![]() ![]() | ![]() Iminent Trojaner Entfernung Hilfe Hallo liebe Community, habe mir vor genau 2 Tagen einen nagelneues Notebook geschafft. Und direkt, keine 5 Minuten nach Installation des Betriebssystems, werde ich von Spams im Explorer zugemüllt. Daraufhin "Kaspersky" installiert und das große Scan Programm durchgeführt: 4 Verdächtige Programme: "HEUR:Trojan.Win.32.killfiles" Als Kaspersky das erkannt hat, habe ich dies vom Virenprogramm löschen lassen. Danach habe ich manuell über Systemsteuerung versucht, das Programm zu löschen. Keine Reaktion. Bitte Bitte helft mir. Habe Absolout keine Ahnung von PCs, laptops und co. und weiß nicht mehr weiter.. ![]() Falls ihr noch mehr infos braucht, ich stehe zur Verfügung. |
![]() | #2 |
Hallo und
Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die jemals fündig geworden?

Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520

Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs posten!

Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
![]() | #3 |
![]() ![]() | ![]() Iminent Trojaner Entfernung HilfeCode:
ATTFilter Typ: trojanisches Programm (3) HEUR:Trojan.Win32.KillFiles Gelöscht 30.07.2013 06:19:50 C:\Documents and Settings\USER\AppData\Local\Temp\Iminent\MinibarChrome.exe//Binaries\ ChromeInstaller.exe HEUR:Trojan.Win32.KillFiles Gelöscht 30.07.2013 05:59:16 C:\Documents and Settings\USER\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\H3PUVDYG\MinibarChrome[1].exe//Binaries\ ChromeInstaller.exe HEUR:Trojan.Win32.KillFiles Nicht gefunden 30.07.2013 05:53:03 c:\Users\USER\AppData\Local\Temp\Iminent\MinibarChrome.exe//Binaries\ ChromeInstaller.exe Typ: Unbekannt (2) MinibarChrome.exe Gelöscht 30.07.2013 06:19:50 C:\Documents and Settings\USER\AppData\Local\Temp\Iminent\ MinibarChrome.exe MinibarChrome[1].exe Gelöscht 30.07.2013 05:59:16 C:\Documents and Settings\USER\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\H3PUVDYG\ MinibarChrome[1].exe Code:
ATTFilter Typ: trojanisches Programm (5) HEUR:Trojan.Win32.KillFiles Gelöscht 29.07.2013 17:35:15 C:\Users\USER\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl\Binaries\ ChromeInstaller.exe HEUR:Trojan.Win32.Generic Gelöscht 29.07.2013 03:15:02 C:\Documents and Settings\USER\Downloads\ setup (1).exe Trojan-Dropper.Win32.FrauDrop.abbxz Gelöscht 29.07.2013 03:14:49 C:\Documents and Settings\USER\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6SI85X6N\ QuickShare1_20130718[1] Trojan.Win32.StartPage.bjij Gelöscht 29.07.2013 03:14:49 C:\Documents and Settings\USER\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6SI85X6N\ adk_ar_2013741554_qvo6[1].exe HEUR:Trojan.Win32.Generic Nicht gefunden 29.07.2013 02:45:50 C:\ProgramData\eSafe\ eGdpSvc.exe Typ: Phishing-Link (2) Schädlicher Link Inaktiv 29.07.2013 05:08:53 hxxp://privater-treff.com/011_da_16/ ?WMID=86723&CTRLID=Jlc9MTA%3D0&AC=1 Schädlicher Link Inaktiv 29.07.2013 05:08:53 hxxp://privater-treff.com/ favicon.ico Typ: Adware (4) not-a-virus:AdWare.Win32.Lyckriks.b Gelöscht 29.07.2013 04:50:59 C:\Program Files (x86)\LyriXeeker\125.crx// manifest.json not-a-virus:AdWare.Win32.Lyckriks.b Gelöscht 29.07.2013 03:16:11 C:\Program Files (x86)\LyriXeeker\ chrome.manifest not-a-virus:AdWare.Win32.Lyckriks.b Gelöscht 29.07.2013 03:23:31 c:\documents and settings\USER\appdata\local\temp\is357113909\5543505_setup.exe// chrome.manifest not-a-virus:AdWare.Win32.Lyckriks.b Gelöscht 29.07.2013 03:23:24 c:\documents and settings\USER\appdata\local\temp\is357113909\5543505_setup.exe//125.crx// manifest.json Typ: Unbekannt (2) 125.crx Gelöscht 29.07.2013 04:50:59 C:\Program Files (x86)\LyriXeeker\ 125.crx 5543505_setup.exe Gelöscht 29.07.2013 03:23:31 c:\documents and settings\USER\appdata\local\temp\is357113909\ 5543505_setup.exe War der Scan von gestern und heute Morgen. |
![]() | #4 |
Bevor wir uns an die Arbeit machen, möchte ich dich bitten, folgende Punkte vollständig und aufmerksam zu lesen.
Note: Sollte ich drei Tage nichts von mir hören lassen, so melde dich bitte in diesem Strang => Erinnerung an meinem Thread. Nervige "Wann geht es weiter" Nachrichten enden mit Schließung deines Themas. Auch ich habe ein Leben abseits des Trojaner-Boards.

Scan mit Farbar's Recovery Scan Tool (FRST)

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
![]() | #5 |
![]() ![]() | ![]() Iminent Trojaner Entfernung Hilfe Guten Morgen Chef.. Gibt mehr oder weniger schlechte Neuigkeiten. Habe gestern, bevor ich zur Arbeit (Nachtschicht) gefahren bin, meinem Bruder von dem ganzen vorfall auf dem Notebook erzählt. Jetzt komme ich gerade die Türe rein, da liegt mein Notebook, mit einer Notiz, dass mein "super Bruder, der ja soviel Ahnung von der Materie hat" das Problem gelöst hat. Er hat, so auf der Notiz, ADWCleaner benutzt. Anbei sende ich dir das Ergebnis, welches der "Herr Bruder" Gott sei Dank auf dem Desktop gespeichert hat. Bitte sag mir, dass er nicht noch mehr ruiniert hat, als es sowieso schon ist. Ich verzweifel noch.. ![]() Soll ich jetzt trotzdem "Scan mit Farbar's Recovery Scan Tool (FRST)" laden und nach deinen Anweisungen ausführen. Ansonsten warte ich auf Befehle deinerseits. ![]() Code:
ATTFilter # AdwCleaner v2.306 - Datei am 30/07/2013 um 23:10:20 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Ultimate Service Pack 1 (64 bits) # Benutzer : USER - USER-PC # Bootmodus : Normal # Ausgeführt unter : C:\Users\USER\Downloads\adwcleaner.exe # Option [Löschen] **** [Dienste] **** Gestoppt & Gelöscht : SProtection ***** [Dateien / Ordner] ***** Datei Desinfiziert : C:\Users\USER\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Datei Desinfiziert : C:\Users\USER\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk Datei Desinfiziert : C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk Datei Desinfiziert : C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Datei Gelöscht : C:\Windows\Tasks\DSite.job Ordner Gelöscht : C:\Program Files (x86)\Common Files\337 Ordner Gelöscht : C:\Program Files (x86)\Common Files\Umbrella Ordner Gelöscht : C:\Program Files (x86)\DealPly Ordner Gelöscht : C:\Program Files (x86)\Iminent Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\ProgramData\eSafe Ordner Gelöscht : C:\ProgramData\Iminent Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent Ordner Gelöscht : C:\ProgramData\visualbee Ordner Gelöscht : C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmfnfnpmhcllokmkepffndflpnadjmma Ordner Gelöscht : C:\Users\USER\AppData\Local\Temp\Iminent Ordner Gelöscht : C:\Users\USER\AppData\Local\visualbeeexe Ordner Gelöscht : C:\Users\USER\AppData\LocalLow\delta Ordner Gelöscht : C:\Users\USER\AppData\Roaming\BabSolution Ordner Gelöscht : C:\Users\USER\AppData\Roaming\Babylon Ordner Gelöscht : C:\Users\USER\AppData\Roaming\DealPly Ordner Gelöscht : C:\Users\USER\AppData\Roaming\DSite Ordner Gelöscht : C:\Users\USER\AppData\Roaming\eIntaller Ordner Gelöscht : C:\Users\USER\AppData\Roaming\Iminent Ordner Gelöscht : C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\BabSolution Schlüssel Gelöscht : HKCU\Software\DataMngr Schlüssel Gelöscht : HKCU\Software\DealPly Schlüssel Gelöscht : HKCU\Software\Iminent Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF7BD87A-8024-11E2-F316-F3E56188709B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311341138} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF7BD87A-8024-11E2-F316-F3E56188709B} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\DealPly Schlüssel Gelöscht : HKCU\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033438.BHO Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033438.BHO.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033438.Sandbox Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CrossriderApp0033438.Sandbox.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344344438} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} Schlüssel Gelöscht : HKLM\Software\DataMngr Schlüssel Gelöscht : HKLM\Software\DealPly Schlüssel Gelöscht : HKLM\Software\Desksvc Schlüssel Gelöscht : HKLM\Software\eSafeSecControl Schlüssel Gelöscht : HKLM\Software\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\QuickShare_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamUpdater_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311341138} Schlüssel Gelöscht : HKLM\Software\qvo6Software Schlüssel Gelöscht : HKLM\Software\Umbrella Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{11111111-1111-1111-1111-110311341138} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22222222-2222-2222-2222-220322342238} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{EF7BD87A-8024-11E2-F316-F3E56188709B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{55555555-5555-5555-5555-550355345538} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{66666666-6666-6666-6666-660366346638} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311341138} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF7BD87A-8024-11E2-F316-F3E56188709B} Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DealPly Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355345538} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366346638} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger] Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16635 Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Default_Page_URL] = hxxp://www.qvo6.com/?utm_source=b&utm_medium=adk&from=adk&uid=WDCXWD5000LPVX-22V0TT0_WD-WX71A23N0729N0729&ts=1375057982 --> hxxp://www.google.com -\\ Mozilla Firefox v22.0 (de) Datei : C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\663fc740.default\prefs.js [OK] Die Datei ist sauber. ************************* AdwCleaner[R1].txt - [26753 octets] - [30/07/2013 23:09:47] AdwCleaner[S1].txt - [25484 octets] - [30/07/2013 23:10:20] ########## EOF - C:\AdwCleaner[S1].txt - [25545 octets] ########## |
![]() | #6 |
Ja doch, adwCleaner ist ok

Den hätte ich später auch aufgegeben

Führe zusätzlich bitte nochmal JRT aus und mach dann das Log mit Farbars Tool

JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
![]() | #7 |
