![]() |
Plagegeister aller Art und deren Bekämpfung: Windows 7: "Ads not by this site" MeldungWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
![]() | #1 |
![]() | ![]() Windows 7: "Ads not by this site" Meldung Hallo, nachdem meine Grafikkarte den Geist aufgegeben hat, habe ich mir gestern einen neuen Laptop zugelegt. Nachdem alle Programme installiert waren, habe ich mir Morzilla heruntergeladen. Heute schaue ich im Internet und auf den Webseiten erscheint immer "Ads not by this site". Das ist etwas nervig und ich habe leider keine Ahnung was genau das ist. Ach ja.. hatte noch den Adblock Plus 2.3.2 heruntergeladen uns installiert. Hatte schon in anderen Theman gelesen, wollte aber nicht einfach irgendetwas fummeln.. Hier sind die Logs, die ich bisher gemacht habe: defogger_disable by jpshortstuff ( Log created at 14:07 on 09/08/2013 (Les) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- GMER habe ich heruntergeladen, jedoch noch nicht durchgeführt, da ich mir nicht sicher bin wie ich McAfee deaktivieren kann. Über Hilfe würde ich mich wirklich sehr freuen und bedanke mich schon einmal im Voraus! FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-08-2013 Ran by Les at 2013-08-09 14:10:19 Running from C:\Users\Les\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Absolute Reminder (x32 Version: Adobe AIR (x32 Version: Adobe Flash Player 10 ActiveX (x32 Version: Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader X (10.1.0) MUI (x32 Version: 10.1.0) Anzeige am Bildschirm (Version: 6.72.00) Burn.Now 4.5 (x32 Version: 4.5.0) Corel Burn.Now Lenovo Edition (x32 Version: 4.5.0) Corel DVD MovieFactory 7 (x32 Version: 7.0.0) Corel DVD MovieFactory Lenovo Edition (x32 Version: 7.0.0) Corel WinDVD (x32 Version: Create Recovery Media (x32 Version: D3DX10 (x32 Version: 15.4.2368.0902) Definition update for Microsoft Office 2010 (KB982726) Direct DiscRecorder (x32 Version: 1.00.0000) Dolby Home Theater v4 (x32 Version: 7.2.7000.11) dows-Treiberpaket - Intel (iaStor) hdc (02/01/2012 (Version: 02/01/2012 Energie-Manager (x32 Version: 6.32) Evernote v. 4.2.3 (x32 Version: ExpressCache (Version: 1.0.86) Fingerprint Reader (Version: Integrated Camera Driver Installer Package Ver. (x32 Version: Intel PROSet Wireless Intel(R) Control Center (x32 Version: Intel(R) Manageability Engine Firmware Recovery Agent (x32 Version: Intel(R) Management Engine Components (x32 Version: Intel(R) OpenCL CPU Runtime (x32) Intel(R) Processor Graphics (x32 Version: Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: Intel(R) Update Manager (x32 Version: Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: Intel(R) WiDi (x32 Version: Intel® PROSet/Wireless WiFi-Software (Version: 15.01.0000.0830) Intel® Trusted Connect Service Client (Version: 1.23.605.1) Junk Mail filter update (x32 Version: 15.4.3502.0922) Lenovo App Shop (x32 Version: 44154) Lenovo Auto Scroll Utility (Version: 1.11) Lenovo Patch Utility (x32 Version: Lenovo Patch Utility 64 bit (Version: Lenovo Registration (x32 Version: 1.0.4) Lenovo SimpleTap (Version: 3.2.0004.00) Lenovo Solution Center (Version: Lenovo Solutions for Small Business (x32) Lenovo Solutions for Small Business Customizations (x32 Version: 1.0.0006.00) Lenovo System Update (x32 Version: 5.02.0018) Lenovo User Guide (x32 Version: 1.0.0009.00) Lenovo Warranty Information (x32 Version: 1.0.0005.00) Lenovo Welcome (x32 Version: 3.1.0020.00) LyricXeeker (x32) McAfee SecurityCenter (x32 Version: 12.1.353) Mesh Runtime (x32 Version: 15.4.5722.2) Message Center Plus (Version: 3.1.0004.00) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2010 Service Pack 1 (SP1) Microsoft Office Access MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Excel MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Office 32-bit Components 2010 (Version: 14.0.6029.1000) Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Professional 2010 (Version: 14.0.4763.1000) Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (Italian) 2010 (Version: 14.0.6029.1000) Microsoft Office Proofing (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Single Image 2010 (Version: 14.0.4763.1000) Microsoft Office Word MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Silverlight (x32 Version: 4.0.50401.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 23.0 (x86 de) (x32 Version: 23.0) Mozilla Maintenance Service (x32 Version: 23.0) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) Nitro Pro 7 (Version: NVIDIA GeForce Experience 1.6 (Version: 1.6) NVIDIA Grafiktreiber 320.49 (Version: 320.49) NVIDIA HD-Audiotreiber (Version: NVIDIA Install Application (Version: 2.1002.131.854) NVIDIA Optimus 7.2.17 (Version: 7.2.17) NVIDIA PhysX (x32 Version: 9.13.0604) NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604) NVIDIA Systemsteuerung 320.49 (Version: 320.49) NVIDIA Update 7.2.17 (Version: 7.2.17) NVIDIA Update Components (Version: 7.2.17) NVIDIA Virtual Audio 1.2.1 (Version: 1.2.1) RapidBoot HDD Accelerator (x32 Version: 1.00.0802) RapidBoot Shield (Version: 1.23) Realtek Ethernet Controller Driver (x32 Version: 7.49.927.2011) Realtek High Definition Audio Driver (x32 Version: Realtek PCIE Card Reader (x32 Version: 6.1.7601.29005) Shared C Run-time for x64 (Version: 10.0.0) SHIELD Streaming (Version: 1.05.19) SugarSync Manager (x32 Version: ThinkPad Power Management Driver (Version: ThinkPad UltraNav Driver (Version: ThinkVantage Communications Utility (Version: ThinkVantage System für aktiven Festplattenschutz (Version: 1.76) TuneUp Utilities 2013 (x32 Version: 13.0.3020.2) TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3020.2) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) VIP Access (x32 Version: VLC media player 2.0.7 (Version: 2.0.7) Windows Live Communications Platform (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3502.0922) Windows Live Essentials (x32 Version: 15.4.3555.0308) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) Windows Live Installer (x32 Version: 15.4.3502.0922) Windows Live Language Selector (Version: 15.4.3555.0308) Windows Live Mail (x32 Version: 15.4.3502.0922) Windows Live Mesh (x32 Version: 15.4.3502.0922) Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) Windows Live Messenger (x32 Version: 15.4.3538.0513) Windows Live MIME IFilter (Version: 15.4.3502.0922) Windows Live Movie Maker (x32 Version: 15.4.3502.0922) Windows Live Photo Common (x32 Version: 15.4.3502.0922) Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) Windows Live Remote Client (Version: 15.4.5722.2) Windows Live Remote Client Resources (Version: 15.4.5722.2) Windows Live Remote Service (Version: 15.4.5722.2) Windows Live Remote Service Resources (Version: 15.4.5722.2) Windows Live SOXE (x32 Version: 15.4.3502.0922) Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) Windows Live UX Platform (x32 Version: 15.4.3502.0922) Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) Windows Live Writer (x32 Version: 15.4.3502.0922) Windows Live Writer Resources (x32 Version: 15.4.3502.0922) Windows-Treiberpaket - Lenovo (02/29/2012 (Version: 02/29/2012 Windows-Treiberpaket - Synaptics (SmbDrvAMDASF) System (06/21/2012 (Version: 06/21/2012 Windows-Treiberpaket - Synaptics (SynTP) Mouse (06/21/2012 (Version: 06/21/2012 ==================== Restore Points ========================= 08-08-2013 17:37:37 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0759E638-1794-4A06-9785-9047BCDFA5BC} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2013-06-26] () Task: {1143BC07-DE14-4F10-8070-61FF2F75580E} - System32\Tasks\PMTask => C:\PROGRA~2\ThinkPad\UTILIT~1\PwmIdTsv.exe [2012-05-15] (Lenovo Group Limited) Task: {385A8171-89F5-4FB1-B639-C10E1BA89A61} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2012-05-16] (Lenovo) Task: {40E23ABA-5D58-409B-9066-208FD8F0EFD0} - System32\Tasks\Lenovo\Run TVSU Once => C:\SWTOOLS\DRIVERS\utils\TVSUHook.exe [2012-06-05] () Task: {4BEF76AC-E690-4210-AA05-DE4F7972FF25} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {4D236FE1-9C89-4698-8B64-FC3849AE0296} - System32\Tasks\Lenovo\Message Center Plus Launcher => C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe [2012-05-15] (Lenovo) Task: {767879FF-9495-4EC9-A718-A5C8CE8718CD} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {91DC1DD3-10BB-4593-9867-07051323A431} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {A0063F53-4786-4E95-8183-466D14A02D41} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2012-05-16] () Task: {A0674FDE-4929-4D4D-B94D-614C75AF05F5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-08] (Adobe Systems Incorporated) Task: {B11EF242-46F7-4B93-ACCD-202BAC4F248E} - System32\Tasks\Absolute Reminder => C:\Program Files (x86)\Absolute Software\Absolute Reminder\AbsoluteReminder.exe [2011-09-19] (Absolute Software) Task: {B475D5D6-F2A5-42D3-B43B-2E7D034D802D} - System32\Tasks\LyricXeeker Update => C:\Program Files (x86)\LyriXeeker\LyriXupdate.exe [2013-08-06] () Task: {BB8EC7F4-DB59-432A-BC25-7F319751CAA8} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\lsc.exe [2012-05-16] () Task: {BCFC5DFD-B723-4DBF-BA3D-CEA78C86E947} - System32\Tasks\Lenovo\SimpleTap\Start SimpleTap for Les-THINK.Les => C:\Program Files\Lenovo\SimpleTap\SimpleTap.exe [2012-05-15] (Lenovo) Task: {F8FC8305-A8E8-4EDF-8B8E-BD9FE32DF84C} - System32\Tasks\Lenovo\Lenovo Produktregistrierung (Les) => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [2011-07-13] (Lenovo, Inc.) Task: {F91F9893-FC38-4E7A-AE5A-716AA88BFA80} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06] (Adobe Systems Incorporated) Task: {FC983D86-D005-43F9-81EA-730E17BD93B6} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\LyricXeeker Update.job => C:\Program Files (x86)\LyriXeeker\LyriXupdate.exe ==================== Faulty Device Manager Devices ============= Name: NVIDIA Virtual Audio Device (Wave Extensible) (WDM) Description: NVIDIA Virtual Audio Device (Wave Extensible) (WDM) Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: NVIDIA Service: nvvad_WaveExtensible Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/09/2013 11:51:47 AM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD initialization failed [0] Error: (08/09/2013 11:51:47 AM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcFailed to open Audio Capture session [6] Error: (08/09/2013 11:31:00 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.ServiceModel, Version=, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070020 Error: (08/09/2013 11:27:02 