Symantec 2013-07-27 07:50 - 2013-07-27 07:50 - 23459280 _____ (Symantec) C:\Users\Monika\Downloads\nu16.0.0.126-SMUI.exe 2013-07-27 07:42 - 2013-07-27 07:42 - 00000117 _____ C:\Windows\system32\netcfg-30713234.txt 2013-07-27 07:06 - 2013-07-27 07:06 - 00000117 _____ C:\Windows\system32\netcfg-28574015.txt 2013-07-27 07:01 - 2013-07-27 07:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton Identity Safe 2013-07-27 06:39 - 2013-07-27 06:39 - 00000117 _____ C:\Windows\system32\netcfg-26923312.txt 2013-07-27 03:01 - 2013-07-27 03:01 - 00000117 _____ C:\Windows\system32\netcfg-13861609.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13762328.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13751921.txt 2013-07-27 02:59 - 2013-07-26 19:58 - 00000000 ____D C:\Windows\SysWOW64\jmdp 2013-07-26 23:42 - 2013-07-26 23:30 - 00177312 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2013-07-26 23:42 - 2013-07-26 23:30 - 00007631 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2013-07-26 23:31 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files (x86)\Norton Identity Safe 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Symantec 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared 2013-07-26 23:30 - 2012-12-21 20:30 - 00000000 ____D C:\ProgramData\Norton 2013-07-26 23:24 - 2013-07-26 23:24 - 00000000 ____D C:\Program Files (x86)\Norton AntiVirus 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2381562.txt 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2376828.txt 2013-07-26 22:45 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-07-26 22:44 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Packages 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1458984.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1453328.txt 2013-07-26 22:23 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-436312.txt 2013-07-26 22:23 - 2013-07-26 22:22 - 00000117 _____ C:\Windows\system32\netcfg-427640.txt 2013-07-26 22:20 - 2013-07-26 22:20 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\ProgramData\McAfee 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files\mcafee 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-07-26 21:38 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Deployment 2013-07-26 20:54 - 2013-07-26 20:49 - 172886528 ____N (Symantec Corporation) C:\Users\Monika\Downloads\NAV-TW-30-20-3-0-36-GE.exe 2013-07-26 20:29 - 2013-07-26 20:29 - 00000000 ____D C:\Users\Monika\Documents\Symantec 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2963734.txt 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2955812.txt 2013-07-26 20:00 - 2013-07-26 20:00 - 00000000 ____D C:\Program Files\Updater By Sweetpacks 2013-07-26 19:59 - 2013-07-26 19:59 - 00000000 ____D C:\Program Files (x86)\Web Cake 2013-07-26 19:59 - 2013-07-26 19:59 - 00000000 ____D C:\Program Files (x86)\SweetIM 2013-07-26 19:58 - 2013-07-26 19:58 - 00000000 ____D C:\Windows\SysWOW64\WNLT 2013-07-26 19:58 - 2013-07-26 19:58 - 00000000 ____D C:\Windows\SysWOW64\ARFC 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22774765.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22744671.txt 2013-07-26 19:27 - 2013-07-26 19:27 - 00000117 _____ C:\Windows\system32\netcfg-22718453.txt 2013-07-26 19:26 - 2013-07-26 19:26 - 00000117 _____ C:\Windows\system32\netcfg-22684562.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22620921.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22576078.txt 2013-07-26 19:22 - 2013-07-26 19:22 - 00000117 _____ C:\Windows\system32\netcfg-22440609.txt 2013-07-26 19:21 - 2013-07-26 19:21 - 00000117 _____ C:\Windows\system32\netcfg-22395437.txt 2013-07-26 19:13 - 2013-07-26 19:13 - 00000117 _____ C:\Windows\system32\netcfg-21869453.txt 2013-07-26 19:11 - 2013-07-26 19:11 - 00000117 _____ C:\Windows\system32\netcfg-21764187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21668187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21637343.txt 2013-07-26 19:06 - 2013-07-26 19:06 - 00000117 _____ C:\Windows\system32\netcfg-21487671.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15365046.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15352375.txt 2013-07-26 13:24 - 2013-07-26 13:24 - 00000117 _____ C:\Windows\system32\netcfg-939625.txt 2013-07-26 13:04 - 2013-07-26 13:04 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2013-07-26 13:04 - 2013-07-26 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-26 13:02 - 2013-07-26 13:02 - 00003388 _____ C:\Windows\System32\Tasks\EPUpdater 2013-07-26 13:02 - 2013-07-26 13:02 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-26 13:02 - 2013-07-26 13:02 - 00000424 _____ C:\Windows\Tasks\LyricsContainer Update.job 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Iminent 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Babylon 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\BabSolution 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\ProgramData\Iminent 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\ProgramData\Babylon 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Wajam 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\LyricsContainer 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Iminent 2013-07-26 13:02 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Delta 2013-07-26 13:01 - 2013-07-26 13:01 - 00278080 _____ C:\Users\Monika\Downloads\Adobe_Reader.exe 2013-07-26 13:01 - 2013-07-26 13:01 - 00278080 _____ C:\Program Files\Adobe_Reader.exe 2013-07-26 12:50 - 2013-07-26 12:50 - 00000117 _____ C:\Windows\system32\netcfg-96057562.txt 2013-07-26 12:49 - 2013-07-26 11:33 - 00000117 _____ C:\Windows\system32\netcfg-91473531.txt 2013-07-26 10:41 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-88372843.txt 2013-07-26 10:41 - 2013-07-26 10:34 - 00000117 _____ C:\Windows\system32\netcfg-87954343.txt 2013-07-26 10:02 - 2013-07-26 10:02 - 00000117 _____ C:\Windows\system32\netcfg-86024750.txt 2013-07-26 09:21 - 2013-07-26 09:21 - 00000117 _____ C:\Windows\system32\netcfg-83573921.txt 2013-07-26 09:06 - 2013-07-26 09:06 - 00000117 _____ C:\Windows\system32\netcfg-82667046.txt 2013-07-25 21:07 - 2013-07-25 21:07 - 00000117 _____ C:\Windows\system32\netcfg-39516203.txt 2013-07-25 20:51 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-38566875.txt 2013-07-25 20:51 - 2013-07-25 20:37 - 00000117 _____ C:\Windows\system32\netcfg-37716187.txt 2013-07-25 19:07 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-32304406.txt 2013-07-25 19:07 - 2013-07-25 18:31 - 00000117 _____ C:\Windows\system32\netcfg-30157375.txt 2013-07-25 18:14 - 2013-07-25 18:14 - 00000117 _____ C:\Windows\system32\netcfg-29135515.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18979078.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18960578.txt 2013-07-25 11:24 - 2013-07-25 11:24 - 00000117 _____ C:\Windows\system32\netcfg-4559890.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2919468.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2916578.txt 2013-07-25 10:08 - 2013-07-25 10:08 - 00000000 __SHD C:\found.000 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-876241609.txt 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-868638687.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867425234.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867424328.txt 2013-07-24 13:51 - 2013-07-24 13:51 - 00000117 _____ C:\Windows\system32\netcfg-857660140.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854366406.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854365312.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843513437.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843512187.txt 2013-07-24 08:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-839622015.txt 2013-07-24 08:50 - 2013-07-23 21:50 - 00000117 _____ C:\Windows\system32\netcfg-800000062.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966859.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966234.txt 2013-07-23 14:36 - 2013-07-23 14:36 - 00000117 _____ C:\Windows\system32\netcfg-773968500.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763215953.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763206187.txt 2013-07-23 10:40 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-759818500.txt 2013-07-23 10:40 - 2013-07-23 10:09 - 00000117 _____ C:\Windows\system32\netcfg-757969906.txt 2013-07-23 09:44 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-756458812.txt 2013-07-23 09:44 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686334296.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686296750.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686292093.txt 2013-07-22 09:55 - 2013-07-22 09:55 - 00000117 _____ C:\Windows\system32\netcfg-670723500.txt 2013-07-22 09:50 - 2013-07-22 09:50 - 00000117 _____ C:\Windows\system32\netcfg-670428875.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669183625.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669181218.txt 2013-07-22 08:28 - 2013-07-20 20:58 - 00000117 _____ C:\Windows\system32\netcfg-537704375.txt 2013-07-20 20:57 - 2013-07-20 20:57 - 00000117 _____ C:\Windows\system32\netcfg-537654625.txt 2013-07-20 16:27 - 2013-07-15 14:26 - 00000000 ____D C:\Users\Monika\AppData\Local\CrashDumps 2013-07-20 16:09 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika\AppData\Local\VirtualStore 2013-07-20 14:18 - 2013-07-14 14:14 - 00000000 ____D C:\ProgramData\EPSON 2013-07-20 14:03 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424205500.txt 2013-07-19 13:26 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424195484.txt 2013-07-19 09:26 - 2013-07-19 09:26 - 00000117 _____ C:\Windows\system32\netcfg-409788109.txt 2013-07-19 09:03 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-408437468.txt 2013-07-19 09:03 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364802281.txt 2013-07-18 20:56 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364791000.txt 2013-07-18 16:56 - 2013-07-18 16:56 - 00000117 _____ C:\Windows\system32\netcfg-350382796.txt 2013-07-18 14:14 - 2013-07-18 14:14 - 00000117 _____ C:\Windows\system32\netcfg-340660375.txt 2013-07-18 14:13 - 2013-07-18 14:13 - 00000117 _____ C:\Windows\system32\netcfg-340653968.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325006468.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325002125.txt 2013-07-17 18:48 - 2013-07-17 18:48 - 00000117 _____ C:\Windows\system32\netcfg-270720265.txt 2013-07-17 14:15 - 2013-07-17 14:07 - 00000117 _____ C:\Windows\system32\netcfg-253901531.txt 2013-07-17 13:48 - 2013-07-17 13:48 - 00000117 _____ C:\Windows\system32\netcfg-252716953.txt 2013-07-17 13:02 - 2013-07-17 13:02 - 00000117 _____ C:\Windows\system32\netcfg-249998234.txt 2013-07-17 12:47 - 2013-07-17 12:47 - 00000117 _____ C:\Windows\system32\netcfg-249070609.txt 2013-07-17 12:46 - 2013-07-17 12:46 - 00000117 _____ C:\Windows\system32\netcfg-249038062.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248256921.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248253812.txt 2013-07-17 12:33 - 2013-07-16 19:13 - 00000117 _____ C:\Windows\system32\netcfg-185868437.txt 2013-07-16 18:39 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-183800843.txt 2013-07-16 18:39 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143384765.txt 2013-07-16 07:25 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143367468.txt 2013-07-16 03:25 - 2013-07-16 03:25 - 00000117 _____ C:\Windows\system32\netcfg-128966765.txt 2013-07-16 02:59 - 2013-07-16 02:59 - 00000117 _____ C:\Windows\system32\netcfg-127434656.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-96911593.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111329546.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111318250.txt 2013-07-15 18:00 - 2013-07-15 18:00 - 00000117 _____ C:\Windows\system32\netcfg-95086156.txt 2013-07-15 17:59 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-95037218.txt 2013-07-15 17:59 - 2013-07-15 17:19 - 00000117 _____ C:\Windows\system32\netcfg-92605953.txt 2013-07-15 16:03 - 2013-07-15 16:03 - 00000117 _____ C:\Windows\system32\netcfg-88044562.txt 2013-07-15 14:48 - 2013-07-15 14:48 - 00000117 _____ C:\Windows\system32\netcfg-83560750.txt 2013-07-15 14:41 - 2013-07-15 14:41 - 00000117 _____ C:\Windows\system32\netcfg-83120203.txt 2013-07-15 14:20 - 2013-07-15 14:20 - 00000117 _____ C:\Windows\system32\netcfg-81866671.txt 2013-07-15 14:00 - 2013-07-15 14:00 - 00142304 _____ C:\Users\Monika\Downloads\1019914_6_2013_Tiefert.pdf.zip 2013-07-15 10:53 - 2013-07-15 10:53 - 00000117 _____ C:\Windows\system32\netcfg-69478109.txt 2013-07-15 10:25 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-67785421.txt 2013-07-15 10:25 - 2013-07-15 07:41 - 00000117 _____ C:\Windows\system32\netcfg-57963437.txt 2013-07-15 07:09 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-56011750.txt 2013-07-15 07:09 - 2013-07-15 07:08 - 00000117 _____ C:\Windows\system32\netcfg-55966531.txt 2013-07-14 17:23 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-07-14 17:06 - 2013-07-14 17:06 - 00000000 ____D C:\Users\Monika\Documents\OneNote-Notizbücher 2013-07-14 17:06 - 2013-07-12 18:37 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-14 16:59 - 2013-07-14 16:59 - 00000117 _____ C:\Windows\system32\netcfg-5005468.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4638937.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4633625.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4614875.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000156 _____ C:\Windows\system32\netcfg-3963328.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3949421.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3925937.txt 2013-07-14 16:39 - 2013-07-14 16:38 - 00000156 _____ C:\Windows\system32\netcfg-3781421.txt 2013-07-14 16:36 - 2013-07-14 16:36 - 00000117 _____ C:\Windows\system32\netcfg-3640453.txt 2013-07-14 16:35 - 2013-07-14 15:55 - 00000117 _____ C:\Windows\system32\netcfg-1180015.txt 2013-07-14 15:36 - 2013-07-14 15:36 - 00000117 _____ C:\Windows\system32\netcfg-32500.txt 2013-07-14 15:28 - 2013-07-14 15:28 - 00000000 _____ C:\Users\Monika\Sti_Trace.log 2013-07-14 15:25 - 2013-07-14 15:25 - 00000117 _____ C:\Windows\system32\netcfg-42218.txt 2013-07-14 15:25 - 2013-07-14 14:34 - 00421792 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-14 15:22 - 2013-07-14 15:22 - 00000938 _____ C:\Users\Public\Desktop\EPSON Scan.lnk 2013-07-14 15:22 - 2013-07-14 15:22 - 00000000 ____D C:\Program Files (x86)\epson 2013-07-14 15:21 - 2013-07-12 18:52 - 00000000 ____D C:\Eimer 2013-07-14 15:00 - 2013-07-14 15:00 - 00028574 _____ C:\Users\Monika\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx 2013-07-14 15:00 - 2013-07-14 15:00 - 00008833 _____ C:\Users\Monika\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx 2013-07-14 14:59 - 2013-07-12 20:14 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-14 14:58 - 2012-07-26 07:26 - 00000199 _____ C:\Windows\win.ini 2013-07-14 14:57 - 2012-12-21 20:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-14 14:26 - 2013-07-14 14:25 - 00003548 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask 2013-07-14 14:26 - 2013-07-12 18:37 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-52546.txt 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-51140.txt 2013-07-14 14:25 - 2013-07-14 14:21 - 00000000 ___RD C:\Windows\BrowserChoice 2013-07-14 14:25 - 2012-10-22 04:30 - 00000000 ____D C:\ProgramData\PRICache 2013-07-14 14:22 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2013-07-14 14:22 - 2012-07-26 09:52 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-14 14:21 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ToastData 2013-07-14 14:20 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-14 14:20 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-14 14:14 - 2013-07-14 14:14 - 00000000 ____D C:\Program Files\Common Files\EPSON 2013-07-14 14:13 - 2013-07-14 14:13 - 00000000 _____ C:\Users\Monika\Desktop\Neues Textdokument.txt 2013-07-14 14:11 - 2013-07-14 14:11 - 00000117 _____ C:\Windows\system32\netcfg-19600390.txt 2013-07-14 14:10 - 2013-07-14 14:09 - 00000117 _____ C:\Windows\system32\netcfg-19483937.txt 2013-07-14 14:03 - 2013-07-14 14:03 - 00000117 _____ C:\Windows\system32\netcfg-19143062.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19110812.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19103671.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00001138 _____ C:\Windows\system32\netcfg-19006156.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00000117 _____ C:\Windows\system32\netcfg-19007046.txt 2013-07-14 13:58 - 2013-07-14 13:58 - 00002974 _____ C:\Windows\avmadd32.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00002596 _____ C:\Windows\avmadd321.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!BoxPrint 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!Box 2013-07-14 13:41 - 2013-07-14 08:49 - 00000000 ____D C:\Program Files (x86)\proWIN Office 2013-07-14 13:30 - 2013-07-14 13:23 - 01077248 _____ C:\Users\Monika\Documents\Pro Win A.pwbackup 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16605453.txt 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16604921.txt 2013-07-14 08:51 - 2013-07-14 08:49 - 01077248 _____ C:\Users\Monika\Documents\ProWin.pwbackup 2013-07-14 08:49 - 2013-07-14 08:49 - 00002951 _____ C:\Users\Monika\Desktop\proWIN Office.lnk 2013-07-14 08:49 - 2013-07-14 08:49 - 00000094 _____ C:\Users\Monika\AppData\Local\fusioncache.dat 2013-07-14 08:49 - 2013-07-14 08:49 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\proWIN Office 2013-07-14 08:49 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\Registration 2013-07-14 08:48 - 2013-07-14 08:48 - 01772970 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-13 20:35 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Apps\2.0 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84742140.txt 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84725312.txt 2013-07-12 20:46 - 2012-10-22 04:57 - 00000000 ____D C:\ProgramData\OEM 2013-07-12 20:46 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files\Common Files\mcafee 2013-07-12 20:26 - 2013-07-12 20:26 - 00003030 _____ C:\Windows\System32\Tasks\{67E5FAFC-E470-4191-B77D-8CDABD36038F} 2013-07-12 20:22 - 2013-07-12 20:22 - 00000000 ____D C:\Neuer Ordner 2013-07-12 20:18 - 2013-07-12 20:18 - 00000000 ____D C:\Windows\PCHEALTH 2013-07-12 20:18 - 2012-07-26 09:52 - 00000000 ____D C:\Windows\ShellNew 2013-07-12 20:16 - 2013-07-12 20:16 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files\Microsoft Office 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 __RHD C:\MSOCache 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ____D C:\Users\Monika\AppData\Local\Microsoft Help 2013-07-12 20:13 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\restore 2013-07-12 18:50 - 2012-07-26 09:21 - 00019052 _____ C:\Windows\setupact.log 2013-07-12 18:47 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\PicStream 2013-07-12 18:45 - 2013-07-12 18:45 - 00000000 ____D C:\Users\Monika\AppData\Local\EgisTec IPS 2013-07-12 18:45 - 2012-10-22 04:58 - 00000000 ____D C:\ProgramData\EgisTec IPS 2013-07-12 18:44 - 2013-07-12 18:44 - 00000000 ____D C:\ProgramData\EgisTec 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files\Preload 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files (x86)\OEM 2013-07-12 18:37 - 2012-10-19 09:06 - 00000000 ___HD C:\OEM 2013-07-12 18:36 - 2013-07-12 18:36 - 00001736 _____ C:\Users\Public\Desktop\Online kaufen.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00001446 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Macromedia 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Program Files\Accessory Store 2013-07-12 18:35 - 2013-07-12 18:35 - 00000020 ___SH C:\Users\Monika\ntuser.ini 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Vorlagen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Startmenü 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Netzwerkumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Lokale Einstellungen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Eigene Dateien 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Druckumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Musik 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Bilder 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Verlauf 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Anwendungsdaten 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Anwendungsdaten 2013-07-12 18:35 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2013-07-12 18:35 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-228734.txt 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-225843.txt 2013-06-30 18:10 - 2013-07-26 19:58 - 01645360 _____ C:\Windows\system32\dmwu.exe 2013-06-30 18:07 - 2013-07-26 19:58 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll Files to move or delete: ==================== C:\Windows\SysWOW64\rundll32.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe [2012-07-26 01:55] - [2012-07-26 05:08] - 0516608 ____A (Microsoft Corporation) 93AB226C07A9789B2EC7B41F73602F76 C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe [2012-07-26 02:00] - [2012-07-26 05:08] - 0030208 ____A (Microsoft Corporation) 57350BEDE3834915B6145B67C71C7BDA C:\Windows\SysWOW64\svchost.exe [2012-07-26 02:01] - [2012-07-26 05:20] - 0023040 ____A (Microsoft Corporation) 0A175AF8B65797BD22C11903A8BFEB2D C:\Windows\System32\services.exe [2012-07-26 07:26] - [2012-07-26 07:26] - 0410624 ____A (Microsoft Corporation) 754A2CC1F32107EA87CBD305ABE3E618 C:\Windows\System32\User32.dll [2012-07-26 02:01] - [2012-07-26 05:07] - 1342464 ____A (Microsoft Corporation) 1D08594400EE1B500B93256795FE30AE C:\Windows\SysWOW64\User32.dll [2012-07-26 02:02] - [2012-07-26 02:02] - 1126912 ____A (Microsoft Corporation) 8A93F57772FD24959F76A65FF79D282D C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2012-10-22 03:29 ==================== End Of Log ============================ ich muss addition.txt notgedrungen als Anhang vesenden da die maximale Zeichenzahl der Antwort sonst überschritten wird. Sorry |
30.07.2013, 14:07 | #4 |
| LyricsContainer loswerden er.. mir ist grad eingefallen das ich auch einfach zwei antworten senden könnte... Naja besser spät als gar nie. also hier nochmal das Logfile zu addition.txt FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-07-2013 03 Ran by Monika at 2013-07-30 14:11:36 Running from C:\Users\Monika\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= clear.fi SDK - Video 2 (x32 Version: 2.1.1925) clear.fi SDK- Movie 2 (x32 Version: 2.1.2008) Acer Power Management (Version: 7.00.3006) Acer Recovery Management (Version: 6.00.3011) AcerCloud Docs (x32 Version: 1.00.3203) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98) Aloha TriPeaks (x32 Version: 2.2.0.98) AMD APP SDK Runtime (Version: 10.0.938.2) AMD Catalyst Install Manager (Version: 8.0.881.0) AVM FRITZ!Box Dokumentation (x32) AVM FRITZ!Box Druckeranschluss (x32) Bejeweled 3 (x32 Version: 2.2.0.98) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2012.0828.2156.37465) Catalyst Control Center InstallProxy (x32 Version: 2012.0828.2156.37465) Catalyst Control Center Localization All (x32 Version: 2012.0828.2156.37465) CCC Help Chinese Standard (x32 Version: 2012.0828.2155.37465) CCC Help Chinese Traditional (x32 Version: 2012.0828.2155.37465) CCC Help Czech (x32 Version: 2012.0828.2155.37465) CCC Help Danish (x32 Version: 2012.0828.2155.37465) CCC Help Dutch (x32 Version: 2012.0828.2155.37465) CCC Help English (x32 Version: 2012.0828.2155.37465) CCC Help Finnish (x32 Version: 2012.0828.2155.37465) CCC Help French (x32 Version: 2012.0828.2155.37465) CCC Help German (x32 Version: 2012.0828.2155.37465) CCC Help Greek (x32 Version: 2012.0828.2155.37465) CCC Help Hungarian (x32 Version: 2012.0828.2155.37465) CCC Help Italian (x32 Version: 2012.0828.2155.37465) CCC Help Japanese (x32 Version: 2012.0828.2155.37465) CCC Help Korean (x32 Version: 2012.0828.2155.37465) CCC Help Norwegian (x32 Version: 2012.0828.2155.37465) CCC Help Polish (x32 Version: 2012.0828.2155.37465) CCC Help Portuguese (x32 Version: 2012.0828.2155.37465) CCC Help Russian (x32 Version: 2012.0828.2155.37465) CCC Help Spanish (x32 Version: 2012.0828.2155.37465) CCC Help Swedish (x32 Version: 2012.0828.2155.37465) CCC Help Thai (x32 Version: 2012.0828.2155.37465) CCC Help Turkish (x32 Version: 2012.0828.2155.37465) ccc-utility64 (Version: 2012.0828.2156.37465) ckerdeinstallation für EPSON XP-205 207 Series clear.fi Media (x32 Version: 2.01.3108) clear.fi Photo (x32 Version: 2.01.3108) CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3318_45364) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32) Delicious: Emily's True Love Premium Edition (x32 Version: 2.2.0.98) Delta Chrome Toolbar (x32) Delta toolbar (x32 Version: 1.8.22.0) eBay Worldwide (x32 Version: 2.3.0630) EPSON Scan (x32) Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110) Hotkey Utility (x32 Version: 3.00.3004) Identity Card (x32 Version: 2.00.3004) Iminent (x32 Version: 6.27.21.0) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) Rapid Storage Technology (x32 Version: 11.5.0.1207) Intel® Trusted Connect Service Client (Version: 1.24.388.1) Internet Explorer Toolbar 4.9 by SweetPacks (x32 Version: 4.9.0000) Jewel Match 3 (x32 Version: 2.2.0.98) John Deere Drive Green (x32 Version: 2.2.0.95) Live Updater (x32 Version: 2.00.3004) LyricsContainer (x32) Magic Academy (x32 Version: 2.2.0.98) McAfee Internet Security Suite (x32) Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322) Microsoft Office 2010 Service Pack 1 (SP1) (x32) Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Home and Business 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000) Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000) Microsoft Silverlight (x32 Version: 5.1.10411.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) MyWinLocker (Version: 4.0.14.35) MyWinLocker 4 (x32 Version: 4.0.14.35) MyWinLocker Suite (x32 Version: 4.0.14.24) Nero 12 Essentials OEM.a01 (x32 Version: 12.5.00000) Nero ControlCenter (x32 Version: 11.0.14500.0.45) Nero ControlCenter Help (CHM) (x32 Version: 12.0.0003) Nero Core Components (x32 Version: 11.0.16900.1.27) Nero Express (x32 Version: 12.0.16001) Nero Express Help (CHM) (x32 Version: 12.0.1000) Nero Launcher (x32 Version: 12.0.3000) Nero Update (x32 Version: 11.0.11500.28.0) Norton AntiVirus (x32 Version: 20.4.0.40) Norton Identity Safe (x32 Version: 2013.3.0.26) Norton Online Backup (x32 Version: 2.2.3.51) Norton Online Backup ARA (x32 Version: 4.1.0.14) Norton Utilities 16 (x32 Version: 16.0) Office Addin (x32 Version: 2.01.3202) Penguins! (x32 Version: 2.2.0.98) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98) Polar Bowler (x32 Version: 2.2.0.97) Prerequisite installer (x32 Version: 12.0.0002) proWIN Office (x32 Version: 1.1.0) Qualcomm Atheros WiFi Driver Installation (x32 Version: 11.05) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6680) Realtek USB 2.0 Card Reader (x32 Version: 6.1.8400.39030) Shared C Run-time for x64 (Version: 10.0.0) Shredder (Version: 2.0.8.9) Shredder (x32 Version: 2.0.8.9) Spotify (x32 Version: 0.8.4.99.ga249b5f1) SweetPacks Updater Service (x32 Version: 4.0.5.4) Tales of Lagoona (x32 Version: 2.2.0.110) Update for Microsoft Office 2010 (KB2553065) (x32) Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2553455) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2566458) (x32) Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32) Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32) Update for Microsoft OneNote 2010 (KB2589345) 32-Bit Edition (x32) Update for Microsoft Outlook 2010 (KB2553323) 32-Bit Edition (x32) Update for Microsoft Outlook Social Connector (KB2583935) (x32) Update Installer for WildTangent Games App (x32) Updater By Sweetpacks 2.0.0.588 (Version: 2.0.0.588) Visual Studio 2005 Tools for Office Second Edition Runtime (x32) Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729) Visual Studio Tools for the Office system 3.0 Runtime (x32) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (x32 Version: 1) Wajam (x32 Version: 1.80) Web Cake 3.00 (Version: 3.00) WildTangent Games (x32 Version: 1.0.3.0) WildTangent Games App (x32 Version: 4.0.10.20) Zuma's Revenge (x32 Version: 2.2.0.98) ==================== Restore Points ========================= 26-07-2013 20:35:50 Removed Norton Online Backup ==================== Hosts content: ========================== 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0BBE2C26-E819-4276-8F50-59AF3E0CAFAD} - System32\Tasks\NUAutoUpdate => C:\Program Files (x86)\Symantec\Norton Utilities 16\SULauncher.exe [2012-09-29] (Symantec) Task: {0F520EE1-7515-4ABA-B202-16786ECDC9CC} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2012-07-12] (Egis Technology Inc.) Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation) Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler Task: {1869293C-5533-453C-A63E-1A746035D144} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\SymErr.exe [2013-01-25] (Symantec Corporation) Task: {193CC920-A65E-4EC2-91BE-FFD13604C0F6} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2012-09-20] (CyberLink) Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {26C02F2C-5D20-44DD-B03F-E87F8FF3EA9B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect Task: {2B28902F-A99D-4568-8C8B-FEE05F3984CC} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => C:\Windows\system32\sc.exe [2012-07-26] (Microsoft Corporation) Task: {2BD609A8-4107-403D-B4B3-61F8164FBD0F} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-08-30] () Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update Task: {30A173FC-D837-4474-86BC-39AE5B5F9D55} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-27] (Adobe Systems Incorporated) Task: {31F06F8E-295A-46D9-97E6-62E39D9DDC03} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-1001 Task: {355D92E2-EAF6-43B0-9439-F2FEBB6DEA0E} - System32\Tasks\Norton AntiVirus\Norton Error Analyzer => C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2012-07-26] (Microsoft Corporation) Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon Task: {557DAE4C-A294-461F-98D8-0092C2F27495} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-08-23] (Acer Incorporated) Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation) Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-07-26] (Microsoft Corporation) Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update Task: {7BEC2AD2-EBC5-4C7A-9718-D6B4C753DB85} - System32\Tasks\Norton AntiVirus\Norton Error Processor => C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses Task: {935C58E9-1E1D-416B-AFE9-DD3E214D7122} - System32\Tasks\Hotkey Utility => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [2012-09-20] (Acer Incorporated) Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic Task: {9BDFAFE2-D63F-4F60-8B74-423AB836F8B9} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2012-07-12] (Egis Technology Inc.) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh Task: {AB96B97B-39C2-46A2-876A-EEB6AE199033} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup => C:\Windows\System32\dism.exe [2012-07-26] (Microsoft Corporation) Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan Task: {BB66B5DA-8D71-4650-BCCD-27086A6CB41F} - System32\Tasks\EPUpdater => C:\Users\Monika\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe [2013-06-06] () Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan Task: {C2A6248B-4346-45A4-9FC3-8848A76F397D} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe [2012-08-15] (Microsoft Corporation) Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {C9324781-C164-4D63-AB2B-299B6AEA5E9A} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\SymErr.exe [2013-01-25] (Symantec Corporation) Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery Task: {E39669AC-4FF5-4B9B-9408-E6B77CFDF54E} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-22] () Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask Task: {E5918CB5-CB06-4D74-80C7-8DD0399361C4} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-07-26] (Microsoft Corporation) Task: {EADCAAF5-1DF6-4DD2-9F12-03D7528BA15E} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-500 Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM Task: {FA3C70F4-FA32-47B2-B997-573D0BADE6C2} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\WSCStub.exe [2013-06-04] (Symantec Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\LyricsContainer Update.job => C:\Program Files (x86)\LyricsContainer\LrcsCtrUpdr.exe Task: C:\Windows\Tasks\NUAutoUpdate.job => C:\Program Files (x86)\Symantec\Norton Utilities 16\SULauncher.exe Task: C:\Windows\Tasks\NUSchedule.job => C:\Program Files (x86)\Symantec\Norton Utilities 16\nu.exe ==================== Faulty Device Manager Devices ============= Name: Qualcomm Atheros AR5BWB222 Wireless Network Adapter Description: Qualcomm Atheros AR5BWB222 Wireless Network Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Qualcomm Atheros Communications Inc. Service: athr Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (07/30/2013 01:21:31 PM) (Source: Application Hang) (User: ) Description: Programm IEXPLORE.EXE, Version 10.0.9200.16537 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 93d4 Startzeit: 01ce8d0f591d64ec Endzeit: 62 Anwendungspfad: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Berichts-ID: 2800fad2-f90a-11e2-be88-eca86bdeb644 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (07/30/2013 01:09:42 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SymErr.exe, Version: 4.3.0.9, Zeitstempel: 0x51ad4131 Name des fehlerhaften Moduls: DBGENG.DLL_unloaded, Version: 0.0.0.0, Zeitstempel: 0x5010a6d7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x61b0a580 ID des fehlerhaften Prozesses: 0x3944 Startzeit der fehlerhaften Anwendung: 0xSymErr.exe0 Pfad der fehlerhaften Anwendung: SymErr.exe1 Pfad des fehlerhaften Moduls: SymErr.exe2 Berichtskennung: SymErr.exe3 Vollständiger Name des fehlerhaften Pakets: SymErr.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SymErr.exe5 Error: (07/30/2013 01:08:58 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SymErr.exe, Version: 4.3.0.9, Zeitstempel: 0x51ad4131 Name des fehlerhaften Moduls: DBGENG.DLL_unloaded, Version: 0.0.0.0, Zeitstempel: 0x5010a6d7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x61b0a580 ID des fehlerhaften Prozesses: 0x3b28 Startzeit der fehlerhaften Anwendung: 0xSymErr.exe0 Pfad der fehlerhaften Anwendung: SymErr.exe1 Pfad des fehlerhaften Moduls: SymErr.exe2 Berichtskennung: SymErr.exe3 Vollständiger Name des fehlerhaften Pakets: SymErr.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SymErr.exe5 Error: (07/30/2013 07:57:40 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SymErr.exe, Version: 4.3.0.7, Zeitstempel: 0x5102d0a9 Name des fehlerhaften Moduls: DBGENG.DLL_unloaded, Version: 0.0.0.0, Zeitstempel: 0x5010a6d7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x5fb1a580 ID des fehlerhaften Prozesses: 0xe0a0 Startzeit der fehlerhaften Anwendung: 0xSymErr.exe0 Pfad der fehlerhaften Anwendung: SymErr.exe1 Pfad des fehlerhaften Moduls: SymErr.exe2 Berichtskennung: SymErr.exe3 Vollständiger Name des fehlerhaften Pakets: SymErr.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SymErr.exe5 System errors: ============= Error: (07/30/2013 02:09:22 PM) (Source: DCOM) (User: Monika) Description: 2McAfee SiteAdvisor ServiceNicht verfügbar{5A90F5EE-16B8-4C2A-81B3-FD5329BA477C} Error: (07/30/2013 02:09:22 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (07/30/2013 02:09:22 PM) (Source: DCOM) (User: Monika) Description: 2McAfee SiteAdvisor ServiceNicht verfügbar{5A90F5EE-16B8-4C2A-81B3-FD5329BA477C} Error: (07/30/2013 02:09:22 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (07/30/2013 02:09:22 PM) (Source: DCOM) (User: Monika) Description: 2McAfee SiteAdvisor ServiceNicht verfügbar{5A90F5EE-16B8-4C2A-81B3-FD5329BA477C} Error: (07/30/2013 02:09:22 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (07/30/2013 02:09:22 PM) (Source: DCOM) (User: Monika) Description: 2McAfee SiteAdvisor ServiceNicht verfügbar{5A90F5EE-16B8-4C2A-81B3-FD5329BA477C} Error: (07/30/2013 02:09:22 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (07/30/2013 02:09:22 PM) (Source: DCOM) (User: Monika) Description: 2McAfee SiteAdvisor ServiceNicht verfügbar{5A90F5EE-16B8-4C2A-81B3-FD5329BA477C} Error: (07/30/2013 02:09:22 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "McAfee SiteAdvisor Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Microsoft Office Sessions: ========================= Error: (07/30/2013 01:21:31 PM) (Source: Application Hang)(User: ) Description: IEXPLORE.EXE10.0.9200.1653793d401ce8d0f591d64ec62C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE2800fad2-f90a-11e2-be88-eca86bdeb644 Error: (07/30/2013 01:09:42 PM) (Source: Application Error)(User: ) Description: SymErr.exe4.3.0.951ad4131DBGENG.DLL_unloaded0.0.0.05010a6d7c000000561b0a580394401ce8d154a9ade9eC:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\SymErr.exeDBGENG.DLL885cdfec-f908-11e2-be88-eca86bdeb644 Error: (07/30/2013 01:08:58 PM) (Source: Application Error)(User: ) Description: SymErr.exe4.3.0.951ad4131DBGENG.DLL_unloaded0.0.0.05010a6d7c000000561b0a5803b2801ce8d15302775f7C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\SymErr.exeDBGENG.DLL6e03b173-f908-11e2-be88-eca86bdeb644 Error: (07/30/2013 07:57:40 AM) (Source: Application Error)(User: ) Description: SymErr.exe4.3.0.75102d0a9DBGENG.DLL_unloaded0.0.0.05010a6d7c00000055fb1a580e0a001ce8ce9b35d4c86C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\SymErr.exeDBGENG.DLLf13915c3-f8dc-11e2-be88-eca86bdeb644 ==================== Memory info =========================== Percentage of memory in use: 38% Total physical RAM: 4048.28 MB Available physical RAM: 2496.77 MB Total Pagefile: 7248.28 MB Available Pagefile: 5316.08 MB Total Virtual: 8192 MB Available Virtual: 8191.77 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:224.82 GB) (Free:171.8 GB) NTFS (Disk=0 Partition=4) Drive d: (DATA) (Fixed) (Total:225.63 GB) (Free:190.56 GB) NTFS Drive f: (Externe Festplatte) (Fixed) (Total:465.75 GB) (Free:193.22 GB) NTFS (Disk=1 Partition=1) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: 00000000) Partition: GPT Partition Type ======================================================== Disk: 1 (Size: 466 GB) (Disk ID: 8D399BC0) Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
30.07.2013, 14:16 | #5 | |
/// the machine /// TB-Ausbilder | LyricsContainer loswerdenCombofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.07.2013, 20:38 | #6 |
| LyricsContainer loswerden ok, hier ist combofix.txt Combofix Logfile: Code:
ATTFilter ComboFix 13-07-30.03 - Monika 30.07.2013 20:54:08.1.2 - x64 Microsoft Windows 8 6.2.9200.0.1252.49.1031.18.4048.2427 [GMT 2:00] ausgeführt von:: c:\users\Monika\Desktop\ComboFix.exe AV: Norton AntiVirus *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF} AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: Norton AntiVirus *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\LyricsContainer\125.dll c:\users\Monika\AppData\Local\assembly\tmp c:\users\Monika\AppData\Local\Microsoft\Windows\Temporary Internet Files\{81B49F67-E9EA-4F96-81DB-CD6EC05DC145}.xps . . ((((((((((((((((((((((( Dateien erstellt von 2013-06-28 bis 2013-07-30 )))))))))))))))))))))))))))))) . . 2013-07-30 12:10 . 2013-07-30 12:10 -------- d-----w- C:\FRST 2013-07-30 11:36 . 2013-07-30 11:36 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service 2013-07-28 07:13 . 2013-07-28 07:13 289968 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10211.bin 2013-07-27 14:17 . 2013-07-27 14:17 -------- d-----w- c:\program files (x86)\Microsoft Silverlight 2013-07-27 10:47 . 2013-02-28 14:27 20312 ----a-w- c:\windows\system32\roboot64.exe 2013-07-27 05:53 . 2011-07-26 14:15 82432 ----a-w- c:\windows\SysWow64\msxml4r.dll 2013-07-27 05:53 . 2011-07-26 14:15 44544 ----a-w- c:\windows\SysWow64\msxml4a.dll 2013-07-27 05:53 . 2011-07-26 14:15 1233920 ----a-w- c:\windows\SysWow64\msxml4.dll 2013-07-27 05:53 . 2012-09-29 20:49 40992 ----a-w- c:\windows\system32\CleanMFT64.exe 2013-07-27 05:53 . 2008-04-02 13:54 1101824 ----a-w- c:\windows\SysWow64\UniBox210.ocx 2013-07-27 05:53 . 2008-04-02 13:53 212992 ----a-w- c:\windows\SysWow64\UniBoxVB12.ocx 2013-07-27 05:53 . 2008-04-02 13:53 880640 ----a-w- c:\windows\SysWow64\UniBox10.ocx 2013-07-27 05:53 . 2012-09-29 20:50 512544 ----a-w- c:\windows\SysWow64\msxml.dll 2013-07-27 05:53 . 2008-09-17 19:17 658432 ----a-w- c:\windows\SysWow64\MSCOMCT2.OCX 2013-07-26 21:31 . 2013-07-27 13:39 -------- d-----w- c:\windows\system32\drivers\NSTx64 2013-07-26 21:30 . 2013-07-26 21:31 -------- d-----w- c:\program files (x86)\Norton Identity Safe 2013-07-26 21:30 . 2013-07-26 21:42 177312 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS 2013-07-26 21:30 . 2013-07-26 21:30 -------- d-----w- c:\program files\Symantec 2013-07-26 21:30 . 2013-07-26 21:30 -------- d-----w- c:\program files\Common Files\Symantec Shared 2013-07-26 21:24 . 2013-07-27 10:52 -------- d-----w- c:\windows\system32\drivers\NAVx64 2013-07-26 21:24 . 2013-07-26 21:24 -------- d-----w- c:\program files (x86)\Norton AntiVirus 2013-07-26 19:10 . 2013-07-27 06:04 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared 2013-07-26 18:00 . 2013-07-26 18:00 -------- d-----w- c:\program files\Updater By Sweetpacks 2013-07-26 17:59 . 2013-07-26 17:59 -------- d-----w- c:\program files (x86)\Web Cake 2013-07-26 17:59 . 2013-07-26 17:59 -------- d-----w- c:\program files (x86)\SweetIM 2013-07-26 17:58 . 2013-07-27 00:59 -------- d-----w- c:\windows\SysWow64\jmdp 2013-07-26 17:58 . 2013-07-26 17:58 -------- d-----w- c:\windows\SysWow64\ARFC 2013-07-26 17:58 . 2013-06-30 16:10 1645360 ----a-w- c:\windows\system32\dmwu.exe 2013-07-26 17:58 . 2013-06-30 16:07 33792 ----a-w- c:\windows\system32\ImHttpComm.dll 2013-07-26 17:58 . 2013-07-26 17:58 -------- d-----w- c:\windows\SysWow64\WNLT 2013-07-26 17:57 . 2013-07-26 17:59 -------- d-----w- c:\programdata\Tarma Installer 2013-07-26 11:04 . 2013-07-26 11:04 -------- d-----w- c:\program files (x86)\Common Files\Adobe 2013-07-26 11:02 . 2013-07-26 11:02 -------- d-----w- c:\programdata\Iminent 2013-07-26 11:02 . 2013-07-26 11:02 -------- d-----w- c:\program files (x86)\Common Files\Umbrella 2013-07-26 11:02 . 2013-07-26 11:02 -------- d-----w- c:\program files (x86)\Iminent 2013-07-26 11:02 . 2013-07-26 11:02 -------- d-----w- c:\program files (x86)\Delta 2013-07-26 11:02 . 2013-07-26 11:02 -------- d-----w- c:\program files (x86)\Wajam 2013-07-26 11:02 . 2013-07-30 19:02 -------- d-----w- c:\program files (x86)\LyricsContainer 2013-07-26 11:02 . 2013-07-26 11:02 -------- d-----w- c:\programdata\Babylon 2013-07-26 11:01 . 2013-07-26 11:01 278080 ----a-w- c:\program files\Adobe_Reader.exe 2013-07-25 08:08 . 2013-07-25 08:08 -------- d-----w- C:\found.000 2013-07-14 13:22 . 2012-07-23 22:00 466432 ----a-w- c:\windows\system32\esxw2ud.dll 2013-07-14 13:22 . 2011-12-11 22:00 135824 ----a-w- c:\windows\system32\escsvc64.exe 2013-07-14 13:22 . 2013-07-14 13:22 -------- d-----w- c:\program files (x86)\epson 2013-07-14 12:21 . 2013-07-14 12:25 -------- d-----r- c:\windows\BrowserChoice 2013-07-14 12:14 . 2013-07-14 12:14 -------- d-----w- c:\program files\Common Files\EPSON 2013-07-14 12:14 . 2013-07-20 12:18 -------- d-----w- c:\programdata\EPSON 2013-07-14 12:14 . 2012-11-01 10:42 10752 ----a-w- c:\windows\system32\E_GCINST.DLL 2013-07-14 12:14 . 2012-11-01 10:42 120320 ----a-w- c:\windows\system32\E_ILMILE.DLL 2013-07-14 12:14 . 2012-11-01 10:42 83968 ----a-w- c:\windows\system32\E_ID4BILE.DLL 2013-07-14 11:58 . 2006-05-29 00:00 16384 ----a-r- c:\windows\SysWow64\avmprmon.dll 2013-07-14 11:58 . 2006-12-14 11:42 69120 ----a-r- c:\windows\SysWow64\avmadd32.dll 2013-07-14 11:58 . 2013-07-14 11:58 -------- d-----w- c:\program files (x86)\FRITZ!Box 2013-07-14 07:48 . 2012-11-26 02:15 16114176 ----a-w- c:\program files\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll 2013-07-14 07:48 . 2012-11-26 02:14 15541248 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\Microsoft Camera Codec Pack\MicrosoftRawCodec.dll 2013-07-14 07:45 . 2013-06-23 22:41 78185248 ----a-w- c:\windows\system32\MRT.exe 2013-07-14 06:49 . 2013-07-14 11:41 -------- d-----w- c:\program files (x86)\proWIN Office 2013-07-14 06:48 . 2013-07-14 06:48 -------- d-----w- c:\windows\SysWow64\URTTEMP 2013-07-13 18:21 . 2013-07-13 18:21 50784 ----a-w- c:\programdata\Microsoft\windowsfiltering\Sqm\Manifest\Sqm3.bin 2013-07-13 18:20 . 2013-07-13 18:20 17536 ----a-w- c:\programdata\Microsoft\windowssampling\Sqm\Manifest\Sqm3.bin 2013-07-13 18:19 . 2012-11-10 04:22 144384 ----a-w- c:\windows\system32\tssdisai.dll 2013-07-13 18:19 . 2012-11-10 04:22 126976 ----a-w- c:\windows\system32\RDWebAI.dll 2013-07-13 18:19 . 2012-11-10 04:20 135680 ----a-w- c:\windows\system32\appserverai.dll 2013-07-13 18:19 . 2012-11-10 04:22 122880 ----a-w- c:\windows\system32\VmHostAI.dll 2013-07-13 18:19 . 2012-11-10 04:23 132608 ----a-w- c:\windows\SysWow64\poqexec.exe 2013-07-13 18:19 . 2012-11-10 04:23 148480 ----a-w- c:\windows\system32\poqexec.exe 2013-07-12 18:22 . 2013-07-12 18:22 -------- d-----w- C:\Neuer Ordner 2013-07-12 18:18 . 2013-07-12 18:18 -------- d-----w- c:\windows\PCHEALTH 2013-07-12 18:15 . 2013-07-12 18:15 -------- d-----w- c:\program files\Microsoft Office 2013-07-12 18:15 . 2013-07-12 18:15 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services 2013-07-12 18:14 . 2013-07-14 12:59 -------- d-----w- c:\programdata\Microsoft Help 2013-07-12 18:14 . 2013-07-12 18:14 -------- d-----r- C:\MSOCache 2013-07-12 18:00 . 2013-05-30 23:14 4036096 ----a-w- c:\windows\system32\win32k.sys 2013-07-12 17:59 . 2013-05-04 07:45 2233600 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-07-12 17:59 . 2013-03-02 09:59 411880 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS 2013-07-12 17:59 . 2013-04-23 23:13 1013248 ----a-w- c:\windows\SysWow64\certutil.exe 2013-07-12 17:59 . 2013-04-23 23:12 1569792 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-07-12 17:59 . 2013-04-23 23:12 109056 ----a-w- c:\windows\SysWow64\cryptnet.dll 2013-07-12 17:59 . 2013-04-23 22:56 1255936 ----a-w- c:\windows\system32\certutil.exe 2013-07-12 17:59 . 2013-04-23 22:55 68096 ----a-w- c:\windows\system32\cryptsvc.dll 2013-07-12 17:59 . 2013-04-23 22:55 1889280 ----a-w- c:\windows\system32\crypt32.dll 2013-07-12 17:59 . 2013-04-23 22:55 141312 ----a-w- c:\windows\system32\cryptnet.dll 2013-07-12 17:57 . 2012-10-06 04:53 2893824 ----a-w- c:\windows\system32\msmpeg2vdec.dll 2013-07-12 17:57 . 2012-10-06 04:15 2400256 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll 2013-07-12 17:57 . 2013-06-01 09:25 496640 ----a-w- c:\windows\SysWow64\qedit.dll 2013-07-12 17:57 . 2013-06-01 09:21 595968 ----a-w- c:\windows\system32\qedit.dll 2013-07-12 17:57 . 2012-10-24 03:25 26624 ----a-w- c:\windows\system32\ReAgentc.exe 2013-07-12 17:57 . 2012-10-24 02:48 24064 ----a-w- c:\windows\SysWow64\ReAgentc.exe 2013-07-12 17:57 . 2013-03-02 08:23 375808 ----a-w- c:\windows\SysWow64\ReAgent.dll 2013-07-12 17:57 . 2013-03-02 02:44 1011200 ----a-w- c:\windows\system32\reseteng.dll 2013-07-12 17:57 . 2012-12-15 04:55 443392 ----a-w- c:\windows\system32\ReAgent.dll 2013-07-12 17:57 . 2012-11-03 05:26 132096 ----a-w- c:\windows\system32\sysreset.exe 2013-07-12 17:57 . 2012-11-03 05:25 945152 ----a-w- c:\windows\system32\resetengmig.dll 2013-07-12 17:55 . 2012-11-27 03:55 29952 ----a-w- c:\windows\system32\drivers\BthhfHid.sys 2013-07-12 17:53 . 2013-06-11 23:25 19238912 ----a-w- c:\windows\system32\mshtml.dll 2013-07-12 17:46 . 2013-04-27 05:20 733184 ----a-w- c:\windows\system32\win32spl.dll 2013-07-12 17:46 . 2013-05-04 06:59 2842112 ----a-w- c:\windows\system32\WMVDECOD.DLL 2013-07-12 17:46 . 2013-05-04 04:57 2620928 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL 2013-07-12 17:44 . 2012-10-24 03:25 13312 ----a-w- c:\windows\system32\pcalua.exe 2013-07-12 17:44 . 2012-10-24 03:24 405504 ----a-w- c:\windows\system32\pcasvc.dll 2013-07-12 17:44 . 2012-10-24 03:24 31232 ----a-w- c:\windows\system32\pcadm.dll 2013-07-12 17:44 . 2012-10-24 03:05 11776 ----a-w- c:\windows\system32\pcaevts.dll 2013-07-12 17:42 . 2012-12-16 08:28 46080 ----a-w- c:\windows\system32\atmlib.dll 2013-07-12 17:41 . 2012-11-01 04:40 2361344 ----a-w- c:\windows\system32\msxml6.dll 2013-07-12 17:41 . 2012-11-01 04:40 1836032 ----a-w- c:\windows\system32\msxml3.dll 2013-07-12 17:41 . 2012-11-01 04:41 1802240 ----a-w- c:\windows\SysWow64\msxml6.dll 2013-07-12 17:41 . 2012-11-01 04:41 1438720 ----a-w- c:\windows\SysWow64\msxml3.dll 2013-07-12 17:41 . 2012-11-01 04:21 2048 ----a-w- c:\windows\system32\msxml6r.dll 2013-07-12 17:41 . 2012-11-01 04:21 2048 ----a-w- c:\windows\system32\msxml3r.dll 2013-07-12 17:41 . 2012-11-01 04:20 2048 ----a-w- c:\windows\SysWow64\msxml6r.dll 2013-07-12 17:41 . 2012-11-01 04:20 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll 2013-07-12 16:52 . 2013-07-14 13:21 -------- d-----w- C:\Eimer 2013-07-12 16:44 . 2013-07-12 16:44 -------- d-----w- c:\programdata\EgisTec 2013-07-12 16:37 . 2013-07-12 16:37 -------- d-----w- c:\program files (x86)\OEM 2013-07-12 16:37 . 2013-07-12 16:37 -------- d-----w- c:\program files\Preload 2013-07-12 16:36 . 2013-07-12 16:36 -------- d-----w- c:\program files\Accessory Store 2013-07-12 16:35 . 2013-07-27 14:15 -------- d-----w- c:\users\Monika . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-07-12 16:34 . 2012-07-26 08:13 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2013-06-27 22:04 . 2012-07-26 08:14 78200 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-06-27 22:04 . 2012-07-26 08:14 693112 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}] 2013-07-26 04:02 197912 ----a-w- c:\program files (x86)\Web Cake\WebCakeIEClient.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}] 2013-07-23 02:50 311536 ----a-w- c:\program files (x86)\Delta\delta\1.8.22.0\bh\delta.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{DEDAF650-12B8-48f5-A843-BBA100716106}] 2013-05-29 08:24 169304 ----a-w- c:\program files\Updater By Sweetpacks\Extension32.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}] 2013-05-30 16:50 1309456 ----a-r- c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{82E1477C-B154-48D3-9891-33D83C26BCD3}"= "c:\program files (x86)\Delta\delta\1.8.22.0\deltaTlbr.dll" [2013-07-23 300952] "{EEE6C35B-6118-11DC-9C72-001320C79847}"= "c:\program files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll" [2013-05-30 1309456] . [HKEY_CLASSES_ROOT\clsid\{82e1477c-b154-48d3-9891-33d83c26bcd3}] [HKEY_CLASSES_ROOT\delta.deltadskBnd.1] [HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] [HKEY_CLASSES_ROOT\delta.deltadskBnd] . [HKEY_CLASSES_ROOT\clsid\{eee6c35b-6118-11dc-9c72-001320c79847}] [HKEY_CLASSES_ROOT\SWEETIE.IEToolbar.1] [HKEY_CLASSES_ROOT\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}] [HKEY_CLASSES_ROOT\SWEETIE.IEToolbar] . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "EPLTarget\P0000000000000000"="c:\windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE" [2012-11-01 283232] "NTRedirect"="c:\users\Monika\AppData\Roaming\BabSolution\Shared\NTRedirect.dll" [2013-07-18 121856] "WebCake Desktop"="c:\users\Monika\AppData\Roaming\Web Cake\WebCakeDesktop.exe" [2013-07-26 52504] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2012-08-28 642216] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-05-11 958576] "SSDMonitor"="c:\program files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe" [2012-09-29 104480] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce] "IsMyWinLockerReboot"="msiexec.exe" [2012-07-26 62976] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "EnableUIADesktopToggle"= 0 (0x0) "EnableCursorSuppression"= 1 (0x1) "ConsentPromptBehaviorUser"= 3 (0x3) . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . R0 mfeelamk;McAfee Inc. mfeelamk;c:\windows\system32\drivers\mfeelamk.sys;c:\windows\SYSNATIVE\drivers\mfeelamk.sys [x] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe;c:\program files\Common Files\McAfee\McSvcHost\McSvHost.exe [x] R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys;c:\windows\SYSNATIVE\drivers\cfwids.sys [x] R3 DiskDoctorService;Norton Disk Doctor Service;c:\program files (x86)\Symantec\Norton Utilities 16\Tools\Disk Doctor\DiskDoctorSrv.exe;c:\program files (x86)\Symantec\Norton Utilities 16\Tools\Disk Doctor\DiskDoctorSrv.exe [x] R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [x] R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [x] R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys;c:\windows\SYSNATIVE\drivers\mferkdet.sys [x] R3 SpeedDiskService;Norton SpeedDisk Service;c:\program files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\SpeedDiskSrv.exe;c:\program files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\SpeedDiskSrv.exe [x] R4 SymELAM;Symantec ELAM Driver;c:\windows\system32\drivers\NAVx64\1404000.028\SymELAM.sys;c:\windows\SYSNATIVE\drivers\NAVx64\1404000.028\SymELAM.sys [x] S0 iaStorA;iaStorA;c:\windows\System32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x] S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys;c:\windows\SYSNATIVE\drivers\mfewfpk.sys [x] S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NAVx64\1404000.028\SYMDS64.SYS;c:\windows\SYSNATIVE\drivers\NAVx64\1404000.028\SYMDS64.SYS [x] S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NAVx64\1404000.028\SYMEFA64.SYS;c:\windows\SYSNATIVE\drivers\NAVx64\1404000.028\SYMEFA64.SYS [x] S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [x] S1 ccSet_NARA;NARA Settings Manager;c:\windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\NARAx64\0401000.00E\ccSetx64.sys [x] S1 ccSet_NAV;Norton AntiVirus Settings Manager;c:\windows\system32\drivers\NAVx64\1404000.028\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\NAVx64\1404000.028\ccSetx64.sys [x] S1 ccSet_NST;Norton Identity Safe Settings Manager;c:\windows\system32\drivers\NSTx64\7DD03000.01A\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\NSTx64\7DD03000.01A\ccSetx64.sys [x] S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130727.001\IDSvia64.sys;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130727.001\IDSvia64.sys [x] S1 MfeASKM;McAfee Application Statistics Device Driver;c:\program files\McAfee\AppStats\MfeASKM.sys;c:\program files\McAfee\AppStats\MfeASKM.sys [x] S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDFilter.sys [x] S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDNServ.sys [x] S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDVDisk.sys [x] S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NAVx64\1404000.028\Ironx64.SYS;c:\windows\SYSNATIVE\drivers\NAVx64\1404000.028\Ironx64.SYS [x] S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\NAVx64\1404000.028\SYMNETS.SYS;c:\windows\SYSNATIVE\Drivers\NAVx64\1404000.028\SYMNETS.SYS [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 EpsonScanSvc;Epson Scanner Service;c:\windows\system32\EscSvc64.exe;c:\windows\SYSNATIVE\EscSvc64.exe [x] S2 IBUpdaterService;IBUpdaterService;c:\windows\system32\dmwu.exe;c:\windows\SYSNATIVE\dmwu.exe [x] S2 IconMan_R;IconMan_R;c:\program files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe;c:\program files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [x] S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x] S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x] S2 MfeASUM;McAfee Application Statistics Service;c:\program files\McAfee\AppStats\MfeASUM.exe;c:\program files\McAfee\AppStats\MfeASUM.exe [x] S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [x] S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe;c:\windows\SYSNATIVE\mfevtps.exe [x] S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe;c:\program files (x86)\Nero\Update\NASvc.exe [x] S2 NAV;Norton AntiVirus;c:\program files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe;c:\program files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [x] S2 NCO;Norton Identity Safe;c:\program files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe;c:\program files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe [x] S2 NOBU;Norton Online Backup;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE [x] S2 NU16StartManagerSvc;Norton Utilities 16 Start Manager Service;c:\program files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe;c:\program files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe [x] S2 SProtection;SProtection;c:\program files (x86)\Common Files\Umbrella\umbrella.exe;c:\program files (x86)\Common Files\Umbrella\umbrella.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 Updater By Sweetpacks;Updater By Sweetpacks;c:\program files\Updater By Sweetpacks\ExtensionUpdaterService.exe;c:\program files\Updater By Sweetpacks\ExtensionUpdaterService.exe [x] S2 WajamUpdater;WajamUpdater;c:\program files (x86)\Wajam\Updater\WajamUpdater.exe;c:\program files (x86)\Wajam\Updater\WajamUpdater.exe [x] S2 WebCakeUpdater;WebCakeUpdater;c:\program files (x86)\Web Cake\WebCakeDesktop.Updater.exe;c:\program files (x86)\Web Cake\WebCakeDesktop.Updater.exe [x] S2 ZAtheros Wlan Agent;ZAtheros Wlan Agent;c:\program files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe;c:\program files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW86.sys;c:\windows\SYSNATIVE\drivers\AtihdW86.sys [x] S3 ePowerSvc;ePower Service;c:\program files\Acer\Acer Power Management\ePowerSvc.exe;c:\program files\Acer\Acer Power Management\ePowerSvc.exe [x] S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x] S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys;c:\windows\SYSNATIVE\drivers\mfefirek.sys [x] S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{A6EADE66-0000-0000-484E-7E8A45000000}] 2013-05-11 10:37 215264 ----a-w- c:\program files (x86)\Adobe\Reader 11.0\Esl\AiodLite.dll . Inhalt des "geplante Tasks" Ordners . 2013-07-30 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-27 11:59] . 2013-07-26 c:\windows\Tasks\LyricsContainer Update.job - c:\program files (x86)\LyricsContainer\LrcsCtrUpdr.exe [2013-07-25 16:12] . 2013-07-30 c:\windows\Tasks\NUAutoUpdate.job - c:\program files (x86)\Symantec\Norton Utilities 16\SULauncher.exe [2013-07-27 20:49] . 2013-07-27 c:\windows\Tasks\NUSchedule.job - c:\program files (x86)\Symantec\Norton Utilities 16\nu.exe [2013-07-27 20:49] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-07-02 12921488] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.web.de/ mStart Page = hxxp://mysearch.sweetpacks.com/?src=10&st=12&crg=3.5000006.10053&barid={DCAB36ED-F61C-11E2-BE79-ECA86BDEB644} mLocal Page = c:\windows\SysWOW64\blank.htm IE: An OneNote s&enden - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.178.1 FF - ProfilePath - c:\users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.web.de/ FF - ExtSQL: 2013-07-26 13:02; Lyrics@LyricsContainer.co; c:\program files (x86)\LyricsContainer\125.xpi FF - ExtSQL: 2013-07-26 19:08; {4ED1F68A-5463-4931-9384-8FFF5ED91D92}; c:\program files (x86)\McAfee\SiteAdvisor FF - ExtSQL: 2013-07-26 20:00; {DEDAF650-12B8-48f5-A843-BBA100716106}; c:\program files\Updater By Sweetpacks\Firefox FF - ExtSQL: 2013-07-27 08:00; {BBDA0591-3099-440a-AA10-41764D9DB4DB}; c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\IPSFFPlgn FF - ExtSQL: 2013-07-27 13:35; {F04D2D30-776C-4d02-8627-8E4385ECA58D}; c:\programdata\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.0.26\coFFPlgn . - - - - Entfernte verwaiste Registrierungseinträge - - - - . BHO-{DA3D98A6-868D-4E1B-BB78-0887230DA405} - c:\program files (x86)\LyricsContainer\125.dll Toolbar-Locked - (no file) c:\users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk - (no file) Toolbar-Locked - (no file) . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NAV] "ImagePath"="\"c:\program files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe\" /s \"NAV\" /m \"c:\program files (x86)\Norton AntiVirus\Engine\20.4.0.40\diMaster.dll\" /prefetch:1" -- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NCO] "ImagePath"="\"c:\program files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe\" /s \"NCO\" /m \"c:\program files (x86)\Norton Identity Safe\Engine\2013.3.0.26\diMaster.dll\" /prefetch:1" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B9A09F18-45AB-4F09-A117-A4ADDA8FA8C8}] @Denied: (A) (Everyone) "Solution"="{36eb6792-3a29-43b3-8cd0-f67d266fb426}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane\0] "Key"="ActionsPane" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\8.0\\ActionsPane.xsd" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) @SACL=(02 0000) . Zeit der Fertigstellung: 2013-07-30 21:23:26 ComboFix-quarantined-files.txt 2013-07-30 19:23 . Vor Suchlauf: 9 Verzeichnis(se), 184.085.925.888 Bytes frei Nach Suchlauf: 17 Verzeichnis(se), 182.812.700.672 Bytes frei . - - End Of File - - 5255160366EC06F96050CB51B0A6F3F6 D41D8CD98F00B204E9800998ECF8427E [/CODE] |
31.07.2013, 09:13 | #7 |
/// the machine /// TB-Ausbilder | LyricsContainer loswerden Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
31.07.2013, 11:39 | #8 |
