|
Log-Analyse und Auswertung: Adware : Generic_r.GQWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
13.09.2013, 23:13 | #1 |
| Adware : Generic_r.GQ Liebe Profis, mein AVG Antivirus bringt die Meldung *Adware Generic_r.GQ* gefunden, nachdem ich gestern gerade einen Komplettscan mit AVG und Malwarebyts gemacht habe und soeben im Firefox nur die Seite *spiegel.de* geöffnet habe. AVG hat diesen Wurm (?) dann weggehext , gibt es da für mich noch irgendwas zu tun, oder ist das Thema erledigt ? Bei gOOckel finde ich nichts für mich brauchbares darüber. Danke für Eure Hilfe, der unwissende Michael Geändert von Papperlapap (13.09.2013 um 23:20 Uhr) Grund: sorry, das gehört sicher in eine andere Rubrik, aber ich hab keine Ahnung, wie ich es jetzt noch dahin bekomme (*zerknirscht* |
14.09.2013, 06:07 | #2 |
/// the machine /// TB-Ausbilder | Adware : Generic_r.GQ hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.09.2013, 07:28 | #3 |
| Adware : Generic_r.GQ hi schrauber,
__________________danke für deine schnelle antwort und hilfe ! angehängt das scanergebnis. bin gespannt michael |
14.09.2013, 12:52 | #4 |
| Adware : Generic_r.GQ Nachtrag : gerade beim surfen auf "normalen" seiten erneut die folgende fehlermeldung |
14.09.2013, 22:38 | #5 |
/// the machine /// TB-Ausbilder | Adware : Generic_r.GQ hi, So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
14.09.2013, 23:01 | #6 |
| Adware : Generic_r.GQ sorry, hab das nicht geblickt... Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-09-2013 04 Ran by Michael at 2013-09-14 08:15:16 Running from C:\Users\Michael\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Aunsoft SWF Converter version 1.2.1.1 (x32) Update for Microsoft Office 2007 (KB2508958) (x32) 2007 Microsoft Office system (x32 Version: 12.0.6612.1000) 7-Zip 9.13 beta (x32) Accent WORD Password Recovery (x32 Version: 6.0.48.1474) Acrobat.com (x32 Version: 1.6.65) Activation Assistant for the 2007 Microsoft Office suites (x32 Version: 1.0) Activation Assistant for the 2007 Microsoft Office suites (x32) Actualização do Microsoft Office Excel 2007 Help (KB963678) (x32) Actualização do Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Actualização do Microsoft Office Word 2007 Help (KB963665) (x32) Ad-Aware Browsing Protection (x32 Version: 1.0.1.94) Adobe AIR (x32 Version: 1.5.0.7220) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.168) Adobe Reader XI (11.0.04) - Deutsch (x32 Version: 11.0.04) Advanced SystemCare 6 (x32 Version: 6.0) ÅíçìåñùìÝíç Ýêäïóç Microsoft Office Excel 2007 Help (KB963678) (x32) ÅíçìåñùìÝíç Ýêäïóç Microsoft Office Powerpoint 2007 Help (KB963669) (x32) ÅíçìåñùìÝíç Ýêäïóç Microsoft Office Word 2007 Help (KB963665) (x32) Alcor Micro USB Card Reader (x32 Version: 1.2.17.25001) AllDup 3.3.14 (x32 Version: 3.3.14) AnvSoft Photo Flash Maker Free 5.12 (x32 Version: 5.12) Apple Application Support (x32 Version: 1.4.0) Apple Software Update (x32 Version: 2.1.1.116) Ashampoo ClipFinder HD v.2.15 (x32 Version: 2.15) ASUS AI Recovery (x32 Version: 1.0.6) ASUS AP Bank (x32 Version: 1.0.0.0) ASUS CopyProtect (x32 Version: 1.0.0015) ASUS Data Security Manager (x32 Version: 1.00.0013) ASUS FancyStart (x32 Version: 1.0.5) ASUS LifeFrame3 (x32 Version: 3.0.20) ASUS Live Update (x32 Version: 2.5.9) ASUS MultiFrame (x32 Version: 1.0.0019) ASUS Power4Gear Hybrid (Version: 1.1.19) ASUS SmartLogon (x32 Version: 1.0.0007) ASUS Splendid Video Enhancement Technology (x32 Version: 1.02.0028) ASUS Virtual Camera (x32 Version: 1.0.17) Asus WebStorage (Version: 2.0.31.477) Asus_Camera_ScreenSaver (x32 Version: 2.0.0009) Atheros Client Installation Program (x32 Version: 7.0) Atheros Communications Inc.(R) AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver (x32 Version: 1.0.0.16) ATK Generic Function Service (x32 Version: 1.00.0008) ATK Hotkey (x32 Version: 1.0.0051) ATK Media (x32 Version: 2.0.0005) ATKOSD2 (x32 Version: 7.0.0005) Attack Surface Analyzer (Version: 5.3.0.0) Audacity 1.2.6 (x32) AVG 2013 (Version: 13.0.3222) AVG 2013 (Version: 13.0.3408) AVG 2013 (Version: 2013.0.3408) AVG PC Tuneup (x32 Version: 10.0.0.27) AviSynth 2.5 (x32) BleachBit (x32) Bonjour (Version: 2.0.0.34) BRUNS Sortimentskatalog 2004+ (x32) CDBurnerXP (Version: 4.3.8.2631) CDBurnerXP (x32 Version: 4.4.0.2905) Choice Guard (x32 Version: 1.2.87.0) Clownfish for Skype (x32) COMODO Internet Security (Version: 5.8.15089.2124) concept/design onlineTV 8 (x32 Version: 8.0.0.0) concept/design Video Jukebox (x32 Version: Video Jukebox) Content Manager 2 (x32 Version: 3.4.1.11834) ControlDeck (x32 Version: 1.0.4) CyberLink LabelPrint (x32 Version: 2.5.1720) CyberLink Power2Go (x32 Version: 6.1.2713) DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904) DivX-Setup (x32 Version: 2.5.0.15) Driver Booster (x32 Version: 1.0) Dropbox (HKCU Version: 1.4.7) DS-MP3 Source 1.30 (x32) DVBViewer TERRATEC Edition (x32) electroLyrics (x32) e-mix 5.6.4 Basic Edition (Version: 5.6.4) Emsisoft Anti-Malware (x32 Version: 6.0) Emsisoft HiJackFree 4.5 (x32 Version: 4.5) EPSON-Drucker-Software ESET Online Scanner v3 (x32) ETDWare PS/2-x64 7.0.5.5_WHQL Express Burn Disc Burning Software (x32) Express Rip (x32) Express Zip File Compression Software (x32) Fahrtenbuch V7 (x32 Version: 7.01.) Fast Boot (Version: 1.0.4) Foto2Avi 3.0 (x32 Version: 3.0) Fotosizer 1.29 (x32 Version: 1.29) Free Audio CD Burner version 1.3 (x32) Free Audio CD to MP3 Converter version 1.3.12.1228 (x32 Version: 1.3.12.1228) Free Audio Recorder 6.2.5 (x32) Free Download Manager 3.0 (x32) Free FLV Converter V 7.3.0 (x32 Version: 7.3.0.0) Free Screen Video Capture by Topviewsoft 1.1.7 (x32) Free YouTube Download 3 version 3.0.11.727 (x32) Free YouTube Download version 2.10.33.324 (x32) Free YouTube to MP3 Converter version 3.5 (x32) Freemake Video Downloader Version 2.0.3 (x32 Version: 2.0.3) FreshVideoDownloader (x32) Game Park Console (x32 Version: 5.2.1.4) GIMP 2.6.11 (x32 Version: 2.6.11) Glary Utilities 2.53.0.1726 (x32 Version: 2.53.0.1726) Glary Utilities 3.8 (x32 Version: 3.8.0.136) Google Chrome (HKCU Version: 29.0.1547.66) Google Earth (x32 Version: 5.0.11733.9347) Google Update Helper (x32 Version: 1.3.21.153) HDD-Booster v1.1 (x32) honestech Audio Recorder 2.0 Deluxe (x32 Version: 2.0) Hotspot Shield 1.57 (x32 Version: 1.57) ICQ7.2 (x32 Version: 7.2) iGrafx System (x32) Inkscape 0.47 (x32 Version: 0.47) Intel(R) Graphics Media Accelerator Driver (x32 Version: 8.15.10.2869) IrfanView (remove only) (x32 Version: 4.30) JAP (x32 Version: 00.13.001) Java 7 Update 9 (x32 Version: 7.0.90) Java Auto Updater (x32 Version: 2.1.9.0) Java(TM) 6 Update 22 (x32 Version: 6.0.220) Java(TM) 6 Update 30 (x32 Version: 6.0.300) Junk Mail filter update (x32 Version: 14.0.8050.1202) LightScribe System Software (x32 Version: 1.18.1.1) MAGIX Foto Designer 7 (x32 Version: 7.0.1.1) MAGIX PC Check & Tuning Free 2011 (x32 Version: 6.0.403.1050) MAGIX Screenshare (x32 Version: 4.3.6.1987) MAGIX Slideshow Maker 2 (x32 Version: 2.0.0.8) Malwarebytes' Anti-Malware (x32) McAfee Security Scan Plus (x32 Version: 3.0.318.3) MFZ0 codec (Remove Only) (x32) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office 2007 Service Pack 3 (SP3) (x32) Microsoft Office Access MUI (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access MUI (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Access Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel 2007 Help - Aggiornamento (KB963678) (x32) Microsoft Office Excel 2007 Help §ó·sµ{¦¡ (KB963678) (x32) Microsoft Office Excel 2007 Help Actualización (KB963678) (x32) Microsoft Office Excel MUI (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Excel MUI (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003) Microsoft Office IME (Chinese (Traditional)) 2007 (Version: 12.0.6612.1000) Microsoft Office IME (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000) Microsoft Office Outlook 2007 Help - Aggiornamento (KB963677) (x32) Microsoft Office Outlook 2007 Help Actualización (KB963677) (x32) Microsoft Office Outlook Connector (x32 Version: 12.0.6414.1000) Microsoft Office Outlook MUI (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Outlook MUI (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Powerpoint 2007 Help - Aggiornamento (KB963669) (x32) Microsoft Office Powerpoint 2007 Help §ó·sµ{¦¡ (KB963669) (x32) Microsoft Office Powerpoint 2007 Help Actualización (KB963669) (x32) Microsoft Office PowerPoint MUI (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint MUI (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office PowerPoint Viewer 2007 (English) (x32 Version: 12.0.6425.1000) Microsoft Office Professional Hybrid 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Arabic) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Basque) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Catalan) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Galician) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Portuguese (Brazil)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Russian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Proofing (Chinese (Traditional)) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing (Dutch) 2007 (x32 Version: 12.0.4518.1017) Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing (French) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing (Greek) 2007 (x32 Version: 12.0.4518.1029) Microsoft Office Proofing (Hebrew) 2007 (x32 Version: 12.0.4518.1016) Microsoft Office Proofing (Italian) 2007 (x32 Version: 12.0.4518.1018) Microsoft Office Proofing (Portuguese (Portugal)) 2007 (x32 Version: 12.0.4518.1029) Microsoft Office Proofing (Spanish) 2007 (x32 Version: 12.0.4518.1014) Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32) Microsoft Office Publisher MUI (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Publisher MUI (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Chinese (Traditional)) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Dutch) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (French) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Greek) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Hebrew) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Italian) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Portuguese (Portugal)) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit MUI (Spanish) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000) Microsoft Office Shared MUI (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared MUI (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word 2007 Help - Aggiornamento (KB963665) (x32) Microsoft Office Word 2007 Help §ó·sµ{¦¡ (KB963665) (x32) Microsoft Office Word 2007 Help Actualización (KB963665) (x32) Microsoft Office Word MUI (Chinese (Traditional)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (Dutch) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (French) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (Greek) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (Hebrew) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (Italian) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (Portuguese (Portugal)) 2007 (x32 Version: 12.0.6612.1000) Microsoft Office Word MUI (Spanish) 2007 (x32 Version: 12.0.6612.1000) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Sync Framework Runtime Native v1.0 (x86) (x32 Version: 1.0.1215.0) Microsoft Sync Framework Services Native v1.0 (x86) (x32 Version: 1.0.1215.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (x32) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (x32) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Mise à jour Microsoft Office Word 2007 Help (KB963665) (x32) MotoHelper 2.1.32 Driver 5.4.0 (x32 Version: 2.1.32) MotoHelper MergeModules (x32 Version: 1.2.0) Motorola Mobile Drivers Installation 5.4.0 (Version: 5.4.0) Mozilla Firefox 11.0 (x86 de) (x32 Version: 11.0) Mozilla Firefox 23.0.1 (x86 de) (HKCU Version: 23.0.1) Mozilla Firefox 4.0 (x86 de) (x32 Version: 4.0) Mozilla Thunderbird (3.1.7) (x32 Version: 3.1.7 (de)) Mozilla Thunderbird 17.0.8 (x86 de) (HKCU Version: 17.0.8) MSVCRT (x32 Version: 14.0.1468.721) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) myBubbles 1.1 (x32) MyMicroBalance (x32 Version: 2.1.2) MyPhoneExplorer (x32 Version: 1.8.4) Naviextras Toolbox Prerequesities (x32 Version: 1.0.0) NetObjects Fusion 1&1 Edition (x32 Version: 11.0 German) NetObjects Fusion Essentials (x32) NOXON DAB MediaPlayer (x32 Version: 1.0.10) òãëåï òáåø îñðï ãåàø äæáì ùì Microsoft Office Excel 2007 Help (KB963678) (x32) òãëåï òáåø îñðï ãåàø äæáì ùì Microsoft Office Powerpoint 2007 Help (KB963669) (x32) òãëåï òáåø îñðï ãåàø äæáì ùì Microsoft Office Word 2007 Help (KB963665) (x32) OpenOffice Password Recovery v1.0 (remove only) (HKCU Version: 1.0) OpenOffice.org 3.3 (x32 Version: 3.3.9567) Organ Uhr V1.2 (x32) PC Beschleunigen - Vollständige Deinstallation (Version: 2.3.18) PDF24 Creator 5.6.0 (x32) Personal Backup 5.4 (Version: 5.3) PhoXo (x32 Version: 8.0.0.0) Platform (x32 Version: 1.34) Prism Video File Converter (x32) Safari (x32 Version: 5.33.19.4) SC-log 4.1 (x32 Version: 4.1) Scrabble3D (x32 Version: 3.1.0.23) Security Task Manager 1.8c (x32 Version: 1.8c) Shape Collage (x32) SiSoftware Sandra Lite 2013.SP5 (Version: 19.58.2013.9) Skype Click to Call (x32 Version: 5.9.9216) Skype™ 6.6 (x32 Version: 6.6.106) Software Informer 1.1 (x32) Spybot - Search & Destroy (x32 Version: 1.6.2) Spyware Terminator (x32 Version: 2.8.0.18) SpywareBlaster 5.0 (x32 Version: 5.0.0) StreamTorrent 1.0 (x32) StreamTransport version: 1.0.2.2171 (x32) Sweet Home 3D version 3.6 (x32) TeamViewer 6 (x32 Version: 6.0.11656) TERRATEC Cinergy T Stick+ (64 Bit) (x32 Version: 86.001.1129.2011) Textaizer Pro v3.0 (x32 Version: 3.0) ThreatFire (x32) TubeBox (x32 Version: 1.0.0.0) TV-Browser 3.1 (x32 Version: 3.1) TVUPlayer 2.5.3.1 (x32 Version: 2.5.3.1) Uninstall 1.0.0.1 (x32) Update for 2007 Microsoft Office System (KB967642) (x32) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft Office 2007 Help for Common Features (KB963673) (x32) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32) Update for Microsoft Office Access 2007 Help (KB963663) (x32) Update for Microsoft Office Excel 2007 Help (KB963678) (x32) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (x32) Update for Microsoft Office Outlook 2007 Help (KB963677) (x32) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2825641) 32-Bit Edition (x32) Update for Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update for Microsoft Office Publisher 2007 Help (KB963667) (x32) Update for Microsoft Office Script Editor Help (KB963671) (x32) Update for Microsoft Office Word 2007 Help (KB963665) (x32) Update für Microsoft Office Excel 2007 Help (KB963678) (x32) Update für Microsoft Office Outlook 2007 Help (KB963677) (x32) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update für Microsoft Office Word 2007 Help (KB963665) (x32) Update voor Microsoft Office Excel 2007 Help (KB963678) (x32) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) (x32) Update voor Microsoft Office Word 2007 Help (KB963665) (x32) USB 2.0 1.3M UVC WebCam VC 9.0 Runtime (x32 Version: 1.0.0) VC80CRTRedist - 8.0.50727.4053 (x32 Version: 1.1.0) VIA Platform Device Manager (x32 Version: 1.34) Vimeo Video Downloader 3.17 (x32) Visual C++ 2008 x86 Runtime - (v9.0.30729) (x32 Version: 9.0.30729) Visual C++ 2008 x86 Runtime - v9.0.30729.01 (x32 Version: 9.0.30729.01) Visual C++ 8.0 Runtime Setup Package (x64) (x32 Version: 9.0.0.623) Visual Studio 2008 x64 Redistributables (x32 Version: 10.0.0.2) Visual Studio 2010 x64 Redistributables (Version: 13.0.0.1) VLC media player 2.0.5 (x32 Version: 2.0.5) Vodafone Mobile Connect Lite (x32 Version: 9.3.3.10523) WavePad Sound Editor (x32) Winamp (x32 Version: 5.622 ) Winamp Anwendungserkennung (HKCU Version: 1.0.0.1) WinDirStat 1.1.2 (HKCU) Windows Live Anmelde-Assistent (x32 Version: 5.000.818.6) Windows Live Call (x32 Version: 14.0.8050.1202) Windows Live Communications Platform (x32 Version: 14.0.8050.1202) Windows Live Essentials (x32 Version: 14.0.8050.1202) Windows Live Family Safety (Version: 14.0.8052.1208) Windows Live Fotogalerie (x32 Version: 14.0.8051.1204) Windows Live Mail (x32 Version: 14.0.8050.1202) Windows Live Messenger (x32 Version: 14.0.8050.1202) Windows Live Sync (x32 Version: 14.0.8050.1202) Windows Live Writer (x32 Version: 14.0.8050.1202) Windows Live-Uploadtool (x32 Version: 14.0.8014.1029) Windows Mobile-Gerätecenter (Version: 6.1.6965.0) Windows-Treiberpaket - TERRATEC (RTL2832U_IRHID) HIDClass (06/17/2010 8664.001.0617.2010) (Version: 06/17/2010 8664.001.0617.2010) Windows-Treiberpaket - TERRATEC (RTL2832UUSB) MEDIA (08/02/2010 64.001.0802.2010) (Version: 08/02/2010 64.001.0802.2010) WinFlash (x32) Wireless Console 3 (x32 Version: 3.0.10) Wireless Console 3 (x32 Version: 3.0.24) Xilisoft PowerPoint to Video Converter Free (x32 Version: 1.0.4.0419) Zattoo4 4.0.5 (x32 Version: 4.0.5) ZoneAlarm Firewall (x32 Version: 10.1.065.000) ZoneAlarm Free (x32 Version: 10.1.065.000) ZoneAlarm Security (x32 Version: 10.1.065.000) ==================== Restore Points ========================= 12-09-2013 16:30:45 SiSoftware Sandra Lite 12-09-2013 16:45:32 DirectX wurde installiert 12-09-2013 16:55:54 Driver Booster : Mobile Intel(R) 4 Series Express Chipset Family 13-09-2013 00:05:50 Windows Update 13-09-2013 08:54:59 Windows Update 13-09-2013 23:15:06 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2011-01-19 20:26 - 00429399 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 Zusätzlicher Eintrag von Trend Micro Internet Security entfernt 127.0.0.1 Zusätzlicher Eintrag von Trend Micro Internet Security entfernt 127.0.0.1 adtech.de 127.0.0.1 atwola.com 127.0.0.1 adserver.71i.de 127.0.0.1 71i.de 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com There are 1000 more lines. ==================== Scheduled Tasks (whitelisted) ============= Task: {044A6734-E90E-4F8F-B357-B2DC8AB3B5EC} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => Sc.exe start w32time task_started Task: {0E813D71-94D3-48B2-A7C8-00309562D3F5} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2013-09-08] (IObit) Task: {1F0368D4-14D2-4E48-981F-A0063DE5DE37} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-05-19] (ASUS) Task: {1F60D87D-9E62-4B3C-8B9E-C2CF92967E9C} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2013-09-08] (IObit) Task: {23A0EF5F-1557-4AD1-B811-104E6DD8B944} - System32\Tasks\{0CC4DD0D-9ADA-4835-8191-D1586903D752} => Firefox.exe hxxp://ui.skype.com/ui/0/4.2.0.155/de/abandoninstall?source=lightinstaller&page=tsMain&installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:notoffered;ienotdefaultbrowser2 Task: {3D0C8B3A-7D32-4FD5-92C2-DE459AA4AD3D} - System32\Tasks\PCCT - MAGIX AG => D:\Programme\PC-Check\MxTray.exe Task: {3DD85BE0-0EC3-4EE3-93B0-59587E8A2B76} - System32\Tasks\NCH Software\prismShakeIcon => C:\Program Files (x86)\NCH Software\Prism\Prism.exe [2011-12-07] (NCH Software) Task: {40A084D8-A6B7-4B2E-8F58-7A48620AE39B} - System32\Tasks\MotoHelper Update => C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {41410397-922B-4BA3-8033-52DCA60615B7} - System32\Tasks\NCH Swift Sound\expressripDowngrade => C:\Program Files (x86)\NCH Swift Sound\ExpressRip\expressrip.exe [2011-12-07] (NCH Software) Task: {42635D1B-8BB4-4FA8-8DD2-95044548613D} - System32\Tasks\GlaryInitialize 3 => D:\Programme\TuneUp\Glary Utilities 3\Initialize.exe [2013-08-07] (Glarysoft Ltd) Task: {45509E3B-916D-41C9-981E-786DFA0EF9BC} - System32\Tasks\ROC_REG_JAN_DELETE => C:\ProgramData\AVG January 2013 Campaign\ROC.exe [2013-01-17] () Task: {4832C5E7-4C8F-4FB3-9B64-EDD6C03CDD82} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe Task: {4A5544CB-CB72-4A06-91F0-56A13E7AF80C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000Core => C:\Users\Michael\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-04] (Google Inc.) Task: {4CCAA7FE-4F2A-4F76-902D-5AB654D0DE8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-31] (Google Inc.) Task: {4F663392-F11E-4330-B85A-039F59B5FFF6} - \Dealply No Task File Task: {5091B6E0-DB17-4421-892A-6E68E94DA836} - System32\Tasks\ASUSControlDeck => C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe [2009-09-24] () Task: {51857BDC-FB21-4E66-979A-14C4A577DB09} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000UA => C:\Users\Michael\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-04] (Google Inc.) Task: {55402507-7111-4784-A085-05AB20D338BC} - System32\Tasks\P4G Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation) Task: {57407DDF-CCA8-4D18-91E6-2377A457B8FC} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2009-07-23] (ATK) Task: {6E858FDF-6E9C-4C51-BD8D-21F707F87EEE} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation) Task: {701AF22D-0E49-4F64-8D07-53AB5D8423BE} - System32\Tasks\NCH Software\prismDowngrade => C:\Program Files (x86)\NCH Software\Prism\prism.exe [2011-12-07] (NCH Software) Task: {70888598-7DBC-4FCC-97F0-3C67224FA310} - System32\Tasks\MotoHelper MUM => C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {70B6C5BC-3F7B-4E40-9A1A-4975E8EBB0FC} - \DealPlyUpdate No Task File Task: {75974C27-4882-41E1-94F2-8FF1AA715820} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\System32\sdengin2.dll [2010-11-20] (Microsoft Corporation) Task: {78A2ABFE-F38E-4003-8E0C-BF3CF1689482} - System32\Tasks\{E9888436-5A8F-4BC5-A010-B76504E65BC5} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-21] (Skype Technologies S.A.) Task: {88145EF9-F281-45E0-A7A9-BD765E17CF59} - System32\Tasks\NCH Swift Sound\expressripShakeIcon => C:\Program Files (x86)\NCH Swift Sound\ExpressRip\ExpressRip.exe [2011-12-07] (NCH Software) Task: {901D61C0-7877-4DC6-A84B-C3784BBFD2CF} - System32\Tasks\NCH Software\expresszipShakeIcon => C:\Program Files (x86)\NCH Software\ExpressZip\ExpressZip.exe [2011-12-09] (NCH Software) Task: {90373AE7-051C-4CE4-AE22-4573C8261B8F} - System32\Tasks\electroLyrics Update => C:\Program Files (x86)\electroLyrics\electroLyrics.exe [2013-09-03] () Task: {938A08BB-3F18-44B1-8D5E-32C0ABF41D74} - System32\Tasks\ASPG => C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe [2009-06-29] (ASUS) Task: {A80F433B-2573-4E07-9294-956E31511D5E} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [2007-11-30] () Task: {AB759D56-31CA-4F66-A457-D2B7DED72128} - System32\Tasks\{835438BF-9028-47F7-ACAD-F5F4DFB8BEFA} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-21] (Skype Technologies S.A.) Task: {B48EFB26-CE7F-4992-83D6-4CFDA86F42CE} - \DealPlyLiveUpdateTaskMachineUA No Task File Task: {BE903A5B-755A-4A14-B323-F920D740CDB3} - System32\Tasks\User_Feed_Synchronization-{352043A8-965F-48FB-BF52-1875392499F9} => C:\Windows\system32\msfeedssync.exe [2013-05-11] (Microsoft Corporation) Task: {C26B872C-9BB8-42D1-AB4F-9EB244EBFC98} - System32\Tasks\WC3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2011-09-13] (ASUS) Task: {C470BD85-CA34-449E-817F-B16525BBBE80} - System32\Tasks\MotoHelper Routing => C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {CA899461-5C84-4A7D-98C2-133DC53C8AE2} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2009-07-29] (ATK) Task: {CA952268-5DC5-420C-94DE-A270A8E09D63} - System32\Tasks\ASC6_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe [2012-10-29] (IObit) Task: {CEBEF264-DD5B-4BD4-B56C-82F35CC75D5B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-12] (Adobe Systems Incorporated) Task: {ED9178D5-8437-4C6B-B712-C1CA0CE53176} - System32\Tasks\GlaryInitialize => D:\Programme\TuneUp\Glary Utilities\Glary Utilities\initialize.exe [2013-02-04] (Glarysoft Ltd) Task: {F6FF92D3-7F0A-4441-8594-F164CC324C2A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-05-31] (Google Inc.) Task: {F8DA4C01-23F0-4237-B0A8-8FE29411BD9A} - System32\Tasks\MotoHelper Initial Update => C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] () Task: {FC20B64B-9241-4B31-B06D-F6E99F123CE3} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-20] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe Task: C:\Windows\Tasks\electroLyrics Update.job => C:\Program Files (x86)\electroLyrics\electroLyrics.exe Task: C:\Windows\Tasks\GlaryInitialize 3.job => D:\Programme\TuneUp\Glary Utilities 3\Initialize.exe Task: C:\Windows\Tasks\GlaryInitialize.job => D:\Programme\TuneUp\Glary Utilities\Glary Utilities\initialize.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000Core.job => C:\Users\Michael\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000UA.job => C:\Users\Michael\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\PCCT - MAGIX AG.job => D:\Programme\PC-Check\MxTray.exe Task: C:\Windows\Tasks\ROC_REG_JAN_DELETE.job => C:\ProgramData\AVG January 2013 Campaign\ROC.exe ==================== Loaded Modules (whitelisted) ============= 2013-01-28 10:40 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2009-07-14 01:37 - 2009-07-14 03:39 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\Dwm.exe 2011-10-06 10:03 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\Explorer.EXE 2007-06-15 20:28 - 2007-06-15 20:28 - 00104960 _____ () C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt64.dll 2007-06-02 02:52 - 2007-06-02 02:52 - 00159744 _____ () C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt1_64.dll 2012-02-15 02:32 - 2012-02-15 02:32 - 00097792 _____ (Dropbox, Inc.) C:\Users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll 2009-03-02 04:07 - 2009-03-02 04:07 - 00200704 _____ ( ) C:\Program Files (x86)\ASUS\Asus WebStorage\LogicNP.EZShellExtensions.dll 2009-08-25 09:47 - 2009-08-25 09:47 - 00140560 _____ () C:\Program Files (x86)\ASUS\Asus WebStorage\EcaremeDLL.dll 2009-11-20 17:28 - 2009-11-20 17:28 - 00029968 _____ () C:\Windows\assembly\GAC_MSIL\SqliteShared\1.0.3524.15966__0d0f4b69e50e559b\SqliteShared.dll 2009-11-20 17:28 - 2009-11-20 17:28 - 00931840 _____ () C:\Windows\assembly\GAC_64\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll 2011-12-06 23:00 - 2011-12-06 23:00 - 00784240 _____ () C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperAgent.exe 2011-10-08 00:42 - 2010-11-20 15:25 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe 2009-11-20 17:49 - 2007-11-30 21:20 - 00051768 _____ () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe 2009-09-24 23:50 - 2009-09-24 23:50 - 00053888 _____ () C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe 2009-07-29 04:36 - 2009-07-29 04:36 - 00267832 _____ (ATK) C:\Program Files\P4G\BatteryLife.exe 2009-05-05 20:00 - 2009-05-05 20:00 - 00041472 _____ () C:\Program Files\P4G\DevMng.dll 2009-07-27 20:12 - 2009-07-27 20:12 - 00026624 _____ () C:\Program Files\P4G\OvrClk.dll 2009-11-20 17:48 - 2007-03-10 04:58 - 00124416 _____ () C:\Program Files\ATKGFNEX\AGFNEX64.dll 2009-07-23 20:30 - 2009-07-23 20:31 - 00684544 _____ (ATK) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe 2008-10-01 09:02 - 2008-10-01 09:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2009-08-25 09:47 - 2009-08-25 09:47 - 00095504 _____ () C:\Program Files (x86)\ASUS\Asus WebStorage\BSWorker.dll 2009-08-25 09:47 - 2009-08-25 09:47 - 00083216 _____ () C:\Program Files (x86)\ASUS\Asus WebStorage\BSBroker.dll 2009-04-09 15:17 - 2009-04-09 15:17 - 00320000 _____ (AlcorMicro Co., Ltd.