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.ServiceModel, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil . Error code = 0x80070020 Error: (08/09/2013 11:20:41 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile: System.DirectoryServices, Version=, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a . Error code = 0x80070020 Error: (08/09/2013 11:18:42 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile: UIAutomationProvider, Version=, Culture=neutral, PublicKeyToken=31bf3856ad364e35 . Error code = 0x80070020 Error: (08/09/2013 11:16:11 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/08/2013 10:42:32 PM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile System.AddIn, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil because of the following error: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. (Exception from HRESULT: 0x80070020). Error: (08/08/2013 10:42:32 PM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: SMSvcHost, Version=, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil . Error code = 0x80070020 Error: (08/08/2013 10:42:22 PM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile SMDiagnostics, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil because of the following error: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. (Exception from HRESULT: 0x80070020). System errors: ============= Error: (08/09/2013 01:31:52 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst McNaiAnn erreicht. Error: (08/09/2013 01:30:45 PM) (Source: DCOM) (User: ) Description: {209500FC-6B45-4693-8871-6296C4843751} Error: (08/09/2013 11:20:11 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80242016 fehlgeschlagen: Kumulatives Sicherheitsupdate für Internet Explorer 9 für Windows 7 für x64-Systeme (KB2846071) Error: (08/09/2013 11:17:34 AM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: Fehler beim Starten des Assistenten für das Sprachpaket-Setup. Führen Sie einen Neustart des Systems aus, und führen Sie den Assistenten erneut aus. Error: (08/09/2013 11:17:34 AM) (Source: Microsoft-Windows-LanguagePackSetup) (User: NT-AUTORITÄT) Description: Fehler bei der CBS-Clientinitialisierung. Letzter Fehler: 0x80080005 Error: (08/09/2013 11:17:34 AM) (Source: DCOM) (User: ) Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/09/2013 11:17:22 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Modules Installer" wurde mit folgendem Fehler beendet: %%16405 Error: (08/08/2013 10:43:50 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst mfecore erreicht. Error: (08/08/2013 10:04:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Update für Microsoft XML Core Services 4.0 Service Pack 2 für x64-basierte Systeme (KB973688) Error: (08/08/2013 10:00:47 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst TrustedInstaller erreicht. Microsoft Office Sessions: ========================= Error: (08/09/2013 11:51:47 AM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD initialization failed [0] Error: (08/09/2013 11:51:47 AM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcFailed to open Audio Capture session [6] Error: (08/09/2013 11:31:00 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.ServiceModel, Version=, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070020 System.ServiceModel, Version=, Culture=neutral, PublicKeyToken=b77a5c561934e089 Error: (08/09/2013 11:27:02 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.ServiceModel, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil . Error code = 0x80070020 System.ServiceModel, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil Error: (08/09/2013 11:20:41 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile: System.DirectoryServices, Version=, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a . Error code = 0x80070020 System.DirectoryServices, Version=, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a Error: (08/09/2013 11:18:42 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile: UIAutomationProvider, Version=, Culture=neutral, PublicKeyToken=31bf3856ad364e35 . Error code = 0x80070020 UIAutomationProvider, Version=, Culture=neutral, PublicKeyToken=31bf3856ad364e35 Error: (08/09/2013 11:16:11 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/08/2013 10:42:32 PM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile System.AddIn, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil because of the following error: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. (Exception from HRESULT: 0x80070020). System.AddIn, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil Error: (08/08/2013 10:42:32 PM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: SMSvcHost, Version=, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil . Error code = 0x80070020 SMSvcHost, Version=, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil Error: (08/08/2013 10:42:22 PM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile SMDiagnostics, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil because of the following error: Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. (Exception from HRESULT: 0x80070020). SMDiagnostics, Version=, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil ==================== Memory info =========================== Percentage of memory in use: 84% Total physical RAM: 3661.63 MB Available physical RAM: 562.04 MB Total Pagefile: 7321.44 MB Available Pagefile: 2821.68 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (Windows7_OS) (Fixed) (Total:448.67 GB) (Free:404.52 GB) NTFS (Disk=0 Partition=2) ==>[System with boot components (obtained from reading drive)] Drive q: (Lenovo_Recovery) (Fixed) (Total:15.62 GB) (Free:2.42 GB) NTFS (Disk=0 Partition=3) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: 469D4405) Partition 1: (Active) - (Size=1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=449 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=16 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 15 GB) (Disk ID: 469D41D8) Partition 1: (Not Active) - (Size=8 GB) - (Type=84) Partition 2: (Not Active) - (Size=7 GB) - (Type=73) ==================== End Of Log ============================ Geändert von Linööö (08.08.2013 um 13:36 Uhr) |
![]() | #2 |
![]() | ![]() Windows 7: "Ads not by this site" MeldungFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-08-2013 Ran by Les (administrator) on 09-08-2013 14:08:29 Running from C:\Users\Les\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AuthenTec, Inc) C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe (Lenovo.) C:\Windows\system32\ibmpmsvc.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe (Lenovo) C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Lenovo Group Limited) C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe (McAfee, Inc.) C:\Windows\system32\mfevtps.exe (Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe (Ulead Systems, Inc.) C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Lenovo Group Limited) C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe (Lenovo Group Limited) C:\PROGRA~1\Lenovo\HOTKEY\MKRMSG.EXE (Lenovo Group Limited) C:\PROGRA~1\Lenovo\HOTKEY\TPONSCR.EXE (Lenovo Group Limited) C:\PROGRA~1\Lenovo\HOTKEY\tpnumlkd.exe (McAfee, Inc.) C:\PROGRA~1\McAfee\MSC\McAPExe.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Lenovo.) C:\Windows\System32\TpShocks.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Ricoh co.,Ltd.) C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Intel Corporation) C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Lenovo Group Limited) C:\PROGRA~2\ThinkPad\UTILIT~1\SCHTASK.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\UI\IntelSmallBusinessAdvantage.exe (Lenovo) C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Lenovo) C:\Program Files\Lenovo\SimpleTap\SimpleTap.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (Cerulean Studios) C:\Program Files (x86)\Trillian\trillian.exe () c:\program files (x86)\trillian\plugins\skypekit.exe (Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe (AuthenTec Inc.) C:\Program Files\Lenovo Fingerprint Reader\TouchControl.exe (AuthenTec Inc.) C:\Program Files\Lenovo Fingerprint Reader\x86\BioMonitor.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11406608 2012-02-21] (Intel Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12476520 2012-04-10] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2881336 2012-06-19] (Synaptics Incorporated) HKLM\...\Run: [TpShocks] - C:\Windows\system32\TpShocks.exe [382528 2012-02-24] (Lenovo.) HKLM\...\Run: [] - [x] HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-03-09] (Realtek Semiconductor) HKLM\...\Run: [LENOVO.TPKNRRES] - C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [290160 2012-06-01] (Lenovo Group Limited) HKLM\...\Run: [BLEServicesCtrl] - C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [177936 2012-02-17] (Intel Corporation) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-07-27] (NVIDIA Corporation) MountPoints2: {63043855-c4e5-11e2-8b47-806e6f6e6963} - Q:\LenovoQDrive.exe HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133400 2012-02-29] (Intel Corporation) HKLM-x32\...\Run: [RotateImage] - C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe [55808 2008-10-30] (Ricoh co.,Ltd.) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [PWMTRV] - C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL [5941344 2012-05-15] (Lenovo Group Limited) HKLM-x32\...\Run: [Fastboot] - C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [1091376 2012-01-17] (Lenovo) HKLM-x32\...\Run: [Intel AppUp(SM) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-06-19] (Intel Corporation) HKLM-x32\...\Run: [Lenovo Registration] - C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2011-07-13] (Lenovo, Inc.) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [454600 2013-02-28] (McAfee, Inc.) HKLM-x32\...\Run: [Lenovo App Shop] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-06-19] (Intel Corporation) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [507744 2011-12-20] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [IntelSBA] - C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\UI\IntelSmallBusinessAdvantage.exe [4243168 2012-04-23] (Intel Corporation) HKU\Default\...\RunOnce: [Lenovo.ShowBand] - C:\Program Files\Lenovo\SimpleTap DeskBand\ShowBand.exe [155960 2012-05-15] (Lenovo) HKU\Default\...\RunOnce: [] - [x] HKU\Default\...\RunOnce: [Lenovoautoqdrive] - C:\PROGRA~2\Common~1\Lenovo\Lenovo~1\LenovoAutorunreg.exe [159744 2011-12-15] () HKU\Default User\...