| LyricsContainer loswerden hier das logfile von malwarebytes: Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.07.31.02 Windows 8 x64 NTFS Internet Explorer 10.0.9200.16635 Monika :: MONIKA [Administrator] Schutz: Aktiviert 31.07.2013 11:02:56 mbam-log-2013-07-31 (11-02-56).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 217596 Laufzeit: 2 Minute(n), 26 Sekunde(n) Infizierte Speicherprozesse: 4 C:\Program Files (x86)\Common Files\Umbrella\Umbrella.exe (PUP.Optional.Iminent.A) -> 1256 -> Löschen bei Neustart. C:\Program Files (x86)\Web Cake\WebCakeDesktop.Updater.exe (PUP.Optional.WebCake.A) -> 2052 -> Löschen bei Neustart. C:\Program Files\Updater By Sweetpacks\ExtensionUpdaterService.exe (PUP.Optional.SweetPacks) -> 1584 -> Löschen bei Neustart. C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe (PUP.Optional.Wajam) -> 416 -> Löschen bei Neustart. Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 100 HKCR\CLSID\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D} (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\wajam.WajamBHO.1 (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\wajam.WajamBHO (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517} (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\escort.escortIEPane.1 (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\escort.escortIEPane (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{DEDAF650-12B8-48f5-A843-BBA100716106} (PUP.SweetIM) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DEDAF650-12B8-48F5-A843-BBA100716106} (PUP.SweetIM) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{DEDAF650-12B8-48F5-A843-BBA100716106} (PUP.SweetIM) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106} (PUP.SweetIM) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\SProtection (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\IminentWebBooster.ActiveContentHandle.1 (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\IminentWebBooster.ActiveContentHandler (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\IminentWebBooster.BrowserHelperObject.1 (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\IminentWebBooster.BrowserHelperObject (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\WebCakeUpdater (PUP.Optional.WebCake.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.ClientCallback (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.ContractBase (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.GameOverCallback (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.GetCreditCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.GetVariableCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.GetVariableResult (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.InstallationContextResult (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.LoadContentCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.LoginCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.LogoutCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.MyAccountCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.PlayContentCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.PostContentCallback (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.SetVariableCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.TestContentCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.WarmUpCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.DataContracts.WelcomeCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.ServerCommand (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.Communication.ServerResult (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.LightContent (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.LightUri (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Iminent.Mediator.MediatorServiceProxy (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\WebCakeIEClient.Api (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\WebCakeIEClient.Api.1 (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\AppID\WebCakeIEClient.DLL (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\IBUpdaterService (PUP.InstallBrain) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\Updater By Sweetpacks (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\WajamUpdater (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\delta.deltaappCore.1 (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\delta.deltaappCore (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\delta (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 8 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|WebCake Desktop (PUP.WebCake.A) -> Daten: "C:\Users\Monika\AppData\Roaming\Web Cake\WebCakeDesktop.exe" -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{EEE6C35B-6118-11DC-9C72-001320C79847} (PUP.Optional.SweetPacks) -> Daten: -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Daten: Delta Toolbar -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Mozilla\Firefox\Extensions|{DEDAF650-12B8-48F5-A843-BBA100716106} (PUP.SweetIM) -> Daten: C:\Program Files\Updater By Sweetpacks\Firefox -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Daten: -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Mozilla\Firefox\Extensions\{DEDAF650-12B8-48f5-A843-BBA100716106} (PUP.SweetIM) -> Daten: -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\Software\Microsoft\Windows\CurrentVersion\Run|NTRedirect (PUP.Optional.A.BabSolution) -> Daten: C:\Windows\SysWOW64\rundll32.exe "C:\Users\Monika\AppData\Roaming\BabSolution\Shared\NTRedirect.dll",Run -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SYSTEM\CurrentControlSet\Services\SProtection|ImagePath (PUP.Optional.Iminent.A) -> Daten: C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 28 C:\ProgramData\Tarma Installer\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38} (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}\Cache (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\inst (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\inst\Bootstrapper (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\ro (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\tr (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Web Cake (PUP.Optional.WebCake.A) -> Löschen bei Neustart. C:\ProgramData\Iminent\Mediator (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Iminent\Mediator\Datas (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Iminent\Mediator\Datas\Cache (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\Iminent\Mediator (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\Iminent\Mediator\Datas (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504} (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Cache (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\CR (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0 (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\bh (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 128 C:\Users\Monika\AppData\Roaming\Web Cake\WebCakeDesktop.exe (PUP.WebCake.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Wajam\IE\priam_bho.dll (PUP.Optional.Wajam) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Web Cake\WebCakeIEClient.dll (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaTlbr.dll (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\bh\delta.dll (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files\Updater By Sweetpacks\Extension32.dll (PUP.SweetIM) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.exe (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}\Setup.exe (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files\Adobe_Reader.exe (PUP.Optional.Solimba) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\Downloads\Adobe_Reader.exe (PUP.Optional.Solimba) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\Downloads\Setup.exe (PUP.Optional.Solimba) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Windows\Installer\18e196.msi (PUP.Optional.SweetPacks) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}\Setup.ico (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}\Setup.dat (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}\_Setup.dll (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}\_Setupx.dll (PUP.WebCake) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Common Files\Umbrella\Umbrella.exe (PUP.Optional.Iminent.A) -> Löschen bei Neustart. C:\Program Files (x86)\Iminent\SearchTheWeb.xml (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\f_in_box.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.AxImp.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Booster.UI.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Business.Connect.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Business.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Business.tlb (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Entity.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.exe (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.exe.config (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.InstallLog (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.InstallState (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Mediator.ActivePlayers.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Mediator.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Mediator.tlb (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Messengers.exe.config (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Services.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.WinCore.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.WinCore.WLM.WinEvents.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.WinCore.WLM15.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.WinCore.Yahoo.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Windows.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Iminent.Workflow.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Microsoft.DirectX.AudioVideoPlayback.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\Microsoft.Expression.Interactions.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\StartWeb.xml (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\System.Data.SQLite.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\System.Data.SQLite.xml (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\System.Windows.Interactivity.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\System.Windows.Interactivity.xml (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\USearch.xml (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\WPFLocalizeExtension.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\WPFLocalizeExtension.xml (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de\Iminent.Booster.UI.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de\Iminent.Business.Connect.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de\Iminent.Messengers.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de\Iminent.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de\Iminent.Services.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de\Microsoft.Expression.Interactions.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\de\System.Windows.Interactivity.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en\Iminent.Booster.UI.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en\Iminent.Business.Connect.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en\Iminent.Messengers.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en\Iminent.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en\Iminent.Services.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en\Microsoft.Expression.Interactions.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\en\System.Windows.Interactivity.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es\Iminent.Booster.UI.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es\Iminent.Business.Connect.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es\Iminent.Messengers.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es\Iminent.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es\Iminent.Services.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es\Microsoft.Expression.Interactions.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\es\System.Windows.Interactivity.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr\Iminent.Booster.UI.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr\Iminent.Business.Connect.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr\Iminent.Messengers.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr\Iminent.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr\Iminent.Services.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr\Microsoft.Expression.Interactions.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\fr\System.Windows.Interactivity.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\inst\main.ico (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\inst\msacm32.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\inst\SearchTheWeb.ico (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\inst\Universely.ico (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\inst\Bootstrapper\Bootstrapper.exe (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it\Iminent.Booster.UI.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it\Iminent.Business.Connect.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it\Iminent.Messengers.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it\Iminent.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it\Iminent.Services.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it\Microsoft.Expression.Interactions.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\it\System.Windows.Interactivity.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\ro\Iminent.Booster.UI.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\ro\Iminent.Messengers.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\ro\Iminent.Services.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\tr\Iminent.Booster.UI.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\tr\Iminent.Business.Connect.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\tr\Iminent.Messengers.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\tr\Iminent.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Iminent\tr\Iminent.Services.resources.dll (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Web Cake\WebCakeDesktop.Updater.InstallState (PUP.Optional.WebCake.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Web Cake\sqlite3.exe (PUP.Optional.WebCake.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Web Cake\WebCakeDesktop.Updater.exe (PUP.Optional.WebCake.A) -> Löschen bei Neustart. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\NTRedirect.dll (PUP.Optional.A.BabSolution) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files\Updater By Sweetpacks\ExtensionUpdaterService.exe (PUP.Optional.SweetPacks) -> Löschen bei Neustart. C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe (PUP.Optional.Wajam) -> Löschen bei Neustart. C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com\1033.11575f00-7bdc-4181-ba0a-b298aeab228c.dat (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\Iminent\Mediator\Datas\globalcache.dat (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\Iminent\Mediator\Datas\user.dat (PUP.Optional.Iminent.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.dat (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\Setup.ico (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setup.dll (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setupx.dll (PUP.Optional.Tarma.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\CR\Delta.crx (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\BabMaint.exe (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\BUSolution.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\chu.js (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\Delta.ico (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\GUninstaller.exe (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\SetupParams.ini (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Monika\AppData\Roaming\BabSolution\Shared\sqlite3.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaApp.dll (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaEng.dll (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\deltasrv.exe (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\GUninstaller.exe (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\Delta\delta\1.8.22.0\uninstall.exe (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) hier das vom adwCleaner AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v2.306 - Datei am 31/07/2013 um 11:27:23 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 8 (64 bits) # Benutzer : Monika - MONIKA # Bootmodus : Normal # Ausgeführt unter : C:\Users\Monika\Downloads\adwcleaner.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** Datei Gelöscht : C:\Windows\Tasks\LyricsContainer Update.job Gelöscht mit Neustart : C:\ProgramData\boost_interprocess Ordner Gelöscht : C:\Program Files (x86)\Common Files\Umbrella Ordner Gelöscht : C:\Program Files (x86)\delta Ordner Gelöscht : C:\Program Files (x86)\LyricsContainer Ordner Gelöscht : C:\Program Files (x86)\SweetIM Ordner Gelöscht : C:\Program Files (x86)\Wajam Ordner Gelöscht : C:\Program Files\Updater By SweetPacks Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\ProgramData\Iminent Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent Ordner Gelöscht : C:\Users\Monika\AppData\LocalLow\delta Ordner Gelöscht : C:\Users\Monika\AppData\LocalLow\SweetIM Ordner Gelöscht : C:\Users\Monika\AppData\Roaming\Iminent Ordner Gelöscht : C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam Ordner Gelöscht : C:\Windows\SysWOW64\ARFC Ordner Gelöscht : C:\Windows\SysWOW64\jmdp Ordner Gelöscht : C:\Windows\SysWOW64\WNLT ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\LyricsContainer Schlüssel Gelöscht : HKCU\Software\BabSolution Schlüssel Gelöscht : HKCU\Software\Delta Schlüssel Gelöscht : HKCU\Software\IM Schlüssel Gelöscht : HKCU\Software\Iminent Schlüssel Gelöscht : HKCU\Software\ImInstaller Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKCU\Software\Wajam Schlüssel Gelöscht : HKCU\Software\WNLT Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B302A1BD-0157-49FA-90F1-4E94F22C7B4B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\Extension.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\priam_bho.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.deltaESrvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamDownloader Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\wajam.WajamDownloader.1 Schlüssel Gelöscht : HKLM\Software\Delta Schlüssel Gelöscht : HKLM\Software\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKLM\Software\systweak Schlüssel Gelöscht : HKLM\Software\Umbrella Schlüssel Gelöscht : HKLM\Software\Wajam Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5D64294B-1341-4FE7-B6D8-7C36828D4DD5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\abfmigjiaapipflmopkaaooigcjjdojh Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Lyrics@LyricsContainer.co Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Wajam Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WNLT Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll] ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16537 Ersetzt : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://mysearch.sweetpacks.com/?src=10&st=12&crg=3.5000006.10053&barid={DCAB36ED-F61C-11E2-BE79-ECA86BDEB644} --> hxxp://www.google.com -\\ Mozilla Firefox v22.0 (de) Datei : C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default\prefs.js Gelöscht : user_pref("{DEDAF650-12B8-48f5-A843-BBA100716106}.ScriptData_WSG_blackList", "form=CONTLB|babsrc=too[...] Gelöscht : user_pref("{DEDAF650-12B8-48f5-A843-BBA100716106}.ScriptData_WSG_whiteList", "{\"search.babylon.com\[...] Gelöscht : user_pref("{DEDAF650-12B8-48f5-A843-BBA100716106}.ScriptData_product_name", "Updater By Sweetpacks")[...] ************************* AdwCleaner[S1].txt - [26299 octets] - [31/07/2013 11:27:23] ########## EOF - C:\AdwCleaner[S1].txt - [26360 octets] ########## hier die JRT.txt JRT Logfile: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.2.9 (07.30.2013:1) OS: Windows 8 x64 Ran by Monika on 31.07.2013 at 11:44:08,37 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\clsid\{bb975e58-e769-4e5a-ba12-b765bc559ff3} Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\clsid\{fb684d26-01f4-4d9d-87cb-f486beba56dc} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\interface\{0afd55c8-adf8-4a33-a6e1-dedb7a36aeb4} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\clsid\{fb684d26-01f4-4d9d-87cb-f486beba56dc} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DA3D98A6-868D-4E1B-BB78-0887230DA405} ~~~ Files ~~~ Folders Failed to delete: [Folder] "C:\ProgramData\boost_interprocess" Successfully deleted: [Folder] "C:\Users\Monika\AppData\Roaming\systweak" ~~~ FireFox Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions\\lyrics@lyricscontainer.co Emptied folder: C:\Users\Monika\AppData\Roaming\mozilla\firefox\profiles\fscnqri9.default\minidumps [1 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 31.07.2013 at 11:53:03,12 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
31.07.2013, 11:40 | #9 |
| LyricsContainer loswerdenFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03 Ran by Monika (administrator) on 31-07-2013 12:02:57 Running from C:\Users\Monika\Desktop Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (McAfee, Inc.) C:\Program Files\McAfee\AppStats\MfeASUM.exe (McAfee, Inc.) C:\windows\system32\mfevtps.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (Symantec) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe (Atheros) C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe (Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Microsoft Corporation) C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16455_none_624a7aa150f57306\TiWorker.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Symantec) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Microsoft Corporation) C:\Windows\system32\wermgr.exe (Microsoft Corporation) C:\Windows\system32\wermgr.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12921488 2012-07-02] (Realtek Semiconductor) HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! HKCU\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE [283232 2012-11-01] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-29] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SSDMonitor] - C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe [104480 2012-09-29] (Symantec) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-13] (Acer Incorporated) HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-13] (Acer Incorporated) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web.de/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\coIEPlg.dll (Symantec Corporation) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - No Name - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - No File Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default FF Homepage: hxxp://www.web.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default\searchplugins\Sweetpacks Search.xml FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Firefox\Extensions: [{DEDAF650-12B8-48f5-A843-BBA100716106}] C:\Program Files\Updater By Sweetpacks\Firefox FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.0.26\coFFPlgn\ FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.0.26\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\IPSFFPlgn\ ==================== Services (Whitelisted) ================= S3 DiskDoctorService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\Disk Doctor\DiskDoctorSrv.exe [1147424 2012-09-29] (Symantec Corporation) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-23] (Acer Incorporated) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [241456 2013-02-19] (McAfee, Inc.) R2 MfeASUM; C:\Program Files\McAfee\AppStats\MfeASUM.exe [335216 2013-07-14] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218760 2013-02-19] (McAfee, Inc.) R2 mfevtp; C:\windows\system32\mfevtps.exe [182752 2013-02-19] (McAfee, Inc.) R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe [144520 2012-12-24] (Symantec Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation) R2 NU16StartManagerSvc; C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe [792608 2012-09-29] (Symantec) S3 SpeedDiskService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\SpeedDiskSrv.exe [1160224 2012-09-29] (Symantec Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-29] (Microsoft Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536 2012-08-01] (Atheros) S2 McAfee SiteAdvisor Service; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [x] ==================== Drivers (Whitelisted) ==================== R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [91648 2012-08-21] (Advanced Micro Devices) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-07-15] (Symantec Corporation) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-07-15] (Symantec Corporation) R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation) R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DD03000.01A\ccSetx64.sys [168096 2012-11-16] (Symantec Corporation) S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-02-19] (McAfee, Inc.) R3 e1cexpress; C:\Windows\system32\DRIVERS\e1c63x64.sys [498032 2012-07-12] (Intel Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-07-26] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-07-26] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-07-26] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130730.001\IDSvia64.sys [513184 2013-07-26] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130730.001\IDSvia64.sys [513184 2013-07-26] (Symantec Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179280 2013-02-19] (McAfee, Inc.) R1 MfeASKM; C:\Program Files\McAfee\AppStats\MfeASKM.sys [31408 2013-07-14] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309840 2013-02-19] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69168 2013-02-19] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [515968 2013-02-19] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [771536 2013-02-19] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106552 2013-02-19] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [340216 2013-02-19] (McAfee, Inc.) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130730.017\ENG64.SYS [126040 2013-07-26] (Symantec Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130730.017\ENG64.SYS [126040 2013-07-26] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130730.017\EX64.SYS [2098776 2013-07-26] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130730.017\EX64.SYS [2098776 2013-07-26] (Symantec Corporation) R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\NAVx64\1404000.028\SymELAM.sys [23448 2012-11-15] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-07-26] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-31 11:53 - 2013-07-31 11:53 - 00001742 _____ C:\Users\Monika\Desktop\JRT.txt 2013-07-31 11:43 - 2013-07-31 11:43 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 11:37 - 2013-07-31 11:37 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\Monika\Desktop\JRT.exe 2013-07-31 11:33 - 2013-07-31 11:33 - 00026294 _____ C:\Users\Monika\Desktop\AdwCleaner[S1].txt 2013-07-31 11:27 - 2013-07-31 11:28 - 00026294 _____ C:\AdwCleaner[S1].txt 2013-07-31 11:27 - 2013-07-31 11:28 - 00000101 _____ C:\Windows\DeleteOnReboot.bat 2013-07-31 11:26 - 2013-07-31 11:26 - 00666633 _____ C:\Users\Monika\Downloads\adwcleaner.exe 2013-07-31 11:02 - 2013-07-31 11:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 11:01 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-07-31 10:41 - 2013-07-31 10:41 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Monika\Downloads\mbam-setup-1.75.0.1300.exe 2013-07-31 10:36 - 2013-07-31 10:36 - 00000117 _____ C:\Windows\system32\netcfg-268247062.txt 2013-07-31 10:30 - 2013-07-31 10:30 - 00000117 _____ C:\Windows\system32\netcfg-267849500.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906562.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906296.txt 2013-07-31 09:01 - 2013-07-31 09:01 - 00000117 _____ C:\Windows\system32\netcfg-262491453.txt 2013-07-31 09:00 - 2013-07-31 09:01 - 00000117 _____ C:\Windows\system32\netcfg-262479187.txt 2013-07-30 23:07 - 2013-07-30 23:07 - 00000117 _____ C:\Windows\system32\netcfg-226902109.txt 2013-07-30 21:54 - 2013-07-30 21:54 - 00000117 _____ C:\Windows\system32\netcfg-222493078.txt 2013-07-30 21:23 - 2013-07-30 21:23 - 00027681 _____ C:\ComboFix.txt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219987234.txt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219985656.txt 2013-07-30 20:51 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-07-30 20:51 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-07-30 20:51 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\Windows\SWXCACLS.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-07-30 20:50 - 2013-07-30 21:24 - 00000000 ____D C:\ComboFix 2013-07-30 20:46 - 2013-07-30 21:24 - 00000000 ____D C:\Qoobox 2013-07-30 20:45 - 2013-07-30 21:18 - 00000000 ____D C:\Windows\erdnt 2013-07-30 20:39 - 2013-07-30 20:39 - 05095806 ____R (Swearware) C:\Users\Monika\Desktop\ComboFix.exe 2013-07-30 20:29 - 2013-07-30 20:29 - 00000117 _____ C:\Windows\system32\netcfg-217426406.txt 2013-07-30 19:03 - 2013-07-30 19:03 - 00000117 _____ C:\Windows\system32\netcfg-212257859.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208905734.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208900796.txt 2013-07-30 14:13 - 2013-07-30 14:13 - 00115232 _____ C:\Users\Monika\Downloads\FRST.txt 2013-07-30 14:11 - 2013-07-30 14:13 - 00026487 _____ C:\Users\Monika\Downloads\Addition.txt 2013-07-30 14:10 - 2013-07-30 14:10 - 00000000 ____D C:\FRST 2013-07-30 14:09 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Downloads\FRST64.exe 2013-07-30 14:08 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Desktop\FRST64.exe 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302750.txt 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302078.txt 2013-07-30 13:36 - 2013-07-30 13:36 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-30 13:36 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190098171.txt 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190084343.txt 2013-07-29 22:11 - 2013-07-29 22:11 - 00002360 _____ C:\{60CCBC6A-DDF1-4E4B-BA53-B1B969F8BC46} 2013-07-29 22:10 - 2013-07-29 22:10 - 00002344 _____ C:\{4172ADAC-5061-466B-9A16-5AF53570ABAB} 2013-07-29 22:06 - 2013-07-29 22:06 - 00002360 _____ C:\{DF5ADA51-F2BE-4A00-832D-9B1F33D4F6A9} 2013-07-29 21:46 - 2013-07-29 21:46 - 00002488 _____ C:\{03947D0E-D470-4B1D-B542-B894F52A0016} 2013-07-29 21:45 - 2013-07-29 21:45 - 00002504 _____ C:\{84749585-6701-4916-80DF-DD792B4FD167} 2013-07-29 21:35 - 2013-07-29 21:35 - 00003112 _____ C:\{93234576-3313-4230-95AF-4793795C0993} 2013-07-29 21:05 - 2013-07-29 21:05 - 00003456 _____ C:\{FE57C4B5-B33F-40D8-A4BD-691F37C7709F} 2013-07-29 20:51 - 2013-07-29 20:51 - 00002992 _____ C:\{3E61799B-6C1A-4779-895F-B5A05482CAAA} 2013-07-29 17:56 - 2013-07-29 17:56 - 00000000 ____D C:\Users\Monika\AppData\Roaming\WildTangent 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109818078.txt 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109814671.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600562.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600406.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18642921.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18639875.txt 2013-07-27 21:18 - 2013-07-27 21:18 - 00000117 _____ C:\Windows\system32\netcfg-8738921.txt 2013-07-27 19:53 - 2013-07-27 19:53 - 00000117 _____ C:\Windows\system32\netcfg-3651562.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527390.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527000.txt 2013-07-27 19:50 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3452265.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383671.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383390.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-739250.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-736687.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-546234.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-489406.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-238171.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-226062.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-187421.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-143140.txt 2013-07-27 18:54 - 2013-07-27 18:54 - 00000117 _____ C:\Windows\system32\netcfg-110437.txt 2013-07-27 18:53 - 2013-07-27 18:53 - 00000117 _____ C:\Windows\system32\netcfg-43984.txt 2013-07-27 18:52 - 2013-07-27 18:52 - 00000117 _____ C:\Windows\system32\netcfg-1154218.txt 2013-07-27 18:48 - 2013-07-27 18:48 - 00000117 _____ C:\Windows\system32\netcfg-917390.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-872453.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-858968.txt 2013-07-27 18:42 - 2013-07-27 18:42 - 00000117 _____ C:\Windows\system32\netcfg-550406.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-61531.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-39984.txt 2013-07-27 18:00 - 2013-07-27 18:00 - 00000573 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bibliotheken.lnk 2013-07-27 17:42 - 2013-07-27 17:43 - 00001343 _____ C:\Windows\IE10_main.log 2013-07-27 17:42 - 2013-07-27 16:13 - 51415040 _____ (Microsoft Corporation) C:\Users\Monika\Downloads\IE10-Windows6.1-x64-de-de.exe 2013-07-27 17:20 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-66218.txt 2013-07-27 17:19 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-42281.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439562.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439250.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-69781.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-55250.txt 2013-07-27 16:17 - 2013-07-27 16:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-27 16:16 - 2013-07-27 17:36 - 00006207 _____ C:\Windows\IE9_main.log 2013-07-27 16:15 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika\Qtrax 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-773281.txt 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-762921.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4946984.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4923734.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4919765.txt 2013-07-27 14:55 - 2013-07-27 14:55 - 00000117 _____ C:\Windows\system32\netcfg-4254687.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2138906.