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe 2013-08-07 04:30 - 2013-08-07 04:30 - 00083232 _____ () D:\Programme\TuneUp\Glary Utilities 3\x64\Win64ShellLink.exe 2007-05-31 11:11 - 2007-05-31 11:11 - 00660360 _____ (Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00163384 _____ (Intel Corporation) C:\Windows\System32\igfxtray.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrDEU.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00387640 _____ (Intel Corporation) C:\Windows\System32\hkcmd.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00418360 _____ (Intel Corporation) C:\Windows\System32\igfxpers.exe 2012-03-11 01:07 - 2012-03-11 01:07 - 00245248 _____ (Create Software) D:\Programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe 2013-09-12 17:03 - 2013-07-30 20:03 - 08438272 _____ (Dr. J. Rathlev, D-24222 Schwentinental) D:\Programme\Personal Backup 5\Persbackup.exe 2013-08-07 04:28 - 2013-08-07 04:28 - 00470816 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\Integrator.exe 2009-11-20 17:49 - 2006-10-10 05:07 - 00183296 _____ (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe 2013-09-14 08:08 - 2013-09-14 08:09 - 01950312 _____ (Farbar) C:\Users\Michael\Downloads\FRST64.exe 2010-07-15 13:21 - 2010-01-14 16:08 - 00460048 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFWAH.dll 2011-11-25 20:42 - 2011-10-19 14:33 - 00826008 _____ (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2engine.dll 2011-11-25 20:42 - 2011-11-16 13:09 - 02325416 _____ (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\quarantine.dll 2011-11-25 20:42 - 2011-11-02 09:57 - 14978440 _____ (IKARUS Security Software) C:\Program Files (x86)\Emsisoft Anti-Malware\T3.dll 2011-11-25 20:42 - 2011-05-20 15:13 - 00063792 _____ (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2core32.dll 2011-11-25 20:42 - 2011-11-02 11:13 - 00129224 _____ (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2dix86.dll 2011-11-25 20:42 - 2011-11-11 09:37 - 02861472 _____ (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2update.dll 2011-11-25 20:42 - 2011-02-04 19:58 - 00226696 _____ (Emsi Software GmbH) C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2WSC.dll 2009-05-19 00:06 - 2009-05-19 00:06 - 00430080 _____ (The cURL library, hxxp://curl.haxx.se/) D:\Programme\HotSpotShield\Hotspot Shield\bin\libcurl.dll 2009-03-30 04:34 - 2009-03-30 04:34 - 00280143 _____ () D:\Programme\HotSpotShield\Hotspot Shield\bin\libidn-11.dll 2009-03-27 22:02 - 2009-03-27 22:02 - 01554920 _____ () D:\Programme\HotSpotShield\Hotspot Shield\bin\libeay32.dll 2009-03-27 22:02 - 2009-03-27 22:02 - 00332254 _____ () D:\Programme\HotSpotShield\Hotspot Shield\bin\libssl32.dll 2011-11-04 19:58 - 2011-11-04 19:58 - 01032192 _____ (Motorola Mobility Inc.) C:\Program Files (x86)\Motorola\MotoHelper\PST.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00058640 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFServer.dll 2010-07-15 13:21 - 2010-01-14 16:07 - 00873744 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFE.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00045840 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFMon.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00107792 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFRK.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00028944 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFMisc.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00062736 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFLog.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00058640 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFUndo.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00423184 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFSF.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00353552 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFQT.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00161040 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFScan.dll 2010-07-15 13:21 - 2010-01-14 16:07 - 00066832 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFDBM.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00402704 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFTM.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00032528 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFO.dll 2010-07-15 13:21 - 2010-01-14 16:07 - 00099600 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFCR.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00144656 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFPA.dll 2010-07-15 13:21 - 2010-01-14 16:07 - 00044816 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TFAPI.dll 2008-07-04 13:51 - 2008-07-04 13:51 - 00057344 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMC.WindowsService.Core.dll 2008-07-04 13:51 - 2008-07-04 13:51 - 00013312 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMC.WindowsService.Messaging.dll 2008-07-04 13:51 - 2008-07-04 13:51 - 00148992 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMC.BaseServices.DataAccessor.dll 2008-07-04 13:51 - 2008-07-04 13:51 - 00110592 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMC.ConnectionServicesInterface.dll 2008-07-04 13:51 - 2008-07-04 13:51 - 00211968 _____ (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMC.BaseServices.Platform.dll 2010-07-15 13:21 - 2010-01-14 16:08 - 00460048 _____ (PC Tools) D:\Programme\Threatfire\ThreatFire\TfWah.dll 2012-12-24 01:47 - 2012-10-30 16:37 - 00348032 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 6\madExcept_.bpl 2012-12-24 01:47 - 2012-10-30 16:37 - 00182656 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 6\madBasic_.bpl 2012-12-24 01:47 - 2012-10-30 16:37 - 00050048 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 6\madDisAsm_.bpl 2011-09-13 14:33 - 2011-09-13 14:33 - 02891264 _____ (FreeImage) C:\Program Files (x86)\ASUS\Wireless Console 3\FreeImage.dll 2011-09-13 14:33 - 2011-09-13 14:33 - 00331776 _____ (Realtek Semiconductor Corp.) C:\Program Files (x86)\ASUS\Wireless Console 3\RtlLib.dll 2011-09-13 14:33 - 2011-09-13 14:33 - 01163264 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\acAuth.dll 2011-05-17 11:31 - 2011-05-17 11:31 - 00200704 _____ (Realtek) C:\Program Files (x86)\ASUS\Wireless Console 3\IpLib.dll 2005-09-22 03:30 - 2005-09-22 03:30 - 00036864 _____ (ATK) C:\Program Files (x86)\ASUS\Wireless Console 3\inter_f2.dll 2004-05-28 04:13 - 2004-05-28 04:13 - 00080384 _____ (ACTIONTEC Electronics,Inc) C:\Program Files (x86)\ASUS\Wireless Console 3\ATKWLIOC.DLL 2005-01-13 10:36 - 2005-01-13 10:36 - 00303104 _____ (Silicon Integrated Systems Corp.) C:\Program Files (x86)\ASUS\Wireless Console 3\SiSPkt.dll 2013-08-07 04:28 - 2013-08-07 04:28 - 00037664 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\Languages.dll 2013-08-07 04:26 - 2013-08-07 04:26 - 00020256 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\BootTime.dll 2013-08-07 04:28 - 2013-08-07 04:28 - 00827168 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\LockDll.dll 2013-08-07 04:26 - 2013-08-07 04:26 - 00493344 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\CheckUpdate.dll 2013-08-07 04:29 - 2013-08-07 04:29 - 00178464 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\settings.dll 2013-08-07 04:29 - 2013-08-07 04:29 - 00194848 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\RestoreCenter.dll 2013-08-07 04:26 - 2013-08-07 04:26 - 00068384 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\Backup.dll 2013-08-07 04:28 - 2013-08-07 04:28 - 00097568 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\Log.dll 2013-08-07 04:28 - 2013-08-07 04:28 - 00067360 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\ObjectAdmin.dll 2013-08-07 04:30 - 2013-08-07 04:30 - 00080160 _____ () D:\Programme\TuneUp\Glary Utilities 3\zlib1.dll 2013-08-07 04:30 - 2013-08-07 04:30 - 00255776 _____ (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\TracksEraser.dll 2013-08-17 12:42 - 2013-08-17 12:42 - 03551640 _____ () D:\Programme\Browser Firefox\mozjs.dll 2007-06-15 20:28 - 2007-06-15 20:28 - 00147456 _____ () C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll 2007-06-02 03:08 - 2007-06-02 03:08 - 00143360 _____ () C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll 2012-02-15 02:32 - 2012-02-15 02:32 - 00094208 _____ (Dropbox, Inc.) C:\Users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll 2009-04-29 03:13 - 2009-04-29 03:13 - 00499712 _____ (Microsoft Corporation) C:\Users\Michael\AppData\Roaming\Dropbox\bin\MSVCP71.dll 2008-03-04 02:34 - 2008-03-04 02:34 - 00348160 _____ (Microsoft Corporation) C:\Users\Michael\AppData\Roaming\Dropbox\bin\MSVCR71.dll ==================== Alternate Data Streams (whitelisted) ========== AlternateDataStreams: C:\ProgramData\Temp:0B4227B4 AlternateDataStreams: C:\ProgramData\Temp:15024E60 AlternateDataStreams: C:\ProgramData\Temp:5C321E34 AlternateDataStreams: C:\ProgramData\Temp:734E442A AlternateDataStreams: C:\ProgramData\Temp:7D43E156 AlternateDataStreams: C:\ProgramData\Temp:862BDB1A AlternateDataStreams: C:\ProgramData\Temp:A724744F AlternateDataStreams: C:\ProgramData\Temp:AB689DEA ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/14/2013 08:02:28 AM) (Source: VMCService) (User: ) Description: conflictManagerTypeValue Error: (09/14/2013 00:50:48 AM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 23.0.1.4974 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 650 Startzeit: 01ceb0d356ce1fc7 Endzeit: 134 Anwendungspfad: D:\Programme\Browser Firefox\firefox.exe Berichts-ID: ec2ff265-1cc6-11e3-bf2f-890dd9491490 Error: (09/14/2013 00:48:08 AM) (Source: Application Hang) (User: ) Description: Programm firefox.exe, Version 23.0.1.4974 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 70c Startzeit: 01ceb0b1b0186a49 Endzeit: 151 Anwendungspfad: D:\Programme\Browser Firefox\firefox.exe Berichts-ID: 8c03b406-1cc6-11e3-bf2f-890dd9491490 Error: (09/13/2013 08:38:45 PM) (Source: VMCService) (User: ) Description: conflictManagerTypeValue Error: (09/13/2013 09:24:49 AM) (Source: Windows Search Service) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Registrierungswert kann nicht gelesen werden, da die Konfiguration ungültig ist. Erstellen Sie die Inhaltsindexkonfiguration erneut, indem Sie den Inhaltsindex entfernen. (HRESULT : 0x80040d03) (0x80040d03) Error: (09/13/2013 09:24:49 AM) (Source: Windows Search Service) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Registrierungswert kann nicht gelesen werden, da die Konfiguration ungültig ist. Erstellen Sie die Inhaltsindexkonfiguration erneut, indem Sie den Inhaltsindex entfernen. (HRESULT : 0x80040d03) (0x80040d03) Error: (09/13/2013 09:24:49 AM) (Source: Windows Search Service) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Registrierungswert kann nicht gelesen werden, da die Konfiguration ungültig ist. Erstellen Sie die Inhaltsindexkonfiguration erneut, indem Sie den Inhaltsindex entfernen. (HRESULT : 0x80040d03) (0x80040d03) Error: (09/13/2013 09:24:22 AM) (Source: Windows Search Service) (User: ) Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (09/13/2013 09:24:22 AM) (Source: Windows Search Service) (User: ) Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=431} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (09/13/2013 09:24:22 AM) (Source: Windows Search Service) (User: ) Description: Gatherer kann Registrierung Path nicht lesen. Kontext: Anwendung, SystemIndex Katalog Details: Der Registrierungswert kann nicht gelesen werden, da die Konfiguration ungültig ist. Erstellen Sie die Inhaltsindexkonfiguration erneut, indem Sie den Inhaltsindex entfernen. (HRESULT : 0x80040d03) (0x80040d03) System errors: ============= Error: (09/14/2013 08:02:44 AM) (Source: ipnathlp) (User: ) Description: 192.168.2.108192.168.137.0255.255.255.0 Error: (09/14/2013 08:02:43 AM) (Source: ipnathlp) (User: ) Description: Error: (09/14/2013 08:02:32 AM) (Source: Service Control Manager) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: Lbd Error: (09/14/2013 08:02:16 AM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (09/14/2013 08:02:12 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "HOSTS Anti-PUPs" wurde aufgrund folgenden Fehlers nicht gestartet: %%3 Error: (09/14/2013 08:01:55 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "TrueVector Internet Monitor" wurde aufgrund folgenden Fehlers nicht gestartet: %%3 Error: (09/14/2013 01:17:04 AM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (09/13/2013 11:19:01 PM) (Source: ipnathlp) (User: ) Description: 192.168.2.108192.168.137.0255.255.255.0 Error: (09/13/2013 11:18:57 PM) (Source: ipnathlp) (User: ) Description: 0 Error: (09/13/2013 11:15:31 PM) (Source: ipnathlp) (User: ) Description: 192.168.2.108192.168.137.0255.255.255.0 Microsoft Office Sessions: ========================= Error: (06/04/2010 07:27:56 PM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.6425.1000. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-09-12 16:49:38.103 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Programme\TuneUp\Glary Utilities 3\ProcObsrv.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-09-12 16:49:37.360 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Programme\TuneUp\Glary Utilities 3\ProcObsrv.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-09-12 14:06:27.228 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Programme\TuneUp\Glary Utilities 3\ProcObsrv.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-09-12 14:06:26.406 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Programme\TuneUp\Glary Utilities 3\ProcObsrv.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 59% Total physical RAM: 3037.09 MB Available physical RAM: 1241.67 MB Total Pagefile: 6072.36 MB Available Pagefile: 3576.48 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:74.52 GB) (Free:21.59 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (DATA) (Fixed) (Total:208.92 GB) (Free:129.11 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: 76692CA8) Partition 1: (Not Active) - (Size=15 GB) - (Type=1C) Partition 2: (Active) - (Size=75 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=209 GB) - (Type=OF Extended) ==================== End Of Log ============================ |
14.09.2013, 23:02 | #7 |
| Adware : Generic_r.GQFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-09-2013 04 Ran by Michael (administrator) on MICHAEL-PC on 14-09-2013 08:11:36 Running from C:\Users\Michael\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\PROGRA~2\AVG\AVG2013\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (ASUSTeK Computer Inc.) C:\Windows\system32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe () C:\Program Files\ATKGFNEX\GFNEXSrv.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe () C:\Program Files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe (AnchorFree Inc.) D:\Programme\HotSpotShield\Hotspot Shield\HssWPR\hsssrv.exe () D:\Programme\HotSpotShield\Hotspot Shield\bin\hsswd.exe () C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe () C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgemca.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (PC Tools) D:\Programme\Threatfire\ThreatFire\TFService.exe (VIA Technologies, Inc.) C:\Windows\system32\viakaraokesrv.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe (Safer Networking Ltd.) D:\Programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe () C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperAgent.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe () C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe (ATK) C:\Program Files\P4G\BatteryLife.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe (ATK) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe () C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe (ASUS) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe (ECAREME) C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe (AlcorMicro Co., Ltd.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe () D:\Programme\TuneUp\Glary Utilities 3\x64\Win64ShellLink.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Create Software) D:\Programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Dr. J. Rathlev, D-24222 Schwentinental) D:\Programme\Personal Backup 5\Persbackup.exe (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\Integrator.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS) C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Mozilla Corporation) D:\Programme\Browser Firefox\firefox.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cfpupdat.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [EeeStorageBackup] - C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe [947472 2009-08-25] (ECAREME) HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [320000 2009-04-09] (AlcorMicro Co., Ltd.) HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [619392 2009-06-12] (ELAN Microelectronic Corp.) HKLM\...\Run: [Windows Mobile Device Center] - C:\Windows\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [COMODO Internet Security] - C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [9577680 2012-11-08] (COMODO) HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [Create Synchronicity - Scheduler] - D:\Programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe [245248 2012-03-11] (Create Software) MountPoints2: {07985c96-d458-11e2-81bf-e8d657e6b182} - F:\setup.exe -a HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [8493624 2009-07-07] (ASUS) HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [159744 2009-04-20] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2317312 2011-09-13] (ASUS) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) AppInit_DLLs: C:\Windows\system32\guard64.dll [390392 2012-11-08] (COMODO) AppInit_DLLs-x32: C:\Windows\SysWOW64\guard32.dll [301264 2012-11-08] (COMODO) Startup: C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Persbackup.lnk ShortcutTarget: Persbackup.lnk -> D:\Programme\Personal Backup 5\Persbackup.exe (Dr. J. Rathlev, D-24222 Schwentinental) BootExecute: autocheck autochk * BootDefrag.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.net-news-express.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com SearchScopes: HKCU - {4F9497CA-A22D-47CC-BBFD-F175CF067A64} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {51031C2D-BCD4-47AB-B668-F706C63234A8} URL = hxxp://search.avg.com/route/?d=4ba8e6bb&v=6.10.6.4&i=23&tp=chrome&q={searchTerms}&lng={language}&iy=&ychte=us BHO: Windows Live Family Safety Browser Helper Class - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\Programme\Spybot\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) BHO-x32: DivX HiQ - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASCPlugin_Protection.dll (IObit) BHO-x32: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - D:\Programme\Download Manager\Free Download Manager\iefdm2.dll () BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{82D2844E-C936-45F6-9DE3-7911F60531D1}: [NameServer]10.4.64.1 Tcpip\..\Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}: [NameServer]8.26.56.26,156.154.70.22 Tcpip\..\Interfaces\{A24BA8EE-5175-42C0-82B5-AED2E4F05CDB}: [NameServer]8.26.56.26,156.154.70.22 FireFox: ======== FF ProfilePath: C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @java.com/DTPlugin,version=10.7.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pages.tvunetworks.com/WebPlayer - D:\Programme\TV\TVUPlayer\npTVUAx.dll (TVU networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.5 - D:\Programme\VLC-Player\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Michael\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Michael\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa FF HKCU\...\Firefox\Extensions: [{bfe0bcbe-d8f5-4005-95b8-1bf701702edf}] - C:\Program Files (x86)\electroLyrics\132.xpi FF Extension: No Name - C:\Program Files (x86)\electroLyrics\132.xpi FF StartMenuInternet: FIREFOX.EXE - D:\Programme\Browser Firefox\firefox.exe Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Michael\AppData\Local\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Users\Michael\AppData\Local\Google\Chrome\Application\28.0.1500.72\pdf.dll No File CHR Plugin: (Shockwave Flash) - C:\Users\Michael\AppData\Local\Google\Chrome\Application\28.0.1500.72\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll No File CHR Plugin: (AVG Internet Security) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.2191_0\plugins/avgnpss.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Winamp Application Detector) - D:\Programme\Browser Firefox\plugins\npwachk.dll (Nullsoft, Inc.) CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) CHR Plugin: (Google Update) - C:\Users\Michael\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) CHR Plugin: (Windows Live\u00AE Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (TVU Web Player for FireFox) - D:\Programme\TV\TVUPlayer\npTVUAx.dll (TVU networks) CHR Plugin: (VLC Web Plugin) - D:\Programme\VLC-Player\VLC\npvlc.dll (VideoLAN) CHR Extension: (SiteRanker) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgldkplledicnbnnliodeffobaiaodaf\1.0.0.0_0 CHR Extension: (DealPly Shopping) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnmnhkgiphcaeefbaooconkceehicfi\3.5.0.0_0 CHR Extension: (ZenMate for Google Chrome\u2122) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme\2.5_0 CHR Extension: (DivX HiQ) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0 CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0 CHR HKLM-x32\...\Chrome\Extension: [bhfamhipccbnledoejgeflahlcamgnam] - C:\Program Files (x86)\electroLyrics\132.crx CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASC_GhromePlugin.crx CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx CHR StartMenuInternet: Google Chrome - C:\Users\Michael\AppData\Local\Google\Chrome\Application\chrome.exe CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [2996784 2011-11-16] (Emsi Software GmbH) R2 AdvancedSystemCareService6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [464256 2012-10-31] (IObit) R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2828408 2012-11-08] (COMODO) R2 FreemiumSystemStoreService; C:\Program Files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe [7244800 2012-10-08] () R2 HssSrv; D:\Programme\HotSpotShield\Hotspot Shield\HssWPR\hsssrv.exe [352304 2011-01-05] (AnchorFree Inc.) S3 HssTrayService; D:\Programme\HotSpotShield\Hotspot Shield\bin\HssTrayService.EXE [57640 2011-01-08] () R2 HssWd; D:\Programme\HotSpotShield\Hotspot Shield\bin\hsswd.exe [326704 2010-10-15] () R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [827520 2011-11-03] (Check Point Software Technologies) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) R2 MotoHelper; C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe [214896 2011-12-06] () R2 OberonGameConsoleService; C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe [44312 2009-09-15] () S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\RpcAgentSrv.exe [71832 2008-08-29] (SiSoftware) R2 SBSDWSCService; D:\Programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.) R2 ThreatFire; D:\Programme\Threatfire\ThreatFire\TFService.exe [70928 2010-01-14] (PC Tools) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2012-10-22] (VIA Technologies, Inc.) R2 VMCService; C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [14336 2008-07-04] (Vodafone) S2 HOSTS Anti-PUPs; S2 vsmon; ==================== Drivers (Whitelisted) ==================== S3 a2acc; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [63880 2011-11-02] (Emsi Software GmbH) S3 a2acc; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [63880 2011-11-02] (Emsi Software GmbH) R1 A2DDA; C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [23208 2011-05-19] (Emsi Software GmbH) R1 A2DDA; C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [23208 2011-05-19] (Emsi Software GmbH) R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] () R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] () R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206648 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311608 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [584056 2012-11-08] (COMODO) R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [38144 2012-11-08] (COMODO) R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-02-24] (GFI Software) R1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [94288 2012-11-08] (COMODO) R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33672 2011-11-03] (Check Point Software Technologies) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [115240 2008-05-16] (MCCI Corporation) S3 s0016mdfl; C:\Windows\System32\DRIVERS\s0016mdfl.sys [19496 2008-05-16] (MCCI Corporation) S3 s0016mdm; C:\Windows\System32\DRIVERS\s0016mdm.sys [158760 2008-05-16] (MCCI Corporation) S3 s0016mgmt; C:\Windows\System32\DRIVERS\s0016mgmt.sys [137256 2008-05-16] (MCCI Corporation) S3 s0016nd5; C:\Windows\System32\DRIVERS\s0016nd5.sys [34344 2008-05-16] (MCCI Corporation) S3 s0016obex; C:\Windows\System32\DRIVERS\s0016obex.sys [136744 2008-05-16] (MCCI Corporation) S3 s0016unic; C:\Windows\System32\DRIVERS\s0016unic.sys [151592 2008-05-16] (MCCI Corporation) S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\WNt500x64\Sandra.sys [23112 2009-08-07] (SiSoftware) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1806400 2009-06-05] () R0 TfFsMon; C:\Windows\System32\drivers\TfFsMon.sys [65072 2010-01-14] (PC Tools) R3 TfNetMon; C:\Windows\system32\drivers\TfNetMon.sys [41888 2010-01-14] (PC Tools) R3 TfNetMon; C:\Windows\system32\drivers\TfNetMon.sys [41888 2010-01-14] (PC Tools) R0 TfSysMon; C:\Windows\System32\drivers\TfSysMon.sys [59880 2010-01-14] (PC Tools) R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454232 2011-05-07] (Check Point Software Technologies LTD) S0 BootDefragDriver; System32\drivers\BootDefragDriver.sys [x] S3 BTCFilterService; system32\DRIVERS\motfilt.sys [x] S3 clwvd; system32\DRIVERS\clwvd.sys [x] S0 Lbd; system32\DRIVERS\Lbd.sys [x] S3 motccgp; system32\DRIVERS\motccgp.sys [x] S3 motccgpfl; system32\DRIVERS\motccgpfl.sys [x] S3 motmodem; system32\DRIVERS\motmodem.sys [x] S3 MotoSwitchService; system32\DRIVERS\motswch.sys [x] S3 Motousbnet; system32\DRIVERS\Motousbnet.sys [x] S3 motusbdevice; system32\DRIVERS\motusbdevice.sys [x] U3 tmlwf; U3 tmwfp; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-14 08:10 - 2013-09-14 08:10 - 00000000 ____D C:\FRST 2013-09-14 08:08 - 2013-09-14 08:09 - 01950312 _____ (Farbar) C:\Users\Michael\Downloads\FRST64.exe 2013-09-13 20:38 - 2013-09-14 08:01 - 00000112 _____ C:\Windows\setupact.log 2013-09-13 20:38 - 2013-09-13 20:38 - 00000000 _____ C:\Windows\setuperr.log 2013-09-13 20:37 - 2013-09-14 08:01 - 00001492 _____ C:\Windows\PFRO.log 2013-09-12 18:57 - 2013-09-12 18:57 - 15546880 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 11405824 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 10629408 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2013-09-12 18:57 - 2013-09-12 18:57 - 06549504 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 03158584 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00511032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00418360 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00387640 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00380416 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00272384 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00244224 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00228864 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00224824 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00189552 _____ C:\Windows\system32\Gfxres.th-TH.