\RunOnce: [Lenovo.ShowBand] - C:\Program Files\Lenovo\SimpleTap DeskBand\ShowBand.exe [155960 2012-05-15] (Lenovo) HKU\Default User\...\RunOnce: [] - [x] HKU\Default User\...\RunOnce: [Lenovoautoqdrive] - C:\PROGRA~2\Common~1\Lenovo\Lenovo~1\LenovoAutorunreg.exe [159744 2011-12-15] () AppInit_DLLs: C:\Windows\system32\nvinitx.dll, C:\PROGRA~1\NVIDIA~1\NVSTRE~1\rxinput.dll [653600 2013-07-27] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll,C:\Windows\SysWOW64\nvinit.dll, C:\PROGRA~2\NVIDIA~1\NVSTRE~1\rxinput.dll [653600 2013-07-27] () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=LENP&bmod=LENP HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=DC1BB888E3F8D933&affID=119357&tsp=4968 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=DC1BB888E3F8D933&affID=119357&tsp=4968 BHO: TrueSuite Browser Helper Object - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files\Lenovo Fingerprint Reader\IEBHO.DLL (AuthenTec Inc.) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Symantec VIP Access Add-On - {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} - C:\Program Files (x86)\Symantec\VIP Access Client\64bit\VIPAddOnForIE64.dll (Symantec Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: LyricXeeker - {5c819b39-cbc9-4faf-8bd2-9d0699eb330a} - C:\Program Files (x86)\LyriXeeker\126.dll (LyricXeeker) BHO-x32: TrueSuite Browser Helper Object - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files\Lenovo Fingerprint Reader\x86\IEBHO.dll (AuthenTec Inc.) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Symantec VIP Access Add-On - {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} - C:\Program Files (x86)\Symantec\VIP Access Client\VIPAddOnForIE.dll (Symantec Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~1\mcafee\msc\MCSNIE~1.DLL (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Les\AppData\Roaming\Mozilla\Firefox\Profiles\d903q0zh.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nitropdf.com/NitroPDF - C:\Program Files (x86)\Nitro PDF\Professional 7\npnitromozilla.dll ( ) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: intel.com/AppUp - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll (Intel) FF Plugin HKCU: intel.com/AppUpx64 - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel) FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Firefox\Extensions: [VIP2X@verisign.com] C:\Program Files (x86)\Symantec\VIP Access Client\ FF Extension: Symantec VIP Access Add-On - C:\Program Files (x86)\Symantec\VIP Access Client\ FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK FF HKCU\...\Firefox\Extensions: [lyrix@lyrixeeker.co] C:\Program Files (x86)\LyriXeeker\126.xpi FF Extension: No Name - C:\Program Files (x86)\LyriXeeker\126.xpi ==================== Services (Whitelisted) ================= R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation) R2 FastbootService; C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [169776 2012-01-17] (Lenovo) R2 FPLService; C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe [328552 2012-06-07] (AuthenTec, Inc) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-29] () R2 Intel(R) Small Business Advantage; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [46816 2012-04-23] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-29] (Intel Corporation) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [179568 2012-06-01] (Lenovo Group Limited) R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [133992 2011-07-12] (Lenovo Group Limited) R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe [120592 2013-05-22] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [388680 2013-06-15] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1017016 2013-02-28] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218760 2013-04-03] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-04-03] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2012-02-26] () R2 NitroDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [216072 2012-05-23] (Nitro PDF Software) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14984480 2013-07-27] (NVIDIA Corporation) S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [22376 2013-06-26] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-28] (TuneUp Software) R2 VIPAppService; C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe [84080 2012-04-19] (Symantec Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2669840 2012-02-26] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-04-03] (McAfee, Inc.) R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation) R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation) R0 Fastboot; C:\Windows\System32\DRIVERS\Fastboot.sys [70416 2012-01-17] (Windows (R) Win 7 DDK provider) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197264 2012-05-28] (McAfee, Inc.) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179664 2013-04-03] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309968 2013-04-03] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [516608 2013-04-03] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [772944 2013-04-03] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [337120 2013-02-18] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [95856 2013-02-18] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [342416 2013-04-03] (McAfee, Inc.) R3 NETwNs64; C:\Windows\System32\DRIVERS\Netwsw00.sys [11471872 2012-02-20] (Intel Corporation) S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39712 2013-05-14] (NVIDIA Corporation) R1 PHCORE; C:\Program Files\Lenovo\RapidBoot\PHCORE64.SYS [33344 2012-03-26] (Lenovo Group Limited) R3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [259688 2011-10-27] (Realtek Semiconductor Corp.) R3 SmbDrvIntel; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [27448 2012-06-19] (Synaptics Incorporated) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software) R3 TVTI2C; C:\Windows\System32\DRIVERS\Tvti2c.sys [40248 2011-05-29] (Lenovo Information Product(ShenZhen China) Inc.) R3 tvtvcamd; C:\Windows\System32\DRIVERS\tvtvcamd.sys [27432 2011-12-07] (ThinkVantage Communications Utility) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-09 14:08 - 2013-08-09 14:08 - 00000000 ____D C:\FRST 2013-08-09 14:07 - 2013-08-09 14:07 - 00000468 _____ C:\Users\Les\Desktop\defogger_disable.log 2013-08-09 14:06 - 2013-08-09 14:06 - 00000000 _____ C:\Users\Les\defogger_reenable 2013-08-09 14:04 - 2013-08-09 14:04 - 01790059 _____ (Farbar) C:\Users\Les\Desktop\FRST64.exe 2013-08-09 14:04 - 2013-08-09 14:04 - 00050477 _____ C:\Users\Les\Desktop\Defogger.exe 2013-08-09 11:52 - 2013-08-09 11:52 - 00000000 ____D C:\NvidiaLogging 2013-08-09 11:51 - 2013-05-14 21:28 - 00039712 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-08-09 11:51 - 2013-05-14 21:27 - 00029984 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2013-08-09 11:51 - 2013-05-14 21:27 - 00028448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-08-09 11:50 - 2013-08-09 11:50 - 00000000 ____D C:\Users\Les\AppData\Local\NVIDIA 2013-08-09 11:47 - 2013-08-09 11:47 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-08-09 11:44 - 2013-08-09 11:46 - 01589182 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-08-09 11:40 - 2013-08-09 11:40 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-08-09 11:40 - 2013-08-09 11:40 - 00000000 ____D C:\Windows\system32\NV 2013-08-09 11:38 - 2013-08-09 11:38 - 00000000 ____D C:\Windows\LastGood 2013-08-09 11:37 - 2013-06-21 14:06 - 27781920 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 21102368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 15920536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 15144928 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 13411896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 12427240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 11235104 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-08-09 11:37 - 2013-06-21 14:06 - 09239344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 07687592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 07641832 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 06324360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 02953504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 02777888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 02597856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 02363680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 02002720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 01832224 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432049.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432049.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00925648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00572704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00570656 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00467232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00465184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00218592 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00181488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-08-09 11:37 - 2013-06-21 14:06 - 00030496 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2013-08-09 11:35 - 2013-08-09 11:35 - 00000000 ____D C:\NVIDIA 2013-08-09 11:20 - 2013-08-09 11:24 - 233871960 _____ (NVIDIA Corporation) C:\Users\Les\Downloads\320.49-notebook-win8-win7-64bit-international-whql.exe 2013-08-08 21:34 - 2013-08-08 22:04 - 00448166 _____ C:\Windows\msxml4-KB973688-enu.LOG 2013-08-08 21:28 - 2012-07-26 06:55 - 00785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2013-08-08 21:28 - 2012-07-26 06:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2013-08-08 21:28 - 2012-07-26 04:36 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2013-08-08 21:28 - 2012-06-02 16:35 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-08-08 21:00 - 2013-08-08 21:28 - 00447866 _____ C:\Windows\msxml4-KB954430-enu.LOG 2013-08-08 20:51 - 2013-08-08 20:51 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-08 20:51 - 2013-08-08 20:51 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-08 20:51 - 2013-08-08 20:51 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-08 20:51 - 2013-08-08 20:51 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-08 20:51 - 2013-08-08 20:51 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-08-08 20:51 - 2013-08-08 20:51 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-08-08 20:51 - 2013-08-08 20:51 