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2137109.txt 2013-07-27 14:02 - 2013-07-27 14:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Macromedia 2013-07-27 13:59 - 2013-07-31 11:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-27 13:59 - 2013-07-27 13:59 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-27 13:45 - 2013-07-27 13:46 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Mozilla 2013-07-27 13:45 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Local\Mozilla 2013-07-27 13:41 - 2013-07-27 13:41 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-27 13:37 - 2013-07-27 13:37 - 21670584 _____ (Mozilla) C:\Users\Monika\Downloads\Firefox Setup 22.0.exe 2013-07-27 13:01 - 2013-07-27 13:02 - 00000000 ____D C:\Windows\System32\Tasks\Norton AntiVirus 2013-07-27 12:47 - 2013-02-28 16:27 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe 2013-07-27 12:43 - 2013-07-27 12:43 - 04365864 _____ (Systweak Inc ) C:\Users\Monika\Downloads\rcpsetup_matomy_my30679.exe 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48362218.txt 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48350546.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47114468.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47101875.txt 2013-07-27 11:32 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-44535890.txt 2013-07-27 11:03 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-42757640.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41528171.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41522828.txt 2013-07-27 07:55 - 2013-07-27 07:55 - 00000296 _____ C:\Windows\Tasks\NUSchedule.job 2013-07-27 07:54 - 2013-07-31 11:35 - 00000304 _____ C:\Windows\Tasks\NUAutoUpdate.job 2013-07-27 07:54 - 2013-07-27 07:54 - 00002520 _____ C:\Windows\System32\Tasks\NUAutoUpdate 2013-07-27 07:54 - 2013-07-27 07:54 - 00000000 ____D C:\Users\Monika\Documents\Norton Utilities 16 2013-07-27 07:53 - 2013-07-27 07:53 - 00001227 _____ C:\Users\Public\Desktop\Norton Utilities 16.lnk 2013-07-27 07:53 - 2012-09-29 22:50 - 00512544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml.dll 2013-07-27 07:53 - 2012-09-29 22:49 - 00040992 _____ C:\Windows\system32\CleanMFT64.exe 2013-07-27 07:53 - 2011-07-26 16:15 - 01233920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4.dll 2013-07-27 07:53 - 2011-07-26 16:15 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll 2013-07-27 07:53 - 2011-07-26 16:15 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4a.dll 2013-07-27 07:53 - 2008-09-17 21:17 - 00658432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCT2.OCX 2013-07-27 07:53 - 2008-04-02 15:54 - 01101824 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBox210.ocx 2013-07-27 07:53 - 2008-04-02 15:53 - 00880640 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBox10.ocx 2013-07-27 07:53 - 2008-04-02 15:53 - 00212992 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBoxVB12.ocx 2013-07-27 07:52 - 2013-07-27 07:52 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Product_NU16 2013-07-27 07:50 - 2013-07-27 07:50 - 23459280 _____ (Symantec) C:\Users\Monika\Downloads\nu16.0.0.126-SMUI.exe 2013-07-27 07:42 - 2013-07-27 07:42 - 00000117 _____ C:\Windows\system32\netcfg-30713234.txt 2013-07-27 07:06 - 2013-07-27 07:06 - 00000117 _____ C:\Windows\system32\netcfg-28574015.txt 2013-07-27 07:01 - 2013-07-27 07:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton Identity Safe 2013-07-27 06:39 - 2013-07-27 06:39 - 00000117 _____ C:\Windows\system32\netcfg-26923312.txt 2013-07-27 03:01 - 2013-07-27 03:01 - 00000117 _____ C:\Windows\system32\netcfg-13861609.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13762328.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13751921.txt 2013-07-26 23:31 - 2013-07-27 15:39 - 00000000 ____D C:\Windows\system32\Drivers\NSTx64 2013-07-26 23:30 - 2013-07-26 23:42 - 00177312 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2013-07-26 23:30 - 2013-07-26 23:42 - 00007631 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2013-07-26 23:30 - 2013-07-26 23:31 - 00000000 ____D C:\Program Files (x86)\Norton Identity Safe 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Symantec 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared 2013-07-26 23:29 - 2013-07-27 12:52 - 00003218 _____ C:\Windows\System32\Tasks\Norton WSC Integration 2013-07-26 23:29 - 2013-07-27 12:52 - 00002401 _____ C:\Users\Public\Desktop\Norton AntiVirus.lnk 2013-07-26 23:24 - 2013-07-27 12:52 - 00000000 ____D C:\Windows\system32\Drivers\NAVx64 2013-07-26 23:24 - 2013-07-26 23:24 - 00000000 ____D C:\Program Files (x86)\Norton AntiVirus 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2381562.txt 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2376828.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1458984.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1453328.txt 2013-07-26 22:23 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-436312.txt 2013-07-26 22:22 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-427640.txt 2013-07-26 22:20 - 2013-07-26 22:20 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-26 20:49 - 2013-07-26 20:54 - 172886528 ____N (Symantec Corporation) C:\Users\Monika\Downloads\NAV-TW-30-20-3-0-36-GE.exe 2013-07-26 20:29 - 2013-07-26 20:29 - 00000000 ____D C:\Users\Monika\Documents\Symantec 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2963734.txt 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2955812.txt 2013-07-26 19:59 - 2013-07-31 11:14 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Web Cake 2013-07-26 19:58 - 2013-06-30 18:10 - 01645360 _____ C:\Windows\system32\dmwu.exe 2013-07-26 19:58 - 2013-06-30 18:07 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22774765.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22744671.txt 2013-07-26 19:27 - 2013-07-26 19:27 - 00000117 _____ C:\Windows\system32\netcfg-22718453.txt 2013-07-26 19:26 - 2013-07-26 19:26 - 00000117 _____ C:\Windows\system32\netcfg-22684562.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22620921.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22576078.txt 2013-07-26 19:22 - 2013-07-26 19:22 - 00000117 _____ C:\Windows\system32\netcfg-22440609.txt 2013-07-26 19:21 - 2013-07-26 19:21 - 00000117 _____ C:\Windows\system32\netcfg-22395437.txt 2013-07-26 19:13 - 2013-07-26 19:13 - 00000117 _____ C:\Windows\system32\netcfg-21869453.txt 2013-07-26 19:11 - 2013-07-26 19:11 - 00000117 _____ C:\Windows\system32\netcfg-21764187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21668187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21637343.txt 2013-07-26 19:06 - 2013-07-26 19:06 - 00000117 _____ C:\Windows\system32\netcfg-21487671.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15365046.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15352375.txt 2013-07-26 13:24 - 2013-07-26 13:24 - 00000117 _____ C:\Windows\system32\netcfg-939625.txt 2013-07-26 13:04 - 2013-07-30 12:27 - 00000000 ____D C:\ProgramData\Adobe 2013-07-26 13:04 - 2013-07-26 13:04 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2013-07-26 13:04 - 2013-07-26 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-26 13:02 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-26 13:02 - 2013-07-29 14:40 - 00000000 ____D C:\Users\Monika\AppData\Local\Adobe 2013-07-26 13:02 - 2013-07-26 13:02 - 00003388 _____ C:\Windows\System32\Tasks\EPUpdater 2013-07-26 13:02 - 2013-07-26 13:02 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-26 12:50 - 2013-07-26 12:50 - 00000117 _____ C:\Windows\system32\netcfg-96057562.txt 2013-07-26 11:33 - 2013-07-26 12:49 - 00000117 _____ C:\Windows\system32\netcfg-91473531.txt 2013-07-26 10:41 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-88372843.txt 2013-07-26 10:34 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-87954343.txt 2013-07-26 10:02 - 2013-07-26 10:02 - 00000117 _____ C:\Windows\system32\netcfg-86024750.txt 2013-07-26 09:21 - 2013-07-26 09:21 - 00000117 _____ C:\Windows\system32\netcfg-83573921.txt 2013-07-26 09:06 - 2013-07-26 09:06 - 00000117 _____ C:\Windows\system32\netcfg-82667046.txt 2013-07-25 21:07 - 2013-07-25 21:07 - 00000117 _____ C:\Windows\system32\netcfg-39516203.txt 2013-07-25 20:51 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-38566875.txt 2013-07-25 20:37 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-37716187.txt 2013-07-25 19:07 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-32304406.txt 2013-07-25 18:31 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-30157375.txt 2013-07-25 18:14 - 2013-07-25 18:14 - 00000117 _____ C:\Windows\system32\netcfg-29135515.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18979078.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18960578.txt 2013-07-25 11:24 - 2013-07-25 11:24 - 00000117 _____ C:\Windows\system32\netcfg-4559890.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2919468.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2916578.txt 2013-07-25 10:08 - 2013-07-25 10:08 - 00000000 ____D C:\found.000 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-876241609.txt 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-868638687.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867425234.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867424328.txt 2013-07-24 13:51 - 2013-07-24 13:51 - 00000117 _____ C:\Windows\system32\netcfg-857660140.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854366406.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854365312.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843513437.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843512187.txt 2013-07-24 08:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-839622015.txt 2013-07-23 21:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-800000062.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966859.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966234.txt 2013-07-23 14:36 - 2013-07-23 14:36 - 00000117 _____ C:\Windows\system32\netcfg-773968500.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763215953.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763206187.txt 2013-07-23 10:40 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-759818500.txt 2013-07-23 10:09 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-757969906.txt 2013-07-23 09:44 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-756458812.txt 2013-07-22 14:15 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-686334296.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686296750.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686292093.txt 2013-07-22 09:55 - 2013-07-22 09:55 - 00000117 _____ C:\Windows\system32\netcfg-670723500.txt 2013-07-22 09:50 - 2013-07-22 09:50 - 00000117 _____ C:\Windows\system32\netcfg-670428875.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669183625.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669181218.txt 2013-07-20 20:58 - 2013-07-22 08:28 - 00000117 _____ C:\Windows\system32\netcfg-537704375.txt 2013-07-20 20:57 - 2013-07-20 20:57 - 00000117 _____ C:\Windows\system32\netcfg-537654625.txt 2013-07-19 13:26 - 2013-07-20 14:03 - 00000117 _____ C:\Windows\system32\netcfg-424205500.txt 2013-07-19 13:26 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424195484.txt 2013-07-19 09:26 - 2013-07-19 09:26 - 00000117 _____ C:\Windows\system32\netcfg-409788109.txt 2013-07-19 09:03 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-408437468.txt 2013-07-18 20:56 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-364802281.txt 2013-07-18 20:56 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364791000.txt 2013-07-18 16:56 - 2013-07-18 16:56 - 00000117 _____ C:\Windows\system32\netcfg-350382796.txt 2013-07-18 14:14 - 2013-07-18 14:14 - 00000117 _____ C:\Windows\system32\netcfg-340660375.txt 2013-07-18 14:13 - 2013-07-18 14:13 - 00000117 _____ C:\Windows\system32\netcfg-340653968.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325006468.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325002125.txt 2013-07-17 18:48 - 2013-07-17 18:48 - 00000117 _____ C:\Windows\system32\netcfg-270720265.txt 2013-07-17 14:07 - 2013-07-17 14:15 - 00000117 _____ C:\Windows\system32\netcfg-253901531.txt 2013-07-17 13:48 - 2013-07-17 13:48 - 00000117 _____ C:\Windows\system32\netcfg-252716953.txt 2013-07-17 13:02 - 2013-07-17 13:02 - 00000117 _____ C:\Windows\system32\netcfg-249998234.txt 2013-07-17 12:47 - 2013-07-17 12:47 - 00000117 _____ C:\Windows\system32\netcfg-249070609.txt 2013-07-17 12:46 - 2013-07-17 12:46 - 00000117 _____ C:\Windows\system32\netcfg-249038062.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248256921.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248253812.txt 2013-07-16 19:13 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-185868437.txt 2013-07-16 18:39 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-183800843.txt 2013-07-16 07:25 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-143384765.txt 2013-07-16 07:25 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143367468.txt 2013-07-16 03:25 - 2013-07-16 03:25 - 00000117 _____ C:\Windows\system32\netcfg-128966765.txt 2013-07-16 02:59 - 2013-07-16 02:59 - 00000117 _____ C:\Windows\system32\netcfg-127434656.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-96911593.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111329546.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111318250.txt 2013-07-15 18:00 - 2013-07-15 18:00 - 00000117 _____ C:\Windows\system32\netcfg-95086156.txt 2013-07-15 17:59 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-95037218.txt 2013-07-15 17:19 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-92605953.txt 2013-07-15 16:03 - 2013-07-15 16:03 - 00000117 _____ C:\Windows\system32\netcfg-88044562.txt 2013-07-15 14:48 - 2013-07-15 14:48 - 00000117 _____ C:\Windows\system32\netcfg-83560750.txt 2013-07-15 14:41 - 2013-07-15 14:41 - 00000117 _____ C:\Windows\system32\netcfg-83120203.txt 2013-07-15 14:26 - 2013-07-20 16:27 - 00000000 ____D C:\Users\Monika\AppData\Local\CrashDumps 2013-07-15 14:20 - 2013-07-15 14:20 - 00000117 _____ C:\Windows\system32\netcfg-81866671.txt 2013-07-15 14:00 - 2013-07-15 14:00 - 00142304 _____ C:\Users\Monika\Downloads\1019914_6_2013_Tiefert.pdf.zip 2013-07-15 10:53 - 2013-07-15 10:53 - 00000117 _____ C:\Windows\system32\netcfg-69478109.txt 2013-07-15 10:25 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-67785421.txt 2013-07-15 07:41 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-57963437.txt 2013-07-15 07:09 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-56011750.txt 2013-07-15 07:08 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-55966531.txt 2013-07-14 17:06 - 2013-07-14 17:06 - 00000000 ____D C:\Users\Monika\Documents\OneNote-Notizbücher 2013-07-14 16:59 - 2013-07-14 16:59 - 00000117 _____ C:\Windows\system32\netcfg-5005468.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4638937.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4633625.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4614875.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000156 _____ C:\Windows\system32\netcfg-3963328.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3949421.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3925937.txt 2013-07-14 16:39 - 2013-07-31 11:30 - 00000434 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-07-14 16:38 - 2013-07-14 16:39 - 00000156 _____ C:\Windows\system32\netcfg-3781421.txt 2013-07-14 16:36 - 2013-07-14 16:36 - 00000117 _____ C:\Windows\system32\netcfg-3640453.txt 2013-07-14 15:55 - 2013-07-14 16:35 - 00000117 _____ C:\Windows\system32\netcfg-1180015.txt 2013-07-14 15:36 - 2013-07-14 15:36 - 00000117 _____ C:\Windows\system32\netcfg-32500.txt 2013-07-14 15:28 - 2013-07-14 15:28 - 00000000 _____ C:\Users\Monika\Sti_Trace.log 2013-07-14 15:25 - 2013-07-14 15:25 - 00000117 _____ C:\Windows\system32\netcfg-42218.txt 2013-07-14 15:22 - 2013-07-14 15:22 - 00000938 _____ C:\Users\Public\Desktop\EPSON Scan.lnk 2013-07-14 15:22 - 2013-07-14 15:22 - 00000000 ____D C:\Program Files (x86)\epson 2013-07-14 15:22 - 2012-07-24 00:00 - 00466432 _____ (Seiko Epson Corporation) C:\Windows\system32\esxw2ud.dll 2013-07-14 15:22 - 2011-12-12 00:00 - 00135824 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe 2013-07-14 15:00 - 2013-07-14 15:00 - 00028574 _____ C:\Users\Monika\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx 2013-07-14 15:00 - 2013-07-14 15:00 - 00008833 _____ C:\Users\Monika\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx 2013-07-14 14:34 - 2013-07-14 15:25 - 00421792 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-14 14:25 - 2013-07-14 14:26 - 00003548 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-52546.txt 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-51140.txt 2013-07-14 14:21 - 2013-07-14 14:25 - 00000000 ___RD C:\Windows\BrowserChoice 2013-07-14 14:14 - 2013-07-20 14:18 - 00000000 ____D C:\ProgramData\EPSON 2013-07-14 14:14 - 2013-07-14 14:14 - 00000000 ____D C:\Program Files\Common Files\EPSON 2013-07-14 14:14 - 2012-11-01 12:42 - 00120320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMILE.DLL 2013-07-14 14:14 - 2012-11-01 12:42 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ID4BILE.DLL 2013-07-14 14:14 - 2012-11-01 12:42 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2013-07-14 14:13 - 2013-07-14 14:13 - 00000000 _____ C:\Users\Monika\Desktop\Neues Textdokument.txt 2013-07-14 14:11 - 2013-07-14 14:11 - 00000117 _____ C:\Windows\system32\netcfg-19600390.txt 2013-07-14 14:09 - 2013-07-14 14:10 - 00000117 _____ C:\Windows\system32\netcfg-19483937.txt 2013-07-14 14:03 - 2013-07-14 14:03 - 00000117 _____ C:\Windows\system32\netcfg-19143062.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19110812.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19103671.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00001138 _____ C:\Windows\system32\netcfg-19006156.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00000117 _____ C:\Windows\system32\netcfg-19007046.txt 2013-07-14 13:58 - 2013-07-14 13:58 - 00002974 _____ C:\Windows\avmadd32.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00002596 _____ C:\Windows\avmadd321.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!BoxPrint 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!Box 2013-07-14 13:58 - 2006-12-14 13:42 - 00069120 ____R (AVM Berlin) C:\Windows\SysWOW64\avmadd32.dll 2013-07-14 13:58 - 2006-05-29 02:00 - 00016384 ____R (AVM Berlin GmbH) C:\Windows\SysWOW64\avmprmon.dll 2013-07-14 13:23 - 2013-07-14 13:30 - 01077248 _____ C:\Users\Monika\Documents\Pro Win A.pwbackup 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16605453.txt 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16604921.txt 2013-07-14 09:45 - 2013-06-24 00:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-14 08:49 - 2013-07-14 13:41 - 00000000 ____D C:\Program Files (x86)\proWIN Office 2013-07-14 08:49 - 2013-07-14 08:51 - 01077248 _____ C:\Users\Monika\Documents\ProWin.pwbackup 2013-07-14 08:49 - 2013-07-14 08:49 - 00002951 _____ C:\Users\Monika\Desktop\proWIN Office.lnk 2013-07-14 08:49 - 2013-07-14 08:49 - 00000094 _____ C:\Users\Monika\AppData\Local\fusioncache.dat 2013-07-14 08:49 - 2013-07-14 08:49 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\proWIN Office 2013-07-14 08:48 - 2013-07-14 08:48 - 01772970 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-13 20:35 - 2013-07-26 21:38 - 00000000 ____D C:\Users\Monika\AppData\Local\Deployment 2013-07-13 20:35 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Apps\2.0 2013-07-13 20:19 - 2012-11-10 06:23 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2013-07-13 20:19 - 2012-11-10 06:23 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2013-07-13 20:19 - 2012-11-10 06:22 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll 2013-07-13 20:19 - 2012-11-10 06:22 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\RDWebAI.dll 2013-07-13 20:19 - 2012-11-10 06:22 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VmHostAI.dll 2013-07-13 20:19 - 2012-11-10 06:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\appserverai.dll 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84742140.txt 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84725312.txt 2013-07-12 20:26 - 2013-07-12 20:26 - 00003030 _____ C:\Windows\System32\Tasks\{67E5FAFC-E470-4191-B77D-8CDABD36038F} 2013-07-12 20:22 - 2013-07-12 20:22 - 00000000 ____D C:\Neuer Ordner 2013-07-12 20:18 - 2013-07-12 20:18 - 00000000 ____D C:\Windows\PCHEALTH 2013-07-12 20:16 - 2013-07-12 20:16 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files\Microsoft Office 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-07-12 20:14 - 2013-07-14 14:59 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ___RD C:\MSOCache 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ____D C:\Users\Monika\AppData\Local\Microsoft Help 2013-07-12 20:07 - 2013-04-16 04:34 - 01455368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-07-12 20:07 - 2013-01-10 03:40 - 00303848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-07-12 20:07 - 2012-11-26 06:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2013-07-12 20:07 - 2012-11-26 06:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2013-07-12 20:07 - 2012-10-10 09:04 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2013-07-12 20:07 - 2012-10-10 08:31 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2013-07-12 20:00 - 2013-05-31 01:14 - 04036096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 19:59 - 2013-05-04 09:45 - 02233600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-07-12 19:59 - 2013-04-24 01:13 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-07-12 19:59 - 2013-04-24 01:12 - 01569792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-07-12 19:59 - 2013-04-24 01:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-07-12 19:59 - 2013-04-24 00:56 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-07-12 19:59 - 2013-04-24 00:55 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-07-12 19:59 - 2013-04-24 00:55 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-07-12 19:59 - 2013-04-24 00:55 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-07-12 19:59 - 2013-03-02 11:59 - 00411880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2013-07-12 19:57 - 2013-06-01 11:25 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 19:57 - 2013-06-01 11:21 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 19:57 - 2013-03-02 10:23 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2013-07-12 19:57 - 2013-03-02 04:44 - 01011200 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2013-07-12 19:57 - 2012-12-15 06:55 - 00443392 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2013-07-12 19:57 - 2012-11-03 07:26 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\sysreset.exe 2013-07-12 19:57 - 2012-11-03 07:25 - 00945152 _____ (Microsoft Corporation) C:\Windows\system32\resetengmig.dll 2013-07-12 19:57 - 2012-10-24 05:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe 2013-07-12 19:57 - 2012-10-24 04:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2013-07-12 19:57 - 2012-10-06 06:53 - 02893824 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-07-12 19:57 - 2012-10-06 06:15 - 02400256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-07-12 19:56 - 2013-04-12 00:30 - 01421312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 19:56 - 2013-04-12 00:22 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-12 19:56 - 2013-03-02 10:22 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2013-07-12 19:56 - 2013-03-02 04:44 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2013-07-12 19:56 - 2013-02-02 13:19 - 00496872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-07-12 19:56 - 2013-02-02 13:19 - 00446184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2013-07-12 19:56 - 2013-02-02 13:19 - 00329960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2013-07-12 19:56 - 2013-02-02 13:19 - 00061672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys 2013-07-12 19:56 - 2013-02-02 12:54 - 01933544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2013-07-12 19:56 - 2013-02-02 12:28 - 00993512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-07-12 19:56 - 2013-02-02 10:40 - 10792448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlroamextension.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00370688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe 2013-07-12 19:56 - 2013-02-02 10:40 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe 2013-07-12 19:56 - 2013-02-02 10:39 - 05090816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll 2013-07-12 19:56 - 2013-02-02 10:38 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll 2013-07-12 19:56 - 2013-02-02 10:24 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2013-07-12 19:56 - 2013-02-02 10:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2013-07-12 19:56 - 2013-02-02 10:23 - 13643264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\wlroamextension.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2013-07-12 19:56 - 2013-02-02 10:22 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2013-07-12 19:56 - 2013-02-02 10:22 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 05977600 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00385024 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll 2013-07-12 19:56 - 2013-02-02 10:20 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2013-07-12 19:56 - 2013-02-02 10:20 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\hotspotauth.dll 2013-07-12 19:56 - 2013-02-02 09:25 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2013-07-12 19:56 - 2013-02-02 09:25 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-07-12 19:56 - 2013-02-02 09:25 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-07-12 19:56 - 2012-11-27 05:57 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys 2013-07-12 19:56 - 2012-11-20 06:56 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-07-12 19:56 - 2012-11-20 06:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidi2c.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00488168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00079080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00021736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-07-12 19:56 - 2012-09-20 08:32 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2013-07-12 19:56 - 2012-09-20 08:32 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2013-07-12 19:56 - 2012-09-20 08:09 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-07-12 19:55 - 2013-03-06 09:10 - 00112872 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2013-07-12 19:55 - 2013-03-06 08:59 - 00069864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2013-07-12 19:55 - 2013-03-06 08:31 - 19758592 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-07-12 19:55 - 2013-03-06 08:31 - 10116608 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2013-07-12 19:55 - 2013-03-06 08:31 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 17561600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 08857088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-07-12 19:55 - 2013-03-06 07:02 - 02035200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-07-12 19:55 - 2013-03-06 07:02 - 00754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2013-07-12 19:55 - 2013-02-12 02:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2013-07-12 19:55 - 2013-02-06 00:31 - 00622080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2013-07-12 19:55 - 2013-02-06 00:29 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2013-07-12 19:55 - 2013-02-06 00:28 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2013-07-12 19:55 - 2013-02-06 00:28 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2013-07-12 19:55 - 2013-02-02 07:41 - 01437184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2013-07-12 19:55 - 2013-02-02 07:31 - 01690624 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2013-07-12 19:55 - 2012-11-27 05:55 - 00029952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthhfHid.sys 2013-07-12 19:53 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-12 19:53 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-12 19:53 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-12 19:53 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-12 19:53 - 2013-05-16 00:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-07-12 19:53 - 2013-05-16 00:35 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-07-12 19:53 - 2013-05-14 15:14 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-12 19:53 - 2013-05-14 11:23 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-12 19:53 - 2013-04-29 00:28 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-12 19:53 - 2013-02-21 12:14 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-12 19:53 - 2013-02-21 12:14 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-12 19:53 - 2013-02-19 11:53 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-07-12 19:53 - 2012-11-08 06:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-12 19:53 - 2012-11-08 06:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-12 19:46 - 2013-05-04 08:59 - 02842112 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 19:46 - 2013-05-04 06:57 - 02620928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 19:46 - 2013-04-27 07:20 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2013-07-12 19:44 - 2012-10-24 05:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2013-07-12 19:44 - 2012-10-24 05:24 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2013-07-12 19:44 - 2012-10-24 05:24 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2013-07-12 19:44 - 2012-10-24 05:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2013-07-12 19:43 - 2012-11-03 07:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2013-07-12 19:43 - 2012-11-03 07:26 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe 2013-07-12 19:43 - 2012-11-03 07:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll 2013-07-12 19:43 - 2012-11-03 07:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll 2013-07-12 19:43 - 2012-11-03 07:04 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll 2013-07-12 19:43 - 2012-11-03 07:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll 2013-07-12 19:43 - 2012-11-03 07:00 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll 2013-07-12 19:42 - 2013-04-11 08:40 - 06987528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-07-12 19:42 - 2013-04-03 01:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-07-12 19:42 - 2013-04-03 01:12 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-07-12 19:42 - 2013-03-22 05:49 - 02382336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2013-07-12 19:42 - 2013-03-22 00:47 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2013-07-12 19:42 - 2013-03-15 02:17 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2013-07-12 19:42 - 2013-01-29 03:57 - 00035232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-07-12 19:42 - 2013-01-29 01:08 - 00230904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-07-12 19:42 - 2012-12-16 10:28 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-07-12 19:42 - 2012-12-16 10:20 - 00035328 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2013-07-12 19:42 - 2012-12-16 10:08 - 00362496 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-07-12 19:42 - 2012-12-16 09:57 - 00300032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2013-07-12 19:42 - 2012-11-08 06:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2013-07-12 19:42 - 2012-11-08 06:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2013-07-12 19:42 - 2012-11-08 06:20 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2013-07-12 19:42 - 2012-11-08 06:20 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2013-07-12 19:42 - 2012-11-08 06:02 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2013-07-12 19:42 - 2012-11-08 06:01 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2013-07-12 19:41 - 2012-11-01 06:41 - 01802240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2013-07-12 19:41 - 2012-11-01 06:41 - 01438720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2013-07-12 19:41 - 2012-11-01 06:40 - 02361344 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2013-07-12 19:41 - 2012-11-01 06:40 - 01836032 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2013-07-12 19:41 - 2012-11-01 06:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2013-07-12 19:41 - 2012-11-01 06:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2013-07-12 19:41 - 2012-11-01 06:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2013-07-12 19:41 - 2012-11-01 06:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2013-07-12 18:52 - 2013-07-14 15:21 - 00000000 ____D C:\Eimer 2013-07-12 18:47 - 2013-07-29 17:49 - 00000000 ____D C:\Users\Monika\AppData\Local\clear.fi 2013-07-12 18:47 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\PicStream 2013-07-12 18:45 - 2013-07-12 18:45 - 00000000 ____D C:\Users\Monika\AppData\Local\EgisTec IPS 2013-07-12 18:44 - 2013-07-29 15:42 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-1001 2013-07-12 18:44 - 2013-07-12 18:44 - 00000000 ____D C:\ProgramData\EgisTec 2013-07-12 18:37 - 2013-07-30 21:20 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-12 18:37 - 2013-07-14 14:26 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files\Preload 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files (x86)\OEM 2013-07-12 18:37 - 2012-08-24 05:39 - 00000000 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center 2013-07-12 18:36 - 2013-07-29 14:40 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Adobe 2013-07-12 18:36 - 2013-07-12 18:36 - 00001736 _____ C:\Users\Public\Desktop\Online kaufen.