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00178407 _____ C:\Windows\system32\Gfxres.el-GR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00165395 _____ C:\Windows\system32\Gfxres.ru-RU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00163384 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00154680 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00139909 _____ C:\Windows\system32\Gfxres.ar-SA.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00136401 _____ C:\Windows\system32\Gfxres.ja-JP.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00133746 _____ C:\Windows\system32\Gfxres.he-IL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00125558 _____ C:\Windows\system32\Gfxres.it-IT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00123230 _____ C:\Windows\system32\Gfxres.ko-KR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122927 _____ C:\Windows\system32\Gfxres.es-ES.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122709 _____ C:\Windows\system32\Gfxres.de-DE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122368 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2013-09-12 18:57 - 2013-09-12 18:57 - 00121173 _____ C:\Windows\system32\Gfxres.tr-TR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120800 _____ C:\Windows\system32\Gfxres.fr-FR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120366 _____ C:\Windows\system32\Gfxres.pt-BR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119808 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00119616 _____ C:\Windows\system32\Gfxres.hu-HU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119586 _____ C:\Windows\system32\Gfxres.nl-NL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119360 _____ C:\Windows\system32\Gfxres.sv-SE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119067 _____ C:\Windows\system32\Gfxres.pt-PT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118745 _____ C:\Windows\system32\Gfxres.cs-CZ.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118697 _____ C:\Windows\system32\Gfxres.fi-FI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118409 _____ C:\Windows\system32\Gfxres.pl-PL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118058 _____ C:\Windows\system32\Gfxres.sk-SK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114852 _____ C:\Windows\system32\Gfxres.nb-NO.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114372 _____ C:\Windows\system32\Gfxres.sl-SI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114261 _____ C:\Windows\system32\Gfxres.da-DK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00110211 _____ C:\Windows\system32\Gfxres.en-US.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00104044 _____ C:\Windows\system32\Gfxres.zh-TW.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00102883 _____ C:\Windows\system32\Gfxres.zh-CN.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2869.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00023552 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00005448 _____ C:\Windows\system32\iglhxs64.vp 2013-09-12 18:57 - 2013-09-12 18:57 - 00004096 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2013-09-12 18:56 - 2013-09-12 18:56 - 00064040 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1E62x64.sys 2013-09-12 18:49 - 2013-09-12 19:50 - 13774848 _____ C:\Users\Michael\AppData\Roaming\Sandra.mdb 2013-09-12 18:47 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-09-12 18:47 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-09-12 18:47 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-09-12 18:47 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-09-12 18:47 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-09-12 18:47 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-09-12 18:47 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-09-12 18:47 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-09-12 18:47 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-09-12 18:47 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-09-12 18:47 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-09-12 18:47 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-09-12 18:47 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-09-12 18:47 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-09-12 18:47 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-09-12 18:47 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-09-12 18:47 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-09-12 18:47 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-09-12 18:47 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-09-12 18:47 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-09-12 18:47 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-09-12 18:47 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-09-12 18:47 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-09-12 18:47 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-09-12 18:47 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-09-12 18:47 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-09-12 18:46 - 2013-09-14 08:03 - 00000288 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-09-12 18:46 - 2013-09-12 18:46 - 00003218 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-09-12 18:46 - 2013-09-12 18:46 - 00002566 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-09-12 18:46 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-09-12 18:46 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-09-12 18:46 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-09-12 18:46 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-09-12 18:46 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-09-12 18:46 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-09-12 18:46 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-09-12 18:46 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-09-12 18:46 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-09-12 18:46 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-09-12 18:46 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-09-12 18:46 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-09-12 18:46 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-09-12 18:46 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-09-12 18:46 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-09-12 18:46 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-09-12 18:46 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-09-12 18:46 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-09-12 18:46 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-09-12 18:46 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-09-12 18:46 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-09-12 18:46 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-09-12 18:46 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-09-12 18:46 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-09-12 18:46 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-09-12 18:46 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-09-12 18:46 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-09-12 18:46 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-09-12 18:46 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-09-12 18:46 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-09-12 18:46 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-09-12 18:46 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-09-12 18:46 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-09-12 18:46 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-09-12 18:46 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-09-12 18:46 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-09-12 18:46 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-09-12 18:42 - 2013-09-12 18:44 - 08688608 _____ (IObit ) C:\Users\Michael\Downloads\driver-booster-media-1.0.exe 2013-09-12 18:34 - 2013-09-12 18:47 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-09-12 18:32 - 2013-09-12 18:32 - 00000000 ____D C:\Program Files\SiSoftware 2013-09-12 18:18 - 2013-09-12 18:27 - 61622856 _____ (SiSoftware ) C:\Users\Michael\Downloads\san1958.exe 2013-09-12 17:09 - 2013-09-12 17:09 - 88891392 _____ C:\Windows\system32\config\software.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 23502848 _____ C:\Windows\system32\config\system.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 04591616 _____ C:\Windows\system32\config\default.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00057344 _____ C:\Windows\system32\config\sam.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00028672 _____ C:\Windows\system32\config\security.iobit 2013-09-12 17:05 - 2013-09-12 17:12 - 00000000 ____D C:\Users\Michael\Documents\PersBackup 2013-09-12 17:04 - 2013-09-12 17:15 - 00000000 ____D C:\Users\Michael\AppData\Roaming\PersBackup5 2013-09-12 17:04 - 2013-09-12 17:04 - 00000717 _____ C:\Users\Public\Desktop\Personal Backup 5.lnk 2013-09-12 16:56 - 2013-09-12 16:56 - 00003422 _____ C:\Windows\System32\Tasks\MotoHelper Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00003410 _____ C:\Windows\System32\Tasks\MotoHelper MUM 2013-09-12 16:56 - 2013-09-12 16:56 - 00003404 _____ C:\Windows\System32\Tasks\MotoHelper Routing 2013-09-12 16:56 - 2013-09-12 16:56 - 00003230 _____ C:\Windows\System32\Tasks\MotoHelper Initial Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Motorola 2013-09-12 16:55 - 2013-09-12 16:55 - 00000000 ____D C:\Program Files\Motorola Inc 2013-09-12 16:45 - 2013-09-12 17:45 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee 2013-09-12 15:08 - 2013-09-12 15:11 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2013-09-12 15:08 - 2013-09-12 15:08 - 00000000 ____D C:\ProgramData\Licenses 2013-09-12 15:07 - 2013-09-12 15:07 - 04095448 _____ (BrightFort LLC ) C:\Users\Michael\Downloads\spywareblastersetup50.exe 2013-09-12 14:47 - 2013-09-12 14:47 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2013-09-12 14:37 - 2013-09-12 14:41 - 00000000 ____D C:\AdwCleaner 2013-09-12 14:37 - 2013-09-12 14:37 - 01037278 _____ C:\Users\Michael\Downloads\adwcleaner.exe 2013-09-11 16:38 - 2013-09-11 16:42 - 16264528 _____ C:\Users\Michael\Downloads\AcrobatUpd11004.msp.part 2013-09-11 13:26 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-11 13:26 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-11 13:26 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-11 13:26 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-11 13:26 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-11 13:26 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-11 13:25 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-11 13:25 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-11 13:25 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-11 13:25 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-11 09:50 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-11 09:50 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-09-11 09:50 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-11 09:50 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-09-11 09:50 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-09-11 09:50 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-09-11 09:50 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-11 09:50 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-09-11 09:50 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-09-11 09:50 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-11 09:50 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-09-11 09:50 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-09-11 09:50 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-11 09:50 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-09-11 09:50 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-09-11 09:50 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-09-11 09:50 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-09-08 13:47 - 2013-09-08 13:47 - 00000000 ____D C:\ProgramData\GlarySoft 2013-09-07 18:09 - 2005-07-14 12:31 - 00032256 ___SH C:\Windows\SysWOW64\AVSredirect.dll 2013-09-07 18:09 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\yv12vfw.dll 2013-09-07 18:09 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\i420vfw.dll 2013-09-07 18:08 - 2013-09-07 18:08 - 00000000 ____D C:\Program Files (x86)\AviSynth 2.5 2013-09-07 18:03 - 2013-09-07 18:03 - 00000000 ____D C:\Users\Michael\Documents\eRightSoft 2013-09-07 18:02 - 2013-09-12 14:07 - 00000000 ____D C:\Program Files (x86)\eRightSoft 2013-09-07 18:02 - 2004-10-10 09:50 - 00278528 _____ (Real Networks, Inc) C:\Windows\SysWOW64\pncrt.dll 2013-09-07 18:02 - 2004-07-02 17:33 - 00327749 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\drvc.dll 2013-09-07 18:02 - 2003-06-05 13:57 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2013-09-07 17:54 - 2013-09-14 08:03 - 00000408 _____ C:\Windows\Tasks\electroLyrics Update.job 2013-09-07 17:54 - 2013-09-12 14:28 - 00000000 ____D C:\Program Files (x86)\electroLyrics 2013-09-07 17:54 - 2013-09-07 17:54 - 00003060 _____ C:\Windows\System32\Tasks\electroLyrics Update 2013-09-07 17:45 - 2013-09-07 17:50 - 54864655 _____ (eRightSoft ) C:\Users\Michael\Downloads\SUPERsetup.exe 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-08-24 15:18 - 2013-08-24 15:18 - 00003214 _____ C:\Windows\System32\Tasks\{8B79FB66-0972-4FAC-81FA-2F48D44C55CE} 2013-08-16 19:35 - 2013-09-14 00:45 - 00003114 _____ C:\Windows\System32\Tasks\P4G Sidebar ==================== One Month Modified Files and Folders ======= 2013-09-14 08:10 - 2013-09-14 08:10 - 00000000 ____D C:\FRST 2013-09-14 08:09 - 2013-09-14 08:08 - 01950312 _____ (Farbar) C:\Users\Michael\Downloads\FRST64.exe 2013-09-14 08:09 - 2012-07-04 22:33 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000UA.job 2013-09-14 08:09 - 2009-11-20 16:55 - 01897451 _____ C:\Windows\WindowsUpdate.log 2013-09-14 08:09 - 2009-07-14 06:45 - 00018832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-14 08:09 - 2009-07-14 06:45 - 00018832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-14 08:08 - 2009-08-04 12:34 - 00554908 _____ C:\Windows\system32\perfh008.dat 2013-09-14 08:08 - 2009-08-04 12:34 - 00090514 _____ C:\Windows\system32\perfc008.dat 2013-09-14 08:08 - 2009-08-04 12:22 - 00388458 _____ C:\Windows\system32\prfh0404.dat 2013-09-14 08:08 - 2009-08-04 12:22 - 00107466 _____ C:\Windows\system32\prfc0404.dat 2013-09-14 08:08 - 2009-08-04 12:03 - 00697568 _____ C:\Windows\system32\perfh00C.dat 2013-09-14 08:08 - 2009-08-04 12:03 - 00131218 _____ C:\Windows\system32\perfc00C.dat 2013-09-14 08:08 - 2009-08-04 11:51 - 00657910 _____ C:\Windows\system32\perfh007.dat 2013-09-14 08:08 - 2009-08-04 11:51 - 00131250 _____ C:\Windows\system32\perfc007.dat 2013-09-14 08:08 - 2009-07-14 07:13 - 03470870 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-14 08:06 - 2013-08-10 12:08 - 00000332 _____ C:\Windows\Tasks\GlaryInitialize 3.job 2013-09-14 08:06 - 2010-03-19 15:26 - 00000356 _____ C:\Windows\Tasks\GlaryInitialize.job 2013-09-14 08:03 - 2013-09-12 18:46 - 00000288 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-09-14 08:03 - 2013-09-07 17:54 - 00000408 _____ C:\Windows\Tasks\electroLyrics Update.job 2013-09-14 08:03 - 2010-12-28 18:52 - 00000310 _____ C:\Windows\Tasks\PCCT - MAGIX AG.job 2013-09-14 08:03 - 2010-05-31 01:08 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-14 08:02 - 2010-03-21 09:28 - 00000436 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-09-14 08:01 - 2013-09-13 20:38 - 00000112 _____ C:\Windows\setupact.log 2013-09-14 08:01 - 2013-09-13 20:37 - 00001492 _____ C:\Windows\PFRO.log 2013-09-14 08:01 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-14 01:17 - 2009-11-20 17:03 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-09-14 01:13 - 2011-11-26 14:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\TV-Browser 2013-09-14 00:55 - 2013-01-11 19:54 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-14 00:54 - 2010-05-31 01:08 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-14 00:45 - 2013-08-16 19:35 - 00003114 _____ C:\Windows\System32\Tasks\P4G Sidebar 2013-09-13 20:45 - 2010-04-25 12:32 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{352043A8-965F-48FB-BF52-1875392499F9} 2013-09-13 20:42 - 2010-11-27 18:45 - 00000000 ____D C:\ProgramData\MFAData 2013-09-13 20:38 - 2013-09-13 20:38 - 00000000 _____ C:\Windows\setuperr.log 2013-09-13 09:23 - 2009-11-20 17:22 - 00003498 _____ C:\Windows\system32\AutoRunFilter.ini 2013-09-13 09:22 - 2009-11-20 17:22 - 00002371 _____ C:\Windows\system32\ServiceFilter.ini 2013-09-12 21:52 - 2010-03-19 14:14 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Skype 2013-09-12 19:51 - 2011-02-28 07:45 - 00000000 ____D C:\Users\Michael\Desktop\Sicherheit 2013-09-12 19:50 - 2013-09-12 18:49 - 13774848 _____ C:\Users\Michael\AppData\Roaming\Sandra.mdb 2013-09-12 19:50 - 2011-12-07 16:21 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software 2013-09-12 19:15 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-12 18:57 - 2013-09-12 18:57 - 15546880 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 11405824 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 10629408 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2013-09-12 18:57 - 2013-09-12 18:57 - 06549504 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 03158584 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00511032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00418360 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00387640 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00380416 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00272384 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00244224 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00228864 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00224824 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00189552 _____ C:\Windows\system32\Gfxres.th-TH.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00178407 _____ C:\Windows\system32\Gfxres.el-GR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00165395 _____ C:\Windows\system32\Gfxres.ru-RU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00163384 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00154680 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00139909 _____ C:\Windows\system32\Gfxres.ar-SA.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00136401 _____ C:\Windows\system32\Gfxres.ja-JP.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00133746 _____ C:\Windows\system32\Gfxres.he-IL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00125558 _____ C:\Windows\system32\Gfxres.it-IT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00123230 _____ C:\Windows\system32\Gfxres.ko-KR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122927 _____ C:\Windows\system32\Gfxres.es-ES.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122709 _____ C:\Windows\system32\Gfxres.de-DE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122368 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2013-09-12 18:57 - 2013-09-12 18:57 - 00121173 _____ C:\Windows\system32\Gfxres.tr-TR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120800 _____ C:\Windows\system32\Gfxres.fr-FR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120366 _____ C:\Windows\system32\Gfxres.pt-BR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119808 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00119616 _____ C:\Windows\system32\Gfxres.hu-HU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119586 _____ C:\Windows\system32\Gfxres.nl-NL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119360 _____ C:\Windows\system32\Gfxres.sv-SE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119067 _____ C:\Windows\system32\Gfxres.pt-PT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118745 _____ C:\Windows\system32\Gfxres.cs-CZ.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118697 _____ C:\Windows\system32\Gfxres.fi-FI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118409 _____ C:\Windows\system32\Gfxres.pl-PL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118058 _____ C:\Windows\system32\Gfxres.sk-SK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114852 _____ C:\Windows\system32\Gfxres.nb-NO.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114372 _____ C:\Windows\system32\Gfxres.sl-SI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114261 _____ C:\Windows\system32\Gfxres.da-DK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00110211 _____ C:\Windows\system32\Gfxres.en-US.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00104044 _____ C:\Windows\system32\Gfxres.zh-TW.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00102883 _____ C:\Windows\system32\Gfxres.zh-CN.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2869.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00023552 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00005448 _____ C:\Windows\system32\iglhxs64.vp 2013-09-12 18:57 - 2013-09-12 18:57 - 00004096 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2013-09-12 18:57 - 2010-08-25 19:31 - 04896768 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll 2013-09-12 18:57 - 2010-08-25 19:28 - 00571904 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdx32.dll 2013-09-12 18:57 - 2010-08-25 19:23 - 04338688 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2013-09-12 18:57 - 2009-07-03 03:22 - 04722176 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll 2013-09-12 18:57 - 2009-07-03 02:51 - 00061952 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2013-09-12 18:57 - 2009-07-03 02:50 - 00108544 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2013-09-12 18:57 - 2009-07-03 02:49 - 00830464 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2013-09-12 18:56 - 2013-09-12 18:56 - 00064040 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1E62x64.sys 2013-09-12 18:47 - 2013-09-12 18:34 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-09-12 18:46 - 2013-09-12 18:46 - 00003218 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-09-12 18:46 - 2013-09-12 18:46 - 00002566 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-09-12 18:46 - 2012-12-24 01:47 - 00000000 ____D C:\Program Files (x86)\IObit 2013-09-12 18:44 - 2013-09-12 18:42 - 08688608 _____ (IObit ) C:\Users\Michael\Downloads\driver-booster-media-1.0.exe 2013-09-12 18:32 - 2013-09-12 18:32 - 00000000 ____D C:\Program Files\SiSoftware 2013-09-12 18:27 - 2013-09-12 18:18 - 61622856 _____ (SiSoftware ) C:\Users\Michael\Downloads\san1958.exe 2013-09-12 17:45 - 2013-09-12 16:45 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-09-12 17:20 - 2011-02-28 10:36 - 00000000 ____D C:\Users\Michael\Desktop\Media 2013-09-12 17:20 - 2011-01-19 20:16 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-09-12 17:15 - 2013-09-12 17:04 - 00000000 ____D C:\Users\Michael\AppData\Roaming\PersBackup5 2013-09-12 17:15 - 2010-03-18 16:11 - 00000000 ___RD C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-12 17:12 - 2013-09-12 17:05 - 00000000 ____D C:\Users\Michael\Documents\PersBackup 2013-09-12 17:09 - 2013-09-12 17:09 - 88891392 _____ C:\Windows\system32\config\software.