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-08-08 20:51 - 2013-08-08 20:51 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-08-08 20:51 - 2013-08-08 20:51 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-08-08 20:51 - 2013-08-08 20:51 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-08-08 20:51 - 2013-08-08 20:51 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-08-08 20:47 - 2013-08-08 20:47 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-08 20:45 - 2013-08-08 20:58 - 00011248 _____ C:\Windows\IE10_main.log 2013-08-08 20:38 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2013-08-08 20:11 - 2012-12-16 19:11 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-08-08 20:11 - 2012-12-16 16:45 - 00367616 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-08-08 20:11 - 2012-12-16 16:13 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2013-08-08 20:11 - 2012-12-16 16:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2013-08-08 20:08 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2013-08-08 20:08 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2013-08-08 20:08 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2013-08-08 20:08 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2013-08-08 20:08 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2013-08-08 20:08 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2013-08-08 20:08 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2013-08-08 20:08 - 2012-06-02 16:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-08-08 19:20 - 2013-08-08 19:20 - 00000000 ____D C:\Program Files (x86)\PhotoFiltre7 2013-08-08 19:19 - 2013-08-09 11:17 - 00000384 _____ C:\Windows\Tasks\LyricXeeker Update.job 2013-08-08 19:19 - 2013-08-08 19:19 - 00003028 _____ C:\Windows\System32\Tasks\LyricXeeker Update 2013-08-08 19:19 - 2013-08-08 19:19 - 00000000 ____D C:\Users\Les\AppData\Roaming\Babylon 2013-08-08 19:19 - 2013-08-08 19:19 - 00000000 ____D C:\ProgramData\Babylon 2013-08-08 19:19 - 2013-08-08 19:19 - 00000000 ____D C:\Program Files (x86)\LyriXeeker 2013-08-08 19:11 - 2013-08-08 19:11 - 00000000 ____D C:\Users\Les\AppData\Roaming\vlc 2013-08-08 19:10 - 2013-08-08 19:10 - 00000000 ____D C:\Program Files\VideoLAN 2013-08-08 18:52 - 2013-08-08 18:52 - 00003694 _____ C:\Windows\System32\Tasks\Adobe-Online-Aktualisierungsprogramm 2013-08-08 18:08 - 2013-08-08 18:49 - 00000866 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-08-08 18:07 - 2013-08-08 18:09 - 00000000 ____D C:\Users\Les\AppData\Roaming\Trillian 2013-08-08 17:46 - 2013-08-08 18:07 - 00000000 ____D C:\Program Files (x86)\Trillian 2013-08-08 17:36 - 2013-08-08 17:36 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-08 17:35 - 2013-08-08 17:35 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2013-08-08 17:33 - 2013-08-08 17:33 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2013-08-08 17:33 - 2013-08-08 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-08-08 17:32 - 2013-08-08 17:43 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-08-08 17:32 - 2013-08-08 17:35 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-08 17:32 - 2013-08-08 17:32 - 00000000 ____D C:\Users\Les\AppData\Local\Microsoft Help 2013-08-08 17:32 - 2013-08-08 17:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-08 17:31 - 2013-08-08 17:31 - 00000000 __RHD C:\MSOCache 2013-08-08 16:55 - 2013-08-08 16:55 - 00000000 ____D C:\Users\Les\AppData\Local\CrashDumps 2013-08-08 16:38 - 2013-01-28 15:19 - 00037664 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2013-08-08 16:38 - 2013-01-28 15:19 - 00029984 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2013-08-08 16:38 - 2013-01-28 15:19 - 00026400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2013-08-08 16:38 - 2013-01-28 15:19 - 00021792 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll 2013-08-08 16:20 - 2013-08-08 16:20 - 00000000 ____D C:\Users\Les\AppData\Local\Macromedia 2013-08-08 16:19 - 2013-08-09 13:56 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-08 16:19 - 2013-08-08 16:20 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-08 16:19 - 2013-08-08 16:19 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-08-08 16:19 - 2013-08-08 16:19 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-08 16:19 - 2013-08-08 16:19 - 00000000 ____D C:\Windows\system32\Macromed 2013-08-08 16:18 - 2013-08-08 16:18 - 00002220 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-08 16:18 - 2013-08-08 16:18 - 00002200 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-08-08 16:18 - 2013-01-28 15:19 - 00035104 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2013-08-08 16:17 - 2013-08-08 16:37 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013 2013-08-08 16:17 - 2013-08-08 16:17 - 00000000 ____D C:\Users\Les\AppData\Roaming\TuneUp Software 2013-08-08 16:17 - 2013-08-08 16:17 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-08-08 16:16 - 2013-08-08 18:52 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-08-08 16:09 - 2013-08-08 16:09 - 00000000 ____D C:\Users\Les\AppData\Roaming\Mozilla 2013-08-08 16:09 - 2013-08-08 16:09 - 00000000 ____D C:\Users\Les\AppData\Local\Mozilla 2013-08-08 16:08 - 2013-08-08 19:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-08 16:08 - 2013-08-08 16:08 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-08 16:08 - 2013-08-08 16:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-08 16:02 - 2012-05-28 10:28 - 00197264 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2013-08-08 16:01 - 2013-08-08 16:01 - 00000000 ____D C:\Program Files (x86)\McAfee.com 2013-08-08 16:00 - 2013-08-08 16:58 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-08-08 16:00 - 2013-08-08 16:04 - 00000000 ____D C:\Program Files\McAfee 2013-08-08 16:00 - 2013-08-08 16:00 - 00000000 ____D C:\Program Files\McAfee.com 2013-08-08 15:49 - 2013-08-09 13:30 - 00000000 ____D C:\ProgramData\McAfee 2013-08-08 15:49 - 2013-08-08 16:02 - 00000000 ____D C:\Program Files\Common Files\McAfee 2013-08-08 15:49 - 2013-04-03 13:34 - 00182752 _____ (McAfee, Inc.) C:\Windows\system32\mfevtps.exe 2013-08-08 15:42 - 2013-04-10 08:01 - 00983400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-08-08 15:42 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-08-08 15:42 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2013-08-08 15:42 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2013-08-08 15:42 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2013-08-08 15:42 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2013-08-08 15:42 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2013-08-08 15:42 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2013-08-08 15:42 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2013-08-08 15:41 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2013-08-08 15:41 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-08-08 15:41 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2013-08-08 15:41 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-08-08 15:41 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2013-08-08 15:41 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2013-08-08 15:35 - 2013-08-08 16:20 - 00000000 ____D C:\Users\Les\AppData\Local\Adobe 2013-08-08 15:35 - 2013-05-08 08:39 - 01910632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-08 15:35 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2013-08-08 15:35 - 2013-02-27 07:52 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-08-08 15:35 - 2013-02-27 07:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-08-08 15:35 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-08-08 15:35 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2013-08-08 15:35 - 2013-02-27 06:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-08-08 15:35 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-08-08 15:35 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-08-08 15:35 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2013-08-08 15:35 - 2012-11-09 07:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-08 15:35 - 2012-11-09 06:42 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-08-08 15:34 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2013-08-08 15:34 - 2013-03-19 07:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-08-08 15:34 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2013-08-08 15:34 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2013-08-08 15:34 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2013-08-08 15:34 - 2012-11-01 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2013-08-08 15:34 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2013-08-08 15:34 - 2012-11-01 06:47 - 01236992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2013-08-08 15:34 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2013-08-08 15:34 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2013-08-08 15:34 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2013-08-08 15:34 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2013-08-08 15:34 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2013-08-08 15:34 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2013-08-08 15:34 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2013-08-08 15:34 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2013-08-08 15:34 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2013-08-08 15:34 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2013-08-08 15:34 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-08-08 15:34 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2013-08-08 15:34 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2013-08-08 15:34 - 2012-06-02 07:50 - 00458704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-08-08 15:34 - 2012-06-02 07:48 - 00151920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-08-08 15:34 - 2012-06-02 07:48 - 00095600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-08-08 15:34 - 2012-06-02 07:45 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-08-08 15:34 - 2012-06-02 06:40 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-08-08 15:34 - 2012-06-02 06:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-08-08 15:34 - 2012-06-02 06:34 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-08-08 15:34 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2013-08-08 15:34 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2013-08-08 15:34 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2013-08-08 15:34 