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00001446 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Macromedia 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Program Files\Accessory Store 2013-07-12 18:35 - 2013-07-31 11:35 - 01991997 _____ C:\Windows\WindowsUpdate.log 2013-07-12 18:35 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika 2013-07-12 18:35 - 2013-07-26 22:44 - 00000000 ____D C:\Users\Monika\AppData\Local\Packages 2013-07-12 18:35 - 2013-07-20 16:09 - 00000000 ____D C:\Users\Monika\AppData\Local\VirtualStore 2013-07-12 18:35 - 2013-07-12 18:35 - 00000020 ___SH C:\Users\Monika\ntuser.ini 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Vorlagen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Startmenü 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Netzwerkumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Lokale Einstellungen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Eigene Dateien 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Druckumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Musik 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Bilder 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Verlauf 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Anwendungsdaten 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Anwendungsdaten 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-228734.txt 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-225843.txt ==================== One Month Modified Files and Folders ======= 2013-07-31 12:03 - 2013-07-12 18:35 - 01991997 _____ C:\Windows\WindowsUpdate.log 2013-07-31 12:01 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-07-31 11:53 - 2013-07-31 11:53 - 00001742 _____ C:\Users\Monika\Desktop\JRT.txt 2013-07-31 11:43 - 2013-07-31 11:43 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 11:37 - 2013-07-31 11:37 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\Monika\Desktop\JRT.exe 2013-07-31 11:35 - 2013-07-27 07:54 - 00000304 _____ C:\Windows\Tasks\NUAutoUpdate.job 2013-07-31 11:33 - 2013-07-31 11:33 - 00026294 _____ C:\Users\Monika\Desktop\AdwCleaner[S1].txt 2013-07-31 11:30 - 2013-07-14 16:39 - 00000434 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-07-31 11:30 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-31 11:28 - 2013-07-31 11:27 - 00026294 _____ C:\AdwCleaner[S1].txt 2013-07-31 11:28 - 2013-07-31 11:27 - 00000101 _____ C:\Windows\DeleteOnReboot.bat 2013-07-31 11:26 - 2013-07-31 11:26 - 00666633 _____ C:\Users\Monika\Downloads\adwcleaner.exe 2013-07-31 11:26 - 2013-07-27 13:59 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-31 11:17 - 2012-10-22 03:29 - 00865494 _____ C:\Windows\PFRO.log 2013-07-31 11:14 - 2013-07-26 19:59 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Web Cake 2013-07-31 11:02 - 2013-07-31 11:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 10:41 - 2013-07-31 10:41 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Monika\Downloads\mbam-setup-1.75.0.1300.exe 2013-07-31 10:36 - 2013-07-31 10:36 - 00000117 _____ C:\Windows\system32\netcfg-268247062.txt 2013-07-31 10:30 - 2013-07-31 10:30 - 00000117 _____ C:\Windows\system32\netcfg-267849500.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906562.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906296.txt 2013-07-31 09:01 - 2013-07-31 09:01 - 00000117 _____ C:\Windows\system32\netcfg-262491453.txt 2013-07-31 09:01 - 2013-07-31 09:00 - 00000117 _____ C:\Windows\system32\netcfg-262479187.txt 2013-07-30 23:07 - 2013-07-30 23:07 - 00000117 _____ C:\Windows\system32\netcfg-226902109.txt 2013-07-30 21:54 - 2013-07-30 21:54 - 00000117 _____ C:\Windows\system32\netcfg-222493078.txt 2013-07-30 21:24 - 2013-07-30 20:50 - 00000000 ____D C:\ComboFix 2013-07-30 21:24 - 2013-07-30 20:46 - 00000000 ____D C:\Qoobox 2013-07-30 21:23 - 2013-07-30 21:23 - 00027681 _____ C:\ComboFix.txt 2013-07-30 21:23 - 2012-07-26 07:37 - 00000000 __RHD C:\Users\Default 2013-07-30 21:20 - 2013-07-12 18:37 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-30 21:18 - 2013-07-30 20:45 - 00000000 ____D C:\Windows\erdnt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219987234.txt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219985656.txt 2013-07-30 21:06 - 2012-07-26 07:26 - 00000215 _____ C:\Windows\system.ini 2013-07-30 20:39 - 2013-07-30 20:39 - 05095806 ____R (Swearware) C:\Users\Monika\Desktop\ComboFix.exe 2013-07-30 20:29 - 2013-07-30 20:29 - 00000117 _____ C:\Windows\system32\netcfg-217426406.txt 2013-07-30 19:03 - 2013-07-30 19:03 - 00000117 _____ C:\Windows\system32\netcfg-212257859.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208905734.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208900796.txt 2013-07-30 14:13 - 2013-07-30 14:13 - 00115232 _____ C:\Users\Monika\Downloads\FRST.txt 2013-07-30 14:13 - 2013-07-30 14:11 - 00026487 _____ C:\Users\Monika\Downloads\Addition.txt 2013-07-30 14:10 - 2013-07-30 14:10 - 00000000 ____D C:\FRST 2013-07-30 14:09 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Downloads\FRST64.exe 2013-07-30 14:09 - 2013-07-30 14:08 - 01781589 _____ (Farbar) C:\Users\Monika\Desktop\FRST64.exe 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302750.txt 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302078.txt 2013-07-30 13:36 - 2013-07-30 13:36 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-30 13:36 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 13:36 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190098171.txt 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190084343.txt 2013-07-30 12:27 - 2013-07-26 13:04 - 00000000 ____D C:\ProgramData\Adobe 2013-07-29 22:11 - 2013-07-29 22:11 - 00002360 _____ C:\{60CCBC6A-DDF1-4E4B-BA53-B1B969F8BC46} 2013-07-29 22:10 - 2013-07-29 22:10 - 00002344 _____ C:\{4172ADAC-5061-466B-9A16-5AF53570ABAB} 2013-07-29 22:06 - 2013-07-29 22:06 - 00002360 _____ C:\{DF5ADA51-F2BE-4A00-832D-9B1F33D4F6A9} 2013-07-29 21:46 - 2013-07-29 21:46 - 00002488 _____ C:\{03947D0E-D470-4B1D-B542-B894F52A0016} 2013-07-29 21:45 - 2013-07-29 21:45 - 00002504 _____ C:\{84749585-6701-4916-80DF-DD792B4FD167} 2013-07-29 21:35 - 2013-07-29 21:35 - 00003112 _____ C:\{93234576-3313-4230-95AF-4793795C0993} 2013-07-29 21:05 - 2013-07-29 21:05 - 00003456 _____ C:\{FE57C4B5-B33F-40D8-A4BD-691F37C7709F} 2013-07-29 20:51 - 2013-07-29 20:51 - 00002992 _____ C:\{3E61799B-6C1A-4779-895F-B5A05482CAAA} 2013-07-29 18:01 - 2012-10-22 04:51 - 00000000 ____D C:\ProgramData\WildTangent 2013-07-29 17:56 - 2013-07-29 17:56 - 00000000 ____D C:\Users\Monika\AppData\Roaming\WildTangent 2013-07-29 17:56 - 2012-10-22 04:51 - 00002658 ____N C:\Users\Public\Desktop\WildTangent Games App - acer.lnk 2013-07-29 17:56 - 2012-10-22 04:51 - 00000000 ____D C:\Program Files (x86)\WildTangent Games 2013-07-29 17:49 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\AppData\Local\clear.fi 2013-07-29 15:42 - 2013-07-12 18:44 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-1001 2013-07-29 14:40 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Adobe 2013-07-29 14:40 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Adobe 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109818078.txt 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109814671.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600562.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600406.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18642921.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18639875.txt 2013-07-28 08:06 - 2012-07-26 10:12 - 00000000 ___HD C:\Windows\ELAMBKUP 2013-07-27 21:18 - 2013-07-27 21:18 - 00000117 _____ C:\Windows\system32\netcfg-8738921.txt 2013-07-27 19:53 - 2013-07-27 19:53 - 00000117 _____ C:\Windows\system32\netcfg-3651562.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527390.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527000.txt 2013-07-27 19:51 - 2013-07-27 19:50 - 00000117 _____ C:\Windows\system32\netcfg-3452265.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383671.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383390.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-739250.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-736687.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-546234.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-489406.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-238171.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-226062.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-187421.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-143140.txt 2013-07-27 18:55 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-07-27 18:54 - 2013-07-27 18:54 - 00000117 _____ C:\Windows\system32\netcfg-110437.txt 2013-07-27 18:53 - 2013-07-27 18:53 - 00000117 _____ C:\Windows\system32\netcfg-43984.txt 2013-07-27 18:52 - 2013-07-27 18:52 - 00000117 _____ C:\Windows\system32\netcfg-1154218.txt 2013-07-27 18:48 - 2013-07-27 18:48 - 00000117 _____ C:\Windows\system32\netcfg-917390.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-872453.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-858968.txt 2013-07-27 18:42 - 2013-07-27 18:42 - 00000117 _____ C:\Windows\system32\netcfg-550406.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-61531.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-39984.txt 2013-07-27 18:00 - 2013-07-27 18:00 - 00000573 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bibliotheken.lnk 2013-07-27 17:43 - 2013-07-27 17:42 - 00001343 _____ C:\Windows\IE10_main.log 2013-07-27 17:36 - 2013-07-27 16:16 - 00006207 _____ C:\Windows\IE9_main.log 2013-07-27 17:20 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-66218.txt 2013-07-27 17:20 - 2013-07-27 17:19 - 00000117 _____ C:\Windows\system32\netcfg-42281.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439562.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439250.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-69781.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-55250.txt 2013-07-27 16:17 - 2013-07-27 16:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-27 16:15 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika\Qtrax 2013-07-27 16:15 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika 2013-07-27 16:13 - 2013-07-27 17:42 - 51415040 _____ (Microsoft Corporation) C:\Users\Monika\Downloads\IE10-Windows6.1-x64-de-de.exe 2013-07-27 15:39 - 2013-07-26 23:31 - 00000000 ____D C:\Windows\system32\Drivers\NSTx64 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-773281.txt 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-762921.txt 2013-07-27 15:18 - 2012-10-22 04:57 - 00000000 ____D C:\ProgramData\Acer 2013-07-27 15:17 - 2012-10-22 04:57 - 00000000 ____D C:\Program Files (x86)\Acer 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4946984.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4923734.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4919765.txt 2013-07-27 14:55 - 2013-07-27 14:55 - 00000117 _____ C:\Windows\system32\netcfg-4254687.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2138906.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2137109.txt 2013-07-27 14:02 - 2013-07-27 14:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Macromedia 2013-07-27 13:59 - 2013-07-27 13:59 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-27 13:46 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Mozilla 2013-07-27 13:45 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Local\Mozilla 2013-07-27 13:41 - 2013-07-27 13:41 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-27 13:37 - 2013-07-27 13:37 - 21670584 _____ (Mozilla) C:\Users\Monika\Downloads\Firefox Setup 22.0.exe 2013-07-27 13:02 - 2013-07-27 13:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton AntiVirus 2013-07-27 12:56 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-07-27 12:52 - 2013-07-26 23:29 - 00003218 _____ C:\Windows\System32\Tasks\Norton WSC Integration 2013-07-27 12:52 - 2013-07-26 23:29 - 00002401 _____ C:\Users\Public\Desktop\Norton AntiVirus.lnk 2013-07-27 12:52 - 2013-07-26 23:24 - 00000000 ____D C:\Windows\system32\Drivers\NAVx64 2013-07-27 12:50 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-07-27 12:43 - 2013-07-27 12:43 - 04365864 _____ (Systweak Inc ) C:\Users\Monika\Downloads\rcpsetup_matomy_my30679.exe 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48362218.txt 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48350546.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47114468.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47101875.txt 2013-07-27 11:32 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-44535890.txt 2013-07-27 11:32 - 2013-07-27 11:03 - 00000117 _____ C:\Windows\system32\netcfg-42757640.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41528171.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41522828.txt 2013-07-27 07:57 - 2012-12-22 04:56 - 00761898 _____ C:\Windows\system32\perfh007.dat 2013-07-27 07:57 - 2012-12-22 04:56 - 00160028 _____ C:\Windows\system32\perfc007.dat 2013-07-27 07:57 - 2012-07-26 09:28 - 01772590 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-27 07:55 - 2013-07-27 07:55 - 00000296 _____ C:\Windows\Tasks\NUSchedule.job 2013-07-27 07:54 - 2013-07-27 07:54 - 00002520 _____ C:\Windows\System32\Tasks\NUAutoUpdate 2013-07-27 07:54 - 2013-07-27 07:54 - 00000000 ____D C:\Users\Monika\Documents\Norton Utilities 16 2013-07-27 07:53 - 2013-07-27 07:53 - 00001227 _____ C:\Users\Public\Desktop\Norton Utilities 16.lnk 2013-07-27 07:53 - 2012-12-21 20:31 - 00000000 ____D C:\ProgramData\Symantec 2013-07-27 07:52 - 2013-07-27 07:52 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Product_NU16 2013-07-27 07:52 - 2012-12-21 20:31 - 00000000 ____D C:\Program Files (x86)\Symantec 2013-07-27 07:50 - 2013-07-27 07:50 - 23459280 _____ (Symantec) C:\Users\Monika\Downloads\nu16.0.0.126-SMUI.exe 2013-07-27 07:42 - 2013-07-27 07:42 - 00000117 _____ C:\Windows\system32\netcfg-30713234.txt 2013-07-27 07:06 - 2013-07-27 07:06 - 00000117 _____ C:\Windows\system32\netcfg-28574015.txt 2013-07-27 07:01 - 2013-07-27 07:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton Identity Safe 2013-07-27 06:39 - 2013-07-27 06:39 - 00000117 _____ C:\Windows\system32\netcfg-26923312.txt 2013-07-27 03:01 - 2013-07-27 03:01 - 00000117 _____ C:\Windows\system32\netcfg-13861609.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13762328.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13751921.txt 2013-07-26 23:42 - 2013-07-26 23:30 - 00177312 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2013-07-26 23:42 - 2013-07-26 23:30 - 00007631 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2013-07-26 23:31 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files (x86)\Norton Identity Safe 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Symantec 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared 2013-07-26 23:30 - 2012-12-21 20:30 - 00000000 ____D C:\ProgramData\Norton 2013-07-26 23:24 - 2013-07-26 23:24 - 00000000 ____D C:\Program Files (x86)\Norton AntiVirus 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2381562.txt 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2376828.txt 2013-07-26 22:45 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-07-26 22:44 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Packages 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1458984.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1453328.txt 2013-07-26 22:23 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-436312.txt 2013-07-26 22:23 - 2013-07-26 22:22 - 00000117 _____ C:\Windows\system32\netcfg-427640.txt 2013-07-26 22:20 - 2013-07-26 22:20 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\ProgramData\McAfee 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files\mcafee 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-07-26 21:38 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Deployment 2013-07-26 20:54 - 2013-07-26 20:49 - 172886528 ____N (Symantec Corporation) C:\Users\Monika\Downloads\NAV-TW-30-20-3-0-36-GE.exe 2013-07-26 20:29 - 2013-07-26 20:29 - 00000000 ____D C:\Users\Monika\Documents\Symantec 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2963734.txt 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2955812.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22774765.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22744671.txt 2013-07-26 19:27 - 2013-07-26 19:27 - 00000117 _____ C:\Windows\system32\netcfg-22718453.txt 2013-07-26 19:26 - 2013-07-26 19:26 - 00000117 _____ C:\Windows\system32\netcfg-22684562.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22620921.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22576078.txt 2013-07-26 19:22 - 2013-07-26 19:22 - 00000117 _____ C:\Windows\system32\netcfg-22440609.txt 2013-07-26 19:21 - 2013-07-26 19:21 - 00000117 _____ C:\Windows\system32\netcfg-22395437.txt 2013-07-26 19:13 - 2013-07-26 19:13 - 00000117 _____ C:\Windows\system32\netcfg-21869453.txt 2013-07-26 19:11 - 2013-07-26 19:11 - 00000117 _____ C:\Windows\system32\netcfg-21764187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21668187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21637343.txt 2013-07-26 19:06 - 2013-07-26 19:06 - 00000117 _____ C:\Windows\system32\netcfg-21487671.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15365046.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15352375.txt 2013-07-26 13:24 - 2013-07-26 13:24 - 00000117 _____ C:\Windows\system32\netcfg-939625.txt 2013-07-26 13:04 - 2013-07-26 13:04 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2013-07-26 13:04 - 2013-07-26 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-26 13:02 - 2013-07-26 13:02 - 00003388 _____ C:\Windows\System32\Tasks\EPUpdater 2013-07-26 13:02 - 2013-07-26 13:02 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-26 12:50 - 2013-07-26 12:50 - 00000117 _____ C:\Windows\system32\netcfg-96057562.txt 2013-07-26 12:49 - 2013-07-26 11:33 - 00000117 _____ C:\Windows\system32\netcfg-91473531.txt 2013-07-26 10:41 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-88372843.txt 2013-07-26 10:41 - 2013-07-26 10:34 - 00000117 _____ C:\Windows\system32\netcfg-87954343.txt 2013-07-26 10:02 - 2013-07-26 10:02 - 00000117 _____ C:\Windows\system32\netcfg-86024750.txt 2013-07-26 09:21 - 2013-07-26 09:21 - 00000117 _____ C:\Windows\system32\netcfg-83573921.txt 2013-07-26 09:06 - 2013-07-26 09:06 - 00000117 _____ C:\Windows\system32\netcfg-82667046.txt 2013-07-25 21:07 - 2013-07-25 21:07 - 00000117 _____ C:\Windows\system32\netcfg-39516203.txt 2013-07-25 20:51 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-38566875.txt 2013-07-25 20:51 - 2013-07-25 20:37 - 00000117 _____ C:\Windows\system32\netcfg-37716187.txt 2013-07-25 19:07 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-32304406.txt 2013-07-25 19:07 - 2013-07-25 18:31 - 00000117 _____ C:\Windows\system32\netcfg-30157375.txt 2013-07-25 18:14 - 2013-07-25 18:14 - 00000117 _____ C:\Windows\system32\netcfg-29135515.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18979078.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18960578.txt 2013-07-25 11:24 - 2013-07-25 11:24 - 00000117 _____ C:\Windows\system32\netcfg-4559890.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2919468.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2916578.txt 2013-07-25 10:08 - 2013-07-25 10:08 - 00000000 ____D C:\found.000 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-876241609.txt 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-868638687.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867425234.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867424328.txt 2013-07-24 13:51 - 2013-07-24 13:51 - 00000117 _____ C:\Windows\system32\netcfg-857660140.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854366406.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854365312.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843513437.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843512187.txt 2013-07-24 08:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-839622015.txt 2013-07-24 08:50 - 2013-07-23 21:50 - 00000117 _____ C:\Windows\system32\netcfg-800000062.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966859.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966234.txt 2013-07-23 14:36 - 2013-07-23 14:36 - 00000117 _____ C:\Windows\system32\netcfg-773968500.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763215953.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763206187.txt 2013-07-23 10:40 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-759818500.txt 2013-07-23 10:40 - 2013-07-23 10:09 - 00000117 _____ C:\Windows\system32\netcfg-757969906.txt 2013-07-23 09:44 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-756458812.txt 2013-07-23 09:44 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686334296.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686296750.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686292093.txt 2013-07-22 09:55 - 2013-07-22 09:55 - 00000117 _____ C:\Windows\system32\netcfg-670723500.txt 2013-07-22 09:50 - 2013-07-22 09:50 - 00000117 _____ C:\Windows\system32\netcfg-670428875.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669183625.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669181218.txt 2013-07-22 08:28 - 2013-07-20 20:58 - 00000117 _____ C:\Windows\system32\netcfg-537704375.txt 2013-07-20 20:57 - 2013-07-20 20:57 - 00000117 _____ C:\Windows\system32\netcfg-537654625.txt 2013-07-20 16:27 - 2013-07-15 14:26 - 00000000 ____D C:\Users\Monika\AppData\Local\CrashDumps 2013-07-20 16:09 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika\AppData\Local\VirtualStore 2013-07-20 14:18 - 2013-07-14 14:14 - 00000000 ____D C:\ProgramData\EPSON 2013-07-20 14:03 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424205500.txt 2013-07-19 13:26 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424195484.txt 2013-07-19 09:26 - 2013-07-19 09:26 - 00000117 _____ C:\Windows\system32\netcfg-409788109.txt 2013-07-19 09:03 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-408437468.txt 2013-07-19 09:03 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364802281.txt 2013-07-18 20:56 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364791000.txt 2013-07-18 16:56 - 2013-07-18 16:56 - 00000117 _____ C:\Windows\system32\netcfg-350382796.txt 2013-07-18 14:14 - 2013-07-18 14:14 - 00000117 _____ C:\Windows\system32\netcfg-340660375.txt 2013-07-18 14:13 - 2013-07-18 14:13 - 00000117 _____ C:\Windows\system32\netcfg-340653968.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325006468.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325002125.txt 2013-07-17 18:48 - 2013-07-17 18:48 - 00000117 _____ C:\Windows\system32\netcfg-270720265.txt 2013-07-17 14:15 - 2013-07-17 14:07 - 00000117 _____ C:\Windows\system32\netcfg-253901531.txt 2013-07-17 13:48 - 2013-07-17 13:48 - 00000117 _____ C:\Windows\system32\netcfg-252716953.txt 2013-07-17 13:02 - 2013-07-17 13:02 - 00000117 _____ C:\Windows\system32\netcfg-249998234.txt 2013-07-17 12:47 - 2013-07-17 12:47 - 00000117 _____ C:\Windows\system32\netcfg-249070609.txt 2013-07-17 12:46 - 2013-07-17 12:46 - 00000117 _____ C:\Windows\system32\netcfg-249038062.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248256921.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248253812.txt 2013-07-17 12:33 - 2013-07-16 19:13 - 00000117 _____ C:\Windows\system32\netcfg-185868437.txt 2013-07-16 18:39 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-183800843.txt 2013-07-16 18:39 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143384765.txt 2013-07-16 07:25 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143367468.txt 2013-07-16 03:25 - 2013-07-16 03:25 - 00000117 _____ C:\Windows\system32\netcfg-128966765.txt 2013-07-16 02:59 - 2013-07-16 02:59 - 00000117 _____ C:\Windows\system32\netcfg-127434656.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-96911593.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111329546.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111318250.txt 2013-07-15 18:00 - 2013-07-15 18:00 - 00000117 _____ C:\Windows\system32\netcfg-95086156.txt 2013-07-15 17:59 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-95037218.txt 2013-07-15 17:59 - 2013-07-15 17:19 - 00000117 _____ C:\Windows\system32\netcfg-92605953.txt 2013-07-15 16:03 - 2013-07-15 16:03 - 00000117 _____ C:\Windows\system32\netcfg-88044562.txt 2013-07-15 14:48 - 2013-07-15 14:48 - 00000117 _____ C:\Windows\system32\netcfg-83560750.txt 2013-07-15 14:41 - 2013-07-15 14:41 - 00000117 _____ C:\Windows\system32\netcfg-83120203.txt 2013-07-15 14:20 - 2013-07-15 14:20 - 00000117 _____ C:\Windows\system32\netcfg-81866671.txt 2013-07-15 14:00 - 2013-07-15 14:00 - 00142304 _____ C:\Users\Monika\Downloads\1019914_6_2013_Tiefert.pdf.zip 2013-07-15 10:53 - 2013-07-15 10:53 - 00000117 _____ C:\Windows\system32\netcfg-69478109.txt 2013-07-15 10:25 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-67785421.txt 2013-07-15 10:25 - 2013-07-15 07:41 - 00000117 _____ C:\Windows\system32\netcfg-57963437.txt 2013-07-15 07:09 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-56011750.txt 2013-07-15 07:09 - 2013-07-15 07:08 - 00000117 _____ C:\Windows\system32\netcfg-55966531.txt 2013-07-14 17:23 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-07-14 17:06 - 2013-07-14 17:06 - 00000000 ____D C:\Users\Monika\Documents\OneNote-Notizbücher 2013-07-14 16:59 - 2013-07-14 16:59 - 00000117 _____ C:\Windows\system32\netcfg-5005468.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4638937.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4633625.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4614875.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000156 _____ C:\Windows\system32\netcfg-3963328.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3949421.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3925937.txt 2013-07-14 16:39 - 2013-07-14 16:38 - 00000156 _____ C:\Windows\system32\netcfg-3781421.txt 2013-07-14 16:36 - 2013-07-14 16:36 - 00000117 _____ C:\Windows\system32\netcfg-3640453.txt 2013-07-14 16:35 - 2013-07-14 15:55 - 00000117 _____ C:\Windows\system32\netcfg-1180015.txt 2013-07-14 15:36 - 2013-07-14 15:36 - 00000117 _____ C:\Windows\system32\netcfg-32500.txt 2013-07-14 15:28 - 2013-07-14 15:28 - 00000000 _____ C:\Users\Monika\Sti_Trace.log 2013-07-14 15:25 - 2013-07-14 15:25 - 00000117 _____ C:\Windows\system32\netcfg-42218.txt 2013-07-14 15:25 - 2013-07-14 14:34 - 00421792 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-14 15:22 - 2013-07-14 15:22 - 00000938 _____ C:\Users\Public\Desktop\EPSON Scan.lnk 2013-07-14 15:22 - 2013-07-14 15:22 - 00000000 ____D C:\Program Files (x86)\epson 2013-07-14 15:21 - 2013-07-12 18:52 - 00000000 ____D C:\Eimer 2013-07-14 15:00 - 2013-07-14 15:00 - 00028574 _____ C:\Users\Monika\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx 2013-07-14 15:00 - 2013-07-14 15:00 - 00008833 _____ C:\Users\Monika\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx 2013-07-14 14:59 - 2013-07-12 20:14 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-14 14:58 - 2012-07-26 07:26 - 00000199 _____ C:\Windows\win.ini 2013-07-14 14:57 - 2012-12-21 20:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-14 14:26 - 2013-07-14 14:25 - 00003548 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask 2013-07-14 14:26 - 2013-07-12 18:37 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-52546.txt 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-51140.txt 2013-07-14 14:25 - 2013-07-14 14:21 - 00000000 ___RD C:\Windows\BrowserChoice 2013-07-14 14:25 - 2012-10-22 04:30 - 00000000 ____D C:\ProgramData\PRICache 2013-07-14 14:22 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2013-07-14 14:22 - 2012-07-26 09:52 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-14 14:21 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ToastData 2013-07-14 14:20 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-14 14:20 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-14 14:14 - 2013-07-14 14:14 - 00000000 ____D C:\Program Files\Common Files\EPSON 2013-07-14 14:13 - 2013-07-14 14:13 - 00000000 _____ C:\Users\Monika\Desktop\Neues Textdokument.txt 2013-07-14 14:11 - 2013-07-14 14:11 - 00000117 _____ C:\Windows\system32\netcfg-19600390.txt 2013-07-14 14:10 - 2013-07-14 14:09 - 00000117 _____ C:\Windows\system32\netcfg-19483937.txt 2013-07-14 14:03 - 2013-07-14 14:03 - 00000117 _____ C:\Windows\system32\netcfg-19143062.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19110812.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19103671.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00001138 _____ C:\Windows\system32\netcfg-19006156.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00000117 _____ C:\Windows\system32\netcfg-19007046.txt 2013-07-14 13:58 - 2013-07-14 13:58 - 00002974 _____ C:\Windows\avmadd32.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00002596 _____ C:\Windows\avmadd321.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!BoxPrint 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!Box 2013-07-14 13:41 - 2013-07-14 08:49 - 00000000 ____D C:\Program Files (x86)\proWIN Office 2013-07-14 13:30 - 2013-07-14 13:23 - 01077248 _____ C:\Users\Monika\Documents\Pro Win A.pwbackup 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16605453.txt 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16604921.txt 2013-07-14 08:51 - 2013-07-14 08:49 - 01077248 _____ C:\Users\Monika\Documents\ProWin.pwbackup 2013-07-14 08:49 - 2013-07-14 08:49 - 00002951 _____ C:\Users\Monika\Desktop\proWIN Office.lnk 2013-07-14 08:49 - 2013-07-14 08:49 - 00000094 _____ C:\Users\Monika\AppData\Local\fusioncache.dat 2013-07-14 08:49 - 2013-07-14 08:49 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\proWIN Office 2013-07-14 08:49 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\Registration 2013-07-14 08:48 - 2013-07-14 08:48 - 01772970 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-13 20:35 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Apps\2.0 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84742140.txt 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84725312.txt 2013-07-12 20:46 - 2012-10-22 04:57 - 00000000 ____D C:\ProgramData\OEM 2013-07-12 20:46 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files\Common Files\mcafee 2013-07-12 20:26 - 2013-07-12 20:26 - 00003030 _____ C:\Windows\System32\Tasks\{67E5FAFC-E470-4191-B77D-8CDABD36038F} 2013-07-12 20:22 - 2013-07-12 20:22 - 00000000 ____D C:\Neuer Ordner 2013-07-12 20:18 - 2013-07-12 20:18 - 00000000 ____D C:\Windows\PCHEALTH 2013-07-12 20:18 - 2012-07-26 09:52 - 00000000 ____D C:\Windows\ShellNew 2013-07-12 20:16 - 2013-07-12 20:16 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files\Microsoft Office 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ___RD C:\MSOCache 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ____D C:\Users\Monika\AppData\Local\Microsoft Help 2013-07-12 20:13 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\restore 2013-07-12 18:50 - 2012-07-26 09:21 - 00019052 _____ C:\Windows\setupact.log 2013-07-12 18:47 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\PicStream 2013-07-12 18:45 - 2013-07-12 18:45 - 00000000 ____D C:\Users\Monika\AppData\Local\EgisTec IPS 2013-07-12 18:45 - 2012-10-22 04:58 - 00000000 ____D C:\ProgramData\EgisTec IPS 2013-07-12 18:44 - 2013-07-12 18:44 - 00000000 ____D C:\ProgramData\EgisTec 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files\Preload 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files (x86)\OEM 2013-07-12 18:37 - 2012-10-19 09:06 - 00000000 ____D C:\OEM 2013-07-12 18:36 - 2013-07-12 18:36 - 00001736 _____ C:\Users\Public\Desktop\Online kaufen.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00001446 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Macromedia 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Program Files\Accessory Store 2013-07-12 18:35 - 2013-07-12 18:35 - 00000020 ___SH C:\Users\Monika\ntuser.ini 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Vorlagen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Startmenü 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Netzwerkumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Lokale Einstellungen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Eigene Dateien 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Druckumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Musik 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Bilder 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Verlauf 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Anwendungsdaten 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Anwendungsdaten 2013-07-12 18:35 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2013-07-12 18:35 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-228734.txt 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-225843.txt ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe [2012-07-26 01:55] - [2012-07-26 05:08] - 0516608 ____A (Microsoft Corporation) 93AB226C07A9789B2EC7B41F73602F76 C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe [2012-07-26 02:00] - [2012-07-26 05:08] - 0030208 ____A (Microsoft Corporation) 57350BEDE3834915B6145B67C71C7BDA C:\Windows\SysWOW64\svchost.exe [2012-07-26 02:01] - [2012-07-26 05:20] - 0023040 ____A (Microsoft Corporation) 0A175AF8B65797BD22C11903A8BFEB2D C:\Windows\System32\services.exe [2012-07-26 07:26] - [2012-07-26 07:26] - 0410624 ____A (Microsoft Corporation) 754A2CC1F32107EA87CBD305ABE3E618 C:\Windows\System32\User32.dll [2012-07-26 02:01] - [2012-07-26 05:07] - 1342464 ____A (Microsoft Corporation) 1D08594400EE1B500B93256795FE30AE C:\Windows\SysWOW64\User32.dll [2012-07-26 02:02] - [2012-07-26 02:02] - 1126912 ____A (Microsoft Corporation) 8A93F57772FD24959F76A65FF79D282D C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-31 10:19 ==================== End Of Log ============================ |