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 23502848 _____ C:\Windows\system32\config\system.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 04591616 _____ C:\Windows\system32\config\default.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00057344 _____ C:\Windows\system32\config\sam.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00028672 _____ C:\Windows\system32\config\security.iobit 2013-09-12 17:09 - 2010-03-18 16:10 - 00000000 ____D C:\Users\Michael 2013-09-12 17:04 - 2013-09-12 17:04 - 00000717 _____ C:\Users\Public\Desktop\Personal Backup 5.lnk 2013-09-12 16:56 - 2013-09-12 16:56 - 00003422 _____ C:\Windows\System32\Tasks\MotoHelper Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00003410 _____ C:\Windows\System32\Tasks\MotoHelper MUM 2013-09-12 16:56 - 2013-09-12 16:56 - 00003404 _____ C:\Windows\System32\Tasks\MotoHelper Routing 2013-09-12 16:56 - 2013-09-12 16:56 - 00003230 _____ C:\Windows\System32\Tasks\MotoHelper Initial Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Motorola 2013-09-12 16:55 - 2013-09-12 16:55 - 00000000 ____D C:\Program Files\Motorola Inc 2013-09-12 16:54 - 2010-03-19 19:38 - 00000000 ____D C:\Users\Michael\AppData\Local\Adobe 2013-09-12 16:52 - 2012-02-18 11:10 - 00002887 _____ C:\Windows\system32\log.xml 2013-09-12 16:52 - 2012-02-18 11:10 - 00000008 _____ C:\Windows\system32\log-suffix.xml 2013-09-12 16:51 - 2011-11-10 10:57 - 00000000 ____D C:\Users\Michael\AppData\Local\Pixel X Backup 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee 2013-09-12 16:45 - 2013-01-11 19:54 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-09-12 16:45 - 2012-04-03 20:51 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-12 16:45 - 2011-08-08 07:49 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-12 15:11 - 2013-09-12 15:08 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2013-09-12 15:08 - 2013-09-12 15:08 - 00000000 ____D C:\ProgramData\Licenses 2013-09-12 15:07 - 2013-09-12 15:07 - 04095448 _____ (BrightFort LLC ) C:\Users\Michael\Downloads\spywareblastersetup50.exe 2013-09-12 14:47 - 2013-09-12 14:47 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2013-09-12 14:41 - 2013-09-12 14:37 - 00000000 ____D C:\AdwCleaner 2013-09-12 14:37 - 2013-09-12 14:37 - 01037278 _____ C:\Users\Michael\Downloads\adwcleaner.exe 2013-09-12 14:28 - 2013-09-07 17:54 - 00000000 ____D C:\Program Files (x86)\electroLyrics 2013-09-12 14:07 - 2013-09-07 18:02 - 00000000 ____D C:\Program Files (x86)\eRightSoft 2013-09-12 12:39 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-09-12 09:18 - 2010-03-21 23:55 - 00000000 ____D C:\Windows\Minidump 2013-09-11 16:42 - 2013-09-11 16:38 - 16264528 _____ C:\Users\Michael\Downloads\AcrobatUpd11004.msp.part 2013-09-11 15:42 - 2010-03-18 16:20 - 00000000 ___RD C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-11 15:40 - 2009-07-29 08:03 - 00000000 ____D C:\Windows\Panther 2013-09-11 15:39 - 2009-07-14 06:45 - 00493376 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-11 13:25 - 2013-07-25 03:01 - 00000000 ____D C:\Windows\system32\MRT 2013-09-11 13:20 - 2010-10-09 19:56 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-09 00:06 - 2010-03-23 11:59 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Winamp 2013-09-08 20:25 - 2010-03-19 14:13 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-09-08 20:25 - 2009-11-20 17:49 - 00000000 ____D C:\ProgramData\P4G 2013-09-08 20:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2013-09-08 19:57 - 2010-03-19 14:13 - 00000000 ____D C:\ProgramData\Skype 2013-09-08 13:48 - 2010-10-13 10:32 - 00000000 ___DC C:\Users\Michael\AppData\Local\MigWiz 2013-09-08 13:47 - 2013-09-08 13:47 - 00000000 ____D C:\ProgramData\GlarySoft 2013-09-08 11:17 - 2011-11-30 12:43 - 00000000 ____D C:\Users\Michael\AppData\Roaming\vlc 2013-09-08 03:09 - 2012-07-04 22:33 - 00001076 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000Core.job 2013-09-07 18:09 - 2008-12-21 23:46 - 00369152 ___SH (The Public) C:\Windows\SysWOW64\avisynth.dll 2013-09-07 18:08 - 2013-09-07 18:08 - 00000000 ____D C:\Program Files (x86)\AviSynth 2.5 2013-09-07 18:03 - 2013-09-07 18:03 - 00000000 ____D C:\Users\Michael\Documents\eRightSoft 2013-09-07 17:54 - 2013-09-07 17:54 - 00003060 _____ C:\Windows\System32\Tasks\electroLyrics Update 2013-09-07 17:50 - 2013-09-07 17:45 - 54864655 _____ (eRightSoft ) C:\Users\Michael\Downloads\SUPERsetup.exe 2013-09-07 17:39 - 2011-12-07 16:25 - 00000000 ____D C:\Windows\System32\Tasks\NCH Swift Sound 2013-09-07 17:35 - 2010-03-19 14:36 - 00000000 ____D C:\Users\Michael\Documents\DVDVideoSoft 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-09-03 16:01 - 2010-09-20 09:36 - 00000000 ____D C:\Users\Michael\AppData\Roaming\dvdcss 2013-08-26 21:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-24 15:19 - 2011-12-06 13:18 - 00000000 ____D C:\ProgramData\NCH Software 2013-08-24 15:18 - 2013-08-24 15:18 - 00003214 _____ C:\Windows\System32\Tasks\{8B79FB66-0972-4FAC-81FA-2F48D44C55CE} 2013-08-19 09:21 - 2011-03-23 14:12 - 00001642 _____ C:\Users\Michael\AppData\Roaming\MyMicroBalanceConfig.ini Files to move or delete: ==================== C:\Users\Michael\Firefox_Setup_11.0.exe C:\Users\Michael\netcache.dat Some content of TEMP: ==================== C:\Users\Michael\AppData\Local\Temp\elclyrcstmp.exe C:\Users\Michael\AppData\Local\Temp\Install_HOSTS_Anti-Adware.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-12 12:29 ==================== End Of Log ============================ |
15.09.2013, 15:27 | #8 | |
/// the machine /// TB-Ausbilder | Adware : Generic_r.GQ deinstalliere alles von Comodo, du hast AVG drauf. Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.09.2013, 21:55 | #9 |
| Adware : Generic_r.GQ Hallo Schrauber, erst nochmal vielen vielen Dank für Deine Hilfe !!! Vorhin gabs wieder eine AVG-Meldung von diesem Generic-Wurm. (Kann ich den vielleicht zum Angeln mitnehmen?) ;-) Beim Scan mit Combofix kam eine Fehlermeldung bei Stufe 5 oder 6, daß pev.3XE nicht funktioniert, hat aber weitergemacht. Und noch ne Frage, ich hoffe nicht zu spät : Hätte ich die externe Festplatte (nur Daten) anschliessen müssen ? Hier das Log : Code:
ATTFilter ComboFix 13-09-14.01 - Michael 15.09.2013 21:46:23.1.2 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3037.1523 [GMT 2:00] ausgeführt von:: c:\users\Michael\Downloads\ComboFix.exe AV: AVG AntiVirus Free Edition 2013 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} SP: AVG AntiVirus Free Edition 2013 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\Common Files\ASPG_icon.ico c:\program files (x86)\FireFox\plugin-container.exe c:\program files (x86)\FireFox\uninstall\helper.exe c:\program files (x86)\FireFox\updater.exe c:\users\Michael\AppData\Local\Google\Chrome\User Data\Default\preferences c:\users\Michael\AppData\Roaming\.# c:\users\Michael\AppData\Roaming\Local c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\.ddr c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\0.ddi c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\0063pvrdawcgl.avi.ddr c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\1.ddi c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\2.ddi c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\3.ddi c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\Player_RB_v1_de.divx.ddr c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\settings.ddi c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\(2) c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\0063pvrdawcgl.avi.ddp c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\Player_RB_v1_de.divx c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\Temporary Downloaded Files\video.avi c:\users\Michael\AppData\Roaming\Local\Temp\DDM\Settings\video.avi.ddr c:\windows\IsUn0407.exe c:\windows\msvcr71.dll c:\windows\ST6UNST.000 D:\install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2013-08-15 bis 2013-09-15 )))))))))))))))))))))))))))))) . . 2013-09-14 06:10 . 2013-09-14 06:10 -------- d-----w- C:\FRST 2013-09-12 16:56 . 2013-09-12 16:56 64040 ----a-w- c:\windows\system32\drivers\L1E62x64.sys 2013-09-12 16:46 . 2007-04-04 16:55 403304 ----a-w- c:\windows\system32\xactengine2_7.dll 2013-09-12 16:32 . 2013-09-12 16:32 -------- d-----w- c:\program files\SiSoftware 2013-09-12 15:04 . 2013-09-12 15:15 -------- d-----w- c:\users\Michael\AppData\Roaming\PersBackup5 2013-09-12 14:56 . 2013-09-12 14:56 -------- d-----w- c:\users\Michael\AppData\Roaming\Motorola 2013-09-12 14:55 . 2013-09-12 14:55 -------- d-----w- c:\program files\Motorola Inc 2013-09-12 14:45 . 2013-09-12 14:45 -------- d-----w- c:\programdata\McAfee Security Scan 2013-09-12 14:45 . 2013-09-12 14:45 -------- d-----w- c:\programdata\McAfee 2013-09-12 14:45 . 2013-09-12 15:45 -------- d-----w- c:\program files (x86)\McAfee Security Scan 2013-09-12 13:08 . 2013-09-12 13:08 -------- d-----w- c:\programdata\Licenses 2013-09-12 13:08 . 2013-09-12 13:11 -------- d-----w- c:\program files (x86)\SpywareBlaster 2013-09-12 12:47 . 2013-09-12 12:47 -------- d-----w- c:\program files (x86)\Hosts_Anti_Adwares_PUPs 2013-09-12 12:37 . 2013-09-12 12:41 -------- d-----w- C:\AdwCleaner 2013-09-12 12:06 . 2013-09-12 12:06 -------- d-----w- c:\users\Michael\AppData\Roaming\Absolute Uninstaller 2013-09-11 11:25 . 2013-08-10 06:10 775256 ----a-w- c:\program files\Internet Explorer\iexplore.exe 2013-09-11 07:50 . 2013-08-05 02:25 155584 ----a-w- c:\windows\system32\drivers\ataport.sys 2013-09-08 11:47 . 2013-09-08 11:47 -------- d-----w- c:\programdata\GlarySoft 2013-09-07 16:09 . 2005-07-14 10:31 32256 --sh--w- c:\windows\SysWow64\AVSredirect.dll 2013-09-07 16:09 . 2004-01-24 22:00 70656 --sh--w- c:\windows\SysWow64\yv12vfw.dll 2013-09-07 16:09 . 2004-01-24 22:00 70656 --sh--w- c:\windows\SysWow64\i420vfw.dll 2013-09-07 16:08 . 2013-09-07 16:08 -------- d-----w- c:\program files (x86)\AviSynth 2.5 2013-09-07 16:02 . 2004-07-02 15:33 327749 ----a-w- c:\windows\SysWow64\drvc.dll 2013-09-07 16:02 . 2003-06-05 11:57 499712 ----a-w- c:\windows\SysWow64\msvcp71.dll 2013-09-07 16:02 . 2013-09-12 12:07 -------- d-----w- c:\program files (x86)\eRightSoft 2013-09-07 15:54 . 2013-09-12 12:28 -------- d-----w- c:\program files (x86)\electroLyrics 2013-09-04 23:43 . 2013-09-04 23:43 45880 ----a-w- c:\windows\system32\drivers\avgrkx64.sys . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-09-12 16:57 . 2009-07-03 00:51 61952 ----a-w- c:\windows\system32\igfxsrvc.dll 2013-09-12 16:57 . 2009-07-03 00:49 830464 ----a-w- c:\windows\system32\igfxress.dll 2013-09-12 16:57 . 2010-08-25 17:28 571904 ----a-w- c:\windows\SysWow64\igdumdx32.dll 2013-09-12 16:57 . 2010-08-25 17:31 4896768 ----a-w- c:\windows\SysWow64\igdumd32.dll 2013-09-12 16:57 . 2010-08-25 17:23 4338688 ----a-w- c:\windows\SysWow64\igd10umd32.dll 2013-09-12 16:57 . 2009-07-03 01:22 4722176 ----a-w- c:\windows\system32\igd10umd64.dll 2013-09-12 16:57 . 2009-07-03 00:50 108544 ----a-w- c:\windows\system32\hccutils.dll 2013-09-12 14:45 . 2012-04-03 18:51 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-09-12 14:45 . 2011-08-08 05:49 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-09-11 11:20 . 2010-10-09 17:56 79143768 ----a-w- c:\windows\system32\MRT.exe 2013-09-07 16:09 . 2008-12-21 21:46 369152 --sh--w- c:\windows\SysWow64\avisynth.dll 2013-08-07 02:30 . 2013-08-10 10:08 117024 ----a-w- c:\windows\system32\BootDefrag.exe 2013-08-02 01:48 . 2013-09-11 07:50 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2013-07-25 09:25 . 2013-08-14 15:41 1888768 ----a-w- c:\windows\system32\WMVDECOD.DLL 2013-07-25 08:57 . 2013-08-14 15:41 1620992 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL 2013-07-19 23:51 . 2013-07-19 23:51 311608 ----a-w- c:\windows\system32\drivers\avgloga.sys 2013-07-19 23:50 . 2013-07-19 23:50 71480 ----a-w- c:\windows\system32\drivers\avgidsha.sys 2013-07-19 23:50 . 2013-07-19 23:50 246072 ----a-w- c:\windows\system32\drivers\avgidsdrivera.sys 2013-07-19 23:50 . 2013-07-19 23:50 206648 ----a-w- c:\windows\system32\drivers\avgldx64.sys 2013-07-19 01:58 . 2013-08-14 15:41 2048 ----a-w- c:\windows\system32\tzres.dll 2013-07-19 01:41 . 2013-08-14 15:41 2048 ----a-w- c:\windows\SysWow64\tzres.dll 2013-07-09 05:52 . 2013-08-14 15:44 224256 ----a-w- c:\windows\system32\wintrust.dll 2013-07-09 05:51 . 2013-08-14 15:41 1217024 ----a-w- c:\windows\system32\rpcrt4.dll 2013-07-09 05:46 . 2013-08-14 15:44 1472512 ----a-w- c:\windows\system32\crypt32.dll 2013-07-09 05:46 . 2013-08-14 15:44 184320 ----a-w- c:\windows\system32\cryptsvc.dll 2013-07-09 05:46 . 2013-08-14 15:44 139776 ----a-w- c:\windows\system32\cryptnet.dll 2013-07-09 04:52 . 2013-08-14 15:41 663552 ----a-w- c:\windows\SysWow64\rpcrt4.dll 2013-07-09 04:52 . 2013-08-14 15:44 175104 ----a-w- c:\windows\SysWow64\wintrust.dll 2013-07-09 04:46 . 2013-08-14 15:44 1166848 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-07-09 04:46 . 2013-08-14 15:44 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2013-07-09 04:46 . 2013-08-14 15:44 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll 2013-07-06 06:03 . 2013-08-14 15:38 1910208 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-06-30 23:45 . 2013-06-30 23:45 116536 ----a-w- c:\windows\system32\drivers\avgmfx64.sys 2012-03-24 06:02 . 2012-03-24 06:02 3993600 ----a-w- c:\program files (x86)\GUT9F83.tmp 2009-04-08 18:31 . 2009-04-08 18:31 106496 ----a-w- c:\program files (x86)\Common Files\CPInstallAction.dll 2008-08-12 05:45 . 2008-08-12 05:45 155648 ----a-w- c:\program files (x86)\Common Files\MSIactionall.dll 2005-07-14 10:31 32256 --sh--w- c:\windows\SysWOW64\AVSredirect.dll 2004-01-24 22:00 70656 --sh--w- c:\windows\SysWOW64\i420vfw.dll 2004-01-24 22:00 70656 --sh--w- c:\windows\SysWOW64\yv12vfw.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1] @="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" [HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}] 2007-06-02 01:08 143360 ----a-w- c:\program files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2012-02-15 00:32 94208 ----a-w- c:\users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2012-02-15 00:32 94208 ----a-w- c:\users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2012-02-15 00:32 94208 ----a-w- c:\users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt.14.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Create Synchronicity - Scheduler"="d:\programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe" [2012-03-10 245248] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "HControlUser"="c:\program files (x86)\ASUS\ATK Hotkey\HControlUser.exe" [2009-06-19 105016] "ATKOSD2"="c:\program files (x86)\ASUS\ATKOSD2\ATKOSD2.exe" [2009-07-07 8493624] "ATKMEDIA"="c:\program files (x86)\ASUS\ATK Media\DMedia.exe" [2009-04-20 159744] "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2011-09-13 2317312] "AVG_UI"="c:\program files (x86)\AVG\AVG2013\avgui.exe" [2013-08-15 4411440] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] . c:\users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Persbackup.lnk - d:\programme\Personal Backup 5\Persbackup.exe /auto [2013-9-12 8438272] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ McAfee Security Scan Plus.lnk - c:\program files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe [2013-2-5 272248] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk * \0BootDefrag.exe . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "UpdateLBPShortCut"="c:\program files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "c:\program files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" "UpdateP2GoShortCut"="c:\program files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "c:\program files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" "ThreatFire"=d:\programme\Threatfire\ThreatFire\TFTray.exe "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "emsisoft anti-malware"="c:\program files (x86)\Emsisoft Anti-Malware\a2guard.exe" /d=60 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled] "WinampAgent"=d:\programme\Winamp\winampa.exe "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "DivX Download Manager"="c:\program files (x86)\DivX\DivX Plus Web Player\DDmService.exe" start "HDAudDeck"=c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r "PDFPrint"=d:\programme\FAX\PDF24\pdf24.exe . R0 BootDefragDriver;BootDefragDriver;c:\windows\System32\drivers\BootDefragDriver.sys;c:\windows\SYSNATIVE\drivers\BootDefragDriver.sys [x] R0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys;c:\windows\SYSNATIVE\DRIVERS\Lbd.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 HOSTS Anti-PUPs;HOSTS Anti-PUPs; [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 a2acc;a2acc;c:\program files (x86)\EMSISOFT ANTI-MALWARE\a2accx64.sys;c:\program files (x86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [x] R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x] R3 BTCFilterService;USB Networking Driver Filter Service;c:\windows\system32\DRIVERS\motfilt.sys;c:\windows\SYSNATIVE\DRIVERS\motfilt.sys [x] R3 clwvd;CyberLink WebCam Virtual Driver;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x] R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\DRIVERS\ManyCam_x64.sys;c:\windows\SYSNATIVE\DRIVERS\ManyCam_x64.sys [x] R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe;c:\program files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [x] R3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\DRIVERS\motccgp.sys;c:\windows\SYSNATIVE\DRIVERS\motccgp.sys [x] R3 motccgpfl;MotCcgpFlService;c:\windows\system32\DRIVERS\motccgpfl.sys;c:\windows\SYSNATIVE\DRIVERS\motccgpfl.sys [x] R3 Motousbnet;Motorola USB Networking Driver Service;c:\windows\system32\DRIVERS\Motousbnet.sys;c:\windows\SYSNATIVE\DRIVERS\Motousbnet.sys [x] R3 motusbdevice;Motorola USB Dev Driver;c:\windows\system32\DRIVERS\motusbdevice.sys;c:\windows\SYSNATIVE\DRIVERS\motusbdevice.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 RTL2832U_IRHID;TERRATEC T-Stick Plus HID service;c:\windows\system32\DRIVERS\RTL2832U_IRHID.sys;c:\windows\SYSNATIVE\DRIVERS\RTL2832U_IRHID.sys [x] R3 RTL2832UBDA;TERRATEC T-Stick PLUS BDA service;c:\windows\system32\drivers\RTL2832UBDA.sys;c:\windows\SYSNATIVE\drivers\RTL2832UBDA.sys [x] R3 RTL2832UUSB;TERRATEC T-Stick PLUS USB service;c:\windows\system32\Drivers\RTL2832UUSB.sys;c:\windows\SYSNATIVE\Drivers\RTL2832UUSB.sys [x] R3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\windows\system32\DRIVERS\s0016bus.sys;c:\windows\SYSNATIVE\DRIVERS\s0016bus.sys [x] R3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s0016mdfl.sys;c:\windows\SYSNATIVE\DRIVERS\s0016mdfl.sys [x] R3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s0016mdm.sys;c:\windows\SYSNATIVE\DRIVERS\s0016mdm.sys [x] R3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s0016mgmt.sys;c:\windows\SYSNATIVE\DRIVERS\s0016mgmt.sys [x] R3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\windows\system32\DRIVERS\s0016nd5.sys;c:\windows\SYSNATIVE\DRIVERS\s0016nd5.sys [x] R3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s0016obex.sys;c:\windows\SYSNATIVE\DRIVERS\s0016obex.sys [x] R3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\windows\system32\DRIVERS\s0016unic.sys;c:\windows\SYSNATIVE\DRIVERS\s0016unic.sys [x] R3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\program files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\RpcAgentSrv.exe;c:\program files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\RpcAgentSrv.exe [x] R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys;c:\windows\SYSNATIVE\DRIVERS\SiSG664.sys [x] R3 teamviewervpn;TeamViewer VPN Adapter;c:\windows\system32\DRIVERS\teamviewervpn.sys;c:\windows\SYSNATIVE\DRIVERS\teamviewervpn.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x] S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x] S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x] S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x] S0 gfibto;gfibto;c:\windows\system32\drivers\gfibto.sys;c:\windows\SYSNATIVE\drivers\gfibto.sys [x] S0 lullaby;lullaby;c:\windows\system32\DRIVERS\lullaby.sys;c:\windows\SYSNATIVE\DRIVERS\lullaby.sys [x] S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys;c:\windows\SYSNATIVE\drivers\TfFsMon.sys [x] S0 TfSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys;c:\windows\SYSNATIVE\drivers\TfSysMon.sys [x] S1 A2DDA;A2 Direct Disk Access Support Driver;c:\program files (x86)\Emsisoft Anti-Malware\a2ddax64.sys;c:\program files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [x] S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x] S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x] S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys;c:\windows\SYSNATIVE\DRIVERS\avgtdia.sys [x] S2 a2AntiMalware;Emsisoft Anti-Malware 6.0 - Service;c:\program files (x86)\Emsisoft Anti-Malware\a2service.exe;c:\program files (x86)\Emsisoft Anti-Malware\a2service.exe [x] S2 AdvancedSystemCareService6;Advanced SystemCare Service 6;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe;c:\program files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [x] S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe;c:\windows\SYSNATIVE\FBAgent.exe [x] S2 ASMMAP64;ASMMAP64;c:\program files\ATKGFNEX\ASMMAP64.sys;c:\program files\ATKGFNEX\ASMMAP64.sys [x] S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe [x] S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe [x] S2 FreemiumSystemStoreService;Freemium System Store Service;c:\program files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe -displayname Freemium System Store Service -servicename:FreemiumSystemStoreService;c:\program files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe -displayname Freemium System Store Service -servicename:FreemiumSystemStoreService [x] S2 HssWd;Hotspot Shield Monitoring Service;d:\programme\HotSpotShield\Hotspot Shield\bin\hsswd.exe;d:\programme\HotSpotShield\Hotspot Shield\bin\hsswd.exe [x] S2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\CheckPoint\ZAForceField\ISWKL.sys;c:\program files\CheckPoint\ZAForceField\ISWKL.sys [x] S2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\CheckPoint\ZAForceField\IswSvc.exe;c:\program files\CheckPoint\ZAForceField\IswSvc.exe [x] S2 MotoHelper;MotoHelper Service;c:\program files (x86)\Motorola\MotoHelper\MotoHelperService.exe;c:\program files (x86)\Motorola\MotoHelper\MotoHelperService.exe [x] S2 OberonGameConsoleService;Oberon Media Game Console service;c:\program files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe;c:\program files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe [x] S2 SBSDWSCService;SBSD Security Center Service;d:\programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe;d:\programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe [x] S2 TeamViewer6;TeamViewer 6;c:\program files (x86)\TeamViewer\Version6\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [x] S2 ThreatFire;ThreatFire;d:\programme\Threatfire\ThreatFire\TFService.exe service;d:\programme\Threatfire\ThreatFire\TFService.exe service [x] S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe;c:\windows\SYSNATIVE\viakaraokesrv.exe [x] S2 VMCService;Vodafone Mobile Connect Service;c:\program files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe;c:\program files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [x] S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x] S3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys;c:\windows\SYSNATIVE\drivers\IntcHdmi.sys [x] S3 TfNetMon;TfNetMon;c:\windows\system32\drivers\TfNetMon.sys;c:\windows\SYSNATIVE\drivers\TfNetMon.sys [x] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2009-01-28 06:28 451872 ----a-w- c:\program files (x86)\Common Files\LightScribe\LSRunOnce.exe . Inhalt des "geplante Tasks" Ordners . 2013-09-15 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-11 14:45] . 2013-09-15 c:\windows\Tasks\Driver Booster Update.job - c:\program files (x86)\IObit\Driver Booster\AutoUpdate.exe [2013-09-12 09:12] . 2013-09-15 c:\windows\Tasks\electroLyrics Update.job - c:\program files (x86)\electroLyrics\electroLyrics.exe [2013-09-03 20:00] . 2013-09-15 c:\windows\Tasks\GlaryInitialize 3.job - d:\programme\TuneUp\Glary Utilities 3\Initialize.exe [2013-08-07 02:28] . 2013-09-15 c:\windows\Tasks\GlaryInitialize.job - d:\programme\TuneUp\Glary Utilities\Glary Utilities\initialize.exe [2010-07-04 14:58] . 2013-09-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-05-30 23:08] . 2013-09-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-05-30 23:08] . 2013-09-08 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000Core.job - c:\users\Michael\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-04 20:33] . 2013-09-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000UA.job - c:\users\Michael\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-04 20:33] . 2013-01-24 c:\windows\Tasks\ROC_REG_JAN_DELETE.job - c:\programdata\AVG January 2013 Campaign\ROC.exe [2013-01-23 21:16] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1] @="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" [HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}] 2007-06-02 00:52 159744 ----a-w- c:\program files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x64\OverlayIconShlExt1_64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2012-02-15 00:32 97792 ----a-w- c:\users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2012-02-15 00:32 97792 ----a-w- c:\users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2012-02-15 00:32 97792 ----a-w- c:\users\Michael\AppData\Roaming\Dropbox\bin\DropboxExt64.14.