![]() ![]() | ![]() Iminent Trojaner Entfernung Hilfe Da hat mein Bruder ja nochmal Glück gehabt.. ![]() So. Hier die Logfile: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.2.9 (07.30.2013:1) OS: Windows 7 Ultimate x64 Ran by USER on 31.07.2013 at 14:53:59,73 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\visualbee Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\visualbee ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\USER\appdata\local\visualbeeclient" Successfully deleted: [Folder] "C:\Program Files (x86)\driver-soft" ~~~ FireFox Emptied folder: C:\Users\USER\AppData\Roaming\mozilla\firefox\profiles\663fc740.default\minidumps [3 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 31.07.2013 at 14:59:57,03 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Ich warte auf deine weiteren Anweisungen, Boss! ![]() |
![]() | #8 |
Ich warte auf Farbar
![]() | #9 |
![]() ![]() | ![]() Iminent Trojaner Entfernung Hilfe Sooooo.. ![]() Wie aufgetragen, Cheffe! Farbar: FRST log: Code:
ATTFilter Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WlanNetService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (MSI) C:\Program Files (x86)\SCM\Radio Manager.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [BtServer] - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [452608 2013-01-28] (Realtek Semiconductor Corporation) HKLM\...\Run: [IAStorIcon] - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2875728 2013-03-04] (ELAN Microelectronics Corp.) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-07-03] (NVIDIA Corporation) HKLM\...\Run: [Radio Manager] - C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-04-01] (MSI) HKLM\...\Run: [SCM] - C:\Program Files (x86)\SCM\SCM.exe [407968 2013-04-01] (MSI) MountPoints2: {747a19c9-f7b0-11e2-933a-806e6f6e6963} - E:\Autorun.exe MountPoints2: {7840fd75-f7d5-11e2-ab2c-806e6f6e6963} - E:\CDSetup.exe MountPoints2: {a1c4c90a-f7ac-11e2-9ea9-bdf80bd1a8f2} - F:\pushinst.exe HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation) HKLM-x32\...\Run: [AVMWlanClient] - C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-05-31] (Apple Inc.) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356376 2013-07-29] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2255184 2013-06-28] (LogMeIn Inc.) AppInit_DLLs: C:\Windows\system32\nvinitx.dll [266448 2013-06-21] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [214448 2013-06-21] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp SearchScopes: HKLM - DefaultScope value is missing. BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Winsock: Catalog9 01 %SYSTEMROOT%\system32\BfLLR.dll [196096] (Bigfoot Networks, Inc.) Winsock: Catalog9 02 %SYSTEMROOT%\system32\BfLLR.dll [196096] (Bigfoot Networks, Inc.) Winsock: Catalog9 03 %SYSTEMROOT%\system32\BfLLR.dll [196096] (Bigfoot Networks, Inc.) Winsock: Catalog9 04 %SYSTEMROOT%\system32\BfLLR.dll [196096] (Bigfoot Networks, Inc.) Winsock: Catalog9 05 %SYSTEMROOT%\system32\BfLLR.dll [196096] (Bigfoot Networks, Inc.) Winsock: Catalog9 06 %SYSTEMROOT%\system32\BfLLR.dll [196096] (Bigfoot Networks, Inc.) Winsock: Catalog9 18 %SYSTEMROOT%\system32\BfLLR.dll [196096] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 01 %SYSTEMROOT%\system32\BfLLR.dll [216064] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 02 %SYSTEMROOT%\system32\BfLLR.dll [216064] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 03 %SYSTEMROOT%\system32\BfLLR.dll [216064] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 04 %SYSTEMROOT%\system32\BfLLR.dll [216064] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 05 %SYSTEMROOT%\system32\BfLLR.dll [216064] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 06 %SYSTEMROOT%\system32\BfLLR.dll [216064] (Bigfoot Networks, Inc.) Winsock: Catalog9-x64 18 %SYSTEMROOT%\system32\BfLLR.dll [216064] (Bigfoot Networks, Inc.) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\663fc740.default FF Homepage: hxxp://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR Extension: () - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\ CHR Extension: () - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail\ CHR Extension: (Plus-HD-2.5) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\iefogiieekeeeeaiklglonbockmhmkgd\1.23.8_0 CHR Extension: () - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\ CHR Extension: () - C:\Users\USER\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\ CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx ==================== Services (Whitelisted) ================= R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356376 2013-07-29] (Kaspersky Lab ZAO) R2 AvrcpService; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [29184 2012-12-26] (Realtek Semiconductor Corporation) R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [39424 2012-12-07] () R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-05-08] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-08] (Intel Corporation) R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-04-01] (Micro-Star International Co., Ltd.) R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [495616 2013-03-15] () R2 RtkBleServ; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe [39424 2012-12-07] (Realtek Semiconductor Corporation) ==================== Drivers (Whitelisted) ==================== S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin) R1 BfLwf; C:\Windows\System32\DRIVERS\bflwfx64.sys [66928 2013-03-15] (Qualcomm Atheros, Inc.) S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-03-22] (Intel Corporation) R3 Ke2200; C:\Windows\System32\DRIVERS\e22w7x64.sys [165824 2013-03-15] (Qualcomm Atheros, Inc.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-07-29] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-10-25] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-07-29] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-07-29] (Kaspersky Lab ZAO) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99800 2013-05-08] (Intel Corporation) R3 RtkBtFilter; C:\Windows\System32\DRIVERS\RtkBtfilter.sys [518800 2012-12-06] (Realtek Semiconductor Corporation) R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [407112 2013-04-28] (Realsil Semiconductor Corporation) R3 RTWlanE; C:\Windows\System32\DRIVERS\rtwlane.sys [1514568 2013-05-02] (Realtek Semiconductor Corporation ) S3 athr; system32\DRIVERS\athrx.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-31 17:41 - 2013-07-31 17:41 - 00000000 ____D C:\FRST 2013-07-31 17:40 - 2013-07-31 17:40 - 01781589 _____ (Farbar) C:\Users\USER\Downloads\FRST64.exe 2013-07-31 17:08 - 2013-07-31 17:08 - 00000056 _____ C:\Windows\setupact.log 2013-07-31 17:08 - 2013-07-31 17:08 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 14:59 - 2013-07-31 14:59 - 00001055 _____ C:\Users\USER\Desktop\JRT.txt 2013-07-31 14:53 - 2013-07-31 14:53 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\USER\Downloads\JRT.exe 2013-07-31 14:53 - 2013-07-31 14:53 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 14:51 - 2013-07-31 14:51 - 00000000 ____D C:\Users\USER\Downloads\JRT_5.2.8 2013-07-31 14:49 - 2013-07-31 14:49 - 00003126 _____ C:\Windows\System32\Tasks\{E5C2CCEF-E68E-469B-ABC9-E635DF67627A} 2013-07-31 05:32 - 2009-03-18 18:35 - 00033856 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys 2013-07-31 05:31 - 2013-07-31 05:31 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-31 01:09 - 2013-07-31 05:46 - 00025496 _____ C:\Users\USER\Desktop\AdwCleaner[S1]neu.txt 2013-07-30 19:15 - 2013-07-31 16:49 - 00000000 ____D C:\Users\USER\AppData\Local\LogMeIn Hamachi 2013-07-30 19:14 - 2013-07-31 05:31 - 00000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2013-07-30 19:13 - 2013-07-30 19:13 - 04292608 _____ C:\Users\USER\Downloads\hamachi_2.1.0.362.msi 2013-07-30 19:12 - 2013-07-30 19:12 - 00000904 _____ C:\Users\Public\Desktop\Emergency4 spielen.lnk 2013-07-30 18:49 - 2013-07-31 01:02 - 00025515 _____ C:\Users\USER\Desktop\AdwCleaner[S1].txt 2013-07-30 18:10 - 2013-07-30 18:10 - 00025515 _____ C:\AdwCleaner[S1].txt 2013-07-30 18:09 - 2013-07-30 18:10 - 00026753 _____ C:\AdwCleaner[R1].txt 2013-07-30 18:08 - 2013-07-30 18:08 - 00666633 _____ C:\Users\USER\Downloads\adwcleaner.exe 2013-07-30 17:43 - 2013-07-30 17:43 - 00001864 _____ C:\Users\USER\Desktop\29.7.13.txt 2013-07-30 17:43 - 2013-07-30 17:43 - 00000909 _____ C:\Users\USER\Desktop\30.7.13.txt 2013-07-30 15:19 - 2013-04-17 09:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-07-30 15:19 - 2013-04-17 08:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-07-30 06:47 - 2013-07-30 06:47 - 00000000 ____D C:\Users\USER\AppData\Local\Macromedia 2013-07-30 06:44 - 2013-07-30 06:47 - 00000000 ____D C:\Users\USER\AppData\Local\Adobe 2013-07-30 05:35 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-30 05:35 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-29 20:12 - 2013-07-29 20:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-29 20:12 - 2013-07-29 20:12 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-07-29 20:12 - 2013-07-29 20:12 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-07-29 20:12 - 2013-07-29 20:12 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-07-29 20:12 - 2013-07-29 20:12 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-07-29 20:12 - 2013-07-29 20:12 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-07-29 20:12 - 2013-07-29 20:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-07-29 20:12 - 2013-07-29 20:12 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-07-29 20:12 - 2013-07-29 20:12 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-07-29 20:12 - 2013-07-29 20:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-07-29 20:10 - 2013-07-29 20:10 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-07-29 20:05 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2013-07-29 19:56 - 2012-12-16 19:11 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-07-29 19:56 - 2012-12-16 16:45 - 00367616 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-07-29 19:56 - 2012-12-16 16:13 