31.07.2013, 15:14 | #10 |
/// the machine /// TB-Ausbilder | LyricsContainer loswerdenESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
01.08.2013, 12:27 | #11 |
| LyricsContainer loswerden die FRST.txt vom 01.08 FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03 Ran by Monika (administrator) on 01-08-2013 09:26:22 Running from C:\Users\Monika\Desktop Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (McAfee, Inc.) C:\Program Files\McAfee\AppStats\MfeASUM.exe (McAfee, Inc.) C:\windows\system32\mfevtps.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (Symantec) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe (Atheros) C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe (Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (AMD) C:\Windows\system32\atieclxx.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Symantec Corporation) C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (Symantec Corporation) C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Symantec) C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Microsoft Corporation) C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.16455_none_624a7aa150f57306\TiWorker.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Microsoft Corporation) C:\Windows\splwow64.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12921488 2012-07-02] (Realtek Semiconductor) HKLM\...\InprocServer32: [Default-cscui] <==== ATTENTION! HKCU\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE [283232 2012-11-01] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-29] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SSDMonitor] - C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\SSDMonitor.exe [104480 2012-09-29] (Symantec) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-13] (Acer Incorporated) HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-13] (Acer Incorporated) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web.de/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - DefaultScope {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = SearchScopes: HKCU - {4D8256A5-F508-4224-AFA6-B0A7621E3F8B} URL = BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\coIEPlg.dll (Symantec Corporation) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - No Name - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - No File Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default FF Homepage: hxxp://www.web.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Monika\AppData\Roaming\Mozilla\Firefox\Profiles\fscnqri9.default\searchplugins\Sweetpacks Search.xml FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM\...\Firefox\Extensions: [{DEDAF650-12B8-48f5-A843-BBA100716106}] C:\Program Files\Updater By Sweetpacks\Firefox FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.0.26\coFFPlgn\ FF Extension: Norton Identity Safe Toolbar - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2013.3.0.26\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\IPSFFPlgn\ ==================== Services (Whitelisted) ================= S3 DiskDoctorService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\Disk Doctor\DiskDoctorSrv.exe [1147424 2012-09-29] (Symantec Corporation) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-23] (Acer Incorporated) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [241456 2013-02-19] (McAfee, Inc.) R2 MfeASUM; C:\Program Files\McAfee\AppStats\MfeASUM.exe [335216 2013-07-14] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218760 2013-02-19] (McAfee, Inc.) R2 mfevtp; C:\windows\system32\mfevtps.exe [182752 2013-02-19] (McAfee, Inc.) R2 NAV; C:\Program Files (x86)\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 NCO; C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\ccSvcHst.exe [144520 2012-12-24] (Symantec Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation) R2 NU16StartManagerSvc; C:\Program Files (x86)\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe [792608 2012-09-29] (Symantec) S3 SpeedDiskService; C:\Program Files (x86)\Symantec\Norton Utilities 16\Tools\SpeedDisk\SpeedDiskSrv.exe [1160224 2012-09-29] (Symantec Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-29] (Microsoft Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536 2012-08-01] (Atheros) S2 McAfee SiteAdvisor Service; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [x] ==================== Drivers (Whitelisted) ==================== R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [91648 2012-08-21] (Advanced Micro Devices) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-07-15] (Symantec Corporation) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-07-15] (Symantec Corporation) R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation) R1 ccSet_NAV; C:\Windows\system32\drivers\NAVx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 ccSet_NST; C:\Windows\system32\drivers\NSTx64\7DD03000.01A\ccSetx64.sys [168096 2012-11-16] (Symantec Corporation) S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-02-19] (McAfee, Inc.) R3 e1cexpress; C:\Windows\system32\DRIVERS\e1c63x64.sys [498032 2012-07-12] (Intel Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-07-26] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2013-07-26] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2013-07-26] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130731.001\IDSvia64.sys [513184 2013-07-26] (Symantec Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\IPSDefs\20130731.001\IDSvia64.sys [513184 2013-07-26] (Symantec Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179280 2013-02-19] (McAfee, Inc.) R1 MfeASKM; C:\Program Files\McAfee\AppStats\MfeASKM.sys [31408 2013-07-14] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309840 2013-02-19] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69168 2013-02-19] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [515968 2013-02-19] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [771536 2013-02-19] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106552 2013-02-19] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [340216 2013-02-19] (McAfee, Inc.) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130731.018\ENG64.SYS [126040 2013-07-31] (Symantec Corporation) R3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130731.018\ENG64.SYS [126040 2013-07-31] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130731.018\EX64.SYS [2098776 2013-07-31] (Symantec Corporation) R3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.3.0.36\Definitions\VirusDefs\20130731.018\EX64.SYS [2098776 2013-07-31] (Symantec Corporation) R3 SRTSP; C:\Windows\System32\Drivers\NAVx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NAVx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NAVx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\NAVx64\1404000.028\SymELAM.sys [23448 2012-11-15] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-07-26] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NAVx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NAVx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-01 09:24 - 2013-08-01 09:24 - 00001017 _____ C:\Users\Monika\Desktop\checkup.txt 2013-08-01 00:54 - 2013-08-01 00:54 - 00000117 _____ C:\Windows\system32\netcfg-48269531.txt 2013-08-01 00:54 - 2013-08-01 00:54 - 00000117 _____ C:\Windows\system32\netcfg-48264937.txt 2013-08-01 00:09 - 2013-08-01 00:09 - 00003456 _____ C:\{4B9E504C-53B2-40F0-A300-F04C6C29E7EB} 2013-08-01 00:01 - 2013-08-01 00:01 - 00004048 _____ C:\{E4B8A22F-5B28-41C8-BFA4-89932462F81F} 2013-07-31 23:53 - 2013-07-31 23:53 - 00003456 _____ C:\{EB079ACE-9788-4C92-A48E-C2BB0A0165CD} 2013-07-31 23:24 - 2013-07-31 23:24 - 00000117 _____ C:\Windows\system32\netcfg-42856125.txt 2013-07-31 23:24 - 2013-07-31 23:24 - 00000117 _____ C:\Windows\system32\netcfg-42854765.txt 2013-07-31 21:39 - 2013-07-31 21:39 - 00000117 _____ C:\Windows\system32\netcfg-36569421.txt 2013-07-31 21:39 - 2013-07-31 21:39 - 00000117 _____ C:\Windows\system32\netcfg-36563781.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33926453.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33926046.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33912812.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33912328.txt 2013-07-31 19:17 - 2013-07-31 19:17 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-31 19:15 - 2013-07-31 19:15 - 02347384 _____ (ESET) C:\Users\Monika\Desktop\esetsmartinstaller_enu.exe 2013-07-31 19:15 - 2013-07-31 19:15 - 00891098 _____ C:\Users\Monika\Desktop\SecurityCheck.exe 2013-07-31 19:14 - 2013-07-31 19:14 - 00000117 _____ C:\Windows\system32\netcfg-27855062.txt 2013-07-31 19:14 - 2013-07-31 19:14 - 00000117 _____ C:\Windows\system32\netcfg-27850953.txt 2013-07-31 14:35 - 2013-07-31 14:35 - 00000117 _____ C:\Windows\system32\netcfg-11114703.txt 2013-07-31 14:35 - 2013-07-31 14:35 - 00000117 _____ C:\Windows\system32\netcfg-11114437.txt 2013-07-31 11:53 - 2013-07-31 11:53 - 00001742 _____ C:\Users\Monika\Desktop\JRT.txt 2013-07-31 11:43 - 2013-07-31 11:43 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 11:37 - 2013-07-31 11:37 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\Monika\Desktop\JRT.exe 2013-07-31 11:33 - 2013-07-31 12:34 - 00026294 _____ C:\Users\Monika\Desktop\AdwCleaner[S1].txt 2013-07-31 11:27 - 2013-07-31 11:28 - 00026294 _____ C:\AdwCleaner[S1].txt 2013-07-31 11:27 - 2013-07-31 11:28 - 00000101 _____ C:\Windows\DeleteOnReboot.bat 2013-07-31 11:26 - 2013-07-31 11:26 - 00666633 _____ C:\Users\Monika\Downloads\adwcleaner.exe 2013-07-31 11:02 - 2013-07-31 11:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 11:01 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-07-31 10:41 - 2013-07-31 10:41 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Monika\Downloads\mbam-setup-1.75.0.1300.exe 2013-07-31 10:36 - 2013-07-31 10:36 - 00000117 _____ C:\Windows\system32\netcfg-268247062.txt 2013-07-31 10:30 - 2013-07-31 10:30 - 00000117 _____ C:\Windows\system32\netcfg-267849500.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906562.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906296.txt 2013-07-31 09:01 - 2013-07-31 09:01 - 00000117 _____ C:\Windows\system32\netcfg-262491453.txt 2013-07-31 09:00 - 2013-07-31 09:01 - 00000117 _____ C:\Windows\system32\netcfg-262479187.txt 2013-07-30 23:07 - 2013-07-30 23:07 - 00000117 _____ C:\Windows\system32\netcfg-226902109.txt 2013-07-30 21:54 - 2013-07-30 21:54 - 00000117 _____ C:\Windows\system32\netcfg-222493078.txt 2013-07-30 21:23 - 2013-07-30 21:23 - 00027681 _____ C:\ComboFix.txt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219987234.txt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219985656.txt 2013-07-30 20:51 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-07-30 20:51 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-07-30 20:51 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\Windows\SWXCACLS.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-07-30 20:51 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-07-30 20:50 - 2013-07-30 21:24 - 00000000 ____D C:\ComboFix 2013-07-30 20:46 - 2013-07-30 21:24 - 00000000 ____D C:\Qoobox 2013-07-30 20:45 - 2013-07-30 21:18 - 00000000 ____D C:\Windows\erdnt 2013-07-30 20:39 - 2013-07-30 20:39 - 05095806 ____R (Swearware) C:\Users\Monika\Desktop\ComboFix.exe 2013-07-30 20:29 - 2013-07-30 20:29 - 00000117 _____ C:\Windows\system32\netcfg-217426406.txt 2013-07-30 19:03 - 2013-07-30 19:03 - 00000117 _____ C:\Windows\system32\netcfg-212257859.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208905734.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208900796.txt 2013-07-30 14:13 - 2013-07-30 14:13 - 00115232 _____ C:\Users\Monika\Downloads\FRST.txt 2013-07-30 14:11 - 2013-07-30 14:13 - 00026487 _____ C:\Users\Monika\Downloads\Addition.txt 2013-07-30 14:10 - 2013-07-30 14:10 - 00000000 ____D C:\FRST 2013-07-30 14:09 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Downloads\FRST64.exe 2013-07-30 14:08 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Desktop\FRST64.exe 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302750.txt 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302078.txt 2013-07-30 13:36 - 2013-07-30 13:36 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-30 13:36 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190098171.txt 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190084343.txt 2013-07-29 22:11 - 2013-07-29 22:11 - 00002360 _____ C:\{60CCBC6A-DDF1-4E4B-BA53-B1B969F8BC46} 2013-07-29 22:10 - 2013-07-29 22:10 - 00002344 _____ C:\{4172ADAC-5061-466B-9A16-5AF53570ABAB} 2013-07-29 22:06 - 2013-07-29 22:06 - 00002360 _____ C:\{DF5ADA51-F2BE-4A00-832D-9B1F33D4F6A9} 2013-07-29 21:46 - 2013-07-29 21:46 - 00002488 _____ C:\{03947D0E-D470-4B1D-B542-B894F52A0016} 2013-07-29 21:45 - 2013-07-29 21:45 - 00002504 _____ C:\{84749585-6701-4916-80DF-DD792B4FD167} 2013-07-29 21:35 - 2013-07-29 21:35 - 00003112 _____ C:\{93234576-3313-4230-95AF-4793795C0993} 2013-07-29 21:05 - 2013-07-29 21:05 - 00003456 _____ C:\{FE57C4B5-B33F-40D8-A4BD-691F37C7709F} 2013-07-29 20:51 - 2013-07-29 20:51 - 00002992 _____ C:\{3E61799B-6C1A-4779-895F-B5A05482CAAA} 2013-07-29 17:56 - 2013-07-29 17:56 - 00000000 ____D C:\Users\Monika\AppData\Roaming\WildTangent 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109818078.txt 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109814671.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600562.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600406.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18642921.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18639875.txt 2013-07-27 21:18 - 2013-07-27 21:18 - 00000117 _____ C:\Windows\system32\netcfg-8738921.txt 2013-07-27 19:53 - 2013-07-27 19:53 - 00000117 _____ C:\Windows\system32\netcfg-3651562.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527390.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527000.txt 2013-07-27 19:50 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3452265.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383671.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383390.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-739250.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-736687.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-546234.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-489406.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-238171.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-226062.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-187421.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-143140.txt 2013-07-27 18:54 - 2013-07-27 18:54 - 00000117 _____ C:\Windows\system32\netcfg-110437.txt 2013-07-27 18:53 - 2013-07-27 18:53 - 00000117 _____ C:\Windows\system32\netcfg-43984.txt 2013-07-27 18:52 - 2013-07-27 18:52 - 00000117 _____ C:\Windows\system32\netcfg-1154218.txt 2013-07-27 18:48 - 2013-07-27 18:48 - 00000117 _____ C:\Windows\system32\netcfg-917390.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-872453.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-858968.txt 2013-07-27 18:42 - 2013-07-27 18:42 - 00000117 _____ C:\Windows\system32\netcfg-550406.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-61531.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-39984.txt 2013-07-27 18:00 - 2013-07-27 18:00 - 00000573 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bibliotheken.lnk 2013-07-27 17:42 - 2013-07-27 17:43 - 00001343 _____ C:\Windows\IE10_main.log 2013-07-27 17:42 - 2013-07-27 16:13 - 51415040 _____ (Microsoft Corporation) C:\Users\Monika\Downloads\IE10-Windows6.1-x64-de-de.exe 2013-07-27 17:20 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-66218.txt 2013-07-27 17:19 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-42281.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439562.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439250.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-69781.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-55250.txt 2013-07-27 16:17 - 2013-07-27 16:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-27 16:16 - 2013-07-27 17:36 - 00006207 _____ C:\Windows\IE9_main.log 2013-07-27 16:15 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika\Qtrax 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-773281.txt 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-762921.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4946984.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4923734.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4919765.txt 2013-07-27 14:55 - 2013-07-27 14:55 - 00000117 _____ C:\Windows\system32\netcfg-4254687.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2138906.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2137109.txt 2013-07-27 14:02 - 2013-07-27 14:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Macromedia 2013-07-27 13:59 - 2013-08-01 09:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-27 13:59 - 2013-07-27 13:59 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-27 13:45 - 2013-07-27 13:46 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Mozilla 2013-07-27 13:45 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Local\Mozilla 2013-07-27 13:41 - 2013-07-27 13:41 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-27 13:37 - 2013-07-27 13:37 - 21670584 _____ (Mozilla) C:\Users\Monika\Downloads\Firefox Setup 22.0.exe 2013-07-27 13:01 - 2013-07-27 13:02 - 00000000 ____D C:\Windows\System32\Tasks\Norton AntiVirus 2013-07-27 12:47 - 2013-02-28 16:27 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe 2013-07-27 12:43 - 2013-07-27 12:43 - 04365864 _____ (Systweak Inc ) C:\Users\Monika\Downloads\rcpsetup_matomy_my30679.exe 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48362218.txt 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48350546.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47114468.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47101875.txt 2013-07-27 11:32 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-44535890.txt 2013-07-27 11:03 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-42757640.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41528171.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41522828.txt 2013-07-27 07:55 - 2013-07-27 07:55 - 00000296 _____ C:\Windows\Tasks\NUSchedule.job 2013-07-27 07:54 - 2013-08-01 08:17 - 00000304 _____ C:\Windows\Tasks\NUAutoUpdate.job 2013-07-27 07:54 - 2013-07-27 07:54 - 00002520 _____ C:\Windows\System32\Tasks\NUAutoUpdate 2013-07-27 07:54 - 2013-07-27 07:54 - 00000000 ____D C:\Users\Monika\Documents\Norton Utilities 16 2013-07-27 07:53 - 2013-07-27 07:53 - 00001227 _____ C:\Users\Public\Desktop\Norton Utilities 16.lnk 2013-07-27 07:53 - 2012-09-29 22:50 - 00512544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml.dll 2013-07-27 07:53 - 2012-09-29 22:49 - 00040992 _____ C:\Windows\system32\CleanMFT64.exe 2013-07-27 07:53 - 2011-07-26 16:15 - 01233920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4.dll 2013-07-27 07:53 - 2011-07-26 16:15 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll 2013-07-27 07:53 - 2011-07-26 16:15 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4a.dll 2013-07-27 07:53 - 2008-09-17 21:17 - 00658432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCT2.OCX 2013-07-27 07:53 - 2008-04-02 15:54 - 01101824 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBox210.ocx 2013-07-27 07:53 - 2008-04-02 15:53 - 00880640 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBox10.ocx 2013-07-27 07:53 - 2008-04-02 15:53 - 00212992 _____ (Woodbury Associates Limited) C:\Windows\SysWOW64\UniBoxVB12.ocx 2013-07-27 07:52 - 2013-07-27 07:52 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Product_NU16 2013-07-27 07:50 - 2013-07-27 07:50 - 23459280 _____ (Symantec) C:\Users\Monika\Downloads\nu16.0.0.126-SMUI.exe 2013-07-27 07:42 - 2013-07-27 07:42 - 00000117 _____ C:\Windows\system32\netcfg-30713234.txt 2013-07-27 07:06 - 2013-07-27 07:06 - 00000117 _____ C:\Windows\system32\netcfg-28574015.txt 2013-07-27 07:01 - 2013-07-27 07:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton Identity Safe 2013-07-27 06:39 - 2013-07-27 06:39 - 00000117 _____ C:\Windows\system32\netcfg-26923312.txt 2013-07-27 03:01 - 2013-07-27 03:01 - 00000117 _____ C:\Windows\system32\netcfg-13861609.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13762328.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13751921.txt 2013-07-26 23:31 - 2013-07-27 15:39 - 00000000 ____D C:\Windows\system32\Drivers\NSTx64 2013-07-26 23:30 - 2013-07-26 23:42 - 00177312 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2013-07-26 23:30 - 2013-07-26 23:42 - 00007631 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2013-07-26 23:30 - 2013-07-26 23:31 - 00000000 ____D C:\Program Files (x86)\Norton Identity Safe 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Symantec 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared 2013-07-26 23:29 - 2013-07-27 12:52 - 00003218 _____ C:\Windows\System32\Tasks\Norton WSC Integration 2013-07-26 23:29 - 2013-07-27 12:52 - 00002401 _____ C:\Users\Public\Desktop\Norton AntiVirus.lnk 2013-07-26 23:24 - 2013-07-27 12:52 - 00000000 ____D C:\Windows\system32\Drivers\NAVx64 2013-07-26 23:24 - 2013-07-26 23:24 - 00000000 ____D C:\Program Files (x86)\Norton AntiVirus 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2381562.txt 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2376828.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1458984.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1453328.txt 2013-07-26 22:23 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-436312.txt 2013-07-26 22:22 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-427640.txt 2013-07-26 22:20 - 2013-07-26 22:20 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-26 20:49 - 2013-07-26 20:54 - 172886528 ____N (Symantec Corporation) C:\Users\Monika\Downloads\NAV-TW-30-20-3-0-36-GE.exe 2013-07-26 20:29 - 2013-07-26 20:29 - 00000000 ____D C:\Users\Monika\Documents\Symantec 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2963734.txt 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2955812.txt 2013-07-26 19:59 - 2013-07-31 11:14 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Web Cake 2013-07-26 19:58 - 2013-06-30 18:10 - 01645360 _____ C:\Windows\system32\dmwu.exe 2013-07-26 19:58 - 2013-06-30 18:07 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22774765.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22744671.txt 2013-07-26 19:27 - 2013-07-26 19:27 - 00000117 _____ C:\Windows\system32\netcfg-22718453.txt 2013-07-26 19:26 - 2013-07-26 19:26 - 00000117 _____ C:\Windows\system32\netcfg-22684562.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22620921.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22576078.txt 2013-07-26 19:22 - 2013-07-26 19:22 - 00000117 _____ C:\Windows\system32\netcfg-22440609.txt 2013-07-26 19:21 - 2013-07-26 19:21 - 00000117 _____ C:\Windows\system32\netcfg-22395437.txt 2013-07-26 19:13 - 2013-07-26 19:13 - 00000117 _____ C:\Windows\system32\netcfg-21869453.txt 2013-07-26 19:11 - 2013-07-26 19:11 - 00000117 _____ C:\Windows\system32\netcfg-21764187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21668187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21637343.txt 2013-07-26 19:06 - 2013-07-26 19:06 - 00000117 _____ C:\Windows\system32\netcfg-21487671.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15365046.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15352375.txt 2013-07-26 13:24 - 2013-07-26 13:24 - 00000117 _____ C:\Windows\system32\netcfg-939625.txt 2013-07-26 13:04 - 2013-07-30 12:27 - 00000000 ____D C:\ProgramData\Adobe 2013-07-26 13:04 - 2013-07-26 13:04 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2013-07-26 13:04 - 2013-07-26 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-26 13:02 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-26 13:02 - 2013-07-29 14:40 - 00000000 ____D C:\Users\Monika\AppData\Local\Adobe 2013-07-26 13:02 - 2013-07-26 13:02 - 00003388 _____ C:\Windows\System32\Tasks\EPUpdater 2013-07-26 13:02 - 2013-07-26 13:02 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-26 12:50 - 2013-07-26 12:50 - 00000117 _____ C:\Windows\system32\netcfg-96057562.txt 2013-07-26 11:33 - 2013-07-26 12:49 - 00000117 _____ C:\Windows\system32\netcfg-91473531.txt 2013-07-26 10:41 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-88372843.txt 2013-07-26 10:34 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-87954343.txt 2013-07-26 10:02 - 2013-07-26 10:02 - 00000117 _____ C:\Windows\system32\netcfg-86024750.txt 2013-07-26 09:21 - 2013-07-26 09:21 - 00000117 _____ C:\Windows\system32\netcfg-83573921.txt 2013-07-26 09:06 - 2013-07-26 09:06 - 00000117 _____ C:\Windows\system32\netcfg-82667046.txt 2013-07-25 21:07 - 2013-07-25 21:07 - 00000117 _____ C:\Windows\system32\netcfg-39516203.txt 2013-07-25 20:51 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-38566875.txt 2013-07-25 20:37 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-37716187.txt 2013-07-25 19:07 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-32304406.txt 2013-07-25 18:31 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-30157375.txt 2013-07-25 18:14 - 2013-07-25 18:14 - 00000117 _____ C:\Windows\system32\netcfg-29135515.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18979078.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18960578.txt 2013-07-25 11:24 - 2013-07-25 11:24 - 00000117 _____ C:\Windows\system32\netcfg-4559890.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2919468.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2916578.txt 2013-07-25 10:08 - 2013-07-25 10:08 - 00000000 ____D C:\found.000 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-876241609.txt 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-868638687.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867425234.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867424328.txt 2013-07-24 13:51 - 2013-07-24 13:51 - 00000117 _____ C:\Windows\system32\netcfg-857660140.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854366406.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854365312.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843513437.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843512187.txt 2013-07-24 08:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-839622015.txt 2013-07-23 21:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-800000062.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966859.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966234.txt 2013-07-23 14:36 - 2013-07-23 14:36 - 00000117 _____ C:\Windows\system32\netcfg-773968500.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763215953.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763206187.txt 2013-07-23 10:40 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-759818500.txt 2013-07-23 10:09 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-757969906.txt 2013-07-23 09:44 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-756458812.txt 2013-07-22 14:15 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-686334296.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686296750.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686292093.txt 2013-07-22 09:55 - 2013-07-22 09:55 - 00000117 _____ C:\Windows\system32\netcfg-670723500.txt 2013-07-22 09:50 - 2013-07-22 09:50 - 00000117 _____ C:\Windows\system32\netcfg-670428875.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669183625.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669181218.txt 2013-07-20 20:58 - 2013-07-22 08:28 - 00000117 _____ C:\Windows\system32\netcfg-537704375.txt 2013-07-20 20:57 - 2013-07-20 20:57 - 00000117 _____ C:\Windows\system32\netcfg-537654625.txt 2013-07-19 13:26 - 2013-07-20 14:03 - 00000117 _____ C:\Windows\system32\netcfg-424205500.txt 2013-07-19 13:26 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424195484.txt 2013-07-19 09:26 - 2013-07-19 09:26 - 00000117 _____ C:\Windows\system32\netcfg-409788109.txt 2013-07-19 09:03 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-408437468.txt 2013-07-18 20:56 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-364802281.txt 2013-07-18 20:56 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364791000.txt 2013-07-18 16:56 - 2013-07-18 16:56 - 00000117 _____ C:\Windows\system32\netcfg-350382796.txt 2013-07-18 14:14 - 2013-07-18 14:14 - 00000117 _____ C:\Windows\system32\netcfg-340660375.txt 2013-07-18 14:13 - 2013-07-18 14:13 - 00000117 _____ C:\Windows\system32\netcfg-340653968.