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\OverlayIconExtension1] @="{fe25455d-b4c2-4e32-97d2-92632ec1c224}" [HKEY_CLASSES_ROOT\CLSID\{fe25455d-b4c2-4e32-97d2-92632ec1c224}] 2010-11-05 01:57 444752 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\OverlayIconExtension2] @="{1fae2d88-a78e-4f03-909f-be818a3c1ce6}" [HKEY_CLASSES_ROOT\CLSID\{1fae2d88-a78e-4f03-909f-be818a3c1ce6}] 2010-11-05 01:57 444752 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "EeeStorageBackup"="c:\program files (x86)\ASUS\Asus WebStorage\BackupService.exe" [2009-08-25 947472] "AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2009-04-09 320000] "ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-06-12 619392] "Windows Mobile Device Center"="c:\windows\WindowsMobile\wmdc.exe" [2007-05-31 660360] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2013-09-12 163384] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2013-09-12 387640] "Persistence"="c:\windows\system32\igfxpers.exe" [2013-09-12 418360] . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://www.net-news-express.com/ uLocal Page = c:\windows\system32\blank.htm IE: Alles mit FDM herunterladen - file://d:\programme\Download Manager\Free Download Manager\dlall.htm IE: Auswahl mit FDM herunterladen - file://d:\programme\Download Manager\Free Download Manager\dlselected.htm IE: Datei mit FDM herunterladen - file://d:\programme\Download Manager\Free Download Manager\dllink.htm IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: Free YouTube Download - c:\users\Michael\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm IE: Free YouTube to Mp3 Converter - c:\users\Michael\AppData\Roaming\DVDVideoSoftIEHelpers\youtubetomp3.htm IE: Videos mit FDM herunterladen - file://d:\programme\Download Manager\Free Download Manager\dlfvideo.htm TCP: DhcpNameServer = 192.168.2.1 TCP: Interfaces\{82D2844E-C936-45F6-9DE3-7911F60531D1}: NameServer = 10.4.64.1 TCP: Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}: NameServer = 8.26.56.26,156.154.70.22 TCP: Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}\25567696374727164796F6E6: NameServer = 8.26.56.26,156.154.70.22 TCP: Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}\34F6E6E656364796F6E605F696E647: DhcpNameServer = 192.168.2.1 TCP: Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}\56C656B64727F637D6F676: DhcpNameServer = 192.168.1.1 TCP: Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}\75C414E4D2836334733333: NameServer = 8.26.56.26,156.154.70.22 TCP: Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}\8445F5140503: DhcpNameServer = 192.168.0.1 TCP: Interfaces\{A24BA8EE-5175-42C0-82B5-AED2E4F05CDB}: NameServer = 8.26.56.26,156.154.70.22 FF - ProfilePath - c:\users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\ FF - prefs.js: browser.search.selectedEngine - Ixquick HTTPS - Deutsch FF - prefs.js: browser.startup.homepage - hxxp://www.spiegel.de/ FF - ExtSQL: 2013-09-01 12:24; {b9bfaf1c-a63f-47cd-8b9a-29526ced9060}; c:\users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi FF - ExtSQL: 2013-09-07 17:54; {bfe0bcbe-d8f5-4005-95b8-1bf701702edf}; c:\program files (x86)\electroLyrics\132.xpi FF - user.js: network.http.pipelining.maxrequests - 8 FF - user.js: network.http.request.max-start-delay - 0 FF - user.js: network.http.max-connections - 48 FF - user.js: network.http.max-connections-per-server - 16 FF - user.js: network.http.max-persistent-connections-per-proxy - 16 FF - user.js: network.http.max-persistent-connections-per-server - 8 FF - user.js: browser.turbo.enabled - true FF - user.js: browser.display.show_image_placeholders - true FF - user.js: browser.chrome.favicons - false FF - user.js: browser.urlbar.autocomplete.enabled - true FF - user.js: browser.cache.memory.capacity - 65536 FF - user.js: content.notify.ontimer - true FF - user.js: content.interrupt.parsing - true FF - user.js: content.max.tokenizing.time - 2250000 FF - user.js: content.switch.threshold - 750000 FF - user.js: plugin.expose_full_path - true FF - user.js: ui.submenuDelay - 0 . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-Locked - (no file) HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start Toolbar-Locked - (no file) AddRemove-BRUNS Sortimentskatalog 2004+ - c:\windows\IsUn0407.exe AddRemove-Fahrtenbuch V7 - c:\windows\system32\GKSUI20.EXE AddRemove-Mozilla Firefox 11.0 (x86 de) - c:\program files (x86)\Firefox\uninstall\helper.exe AddRemove-NetObjects Fusion Essentials - c:\windows\IsUn0407.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\FreemiumSystemStoreService] "ImagePath"="\"c:\program files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe\" -displayname \"Freemium System Store Service\" -servicename:FreemiumSystemStoreService" . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\ThreatFire] "AlternateImagePath"="" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*] @="?????????????????? v1" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID] @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*] @="?????????????????? v2" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID] @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}" . [HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Windows CE Services] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\ . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe c:\program files\ATKGFNEX\GFNEXSrv.exe c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\program files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe c:\program files (x86)\ASUS\SmartLogon\sensorsrv.exe c:\program files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe d:\programme\HotSpotShield\Hotspot Shield\HssWPR\hsssrv.exe c:\program files (x86)\IObit\Advanced SystemCare 6\Monitor.exe c:\program files (x86)\ASUS\ATK Hotkey\HControl.exe c:\program files (x86)\ASUS\ATK Hotkey\Atouch64.exe c:\program files (x86)\Motorola\MotoHelper\MotoHelperAgent.exe d:\programme\TuneUp\Glary Utilities 3\Integrator.exe d:\programme\Threatfire\ThreatFire\TFService.exe c:\program files (x86)\ASUS\ATK Hotkey\ATKOSD.exe c:\program files (x86)\ASUS\ATK Hotkey\KBFiltr.exe c:\program files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe c:\program files (x86)\ASUS\ATK Hotkey\WDC.exe c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe . ************************************************************************** . Zeit der Fertigstellung: 2013-09-15 22:33:49 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2013-09-15 20:33 . Vor Suchlauf: 17 Verzeichnis(se), 21.582.229.504 Bytes frei Nach Suchlauf: 25 Verzeichnis(se), 21.213.122.560 Bytes frei . - - End Of File - - D96D64516791907F7CF665CE8B3873F9 5C616939100B85E558DA92B899A0FC36 nach 2. Neustart, weil nach Combofix AVG nicht mehr im Autostart war, wieder die übliche AVG-Meldung von Generic (s. Post von gestern 13:52)... |
16.09.2013, 10:23 | #10 |
/// the machine /// TB-Ausbilder | Adware : Generic_r.GQ Externes ab jetzt dranmachen und dran lassen Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.09.2013, 07:03 | #11 |
| Adware : Generic_r.GQ Malwarebytes Code:
ATTFilter Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Datenbank Version: 913091606 Windows 6.1.7601 Service Pack 1 Internet Explorer 9.10.9200.16686 16.09.2013 22:33:21 mbam-log-2013-09-16 (22-33-21).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|G:\|) Durchsuchte Objekte: 506588 Laufzeit: 2 Stunde(n), 8 Minute(n), 6 Sekunde(n) Infizierte Speicherprozesse: 0 Infizierte Speichermodule: 0 Infizierte Registrierungsschlüssel: 0 Infizierte Registrierungswerte: 0 Infizierte Dateiobjekte der Registrierung: 0 Infizierte Verzeichnisse: 0 Infizierte Dateien: 0 Infizierte Speicherprozesse: (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: (Keine bösartigen Objekte gefunden) Infizierte Dateien: (Keine bösartigen Objekte gefunden) Code:
ATTFilter # AdwCleaner v3.004 - Bericht erstellt am 16/09/2013 um 22:40:39 # Updated 15/09/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Michael - MICHAEL-PC # Gestartet von : C:\Users\Michael\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gelöscht : C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\user.js ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16686 -\\ Mozilla Firefox v11.0 (de) [ Datei : C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\prefs.js ] [ Datei : C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\7gg8jln8.default\prefs.js ] ************************* AdwCleaner[R0].txt - [23110 octets] - [12/09/2013 14:37:56] AdwCleaner[R1].txt - [1277 octets] - [16/09/2013 22:37:47] AdwCleaner[S0].txt - [21793 octets] - [12/09/2013 14:40:51] AdwCleaner[S1].txt - [1198 octets] - [16/09/2013 22:40:39] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1258 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.1 (09.15.2013:1) OS: Windows 7 Home Premium x64 Ran by Michael on 17.09.2013 at 0:00:35,59 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskInstallChecker-1_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\masksurf_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\masksurf_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\AskInstallChecker-1_RASMANCS Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\masksurf_RASAPI32 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\masksurf_RASMANCS Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{51031C2D-BCD4-47AB-B668-F706C63234A8} ~~~ Files ~~~ Folders ~~~ Chrome Successfully deleted: [Folder] C:\Users\Michael\appdata\local\Google\Chrome\User Data\Default\Extensions\ejnmnhkgiphcaeefbaooconkceehicfi ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 17.09.2013 at 1:57:10,13 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-09-2013 03 Ran by Michael (administrator) on MICHAEL-PC on 17-09-2013 07:59:24 Running from C:\Users\Michael\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\PROGRA~2\AVG\AVG2013\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE (ASUSTeK Computer Inc.) C:\Windows\system32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe () C:\Program Files\ATKGFNEX\GFNEXSrv.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe () C:\Program Files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe (AnchorFree Inc.) D:\Programme\HotSpotShield\Hotspot Shield\HssWPR\hsssrv.exe () C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe () C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgemca.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (PC Tools) D:\Programme\Threatfire\ThreatFire\TFService.exe () C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperAgent.exe (VIA Technologies, Inc.) C:\Windows\system32\viakaraokesrv.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ATK) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe () C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe (Safer Networking Ltd.) D:\Programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe (ASUS) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe (ATK) C:\Program Files\P4G\BatteryLife.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe () C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe (Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (ECAREME) C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe (AlcorMicro Co., Ltd.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Create Software) D:\Programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Dr. J. Rathlev, D-24222 Schwentinental) D:\Programme\Personal Backup 5\Persbackup.exe () D:\Programme\TuneUp\Glary Utilities 3\x64\Win64ShellLink.exe (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\Integrator.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS) C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Mozilla Corporation) D:\Programme\Browser Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [EeeStorageBackup] - C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe [947472 2009-08-25] (ECAREME) HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [320000 2009-04-09] (AlcorMicro Co., Ltd.) HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [619392 2009-06-12] (ELAN Microelectronic Corp.) HKLM\...\Run: [Windows Mobile Device Center] - C:\Windows\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [Create Synchronicity - Scheduler] - D:\Programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe [245248 2012-03-11] (Create Software) HKCU\...\Run: [Advanced SystemCare 6] - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe [490880 2012-09-24] (IObit) HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [8493624 2009-07-07] (ASUS) HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [159744 2009-04-20] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2317312 2011-09-13] (ASUS) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) Startup: C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Persbackup.lnk ShortcutTarget: Persbackup.lnk -> D:\Programme\Personal Backup 5\Persbackup.exe (Dr. J. Rathlev, D-24222 Schwentinental) BootExecute: autocheck autochk * BootDefrag.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.net-news-express.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - DefaultScope {4F9497CA-A22D-47CC-BBFD-F175CF067A64} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {4F9497CA-A22D-47CC-BBFD-F175CF067A64} URL = hxxp://www.google.de/search?q={searchTerms} BHO: Windows Live Family Safety Browser Helper Class - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\Programme\Spybot\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) BHO-x32: DivX HiQ - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASCPlugin_Protection.dll (IObit) BHO-x32: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - D:\Programme\Download Manager\Free Download Manager\iefdm2.dll () BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{82D2844E-C936-45F6-9DE3-7911F60531D1}: [NameServer]10.4.64.1 Tcpip\..\Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}: [NameServer]8.26.56.26,156.154.70.22 Tcpip\..\Interfaces\{A24BA8EE-5175-42C0-82B5-AED2E4F05CDB}: [NameServer]8.26.56.26,156.154.70.22 FireFox: ======== FF ProfilePath: C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @java.com/DTPlugin,version=10.7.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pages.tvunetworks.com/WebPlayer - D:\Programme\TV\TVUPlayer\npTVUAx.dll (TVU networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.5 - D:\Programme\VLC-Player\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Michael\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Michael\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa FF StartMenuInternet: FIREFOX.EXE - D:\Programme\Browser Firefox\firefox.exe Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR Extension: (SiteRanker) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgldkplledicnbnnliodeffobaiaodaf\1.0.0.0_0 CHR Extension: (ZenMate for Google Chrome\u2122) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme\2.5_0 CHR Extension: (DivX HiQ) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0 CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0 CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASC_GhromePlugin.crx CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx CHR StartMenuInternet: Google Chrome - C:\Users\Michael\AppData\Local\Google\Chrome\Application\chrome.exe CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [2996784 2011-11-16] (Emsi Software GmbH) R2 AdvancedSystemCareService6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [464256 2012-10-31] (IObit) R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) R2 FreemiumSystemStoreService; C:\Program Files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe [7244800 2012-10-08] () R2 HssSrv; D:\Programme\HotSpotShield\Hotspot Shield\HssWPR\hsssrv.exe [352304 2011-01-05] (AnchorFree Inc.) R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [827520 2011-11-03] (Check Point Software Technologies) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) R2 MotoHelper; C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe [214896 2011-12-06] () R2 OberonGameConsoleService; C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe [44312 2009-09-15] () S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\RpcAgentSrv.exe [71832 2008-08-29] (SiSoftware) R2 SBSDWSCService; D:\Programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.) R2 ThreatFire; D:\Programme\Threatfire\ThreatFire\TFService.exe [70928 2010-01-14] (PC Tools) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2012-10-22] (VIA Technologies, Inc.) R2 VMCService; C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [14336 2008-07-04] (Vodafone) S2 HOSTS Anti-PUPs; S2 vsmon; ==================== Drivers (Whitelisted) ==================== S3 a2acc; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [63880 2011-11-02] (Emsi Software GmbH) S3 a2acc; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [63880 2011-11-02] (Emsi Software GmbH) R1 A2DDA; C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [23208 2011-05-19] (Emsi Software GmbH) R1 A2DDA; C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [23208 2011-05-19] (Emsi Software GmbH) R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] () R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] () R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206648 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311608 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-02-24] (GFI Software) R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33672 2011-11-03] (Check Point Software Technologies) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [115240 2008-05-16] (MCCI Corporation) S3 s0016mdfl; C:\Windows\System32\DRIVERS\s0016mdfl.sys [19496 2008-05-16] (MCCI Corporation) S3 s0016mdm; C:\Windows\System32\DRIVERS\s0016mdm.sys [158760 2008-05-16] (MCCI Corporation) S3 s0016mgmt; C:\Windows\System32\DRIVERS\s0016mgmt.sys [137256 2008-05-16] (MCCI Corporation) S3 s0016nd5; C:\Windows\System32\DRIVERS\s0016nd5.sys [34344 2008-05-16] (MCCI Corporation) S3 s0016obex; C:\Windows\System32\DRIVERS\s0016obex.sys [136744 2008-05-16] (MCCI Corporation) S3 s0016unic; C:\Windows\System32\DRIVERS\s0016unic.sys [151592 2008-05-16] (MCCI Corporation) S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\WNt500x64\Sandra.sys [23112 2009-08-07] (SiSoftware) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1806400 2009-06-05] () R0 TfFsMon; C:\Windows\System32\drivers\TfFsMon.sys [65072 2010-01-14] (PC Tools) R3 TfNetMon; C:\Windows\system32\drivers\TfNetMon.sys [41888 2010-01-14] (PC Tools) R3 TfNetMon; C:\Windows\system32\drivers\TfNetMon.sys [41888 2010-01-14] (PC Tools) R0 TfSysMon; C:\Windows\System32\drivers\TfSysMon.sys [59880 2010-01-14] (PC Tools) R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454232 2011-05-07] (Check Point Software Technologies LTD) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S0 BootDefragDriver; System32\drivers\BootDefragDriver.sys [x] S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 clwvd; system32\DRIVERS\clwvd.sys [x] S0 Lbd; system32\DRIVERS\Lbd.sys [x] U3 tmlwf; U3 tmwfp; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-17 07:58 - 2013-09-17 07:58 - 01950524 _____ (Farbar) C:\Users\Michael\Downloads\FRST64.exe 2013-09-17 07:52 - 2013-09-17 07:52 - 00000056 _____ C:\Windows\setupact.log 2013-09-17 07:52 - 2013-09-17 07:52 - 00000000 _____ C:\Windows\setuperr.log 2013-09-17 01:57 - 2013-09-17 01:57 - 00001841 _____ C:\Users\Michael\Desktop\JRT.txt 2013-09-17 00:03 - 2013-09-17 00:03 - 00001338 _____ C:\Users\Michael\Desktop\AdwCleaner[S1].txt 2013-09-16 22:49 - 2013-09-16 22:49 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 22:48 - 2013-09-16 22:48 - 01029675 _____ (Thisisu) C:\Users\Michael\Downloads\JRT.exe 2013-09-16 22:36 - 2013-09-16 22:36 - 01039554 _____ C:\Users\Michael\Downloads\adwcleaner.exe 2013-09-15 22:34 - 2013-09-15 22:34 - 00034617 _____ C:\ComboFix.txt 2013-09-15 21:39 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-09-15 21:39 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-09-15 21:39 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-09-15 21:38 - 2013-09-15 22:34 - 00000000 ____D C:\Qoobox 2013-09-15 21:37 - 2013-09-15 22:23 - 00000000 ____D C:\Windows\erdnt 2013-09-15 21:32 - 2013-09-15 21:33 - 05126233 ____R (Swearware) C:\Users\Michael\Downloads\ComboFix.exe 2013-09-14 08:15 - 2013-09-14 08:17 - 00054542 _____ C:\Users\Michael\Downloads\Addition.txt 2013-09-14 08:10 - 2013-09-14 08:10 - 00000000 ____D C:\FRST 2013-09-12 18:57 - 2013-09-12 18:57 - 15546880 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 11405824 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 10629408 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2013-09-12 18:57 - 2013-09-12 18:57 - 06549504 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 03158584 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00511032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00418360 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00387640 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00380416 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00272384 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00244224 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00228864 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00224824 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00189552 _____ C:\Windows\system32\Gfxres.th-TH.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00178407 _____ C:\Windows\system32\Gfxres.el-GR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00165395 _____ C:\Windows\system32\Gfxres.ru-RU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00163384 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00154680 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00139909 _____ C:\Windows\system32\Gfxres.ar-SA.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00136401 _____ C:\Windows\system32\Gfxres.ja-JP.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00133746 _____ C:\Windows\system32\Gfxres.he-IL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00125558 _____ C:\Windows\system32\Gfxres.it-IT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00123230 _____ C:\Windows\system32\Gfxres.ko-KR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122927 _____ C:\Windows\system32\Gfxres.es-ES.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122709 _____ C:\Windows\system32\Gfxres.de-DE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122368 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2013-09-12 18:57 - 2013-09-12 18:57 - 00121173 _____ C:\Windows\system32\Gfxres.tr-TR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120800 _____ C:\Windows\system32\Gfxres.fr-FR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120366 _____ C:\Windows\system32\Gfxres.pt-BR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119808 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00119616 _____ C:\Windows\system32\Gfxres.hu-HU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119586 _____ C:\Windows\system32\Gfxres.nl-NL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119360 _____ C:\Windows\system32\Gfxres.sv-SE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119067 _____ C:\Windows\system32\Gfxres.pt-PT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118745 _____ C:\Windows\system32\Gfxres.cs-CZ.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118697 _____ C:\Windows\system32\Gfxres.fi-FI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118409 _____ C:\Windows\system32\Gfxres.pl-PL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118058 _____ C:\Windows\system32\Gfxres.sk-SK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114852 _____ C:\Windows\system32\Gfxres.nb-NO.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114372 _____ C:\Windows\system32\Gfxres.sl-SI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114261 _____ C:\Windows\system32\Gfxres.da-DK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00110211 _____ C:\Windows\system32\Gfxres.en-US.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00104044 _____ C:\Windows\system32\Gfxres.zh-TW.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00102883 _____ C:\Windows\system32\Gfxres.zh-CN.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2869.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00023552 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00005448 _____ C:\Windows\system32\iglhxs64.vp 2013-09-12 18:57 - 2013-09-12 18:57 - 00004096 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2013-09-12 18:56 - 2013-09-12 18:56 - 00064040 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1E62x64.sys 2013-09-12 18:49 - 2013-09-12 19:50 - 13774848 _____ C:\Users\Michael\AppData\Roaming\Sandra.mdb 2013-09-12 18:47 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-09-12 18:47 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-09-12 18:47 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-09-12 18:47 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-09-12 18:47 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-09-12 18:47 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-09-12 18:47 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-09-12 18:47 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-09-12 18:47 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-09-12 18:47 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-09-12 18:47 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-09-12 18:47 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-09-12 18:47 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-09-12 18:47 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-09-12 18:47 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-09-12 18:47 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-09-12 18:47 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-09-12 18:47 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-09-12 18:47 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-09-12 18:47 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-09-12 18:47 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-09-12 18:47 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-09-12 18:47 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-09-12 18:47 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-09-12 18:47 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-09-12 18:47 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-09-12 18:46 - 2013-09-17 07:53 - 00000288 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-09-12 18:46 - 2013-09-12 18:46 - 00003218 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-09-12 18:46 - 2013-09-12 18:46 - 00002566 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-09-12 18:46 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-09-12 18:46 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-09-12 18:46 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-09-12 18:46 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-09-12 18:46 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-09-12 18:46 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-09-12 18:46 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-09-12 18:46 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-09-12 18:46 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-09-12 18:46 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-09-12 18:46 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-09-12 18:46 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-09-12 18:46 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-09-12 18:46 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-09-12 18:46 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-09-12 18:46 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-09-12 18:46 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-09-12 18:46 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-09-12 18:46 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-09-12 18:46 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-09-12 18:46 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-09-12 18:46 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-09-12 18:46 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-09-12 18:46 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-09-12 18:46 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-09-12 18:46 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-09-12 18:46 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-09-12 18:46 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-09-12 18:46 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-09-12 18:46 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-09-12 18:46 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-09-12 18:46 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-09-12 18:46 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-09-12 18:46 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-09-12 18:46 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-09-12 18:46 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-09-12 18:46 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-09-12 18:42 - 2013-09-12 18:44 - 08688608 _____ (IObit ) C:\Users\Michael\Downloads\driver-booster-media-1.0.exe 2013-09-12 18:34 - 2013-09-12 18:47 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-09-12 18:32 - 2013-09-12 18:32 - 00000000 ____D C:\Program Files\SiSoftware 2013-09-12 18:18 - 2013-09-12 18:27 - 61622856 _____ (SiSoftware ) C:\Users\Michael\Downloads\san1958.exe 2013-09-12 17:09 - 2013-09-12 17:09 - 88891392 _____ C:\Windows\system32\config\software.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 23502848 _____ C:\Windows\system32\config\system.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 04591616 _____ C:\Windows\system32\config\default.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00057344 _____ C:\Windows\system32\config\sam.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00028672 _____ C:\Windows\system32\config\security.iobit 2013-09-12 17:05 - 2013-09-12 17:12 - 00000000 ____D C:\Users\Michael\Documents\PersBackup 2013-09-12 17:04 - 2013-09-12 17:15 - 00000000 ____D C:\Users\Michael\AppData\Roaming\PersBackup5 2013-09-12 17:04 - 2013-09-12 17:04 - 00000717 _____ C:\Users\Public\Desktop\Personal Backup 5.lnk 2013-09-12 16:56 - 2013-09-12 16:56 - 00003422 _____ C:\Windows\System32\Tasks\MotoHelper Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00003410 _____ C:\Windows\System32\Tasks\MotoHelper MUM 2013-09-12 16:56 - 2013-09-12 16:56 - 00003404 _____ C:\Windows\System32\Tasks\MotoHelper Routing 2013-09-12 16:56 - 2013-09-12 16:56 - 00003230 _____ C:\Windows\System32\Tasks\MotoHelper Initial Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Motorola 2013-09-12 16:55 - 2013-09-12 16:55 - 00000000 ____D C:\Program Files\Motorola Inc 2013-09-12 16:45 - 2013-09-12 17:45 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee 2013-09-12 15:08 - 2013-09-12 15:11 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2013-09-12 15:08 - 2013-09-12 15:08 - 00000000 ____D C:\ProgramData\Licenses 2013-09-12 15:07 - 2013-09-12 15:07 - 04095448 _____ (BrightFort LLC ) C:\Users\Michael\Downloads\spywareblastersetup50.exe 2013-09-12 14:47 - 2013-09-12 14:47 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2013-09-12 14:37 - 2013-09-16 22:40 - 00000000 ____D C:\AdwCleaner 2013-09-11 16:38 - 2013-09-11 16:42 - 16264528 _____ C:\Users\Michael\Downloads\AcrobatUpd11004.msp.part 2013-09-11 13:26 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-11 13:26 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-11 13:26 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-11 13:26 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-11 13:26 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-11 13:26 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-11 13:25 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-11 13:25 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-11 13:25 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-11 13:25 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-11 09:50 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-11 09:50 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-09-11 09:50 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-11 09:50 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-09-11 09:50 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-09-11 09:50 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-09-11 09:50 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-11 09:50 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-09-11 09:50 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-09-11 09:50 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-11 09:50 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-09-11 09:50 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-09-11 09:50 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-11 09:50 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-09-11 09:50 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-09-11 09:50 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-09-11 09:50 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-09-08 13:47 - 2013-09-08 13:47 - 00000000 ____D C:\ProgramData\GlarySoft 2013-09-07 18:09 - 2005-07-14 12:31 - 00032256 ___SH C:\Windows\SysWOW64\AVSredirect.dll 2013-09-07 18:09 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\yv12vfw.dll 2013-09-07 18:09 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\i420vfw.dll 2013-09-07 18:08 - 2013-09-07 18:08 - 00000000 ____D C:\Program Files (x86)\AviSynth 2.5 2013-09-07 18:03 - 2013-09-07 18:03 - 00000000 ____D C:\Users\Michael\Documents\eRightSoft 2013-09-07 18:02 - 2013-09-12 14:07 - 00000000 ____D C:\Program Files (x86)\eRightSoft 2013-09-07 18:02 - 2004-10-10 09:50 - 00278528 _____ (Real Networks, Inc) C:\Windows\SysWOW64\pncrt.dll 2013-09-07 18:02 - 2004-07-02 17:33 - 00327749 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\drvc.dll 2013-09-07 18:02 - 2003-06-05 13:57 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2013-09-07 17:45 - 2013-09-07 17:50 - 54864655 _____ (eRightSoft ) C:\Users\Michael\Downloads\SUPERsetup.exe 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-08-24 15:18 - 2013-08-24 15:18 - 00003214 _____ C:\Windows\System32\Tasks\{8B79FB66-0972-4FAC-81FA-2F48D44C55CE} ==================== One Month Modified Files and Folders ======= 2013-09-17 08:00 - 2009-07-14 06:45 - 00018832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-17 08:00 - 2009-07-14 06:45 - 00018832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-17 07:58 - 2013-09-17 07:58 - 01950524 _____ (Farbar) C:\Users\Michael\Downloads\FRST64.exe 2013-09-17 07:57 - 2009-08-04 12:34 - 00554908 _____ C:\Windows\system32\perfh008.dat 2013-09-17 07:57 - 2009-08-04 12:34 - 00090514 _____ C:\Windows\system32\perfc008.dat 2013-09-17 07:57 - 2009-08-04 12:22 - 00388458 _____ C:\Windows\system32\prfh0404.dat 2013-09-17 07:57 - 2009-08-04 12:22 - 00107466 _____ C:\Windows\system32\prfc0404.dat 2013-09-17 07:57 - 2009-08-04 12:03 - 00697568 _____ C:\Windows\system32\perfh00C.dat 2013-09-17 07:57 - 2009-08-04 12:03 - 00131218 _____ C:\Windows\system32\perfc00C.dat 2013-09-17 07:57 - 2009-08-04 11:51 - 00657910 _____ C:\Windows\system32\perfh007.dat 2013-09-17 07:57 - 2009-08-04 11:51 - 00131250 _____ C:\Windows\system32\perfc007.dat 2013-09-17 07:57 - 2009-07-14 07:13 - 03470870 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-17 07:56 - 2013-08-10 12:08 - 00000332 _____ C:\Windows\Tasks\GlaryInitialize 3.job 2013-09-17 07:56 - 2010-03-19 15:26 - 00000356 _____ C:\Windows\Tasks\GlaryInitialize.job 2013-09-17 07:55 - 2013-01-11 19:54 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-17 07:54 - 2010-05-31 01:08 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-17 07:53 - 2013-09-12 18:46 - 00000288 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-09-17 07:53 - 2013-08-16 19:35 - 00003114 _____ C:\Windows\System32\Tasks\P4G Sidebar 2013-09-17 07:53 - 2010-05-31 01:08 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-17 07:53 - 2010-03-21 09:28 - 00000437 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-09-17 07:52 - 2013-09-17 07:52 - 00000056 _____ C:\Windows\setupact.log 2013-09-17 07:52 - 2013-09-17 07:52 - 00000000 _____ C:\Windows\setuperr.log 2013-09-17 07:52 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-17 07:50 - 2009-11-20 16:55 - 02038043 _____ C:\Windows\WindowsUpdate.log 2013-09-17 07:46 - 2012-07-04 22:33 - 00001076 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000Core.job 2013-09-17 07:46 - 2011-11-26 14:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\TV-Browser 2013-09-17 07:30 - 2012-07-04 22:33 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000UA.job 2013-09-17 02:04 - 2011-02-28 07:45 - 00000000 ____D C:\Users\Michael\Desktop\Sicherheit 2013-09-17 02:04 - 2010-03-21 23:55 - 00000000 ____D C:\Windows\Minidump 2013-09-17 01:57 - 2013-09-17 01:57 - 00001841 _____ C:\Users\Michael\Desktop\JRT.txt 2013-09-17 00:03 - 2013-09-17 00:03 - 00001338 _____ C:\Users\Michael\Desktop\AdwCleaner[S1].txt 2013-09-16 22:49 - 2013-09-16 22:49 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 22:48 - 2013-09-16 22:48 - 01029675 _____ (Thisisu) C:\Users\Michael\Downloads\JRT.exe 2013-09-16 22:48 - 2010-04-25 12:32 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{352043A8-965F-48FB-BF52-1875392499F9} 2013-09-16 22:40 - 2013-09-12 14:37 - 00000000 ____D C:\AdwCleaner 2013-09-16 22:36 - 2013-09-16 22:36 - 01039554 _____ C:\Users\Michael\Downloads\adwcleaner.exe 2013-09-16 21:57 - 2010-03-19 14:14 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Skype 2013-09-16 19:49 - 2010-11-27 18:45 - 00000000 ____D C:\ProgramData\MFAData 2013-09-15 22:34 - 2013-09-15 22:34 - 00034617 _____ C:\ComboFix.txt 2013-09-15 22:34 - 2013-09-15 21:38 - 00000000 ____D C:\Qoobox 2013-09-15 22:23 - 2013-09-15 21:37 - 00000000 ____D C:\Windows\erdnt 2013-09-15 22:17 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-09-15 22:10 - 2012-04-21 12:35 - 00000000 ____D C:\Program Files (x86)\Firefox 2013-09-15 21:33 - 2013-09-15 21:32 - 05126233 ____R (Swearware) C:\Users\Michael\Downloads\ComboFix.exe 2013-09-15 21:17 - 2009-11-20 17:22 - 00003584 _____ C:\Windows\system32\AutoRunFilter.ini 2013-09-15 09:12 - 2010-05-31 01:08 - 00000000 ____D C:\Program Files (x86)\Google 2013-09-14 08:17 - 2013-09-14 08:15 - 00054542 _____ C:\Users\Michael\Downloads\Addition.txt 2013-09-14 08:10 - 2013-09-14 08:10 - 00000000 ____D C:\FRST 2013-09-14 01:17 - 2009-11-20 17:03 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-09-13 09:22 - 2009-11-20 17:22 - 00002371 _____ C:\Windows\system32\ServiceFilter.ini 2013-09-12 19:50 - 2013-09-12 18:49 - 13774848 _____ C:\Users\Michael\AppData\Roaming\Sandra.mdb 2013-09-12 19:50 - 2011-12-07 16:21 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software 2013-09-12 19:15 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-12 18:57 - 2013-09-12 18:57 - 15546880 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 11405824 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 10629408 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2013-09-12 18:57 - 2013-09-12 18:57 - 06549504 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 03158584 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00511032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00418360 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00387640 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00380416 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00272384 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00244224 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00228864 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00224824 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00189552 _____ C:\Windows\system32\Gfxres.th-TH.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00178407 _____ C:\Windows\system32\Gfxres.el-GR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00165395 _____ C:\Windows\system32\Gfxres.ru-RU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00163384 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00154680 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00139909 _____ C:\Windows\system32\Gfxres.ar-SA.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00136401 _____ C:\Windows\system32\Gfxres.ja-JP.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00133746 _____ C:\Windows\system32\Gfxres.he-IL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00125558 _____ C:\Windows\system32\Gfxres.it-IT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00123230 _____ C:\Windows\system32\Gfxres.ko-KR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122927 _____ C:\Windows\system32\Gfxres.es-ES.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122709 _____ C:\Windows\system32\Gfxres.de-DE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122368 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2013-09-12 18:57 - 2013-09-12 18:57 - 00121173 _____ C:\Windows\system32\Gfxres.tr-TR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120800 _____ C:\Windows\system32\Gfxres.fr-FR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120366 _____ C:\Windows\system32\Gfxres.pt-BR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119808 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00119616 _____ C:\Windows\system32\Gfxres.hu-HU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119586 _____ C:\Windows\system32\Gfxres.nl-NL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119360 _____ C:\Windows\system32\Gfxres.sv-SE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119067 _____ C:\Windows\system32\Gfxres.pt-PT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118745 _____ C:\Windows\system32\Gfxres.cs-CZ.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118697 _____ C:\Windows\system32\Gfxres.fi-FI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118409 _____ C:\Windows\system32\Gfxres.pl-PL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118058 _____ C:\Windows\system32\Gfxres.sk-SK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114852 _____ C:\Windows\system32\Gfxres.nb-NO.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114372 _____ C:\Windows\system32\Gfxres.sl-SI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114261 _____ C:\Windows\system32\Gfxres.da-DK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00110211 _____ C:\Windows\system32\Gfxres.en-US.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00104044 _____ C:\Windows\system32\Gfxres.zh-TW.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00102883 _____ C:\Windows\system32\Gfxres.zh-CN.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2869.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00023552 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00005448 _____ C:\Windows\system32\iglhxs64.vp 2013-09-12 18:57 - 2013-09-12 18:57 - 00004096 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2013-09-12 18:57 - 2010-08-25 19:31 - 04896768 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll 2013-09-12 18:57 - 2010-08-25 19:28 - 00571904 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdx32.dll 2013-09-12 18:57 - 2010-08-25 19:23 - 04338688 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2013-09-12 18:57 - 2009-07-03 03:22 - 04722176 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll 2013-09-12 18:57 - 2009-07-03 02:51 - 00061952 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2013-09-12 18:57 - 2009-07-03 02:50 - 00108544 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2013-09-12 18:57 - 2009-07-03 02:49 - 00830464 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2013-09-12 18:56 - 2013-09-12 18:56 - 00064040 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1E62x64.sys 2013-09-12 18:47 - 2013-09-12 18:34 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-09-12 18:46 - 2013-09-12 18:46 - 00003218 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-09-12 18:46 - 2013-09-12 18:46 - 00002566 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-09-12 18:46 - 2012-12-24 01:47 - 00000000 ____D C:\Program Files (x86)\IObit 2013-09-12 18:44 - 2013-09-12 18:42 - 08688608 _____ (IObit ) C:\Users\Michael\Downloads\driver-booster-media-1.0.exe 2013-09-12 18:32 - 2013-09-12 18:32 - 00000000 ____D C:\Program Files\SiSoftware 2013-09-12 18:27 - 2013-09-12 18:18 - 61622856 _____ (SiSoftware ) C:\Users\Michael\Downloads\san1958.exe 2013-09-12 17:45 - 2013-09-12 16:45 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-09-12 17:20 - 2011-02-28 10:36 - 00000000 ____D C:\Users\Michael\Desktop\Media 2013-09-12 17:20 - 2011-01-19 20:16 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-09-12 17:15 - 2013-09-12 17:04 - 00000000 ____D C:\Users\Michael\AppData\Roaming\PersBackup5 2013-09-12 17:15 - 2010-03-18 16:11 - 00000000 ___RD C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-12 17:12 - 2013-09-12 17:05 - 00000000 ____D C:\Users\Michael\Documents\PersBackup 2013-09-12 17:09 - 2013-09-12 17:09 - 88891392 _____ C:\Windows\system32\config\software.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 23502848 _____ C:\Windows\system32\config\system.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 04591616 _____ C:\Windows\system32\config\default.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00057344 _____ C:\Windows\system32\config\sam.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00028672 _____ C:\Windows\system32\config\security.iobit 2013-09-12 17:09 - 2010-03-18 16:10 - 00000000 ____D C:\Users\Michael 2013-09-12 17:04 - 2013-09-12 17:04 - 00000717 _____ C:\Users\Public\Desktop\Personal Backup 5.lnk 2013-09-12 16:56 - 2013-09-12 16:56 - 00003422 _____ C:\Windows\System32\Tasks\MotoHelper Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00003410 _____ C:\Windows\System32\Tasks\MotoHelper MUM 2013-09-12 16:56 - 2013-09-12 16:56 - 00003404 _____ C:\Windows\System32\Tasks\MotoHelper Routing 2013-09-12 16:56 - 2013-09-12 16:56 - 00003230 _____ C:\Windows\System32\Tasks\MotoHelper Initial Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Motorola 2013-09-12 16:55 - 2013-09-12 16:55 - 00000000 ____D C:\Program Files\Motorola Inc 2013-09-12 16:54 - 2010-03-19 19:38 - 00000000 ____D C:\Users\Michael\AppData\Local\Adobe 2013-09-12 16:52 - 2012-02-18 11:10 - 00002887 _____ C:\Windows\system32\log.xml 2013-09-12 16:52 - 2012-02-18 11:10 - 00000008 _____ C:\Windows\system32\log-suffix.xml 2013-09-12 16:51 - 2011-11-10 10:57 - 00000000 ____D C:\Users\Michael\AppData\Local\Pixel X Backup 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee 2013-09-12 16:45 - 2013-01-11 19:54 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-09-12 16:45 - 2012-04-03 20:51 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-12 16:45 - 2011-08-08 07:49 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-12 15:11 - 2013-09-12 15:08 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2013-09-12 15:08 - 2013-09-12 15:08 - 00000000 ____D C:\ProgramData\Licenses 2013-09-12 15:07 - 2013-09-12 15:07 - 04095448 _____ (BrightFort LLC ) C:\Users\Michael\Downloads\spywareblastersetup50.exe 2013-09-12 14:47 - 2013-09-12 14:47 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2013-09-12 14:07 - 2013-09-07 18:02 - 00000000 ____D C:\Program Files (x86)\eRightSoft 2013-09-12 12:39 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-09-11 16:42 - 2013-09-11 16:38 - 16264528 _____ C:\Users\Michael\Downloads\AcrobatUpd11004.msp.part 2013-09-11 15:42 - 2010-03-18 16:20 - 00000000 ___RD C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-11 15:40 - 2009-07-29 08:03 - 00000000 ____D C:\Windows\Panther 2013-09-11 15:39 - 2009-07-14 06:45 - 00493376 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-11 13:25 - 2013-07-25 03:01 - 00000000 ____D C:\Windows\system32\MRT 2013-09-11 13:20 - 2010-10-09 19:56 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-09 00:06 - 2010-03-23 11:59 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Winamp 2013-09-08 20:25 - 2010-03-19 14:13 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-09-08 20:25 - 2009-11-20 17:49 - 00000000 ____D C:\ProgramData\P4G 2013-09-08 20:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2013-09-08 19:57 - 2010-03-19 14:13 - 00000000 ____D C:\ProgramData\Skype 2013-09-08 13:48 - 2010-10-13 10:32 - 00000000 ___DC C:\Users\Michael\AppData\Local\MigWiz 2013-09-08 13:47 - 2013-09-08 13:47 - 00000000 ____D C:\ProgramData\GlarySoft 2013-09-08 11:17 - 2011-11-30 12:43 - 00000000 ____D C:\Users\Michael\AppData\Roaming\vlc 2013-09-07 18:09 - 2008-12-21 23:46 - 00369152 ___SH (The Public) C:\Windows\SysWOW64\avisynth.dll 2013-09-07 18:08 - 2013-09-07 18:08 - 00000000 ____D C:\Program Files (x86)\AviSynth 2.5 2013-09-07 18:03 - 2013-09-07 18:03 - 00000000 ____D C:\Users\Michael\Documents\eRightSoft 2013-09-07 17:50 - 2013-09-07 17:45 - 54864655 _____ (eRightSoft ) C:\Users\Michael\Downloads\SUPERsetup.exe 2013-09-07 17:39 - 2011-12-07 16:25 - 00000000 ____D C:\Windows\System32\Tasks\NCH Swift Sound 2013-09-07 17:35 - 2010-03-19 14:36 - 00000000 ____D C:\Users\Michael\Documents\DVDVideoSoft 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-09-03 16:01 - 2010-09-20 09:36 - 00000000 ____D C:\Users\Michael\AppData\Roaming\dvdcss 2013-08-26 21:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-24 15:19 - 2011-12-06 13:18 - 00000000 ____D C:\ProgramData\NCH Software 2013-08-24 15:18 - 2013-08-24 15:18 - 00003214 _____ C:\Windows\System32\Tasks\{8B79FB66-0972-4FAC-81FA-2F48D44C55CE} 2013-08-19 09:21 - 2011-03-23 14:12 - 00001642 _____ C:\Users\Michael\AppData\Roaming\MyMicroBalanceConfig.ini Files to move or delete: ==================== C:\Users\Michael\Firefox_Setup_11.0.exe C:\Users\Michael\netcache.dat ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-12 12:29 ==================== End Of Log ============================ |
17.09.2013, 13:12 | #12 |
/// the machine /// TB-Ausbilder | Adware : Generic_r.GQESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.09.2013, 06:04 | #13 |
| Adware : Generic_r.GQ Probleme ? Was willst Du wissen ? Frau, Kinder, Job oder Geld ? LOL Der Generic hat sich bei AVG jedenfalls nicht mehr gemeldet... ESET findet da noch was, aber das ist in Quarantäne, oder ??? Gruß Michael Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=7 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6419 # api_version=3.0.2 # EOSSerial=ce761c3861e8ad4ebad97de463658d53 # end=finished # remove_checked=true # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2011-01-22 02:10:07 # local_time=2011-01-22 03:10:07 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.1.7600 NT # compatibility_mode=1032 16777213 100 89 17902 53379279 0 0 # compatibility_mode=2560 16777215 100 0 0 0 0 0 # compatibility_mode=5893 16776574 100 94 4592131 47331075 0 0 # compatibility_mode=7937 16777214 85 50 10893271 11192865 0 0 # compatibility_mode=8192 67108863 100 0 359 359 0 0 # compatibility_mode=9217 16777214 75 66 2152021 17974855 0 0 # scanned=178121 # found=2 # cleaned=2 # scan_time=4182 C:\Downloads\Software\VLCSetup.exe Variante von Win32/Adware.HotBar.H Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert) 00000000000000000000000000000000 C D:\Programme\OpenOffice\OpenOffice.exe Variante von Win32/Adware.HotBar.G Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert) 00000000000000000000000000000000 C ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=ce761c3861e8ad4ebad97de463658d53 # engine=15177 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-09-18 11:25:27 # local_time=2013-09-19 01:25:27 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=1043 16777213 100 87 23553 66680711 0 0 # compatibility_mode=5893 16776574 100 94 5984129 131176577 0 0 # compatibility_mode=7937 16777214 85 50 94738773 95038367 0 0 # compatibility_mode=9217 16777214 50 9 57751339 57751341 0 0 # scanned=255300 # found=17 # cleaned=0 # scan_time=19836 sh=8B297CC73CEF0E4E7E269FFB5E8924681A1905C0 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\ProgramData\Spybot - Search & Destroy\Recovery\DealPly126.zip" sh=73C55474DDCAB5DEA7A7D5142CA99F743694FBFA ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\ProgramData\Spybot - Search & Destroy\Recovery\DealPly132.zip" sh=5BCA700ACBFD3E4145198C2514225C19F30EEB56 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\ProgramData\Spybot - Search & Destroy\Recovery\DealPly134.zip" sh=9C9FC401617D24DA837722A4BBD4F4EF84EE27F9 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\ProgramData\Spybot - Search & Destroy\Recovery\DealPly135.zip" sh=CFB62DCA6240330E1BA403E7616B8E701D5E3898 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\ProgramData\Spybot - Search & Destroy\Recovery\DealPly136.zip" sh=0A757F0F4A3CB699AACA959273836D1152ADC077 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\ProgramData\Spybot - Search & Destroy\Recovery\DealPly138.zip" sh=7C8B5BF69EAE2099FF62394BE83A6F37F1A30D45 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\ProgramData\Spybot - Search & Destroy\Recovery\WinDownloadergen.zip" sh=8B297CC73CEF0E4E7E269FFB5E8924681A1905C0 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\Users\All Users\Spybot - Search & Destroy\Recovery\DealPly126.zip" sh=73C55474DDCAB5DEA7A7D5142CA99F743694FBFA ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\Users\All Users\Spybot - Search & Destroy\Recovery\DealPly132.zip" sh=5BCA700ACBFD3E4145198C2514225C19F30EEB56 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\Users\All Users\Spybot - Search & Destroy\Recovery\DealPly134.zip" sh=9C9FC401617D24DA837722A4BBD4F4EF84EE27F9 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\Users\All Users\Spybot - Search & Destroy\Recovery\DealPly135.zip" sh=CFB62DCA6240330E1BA403E7616B8E701D5E3898 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\Users\All Users\Spybot - Search & Destroy\Recovery\DealPly136.zip" sh=0A757F0F4A3CB699AACA959273836D1152ADC077 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\Users\All Users\Spybot - Search & Destroy\Recovery\DealPly138.zip" sh=7C8B5BF69EAE2099FF62394BE83A6F37F1A30D45 ft=0 fh=0000000000000000 vn="Win32/Bagle.gen.zip worm" ac=I fn="C:\Users\All Users\Spybot - Search & Destroy\Recovery\WinDownloadergen.zip" sh=EF50E9B48CA05EC1423DD9C858738A2971BFB8A8 ft=1 fh=5f4591e8147a9bfd vn="Win32/StartPage.OIE trojan" ac=I fn="D:\Programme\VLC-Player\vlc-1.1.11-win32.exe" sh=AA20435D6BB48947413EC3A756259F5755E2624F ft=0 fh=0000000000000000 vn="Win32/Adware.Yontoo application" ac=I fn="G:\MICHAEL-PC\Backup Set 2013-04-07 160006\Backup Files 2013-04-07 160006\Backup files 2.zip" sh=754B63582BCFBBCEC6157D2FAA8B0318B2B1E5BA ft=0 fh=0000000000000000 vn="Win32/Adware.Yontoo application" ac=I fn="G:\MICHAEL-PC\Backup Set 2013-05-12 160003\Backup Files 2013-05-12 160003\Backup files 2.zip" Code:
ATTFilter Results of screen317's Security Check version 0.99.73 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` AVG AntiVirus Free Edition 2013 Antivirus out of date! `````````Anti-malware/Other Utilities Check:````````` Ad-Aware Spyware Terminator SpywareBlaster 5.0 Spybot - Search & Destroy ThreatFire AVG PC Tuneup Java(TM) 6 Update 30 Java(TM) 6 Update 22 Java 7 Update 9 Java version out of Date! Adobe Flash Player 11.8.800.168 Adobe Reader XI Mozilla Firefox 4.0 Firefox out of Date! Mozilla Thunderbird (3.1.7) Thunderbird out of Date! Google Chrome 29.0.1547.62 Google Chrome 29.0.1547.66 ````````Process Check: objlist.exe by Laurent```````` Ad-Aware AAWService.exe is disabled! Ad-Aware AAWTray.exe is disabled! Spybot Teatimer.exe is disabled! AVG avgwdsvc.exe ThreatFire TFService.exe Emsisoft Anti-Malware a2service.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-09-2013 Ran by Michael (administrator) on MICHAEL-PC on 19-09-2013 06:56:19 Running from C:\Users\Michael\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe (Emsi Software GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE (ASUSTeK Computer Inc.) C:\Windows\system32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe () C:\Program Files\ATKGFNEX\GFNEXSrv.exe (Check Point Software Technologies) C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe () C:\Program Files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe (AnchorFree Inc.) D:\Programme\HotSpotShield\Hotspot Shield\HssWPR\hsssrv.exe () C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe () C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe () C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperAgent.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (PC Tools) D:\Programme\Threatfire\ThreatFire\TFService.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe () C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe (VIA Technologies, Inc.) C:\Windows\system32\viakaraokesrv.exe () C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe (Safer Networking Ltd.) D:\Programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe (ATK) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe (ASUS) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ATK) C:\Program Files\P4G\BatteryLife.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\Monitor.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe () D:\Programme\TuneUp\Glary Utilities 3\x64\Win64ShellLink.exe (Glarysoft Ltd) D:\Programme\TuneUp\Glary Utilities 3\Integrator.exe (ECAREME) C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe (AlcorMicro Co., Ltd.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Create Software) D:\Programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe (IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee Security Scan\3.0.318\SSScheduler.exe (Dr. J. Rathlev, D-24222 Schwentinental) D:\Programme\Personal Backup 5\Persbackup.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS) C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Mozilla Corporation) D:\Programme\Browser Firefox\firefox.exe (Mozilla Corporation) D:\Programme\Browser Firefox\plugin-container.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe (Oracle Corporation) C:\Program Files (x86)\Java\jre7\bin\java.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcfgex.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe () C:\Users\Michael\Downloads\SecurityCheck.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [EeeStorageBackup] - C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe [947472 2009-08-25] (ECAREME) HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [320000 2009-04-09] (AlcorMicro Co., Ltd.) HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [619392 2009-06-12] (ELAN Microelectronic Corp.) HKLM\...\Run: [Windows Mobile Device Center] - C:\Windows\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation) HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [Create Synchronicity - Scheduler] - D:\Programme\Synchronicity\Create Synchronicity\Create Synchronicity.exe [245248 2012-03-11] (Create Software) HKCU\...\Run: [Advanced SystemCare 6] - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe [490880 2012-09-24] (IObit) HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [8493624 2009-07-07] (ASUS) HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [159744 2009-04-20] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2317312 2011-09-13] (ASUS) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411440 2013-08-15] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) Startup: C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Persbackup.lnk ShortcutTarget: Persbackup.lnk -> D:\Programme\Personal Backup 5\Persbackup.exe (Dr. J. Rathlev, D-24222 Schwentinental) BootExecute: autocheck autochk * BootDefrag.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.net-news-express.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - DefaultScope {4F9497CA-A22D-47CC-BBFD-F175CF067A64} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {4F9497CA-A22D-47CC-BBFD-F175CF067A64} URL = hxxp://www.google.de/search?q={searchTerms} BHO: Windows Live Family Safety Browser Helper Class - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\Programme\Spybot\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) BHO-x32: DivX HiQ - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASCPlugin_Protection.dll (IObit) BHO-x32: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - D:\Programme\Download Manager\Free Download Manager\iefdm2.dll () BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{82D2844E-C936-45F6-9DE3-7911F60531D1}: [NameServer]10.4.64.1 Tcpip\..\Interfaces\{89359871-6979-4F7A-A1CD-1950BB90445B}: [NameServer]8.26.56.26,156.154.70.22 Tcpip\..\Interfaces\{A24BA8EE-5175-42C0-82B5-AED2E4F05CDB}: [NameServer]8.26.56.26,156.154.70.22 FireFox: ======== FF ProfilePath: C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153 FF DefaultSearchEngine: Ixquick HTTPS - Deutsch FF SelectedSearchEngine: Ixquick HTTPS - Deutsch FF Homepage: hxxp://www.spiegel.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @java.com/DTPlugin,version=10.7.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @pages.tvunetworks.com/WebPlayer - D:\Programme\TV\TVUPlayer\npTVUAx.dll (TVU networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.5 - D:\Programme\VLC-Player\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Michael\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Michael\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF SearchPlugin: C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\searchplugins\ixquick-https---deutsch.xml FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\ascsurfingprotection@iobit.com FF Extension: Lavasoft Search Plugin - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\jid1-yZwVFzbsyfMrqQ@jetpack FF Extension: No Name - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe} FF Extension: Flash and Video Download - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} FF Extension: firefox - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\firefox@ghostery.com.xpi FF Extension: trackmenot - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\trackmenot@mrl.nyu.edu.xpi FF Extension: youtubeunblocker - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\youtubeunblocker@unblocker.yt.xpi FF Extension: No Name - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi FF Extension: No Name - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi FF Extension: No Name - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: No Name - C:\Users\Michael\AppData\Roaming\Mozilla\Firefox\Profiles\p4yb9dxd.default-1347175688153\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\html5video FF HKLM-x32\...\Firefox\Extensions: [{6904342A-8307-11DF-A508-4AE2DFD72085}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa FF Extension: DivX HiQ - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\wpa FF StartMenuInternet: FIREFOX.EXE - D:\Programme\Browser Firefox\firefox.exe Chrome: ======= Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION CHR Extension: (SiteRanker) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgldkplledicnbnnliodeffobaiaodaf\1.0.0.0_0 CHR Extension: (ZenMate for Google Chrome\u2122) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme\2.5_0 CHR Extension: (DivX HiQ) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0 CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Michael\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0 CHR HKLM-x32\...\Chrome\Extension: [fnjbmmemklcjgepojigaapkoodmkgbae] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\wpa\wpa.crx CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Advanced SystemCare 6\BrowerProtect\ASC_GhromePlugin.crx CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\google_chrome\html5video\html5video.crx CHR StartMenuInternet: Google Chrome - C:\Users\Michael\AppData\Local\Google\Chrome\Application\chrome.exe CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [2996784 2011-11-16] (Emsi Software GmbH) R2 AdvancedSystemCareService6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [464256 2012-10-31] (IObit) R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) R2 FreemiumSystemStoreService; C:\Program Files (x86)\Freetec\SystemStore\Freemium.SystemStore.exe [7244800 2012-10-08] () R2 HssSrv; D:\Programme\HotSpotShield\Hotspot Shield\HssWPR\hsssrv.exe [352304 2011-01-05] (AnchorFree Inc.) R2 IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [827520 2011-11-03] (Check Point Software Technologies) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) R2 MotoHelper; C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe [214896 2011-12-06] () R2 OberonGameConsoleService; C:\Program Files (x86)\Asus\Game Park\GameConsole\OberonGameConsoleService.exe [44312 2009-09-15] () S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\RpcAgentSrv.exe [71832 2008-08-29] (SiSoftware) R2 SBSDWSCService; D:\Programme\Spybot\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.) R2 ThreatFire; D:\Programme\Threatfire\ThreatFire\TFService.exe [70928 2010-01-14] (PC Tools) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2012-10-22] (VIA Technologies, Inc.) R2 VMCService; C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe [14336 2008-07-04] (Vodafone) S2 HOSTS Anti-PUPs; S2 vsmon; ==================== Drivers (Whitelisted) ==================== S3 a2acc; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [63880 2011-11-02] (Emsi Software GmbH) S3 a2acc; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [63880 2011-11-02] (Emsi Software GmbH) R1 A2DDA; C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [23208 2011-05-19] (Emsi Software GmbH) R1 A2DDA; C:\Program Files (x86)\Emsisoft Anti-Malware\a2ddax64.sys [23208 2011-05-19] (Emsi Software GmbH) R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] () R2 ASMMAP64; C:\Program Files\ATKGFNEX\ASMMAP64.sys [14904 2007-07-24] () R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206648 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311608 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-02-24] (GFI Software) R2 ISWKL; C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [33672 2011-11-03] (Check Point Software Technologies) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [115240 2008-05-16] (MCCI Corporation) S3 s0016mdfl; C:\Windows\System32\DRIVERS\s0016mdfl.sys [19496 2008-05-16] (MCCI Corporation) S3 s0016mdm; C:\Windows\System32\DRIVERS\s0016mdm.sys [158760 2008-05-16] (MCCI Corporation) S3 s0016mgmt; C:\Windows\System32\DRIVERS\s0016mgmt.sys [137256 2008-05-16] (MCCI Corporation) S3 s0016nd5; C:\Windows\System32\DRIVERS\s0016nd5.sys [34344 2008-05-16] (MCCI Corporation) S3 s0016obex; C:\Windows\System32\DRIVERS\s0016obex.sys [136744 2008-05-16] (MCCI Corporation) S3 s0016unic; C:\Windows\System32\DRIVERS\s0016unic.sys [151592 2008-05-16] (MCCI Corporation) S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP5\WNt500x64\Sandra.sys [23112 2009-08-07] (SiSoftware) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1806400 2009-06-05] () R0 TfFsMon; C:\Windows\System32\drivers\TfFsMon.sys [65072 2010-01-14] (PC Tools) R3 TfNetMon; C:\Windows\system32\drivers\TfNetMon.sys [41888 2010-01-14] (PC Tools) R3 TfNetMon; C:\Windows\system32\drivers\TfNetMon.sys [41888 2010-01-14] (PC Tools) R0 TfSysMon; C:\Windows\System32\drivers\TfSysMon.sys [59880 2010-01-14] (PC Tools) R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454232 2011-05-07] (Check Point Software Technologies LTD) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S0 BootDefragDriver; System32\drivers\BootDefragDriver.sys [x] S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 clwvd; system32\DRIVERS\clwvd.sys [x] S0 Lbd; system32\DRIVERS\Lbd.sys [x] U3 tmlwf; U3 tmwfp; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-19 06:55 - 2013-09-19 06:56 - 01950594 _____ (Farbar) C:\Users\Michael\Downloads\FRST64.exe 2013-09-19 06:53 - 2013-09-19 06:53 - 00001413 _____ C:\Users\Michael\Desktop\security check checkup.txt 2013-09-19 06:46 - 2013-09-19 06:46 - 00891144 _____ C:\Users\Michael\Downloads\SecurityCheck.exe 2013-09-18 19:43 - 2013-09-18 19:43 - 02347384 _____ (ESET) C:\Users\Michael\Downloads\esetsmartinstaller_enu.exe 2013-09-18 15:21 - 2013-09-18 17:49 - 00003114 _____ C:\Windows\System32\Tasks\P4G Sidebar 2013-09-18 15:18 - 2013-09-18 15:18 - 00001104 _____ C:\Windows\PFRO.log 2013-09-17 07:52 - 2013-09-18 15:31 - 00000168 _____ C:\Windows\setupact.log 2013-09-17 07:52 - 2013-09-17 07:52 - 00000000 _____ C:\Windows\setuperr.log 2013-09-17 01:57 - 2013-09-17 01:57 - 00001841 _____ C:\Users\Michael\Desktop\JRT.txt 2013-09-17 00:03 - 2013-09-17 00:03 - 00001338 _____ C:\Users\Michael\Desktop\AdwCleaner[S1].txt 2013-09-16 22:49 - 2013-09-16 22:49 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 22:48 - 2013-09-16 22:48 - 01029675 _____ (Thisisu) C:\Users\Michael\Downloads\JRT.exe 2013-09-16 22:36 - 2013-09-16 22:36 - 01039554 _____ C:\Users\Michael\Downloads\adwcleaner.exe 2013-09-15 22:34 - 2013-09-15 22:34 - 00034617 _____ C:\ComboFix.txt 2013-09-15 21:39 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-09-15 21:39 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-09-15 21:39 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-09-15 21:39 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-09-15 21:38 - 2013-09-15 22:34 - 00000000 ____D C:\Qoobox 2013-09-15 21:37 - 2013-09-15 22:23 - 00000000 ____D C:\Windows\erdnt 2013-09-15 21:32 - 2013-09-15 21:33 - 05126233 ____R (Swearware) C:\Users\Michael\Downloads\ComboFix.exe 2013-09-14 08:15 - 2013-09-14 08:17 - 00054542 _____ C:\Users\Michael\Downloads\Addition.txt 2013-09-14 08:10 - 2013-09-14 08:10 - 00000000 ____D C:\FRST 2013-09-12 18:57 - 2013-09-12 18:57 - 15546880 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 11405824 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 10629408 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2013-09-12 18:57 - 2013-09-12 18:57 - 06549504 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 03158584 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00511032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00418360 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00387640 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00380416 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00272384 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00244224 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00228864 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00224824 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00189552 _____ C:\Windows\system32\Gfxres.th-TH.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00178407 _____ C:\Windows\system32\Gfxres.el-GR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00165395 _____ C:\Windows\system32\Gfxres.ru-RU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00163384 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00154680 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00139909 _____ C:\Windows\system32\Gfxres.ar-SA.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00136401 _____ C:\Windows\system32\Gfxres.ja-JP.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00133746 _____ C:\Windows\system32\Gfxres.he-IL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00125558 _____ C:\Windows\system32\Gfxres.it-IT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00123230 _____ C:\Windows\system32\Gfxres.ko-KR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122927 _____ C:\Windows\system32\Gfxres.es-ES.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122709 _____ C:\Windows\system32\Gfxres.de-DE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122368 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2013-09-12 18:57 - 2013-09-12 18:57 - 00121173 _____ C:\Windows\system32\Gfxres.tr-TR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120800 _____ C:\Windows\system32\Gfxres.fr-FR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120366 _____ C:\Windows\system32\Gfxres.pt-BR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119808 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00119616 _____ C:\Windows\system32\Gfxres.hu-HU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119586 _____ C:\Windows\system32\Gfxres.nl-NL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119360 _____ C:\Windows\system32\Gfxres.sv-SE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119067 _____ C:\Windows\system32\Gfxres.pt-PT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118745 _____ C:\Windows\system32\Gfxres.cs-CZ.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118697 _____ C:\Windows\system32\Gfxres.fi-FI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118409 _____ C:\Windows\system32\Gfxres.pl-PL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118058 _____ C:\Windows\system32\Gfxres.sk-SK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114852 _____ C:\Windows\system32\Gfxres.nb-NO.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114372 _____ C:\Windows\system32\Gfxres.sl-SI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114261 _____ C:\Windows\system32\Gfxres.da-DK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00110211 _____ C:\Windows\system32\Gfxres.en-US.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00104044 _____ C:\Windows\system32\Gfxres.zh-TW.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00102883 _____ C:\Windows\system32\Gfxres.zh-CN.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2869.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00023552 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00005448 _____ C:\Windows\system32\iglhxs64.vp 2013-09-12 18:57 - 2013-09-12 18:57 - 00004096 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2013-09-12 18:56 - 2013-09-12 18:56 - 00064040 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1E62x64.sys 2013-09-12 18:49 - 2013-09-12 19:50 - 13774848 _____ C:\Users\Michael\AppData\Roaming\Sandra.mdb 2013-09-12 18:47 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-09-12 18:47 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-09-12 18:47 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-09-12 18:47 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-09-12 18:47 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-09-12 18:47 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-09-12 18:47 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-09-12 18:47 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-09-12 18:47 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-09-12 18:47 - 2008-10-10 04:52 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-09-12 18:47 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-09-12 18:47 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-09-12 18:47 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-09-12 18:47 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-09-12 18:47 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-09-12 18:47 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-09-12 18:47 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-09-12 18:47 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-09-12 18:47 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-09-12 18:47 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-09-12 18:47 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-09-12 18:47 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-09-12 18:47 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-09-12 18:47 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-09-12 18:47 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-09-12 18:47 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-09-12 18:47 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-09-12 18:47 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-09-12 18:47 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-09-12 18:47 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-09-12 18:47 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-09-12 18:47 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-09-12 18:47 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-09-12 18:47 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-09-12 18:47 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-09-12 18:47 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-09-12 18:47 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-09-12 18:47 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-09-12 18:47 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-09-12 18:47 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-09-12 18:47 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-09-12 18:47 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-09-12 18:47 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-09-12 18:47 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-09-12 18:46 - 2013-09-18 15:32 - 00000288 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-09-12 18:46 - 2013-09-12 18:46 - 00003218 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-09-12 18:46 - 2013-09-12 18:46 - 00002566 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-09-12 18:46 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-09-12 18:46 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-09-12 18:46 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-09-12 18:46 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-09-12 18:46 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-09-12 18:46 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-09-12 18:46 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-09-12 18:46 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-09-12 18:46 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-09-12 18:46 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-09-12 18:46 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-09-12 18:46 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-09-12 18:46 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-09-12 18:46 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-09-12 18:46 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-09-12 18:46 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-09-12 18:46 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-09-12 18:46 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-09-12 18:46 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-09-12 18:46 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-09-12 18:46 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-09-12 18:46 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-09-12 18:46 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-09-12 18:46 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-09-12 18:46 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-09-12 18:46 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-09-12 18:46 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-09-12 18:46 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-09-12 18:46 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-09-12 18:46 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-09-12 18:46 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-09-12 18:46 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-09-12 18:46 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-09-12 18:46 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-09-12 18:46 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-09-12 18:46 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-09-12 18:46 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-09-12 18:46 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-09-12 18:46 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-09-12 18:46 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-09-12 18:42 - 2013-09-12 18:44 - 08688608 _____ (IObit ) C:\Users\Michael\Downloads\driver-booster-media-1.0.exe 2013-09-12 18:34 - 2013-09-12 18:47 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-09-12 18:32 - 2013-09-12 18:32 - 00000000 ____D C:\Program Files\SiSoftware 2013-09-12 18:18 - 2013-09-12 18:27 - 61622856 _____ (SiSoftware ) C:\Users\Michael\Downloads\san1958.exe 2013-09-12 17:09 - 2013-09-12 17:09 - 88891392 _____ C:\Windows\system32\config\software.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 23502848 _____ C:\Windows\system32\config\system.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 04591616 _____ C:\Windows\system32\config\default.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00057344 _____ C:\Windows\system32\config\sam.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00028672 _____ C:\Windows\system32\config\security.iobit 2013-09-12 17:05 - 2013-09-12 17:12 - 00000000 ____D C:\Users\Michael\Documents\PersBackup 2013-09-12 17:04 - 2013-09-12 17:15 - 00000000 ____D C:\Users\Michael\AppData\Roaming\PersBackup5 2013-09-12 17:04 - 2013-09-12 17:04 - 00000717 _____ C:\Users\Public\Desktop\Personal Backup 5.lnk 2013-09-12 16:56 - 2013-09-12 16:56 - 00003422 _____ C:\Windows\System32\Tasks\MotoHelper Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00003410 _____ C:\Windows\System32\Tasks\MotoHelper MUM 2013-09-12 16:56 - 2013-09-12 16:56 - 00003404 _____ C:\Windows\System32\Tasks\MotoHelper Routing 2013-09-12 16:56 - 2013-09-12 16:56 - 00003230 _____ C:\Windows\System32\Tasks\MotoHelper Initial Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Motorola 2013-09-12 16:55 - 2013-09-12 16:55 - 00000000 ____D C:\Program Files\Motorola Inc 2013-09-12 16:45 - 2013-09-12 17:45 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee 2013-09-12 15:08 - 2013-09-12 15:11 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2013-09-12 15:08 - 2013-09-12 15:08 - 00000000 ____D C:\ProgramData\Licenses 2013-09-12 15:07 - 2013-09-12 15:07 - 04095448 _____ (BrightFort LLC ) C:\Users\Michael\Downloads\spywareblastersetup50.exe 2013-09-12 14:47 - 2013-09-12 14:47 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2013-09-12 14:37 - 2013-09-16 22:40 - 00000000 ____D C:\AdwCleaner 2013-09-11 16:38 - 2013-09-11 16:42 - 16264528 _____ C:\Users\Michael\Downloads\AcrobatUpd11004.msp.part 2013-09-11 13:26 - 2013-08-10 07:22 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-11 13:26 - 2013-08-10 07:20 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-11 13:26 - 2013-08-10 07:20 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-11 13:26 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-11 13:26 - 2013-08-10 05:17 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-11 13:26 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-11 13:26 - 2013-08-10 04:27 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-09-11 13:26 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-09-11 13:25 - 2013-08-10 07:22 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-11 13:25 - 2013-08-10 07:22 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-11 13:25 - 2013-08-10 07:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-11 13:25 - 2013-08-10 07:20 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-11 13:25 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-11 13:25 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-11 13:25 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-11 09:50 - 2013-08-08 03:20 - 03155456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-11 09:50 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-09-11 09:50 - 2013-08-02 04:23 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-11 09:50 - 2013-08-02 04:15 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-09-11 09:50 - 2013-08-02 04:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2013-09-11 09:50 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-09-11 09:50 - 2013-08-02 04:14 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2013-09-11 09:50 - 2013-08-02 04:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-11 09:50 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:59 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-09-11 09:50 - 2013-08-02 03:59 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-09-11 09:50 - 2013-08-02 03:51 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-11 09:50 - 2013-08-02 03:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-11 09:50 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-09-11 09:50 - 2013-08-02 02:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-09-11 09:50 - 2013-08-02 02:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-09-11 09:50 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 09:50 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-09-11 09:50 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-09-11 09:50 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-09-11 09:50 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-09-11 09:50 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-09-08 13:47 - 2013-09-08 13:47 - 00000000 ____D C:\ProgramData\GlarySoft 2013-09-07 18:09 - 2005-07-14 12:31 - 00032256 ___SH C:\Windows\SysWOW64\AVSredirect.dll 2013-09-07 18:09 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\yv12vfw.dll 2013-09-07 18:09 - 2004-01-25 00:00 - 00070656 ___SH (www.helixcommunity.org) C:\Windows\SysWOW64\i420vfw.dll 2013-09-07 18:08 - 2013-09-07 18:08 - 00000000 ____D C:\Program Files (x86)\AviSynth 2.5 2013-09-07 18:03 - 2013-09-07 18:03 - 00000000 ____D C:\Users\Michael\Documents\eRightSoft 2013-09-07 18:02 - 2013-09-12 14:07 - 00000000 ____D C:\Program Files (x86)\eRightSoft 2013-09-07 18:02 - 2004-10-10 09:50 - 00278528 _____ (Real Networks, Inc) C:\Windows\SysWOW64\pncrt.dll 2013-09-07 18:02 - 2004-07-02 17:33 - 00327749 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\drvc.dll 2013-09-07 18:02 - 2003-06-05 13:57 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2013-09-07 17:45 - 2013-09-07 17:50 - 54864655 _____ (eRightSoft ) C:\Users\Michael\Downloads\SUPERsetup.exe 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-08-24 15:18 - 2013-08-24 15:18 - 00003214 _____ C:\Windows\System32\Tasks\{8B79FB66-0972-4FAC-81FA-2F48D44C55CE} ==================== One Month Modified Files and Folders ======= 2013-09-19 06:56 - 2013-09-19 06:55 - 01950594 _____ (Farbar) C:\Users\Michael\Downloads\FRST64.exe 2013-09-19 06:55 - 2013-01-11 19:54 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-19 06:54 - 2010-05-31 01:08 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-19 06:53 - 2013-09-19 06:53 - 00001413 _____ C:\Users\Michael\Desktop\security check checkup.txt 2013-09-19 06:46 - 2013-09-19 06:46 - 00891144 _____ C:\Users\Michael\Downloads\SecurityCheck.exe 2013-09-19 06:09 - 2012-07-04 22:33 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000UA.job 2013-09-19 05:27 - 2009-11-20 16:55 - 01090872 _____ C:\Windows\WindowsUpdate.log 2013-09-19 03:09 - 2012-07-04 22:33 - 00001076 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1338061197-1056508344-2146333352-1000Core.job 2013-09-19 00:12 - 2010-04-25 12:32 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{352043A8-965F-48FB-BF52-1875392499F9} 2013-09-18 20:54 - 2010-05-31 01:08 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-18 19:43 - 2013-09-18 19:43 - 02347384 _____ (ESET) C:\Users\Michael\Downloads\esetsmartinstaller_enu.exe 2013-09-18 18:52 - 2010-11-27 18:45 - 00000000 ____D C:\ProgramData\MFAData 2013-09-18 17:49 - 2013-09-18 15:21 - 00003114 _____ C:\Windows\System32\Tasks\P4G Sidebar 2013-09-18 16:13 - 2010-03-21 09:28 - 00000438 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-09-18 15:57 - 2011-11-26 14:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\TV-Browser 2013-09-18 15:38 - 2009-07-14 06:45 - 00018832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-18 15:38 - 2009-07-14 06:45 - 00018832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-18 15:36 - 2009-08-04 12:34 - 00554908 _____ C:\Windows\system32\perfh008.dat 2013-09-18 15:36 - 2009-08-04 12:34 - 00090514 _____ C:\Windows\system32\perfc008.dat 2013-09-18 15:36 - 2009-08-04 12:22 - 00388458 _____ C:\Windows\system32\prfh0404.dat 2013-09-18 15:36 - 2009-08-04 12:22 - 00107466 _____ C:\Windows\system32\prfc0404.dat 2013-09-18 15:36 - 2009-08-04 12:03 - 00697568 _____ C:\Windows\system32\perfh00C.dat 2013-09-18 15:36 - 2009-08-04 12:03 - 00131218 _____ C:\Windows\system32\perfc00C.dat 2013-09-18 15:36 - 2009-08-04 11:51 - 00657910 _____ C:\Windows\system32\perfh007.dat 2013-09-18 15:36 - 2009-08-04 11:51 - 00131250 _____ C:\Windows\system32\perfc007.dat 2013-09-18 15:36 - 2009-07-14 07:13 - 03470870 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-18 15:35 - 2013-08-10 12:08 - 00000332 _____ C:\Windows\Tasks\GlaryInitialize 3.job 2013-09-18 15:34 - 2010-03-19 15:26 - 00000356 _____ C:\Windows\Tasks\GlaryInitialize.job 2013-09-18 15:32 - 2013-09-12 18:46 - 00000288 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-09-18 15:31 - 2013-09-17 07:52 - 00000168 _____ C:\Windows\setupact.log 2013-09-18 15:31 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-18 15:18 - 2013-09-18 15:18 - 00001104 _____ C:\Windows\PFRO.log 2013-09-17 07:52 - 2013-09-17 07:52 - 00000000 _____ C:\Windows\setuperr.log 2013-09-17 02:04 - 2011-02-28 07:45 - 00000000 ____D C:\Users\Michael\Desktop\Sicherheit 2013-09-17 02:04 - 2010-03-21 23:55 - 00000000 ____D C:\Windows\Minidump 2013-09-17 01:57 - 2013-09-17 01:57 - 00001841 _____ C:\Users\Michael\Desktop\JRT.txt 2013-09-17 00:03 - 2013-09-17 00:03 - 00001338 _____ C:\Users\Michael\Desktop\AdwCleaner[S1].txt 2013-09-16 22:49 - 2013-09-16 22:49 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 22:48 - 2013-09-16 22:48 - 01029675 _____ (Thisisu) C:\Users\Michael\Downloads\JRT.exe 2013-09-16 22:40 - 2013-09-12 14:37 - 00000000 ____D C:\AdwCleaner 2013-09-16 22:36 - 2013-09-16 22:36 - 01039554 _____ C:\Users\Michael\Downloads\adwcleaner.exe 2013-09-16 21:57 - 2010-03-19 14:14 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Skype 2013-09-15 22:34 - 2013-09-15 22:34 - 00034617 _____ C:\ComboFix.txt 2013-09-15 22:34 - 2013-09-15 21:38 - 00000000 ____D C:\Qoobox 2013-09-15 22:23 - 2013-09-15 21:37 - 00000000 ____D C:\Windows\erdnt 2013-09-15 22:17 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-09-15 22:10 - 2012-04-21 12:35 - 00000000 ____D C:\Program Files (x86)\Firefox 2013-09-15 21:33 - 2013-09-15 21:32 - 05126233 ____R (Swearware) C:\Users\Michael\Downloads\ComboFix.exe 2013-09-15 21:17 - 2009-11-20 17:22 - 00003584 _____ C:\Windows\system32\AutoRunFilter.ini 2013-09-15 09:12 - 2010-05-31 01:08 - 00000000 ____D C:\Program Files (x86)\Google 2013-09-14 08:17 - 2013-09-14 08:15 - 00054542 _____ C:\Users\Michael\Downloads\Addition.txt 2013-09-14 08:10 - 2013-09-14 08:10 - 00000000 ____D C:\FRST 2013-09-14 01:17 - 2009-11-20 17:03 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-09-13 09:22 - 2009-11-20 17:22 - 00002371 _____ C:\Windows\system32\ServiceFilter.ini 2013-09-12 19:50 - 2013-09-12 18:49 - 13774848 _____ C:\Users\Michael\AppData\Roaming\Sandra.mdb 2013-09-12 19:50 - 2011-12-07 16:21 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software 2013-09-12 19:15 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-12 18:57 - 2013-09-12 18:57 - 15546880 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 11405824 _____ (Intel Corporation) C:\Windows\SysWOW64\ig4icd32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 10629408 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2013-09-12 18:57 - 2013-09-12 18:57 - 06549504 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 03158584 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00511032 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00418360 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00387640 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00380416 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00272384 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00244224 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00228864 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00224824 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00189552 _____ C:\Windows\system32\Gfxres.th-TH.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00178407 _____ C:\Windows\system32\Gfxres.el-GR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00165395 _____ C:\Windows\system32\Gfxres.ru-RU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00163384 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00154680 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2013-09-12 18:57 - 2013-09-12 18:57 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00139909 _____ C:\Windows\system32\Gfxres.ar-SA.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00136401 _____ C:\Windows\system32\Gfxres.ja-JP.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00133746 _____ C:\Windows\system32\Gfxres.he-IL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00125558 _____ C:\Windows\system32\Gfxres.it-IT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00123230 _____ C:\Windows\system32\Gfxres.ko-KR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122927 _____ C:\Windows\system32\Gfxres.es-ES.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122709 _____ C:\Windows\system32\Gfxres.de-DE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00122368 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2013-09-12 18:57 - 2013-09-12 18:57 - 00121173 _____ C:\Windows\system32\Gfxres.tr-TR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120800 _____ C:\Windows\system32\Gfxres.fr-FR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00120366 _____ C:\Windows\system32\Gfxres.pt-BR.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119808 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00119616 _____ C:\Windows\system32\Gfxres.hu-HU.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119586 _____ C:\Windows\system32\Gfxres.nl-NL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119360 _____ C:\Windows\system32\Gfxres.sv-SE.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00119067 _____ C:\Windows\system32\Gfxres.pt-PT.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118745 _____ C:\Windows\system32\Gfxres.cs-CZ.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118697 _____ C:\Windows\system32\Gfxres.fi-FI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118409 _____ C:\Windows\system32\Gfxres.pl-PL.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00118058 _____ C:\Windows\system32\Gfxres.sk-SK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114852 _____ C:\Windows\system32\Gfxres.nb-NO.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114372 _____ C:\Windows\system32\Gfxres.sl-SI.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00114261 _____ C:\Windows\system32\Gfxres.da-DK.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00110211 _____ C:\Windows\system32\Gfxres.en-US.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00104044 _____ C:\Windows\system32\Gfxres.zh-TW.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00102883 _____ C:\Windows\system32\Gfxres.zh-CN.resources 2013-09-12 18:57 - 2013-09-12 18:57 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2869.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088576 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00088064 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087552 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00087040 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00086528 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00084992 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00083968 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2013-09-12 18:57 - 2013-09-12 18:57 - 00027648 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00023552 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2013-09-12 18:57 - 2013-09-12 18:57 - 00005448 _____ C:\Windows\system32\iglhxs64.vp 2013-09-12 18:57 - 2013-09-12 18:57 - 00004096 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2013-09-12 18:57 - 2010-08-25 19:31 - 04896768 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll 2013-09-12 18:57 - 2010-08-25 19:28 - 00571904 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdx32.dll 2013-09-12 18:57 - 2010-08-25 19:23 - 04338688 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2013-09-12 18:57 - 2009-07-03 03:22 - 04722176 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll 2013-09-12 18:57 - 2009-07-03 02:51 - 00061952 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2013-09-12 18:57 - 2009-07-03 02:50 - 00108544 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2013-09-12 18:57 - 2009-07-03 02:49 - 00830464 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2013-09-12 18:56 - 2013-09-12 18:56 - 00064040 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1E62x64.sys 2013-09-12 18:47 - 2013-09-12 18:34 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-09-12 18:46 - 2013-09-12 18:46 - 00003218 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-09-12 18:46 - 2013-09-12 18:46 - 00002566 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-09-12 18:46 - 2012-12-24 01:47 - 00000000 ____D C:\Program Files (x86)\IObit 2013-09-12 18:44 - 2013-09-12 18:42 - 08688608 _____ (IObit ) C:\Users\Michael\Downloads\driver-booster-media-1.0.exe 2013-09-12 18:32 - 2013-09-12 18:32 - 00000000 ____D C:\Program Files\SiSoftware 2013-09-12 18:27 - 2013-09-12 18:18 - 61622856 _____ (SiSoftware ) C:\Users\Michael\Downloads\san1958.exe 2013-09-12 17:45 - 2013-09-12 16:45 - 00000000 ____D C:\Program Files (x86)\McAfee Security Scan 2013-09-12 17:20 - 2011-02-28 10:36 - 00000000 ____D C:\Users\Michael\Desktop\Media 2013-09-12 17:20 - 2011-01-19 20:16 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-09-12 17:15 - 2013-09-12 17:04 - 00000000 ____D C:\Users\Michael\AppData\Roaming\PersBackup5 2013-09-12 17:15 - 2010-03-18 16:11 - 00000000 ___RD C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-12 17:12 - 2013-09-12 17:05 - 00000000 ____D C:\Users\Michael\Documents\PersBackup 2013-09-12 17:09 - 2013-09-12 17:09 - 88891392 _____ C:\Windows\system32\config\software.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 23502848 _____ C:\Windows\system32\config\system.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 04591616 _____ C:\Windows\system32\config\default.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00057344 _____ C:\Windows\system32\config\sam.iobit 2013-09-12 17:09 - 2013-09-12 17:09 - 00028672 _____ C:\Windows\system32\config\security.iobit 2013-09-12 17:09 - 2010-03-18 16:10 - 00000000 ____D C:\Users\Michael 2013-09-12 17:04 - 2013-09-12 17:04 - 00000717 _____ C:\Users\Public\Desktop\Personal Backup 5.lnk 2013-09-12 16:56 - 2013-09-12 16:56 - 00003422 _____ C:\Windows\System32\Tasks\MotoHelper Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00003410 _____ C:\Windows\System32\Tasks\MotoHelper MUM 2013-09-12 16:56 - 2013-09-12 16:56 - 00003404 _____ C:\Windows\System32\Tasks\MotoHelper Routing 2013-09-12 16:56 - 2013-09-12 16:56 - 00003230 _____ C:\Windows\System32\Tasks\MotoHelper Initial Update 2013-09-12 16:56 - 2013-09-12 16:56 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Motorola 2013-09-12 16:55 - 2013-09-12 16:55 - 00000000 ____D C:\Program Files\Motorola Inc 2013-09-12 16:54 - 2010-03-19 19:38 - 00000000 ____D C:\Users\Michael\AppData\Local\Adobe 2013-09-12 16:52 - 2012-02-18 11:10 - 00002887 _____ C:\Windows\system32\log.xml 2013-09-12 16:52 - 2012-02-18 11:10 - 00000008 _____ C:\Windows\system32\log-suffix.xml 2013-09-12 16:51 - 2011-11-10 10:57 - 00000000 ____D C:\Users\Michael\AppData\Local\Pixel X Backup 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2013-09-12 16:45 - 2013-09-12 16:45 - 00000000 ____D C:\ProgramData\McAfee 2013-09-12 16:45 - 2013-01-11 19:54 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-09-12 16:45 - 2012-04-03 20:51 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-12 16:45 - 2011-08-08 07:49 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-12 15:11 - 2013-09-12 15:08 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2013-09-12 15:08 - 2013-09-12 15:08 - 00000000 ____D C:\ProgramData\Licenses 2013-09-12 15:07 - 2013-09-12 15:07 - 04095448 _____ (BrightFort LLC ) C:\Users\Michael\Downloads\spywareblastersetup50.exe 2013-09-12 14:47 - 2013-09-12 14:47 - 00000000 ____D C:\Program Files (x86)\Hosts_Anti_Adwares_PUPs 2013-09-12 14:07 - 2013-09-07 18:02 - 00000000 ____D C:\Program Files (x86)\eRightSoft 2013-09-12 12:39 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-09-11 16:42 - 2013-09-11 16:38 - 16264528 _____ C:\Users\Michael\Downloads\AcrobatUpd11004.msp.part 2013-09-11 15:42 - 2010-03-18 16:20 - 00000000 ___RD C:\Users\Michael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-09-11 15:40 - 2009-07-29 08:03 - 00000000 ____D C:\Windows\Panther 2013-09-11 15:39 - 2009-07-14 06:45 - 00493376 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-11 13:25 - 2013-07-25 03:01 - 00000000 ____D C:\Windows\system32\MRT 2013-09-11 13:20 - 2010-10-09 19:56 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-09 00:06 - 2010-03-23 11:59 - 00000000 ____D C:\Users\Michael\AppData\Roaming\Winamp 2013-09-08 20:25 - 2010-03-19 14:13 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-09-08 20:25 - 2009-11-20 17:49 - 00000000 ____D C:\ProgramData\P4G 2013-09-08 20:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration 2013-09-08 19:57 - 2010-03-19 14:13 - 00000000 ____D C:\ProgramData\Skype 2013-09-08 13:48 - 2010-10-13 10:32 - 00000000 ___DC C:\Users\Michael\AppData\Local\MigWiz 2013-09-08 13:47 - 2013-09-08 13:47 - 00000000 ____D C:\ProgramData\GlarySoft 2013-09-08 11:17 - 2011-11-30 12:43 - 00000000 ____D C:\Users\Michael\AppData\Roaming\vlc 2013-09-07 18:09 - 2008-12-21 23:46 - 00369152 ___SH (The Public) C:\Windows\SysWOW64\avisynth.dll 2013-09-07 18:08 - 2013-09-07 18:08 - 00000000 ____D C:\Program Files (x86)\AviSynth 2.5 2013-09-07 18:03 - 2013-09-07 18:03 - 00000000 ____D C:\Users\Michael\Documents\eRightSoft 2013-09-07 17:50 - 2013-09-07 17:45 - 54864655 _____ (eRightSoft ) C:\Users\Michael\Downloads\SUPERsetup.exe 2013-09-07 17:39 - 2011-12-07 16:25 - 00000000 ____D C:\Windows\System32\Tasks\NCH Swift Sound 2013-09-07 17:35 - 2010-03-19 14:36 - 00000000 ____D C:\Users\Michael\Documents\DVDVideoSoft 2013-09-05 01:43 - 2013-09-05 01:43 - 00045880 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2013-09-03 16:01 - 2010-09-20 09:36 - 00000000 ____D C:\Users\Michael\AppData\Roaming\dvdcss 2013-08-26 21:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-08-24 15:19 - 2011-12-06 13:18 - 00000000 ____D C:\ProgramData\NCH Software 2013-08-24 15:18 - 2013-08-24 15:18 - 00003214 _____ C:\Windows\System32\Tasks\{8B79FB66-0972-4FAC-81FA-2F48D44C55CE} Files to move or delete: ==================== C:\Users\Michael\Firefox_Setup_11.0.exe C:\Users\Michael\netcache.dat ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-12 12:29 ==================== End Of Log ============================ |
19.09.2013, 16:20 | #14 |
/// the machine /// TB-Ausbilder | Adware : Generic_r.GQ Genau, in Quarantäne. Die beiden letzten Funde, das backup, würde ich manuell löschen. Java, Firefox und Thunderbird updaten. Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.09.2013, 17:00 | #15 |
| Adware : Generic_r.GQ Hallo Schrauber, Java, Firefox und Thunderbird sind aktuell (automatisch), auch wenn Security Check was anderes sagt. Windows und andere Software auch. Die anderen empfohlenen Dinge werde ich beherzigen bzw. mache es schon. Eine kurze Frage noch, dann darfst Du mich in den Papierkorb schmeissen : Glary Utilities sollte ich also besser nicht nutzen wegen Registry-Reinigung ? DANKE DANKE DANKE für Deine Riesenhilfe !!! Eine kleine Spende gibts nach dem 1.10. wenn wieder Geld auf dem Konto ist. Dann hast Du ja noch ein paar Tage Zeit auf der Wiesn oa Mass zu trinken... Grüße aus dem Norden Deutschlands Michael |
Themen zu Adware : Generic_r.GQ |
adware, adware generic, antivirus, avg, avg antivirus, erledigt, firefox, gefunde, generic, generic_r.gq, gestern, hilfe, liebe, meldung, nichts, profis, scan, seite, thema, unwissende, wurm |