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2013-07-29 19:56 - 2012-12-16 16:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2013-07-29 19:56 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2013-07-29 19:56 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2013-07-29 19:56 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2013-07-29 19:56 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2013-07-29 19:56 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2013-07-29 19:56 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2013-07-29 19:56 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2013-07-29 19:56 - 2012-06-02 16:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-07-29 19:49 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2013-07-29 19:49 - 2012-03-01 08:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-07-29 19:49 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2013-07-29 19:49 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-07-29 19:49 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2013-07-29 19:15 - 2013-07-29 19:15 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\Users\USER\AppData\Roaming\Mozilla 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\Users\USER\AppData\Local\Mozilla 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-29 19:14 - 2013-07-29 19:14 - 21703480 _____ (Mozilla) C:\Users\USER\Downloads\Firefox_Setup_22.0.exe 2013-07-29 18:21 - 2013-07-30 19:34 - 00000000 ____D C:\Users\USER\AppData\Local\Winterberg-Modifications 2013-07-29 17:49 - 2013-05-08 08:39 - 01910632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-07-29 17:49 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2013-07-29 17:49 - 2013-04-10 08:01 - 00983400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-07-29 17:49 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-07-29 17:49 - 2013-03-19 07:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-07-29 17:49 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2013-07-29 17:49 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2013-07-29 17:49 - 2013-02-27 07:52 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-07-29 17:49 - 2013-02-27 07:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-07-29 17:49 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-07-29 17:49 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2013-07-29 17:49 - 2013-02-27 06:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-07-29 17:49 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-07-29 17:49 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-07-29 17:49 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2013-07-29 17:49 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-07-29 17:49 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2013-07-29 17:49 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-07-29 17:49 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2013-07-29 17:49 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2013-07-29 17:49 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2013-07-29 17:49 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2013-07-29 17:49 - 2012-11-09 07:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-07-29 17:49 - 2012-11-09 06:42 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-07-29 17:49 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2013-07-29 17:49 - 2012-11-01 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2013-07-29 17:49 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2013-07-29 17:49 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2013-07-29 17:49 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2013-07-29 17:49 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2013-07-29 17:49 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2013-07-29 17:49 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2013-07-29 17:48 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-29 17:48 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-29 17:48 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-29 17:48 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-29 17:48 - 2013-01-04 07:46 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-07-29 17:48 - 2013-01-04 06:51 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-07-29 17:48 - 2013-01-04 04:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-07-29 17:48 - 2013-01-04 04:47 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-07-29 17:48 - 2013-01-04 04:47 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-07-29 17:48 - 2013-01-04 04:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-07-29 17:48 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2013-07-29 17:48 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2013-07-29 17:48 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2013-07-29 17:48 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2013-07-29 17:48 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2013-07-29 17:48 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2013-07-29 17:48 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2013-07-29 17:48 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2013-07-29 17:48 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2013-07-29 17:48 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2013-07-29 17:48 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2013-07-29 17:48 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2013-07-29 17:48 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2013-07-29 17:48 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2013-07-29 17:48 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2013-07-29 17:48 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2013-07-29 17:48 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2013-07-29 17:48 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2013-07-29 17:48 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2013-07-29 17:48 - 2012-11-30 07:45 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-07-29 17:48 - 2012-11-30 07:45 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-07-29 17:48 - 2012-11-30 07:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-07-29 17:48 - 2012-11-30 07:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-07-29 17:48 - 2012-11-30 07:41 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-07-29 17:48 - 2012-11-30 07:41 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-07-29 17:48 - 2012-11-30 06:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 05:23 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-07-29 17:48 - 2012-11-30 04:38 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 04:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 04:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 04:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-07-29 17:48 - 2012-11-30 01:17 - 00420064 _____ C:\Windows\SysWOW64\locale.nls 2013-07-29 17:48 - 2012-11-30 01:15 - 00420064 _____ C:\Windows\system32\locale.nls 2013-07-29 17:48 - 2012-11-20 07:48 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-07-29 17:48 - 2012-11-20 06:51 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-07-29 17:48 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2013-07-29 17:48 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2013-07-29 17:48 - 2012-11-01 06:47 - 01236992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2013-07-29 17:48 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2013-07-29 17:48 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2013-07-29 17:48 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2013-07-29 17:48 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2013-07-29 17:48 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2013-07-29 17:48 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2013-07-29 17:48 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2013-07-29 17:48 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2013-07-29 17:48 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2013-07-29 17:48 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2013-07-29 17:48 - 2012-08-24 20:05 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-07-29 17:48 - 2012-08-24 18:57 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-07-29 17:48 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2013-07-29 17:48 - 2012-08-11 02:56 - 00715776 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2013-07-29 17:48 - 2012-08-11 01:56 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2013-07-29 17:48 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2013-07-29 17:48 - 2010-06-26 05:55 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2013-07-29 17:48 - 2010-06-26 05:24 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2013-07-29 17:47 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2013-07-29 17:47 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-07-29 17:47 - 2012-11-22 07:44 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2013-07-29 17:47 - 2012-11-22 06:45 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2013-07-29 17:47 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2013-07-29 17:47 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2013-07-29 17:47 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-07-29 17:47 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2013-07-29 17:47 - 2012-07-06 22:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2013-07-29 17:47 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2013-07-29 17:47 - 2012-06-02 07:50 - 00458704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-07-29 17:47 - 2012-06-02 07:48 - 00151920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-07-29 17:47 - 2012-06-02 07:48 - 00095600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-07-29 17:47 - 2012-06-02 07:45 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-07-29 17:47 - 2012-06-02 06:40 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-07-29 17:47 - 2012-06-02 06:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-07-29 17:47 - 2012-06-02 06:34 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-07-29 17:47 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2013-07-29 17:47 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2013-07-29 17:47 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2013-07-29 17:47 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2013-07-29 17:46 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2013-07-29 17:46 - 2012-04-28 07:32 - 01112064 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2013-07-29 17:46 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2013-07-29 17:46 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2013-07-29 17:46 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2013-07-29 17:44 - 2013-07-29 17:44 - 00001162 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk 2013-07-29 17:44 - 2013-07-29 17:44 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2013-07-29 17:43 - 2013-07-29 17:43 - 05487912 _____ (TeamViewer GmbH) C:\Users\USER\Downloads\TeamViewer_Setup_de.exe 2013-07-29 17:42 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-29 17:42 - 2013-05-13 07:51 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-07-29 17:42 - 2013-05-13 07:51 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-07-29 17:42 - 2013-05-13 07:51 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-07-29 17:42 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2013-07-29 17:42 - 2013-05-13 06:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-07-29 17:42 - 2013-05-13 06:45 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-07-29 17:42 - 2013-05-13 06:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-07-29 17:42 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-07-29 17:42 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-07-29 17:42 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-07-29 17:42 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-07-29 17:42 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-07-29 17:42 - 2013-03-19 08:04 - 05550424 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-07-29 17:42 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2013-07-29 17:42 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2013-07-29 17:42 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2013-07-29 17:42 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2013-07-29 17:42 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2013-07-29 17:42 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2013-07-29 17:42 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2013-07-29 17:42 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2013-07-29 17:42 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2013-07-29 17:41 - 2013-03-19 07:46 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-07-29 17:41 - 2013-03-19 07:04 - 03968856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-07-29 17:41 - 2013-03-19 07:04 - 03913560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-07-29 17:41 - 2013-03-19 06:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-07-29 17:41 - 2013-03-19 05:06 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-07-29 17:39 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2013-07-29 17:38 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2013-07-29 17:38 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2013-07-29 17:37 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-07-29 17:37 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2013-07-29 17:37 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2013-07-29 17:37 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2013-07-29 17:35 - 2013-07-29 17:35 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-29 17:35 - 2013-07-29 17:35 - 00000000 ____D C:\Users\USER\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl 2013-07-29 17:34 - 2013-07-29 17:34 - 01067672 _____ C:\Users\USER\Downloads\setup (1).exe 2013-07-29 17:29 - 2013-07-29 17:35 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-07-29 17:29 - 2013-07-29 17:35 - 00000000 ____D C:\Users\USER\AppData\Roaming\Skype 2013-07-29 17:29 - 2013-07-29 17:29 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-29 17:28 - 2013-07-29 17:35 - 00000000 ____D C:\ProgramData\Skype 2013-07-29 17:26 - 2013-07-29 17:28 - 31954536 _____ (Skype Technologies S.A.) C:\Users\USER\Downloads\SkypeSetup66Full.exe 2013-07-29 17:19 - 2013-07-29 17:19 - 00001759 _____ C:\Users\Public\Desktop\Wegberg 6 starten.lnk 2013-07-29 17:15 - 2013-07-29 17:27 - 00474571 _____ C:\Users\USER\Downloads\WinterbergUpdater (1).exe 2013-07-29 17:14 - 2013-07-29 17:14 - 00000238 _____ C:\Users\USER\Downloads\onlineupdate (1).e4mod 2013-07-29 16:42 - 2013-07-29 16:42 - 00474571 _____ C:\Users\USER\Downloads\WinterbergUpdater.exe 2013-07-29 16:42 - 2013-07-29 16:42 - 00000238 _____ C:\Users\USER\Downloads\onlineupdate.e4mod 2013-07-29 16:31 - 2013-07-29 16:31 - 00003228 _____ C:\Windows\System32\Tasks\{E88C7E35-B17C-4033-BC75-9C6F1F87B6F3} 2013-07-29 16:06 - 2013-07-29 16:06 - 00003002 _____ C:\Windows\System32\Tasks\{0F4DE93C-4B1A-42CF-82FA-6F5EFFFAF858} 2013-07-29 16:05 - 2013-07-29 16:05 - 00003002 _____ C:\Windows\System32\Tasks\{E5CC6569-A8C6-4BAE-A851-06C582F749B9} 2013-07-29 16:03 - 2013-07-29 16:03 - 00003002 _____ C:\Windows\System32\Tasks\{B1D7A799-F91D-442A-B17B-4CD41460694E} 2013-07-29 03:46 - 2013-07-29 03:46 - 00000393 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Google.website 2013-07-29 03:41 - 2013-07-29 03:41 - 00000000 ____D C:\Windows\system32\appmgmt 2013-07-29 02:53 - 2013-07-29 02:53 - 00262144 _____ C:\Windows\system32\config\elam 2013-07-29 02:42 - 2013-07-31 17:08 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-07-29 02:42 - 2013-07-29 02:50 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2013-07-29 02:42 - 2013-07-29 02:50 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2013-07-29 02:42 - 2013-07-29 02:42 - 00001111 _____ C:\Users\Public\Desktop\Kaspersky Anti-Virus 2013.lnk 2013-07-29 02:42 - 2013-07-29 02:42 - 00000000 ____D C:\Windows\ELAMBKUP 2013-07-29 02:42 - 2013-07-29 02:42 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab 2013-07-29 02:42 - 2012-07-11 17:09 - 00064856 _____ (Kaspersky Lab) C:\Windows\system32\klfphc.dll 2013-07-29 02:39 - 2013-07-29 02:41 - 165141856 _____ (Kaspersky Lab) C:\Users\USER\Downloads\kav13.0.1.4190de-de.exe 2013-07-29 02:35 - 2013-07-29 02:37 - 165970472 _____ (Kaspersky Lab) C:\Users\USER\Downloads\kis13.0.1.4190DE_3960[1] 2013-07-29 02:34 - 2013-07-29 02:34 - 00000000 ____D C:\AMD 2013-07-29 02:33 - 2013-07-31 14:47 - 00001904 _____ C:\Windows\Tasks\Plus-HD-2.5-chromeinstaller.job 2013-07-29 02:33 - 2013-07-31 14:47 - 00001198 _____ C:\Windows\Tasks\Plus-HD-2.5-codedownloader.job 2013-07-29 02:33 - 2013-07-31 14:47 - 00001194 _____ C:\Windows\Tasks\Plus-HD-2.5-updater.job 2013-07-29 02:33 - 2013-07-31 14:47 - 00001098 _____ C:\Windows\Tasks\Plus-HD-2.5-enabler.job 2013-07-29 02:33 - 2013-07-29 02:34 - 00004224 _____ C:\Windows\System32\Tasks\Plus-HD-2.5-updater 2013-07-29 02:33 - 2013-07-29 02:34 - 00000000 ____D C:\Program Files (x86)\Plus-HD-2.5 2013-07-29 02:33 - 2013-07-29 02:33 - 00004228 _____ C:\Windows\System32\Tasks\Plus-HD-2.5-codedownloader 2013-07-29 02:33 - 2013-07-29 02:33 - 00004128 _____ C:\Windows\System32\Tasks\Plus-HD-2.5-enabler 2013-07-29 02:33 - 2013-07-29 02:33 - 00001224 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Create Amazing Presentations.lnk 2013-07-29 02:33 - 2013-07-29 02:33 - 00000000 ____D C:\Users\USER\AppData\Local\emaze 2013-07-29 01:47 - 2013-07-30 15:37 - 00000000 ____D C:\Users\USER\AppData\Local\FT Software Updates 2013-07-29 01:47 - 2013-07-29 01:47 - 00000000 ____D C:\Users\USER\AppData\Local\FT_Software 2013-07-29 01:36 - 2013-07-29 01:44 - 779536256 _____ (Marco H. ) C:\Users\USER\Downloads\wegberg_v6.exe 2013-07-29 01:28 - 2013-07-29 17:08 - 00000000 ____D C:\Program Files (x86)\sixteen tons entertainment 2013-07-29 01:24 - 2013-07-29 01:24 - 00002956 _____ C:\Windows\System32\Tasks\{CA407B8C-15F7-4A6D-9E48-910E81F88474} 2013-07-29 01:24 - 2013-07-29 01:24 - 00002956 _____ C:\Windows\System32\Tasks\{522814BB-B8EF-4DBB-802C-20E4082F50A2} 2013-07-29 01:23 - 2013-07-29 01:23 - 00002956 _____ C:\Windows\System32\Tasks\{A37A6CF3-C1B8-4009-A9F1-643F4DB14663} 2013-07-29 00:50 - 2013-07-29 00:50 - 00000057 _____ C:\Users\USER\AppData\Roaming\WB.CFG 2013-07-29 00:50 - 2013-07-29 00:50 - 00000005 _____ C:\Users\USER\AppData\Roaming\WBPU-TTL.DAT 2013-07-29 00:32 - 2013-07-29 00:32 - 00000000 ____D C:\Windows\CSC 2013-07-28 23:52 - 2013-07-28 23:52 - 00001609 _____ C:\Users\USER\Desktop\DivX Movies.lnk 2013-07-28 23:51 - 2013-07-28 23:51 - 00000000 ____D C:\Users\USER\AppData\Roaming\Ultimate Codec Packages 2013-07-28 23:50 - 2013-07-31 07:00 - 00000000 ____D C:\Program Files (x86)\DivX 2013-07-28 23:50 - 2013-07-31 06:59 - 00000000 ____D C:\ProgramData\DivX 2013-07-28 23:50 - 2013-07-29 19:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-28 23:50 - 2013-07-28 23:51 - 00000000 ____D C:\Program Files (x86)\Xvid 2013-07-28 23:50 - 2013-07-28 23:50 - 00715038 _____ C:\Windows\unins000.exe 2013-07-28 23:50 - 2013-07-28 23:50 - 00003506 _____ C:\Windows\System32\Tasks\DealPly 2013-07-28 23:50 - 2013-07-28 23:50 - 00003366 _____ C:\Windows\System32\Tasks\DealPlyUpdate 2013-07-28 23:50 - 2013-07-28 23:50 - 00001990 _____ C:\Windows\unins000.dat 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\LavFilters 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Users\USER\AppData\Roaming\CDXReader 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Users\USER\AppData\Local\Google 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\OpenSource Flash Video Splitter 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\Lame For Audacity 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\Haali 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\ffdshow 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\DSP-worx 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\DirectVobSub 2013-07-28 23:50 - 2012-02-26 16:47 - 00079360 _____ C:\Windows\SysWOW64\ff_vfw.dll 2013-07-28 23:50 - 2012-01-09 20:45 - 00178688 _____ C:\Windows\SysWOW64\unrar.dll 2013-07-28 23:50 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\Windows\system32\lagarith.dll 2013-07-28 23:50 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\Windows\SysWOW64\lagarith.dll 2013-07-28 23:50 - 2011-05-30 15:42 - 00255488 _____ C:\Windows\system32\xvidvfw.dll 2013-07-28 23:50 - 2011-05-30 15:42 - 00240640 _____ C:\Windows\SysWOW64\xvidvfw.dll 2013-07-28 23:50 - 2011-05-23 11:52 - 00153088 _____ C:\Windows\SysWOW64\xvid.ax 2013-07-28 23:50 - 2011-05-23 09:49 - 00173568 _____ C:\Windows\system32\xvid.ax 2013-07-28 23:50 - 2011-05-23 09:46 - 00645632 _____ C:\Windows\SysWOW64\xvidcore.dll 2013-07-28 23:50 - 2011-05-23 09:45 - 00696832 _____ C:\Windows\system32\xvidcore.dll 2013-07-28 23:49 - 2013-07-28 23:50 - 00793536 _____ C:\Users\USER\Downloads\UltimateCodec.exe 2013-07-28 23:42 - 2013-07-28 23:42 - 01758823 _____ C:\Users\USER\Downloads\winrar-x64-420d.exe 2013-07-28 23:42 - 2013-07-28 23:42 - 00000000 ____D C:\Users\USER\AppData\Roaming\WinRAR 2013-07-28 23:42 - 2013-07-28 23:42 - 00000000 ____D C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-07-28 23:42 - 2013-07-28 23:42 - 00000000 ____D C:\Program Files\WinRAR 2013-07-28 22:38 - 2013-07-28 22:39 - 46604616 _____ (Apple Inc.) C:\Users\USER\Downloads\iCloudSetup.exe 2013-07-28 22:37 - 2013-07-28 22:40 - 00000000 ____D C:\Users\USER\AppData\Roaming\Apple Computer 2013-07-28 22:37 - 2013-07-28 22:37 - 00000000 ____D C:\Users\USER\AppData\Local\Apple Computer 2013-07-28 22:36 - 2013-07-28 22:36 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_netaapl64_01009.Wdf 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\Users\USER\AppData\Local\Apple 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\ProgramData\Apple Computer 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\Program Files\iTunes 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\Program Files\iPod 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-07-28 22:36 - 2013-07-28 22:36 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2013-07-28 22:36 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2013-07-28 22:35 - 2013-07-28 22:36 - 00000000 ____D C:\ProgramData\Apple 2013-07-28 22:35 - 2013-07-28 22:35 - 00000000 ____D C:\Program Files\Common Files\Apple 2013-07-28 22:35 - 2013-07-28 22:35 - 00000000 ____D C:\Program Files\Bonjour 2013-07-28 22:35 - 2013-07-28 22:35 - 00000000 ____D C:\Program Files (x86)\Bonjour 2013-07-28 22:34 - 2013-07-28 22:35 - 90917712 _____ (Apple Inc.) C:\Users\Felix\Downloads\iTunes64Setup.exe 2013-07-28 22:32 - 2013-07-28 22:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2013-07-28 22:02 - 2013-07-28 22:02 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-07-28 22:02 - 2013-07-28 22:02 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2013-07-28 22:02 - 2013-07-28 22:02 - 00000000 ____D C:\Program Files\CCleaner 2013-07-28 22:01 - 2013-07-28 22:02 - 04429440 _____ (Piriform Ltd) C:\Users\USER\Downloads\ccsetup404.exe 2013-07-28 21:50 - 2013-07-28 21:50 - 00000000 ____D C:\Users\USER\Documents\My Bluetooth 2013-07-28 21:50 - 2013-07-28 21:50 - 00000000 ____D C:\Users\USER\AppData\Local\MSI 2013-07-28 21:48 - 2013-07-28 21:48 - 00001829 _____ C:\Users\Public\Desktop\SCM.lnk 2013-07-28 21:48 - 2013-07-28 21:48 - 00000000 ____D C:\Program Files (x86)\SCM 2013-07-28 21:42 - 2013-07-28 21:42 - 00000000 ____D C:\Program Files (x86)\avmwlanstick 2013-07-28 21:31 - 2013-07-28 21:31 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-07-28 21:31 - 2013-07-28 21:31 - 00000000 ____D C:\Windows\system32\NV 2013-07-28 21:29 - 2010-10-22 02:00 - 00480632 ____N (AVM Berlin) C:\Windows\instwcli.dex 2013-07-28 21:27 - 2013-07-28 21:27 - 00000000 ____D C:\Users\USER\AppData\Local\NVIDIA 2013-07-28 21:25 - 2013-07-29 02:02 - 00001347 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2013-07-28 21:24 - 2013-07-28 21:31 - 00000000 ____D C:\ProgramData\NVIDIA 2013-07-28 21:24 - 2013-07-28 21:26 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-07-28 21:24 - 2013-07-28 21:24 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-28 21:24 - 2013-07-28 21:24 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-28 21:24 - 2013-06-21 12:23 - 06496544 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-07-28 21:24 - 2013-06-21 12:23 - 03514656 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-07-28 21:24 - 2013-06-21 12:23 - 02555680 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-07-28 21:24 - 2013-06-21 12:23 - 01025312 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2013-07-28 21:24 - 2013-06-21 12:23 - 00884512 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-07-28 21:24 - 2013-06-21 12:23 - 00237856 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-07-28 21:24 - 2013-06-21 12:23 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2013-07-28 21:24 - 2013-06-21 12:23 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-07-28 21:24 - 2013-06-20 06:17 - 03253909 _____ C:\Windows\system32\nvcoproc.bin 2013-07-28 21:23 - 2013-07-28 21:24 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-07-28 21:23 - 2013-07-28 21:23 - 00000000 ____D C:\NVIDIA 2013-07-28 21:23 - 2013-06-21 14:06 - 27781920 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 21102368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 15920536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 15144928 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 13411896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 12427240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 11235104 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-07-28 21:23 - 2013-06-21 14:06 - 09239344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 07687592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 07641832 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 06324360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 02953504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 02936208 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 02777888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 02597856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 02363680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 02002720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 01832224 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432049.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432049.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 01059560 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00925648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00572704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00570656 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00467232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00465184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00432928 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00372000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00266448 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00218592 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00214448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00181488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-07-28 21:23 - 2013-06-21 14:06 - 00030496 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-07-28 21:23 - 2013-06-21 14:06 - 00021578 _____ C:\Windows\system32\nvinfo.pb 2013-07-28 21:01 - 2013-07-28 21:01 - 00000000 ____H C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Coinstaller_Critical.Wdf 2013-07-28 21:01 - 2013-07-28 21:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2013-07-28 21:01 - 2013-05-21 03:45 - 00008192 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2013-07-28 21:01 - 2012-07-26 06:55 - 00785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2013-07-28 21:01 - 2012-07-26 06:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2013-07-28 21:01 - 2012-07-26 04:36 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2013-07-28 21:01 - 2012-06-02 16:35 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-07-28 21:00 - 2013-07-28 21:00 - 00000000 ____D C:\ProgramData\Sony Corporation 2013-07-28 20:57 - 2013-07-31 14:48 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2013-07-28 20:57 - 2013-07-28 21:29 - 00000300 _____ C:\Users\USER\AppData\Local\killertool.log 2013-07-28 20:57 - 2013-07-28 20:57 - 00002238 _____ C:\Users\Public\Desktop\Qualcomm Atheros Killer Network Manager.lnk 2013-07-28 20:57 - 2013-07-28 20:57 - 00000000 ____D C:\Program Files\Qualcomm Atheros 2013-07-28 20:55 - 2013-07-28 21:00 - 56445960 _____ (Sony Corporation) C:\Users\Felix\Downloads\EP0000299957.exe 2013-07-28 20:52 - 2013-07-28 21:47 - 00006420 _____ C:\Users\USER\Downloads\IsConfig.ini 2013-07-28 20:52 - 2013-07-28 21:47 - 00000000 ____D C:\Program Files (x86)\REALTEK PCIE Wireless LAN Driver 2013-07-28 20:52 - 2013-07-28 20:52 - 00000000 ____D C:\Program Files (x86)\Cisco 2013-07-28 20:52 - 2013-06-01 08:00 - 00000000 ____D C:\Users\USER\Downloads\RTWLANE_Driver 2013-07-28 20:52 - 2013-06-01 08:00 - 00000000 ____D C:\Users\USER\Downloads\Release notes 2013-07-28 20:52 - 2013-06-01 08:00 - 00000000 ____D C:\Users\USER\Downloads\IM 2013-07-28 20:52 - 2013-06-01 08:00 - 00000000 ____D C:\Users\USER\Downloads\EAP 2013-07-28 20:52 - 2013-06-01 08:00 - 00000000 ____D C:\Users\USER\Downloads\DATA 2013-07-28 20:52 - 2013-05-30 09:03 - 00000030 _____ C:\Users\USER\Downloads\info.txt 2013-07-28 20:52 - 2013-05-27 12:02 - 00000230 _____ C:\Users\USER\Downloads\Station Drivers ici tous les drivers nouveaux & anciens.url 2013-07-28 20:52 - 2013-05-02 11:46 - 01514568 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtwlane.sys 2013-07-28 20:52 - 2013-03-22 11:21 - 00000549 _____ C:\Users\USER\Downloads\setup.iss 2013-07-28 20:52 - 2013-03-22 11:19 - 00000455 _____ C:\Users\USER\Downloads\layout.bin 2013-07-28 20:52 - 2013-03-18 16:06 - 00368545 _____ C:\Users\USER\Downloads\setup.inx 2013-07-28 20:52 - 2013-03-06 13:46 - 00000976 _____ C:\Users\USER\Downloads\Setup.ini 2013-07-28 20:52 - 2013-01-30 11:41 - 00430080 _____ (Realtek) C:\Windows\SwUSB.exe 2013-07-28 20:52 - 2012-12-14 15:54 - 00036864 _____ () C:\Windows\runSW.exe 2013-07-28 20:52 - 2012-02-14 19:37 - 00594432 _____ (Realtek Semiconductor Corp. ) C:\Windows\system32\Rtlihvs.dll 2013-07-28 20:52 - 2012-02-02 21:41 - 00087110 _____ C:\Users\USER\Downloads\ISLangUni.ini 2013-07-28 20:52 - 2011-11-07 11:32 - 00000421 _____ C:\Users\USER\Downloads\Uninstall.iss 2013-07-28 20:52 - 2011-11-07 11:32 - 00000098 _____ C:\Users\USER\Downloads\UnInstall.bat 2013-07-28 20:52 - 2011-11-07 11:32 - 00000041 _____ C:\Users\USER\Downloads\Install.bat 2013-07-28 20:52 - 2010-12-01 09:31 - 00451072 _____ C:\Windows\SysWOW64\ISSRemoveSP.exe 2013-07-28 20:52 - 2010-11-10 16:46 - 00399976 _____ (Acresso Software Inc.) C:\Users\USER\Downloads\Setup.exe 2013-07-28 20:52 - 2008-09-11 18:26 - 00555520 _____ (Acresso Software Inc.) C:\Users\USER\Downloads\ISSetup.dll 2013-07-28 20:52 - 2008-05-10 13:27 - 00333120 _____ (Acresso Software Inc.) C:\Users\USER\Downloads\_Setup.dll 2013-07-28 20:49 - 2013-07-28 20:50 - 30861894 _____ (Igor Pavlov) C:\Users\USER\Downloads\realtek_wireless_rtl819x_2007.12.0419.2013(www.station-drivers.com).exe 2013-07-28 20:47 - 2013-07-28 20:47 - 00000000 ____D C:\Windows\SysWOW64\sda 2013-07-28 20:47 - 2013-04-25 18:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPerIcon.dll 2013-07-28 20:43 - 2013-07-31 07:17 - 00000000 ____D C:\Users\USER\Downloads\64 2013-07-28 20:43 - 2013-07-31 07:16 - 00000000 ____D C:\Users\USER\Downloads\32 2013-07-28 20:43 - 2013-05-10 11:42 - 00000802 _____ C:\Users\USER\Downloads\version.txt 2013-07-28 20:43 - 2013-02-05 00:26 - 00000806 _____ C:\Users\USER\Downloads\www.necacom.net_catalog_PC_drivers.url 2013-07-28 20:42 - 2013-07-28 20:46 - 06328850 _____ (Igor Pavlov) C:\Users\USER\Downloads\realtek_cr_rts5249_6.2.9200.21228_allOS_necacom.exe 2013-07-28 20:41 - 2013-07-31 17:12 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-28 20:41 - 2013-07-30 06:47 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-07-28 20:41 - 2013-07-30 06:47 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-28 20:41 - 2013-07-30 06:47 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-28 20:41 - 2013-07-28 20:41 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-07-28 20:41 - 2013-07-28 20:41 - 00000000 ____D C:\Windows\system32\Macromed 2013-07-28 20:41 - 2013-07-28 20:41 - 00000000 ____D C:\Users\USER\AppData\Roaming\Macromedia 2013-07-28 20:41 - 2013-07-28 20:41 - 00000000 ____D C:\Users\USER\AppData\Roaming\Adobe 2013-07-28 20:35 - 2013-07-28 20:35 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-07-28 20:35 - 2013-07-28 20:35 - 00000000 ____D C:\Program Files\Realtek 2013-07-28 20:34 - 2013-07-02 16:20 - 03472600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2013-07-28 20:34 - 2013-07-02 12:26 - 00615249 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2013-07-28 20:34 - 2013-07-02 10:20 - 00147160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2013-07-28 20:34 - 2013-07-01 09:00 - 01139992 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll 2013-07-28 20:34 - 2013-07-01 09:00 - 00947480 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll 2013-07-28 20:34 - 2013-06-27 11:01 - 03760856 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2013-07-28 20:34 - 2013-06-27 08:12 - 02795224 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2013-07-28 20:34 - 2013-06-18 13:52 - 01004248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2013-07-28 20:34 - 2013-06-18 11:44 - 02736160 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2013-07-28 20:34 - 2013-06-10 09:44 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2013-07-28 20:34 - 2013-06-05 15:42 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2013-07-28 20:34 - 2013-05-02 06:01 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2013-07-28 20:34 - 2013-05-02 06:01 - 02032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2013-07-28 20:34 - 2013-05-02 06:00 - 00920320 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2013-07-28 20:34 - 2013-04-24 11:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2013-07-28 20:34 - 2013-04-11 08:55 - 00001372 _____ C:\Windows\system32\Drivers\RTMICAR.DAT 2013-07-28 20:34 - 2013-04-03 16:02 - 00613448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2013-07-28 20:34 - 2013-03-12 10:37 - 00000852 _____ C:\Windows\system32\Drivers\RTKHDRC2.dat 2013-07-28 20:34 - 2013-03-12 10:37 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX2.dat 2013-07-28 20:34 - 2013-03-12 10:35 - 00000852 _____ C:\Windows\system32\Drivers\RTKHDRC1.dat 2013-07-28 20:34 - 2013-03-12 10:35 - 00000852 _____ C:\Windows\system32\Drivers\RTKHDRC0.dat 2013-07-28 20:34 - 2013-03-12 10:34 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX1.dat 2013-07-28 20:34 - 2013-03-12 10:34 - 00000520 _____ C:\Windows\system32\Drivers\RTEQEX0.dat 2013-07-28 20:34 - 2013-03-11 06:06 - 00000008 _____ C:\Windows\system32\Drivers\rtkhdaud.dat 2013-07-28 20:34 - 2013-03-05 13:12 - 00000852 _____ C:\Windows\system32\Drivers\RTKHDRC3.dat 2013-07-28 20:34 - 2013-03-05 13:12 - 00000712 _____ C:\Windows\system32\Drivers\RTEQEX3.dat 2013-07-28 20:34 - 2013-02-20 12:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2013-07-28 20:34 - 2012-06-20 11:26 - 00110592 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2013-07-28 20:34 - 2012-06-08 10:23 - 00083072 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2013-07-28 20:34 - 2012-03-08 05:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2013-07-28 20:34 - 2011-12-20 09:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2013-07-28 20:34 - 2011-11-22 10:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2013-07-28 20:34 - 2010-11-08 01:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2013-07-28 20:34 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2013-07-28 20:34 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2013-07-28 20:34 - 2010-11-08 01:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2013-07-28 20:34 - 2010-11-08 01:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2013-07-28 20:34 - 2010-11-08 01:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2013-07-28 20:34 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2013-07-28 20:34 - 2010-09-27 03:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2013-07-28 20:34 - 2009-11-24 03:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2013-07-28 20:34 - 2009-11-24 03:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2013-07-28 20:34 - 2009-11-24 03:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2013-07-28 20:34 - 2009-11-24 03:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2013-07-28 20:34 - 2009-11-18 01:12 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys 2013-07-28 20:33 - 2013-07-17 10:26 - 00000000 ____D C:\Users\USER\Downloads\realtek_audio_6959-allos 2013-07-28 20:31 - 2013-07-28 20:31 - 00000000 ____D C:\Program Files\Elantech 2013-07-28 20:28 - 2013-03-04 18:13 - 00357200 _____ (ELAN Microelectronics Corp.) C:\Windows\system32\Drivers\ETD.sys 2013-07-28 20:27 - 2013-07-28 20:33 - 72103600 _____ (Igor Pavlov) C:\Users\USER\Downloads\realtek_audio_6959-allos.exe 2013-07-28 20:20 - 2013-07-28 20:20 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2013-07-28 20:20 - 2013-04-26 10:24 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2013-07-28 20:15 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2013-07-28 20:15 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2013-07-28 20:15 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2013-07-28 20:11 - 2013-07-28 21:25 - 00000000 ____D C:\ProgramData\DriverGenius 2013-07-28 20:10 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-07-28 20:10 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-07-28 20:10 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-07-28 20:10 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-07-28 20:10 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-07-28 20:10 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-07-28 20:10 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-07-28 20:10 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-07-28 20:10 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-07-28 20:05 - 2013-07-28 20:05 - 00000000 ____D C:\Program Files (x86)\AVM_update 2013-07-28 19:45 - 2013-07-30 05:48 - 00058016 _____ C:\Users\USER\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-28 19:45 - 2013-07-28 21:27 - 00000000 ____D C:\Program Files\Intel 2013-07-28 19:45 - 2013-07-28 21:01 - 00000000 ____D C:\ProgramData\Intel 2013-07-28 19:45 - 2013-07-28 19:45 - 00000000 ____D C:\Users\USER\AppData\Roaming\Intel Corporation 2013-07-28 19:44 - 2013-07-28 19:44 - 00000000 ____D C:\Users\USER\Intel 2013-07-28 19:38 - 2013-07-31 16:51 - 00060111 _____ C:\Users\USER\AppData\Local\BTServer.log 2013-07-28 19:37 - 2013-07-31 14:47 - 00000000 ____D C:\ProgramData\Realtek 2013-07-28 19:37 - 2013-07-30 19:08 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-28 19:37 - 2013-07-28 20:47 - 00000000 ____D C:\Program Files (x86)\REALTEK 2013-07-28 19:37 - 2012-12-06 10:35 - 00518800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\Drivers\RtkBtfilter.sys 2013-07-28 19:30 - 2013-02-27 15:37 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2013-07-28 19:26 - 2013-04-28 11:27 - 00407112 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys 2013-07-28 19:03 - 2013-07-28 19:03 - 00000000 ____D C:\Users\USER\AppData\Local\Intel_Corporation 2013-07-28 19:02 - 2013-07-28 21:31 - 00018346 _____ C:\Windows\system32\results.xml 2013-07-28 18:59 - 2013-07-28 21:01 - 00000000 ____D C:\Program Files (x86)\Intel 2013-07-28 18:59 - 2013-03-19 15:37 - 00442368 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2013-07-28 18:59 - 2013-03-19 15:37 - 00015360 _____ (Intel(R) Corporation) C:\Windows\system32\IntcDAuC.dll 2013-07-28 18:59 - 2013-03-19 15:25 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2013-07-28 18:59 - 2013-03-19 15:25 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2013-07-28 18:58 - 2013-07-28 18:58 - 00000000 ____D C:\Intel 2013-07-28 18:58 - 2013-05-07 17:22 - 09967616 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2013-07-28 18:58 - 2013-05-07 17:20 - 09517056 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2013-07-28 18:58 - 2013-05-07 17:17 - 08900096 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2013-07-28 18:58 - 2013-05-07 17:17 - 00108032 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2013-07-28 18:58 - 2013-05-07 17:17 - 00066048 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2013-07-28 18:58 - 2013-05-07 17:12 - 04369920 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2013-07-28 18:58 - 2013-05-07 17:12 - 03411456 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2013-07-28 18:58 - 2013-03-19 15:37 - 00109056 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3071.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 02813952 _____ C:\Windows\system32\iglhxa64.cpa 2013-07-28 18:58 - 2013-03-19 15:25 - 00861184 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 00856576 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 00216064 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 00180224 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 00094208 _____ C:\Windows\system32\IccLibDll_x64.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2013-07-28 18:58 - 2013-03-19 15:25 - 00044025 _____ C:\Windows\system32\iglhxo64.vp 2013-07-28 18:58 - 2013-03-19 15:25 - 00043816 _____ C:\Windows\system32\iglhxc64_dev.vp 2013-07-28 18:58 - 2013-03-19 15:25 - 00043494 _____ C:\Windows\system32\iglhxc64.vp 2013-07-28 18:58 - 2013-03-19 15:25 - 00043298 _____ C:\Windows\system32\iglhxg64_dev.vp 2013-07-28 18:58 - 2013-03-19 15:25 - 00043256 _____ C:\Windows\system32\iglhxg64.vp 2013-07-28 18:58 - 2013-03-19 15:25 - 00042079 _____ C:\Windows\system32\iglhxo64_dev.vp 2013-07-28 18:40 - 2013-07-30 18:10 - 00001178 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-28 18:40 - 2013-07-30 05:48 - 00000000 ___RD C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-28 18:40 - 2013-07-30 05:48 - 00000000 ___RD C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-28 18:40 - 2013-07-29 16:05 - 00000000 ____D C:\Users\USER\AppData\Local\VirtualStore 2013-07-28 18:39 - 2013-07-30 19:35 - 00000000 ____D C:\Users\USER 2013-07-28 18:39 - 2013-07-28 18:39 - 00000020 ___SH C:\Users\USER\ntuser.ini 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Vorlagen 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Startmenü 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Netzwerkumgebung 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Lokale Einstellungen 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Eigene Dateien 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Druckumgebung 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Documents\Eigene Musik 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Documents\Eigene Bilder 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\AppData\Local\Verlauf 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\AppData\Local\Anwendungsdaten 2013-07-28 18:39 - 2013-07-28 18:39 - 00000000 _SHDL C:\Users\USER\Anwendungsdaten 2013-07-28 18:39 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-07-28 18:39 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-07-28 18:38 - 2013-07-31 16:28 - 01677543 _____ C:\Windows\WindowsUpdate.log 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Vorlagen 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Startmenü 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Programme 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\ProgramData\Vorlagen 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\ProgramData\Startmenü 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\ProgramData\Favoriten 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\ProgramData\Dokumente 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 _SHDL C:\Dokumente und Einstellungen 2013-07-28 18:38 - 2013-07-28 18:38 - 00000000 __SHD C:\Recovery |
![]() | #10 |
![]() ![]() | ![]() Iminent Trojaner Entfernung HilfeCode:
ATTFilter ==================== One Month Modified Files and Folders ======= 2013-07-31 17:41 - 2013-07-31 17:41 - 00000000 ____D C:\FRST 2013-07-31 17:40 - 2013-07-31 17:40 - 01781589 _____ (Farbar) C:\Users\USER\Downloads\FRST64.exe 2013-07-31 17:30 - 2013-07-28 18:38 - 01677543 _____ C:\Windows\WindowsUpdate.log 2013-07-31 17:12 - 2013-07-28 20:41 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-31 17:08 - 2013-07-31 17:08 - 00000056 _____ C:\Windows\setupact.log 2013-07-31 17:08 - 2013-07-31 17:08 - 00000000 _____ C:\Windows\setuperr.log 2013-07-31 17:08 - 2013-07-29 02:42 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-07-31 16:51 - 2013-07-28 19:38 - 00060111 _____ C:\Users\USER\AppData\Local\BTServer.log 2013-07-31 16:49 - 2013-07-30 19:15 - 00000000 ____D C:\Users\USER\AppData\Local\LogMeIn Hamachi 2013-07-31 14:59 - 2013-07-31 14:59 - 00001055 _____ C:\Users\USER\Desktop\JRT.txt 2013-07-31 14:54 - 2009-07-14 06:45 - 00021248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-31 14:54 - 2009-07-14 06:45 - 00021248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-31 14:53 - 2013-07-31 14:53 - 00562430 _____ (Oleg N. Scherbakov) C:\Users\Felix\Downloads\JRT.exe 2013-07-31 14:53 - 2013-07-31 14:53 - 00000000 ____D C:\Windows\ERUNT 2013-07-31 14:51 - 2013-07-31 14:51 - 00000000 ____D C:\Users\USER\Downloads\JRT_5.2.8 2013-07-31 14:51 - 2011-04-12 09:43 - 00697924 _____ C:\Windows\system32\perfh007.dat 2013-07-31 14:51 - 2011-04-12 09:43 - 00148686 _____ C:\Windows\system32\perfc007.dat 2013-07-31 14:51 - 2009-07-14 07:13 - 01615978 _____ C:\Windows\system32\PerfStringBackup.INI 2013-07-31 14:49 - 2013-07-31 14:49 - 00003126 _____ C:\Windows\System32\Tasks\{E5C2CCEF-E68E-469B-ABC9-E635DF67627A} 2013-07-31 14:48 - 2013-07-28 20:57 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2013-07-31 14:47 - 2013-07-29 02:33 - 00001904 _____ C:\Windows\Tasks\Plus-HD-2.5-chromeinstaller.job 2013-07-31 14:47 - 2013-07-29 02:33 - 00001198 _____ C:\Windows\Tasks\Plus-HD-2.5-codedownloader.job 2013-07-31 14:47 - 2013-07-29 02:33 - 00001194 _____ C:\Windows\Tasks\Plus-HD-2.5-updater.job 2013-07-31 14:47 - 2013-07-29 02:33 - 00001098 _____ C:\Windows\Tasks\Plus-HD-2.5-enabler.job 2013-07-31 14:47 - 2013-07-28 19:37 - 00000000 ____D C:\ProgramData\Realtek 2013-07-31 14:47 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-31 14:47 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-31 07:17 - 2013-07-28 20:43 - 00000000 ____D C:\Users\USER\Downloads\64 2013-07-31 07:16 - 2013-07-28 20:43 - 00000000 ____D C:\Users\USER\Downloads\32 2013-07-31 07:00 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\DivX 2013-07-31 06:59 - 2013-07-28 23:50 - 00000000 ____D C:\ProgramData\DivX 2013-07-31 05:46 - 2013-07-31 01:09 - 00025496 _____ C:\Users\USER\Desktop\AdwCleaner[S1]neu.txt 2013-07-31 05:31 - 2013-07-31 05:31 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-31 05:31 - 2013-07-30 19:14 - 00000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2013-07-31 01:02 - 2013-07-30 18:49 - 00025515 _____ C:\Users\USER\Desktop\AdwCleaner[S1].txt 2013-07-30 19:35 - 2013-07-28 18:39 - 00000000 ____D C:\Users\USER 2013-07-30 19:34 - 2013-07-29 18:21 - 00000000 ____D C:\Users\USER\AppData\Local\Winterberg-Modifications 2013-07-30 19:13 - 2013-07-30 19:13 - 04292608 _____ C:\Users\USER\Downloads\hamachi_2.1.0.362.msi 2013-07-30 19:12 - 2013-07-30 19:12 - 00000904 _____ C:\Users\Public\Desktop\Emergency4 spielen.lnk 2013-07-30 19:08 - 2013-07-28 19:37 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-30 18:10 - 2013-07-30 18:10 - 00025515 _____ C:\AdwCleaner[S1].txt 2013-07-30 18:10 - 2013-07-30 18:09 - 00026753 _____ C:\AdwCleaner[R1].txt 2013-07-30 18:10 - 2013-07-28 18:40 - 00001178 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-30 18:08 - 2013-07-30 18:08 - 00666633 _____ C:\Users\USER\Downloads\adwcleaner.exe 2013-07-30 17:43 - 2013-07-30 17:43 - 00001864 _____ C:\Users\USER\Desktop\29.7.13.txt 2013-07-30 17:43 - 2013-07-30 17:43 - 00000909 _____ C:\Users\USER\Desktop\30.7.13.txt 2013-07-30 15:37 - 2013-07-29 01:47 - 00000000 ____D C:\Users\USER\AppData\Local\FT Software Updates 2013-07-30 07:10 - 2012-02-14 19:23 - 00000000 ____D C:\Windows\Panther 2013-07-30 06:47 - 2013-07-30 06:47 - 00000000 ____D C:\Users\USER\AppData\Local\Macromedia 2013-07-30 06:47 - 2013-07-30 06:44 - 00000000 ____D C:\Users\USER\AppData\Local\Adobe 2013-07-30 06:47 - 2013-07-28 20:41 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-07-30 06:47 - 2013-07-28 20:41 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-30 06:47 - 2013-07-28 20:41 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-30 05:48 - 2013-07-28 19:45 - 00058016 _____ C:\Users\USER\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-30 05:48 - 2013-07-28 18:40 - 00000000 ___RD C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-30 05:48 - 2013-07-28 18:40 - 00000000 ___RD C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-30 05:28 - 2009-07-14 06:45 - 00281984 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-30 05:26 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-30 05:26 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-30 05:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK 2013-07-30 05:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2013-07-30 05:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK 2013-07-30 05:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-07-30 05:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-07-30 05:25 - 2011-04-12 09:54 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-29 20:30 - 2012-02-14 19:39 - 01593872 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-29 20:12 - 2013-07-29 20:12 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-29 20:12 - 2013-07-29 20:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-29 20:12 - 2013-07-29 20:12 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-07-29 20:12 - 2013-07-29 20:12 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-07-29 20:12 - 2013-07-29 20:12 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-07-29 20:12 - 2013-07-29 20:12 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-07-29 20:12 - 2013-07-29 20:12 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-07-29 20:12 - 2013-07-29 20:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-07-29 20:12 - 2013-07-29 20:12 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00082432 _____ (Microsoft Corporation) 2013-07-29 20:12 - 2013-07-29 20:12 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-07-29 20:12 - 2013-07-29 20:12 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-07-29 20:12 - 2013-07-29 20:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-07-29 20:12 - 2013-07-29 20:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-07-29 20:12 - 2013-07-29 20:12 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-07-29 20:10 - 2013-07-29 20:10 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-07-29 20:10 - 2013-07-29 20:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-07-29 19:15 - 2013-07-29 19:15 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\Users\USER\AppData\Roaming\Mozilla 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\Users\USER\AppData\Local\Mozilla 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\ProgramData\Mozilla 2013-07-29 19:15 - 2013-07-29 19:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-29 19:15 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-29 19:14 - 2013-07-29 19:14 - 21703480 _____ (Mozilla) C:\Users\USER\Downloads\Firefox_Setup_22.0.exe 2013-07-29 17:44 - 2013-07-29 17:44 - 00001162 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk 2013-07-29 17:44 - 2013-07-29 17:44 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2013-07-29 17:43 - 2013-07-29 17:43 - 05487912 _____ (TeamViewer GmbH) C:\Users\USER\Downloads\TeamViewer_Setup_de.exe 2013-07-29 17:35 - 2013-07-29 17:35 - 00000635 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-07-29 17:35 - 2013-07-29 17:35 - 00000000 ____D C:\Users\USER\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl 2013-07-29 17:35 - 2013-07-29 17:29 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-07-29 17:35 - 2013-07-29 17:29 - 00000000 ____D C:\Users\USER\AppData\Roaming\Skype 2013-07-29 17:35 - 2013-07-29 17:28 - 00000000 ____D C:\ProgramData\Skype 2013-07-29 17:34 - 2013-07-29 17:34 - 01067672 _____ C:\Users\USER\Downloads\setup (1).exe 2013-07-29 17:29 - 2013-07-29 17:29 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-29 17:28 - 2013-07-29 17:26 - 31954536 _____ (Skype Technologies S.A.) C:\Users\Felix\Downloads\SkypeSetup66Full.exe 2013-07-29 17:27 - 2013-07-29 17:15 - 00474571 _____ C:\Users\USER\Downloads\WinterbergUpdater (1).exe 2013-07-29 17:19 - 2013-07-29 17:19 - 00001759 _____ C:\Users\Public\Desktop\Wegberg 6 starten.lnk 2013-07-29 17:14 - 2013-07-29 17:14 - 00000238 _____ C:\Users\USER\Downloads\onlineupdate (1).e4mod 2013-07-29 17:08 - 2013-07-29 01:28 - 00000000 ____D C:\Program Files (x86)\sixteen tons entertainment 2013-07-29 16:42 - 2013-07-29 16:42 - 00474571 _____ C:\Users\USER\Downloads\WinterbergUpdater.exe 2013-07-29 16:42 - 2013-07-29 16:42 - 00000238 _____ C:\Users\USER\Downloads\onlineupdate.e4mod 2013-07-29 16:31 - 2013-07-29 16:31 - 00003228 _____ C:\Windows\System32\Tasks\{E88C7E35-B17C-4033-BC75-9C6F1F87B6F3} 2013-07-29 16:06 - 2013-07-29 16:06 - 00003002 _____ C:\Windows\System32\Tasks\{0F4DE93C-4B1A-42CF-82FA-6F5EFFFAF858} 2013-07-29 16:05 - 2013-07-29 16:05 - 00003002 _____ C:\Windows\System32\Tasks\{E5CC6569-A8C6-4BAE-A851-06C582F749B9} 2013-07-29 16:05 - 2013-07-28 18:40 - 00000000 ____D C:\Users\USER\AppData\Local\VirtualStore 2013-07-29 16:03 - 2013-07-29 16:03 - 00003002 _____ C:\Windows\System32\Tasks\{B1D7A799-F91D-442A-B17B-4CD41460694E} 2013-07-29 03:46 - 2013-07-29 03:46 - 00000393 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Google.website 2013-07-29 03:41 - 2013-07-29 03:41 - 00000000 ____D C:\Windows\system32\appmgmt 2013-07-29 02:53 - 2013-07-29 02:53 - 00262144 _____ C:\Windows\system32\config\elam 2013-07-29 02:50 - 2013-07-29 02:42 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2013-07-29 02:50 - 2013-07-29 02:42 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2013-07-29 02:50 - 2012-08-13 16:49 - 00178448 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys 2013-07-29 02:50 - 2012-06-08 11:38 - 00054368 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kltdi.sys 2013-07-29 02:42 - 2013-07-29 02:42 - 00001111 _____ C:\Users\Public\Desktop\Kaspersky Anti-Virus 2013.lnk 2013-07-29 02:42 - 2013-07-29 02:42 - 00000000 ____D C:\Windows\ELAMBKUP 2013-07-29 02:42 - 2013-07-29 02:42 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab 2013-07-29 02:41 - 2013-07-29 02:39 - 165141856 _____ (Kaspersky Lab) C:\Users\USER\Downloads\kav13.0.1.4190de-de.exe 2013-07-29 02:37 - 2013-07-29 02:35 - 165970472 _____ (Kaspersky Lab) C:\Users\USER\Downloads\kis13.0.1.4190DE_3960[1] 2013-07-29 02:34 - 2013-07-29 02:34 - 00000000 ____D C:\AMD 2013-07-29 02:34 - 2013-07-29 02:33 - 00004224 _____ C:\Windows\System32\Tasks\Plus-HD-2.5-updater 2013-07-29 02:34 - 2013-07-29 02:33 - 00000000 ____D C:\Program Files (x86)\Plus-HD-2.5 2013-07-29 02:33 - 2013-07-29 02:33 - 00004228 _____ C:\Windows\System32\Tasks\Plus-HD-2.5-codedownloader 2013-07-29 02:33 - 2013-07-29 02:33 - 00004128 _____ C:\Windows\System32\Tasks\Plus-HD-2.5-enabler 2013-07-29 02:33 - 2013-07-29 02:33 - 00001224 _____ C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Create Amazing Presentations.lnk 2013-07-29 02:33 - 2013-07-29 02:33 - 00000000 ____D C:\Users\USER\AppData\Local\emaze 2013-07-29 02:02 - 2013-07-28 21:25 - 00001347 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2013-07-29 01:47 - 2013-07-29 01:47 - 00000000 ____D C:\Users\USER\AppData\Local\FT_Software 2013-07-29 01:44 - 2013-07-29 01:36 - 779536256 _____ (Marco H. ) C:\Users\Felix\Downloads\wegberg_v6.exe 2013-07-29 01:31 - 2009-07-14 07:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG 2013-07-29 01:31 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2013-07-29 01:30 - 2009-07-14 06:45 - 00000000 ____D C:\Windows\Setup 2013-07-29 01:24 - 2013-07-29 01:24 - 00002956 _____ C:\Windows\System32\Tasks\{CA407B8C-15F7-4A6D-9E48-910E81F88474} 2013-07-29 01:24 - 2013-07-29 01:24 - 00002956 _____ C:\Windows\System32\Tasks\{522814BB-B8EF-4DBB-802C-20E4082F50A2} 2013-07-29 01:23 - 2013-07-29 01:23 - 00002956 _____ C:\Windows\System32\Tasks\{A37A6CF3-C1B8-4009-A9F1-643F4DB14663} 2013-07-29 00:50 - 2013-07-29 00:50 - 00000057 _____ C:\Users\USER\AppData\Roaming\WB.CFG 2013-07-29 00:50 - 2013-07-29 00:50 - 00000005 _____ C:\Users\USER\AppData\Roaming\WBPU-TTL.DAT 2013-07-29 00:32 - 2013-07-29 00:32 - 00000000 ____D C:\Windows\CSC 2013-07-29 00:32 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-07-28 23:52 - 2013-07-28 23:52 - 00001609 _____ C:\Users\USER\Desktop\DivX Movies.lnk 2013-07-28 23:51 - 2013-07-28 23:51 - 00000000 ____D C:\Users\USER\AppData\Roaming\Ultimate Codec Packages 2013-07-28 23:51 - 2013-07-28 23:50 - 00000000 ____D C:\Program Files (x86)\Xvid 2013-07-28 23:50 - 2013-07-28 23:50 - 00715038 _____ C:\Windows\unins000.exe 2013-07-28 23:50 - 2013-07-28 23:50 - 00003506 _____ C:\Windows\System32\Tasks\DealPly 2013-07-28 23:50 - 2013-07-28 23:50 - 00003366 _____ C:\Windows\System32\Tasks\DealPlyUpdate 2013-07-28 23:50 - 2013-07-28 23:50 - 00001990 _____ C:\Windows\unins000.dat 2013-07-28 23:50 - 2013-07-28 23:50 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-07-28 23:50 - Aber hab da mal eine Frage an dich, die mir seit Anfang an auf der Seele liegt.. Kann man irgendwie bestimmen, um was für eine Art von Schädling es sich gehandelt hat, bzw. handelt. Ich mache mir im Grunde nur Gedanken drum, ob etwas am Gerät beschädigt wurde. Der Rest ist mir eigentlich relativ egal, da ich mir das Notebook ja erst vor kurzem gekauft habe und daher noch keinerlei persönliche Daten gespeichert habe. Ebenso noch NICHT in Online Bankings, eBay und so weiter eingeloggt. Vielleicht kannst du mir ja dazu eine Antwort geben. Was mir halt als einziges aufgefallen ist, dass alles etwas langsam war (aufeinmal), und dass im Internet, beispielsweise bei Google, alles rings rum zugemüllt was mit so Sachen wie: "PC zu langsam? Einfach hier Programm downloaden" (Habe ich natürlich dreist ignoriert) ![]() Achso. Und ich konnte meine Startseite des Internet Browser nicht verändern. Egal was ich versucht und eingestellt habe, die Startseite blieb strikt auf einer sog. Qtrax Suchmaschine.. Aber werden ja denke ich mal in jedem Fall die selben Symptome sein, oder?! Naja. Genug gernervt.. ![]() Wie gehabt. Ich warte auf deine weiteren Schritte.. Have a nice Day! |
![]() | #11 | ||
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Iminent Trojaner Entfernung HilfeZitat:
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #12 |
![]() ![]() | ![]() Iminent Trojaner Entfernung Hilfe Wenn du mir jetzt noch sagst, wie ich das deinstalliere, wäre mir sehr geholfen. Denn in der systemsteuerung wird deine genannte Datei nicht erwähnt.. Und auch nach Eingabe in die Suchfunktion, "keine Ergebnisse". |
![]() | #13 | |
/// Winkelfunktion /// TB-Süch-Tiger™ ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Iminent Trojaner Entfernung HilfeZitat:
Mach bitte ein neues Log davon.
__________________ Logfiles bitte immer in CODE-Tags posten ![]() |
![]() | #14 |
![]() ![]() | ![]() Iminent Trojaner Entfernung HilfeCode:
![]() |
Themen zu Iminent Trojaner Entfernung Hilfe |
ahnung, brauch, direkt, durchgeführt, entfernung, erkannt, explorer, helft, heur, hilfe, iminent, infos, installation, installiert, kaspersky, löschen, minute, minuten, nicht mehr, notebook, pcs, programm, programme, scan, systemsteuerung, trojaner, verdächtige, virus |