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325006468.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325002125.txt 2013-07-17 18:48 - 2013-07-17 18:48 - 00000117 _____ C:\Windows\system32\netcfg-270720265.txt 2013-07-17 14:07 - 2013-07-17 14:15 - 00000117 _____ C:\Windows\system32\netcfg-253901531.txt 2013-07-17 13:48 - 2013-07-17 13:48 - 00000117 _____ C:\Windows\system32\netcfg-252716953.txt 2013-07-17 13:02 - 2013-07-17 13:02 - 00000117 _____ C:\Windows\system32\netcfg-249998234.txt 2013-07-17 12:47 - 2013-07-17 12:47 - 00000117 _____ C:\Windows\system32\netcfg-249070609.txt 2013-07-17 12:46 - 2013-07-17 12:46 - 00000117 _____ C:\Windows\system32\netcfg-249038062.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248256921.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248253812.txt 2013-07-16 19:13 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-185868437.txt 2013-07-16 18:39 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-183800843.txt 2013-07-16 07:25 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-143384765.txt 2013-07-16 07:25 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143367468.txt 2013-07-16 03:25 - 2013-07-16 03:25 - 00000117 _____ C:\Windows\system32\netcfg-128966765.txt 2013-07-16 02:59 - 2013-07-16 02:59 - 00000117 _____ C:\Windows\system32\netcfg-127434656.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-96911593.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111329546.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111318250.txt 2013-07-15 18:00 - 2013-07-15 18:00 - 00000117 _____ C:\Windows\system32\netcfg-95086156.txt 2013-07-15 17:59 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-95037218.txt 2013-07-15 17:19 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-92605953.txt 2013-07-15 16:03 - 2013-07-15 16:03 - 00000117 _____ C:\Windows\system32\netcfg-88044562.txt 2013-07-15 14:48 - 2013-07-15 14:48 - 00000117 _____ C:\Windows\system32\netcfg-83560750.txt 2013-07-15 14:41 - 2013-07-15 14:41 - 00000117 _____ C:\Windows\system32\netcfg-83120203.txt 2013-07-15 14:26 - 2013-07-20 16:27 - 00000000 ____D C:\Users\Monika\AppData\Local\CrashDumps 2013-07-15 14:20 - 2013-07-15 14:20 - 00000117 _____ C:\Windows\system32\netcfg-81866671.txt 2013-07-15 14:00 - 2013-07-15 14:00 - 00142304 _____ C:\Users\Monika\Downloads\1019914_6_2013_Tiefert.pdf.zip 2013-07-15 10:53 - 2013-07-15 10:53 - 00000117 _____ C:\Windows\system32\netcfg-69478109.txt 2013-07-15 10:25 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-67785421.txt 2013-07-15 07:41 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-57963437.txt 2013-07-15 07:09 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-56011750.txt 2013-07-15 07:08 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-55966531.txt 2013-07-14 17:06 - 2013-07-14 17:06 - 00000000 ____D C:\Users\Monika\Documents\OneNote-Notizbücher 2013-07-14 16:59 - 2013-07-14 16:59 - 00000117 _____ C:\Windows\system32\netcfg-5005468.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4638937.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4633625.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4614875.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000156 _____ C:\Windows\system32\netcfg-3963328.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3949421.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3925937.txt 2013-07-14 16:39 - 2013-08-01 08:16 - 00000434 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-07-14 16:38 - 2013-07-14 16:39 - 00000156 _____ C:\Windows\system32\netcfg-3781421.txt 2013-07-14 16:36 - 2013-07-14 16:36 - 00000117 _____ C:\Windows\system32\netcfg-3640453.txt 2013-07-14 15:55 - 2013-07-14 16:35 - 00000117 _____ C:\Windows\system32\netcfg-1180015.txt 2013-07-14 15:36 - 2013-07-14 15:36 - 00000117 _____ C:\Windows\system32\netcfg-32500.txt 2013-07-14 15:28 - 2013-07-14 15:28 - 00000000 _____ C:\Users\Monika\Sti_Trace.log 2013-07-14 15:25 - 2013-07-14 15:25 - 00000117 _____ C:\Windows\system32\netcfg-42218.txt 2013-07-14 15:22 - 2013-07-14 15:22 - 00000938 _____ C:\Users\Public\Desktop\EPSON Scan.lnk 2013-07-14 15:22 - 2013-07-14 15:22 - 00000000 ____D C:\Program Files (x86)\epson 2013-07-14 15:22 - 2012-07-24 00:00 - 00466432 _____ (Seiko Epson Corporation) C:\Windows\system32\esxw2ud.dll 2013-07-14 15:22 - 2011-12-12 00:00 - 00135824 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe 2013-07-14 15:00 - 2013-07-14 15:00 - 00028574 _____ C:\Users\Monika\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx 2013-07-14 15:00 - 2013-07-14 15:00 - 00008833 _____ C:\Users\Monika\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx 2013-07-14 14:34 - 2013-07-14 15:25 - 00421792 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-14 14:25 - 2013-07-14 14:26 - 00003548 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-52546.txt 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-51140.txt 2013-07-14 14:21 - 2013-07-14 14:25 - 00000000 ___RD C:\Windows\BrowserChoice 2013-07-14 14:14 - 2013-07-20 14:18 - 00000000 ____D C:\ProgramData\EPSON 2013-07-14 14:14 - 2013-07-14 14:14 - 00000000 ____D C:\Program Files\Common Files\EPSON 2013-07-14 14:14 - 2012-11-01 12:42 - 00120320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMILE.DLL 2013-07-14 14:14 - 2012-11-01 12:42 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ID4BILE.DLL 2013-07-14 14:14 - 2012-11-01 12:42 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2013-07-14 14:13 - 2013-07-14 14:13 - 00000000 _____ C:\Users\Monika\Desktop\Neues Textdokument.txt 2013-07-14 14:11 - 2013-07-14 14:11 - 00000117 _____ C:\Windows\system32\netcfg-19600390.txt 2013-07-14 14:09 - 2013-07-14 14:10 - 00000117 _____ C:\Windows\system32\netcfg-19483937.txt 2013-07-14 14:03 - 2013-07-14 14:03 - 00000117 _____ C:\Windows\system32\netcfg-19143062.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19110812.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19103671.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00001138 _____ C:\Windows\system32\netcfg-19006156.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00000117 _____ C:\Windows\system32\netcfg-19007046.txt 2013-07-14 13:58 - 2013-07-14 13:58 - 00002974 _____ C:\Windows\avmadd32.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00002596 _____ C:\Windows\avmadd321.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!BoxPrint 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!Box 2013-07-14 13:58 - 2006-12-14 13:42 - 00069120 ____R (AVM Berlin) C:\Windows\SysWOW64\avmadd32.dll 2013-07-14 13:58 - 2006-05-29 02:00 - 00016384 ____R (AVM Berlin GmbH) C:\Windows\SysWOW64\avmprmon.dll 2013-07-14 13:23 - 2013-07-14 13:30 - 01077248 _____ C:\Users\Monika\Documents\Pro Win A.pwbackup 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16605453.txt 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16604921.txt 2013-07-14 09:45 - 2013-06-24 00:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-14 08:49 - 2013-07-14 13:41 - 00000000 ____D C:\Program Files (x86)\proWIN Office 2013-07-14 08:49 - 2013-07-14 08:51 - 01077248 _____ C:\Users\Monika\Documents\ProWin.pwbackup 2013-07-14 08:49 - 2013-07-14 08:49 - 00002951 _____ C:\Users\Monika\Desktop\proWIN Office.lnk 2013-07-14 08:49 - 2013-07-14 08:49 - 00000094 _____ C:\Users\Monika\AppData\Local\fusioncache.dat 2013-07-14 08:49 - 2013-07-14 08:49 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\proWIN Office 2013-07-14 08:48 - 2013-07-14 08:48 - 01772970 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-13 20:35 - 2013-07-26 21:38 - 00000000 ____D C:\Users\Monika\AppData\Local\Deployment 2013-07-13 20:35 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Apps\2.0 2013-07-13 20:19 - 2012-11-10 06:23 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2013-07-13 20:19 - 2012-11-10 06:23 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2013-07-13 20:19 - 2012-11-10 06:22 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll 2013-07-13 20:19 - 2012-11-10 06:22 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\RDWebAI.dll 2013-07-13 20:19 - 2012-11-10 06:22 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VmHostAI.dll 2013-07-13 20:19 - 2012-11-10 06:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\appserverai.dll 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84742140.txt 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84725312.txt 2013-07-12 20:26 - 2013-07-12 20:26 - 00003030 _____ C:\Windows\System32\Tasks\{67E5FAFC-E470-4191-B77D-8CDABD36038F} 2013-07-12 20:22 - 2013-07-12 20:22 - 00000000 ____D C:\Neuer Ordner 2013-07-12 20:18 - 2013-07-12 20:18 - 00000000 ____D C:\Windows\PCHEALTH 2013-07-12 20:16 - 2013-07-12 20:16 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files\Microsoft Office 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-07-12 20:14 - 2013-07-14 14:59 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ___RD C:\MSOCache 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ____D C:\Users\Monika\AppData\Local\Microsoft Help 2013-07-12 20:07 - 2013-04-16 04:34 - 01455368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-07-12 20:07 - 2013-01-10 03:40 - 00303848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-07-12 20:07 - 2012-11-26 06:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2013-07-12 20:07 - 2012-11-26 06:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2013-07-12 20:07 - 2012-10-10 09:04 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2013-07-12 20:07 - 2012-10-10 08:31 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2013-07-12 20:00 - 2013-05-31 01:14 - 04036096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-12 19:59 - 2013-05-04 09:45 - 02233600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-07-12 19:59 - 2013-04-24 01:13 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-07-12 19:59 - 2013-04-24 01:12 - 01569792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-07-12 19:59 - 2013-04-24 01:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-07-12 19:59 - 2013-04-24 00:56 - 01255936 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-07-12 19:59 - 2013-04-24 00:55 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-07-12 19:59 - 2013-04-24 00:55 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-07-12 19:59 - 2013-04-24 00:55 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-07-12 19:59 - 2013-03-02 11:59 - 00411880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2013-07-12 19:57 - 2013-06-01 11:25 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-12 19:57 - 2013-06-01 11:21 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-12 19:57 - 2013-03-02 10:23 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2013-07-12 19:57 - 2013-03-02 04:44 - 01011200 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2013-07-12 19:57 - 2012-12-15 06:55 - 00443392 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2013-07-12 19:57 - 2012-11-03 07:26 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\sysreset.exe 2013-07-12 19:57 - 2012-11-03 07:25 - 00945152 _____ (Microsoft Corporation) C:\Windows\system32\resetengmig.dll 2013-07-12 19:57 - 2012-10-24 05:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe 2013-07-12 19:57 - 2012-10-24 04:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2013-07-12 19:57 - 2012-10-06 06:53 - 02893824 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-07-12 19:57 - 2012-10-06 06:15 - 02400256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-07-12 19:56 - 2013-04-12 00:30 - 01421312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-12 19:56 - 2013-04-12 00:22 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-12 19:56 - 2013-03-02 10:22 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2013-07-12 19:56 - 2013-03-02 04:44 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2013-07-12 19:56 - 2013-02-02 13:19 - 00496872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-07-12 19:56 - 2013-02-02 13:19 - 00446184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2013-07-12 19:56 - 2013-02-02 13:19 - 00329960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2013-07-12 19:56 - 2013-02-02 13:19 - 00061672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys 2013-07-12 19:56 - 2013-02-02 12:54 - 01933544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2013-07-12 19:56 - 2013-02-02 12:28 - 00993512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-07-12 19:56 - 2013-02-02 10:40 - 10792448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlroamextension.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00370688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll 2013-07-12 19:56 - 2013-02-02 10:40 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe 2013-07-12 19:56 - 2013-02-02 10:40 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe 2013-07-12 19:56 - 2013-02-02 10:39 - 05090816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll 2013-07-12 19:56 - 2013-02-02 10:39 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll 2013-07-12 19:56 - 2013-02-02 10:38 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll 2013-07-12 19:56 - 2013-02-02 10:24 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2013-07-12 19:56 - 2013-02-02 10:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2013-07-12 19:56 - 2013-02-02 10:23 - 13643264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\wlroamextension.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2013-07-12 19:56 - 2013-02-02 10:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2013-07-12 19:56 - 2013-02-02 10:22 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2013-07-12 19:56 - 2013-02-02 10:22 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 05977600 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00385024 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2013-07-12 19:56 - 2013-02-02 10:21 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll 2013-07-12 19:56 - 2013-02-02 10:20 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2013-07-12 19:56 - 2013-02-02 10:20 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\hotspotauth.dll 2013-07-12 19:56 - 2013-02-02 09:25 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2013-07-12 19:56 - 2013-02-02 09:25 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-07-12 19:56 - 2013-02-02 09:25 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-07-12 19:56 - 2012-11-27 05:57 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys 2013-07-12 19:56 - 2012-11-20 06:56 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-07-12 19:56 - 2012-11-20 06:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidi2c.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00488168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00079080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-07-12 19:56 - 2012-09-20 09:55 - 00021736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-07-12 19:56 - 2012-09-20 08:32 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2013-07-12 19:56 - 2012-09-20 08:32 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2013-07-12 19:56 - 2012-09-20 08:09 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-07-12 19:55 - 2013-03-06 09:10 - 00112872 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2013-07-12 19:55 - 2013-03-06 08:59 - 00069864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2013-07-12 19:55 - 2013-03-06 08:31 - 19758592 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-07-12 19:55 - 2013-03-06 08:31 - 10116608 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2013-07-12 19:55 - 2013-03-06 08:31 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2013-07-12 19:55 - 2013-03-06 08:29 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 17561600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 08857088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2013-07-12 19:55 - 2013-03-06 07:03 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-07-12 19:55 - 2013-03-06 07:02 - 02035200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-07-12 19:55 - 2013-03-06 07:02 - 00754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2013-07-12 19:55 - 2013-02-12 02:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2013-07-12 19:55 - 2013-02-06 00:31 - 00622080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2013-07-12 19:55 - 2013-02-06 00:29 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2013-07-12 19:55 - 2013-02-06 00:28 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2013-07-12 19:55 - 2013-02-06 00:28 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2013-07-12 19:55 - 2013-02-02 07:41 - 01437184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2013-07-12 19:55 - 2013-02-02 07:31 - 01690624 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2013-07-12 19:55 - 2012-11-27 05:55 - 00029952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthhfHid.sys 2013-07-12 19:53 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-12 19:53 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-12 19:53 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-12 19:53 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-12 19:53 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-12 19:53 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-12 19:53 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-12 19:53 - 2013-05-16 00:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-07-12 19:53 - 2013-05-16 00:35 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-07-12 19:53 - 2013-05-14 15:14 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-12 19:53 - 2013-05-14 11:23 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-12 19:53 - 2013-04-29 00:28 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-12 19:53 - 2013-02-21 12:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-12 19:53 - 2013-02-21 12:14 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-12 19:53 - 2013-02-21 12:14 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-12 19:53 - 2013-02-19 11:53 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-07-12 19:53 - 2012-11-08 06:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-12 19:53 - 2012-11-08 06:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-12 19:46 - 2013-05-04 08:59 - 02842112 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-12 19:46 - 2013-05-04 06:57 - 02620928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-12 19:46 - 2013-04-27 07:20 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2013-07-12 19:44 - 2012-10-24 05:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2013-07-12 19:44 - 2012-10-24 05:24 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2013-07-12 19:44 - 2012-10-24 05:24 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2013-07-12 19:44 - 2012-10-24 05:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2013-07-12 19:43 - 2012-11-03 07:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2013-07-12 19:43 - 2012-11-03 07:26 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe 2013-07-12 19:43 - 2012-11-03 07:24 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll 2013-07-12 19:43 - 2012-11-03 07:24 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll 2013-07-12 19:43 - 2012-11-03 07:04 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll 2013-07-12 19:43 - 2012-11-03 07:04 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll 2013-07-12 19:43 - 2012-11-03 07:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll 2013-07-12 19:43 - 2012-11-03 07:00 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll 2013-07-12 19:42 - 2013-04-11 08:40 - 06987528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-07-12 19:42 - 2013-04-03 01:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-07-12 19:42 - 2013-04-03 01:12 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-07-12 19:42 - 2013-03-22 05:49 - 02382336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2013-07-12 19:42 - 2013-03-22 00:47 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2013-07-12 19:42 - 2013-03-15 02:17 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2013-07-12 19:42 - 2013-01-29 03:57 - 00035232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-07-12 19:42 - 2013-01-29 01:08 - 00230904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-07-12 19:42 - 2012-12-16 10:28 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-07-12 19:42 - 2012-12-16 10:20 - 00035328 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2013-07-12 19:42 - 2012-12-16 10:08 - 00362496 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-07-12 19:42 - 2012-12-16 09:57 - 00300032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2013-07-12 19:42 - 2012-11-08 06:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2013-07-12 19:42 - 2012-11-08 06:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2013-07-12 19:42 - 2012-11-08 06:20 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2013-07-12 19:42 - 2012-11-08 06:20 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2013-07-12 19:42 - 2012-11-08 06:02 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2013-07-12 19:42 - 2012-11-08 06:01 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2013-07-12 19:41 - 2012-11-01 06:41 - 01802240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2013-07-12 19:41 - 2012-11-01 06:41 - 01438720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2013-07-12 19:41 - 2012-11-01 06:40 - 02361344 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2013-07-12 19:41 - 2012-11-01 06:40 - 01836032 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2013-07-12 19:41 - 2012-11-01 06:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2013-07-12 19:41 - 2012-11-01 06:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2013-07-12 19:41 - 2012-11-01 06:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2013-07-12 19:41 - 2012-11-01 06:20 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2013-07-12 18:52 - 2013-07-14 15:21 - 00000000 ____D C:\Eimer 2013-07-12 18:47 - 2013-07-29 17:49 - 00000000 ____D C:\Users\Monika\AppData\Local\clear.fi 2013-07-12 18:47 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\PicStream 2013-07-12 18:45 - 2013-07-12 18:45 - 00000000 ____D C:\Users\Monika\AppData\Local\EgisTec IPS 2013-07-12 18:44 - 2013-07-29 15:42 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-1001 2013-07-12 18:44 - 2013-07-12 18:44 - 00000000 ____D C:\ProgramData\EgisTec 2013-07-12 18:37 - 2013-07-30 21:20 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-12 18:37 - 2013-07-14 14:26 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files\Preload 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files (x86)\OEM 2013-07-12 18:37 - 2012-08-24 05:39 - 00000000 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center 2013-07-12 18:36 - 2013-07-29 14:40 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Adobe 2013-07-12 18:36 - 2013-07-12 18:36 - 00001736 _____ C:\Users\Public\Desktop\Online kaufen.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00001446 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Macromedia 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Program Files\Accessory Store 2013-07-12 18:35 - 2013-08-01 08:56 - 01539452 _____ C:\Windows\WindowsUpdate.log 2013-07-12 18:35 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika 2013-07-12 18:35 - 2013-07-26 22:44 - 00000000 ____D C:\Users\Monika\AppData\Local\Packages 2013-07-12 18:35 - 2013-07-20 16:09 - 00000000 ____D C:\Users\Monika\AppData\Local\VirtualStore 2013-07-12 18:35 - 2013-07-12 18:35 - 00000020 ___SH C:\Users\Monika\ntuser.ini 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Vorlagen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Startmenü 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Netzwerkumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Lokale Einstellungen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Eigene Dateien 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Druckumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Musik 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Bilder 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Verlauf 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Anwendungsdaten 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Anwendungsdaten 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2013-07-12 18:35 - 2012-07-26 10:13 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-228734.txt 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-225843.txt ==================== One Month Modified Files and Folders ======= 2013-08-01 09:26 - 2013-07-27 13:59 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-01 09:26 - 2013-07-12 18:35 - 01539452 _____ C:\Windows\WindowsUpdate.log 2013-08-01 09:24 - 2013-08-01 09:24 - 00001017 _____ C:\Users\Monika\Desktop\checkup.txt 2013-08-01 09:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-08-01 08:17 - 2013-07-27 07:54 - 00000304 _____ C:\Windows\Tasks\NUAutoUpdate.job 2013-08-01 08:16 - 2013-07-14 16:39 - 00000434 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-08-01 08:16 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-01 00:54 - 2013-08-01 00:54 - 00000117 _____ C:\Windows\system32\netcfg-48269531.txt 2013-08-01 00:54 - 2013-08-01 00:54 - 00000117 _____ C:\Windows\system32\netcfg-48264937.txt 2013-08-01 00:09 - 2013-08-01 00:09 - 00003456 _____ C:\{4B9E504C-53B2-40F0-A300-F04C6C29E7EB} 2013-08-01 00:01 - 2013-08-01 00:01 - 00004048 _____ C:\{E4B8A22F-5B28-41C8-BFA4-89932462F81F} 2013-07-31 23:53 - 2013-07-31 23:53 - 00003456 _____ C:\{EB079ACE-9788-4C92-A48E-C2BB0A0165CD} 2013-07-31 23:24 - 2013-07-31 23:24 - 00000117 _____ C:\Windows\system32\netcfg-42856125.txt 2013-07-31 23:24 - 2013-07-31 23:24 - 00000117 _____ C:\Windows\system32\netcfg-42854765.txt 2013-07-31 21:39 - 2013-07-31 21:39 - 00000117 _____ C:\Windows\system32\netcfg-36569421.txt 2013-07-31 21:39 - 2013-07-31 21:39 - 00000117 _____ C:\Windows\system32\netcfg-36563781.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33926453.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33926046.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33912812.txt 2013-07-31 20:55 - 2013-07-31 20:55 - 00000117 _____ C:\Windows\system32\netcfg-33912328.txt 2013-07-31 19:17 - 2013-07-31 19:17 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-31 19:15 - 2013-07-31 19:15 - 02347384 _____ (ESET) C:\Users\Monika\Desktop\esetsmartinstaller_enu.exe 2013-07-31 19:15 - 2013-07-31 19:15 - 00891098 _____ C:\Users\Monika\Desktop\SecurityCheck.exe 2013-07-31 19:14 - 2013-07-31 19:14 - 00000117 _____ C:\Windows\system32\netcfg-27855062.txt 2013-07-31 19:14 - 2013-07-31 19:14 - 00000117 _____ C:\Windows\system32\netcfg-27850953.txt 2013-07-31 14:35 - 2013-07-31 14:35 - 00000117 _____ C:\Windows\system32\netcfg-11114703.txt 2013-07-31 14:35 - 2013-07-31 14:35 - 00000117 _____ C:\Windows\system32\netcfg-11114437.txt 2013-07-31 12:34 - 2013-07-31 11:33 - 00026294 _____ C:\Users\Monika\Desktop\AdwCleaner[S1].txt 2013-07-31 11:53 - 2013-07-31 11:53 - 00001742 _____ C:\Users\Monika\Desktop\JRT.txt 2013-07-31 11:43 - 2013-07-31 11:43 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 11:37 - 2013-07-31 11:37 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\Monika\Desktop\JRT.exe 2013-07-31 11:28 - 2013-07-31 11:27 - 00026294 _____ C:\AdwCleaner[S1].txt 2013-07-31 11:28 - 2013-07-31 11:27 - 00000101 _____ C:\Windows\DeleteOnReboot.bat 2013-07-31 11:26 - 2013-07-31 11:26 - 00666633 _____ C:\Users\Monika\Downloads\adwcleaner.exe 2013-07-31 11:17 - 2012-10-22 03:29 - 00865494 _____ C:\Windows\PFRO.log 2013-07-31 11:14 - 2013-07-26 19:59 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Web Cake 2013-07-31 11:02 - 2013-07-31 11:02 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-31 11:01 - 2013-07-31 11:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-07-31 10:41 - 2013-07-31 10:41 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Monika\Downloads\mbam-setup-1.75.0.1300.exe 2013-07-31 10:36 - 2013-07-31 10:36 - 00000117 _____ C:\Windows\system32\netcfg-268247062.txt 2013-07-31 10:30 - 2013-07-31 10:30 - 00000117 _____ C:\Windows\system32\netcfg-267849500.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906562.txt 2013-07-31 09:57 - 2013-07-31 09:57 - 00000117 _____ C:\Windows\system32\netcfg-265906296.txt 2013-07-31 09:01 - 2013-07-31 09:01 - 00000117 _____ C:\Windows\system32\netcfg-262491453.txt 2013-07-31 09:01 - 2013-07-31 09:00 - 00000117 _____ C:\Windows\system32\netcfg-262479187.txt 2013-07-30 23:07 - 2013-07-30 23:07 - 00000117 _____ C:\Windows\system32\netcfg-226902109.txt 2013-07-30 21:54 - 2013-07-30 21:54 - 00000117 _____ C:\Windows\system32\netcfg-222493078.txt 2013-07-30 21:24 - 2013-07-30 20:50 - 00000000 ____D C:\ComboFix 2013-07-30 21:24 - 2013-07-30 20:46 - 00000000 ____D C:\Qoobox 2013-07-30 21:23 - 2013-07-30 21:23 - 00027681 _____ C:\ComboFix.txt 2013-07-30 21:23 - 2012-07-26 07:37 - 00000000 __RHD C:\Users\Default 2013-07-30 21:20 - 2013-07-12 18:37 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-30 21:18 - 2013-07-30 20:45 - 00000000 ____D C:\Windows\erdnt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219987234.txt 2013-07-30 21:12 - 2013-07-30 21:12 - 00000117 _____ C:\Windows\system32\netcfg-219985656.txt 2013-07-30 21:06 - 2012-07-26 07:26 - 00000215 _____ C:\Windows\system.ini 2013-07-30 20:39 - 2013-07-30 20:39 - 05095806 ____R (Swearware) C:\Users\Monika\Desktop\ComboFix.exe 2013-07-30 20:29 - 2013-07-30 20:29 - 00000117 _____ C:\Windows\system32\netcfg-217426406.txt 2013-07-30 19:03 - 2013-07-30 19:03 - 00000117 _____ C:\Windows\system32\netcfg-212257859.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208905734.txt 2013-07-30 18:07 - 2013-07-30 18:07 - 00000117 _____ C:\Windows\system32\netcfg-208900796.txt 2013-07-30 14:13 - 2013-07-30 14:13 - 00115232 _____ C:\Users\Monika\Downloads\FRST.txt 2013-07-30 14:13 - 2013-07-30 14:11 - 00026487 _____ C:\Users\Monika\Downloads\Addition.txt 2013-07-30 14:10 - 2013-07-30 14:10 - 00000000 ____D C:\FRST 2013-07-30 14:09 - 2013-07-30 14:09 - 01781589 _____ (Farbar) C:\Users\Monika\Downloads\FRST64.exe 2013-07-30 14:09 - 2013-07-30 14:08 - 01781589 _____ (Farbar) C:\Users\Monika\Desktop\FRST64.exe 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302750.txt 2013-07-30 14:04 - 2013-07-30 14:04 - 00000117 _____ C:\Windows\system32\netcfg-194302078.txt 2013-07-30 13:36 - 2013-07-30 13:36 - 00001155 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-30 13:36 - 2013-07-30 13:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-30 13:36 - 2013-07-26 13:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190098171.txt 2013-07-30 12:54 - 2013-07-30 12:54 - 00000117 _____ C:\Windows\system32\netcfg-190084343.txt 2013-07-30 12:27 - 2013-07-26 13:04 - 00000000 ____D C:\ProgramData\Adobe 2013-07-29 22:11 - 2013-07-29 22:11 - 00002360 _____ C:\{60CCBC6A-DDF1-4E4B-BA53-B1B969F8BC46} 2013-07-29 22:10 - 2013-07-29 22:10 - 00002344 _____ C:\{4172ADAC-5061-466B-9A16-5AF53570ABAB} 2013-07-29 22:06 - 2013-07-29 22:06 - 00002360 _____ C:\{DF5ADA51-F2BE-4A00-832D-9B1F33D4F6A9} 2013-07-29 21:46 - 2013-07-29 21:46 - 00002488 _____ C:\{03947D0E-D470-4B1D-B542-B894F52A0016} 2013-07-29 21:45 - 2013-07-29 21:45 - 00002504 _____ C:\{84749585-6701-4916-80DF-DD792B4FD167} 2013-07-29 21:35 - 2013-07-29 21:35 - 00003112 _____ C:\{93234576-3313-4230-95AF-4793795C0993} 2013-07-29 21:05 - 2013-07-29 21:05 - 00003456 _____ C:\{FE57C4B5-B33F-40D8-A4BD-691F37C7709F} 2013-07-29 20:51 - 2013-07-29 20:51 - 00002992 _____ C:\{3E61799B-6C1A-4779-895F-B5A05482CAAA} 2013-07-29 18:01 - 2012-10-22 04:51 - 00000000 ____D C:\ProgramData\WildTangent 2013-07-29 17:56 - 2013-07-29 17:56 - 00000000 ____D C:\Users\Monika\AppData\Roaming\WildTangent 2013-07-29 17:56 - 2012-10-22 04:51 - 00002658 ____N C:\Users\Public\Desktop\WildTangent Games App - acer.lnk 2013-07-29 17:56 - 2012-10-22 04:51 - 00000000 ____D C:\Program Files (x86)\WildTangent Games 2013-07-29 17:49 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\AppData\Local\clear.fi 2013-07-29 15:42 - 2013-07-12 18:44 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1454082463-4214778326-2038335204-1001 2013-07-29 14:40 - 2013-07-26 13:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Adobe 2013-07-29 14:40 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Adobe 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109818078.txt 2013-07-29 14:36 - 2013-07-29 14:36 - 00000117 _____ C:\Windows\system32\netcfg-109814671.