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2013-08-08 15:34 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2013-08-08 15:34 - 2010-06-26 05:55 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2013-08-08 15:34 - 2010-06-26 05:24 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2013-08-08 15:33 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-08-08 15:33 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-08-08 15:33 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-08-08 15:33 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-08-08 15:33 - 2013-01-04 07:46 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-08-08 15:33 - 2013-01-04 06:51 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-08-08 15:33 - 2013-01-04 04:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-08-08 15:33 - 2013-01-04 04:47 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-08-08 15:33 - 2013-01-04 04:47 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-08-08 15:33 - 2013-01-04 04:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-08-08 15:33 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2013-08-08 15:33 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2013-08-08 15:33 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2013-08-08 15:33 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2013-08-08 15:33 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2013-08-08 15:33 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2013-08-08 15:33 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2013-08-08 15:33 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2013-08-08 15:33 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2013-08-08 15:33 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2013-08-08 15:33 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2013-08-08 15:33 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2013-08-08 15:33 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2013-08-08 15:33 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2013-08-08 15:33 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2013-08-08 15:33 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2013-08-08 15:33 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2013-08-08 15:33 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2013-08-08 15:33 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2013-08-08 15:33 - 2012-11-22 07:44 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2013-08-08 15:33 - 2012-11-22 06:45 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2013-08-08 15:33 - 2012-11-20 07:48 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-08-08 15:33 - 2012-11-20 06:51 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-08-08 15:33 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2013-08-08 15:33 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2013-08-08 15:33 - 2012-08-24 20:05 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-08 15:33 - 2012-08-24 18:57 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-08 15:33 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2013-08-08 15:32 - 2012-11-30 07:45 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-08-08 15:32 - 2012-11-30 07:45 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-08-08 15:32 - 2012-11-30 07:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-08-08 15:32 - 2012-11-30 07:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-08-08 15:32 - 2012-11-30 07:41 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-08-08 15:32 - 2012-11-30 07:41 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-08-08 15:32 - 2012-11-30 06:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 05:23 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-08-08 15:32 - 2012-11-30 04:38 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 04:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 04:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 04:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-08-08 15:32 - 2012-11-30 01:17 - 00420064 _____ C:\Windows\SysWOW64\locale.nls 2013-08-08 15:32 - 2012-11-30 01:15 - 00420064 _____ C:\Windows\system32\locale.nls 2013-08-08 15:32 - 2012-08-11 02:56 - 00715776 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2013-08-08 15:32 - 2012-08-11 01:56 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2013-08-08 15:32 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2013-08-08 15:32 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2013-08-08 15:32 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2013-08-08 15:31 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-08-08 15:31 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2013-08-08 15:31 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-08-08 15:31 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2013-08-08 15:31 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2013-08-08 15:31 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2013-08-08 15:31 - 2012-07-06 22:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2013-08-08 15:30 - 2013-05-13 07:51 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-08 15:30 - 2013-05-13 07:51 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-08 15:30 - 2013-05-13 07:51 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-08 15:30 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2013-08-08 15:30 - 2013-05-13 06:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-08 15:30 - 2013-05-13 06:45 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-08-08 15:30 - 2013-05-13 06:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-08-08 15:30 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-08-08 15:30 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-08-08 15:30 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-08-08 15:30 - 2013-03-19 08:04 - 05550424 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-08 15:30 - 2013-03-19 07:46 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-08-08 15:30 - 2013-03-19 07:04 - 03968856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-08-08 15:30 - 2013-03-19 07:04 - 03913560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-08-08 15:30 - 2013-03-19 06:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-08-08 15:30 - 2013-03-19 05:06 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-08-08 15:30 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2013-08-08 15:30 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2013-08-08 15:30 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2013-08-08 15:30 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2013-08-08 15:30 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2013-08-08 15:30 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2013-08-08 15:30 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2013-08-08 15:30 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2013-08-08 15:30 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2013-08-08 15:30 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2013-08-08 15:29 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-08-08 15:29 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2013-08-08 15:29 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2013-08-08 15:29 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2013-08-08 15:29 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2013-08-08 15:29 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2013-08-07 21:23 - 2013-08-07 21:23 - 00000000 ____D C:\Users\Les\AppData\Roaming\PwrMgr 2013-08-07 21:14 - 2013-08-07 21:14 - 00000000 ____D C:\Users\Les\AppData\Roaming\Google 2013-08-07 21:14 - 2013-08-07 21:14 - 00000000 ____D C:\Users\Les\AppData\Local\VeriSign 2013-08-07 19:22 - 2013-08-08 17:06 - 00000000 ____D C:\Users\Les\AppData\Roaming\LSC 2013-08-07 19:22 - 2013-08-07 19:24 - 00000000 ____D C:\Users\Les\AppData\Local\LSC 2013-08-07 19:22 - 2013-08-07 19:22 - 00000000 ____D C:\Users\Les\AppData\Roaming\Adobe 2013-08-07 19:20 - 2013-08-09 11:20 - 00000000 ____D C:\Users\Les\AppData\Roaming\Nitro PDF 2013-08-07 19:18 - 2013-08-07 20:29 - 00000000 ____D C:\Users\Les\AppData\Roaming\Lenovo 2013-08-07 19:18 - 2013-08-07 20:29 - 00000000 ____D C:\Users\Les\AppData\Local\Lenovo 2013-08-07 19:18 - 2013-08-07 19:18 - 00000000 ____D C:\Users\Les\AppData\Roaming\Leadertech 2013-08-07 19:17 - 2013-08-09 11:17 - 00001432 _____ C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-07 19:17 - 2013-08-09 11:17 - 00000000 ___RD C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-07 19:17 - 2013-08-09 11:17 - 00000000 ___RD C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-07 19:17 - 2013-08-08 16:46 - 00000000 ____D C:\Users\Les\AppData\Local\VirtualStore 2013-08-07 19:17 - 2013-08-08 16:29 - 00000000 ____D C:\Users\Les\AppData\Local\Google 2013-08-07 19:15 - 2013-08-09 11:17 - 00122216 _____ C:\Users\Les\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-07 19:14 - 2013-08-07 19:14 - 00000000 ____D C:\Users\Les\AppData\Local\AuthenTec 2013-08-07 19:13 - 2013-08-09 11:18 - 00007859 _____ C:\Users\Les\AppData\Roaming\AbsoluteReminder.xml 2013-08-07 19:13 - 2013-08-07 19:13 - 00000000 ____D C:\Users\Les\AppData\Local\Absolute_Software 2013-08-07 19:13 - 2013-08-07 19:13 - 00000000 _____ C:\Users\Les\agent.log 2013-08-07 19:13 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-08-07 19:13 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-08-07 19:13 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-08-07 19:13 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-08-07 19:13 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-08-07 19:13 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-08-07 19:13 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-08-07 19:13 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-08-07 19:13 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-08-07 19:12 - 2013-08-09 14:06 - 00000000 ____D C:\Users\Les 2013-08-07 19:12 - 2013-08-08 17:19 - 00003366 _____ C:\Windows\System32\Tasks\Absolute Reminder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000020 ___SH C:\Users\Les\ntuser.ini 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Vorlagen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Startmenü 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Netzwerkumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Lokale Einstellungen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Eigene Dateien 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Druckumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\AppData\Local\Verlauf 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\AppData\Local\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Vorlagen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Startmenü 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Programme 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Vorlagen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Startmenü 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Favoriten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Dokumente 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Dokumente und Einstellungen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 ____D C:\Users\Les\AppData\Roaming\Intel 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _____ C:\Windows\firstboot.dat 2013-08-07 19:12 - 2013-05-25 05:05 - 00000000 ____D C:\Users\Les\AppData\Roaming\Macromedia 2013-08-07 19:12 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-08-07 19:12 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance ==================== One Month Modified Files and Folders ======= 2013-08-09 14:08 - 2013-08-09 14:08 - 00000000 ____D C:\FRST 2013-08-09 14:07 - 2013-08-09 14:07 - 00000468 _____ C:\Users\Les\Desktop\defogger_disable.log 2013-08-09 14:06 - 2013-08-09 14:06 - 00000000 _____ C:\Users\Les\defogger_reenable 2013-08-09 14:06 - 2013-08-07 19:12 - 00000000 ____D C:\Users\Les 2013-08-09 14:04 - 2013-08-09 14:04 - 01790059 _____ (Farbar) C:\Users\Les\Desktop\FRST64.exe 2013-08-09 14:04 - 2013-08-09 14:04 - 00050477 _____ C:\Users\Les\Desktop\Defogger.exe 2013-08-09 13:56 - 2013-08-08 16:19 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-09 13:30 - 2013-08-08 15:49 - 00000000 ____D C:\ProgramData\McAfee 2013-08-09 11:52 - 2013-08-09 11:52 - 00000000 ____D C:\NvidiaLogging 2013-08-09 11:51 - 2013-05-25 04:55 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-08-09 11:51 - 2013-05-25 04:54 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-08-09 11:51 - 2009-07-14 06:51 - 00052576 _____ C:\Windows\setupact.log 2013-08-09 11:50 - 2013-08-09 11:50 - 00000000 ____D C:\Users\Les\AppData\Local\NVIDIA 2013-08-09 11:48 - 2013-05-25 04:55 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-08-09 11:48 - 2013-05-25 04:54 - 01443576 _____ C:\Windows\WindowsUpdate.log 2013-08-09 11:47 - 2013-08-09 11:47 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-08-09 11:46 - 2013-08-09 11:44 - 01589182 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-08-09 11:46 - 2013-05-25 14:40 - 00696370 _____ C:\Windows\system32\perfh007.dat 2013-08-09 11:46 - 2013-05-25 14:40 - 00147634 _____ C:\Windows\system32\perfc007.dat 2013-08-09 11:46 - 2009-07-14 07:13 - 01589182 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-09 11:40 - 2013-08-09 11:40 - 00000000 ____D C:\Windows\SysWOW64\NV 2013-08-09 11:40 - 2013-08-09 11:40 - 00000000 ____D C:\Windows\system32\NV 2013-08-09 11:40 - 2013-05-25 04:55 - 00000000 ____D C:\ProgramData\NVIDIA 2013-08-09 11:38 - 2013-08-09 11:38 - 00000000 ____D C:\Windows\LastGood 2013-08-09 11:35 - 2013-08-09 11:35 - 00000000 ____D C:\NVIDIA 2013-08-09 11:24 - 2013-08-09 11:20 - 233871960 _____ (NVIDIA Corporation) C:\Users\Les\Downloads\320.49-notebook-win8-win7-64bit-international-whql.exe 2013-08-09 11:21 - 2009-07-14 06:45 - 00031248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-09 11:21 - 2009-07-14 06:45 - 00031248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-09 11:20 - 2013-08-07 19:20 - 00000000 ____D C:\Users\Les\AppData\Roaming\Nitro PDF 2013-08-09 11:19 - 2013-05-25 05:05 - 00000000 ____D C:\Windows\System32\Tasks\Lenovo 2013-08-09 11:18 - 2013-08-07 19:13 - 00007859 _____ C:\Users\Les\AppData\Roaming\AbsoluteReminder.xml 2013-08-09 11:17 - 2013-08-08 19:19 - 00000384 _____ C:\Windows\Tasks\LyricXeeker Update.job 2013-08-09 11:17 - 2013-08-07 19:17 - 00001432 _____ C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-09 11:17 - 2013-08-07 19:17 - 00000000 ___RD C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-09 11:17 - 2013-08-07 19:17 - 00000000 ___RD C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-09 11:17 - 2013-08-07 19:15 - 00122216 _____ C:\Users\Les\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-09 11:17 - 2013-05-25 04:56 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job 2013-08-09 11:16 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-09 11:15 - 2010-11-21 05:47 - 00384518 _____ C:\Windows\PFRO.log 2013-08-09 11:15 - 2009-07-14 06:45 - 00434360 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-08 22:44 - 2013-05-25 05:09 - 629145600 ___SH C:\Windows\lenovo_fastboot.img 2013-08-08 22:41 - 2011-12-08 22:03 - 00000000 ____D C:\Program Files\Windows Journal 2013-08-08 22:41 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-08 22:41 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-08 22:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK 2013-08-08 22:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2013-08-08 22:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK 2013-08-08 22:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-08-08 22:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-08-08 22:41 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System 2013-08-08 22:40 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\SysWOW64\sysprep 2013-08-08 22:40 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\winrm 2013-08-08 22:40 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\WCN 2013-08-08 22:40 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\slmgr 2013-08-08 22:40 - 2010-11-21 09:06 - 00000000 ____D C:\Windows\system32\Printing_Admin_Scripts 2013-08-08 22:40 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-08-08 22:40 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2013-08-08 22:40 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker 2013-08-08 22:40 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-08-08 22:40 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Setup 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\oobe 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\MUI 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\Dism 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\com 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Setup 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\MUI 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\migwiz 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Dism 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\com 2013-08-08 22:40 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\servicing 2013-08-08 22:04 - 2013-08-08 21:34 - 00448166 _____ C:\Windows\msxml4-KB973688-enu.LOG 2013-08-08 21:28 - 2013-08-08 21:00 - 00447866 _____ C:\Windows\msxml4-KB954430-enu.LOG 2013-08-08 20:58 - 2013-08-08 20:45 - 00011248 _____ C:\Windows\IE10_main.log 2013-08-08 20:51 - 2013-08-08 20:51 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-08 20:51 - 2013-08-08 20:51 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-08 20:51 - 2013-08-08 20:51 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-08 20:51 - 2013-08-08 20:51 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-08 20:51 - 2013-08-08 20:51 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-08-08 20:51 - 2013-08-08 20:51 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-08-08 20:51 - 2013-08-08 20:51 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-08-08 20:51 - 2013-08-08 20:51 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-08-08 20:51 - 2013-08-08 20:51 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-08-08 20:51 - 2013-08-08 20:51 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-08-08 20:51 - 2013-08-08 20:51 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-08-08 20:51 - 2013-08-08 20:51 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-08-08 20:51 - 2013-08-08 20:51 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-08-08 20:47 - 2013-08-08 20:47 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-08 20:47 - 2013-08-08 20:47 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-08 19:20 - 2013-08-08 19:20 - 00000000 ____D C:\Program Files (x86)\PhotoFiltre7 2013-08-08 19:19 - 2013-08-08 19:19 - 00003028 _____ C:\Windows\System32\Tasks\LyricXeeker Update 2013-08-08 19:19 - 2013-08-08 19:19 - 00000000 ____D C:\Users\Les\AppData\Roaming\Babylon 2013-08-08 19:19 - 2013-08-08 19:19 - 00000000 ____D C:\ProgramData\Babylon 2013-08-08 19:19 - 2013-08-08 19:19 - 00000000 ____D C:\Program Files (x86)\LyriXeeker 2013-08-08 19:19 - 2013-08-08 16:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-08 19:11 - 2013-08-08 19:11 - 00000000 ____D C:\Users\Les\AppData\Roaming\vlc 2013-08-08 19:10 - 2013-08-08 19:10 - 00000000 ____D C:\Program Files\VideoLAN 2013-08-08 18:52 - 2013-08-08 18:52 - 00003694 _____ C:\Windows\System32\Tasks\Adobe-Online-Aktualisierungsprogramm 2013-08-08 18:52 - 2013-08-08 16:16 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-08-08 18:49 - 2013-08-08 18:08 - 00000866 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-08-08 18:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-08-08 18:09 - 2013-08-08 18:07 - 00000000 ____D C:\Users\Les\AppData\Roaming\Trillian 2013-08-08 18:07 - 2013-08-08 17:46 - 00000000 ____D C:\Program Files (x86)\Trillian 2013-08-08 17:43 - 2013-08-08 17:32 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-08-08 17:38 - 2009-07-14 04:34 - 00000478 _____ C:\Windows\win.ini 2013-08-08 17:36 - 2013-08-08 17:36 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-08 17:35 - 2013-08-08 17:35 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2013-08-08 17:35 - 2013-08-08 17:32 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-08 17:35 - 2011-12-08 22:02 - 00000000 ____D C:\Windows\ShellNew 2013-08-08 17:35 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-08-08 17:33 - 2013-08-08 17:33 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2013-08-08 17:33 - 2013-08-08 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-08-08 17:32 - 2013-08-08 17:32 - 00000000 ____D C:\Users\Les\AppData\Local\Microsoft Help 2013-08-08 17:32 - 2013-08-08 17:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-08 17:31 - 2013-08-08 17:31 - 00000000 __RHD C:\MSOCache 2013-08-08 17:19 - 2013-08-07 19:12 - 00003366 _____ C:\Windows\System32\Tasks\Absolute Reminder 2013-08-08 17:06 - 2013-08-07 19:22 - 00000000 ____D C:\Users\Les\AppData\Roaming\LSC 2013-08-08 16:58 - 2013-08-08 16:00 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-08-08 16:58 - 2013-05-25 05:17 - 00000000 ____D C:\ProgramData\Norton 2013-08-08 16:58 - 2013-05-25 05:12 - 00000000 ____D C:\ProgramData\Partner 2013-08-08 16:58 - 2013-05-25 05:12 - 00000000 ____D C:\Program Files\Google 2013-08-08 16:58 - 2013-05-25 05:12 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-08 16:55 - 2013-08-08 16:55 - 00000000 ____D C:\Users\Les\AppData\Local\CrashDumps 2013-08-08 16:46 - 2013-08-07 19:17 - 00000000 ____D C:\Users\Les\AppData\Local\VirtualStore 2013-08-08 16:37 - 2013-08-08 16:17 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2013 2013-08-08 16:29 - 2013-08-07 19:17 - 00000000 ____D C:\Users\Les\AppData\Local\Google 2013-08-08 16:20 - 2013-08-08 16:20 - 00000000 ____D C:\Users\Les\AppData\Local\Macromedia 2013-08-08 16:20 - 2013-08-08 16:19 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-08 16:20 - 2013-08-08 15:35 - 00000000 ____D C:\Users\Les\AppData\Local\Adobe 2013-08-08 16:19 - 2013-08-08 16:19 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-08-08 16:19 - 2013-08-08 16:19 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-08 16:19 - 2013-08-08 16:19 - 00000000 ____D C:\Windows\system32\Macromed 2013-08-08 16:18 - 2013-08-08 16:18 - 00002220 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-08 16:18 - 2013-08-08 16:18 - 00002200 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-08-08 16:17 - 2013-08-08 16:17 - 00000000 ____D C:\Users\Les\AppData\Roaming\TuneUp Software 2013-08-08 16:17 - 2013-08-08 16:17 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-08-08 16:09 - 2013-08-08 16:09 - 00000000 ____D C:\Users\Les\AppData\Roaming\Mozilla 2013-08-08 16:09 - 2013-08-08 16:09 - 00000000 ____D C:\Users\Les\AppData\Local\Mozilla 2013-08-08 16:08 - 2013-08-08 16:08 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-08 16:08 - 2013-08-08 16:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-08 16:04 - 2013-08-08 16:00 - 00000000 ____D C:\Program Files\McAfee 2013-08-08 16:02 - 2013-08-08 15:49 - 00000000 ____D C:\Program Files\Common Files\McAfee 2013-08-08 16:01 - 2013-08-08 16:01 - 00000000 ____D C:\Program Files (x86)\McAfee.com 2013-08-08 16:00 - 2013-08-08 16:00 - 00000000 ____D C:\Program Files\McAfee.com 2013-08-08 15:37 - 2013-05-25 05:05 - 00000000 ____D C:\Windows\Downloaded Installations 2013-08-07 21:23 - 2013-08-07 21:23 - 00000000 ____D C:\Users\Les\AppData\Roaming\PwrMgr 2013-08-07 21:14 - 2013-08-07 21:14 - 00000000 ____D C:\Users\Les\AppData\Roaming\Google 2013-08-07 21:14 - 2013-08-07 21:14 - 00000000 ____D C:\Users\Les\AppData\Local\VeriSign 2013-08-07 21:10 - 2013-05-25 05:09 - 00000000 ____D C:\swshare 2013-08-07 20:29 - 2013-08-07 19:18 - 00000000 ____D C:\Users\Les\AppData\Roaming\Lenovo 2013-08-07 20:29 - 2013-08-07 19:18 - 00000000 ____D C:\Users\Les\AppData\Local\Lenovo 2013-08-07 20:29 - 2013-05-24 22:32 - 00000000 ____D C:\ProgramData\Lenovo 2013-08-07 19:25 - 2013-05-25 05:19 - 00000000 ____D C:\Windows\System32\Tasks\TVT 2013-08-07 19:25 - 2013-05-25 04:57 - 00000000 ____D C:\Program Files (x86)\Lenovo 2013-08-07 19:24 - 2013-08-07 19:22 - 00000000 ____D C:\Users\Les\AppData\Local\LSC 2013-08-07 19:22 - 2013-08-07 19:22 - 00000000 ____D C:\Users\Les\AppData\Roaming\Adobe 2013-08-07 19:18 - 2013-08-07 19:18 - 00000000 ____D C:\Users\Les\AppData\Roaming\Leadertech 2013-08-07 19:14 - 2013-08-07 19:14 - 00000000 ____D C:\Users\Les\AppData\Local\AuthenTec 2013-08-07 19:14 - 2013-05-25 04:54 - 00000042 _____ C:\Windows\SysWOW64\Drivers\17AA_Lenovo_ThinkPad_S430_3364_3EG.MRK 2013-08-07 19:14 - 2011-02-24 19:03 - 00000000 ____D C:\Windows\Panther 2013-08-07 19:14 - 2011-02-24 19:03 - 00000000 ____D C:\SWTOOLS 2013-08-07 19:13 - 2013-08-07 19:13 - 00000000 ____D C:\Users\Les\AppData\Local\Absolute_Software 2013-08-07 19:13 - 2013-08-07 19:13 - 00000000 _____ C:\Users\Les\agent.log 2013-08-07 19:12 - 2013-08-07 19:12 - 00000020 ___SH C:\Users\Les\ntuser.ini 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Vorlagen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Startmenü 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Netzwerkumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Lokale Einstellungen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Eigene Dateien 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Druckumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\AppData\Local\Verlauf 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\AppData\Local\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Les\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Vorlagen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Startmenü 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Programme 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Vorlagen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Startmenü 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Favoriten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Dokumente 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _SHDL C:\Dokumente und Einstellungen 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 ____D C:\Users\Les\AppData\Roaming\Intel 2013-08-07 19:12 - 2013-08-07 19:12 - 00000000 _____ C:\Windows\firstboot.dat 2013-08-07 19:12 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore 2013-08-07 19:12 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default 2013-08-07 19:12 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Windows NT ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-08 18:27 ==================== End Of Log ============================ |
![]() | #3 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7: "Ads not by this site" Meldung Hi,
__________________bitte in die Additions.txt, die du bereits erstellt hast mit FRST, folgene Info einfügen. Empfehlungen fürs Deinstallieren Bitte kopiere die Liste der installierten Programme aus der additions.txt hier in deinen Thread. Notiere mir bitte hinter jede Zeile, ob folgendes Kategorie zutrifft: Unbekannt, Nötig, Unnötig
__________________ |
![]() | #4 |
![]() | ![]() Windows 7: "Ads not by this site" Meldung Uh ehrlich zu sein.. keine Ahnung. Diese Programme sind von mir installiert (s.u.) und der ganze Rest war bereits drauf. Habe noch nicht die Zeit gehabt mich mit dem ganzen Kram auseinander zu setzen. Größtenteils habe ich keine Ahnung was das alles ist. McAfee SecurityCenter (x32 Version: 12.1.353) Microsoft Office 2010 Service Pack 1 (SP1) Microsoft Office Access MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Excel MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Office 32-bit Components 2010 (Version: 14.0.6029.1000) Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Professional 2010 (Version: 14.0.4763.1000) Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (Italian) 2010 (Version: 14.0.6029.1000) Microsoft Office Proofing (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Single Image 2010 (Version: 14.0.4763.1000) Microsoft Office Word MUI (German) 2010 (Version: 14.0.6029.1000) Mozilla Firefox 23.0 (x86 de) (x32 Version: 23.0) Mozilla Maintenance Service (x32 Version: 23.0) TuneUp Utilities 2013 (x32 Version: 13.0.3020.2) TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3020.2) VLC media player 2.0.7 (Version: 2.0.7) |
![]() | #5 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7: "Ads not by this site" Meldung ich möchte die Liste komplett haben, mit den genannten beschriftungen
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
![]() | #6 |
![]() | ![]() Windows 7: "Ads not by this site" Meldung Ich hoffe ich hab alles erwischt Absolute Reminder (x32 Version: unbekannt Adobe AIR (x32 Version: - unbekannt Adobe Flash Player 10 ActiveX (x32 Version: - nötig Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)- unbekannt Adobe Reader X (10.1.0) MUI (x32 Version: 10.1.0) - unbekannt Anzeige am Bildschirm (Version: 6.72.00) - unbekannt Burn.Now 4.5 (x32 Version: 4.5.0) - unbekannt Corel Burn.Now Lenovo Edition (x32 Version: 4.5.0) - unbekannt Corel DVD MovieFactory 7 (x32 Version: 7.0.0) - unbekannt Corel DVD MovieFactory Lenovo Edition (x32 Version: 7.0.0) - unbekannt Corel WinDVD (x32 Version: - unbekannt Create Recovery Media (x32 Version: - unbekannt D3DX10 (x32 Version: 15.4.2368.0902) - unbekannt Definition update for Microsoft Office 2010 (KB982726) - unbekannt Direct DiscRecorder (x32 Version: 1.00.0000) - unbekannt Dolby Home Theater v4 (x32 Version: 7.2.7000.11) - nötig dows-Treiberpaket - Intel (iaStor) hdc (02/01/2012 (Version: 02/01/2012 nötig Energie-Manager (x32 Version: 6.32) – nötig Evernote v. 4.2.3 (x32 Version: - unbekannt ExpressCache (Version: 1.0.86) - unbekannt Fingerprint Reader (Version: - nötig Integrated Camera Driver Installer Package Ver. (x32 Version: - nötig Intel PROSet Wireless - nötig Intel(R) Control Center (x32 Version: - unbekannt Intel(R) Manageability Engine Firmware Recovery Agent (x32 Version: - unbekannt Intel(R) Management Engine Components (x32 Version: - unbekannt Intel(R) OpenCL CPU Runtime (x32) - unbekannt Intel(R) Processor Graphics (x32 Version: Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: - unbekannt Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: - unbekannt Intel(R) Update Manager (x32 Version: - unbekannt Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: - unbekannt Intel(R) WiDi (x32 Version: - unbekannt Intel® PROSet/Wireless WiFi-Software (Version: 15.01.0000.0830) - unbekannt Intel® Trusted Connect Service Client (Version: 1.23.605.1) - unbekannt Junk Mail filter update (x32 Version: 15.4.3502.0922) - unbekannt Lenovo App Shop (x32 Version: 44154) - unbekannt Lenovo Auto Scroll Utility (Version: 1.11) - unbekannt Lenovo Patch Utility (x32 Version: - unbekannt Lenovo Patch Utility 64 bit (Version: - unbekannt Lenovo Registration (x32 Version: 1.0.4) - unbekannt Lenovo SimpleTap (Version: 3.2.0004.00) - unbekannt Lenovo Solution Center (Version: - unbekannt Lenovo Solutions for Small Business (x32) - unbekannt Lenovo Solutions for Small Business Customizations (x32 Version: 1.0.0006.00) - unbekannt Lenovo System Update (x32 Version: 5.02.0018) - unbekannt Lenovo User Guide (x32 Version: 1.0.0009.00) - unbekannt Lenovo Warranty Information (x32 Version: 1.0.0005.00) - unbekannt Lenovo Welcome (x32 Version: 3.1.0020.00) - unbekannt LyricXeeker (x32) - unbekannt McAfee SecurityCenter (x32 Version: 12.1.353) - nötig Mesh Runtime (x32 Version: 15.4.5722.2) - unbekannt Message Center Plus (Version: 3.1.0004.00) - unbekannt Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) - unbekannt Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) - unbekannt Microsoft .NET Framework 4 Extended (Version: 4.0.30319) - unbekannt Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) - unbekannt Microsoft Application Error Reporting (Version: 12.0.6015.5000) - unbekannt Microsoft Office 2010 Service Pack 1 (SP1) - nötig Microsoft Office Access MUI (German) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Excel MUI (German) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Office 32-bit Components 2010 (Version: 14.0.6029.1000) – unbekannt /unnötig, da 64-bit? Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Professional 2010 (Version: 14.0.4763.1000) - nötig Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Proof (German) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Proof (Italian) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Proofing (German) 2010 (Version: 14.0.6029.1000) - nötig Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.6029.1000) - unbekannt Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.6029.1000) – unbekannt /unnötig, da 64-bit? Microsoft Office Shared MUI (German) 2010 (Version: 14.0.6029.1000) – unbekannt Microsoft Office Single Image 2010 (Version: 14.0.4763.1000) – unbekannt Microsoft Office Word MUI (German) 2010 (Version: 14.0.6029.1000) – unbekannt Microsoft Silverlight (x32 Version: 4.0.50401.0) – unbekannt Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) – unbekannt Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) – unbekannt Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) – unbekannt Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) – unbekannt Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) – unbekannt Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) – unbekannt Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) – unbekannt Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) – unbekannt Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) – unbekannt Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) – unbekannt Mozilla Firefox 23.0 (x86 de) (x32 Version: 23.0) – nötig Mozilla Maintenance Service (x32 Version: 23.0) – unbekannt MSVCRT (x32 Version: 15.4.2862.0708) – unbekannt MSVCRT_amd64 (x32 Version: 15.4.2862.0708) – unbekannt Nitro Pro 7 (Version: – nötig NVIDIA GeForce Experience 1.6 (Version: 1.6) – nötig NVIDIA Grafiktreiber 320.49 (Version: 320.49) – nötig NVIDIA HD-Audiotreiber (Version: – nötig NVIDIA Install Application (Version: 2.1002.131.854) – unbekannt NVIDIA Optimus 7.2.17 (Version: 7.2.17) – unbekannt NVIDIA PhysX (x32 Version: 9.13.0604) – unbekannt NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604) – unbekannt NVIDIA Systemsteuerung 320.49 (Version: 320.49) – unbekannt NVIDIA Update 7.2.17 (Version: 7.2.17) – unbekannt NVIDIA Update Components (Version: 7.2.17) – unbekannt NVIDIA Virtual Audio 1.2.1 (Version: 1.2.1) – unbekant RapidBoot HDD Accelerator (x32 Version: 1.00.0802) – unbekannt RapidBoot Shield (Version: 1.23) – unbekannt Realtek Ethernet Controller Driver (x32 Version: 7.49.927.2011) – unbekannt Realtek High Definition Audio Driver (x32 Version: – unbekannt Realtek PCIE Card Reader (x32 Version: 6.1.7601.29005) – unbekannt Shared C Run-time for x64 (Version: 10.0.0) – unbekannt SHIELD Streaming (Version: 1.05.19) – unbekannt SugarSync Manager (x32 Version: – unbekannt ThinkPad Power Management Driver (Version: – unbekannt ThinkPad UltraNav Driver (Version: – unbekannt ThinkVantage Communications Utility (Version: – unbekannt ThinkVantage System für aktiven Festplattenschutz (Version: 1.76) – unbekannt TuneUp Utilities 2013 (x32 Version: 13.0.3020.2) – nötig TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3020.2) – nötig Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) – unbekannt Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) – unbekannt Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) – unbekannt VIP Access (x32 Version: – unbekannt VLC media player 2.0.7 (Version: 2.0.7) – nötig Windows Live Communications Platform (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Essentials (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Essentials (x32 Version: 15.4.3555.0308) – unbekannt Windows Live Fotogalerie (x32 Version: 15.4.3502.0922) – unbekannt Windows Live ID Sign-in Assistant (Version: 7.250.4232.0) – unbekannt Windows Live Installer (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Language Selector (Version: 15.4.3555.0308) – unbekannt Windows Live Mail (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Mesh (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2) – unbekannt Windows Live Messenger (x32 Version: 15.4.3538.0513) – unnötig Windows Live MIME IFilter (Version: 15.4.3502.0922) – unbekannt Windows Live Movie Maker (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Photo Common (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Photo Gallery (x32 Version: 15.4.3502.0922) – unbekannt Windows Live PIMT Platform (x32 Version: 15.4.3508.1109) – unbekannt Windows Live Remote Client (Version: 15.4.5722.2) – unbekannt Windows Live Remote Client Resources (Version: 15.4.5722.2) – unbekannt Windows Live Remote Service (Version: 15.4.5722.2) – unbekannt Windows Live Remote Service Resources (Version: 15.4.5722.2) – unbekannt Windows Live SOXE (x32 Version: 15.4.3502.0922) – unbekannt Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922) – unbekannt Windows Live UX Platform (x32 Version: 15.4.3502.0922) – unbekannt Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109) – unbekannt Windows Live Writer (x32 Version: 15.4.3502.0922) – unbekannt Windows Live Writer Resources (x32 Version: 15.4.3502.0922) – unbekannt Windows-Treiberpaket - Lenovo (02/29/2012 (Version: 02/29/2012 – unbekannt Windows-Treiberpaket - Synaptics (SmbDrvAMDASF) System (06/21/2012 (Version: 06/21/2012 – unbekannt Windows-Treiberpaket - Synaptics (SynTP) Mouse (06/21/2012 (Version: 06/21/2012 – unbekannt |
![]() | #7 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7: "Ads not by this site" Meldung Hi, bitte beachte in Zukunft: - Software nur vom hersteller instalieren, kein Chip etc. - Google die Programme, die du instalieren willst, mit dem Zusatz Adware, da findet man häufig was. - Lese die AGB's und Lizenzverträge, suche nach drittanbietersoftware bzw Toolbars. - instaliere immer benutzerdefiniert um Toolbars etc abzuwählen. Das wird immer nötiger, da, wie es scheint, alle Hersteller kostenloser Software und Seitenbetreiber jetzt Adware anbieten... Es sind 2 Logs zu erstellen, poste diese möglichst gleichzeitig. Deinstalation: Wenn eine Deinstalation nicht klappt, nutze rewo: Revo Uninstaller - Download - Filepony 1. deinstaliere: Adobe Flash Player alle Adobe - Adobe Flash Player installieren neueste version laden, instalieren. adobe reader: Adobe - Adobe Reader herunterladen - Alle Versionen haken bei mcafee security scan raus nehmen bitte auch mal den adobe reader wie folgt konfigurieren: adobe reader öffnen, bearbeiten, voreinstellungen. allgemein: nur zertifizierte zusatz module verwenden, anhaken. Sicherheit (erweitert) Erweiterte Sicherheit anhaken und alle Dateien auswählen. internet: hier sollte alles deaktiviert werden, es ist sehr unsicher pdfs automatisch zu öffnen, zu downloaden etc. es ist immer besser diese direkt abzuspeichern da man nur so die kontrolle hat was auf dem pc vor geht. bei javascript den haken bei java script verwenden raus nehmen bei updater, automatisch instalieren wählen. übernehmen /ok deinstaliere: Corel : falls nicht von dir verwendet. Evernote LyricXeeker TuneUp : verzichte auf solchen Unsinn, einige Funktionen können dem Betriebssystem auf kurz oder lang schaden, der rest bringt nichts, bzw kann windows das von allein, keine Tuning Software nutzen! Starte neu. 2. Scan mit Combofix
3. Downloade dir bitte ![]()
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
![]() | #8 |
![]() | ![]() Windows 7: "Ads not by this site" Meldung Alles deinstallier und neu gemacht. Wie kann ich denn McAfee inaktivieren um den Scan durchzuführen? Edit: hat sich schon erledigt. Sorry |
![]() | #9 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7: "Ads not by this site" Meldung Entweder über Rechtsklick auf das Symbol im Infobereich oder in MCafee selbst, sorry nutze es nicht.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
![]() | #10 |
![]() | ![]() Windows 7: "Ads not by this site" Meldung Habs geschafft. Man muss einzeln die Symbole anklicken und alles deaktivieren. Bin nur etwas irritiert, dass der nach einer halben Stunde immer noch scannt. Da steht Fertiggestellt Stufe_4 |
![]() | #11 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7: "Ads not by this site" Meldung hi, warte eine Stunde, wenn die Stufen bis dahin nicht weiter fertig gestellt werden, schließe das Programm, starte neu, drücke f8 wähle abgesicherter Modus. Melde dich in deinem Konto an, lasse erneut scanne.n. Wenn fertig, oder es wieder nicht läuft, in den normalen Modus und mit Log bzw Problemmeldung melden.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
![]() | #12 |
![]() | ![]() Windows 7: "Ads not by this site" Meldung Okay, dann versuche ich das noch einmal. Das Problem schreint aber irgendwie bereits verschwunden zu sein. Trotzdem scannen? |
![]() | #13 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7: "Ads not by this site" Meldung Ja, sonst hätte ich ihn nicht angefordert :-)
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
![]() | #14 |
![]() | ![]() Windows 7: "Ads not by this site" Meldung Okay dann lasse ich noch einmal Scannen. Danke auf jeden Fall für die Hilfe!! |
![]() | #15 |
/// Malware-holic ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Windows 7: "Ads not by this site" Meldung Hi, im abgesicherten Modus hattest du es noch nicht versucht oder? nur falls ich deinen vorhergehenen Post falsch verstanden haben sollte. Falls du es im abges. Modus schon versucht hast, musst du nich noch mal.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
![]() |
Themen zu Windows 7: "Ads not by this site" Meldung |
adblock, ads, ads not by this site, ads not by this site meldung, ahnung, anderen, aufgegeben, autostart, deaktivieren, einfach, farbar, farbar recovery scan tool, feedback, grafikkarte, heute, installiert, internet, laptop, lyrixeeker, mcafee, meldung, nervig, neue, neuen, not, programme, thema, this, trustedinstaller, webseite, webseiten, windows, windows 7, wirklich |