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600562.txt 2013-07-29 12:36 - 2013-07-29 12:36 - 00000117 _____ C:\Windows\system32\netcfg-102600406.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18642921.txt 2013-07-28 13:16 - 2013-07-28 13:16 - 00000117 _____ C:\Windows\system32\netcfg-18639875.txt 2013-07-28 08:06 - 2012-07-26 10:12 - 00000000 ___HD C:\Windows\ELAMBKUP 2013-07-27 21:18 - 2013-07-27 21:18 - 00000117 _____ C:\Windows\system32\netcfg-8738921.txt 2013-07-27 19:53 - 2013-07-27 19:53 - 00000117 _____ C:\Windows\system32\netcfg-3651562.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527390.txt 2013-07-27 19:51 - 2013-07-27 19:51 - 00000117 _____ C:\Windows\system32\netcfg-3527000.txt 2013-07-27 19:51 - 2013-07-27 19:50 - 00000117 _____ C:\Windows\system32\netcfg-3452265.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383671.txt 2013-07-27 19:49 - 2013-07-27 19:49 - 00000117 _____ C:\Windows\system32\netcfg-3383390.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-739250.txt 2013-07-27 19:05 - 2013-07-27 19:05 - 00000117 _____ C:\Windows\system32\netcfg-736687.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-546234.txt 2013-07-27 19:01 - 2013-07-27 19:01 - 00000117 _____ C:\Windows\system32\netcfg-489406.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-238171.txt 2013-07-27 18:56 - 2013-07-27 18:56 - 00000117 _____ C:\Windows\system32\netcfg-226062.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-187421.txt 2013-07-27 18:55 - 2013-07-27 18:55 - 00000117 _____ C:\Windows\system32\netcfg-143140.txt 2013-07-27 18:55 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-07-27 18:54 - 2013-07-27 18:54 - 00000117 _____ C:\Windows\system32\netcfg-110437.txt 2013-07-27 18:53 - 2013-07-27 18:53 - 00000117 _____ C:\Windows\system32\netcfg-43984.txt 2013-07-27 18:52 - 2013-07-27 18:52 - 00000117 _____ C:\Windows\system32\netcfg-1154218.txt 2013-07-27 18:48 - 2013-07-27 18:48 - 00000117 _____ C:\Windows\system32\netcfg-917390.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-872453.txt 2013-07-27 18:47 - 2013-07-27 18:47 - 00000117 _____ C:\Windows\system32\netcfg-858968.txt 2013-07-27 18:42 - 2013-07-27 18:42 - 00000117 _____ C:\Windows\system32\netcfg-550406.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-61531.txt 2013-07-27 18:05 - 2013-07-27 18:05 - 00000117 _____ C:\Windows\system32\netcfg-39984.txt 2013-07-27 18:00 - 2013-07-27 18:00 - 00000573 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bibliotheken.lnk 2013-07-27 17:43 - 2013-07-27 17:42 - 00001343 _____ C:\Windows\IE10_main.log 2013-07-27 17:36 - 2013-07-27 16:16 - 00006207 _____ C:\Windows\IE9_main.log 2013-07-27 17:20 - 2013-07-27 17:20 - 00000117 _____ C:\Windows\system32\netcfg-66218.txt 2013-07-27 17:20 - 2013-07-27 17:19 - 00000117 _____ C:\Windows\system32\netcfg-42281.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439562.txt 2013-07-27 16:46 - 2013-07-27 16:46 - 00000117 _____ C:\Windows\system32\netcfg-1439250.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-69781.txt 2013-07-27 16:23 - 2013-07-27 16:23 - 00000117 _____ C:\Windows\system32\netcfg-55250.txt 2013-07-27 16:17 - 2013-07-27 16:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-27 16:15 - 2013-07-27 16:15 - 00000000 ____D C:\Users\Monika\Qtrax 2013-07-27 16:15 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika 2013-07-27 16:13 - 2013-07-27 17:42 - 51415040 _____ (Microsoft Corporation) C:\Users\Monika\Downloads\IE10-Windows6.1-x64-de-de.exe 2013-07-27 15:39 - 2013-07-26 23:31 - 00000000 ____D C:\Windows\system32\Drivers\NSTx64 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-773281.txt 2013-07-27 15:27 - 2013-07-27 15:27 - 00000117 _____ C:\Windows\system32\netcfg-762921.txt 2013-07-27 15:18 - 2012-10-22 04:57 - 00000000 ____D C:\ProgramData\Acer 2013-07-27 15:17 - 2012-10-22 04:57 - 00000000 ____D C:\Program Files (x86)\Acer 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4946984.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4923734.txt 2013-07-27 14:56 - 2013-07-27 14:56 - 00000117 _____ C:\Windows\system32\netcfg-4919765.txt 2013-07-27 14:55 - 2013-07-27 14:55 - 00000117 _____ C:\Windows\system32\netcfg-4254687.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2138906.txt 2013-07-27 14:09 - 2013-07-27 14:09 - 00000117 _____ C:\Windows\system32\netcfg-2137109.txt 2013-07-27 14:02 - 2013-07-27 14:02 - 00000000 ____D C:\Users\Monika\AppData\Local\Macromedia 2013-07-27 13:59 - 2013-07-27 13:59 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-27 13:46 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Mozilla 2013-07-27 13:45 - 2013-07-27 13:45 - 00000000 ____D C:\Users\Monika\AppData\Local\Mozilla 2013-07-27 13:41 - 2013-07-27 13:41 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-27 13:37 - 2013-07-27 13:37 - 21670584 _____ (Mozilla) C:\Users\Monika\Downloads\Firefox Setup 22.0.exe 2013-07-27 13:02 - 2013-07-27 13:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton AntiVirus 2013-07-27 12:56 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-07-27 12:52 - 2013-07-26 23:29 - 00003218 _____ C:\Windows\System32\Tasks\Norton WSC Integration 2013-07-27 12:52 - 2013-07-26 23:29 - 00002401 _____ C:\Users\Public\Desktop\Norton AntiVirus.lnk 2013-07-27 12:52 - 2013-07-26 23:24 - 00000000 ____D C:\Windows\system32\Drivers\NAVx64 2013-07-27 12:50 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-07-27 12:43 - 2013-07-27 12:43 - 04365864 _____ (Systweak Inc ) C:\Users\Monika\Downloads\rcpsetup_matomy_my30679.exe 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48362218.txt 2013-07-27 12:36 - 2013-07-27 12:36 - 00000117 _____ C:\Windows\system32\netcfg-48350546.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47114468.txt 2013-07-27 12:15 - 2013-07-27 12:15 - 00000117 _____ C:\Windows\system32\netcfg-47101875.txt 2013-07-27 11:32 - 2013-07-27 11:32 - 00000117 _____ C:\Windows\system32\netcfg-44535890.txt 2013-07-27 11:32 - 2013-07-27 11:03 - 00000117 _____ C:\Windows\system32\netcfg-42757640.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41528171.txt 2013-07-27 10:42 - 2013-07-27 10:42 - 00000117 _____ C:\Windows\system32\netcfg-41522828.txt 2013-07-27 07:57 - 2012-12-22 04:56 - 00761898 _____ C:\Windows\system32\perfh007.dat 2013-07-27 07:57 - 2012-12-22 04:56 - 00160028 _____ C:\Windows\system32\perfc007.dat 2013-07-27 07:57 - 2012-07-26 09:28 - 01772590 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-27 07:55 - 2013-07-27 07:55 - 00000296 _____ C:\Windows\Tasks\NUSchedule.job 2013-07-27 07:54 - 2013-07-27 07:54 - 00002520 _____ C:\Windows\System32\Tasks\NUAutoUpdate 2013-07-27 07:54 - 2013-07-27 07:54 - 00000000 ____D C:\Users\Monika\Documents\Norton Utilities 16 2013-07-27 07:53 - 2013-07-27 07:53 - 00001227 _____ C:\Users\Public\Desktop\Norton Utilities 16.lnk 2013-07-27 07:53 - 2012-12-21 20:31 - 00000000 ____D C:\ProgramData\Symantec 2013-07-27 07:52 - 2013-07-27 07:52 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Product_NU16 2013-07-27 07:52 - 2012-12-21 20:31 - 00000000 ____D C:\Program Files (x86)\Symantec 2013-07-27 07:50 - 2013-07-27 07:50 - 23459280 _____ (Symantec) C:\Users\Monika\Downloads\nu16.0.0.126-SMUI.exe 2013-07-27 07:42 - 2013-07-27 07:42 - 00000117 _____ C:\Windows\system32\netcfg-30713234.txt 2013-07-27 07:06 - 2013-07-27 07:06 - 00000117 _____ C:\Windows\system32\netcfg-28574015.txt 2013-07-27 07:01 - 2013-07-27 07:01 - 00000000 ____D C:\Windows\System32\Tasks\Norton Identity Safe 2013-07-27 06:39 - 2013-07-27 06:39 - 00000117 _____ C:\Windows\system32\netcfg-26923312.txt 2013-07-27 03:01 - 2013-07-27 03:01 - 00000117 _____ C:\Windows\system32\netcfg-13861609.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13762328.txt 2013-07-27 02:59 - 2013-07-27 02:59 - 00000117 _____ C:\Windows\system32\netcfg-13751921.txt 2013-07-26 23:42 - 2013-07-26 23:30 - 00177312 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2013-07-26 23:42 - 2013-07-26 23:30 - 00007631 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2013-07-26 23:31 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files (x86)\Norton Identity Safe 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Symantec 2013-07-26 23:30 - 2013-07-26 23:30 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared 2013-07-26 23:30 - 2012-12-21 20:30 - 00000000 ____D C:\ProgramData\Norton 2013-07-26 23:24 - 2013-07-26 23:24 - 00000000 ____D C:\Program Files (x86)\Norton AntiVirus 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2381562.txt 2013-07-26 22:55 - 2013-07-26 22:55 - 00000117 _____ C:\Windows\system32\netcfg-2376828.txt 2013-07-26 22:45 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-07-26 22:44 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Packages 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1458984.txt 2013-07-26 22:40 - 2013-07-26 22:40 - 00000117 _____ C:\Windows\system32\netcfg-1453328.txt 2013-07-26 22:23 - 2013-07-26 22:23 - 00000117 _____ C:\Windows\system32\netcfg-436312.txt 2013-07-26 22:23 - 2013-07-26 22:22 - 00000117 _____ C:\Windows\system32\netcfg-427640.txt 2013-07-26 22:20 - 2013-07-26 22:20 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\ProgramData\McAfee 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files\mcafee 2013-07-26 21:51 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-07-26 21:38 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Deployment 2013-07-26 20:54 - 2013-07-26 20:49 - 172886528 ____N (Symantec Corporation) C:\Users\Monika\Downloads\NAV-TW-30-20-3-0-36-GE.exe 2013-07-26 20:29 - 2013-07-26 20:29 - 00000000 ____D C:\Users\Monika\Documents\Symantec 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2963734.txt 2013-07-26 20:21 - 2013-07-26 20:21 - 00000117 _____ C:\Windows\system32\netcfg-2955812.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22774765.txt 2013-07-26 19:28 - 2013-07-26 19:28 - 00000117 _____ C:\Windows\system32\netcfg-22744671.txt 2013-07-26 19:27 - 2013-07-26 19:27 - 00000117 _____ C:\Windows\system32\netcfg-22718453.txt 2013-07-26 19:26 - 2013-07-26 19:26 - 00000117 _____ C:\Windows\system32\netcfg-22684562.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22620921.txt 2013-07-26 19:25 - 2013-07-26 19:25 - 00000117 _____ C:\Windows\system32\netcfg-22576078.txt 2013-07-26 19:22 - 2013-07-26 19:22 - 00000117 _____ C:\Windows\system32\netcfg-22440609.txt 2013-07-26 19:21 - 2013-07-26 19:21 - 00000117 _____ C:\Windows\system32\netcfg-22395437.txt 2013-07-26 19:13 - 2013-07-26 19:13 - 00000117 _____ C:\Windows\system32\netcfg-21869453.txt 2013-07-26 19:11 - 2013-07-26 19:11 - 00000117 _____ C:\Windows\system32\netcfg-21764187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21668187.txt 2013-07-26 19:09 - 2013-07-26 19:09 - 00000117 _____ C:\Windows\system32\netcfg-21637343.txt 2013-07-26 19:06 - 2013-07-26 19:06 - 00000117 _____ C:\Windows\system32\netcfg-21487671.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15365046.txt 2013-07-26 17:24 - 2013-07-26 17:24 - 00000117 _____ C:\Windows\system32\netcfg-15352375.txt 2013-07-26 13:24 - 2013-07-26 13:24 - 00000117 _____ C:\Windows\system32\netcfg-939625.txt 2013-07-26 13:04 - 2013-07-26 13:04 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2013-07-26 13:04 - 2013-07-26 13:04 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-07-26 13:02 - 2013-07-26 13:02 - 00003388 _____ C:\Windows\System32\Tasks\EPUpdater 2013-07-26 13:02 - 2013-07-26 13:02 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-26 12:50 - 2013-07-26 12:50 - 00000117 _____ C:\Windows\system32\netcfg-96057562.txt 2013-07-26 12:49 - 2013-07-26 11:33 - 00000117 _____ C:\Windows\system32\netcfg-91473531.txt 2013-07-26 10:41 - 2013-07-26 10:41 - 00000117 _____ C:\Windows\system32\netcfg-88372843.txt 2013-07-26 10:41 - 2013-07-26 10:34 - 00000117 _____ C:\Windows\system32\netcfg-87954343.txt 2013-07-26 10:02 - 2013-07-26 10:02 - 00000117 _____ C:\Windows\system32\netcfg-86024750.txt 2013-07-26 09:21 - 2013-07-26 09:21 - 00000117 _____ C:\Windows\system32\netcfg-83573921.txt 2013-07-26 09:06 - 2013-07-26 09:06 - 00000117 _____ C:\Windows\system32\netcfg-82667046.txt 2013-07-25 21:07 - 2013-07-25 21:07 - 00000117 _____ C:\Windows\system32\netcfg-39516203.txt 2013-07-25 20:51 - 2013-07-25 20:51 - 00000117 _____ C:\Windows\system32\netcfg-38566875.txt 2013-07-25 20:51 - 2013-07-25 20:37 - 00000117 _____ C:\Windows\system32\netcfg-37716187.txt 2013-07-25 19:07 - 2013-07-25 19:07 - 00000117 _____ C:\Windows\system32\netcfg-32304406.txt 2013-07-25 19:07 - 2013-07-25 18:31 - 00000117 _____ C:\Windows\system32\netcfg-30157375.txt 2013-07-25 18:14 - 2013-07-25 18:14 - 00000117 _____ C:\Windows\system32\netcfg-29135515.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18979078.txt 2013-07-25 15:25 - 2013-07-25 15:25 - 00000117 _____ C:\Windows\system32\netcfg-18960578.txt 2013-07-25 11:24 - 2013-07-25 11:24 - 00000117 _____ C:\Windows\system32\netcfg-4559890.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2919468.txt 2013-07-25 10:57 - 2013-07-25 10:57 - 00000117 _____ C:\Windows\system32\netcfg-2916578.txt 2013-07-25 10:08 - 2013-07-25 10:08 - 00000000 ____D C:\found.000 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-876241609.txt 2013-07-24 19:01 - 2013-07-24 19:01 - 00000117 _____ C:\Windows\system32\netcfg-868638687.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867425234.txt 2013-07-24 16:34 - 2013-07-24 16:34 - 00000117 _____ C:\Windows\system32\netcfg-867424328.txt 2013-07-24 13:51 - 2013-07-24 13:51 - 00000117 _____ C:\Windows\system32\netcfg-857660140.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854366406.txt 2013-07-24 12:56 - 2013-07-24 12:56 - 00000117 _____ C:\Windows\system32\netcfg-854365312.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843513437.txt 2013-07-24 09:55 - 2013-07-24 09:55 - 00000117 _____ C:\Windows\system32\netcfg-843512187.txt 2013-07-24 08:50 - 2013-07-24 08:50 - 00000117 _____ C:\Windows\system32\netcfg-839622015.txt 2013-07-24 08:50 - 2013-07-23 21:50 - 00000117 _____ C:\Windows\system32\netcfg-800000062.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966859.txt 2013-07-23 21:49 - 2013-07-23 21:49 - 00000117 _____ C:\Windows\system32\netcfg-799966234.txt 2013-07-23 14:36 - 2013-07-23 14:36 - 00000117 _____ C:\Windows\system32\netcfg-773968500.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763215953.txt 2013-07-23 11:37 - 2013-07-23 11:37 - 00000117 _____ C:\Windows\system32\netcfg-763206187.txt 2013-07-23 10:40 - 2013-07-23 10:40 - 00000117 _____ C:\Windows\system32\netcfg-759818500.txt 2013-07-23 10:40 - 2013-07-23 10:09 - 00000117 _____ C:\Windows\system32\netcfg-757969906.txt 2013-07-23 09:44 - 2013-07-23 09:44 - 00000117 _____ C:\Windows\system32\netcfg-756458812.txt 2013-07-23 09:44 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686334296.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686296750.txt 2013-07-22 14:15 - 2013-07-22 14:15 - 00000117 _____ C:\Windows\system32\netcfg-686292093.txt 2013-07-22 09:55 - 2013-07-22 09:55 - 00000117 _____ C:\Windows\system32\netcfg-670723500.txt 2013-07-22 09:50 - 2013-07-22 09:50 - 00000117 _____ C:\Windows\system32\netcfg-670428875.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669183625.txt 2013-07-22 09:29 - 2013-07-22 09:29 - 00000117 _____ C:\Windows\system32\netcfg-669181218.txt 2013-07-22 08:28 - 2013-07-20 20:58 - 00000117 _____ C:\Windows\system32\netcfg-537704375.txt 2013-07-20 20:57 - 2013-07-20 20:57 - 00000117 _____ C:\Windows\system32\netcfg-537654625.txt 2013-07-20 16:27 - 2013-07-15 14:26 - 00000000 ____D C:\Users\Monika\AppData\Local\CrashDumps 2013-07-20 16:09 - 2013-07-12 18:35 - 00000000 ____D C:\Users\Monika\AppData\Local\VirtualStore 2013-07-20 14:18 - 2013-07-14 14:14 - 00000000 ____D C:\ProgramData\EPSON 2013-07-20 14:03 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424205500.txt 2013-07-19 13:26 - 2013-07-19 13:26 - 00000117 _____ C:\Windows\system32\netcfg-424195484.txt 2013-07-19 09:26 - 2013-07-19 09:26 - 00000117 _____ C:\Windows\system32\netcfg-409788109.txt 2013-07-19 09:03 - 2013-07-19 09:03 - 00000117 _____ C:\Windows\system32\netcfg-408437468.txt 2013-07-19 09:03 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364802281.txt 2013-07-18 20:56 - 2013-07-18 20:56 - 00000117 _____ C:\Windows\system32\netcfg-364791000.txt 2013-07-18 16:56 - 2013-07-18 16:56 - 00000117 _____ C:\Windows\system32\netcfg-350382796.txt 2013-07-18 14:14 - 2013-07-18 14:14 - 00000117 _____ C:\Windows\system32\netcfg-340660375.txt 2013-07-18 14:13 - 2013-07-18 14:13 - 00000117 _____ C:\Windows\system32\netcfg-340653968.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325006468.txt 2013-07-18 09:53 - 2013-07-18 09:53 - 00000117 _____ C:\Windows\system32\netcfg-325002125.txt 2013-07-17 18:48 - 2013-07-17 18:48 - 00000117 _____ C:\Windows\system32\netcfg-270720265.txt 2013-07-17 14:15 - 2013-07-17 14:07 - 00000117 _____ C:\Windows\system32\netcfg-253901531.txt 2013-07-17 13:48 - 2013-07-17 13:48 - 00000117 _____ C:\Windows\system32\netcfg-252716953.txt 2013-07-17 13:02 - 2013-07-17 13:02 - 00000117 _____ C:\Windows\system32\netcfg-249998234.txt 2013-07-17 12:47 - 2013-07-17 12:47 - 00000117 _____ C:\Windows\system32\netcfg-249070609.txt 2013-07-17 12:46 - 2013-07-17 12:46 - 00000117 _____ C:\Windows\system32\netcfg-249038062.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248256921.txt 2013-07-17 12:33 - 2013-07-17 12:33 - 00000117 _____ C:\Windows\system32\netcfg-248253812.txt 2013-07-17 12:33 - 2013-07-16 19:13 - 00000117 _____ C:\Windows\system32\netcfg-185868437.txt 2013-07-16 18:39 - 2013-07-16 18:39 - 00000117 _____ C:\Windows\system32\netcfg-183800843.txt 2013-07-16 18:39 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143384765.txt 2013-07-16 07:25 - 2013-07-16 07:25 - 00000117 _____ C:\Windows\system32\netcfg-143367468.txt 2013-07-16 03:25 - 2013-07-16 03:25 - 00000117 _____ C:\Windows\system32\netcfg-128966765.txt 2013-07-16 02:59 - 2013-07-16 02:59 - 00000117 _____ C:\Windows\system32\netcfg-127434656.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-96911593.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111329546.txt 2013-07-15 22:31 - 2013-07-15 22:31 - 00000117 _____ C:\Windows\system32\netcfg-111318250.txt 2013-07-15 18:00 - 2013-07-15 18:00 - 00000117 _____ C:\Windows\system32\netcfg-95086156.txt 2013-07-15 17:59 - 2013-07-15 17:59 - 00000117 _____ C:\Windows\system32\netcfg-95037218.txt 2013-07-15 17:59 - 2013-07-15 17:19 - 00000117 _____ C:\Windows\system32\netcfg-92605953.txt 2013-07-15 16:03 - 2013-07-15 16:03 - 00000117 _____ C:\Windows\system32\netcfg-88044562.txt 2013-07-15 14:48 - 2013-07-15 14:48 - 00000117 _____ C:\Windows\system32\netcfg-83560750.txt 2013-07-15 14:41 - 2013-07-15 14:41 - 00000117 _____ C:\Windows\system32\netcfg-83120203.txt 2013-07-15 14:20 - 2013-07-15 14:20 - 00000117 _____ C:\Windows\system32\netcfg-81866671.txt 2013-07-15 14:00 - 2013-07-15 14:00 - 00142304 _____ C:\Users\Monika\Downloads\1019914_6_2013_Tiefert.pdf.zip 2013-07-15 10:53 - 2013-07-15 10:53 - 00000117 _____ C:\Windows\system32\netcfg-69478109.txt 2013-07-15 10:25 - 2013-07-15 10:25 - 00000117 _____ C:\Windows\system32\netcfg-67785421.txt 2013-07-15 10:25 - 2013-07-15 07:41 - 00000117 _____ C:\Windows\system32\netcfg-57963437.txt 2013-07-15 07:09 - 2013-07-15 07:09 - 00000117 _____ C:\Windows\system32\netcfg-56011750.txt 2013-07-15 07:09 - 2013-07-15 07:08 - 00000117 _____ C:\Windows\system32\netcfg-55966531.txt 2013-07-14 17:23 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-07-14 17:06 - 2013-07-14 17:06 - 00000000 ____D C:\Users\Monika\Documents\OneNote-Notizbücher 2013-07-14 16:59 - 2013-07-14 16:59 - 00000117 _____ C:\Windows\system32\netcfg-5005468.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4638937.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4633625.txt 2013-07-14 16:52 - 2013-07-14 16:52 - 00000117 _____ C:\Windows\system32\netcfg-4614875.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000156 _____ C:\Windows\system32\netcfg-3963328.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3949421.txt 2013-07-14 16:41 - 2013-07-14 16:41 - 00000117 _____ C:\Windows\system32\netcfg-3925937.txt 2013-07-14 16:39 - 2013-07-14 16:38 - 00000156 _____ C:\Windows\system32\netcfg-3781421.txt 2013-07-14 16:36 - 2013-07-14 16:36 - 00000117 _____ C:\Windows\system32\netcfg-3640453.txt 2013-07-14 16:35 - 2013-07-14 15:55 - 00000117 _____ C:\Windows\system32\netcfg-1180015.txt 2013-07-14 15:36 - 2013-07-14 15:36 - 00000117 _____ C:\Windows\system32\netcfg-32500.txt 2013-07-14 15:28 - 2013-07-14 15:28 - 00000000 _____ C:\Users\Monika\Sti_Trace.log 2013-07-14 15:25 - 2013-07-14 15:25 - 00000117 _____ C:\Windows\system32\netcfg-42218.txt 2013-07-14 15:25 - 2013-07-14 14:34 - 00421792 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-14 15:22 - 2013-07-14 15:22 - 00000938 _____ C:\Users\Public\Desktop\EPSON Scan.lnk 2013-07-14 15:22 - 2013-07-14 15:22 - 00000000 ____D C:\Program Files (x86)\epson 2013-07-14 15:21 - 2013-07-12 18:52 - 00000000 ____D C:\Eimer 2013-07-14 15:00 - 2013-07-14 15:00 - 00028574 _____ C:\Users\Monika\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx 2013-07-14 15:00 - 2013-07-14 15:00 - 00008833 _____ C:\Users\Monika\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx 2013-07-14 14:59 - 2013-07-12 20:14 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-14 14:58 - 2012-07-26 07:26 - 00000199 _____ C:\Windows\win.ini 2013-07-14 14:57 - 2012-12-21 20:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-14 14:26 - 2013-07-14 14:25 - 00003548 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask 2013-07-14 14:26 - 2013-07-12 18:37 - 00000000 ___RD C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-52546.txt 2013-07-14 14:25 - 2013-07-14 14:25 - 00000117 _____ C:\Windows\system32\netcfg-51140.txt 2013-07-14 14:25 - 2013-07-14 14:21 - 00000000 ___RD C:\Windows\BrowserChoice 2013-07-14 14:25 - 2012-10-22 04:30 - 00000000 ____D C:\ProgramData\PRICache 2013-07-14 14:22 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2013-07-14 14:22 - 2012-07-26 09:52 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-14 14:21 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ToastData 2013-07-14 14:20 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-14 14:20 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-14 14:14 - 2013-07-14 14:14 - 00000000 ____D C:\Program Files\Common Files\EPSON 2013-07-14 14:13 - 2013-07-14 14:13 - 00000000 _____ C:\Users\Monika\Desktop\Neues Textdokument.txt 2013-07-14 14:11 - 2013-07-14 14:11 - 00000117 _____ C:\Windows\system32\netcfg-19600390.txt 2013-07-14 14:10 - 2013-07-14 14:09 - 00000117 _____ C:\Windows\system32\netcfg-19483937.txt 2013-07-14 14:03 - 2013-07-14 14:03 - 00000117 _____ C:\Windows\system32\netcfg-19143062.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19110812.txt 2013-07-14 14:02 - 2013-07-14 14:02 - 00000117 _____ C:\Windows\system32\netcfg-19103671.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00001138 _____ C:\Windows\system32\netcfg-19006156.txt 2013-07-14 14:01 - 2013-07-14 14:01 - 00000117 _____ C:\Windows\system32\netcfg-19007046.txt 2013-07-14 13:58 - 2013-07-14 13:58 - 00002974 _____ C:\Windows\avmadd32.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00002596 _____ C:\Windows\avmadd321.log 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!BoxPrint 2013-07-14 13:58 - 2013-07-14 13:58 - 00000000 ____D C:\Program Files (x86)\FRITZ!Box 2013-07-14 13:41 - 2013-07-14 08:49 - 00000000 ____D C:\Program Files (x86)\proWIN Office 2013-07-14 13:30 - 2013-07-14 13:23 - 01077248 _____ C:\Users\Monika\Documents\Pro Win A.pwbackup 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16605453.txt 2013-07-14 13:21 - 2013-07-14 13:21 - 00000117 _____ C:\Windows\system32\netcfg-16604921.txt 2013-07-14 08:51 - 2013-07-14 08:49 - 01077248 _____ C:\Users\Monika\Documents\ProWin.pwbackup 2013-07-14 08:49 - 2013-07-14 08:49 - 00002951 _____ C:\Users\Monika\Desktop\proWIN Office.lnk 2013-07-14 08:49 - 2013-07-14 08:49 - 00000094 _____ C:\Users\Monika\AppData\Local\fusioncache.dat 2013-07-14 08:49 - 2013-07-14 08:49 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\proWIN Office 2013-07-14 08:49 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\Registration 2013-07-14 08:48 - 2013-07-14 08:48 - 01772970 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-13 20:35 - 2013-07-13 20:35 - 00000000 ____D C:\Users\Monika\AppData\Local\Apps\2.0 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84742140.txt 2013-07-13 20:17 - 2013-07-13 20:17 - 00000117 _____ C:\Windows\system32\netcfg-84725312.txt 2013-07-12 20:46 - 2012-10-22 04:57 - 00000000 ____D C:\ProgramData\OEM 2013-07-12 20:46 - 2012-10-22 04:54 - 00000000 ____D C:\Program Files\Common Files\mcafee 2013-07-12 20:26 - 2013-07-12 20:26 - 00003030 _____ C:\Windows\System32\Tasks\{67E5FAFC-E470-4191-B77D-8CDABD36038F} 2013-07-12 20:22 - 2013-07-12 20:22 - 00000000 ____D C:\Neuer Ordner 2013-07-12 20:18 - 2013-07-12 20:18 - 00000000 ____D C:\Windows\PCHEALTH 2013-07-12 20:18 - 2012-07-26 09:52 - 00000000 ____D C:\Windows\ShellNew 2013-07-12 20:16 - 2013-07-12 20:16 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files\Microsoft Office 2013-07-12 20:15 - 2013-07-12 20:15 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ___RD C:\MSOCache 2013-07-12 20:14 - 2013-07-12 20:14 - 00000000 ____D C:\Users\Monika\AppData\Local\Microsoft Help 2013-07-12 20:13 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\restore 2013-07-12 18:50 - 2012-07-26 09:21 - 00019052 _____ C:\Windows\setupact.log 2013-07-12 18:47 - 2013-07-12 18:47 - 00000000 ____D C:\Users\Monika\PicStream 2013-07-12 18:45 - 2013-07-12 18:45 - 00000000 ____D C:\Users\Monika\AppData\Local\EgisTec IPS 2013-07-12 18:45 - 2012-10-22 04:58 - 00000000 ____D C:\ProgramData\EgisTec IPS 2013-07-12 18:44 - 2013-07-12 18:44 - 00000000 ____D C:\ProgramData\EgisTec 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files\Preload 2013-07-12 18:37 - 2013-07-12 18:37 - 00000000 ____D C:\Program Files (x86)\OEM 2013-07-12 18:37 - 2012-10-19 09:06 - 00000000 ____D C:\OEM 2013-07-12 18:36 - 2013-07-12 18:36 - 00001736 _____ C:\Users\Public\Desktop\Online kaufen.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00001446 _____ C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Users\Monika\AppData\Roaming\Macromedia 2013-07-12 18:36 - 2013-07-12 18:36 - 00000000 ____D C:\Program Files\Accessory Store 2013-07-12 18:35 - 2013-07-12 18:35 - 00000020 ___SH C:\Users\Monika\ntuser.ini 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Vorlagen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Startmenü 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Netzwerkumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Lokale Einstellungen 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Eigene Dateien 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Druckumgebung 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Musik 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Documents\Eigene Bilder 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Verlauf 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\AppData\Local\Anwendungsdaten 2013-07-12 18:35 - 2013-07-12 18:35 - 00000000 _SHDL C:\Users\Monika\Anwendungsdaten 2013-07-12 18:35 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2013-07-12 18:35 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-228734.txt 2013-07-12 18:22 - 2013-07-12 18:22 - 00000117 _____ C:\Windows\system32\netcfg-225843.txt ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe [2012-07-26 01:55] - [2012-07-26 05:08] - 0516608 ____A (Microsoft Corporation) 93AB226C07A9789B2EC7B41F73602F76 C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe [2012-07-26 02:00] - [2012-07-26 05:08] - 0030208 ____A (Microsoft Corporation) 57350BEDE3834915B6145B67C71C7BDA C:\Windows\SysWOW64\svchost.exe [2012-07-26 02:01] - [2012-07-26 05:20] - 0023040 ____A (Microsoft Corporation) 0A175AF8B65797BD22C11903A8BFEB2D C:\Windows\System32\services.exe [2012-07-26 07:26] - [2012-07-26 07:26] - 0410624 ____A (Microsoft Corporation) 754A2CC1F32107EA87CBD305ABE3E618 C:\Windows\System32\User32.dll [2012-07-26 02:01] - [2012-07-26 05:07] - 1342464 ____A (Microsoft Corporation) 1D08594400EE1B500B93256795FE30AE C:\Windows\SysWOW64\User32.dll [2012-07-26 02:02] - [2012-07-26 02:02] - 1126912 ____A (Microsoft Corporation) 8A93F57772FD24959F76A65FF79D282D C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-31 10:19 ==================== End Of Log ============================ |
01.08.2013, 12:34 | #12 |
| LyricsContainer loswerden und hier die beiden anderen Logfiles: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=fcdef801b6f3fc4d9edcc3e16c90c5d8 # engine=14602 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-07-31 09:51:31 # local_time=2013-07-31 11:51:31 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=3590 16777213 100 87 45227 194325677 0 0 # compatibility_mode=5893 16776574 100 94 1503037 34813602 0 0 # scanned=342062 # found=2 # cleaned=0 # scan_time=16344 sh=02D287138E3A05134E7572E31B6B8DCA30C044B5 ft=1 fh=72a72576d5d2fb55 vn="multiple threats" ac=I fn="C:\Users\Monika\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6C7578C2\WebCakesetup[1].exe" sh=0BBA1BA510A37674A76AD865B2F3EF27FD162550 ft=0 fh=0000000000000000 vn="HTML/ScrInject.B.Gen virus" ac=I fn="C:\Users\Monika\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7D8570QD\popupdater[1].htm" Code:
ATTFilter Results of screen317's Security Check version 0.99.71 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender Norton AntiVirus WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Adobe Flash Player 11.8.800.94 Adobe Reader XI Mozilla Firefox (22.0) ````````Process Check: objlist.exe by Laurent```````` Norton ccSvcHst.exe Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Norton AntiVirus Engine 20.4.0.40 ccSvcHst.exe Malwarebytes' Anti-Malware mbamscheduler.exe Symantec Norton Online Backup NOBuAgent.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` Die Probleme mit der Werbung sind weg (vielen dank ^^) aber es gibt immernoch ein Problem damit, das der Pc recht langsam ist (ich weiß das er eigentlich schneller sein müsste) Außerdem funktioniert der Internetexplorer nicht mehr, man kann ihn noch öffnen aber wenn man versucht eine Internetseite zu besuchen wird diese nicht aufgerufen (egal ob man die seite eingibt oder auf einen link klickt). Er scheint die Seite zu laden, braucht dafür aber eine Ewigkeit oder schaft es einfach nicht. |
01.08.2013, 13:04 | #13 |
/// the machine /// TB-Ausbilder | LyricsContainer loswerden Setze folgendermassen den Internet Explorer zurück:
Downloade Dir bitte TFC ( von Oldtimer ) und speichere die Datei auf dem Desktop. Schließe nun alle offenen Programme und trenne Dich von dem Internet. Doppelklick auf die TFC.exe und drücke auf Start. Sollte TFC nicht alle Dateien löschen können wird es einen Neustart verlangen. Dies bitte zulassen. Neu booten. Was macht der IE und der Speed?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
01.08.2013, 20:47 | #14 |
| LyricsContainer loswerden Der IE funktioniert wieder normal und auch die Geschwindigkeit ist wieder in Ordnung, vielen Dank ^^ Muss jetzt noch etwas getan werden? |
02.08.2013, 10:59 | #15 |
/// the machine /// TB-Ausbilder | LyricsContainer loswerden Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |