|
Log-Analyse und Auswertung: Windows 8: Bedrohung durch ici.resynccdn.netWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
16.09.2013, 12:54 | #1 |
| Windows 8: Bedrohung durch ici.resynccdn.net Hallo Trojaner- Board! Seit einigen Tagen habe ich das Problem, dass sich in Chrome, wenn ich einen neuen Tab öffne sich gleichzeitig auch ein neues Browser Fenster öffnet, was allerdings leer bleibt mit. In der Adresszeile steht dann immer oben genannte Adresse. Ich habe dann im Internet ein wenig gesucht, was das denn ist und immer wieder wurde gesagt,dass das eine Spyware/Maleware ist. Ich habe dann einen Scan mit Antivir durchgeführt, aber es wurde nichts gefunden. Zusätzlich zu diesem Browserfenster, welches sich immer öffnet habe ich jetzt auch noch Unmengen an Werbung selbst auf Seiten wo vorher nie Werbung gewesen ist. Darunter steht immer der Hinweis: ads not by this site. Selbst bei Suchergebnissen sind diese Werbeanziegen. Ich hab mich daraufhin versucht etwas schlau zu machen und habe mir Malewarebytes Anti-Maleware runtergeladen und einen Scan damit durchgeführt. Das Programm hat auch infizierte Dateien gefunden und in Quaratäne verschoben und ich habe sie dann löschen lassen. Allerdings taucht das leere Browser Fenster und die ganze Werbung immer noch auf. Ich habe wie von euch beschrieben,die Schritte durchgeführt und einen Scan mit Defogger, FRST und GMER durchgeführt.Zusätzlich habe ich noch einen Scan mit Malewarbytes Anti-Malware gemacht. Die Log Datein sind im Folgendem aufgeführt. Defogger hat mir keinen Fund gemeldet, ebenso wenig wie Antivir. Ich hoffe, ihr könnt mir irgendwie helfen! Danke schonmal im Voraus! Hier die Log Dateien: Gmer: Code:
ATTFilter GMER 2.1.19163 - hxxp://www.gmer.net Rootkit scan 2013-09-16 13:07:58 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000039 Hitachi_HTS545050A7E380 rev.GG2OA920 465,76GB Running: gmer_2.1.19163.exe; Driver: C:\Users\Caro\AppData\Local\Temp\ugdyafog.sys ---- User code sections - GMER 2.1 ---- .text C:\Windows\system32\dwm.exe[588] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fd8ed71532 4 bytes [D7, 8E, FD, 07] .text C:\Windows\system32\dwm.exe[588] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fd8ed7153a 4 bytes [D7, 8E, FD, 07] .text C:\Windows\system32\dwm.exe[588] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fd8ed7165a 4 bytes [D7, 8E, FD, 07] .text C:\Windows\Explorer.EXE[3344] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 000007fd8ed71532 4 bytes [D7, 8E, FD, 07] .text C:\Windows\Explorer.EXE[3344] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 000007fd8ed7153a 4 bytes [D7, 8E, FD, 07] .text C:\Windows\Explorer.EXE[3344] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 000007fd8ed7165a 4 bytes [D7, 8E, FD, 07] ---- Threads - GMER 2.1 ---- Thread C:\Windows\system32\csrss.exe [652:676] fffff960008575e8 Thread C:\Windows\system32\svchost.exe [412:3624] 000007fd8a175c38 Thread C:\Windows\system32\svchost.exe [412:3172] 000007fd890610f0 Thread C:\Windows\system32\svchost.exe [412:2112] 000007fd88ed16b0 Thread C:\Windows\System32\spoolsv.exe [1396:5608] 0000000001d33290 Thread C:\Windows\System32\spoolsv.exe [1396:5056] 000000001011e960 Thread C:\Windows\System32\spoolsv.exe [1396:5328] 000000001011e960 Thread C:\Windows\System32\spoolsv.exe [1396:5336] 000000001011e960 Thread C:\Windows\System32\spoolsv.exe [1396:4560] 000007fd89d154c0 Thread C:\Windows\System32\spoolsv.exe [1396:5440] 000007fd89ca30ec Thread C:\Windows\System32\spoolsv.exe [1396:5484] 000007fd79875798 Thread C:\Windows\System32\spoolsv.exe [1396:5436] 000007fd7989e080 Thread C:\Windows\System32\spoolsv.exe [1396:5644] 000007fd797281ac Thread C:\Windows\system32\svchost.exe [1540:3128] 000007fd87e04910 Thread C:\Windows\system32\svchost.exe [1540:3224] 000007fd87b61544 Thread C:\Windows\system32\svchost.exe [1540:3288] 000007fd87a555dc Thread C:\Windows\system32\svchost.exe [1540:3652] 000007fd87e01044 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ---- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-09-2013 01 Ran by Caro at 2013-09-16 13:00:50 Running from C:\Users\Caro\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= clear.fi SDK - Video 2 (x32 Version: 2.1.1925) clear.fi SDK- Movie 2 (x32 Version: 2.1.2008) Acer Backup Manager (x32 Version: 4.0.0.0059) Acer Device Fast-lane (Version: 1.00.3007) Acer Instant Update Service (Version: 1.00.3013) Acer PicEvermore (x32 Version: 1.0.0.0035) Acer Power Management (Version: 7.00.3006) Acer Recovery Management (Version: 6.00.3011) Acer Theft Shield (Version: 1.01.3006) Acer USB Charge Manager (Version: 2.00.3001) AcerCloud (x32 Version: 2.01.3115) AcerCloud Docs (x32 Version: 1.00.3201) Adobe Reader XI (11.0.04) - Deutsch (x32 Version: 11.0.04) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98) Aloha TriPeaks (x32 Version: 2.2.0.98) Avira Free Antivirus (x32 Version: 13.0.0.4052) Backup Manager v4 (x32 Version: 4.0.0.0059) Bejeweled 3 (x32 Version: 2.2.0.98) Canon Easy-WebPrint EX (x32 Version: 1.3.5.0) Canon IJ Scan Utility (x32) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (x32 Version: 4.0.0) Canon MG3200 series Benutzerregistrierung (x32) Canon MG3200 series MP Drivers (Version: 1.01) Canon MG3200 series On-screen Manual (x32 Version: 7.5.0) Canon My Image Garden (x32 Version: 1.0.0) Canon My Image Garden Design Files (x32 Version: 1.0.0) Canon My Printer (x32 Version: 3.1.0) Canon Quick Menu (x32 Version: 2.0.0) Citavi 4 (x32 Version: 4.1.0.3) clear.fi Media (x32 Version: 2.01.3108) clear.fi Photo (x32 Version: 2.01.3108) CyberLink MediaEspresso 6.5 (x32 Version: 6.5.3103_44819) Delicious: Emily's True Love Premium Edition (x32 Version: 2.2.0.98) Dialang V1 Beta (x32) Dolby Home Theater v4 (x32 Version: 7.2.8000.16) Driver Whiz (x32 Version: 8.1) Dropbox (HKCU Version: 2.2.13) ETDWare PS/2-X64 11.6.8.001_WHQL (Version: 11.6.8.001) ExpressCache (Version: 1.0.86) Google Chrome (x32 Version: 29.0.1547.66) Google Update Helper (x32 Version: 1.3.21.153) Identity Card (x32 Version: 2.00.3004) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) Processor Graphics (x32 Version: 9.17.10.2828) Intel(R) Rapid Start Technology (x32 Version: 2.1.0.1002) Intel(R) Rapid Storage Technology (x32 Version: 11.5.0.1207) Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149) Intel® Trusted Connect Service Client (Version: 1.24.388.1) Island Tribe (x32 Version: 2.2.0.98) Jewel Match 3 (x32 Version: 2.2.0.98) John Deere Drive Green (x32 Version: 2.2.0.95) Launch Manager (x32 Version: 7.0.4) Lexmark 2300 Series Live Updater (x32 Version: 2.00.3004) LyriXeeker-1 (x32 Version: 1.28.153.3) Magic Academy (x32 Version: 2.2.0.98) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) Media Go (x32 Version: 2.4.256) Media Go Video Playback Engine 1.116.107.02030 (x32 Version: 1.116.107.02030) Microsoft Office (x32 Version: 14.0.6120.5004) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0) Mozilla Maintenance Service (x32 Version: 17.0.8) Mozilla Thunderbird 17.0.8 (x86 de) (x32 Version: 17.0.8) MyWinLocker (Version: 4.0.14.35) MyWinLocker 4 (x32 Version: 4.0.14.35) MyWinLocker Suite (x32 Version: 4.0.14.24) NTI Media Maker 9 (x32 Version: 9.0.2.9008) Office Addin (x32 Version: 2.01.3200) OpenOffice.org 3.4.1 (x32 Version: 3.41.9593) Penguins! (x32 Version: 2.2.0.98) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98) PlayStation(R)Store (x32 Version: 4.14.6.15183) Polar Bowler (x32 Version: 2.2.0.97) Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.0.220) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (x32 Version: 11.41) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6695) Realtek PCIE Card Reader (x32 Version: 6.2.8400.28123) Shared C Run-time for x64 (Version: 10.0.0) Shredder (Version: 2.0.8.9) Shredder (x32 Version: 2.0.8.9) Skype™ 6.6 (x32 Version: 6.6.106) Sleep Memory Optimizer (Version: 1.01.3000) Smart Timer (x32 Version: 1.00.3007) Sony PC Companion 2.10.173 (x32 Version: 2.10.173) Spotify (x32 Version: 0.8.4.99.ga249b5f1) Tales of Lagoona (x32 Version: 2.2.0.110) Update Installer for WildTangent Games App (x32) Visual Studio 2005 Tools for Office Second Edition Runtime (x32) Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729) Visual Studio Tools for the Office system 3.0 Runtime (x32) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (x32 Version: 1) VLC media player 2.0.8 (x32 Version: 2.0.8) WildTangent Games (x32 Version: 1.0.3.0) WildTangent Games App (x32 Version: 4.0.10.17) YTD Video Downloader 4.3 (x32 Version: 4.3) Zuma's Revenge (x32 Version: 2.2.0.98) ==================== Restore Points ========================= 15-09-2013 10:44:21 Windows Modules Installer ==================== Hosts content: ========================== 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0A2385F5-7B88-482C-816E-7F406B5419DD} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => Sc.exe start wuauserv Task: {0B6F9D14-B2A7-4B60-97A0-170DFA3C3AB3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\MpCmdRun.exe [2013-07-02] (Microsoft Corporation) Task: {0E60E578-BBC2-48CF-AFE9-2E1CD5CB7EB0} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2012-07-04] (CyberLink) Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation) Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler Task: {1A9605F9-D9AA-4D3C-8589-5A93B4D2A762} - System32\Tasks\iuEmailOutlookAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [2012-08-23] () Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\System32\sysmain.dll [2013-05-04] (Microsoft Corporation) Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\WSClient.dll [2013-08-16] (Microsoft Corporation) Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh Task: {2C967F6D-6450-4ABA-A08E-CA3D9FF66F46} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4089398181-3264069202-3345016257-1001 Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator Task: {3A45FF3A-47C7-46E0-BC4D-F17CA2484BFA} - System32\Tasks\Smart Timer Task Scheduler => C:\Program Files\Smart Timer\Smart_Timer.exe [2012-06-22] (Acer Incorporated) Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance Task: {435570D7-EA12-42AE-B335-1280BCAF441F} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-22] () Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage Task: {4530F6EF-D98B-4E77-99AD-6E25D2664ECC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-29] (Google Inc.) Task: {45C2F517-5DB2-4084-BB53-F78950B1C9A3} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation) Task: {49AEAF20-ADF3-4049-B74D-7BB7A454FFFF} - System32\Tasks\LyriXeeker-1-chromeinstaller => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-chromeinstaller.exe Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon Task: {4F3EB288-7613-46DC-9FF7-E8638BBA6FE9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\MpCmdRun.exe [2013-07-02] (Microsoft Corporation) Task: {5084A2E7-57A2-4C93-9FB7-FBBB04062666} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect Task: {5624F995-6B7F-4E91-B63B-3E28493CA9F2} - System32\Tasks\iuBrowserIEAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe [2012-08-23] () Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation) Task: {662F2208-9B8F-4113-9A4D-3FA3D8717F6A} - System32\Tasks\LyriXeeker-1-enabler => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-enabler.exe Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation) Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Task: {71C9A69F-3BA6-426A-A8C4-4CDD8CD66E55} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-29] (Google Inc.) Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update Task: {78204055-77DB-4D99-8EC3-2A31048AFFE7} - System32\Tasks\LyriXeeker-1-codedownloader => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-codedownloader.exe Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) Task: {91AF7DD8-FAED-4142-AE92-F61D3E5727B3} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-08-30] () Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic Task: {9EC6B92A-45D5-4BD8-975B-1BC5713A5790} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-08-22] (Acer Incorporated) Task: {A541A668-DE86-4D5A-8D6A-F98924547479} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4089398181-3264069202-3345016257-500 Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\WSClient.dll [2013-08-16] (Microsoft Corporation) Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\System32\Windows.Storage.ApplicationData.dll [2012-07-26] (Microsoft Corporation) Task: {C9437EAA-8381-49CA-90C7-1797D364F140} - System32\Tasks\LyriXeeker-1-updater => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-updater.exe Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork Task: {CDED6F64-0F00-4AE2-96B6-79039DE73E0D} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2013-08-16] (Microsoft Corporation) Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical Task: {DDF9BF0B-B21A-4207-BCD9-BC3335349E01} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery Task: {DF861278-617C-44E5-9EAB-9C43829D8848} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2012-07-12] (Egis Technology Inc.) Task: {E0920D4B-50B5-45A5-A6C0-037DB11082E2} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation) Task: {EAD237E7-D276-4257-9F16-51DF41548733} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => Sc.exe start w32time task_started Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\System32\Startupscan.dll [2012-07-26] (Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM Task: {F2185580-FE14-42EF-B5BB-A382356691BA} - System32\Tasks\Theft Shield\AcerTheftShieldTask => C:\Program Files\Acer\Acer Theft Shield\USecuAppLauncher.exe [2012-11-12] (Acer Incorporated) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-chromeinstaller.exe Task: C:\Windows\Tasks\LyriXeeker-1-codedownloader.job => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-codedownloader.exe Task: C:\Windows\Tasks\LyriXeeker-1-enabler.job => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-enabler.exe Task: C:\Windows\Tasks\LyriXeeker-1-updater.job => C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-updater.exe ==================== Loaded Modules (whitelisted) ============= 2013-06-22 01:34 - 2013-06-22 01:34 - 00164016 _____ (Dropbox, Inc.) C:\Users\Caro\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll 2012-09-01 06:05 - 2012-08-07 16:11 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrDEU.lrc 2013-01-28 14:45 - 2013-01-28 14:45 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-01-28 14:42 - 2013-01-28 14:42 - 00084992 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll 2012-09-01 06:05 - 2012-08-07 16:11 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-10-19 18:37 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2012-10-19 18:37 - 2012-07-16 08:16 - 03643024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2012-07-25 17:03 - 2012-07-25 17:03 - 01080560 _____ (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4c.dll 2012-07-25 17:03 - 2012-07-25 17:03 - 00040688 _____ (Dolby Laboratories Inc.) C:\Dolby PCEE4\Dolby.Interop.dll 2012-10-19 18:37 - 2012-06-15 05:20 - 00123784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2012-07-25 17:02 - 2012-07-25 17:02 - 00020208 _____ (Dolby Laboratories Inc.) C:\Dolby PCEE4\de\pcee4c.resources.dll 2013-06-29 13:54 - 2013-05-21 08:57 - 00593920 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\NewUI.dll 2013-06-29 13:53 - 2013-02-05 12:49 - 00701952 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\bvrpctln.dll 2013-06-29 13:54 - 2012-04-30 11:57 - 00039936 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\TMonitorAPI.dll 2013-06-29 13:54 - 2013-08-27 09:26 - 00920064 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\Device.dll 2013-06-29 13:54 - 2013-05-17 10:51 - 00207872 _____ () C:\Program Files (x86)\Sony\Sony PC Companion\MExplorer.dll 2013-06-29 13:54 - 2011-04-04 14:14 - 00113664 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\WUNPACLN.dll 2013-06-29 13:54 - 2013-07-24 11:10 - 00991232 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.dll 2013-06-29 13:54 - 2012-12-26 15:44 - 00287744 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\PluginManager.dll 2013-06-29 13:54 - 2013-04-23 17:27 - 00342528 _____ (TODO: <Company name>) C:\Program Files (x86)\Sony\Sony PC Companion\PhoneUpdateTools.dll 2013-06-29 13:54 - 2012-07-11 17:39 - 00329728 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\DownloadManager.dll 2013-05-27 12:22 - 2013-05-27 12:22 - 00339456 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\CrashDump.dll 2013-06-29 13:54 - 2013-06-10 17:46 - 00285696 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\Statistics.dll 2013-06-29 13:54 - 2013-06-07 11:38 - 00183296 _____ (Avanquest Software) C:\Program Files (x86)\Sony\Sony PC Companion\WebServices.dll 2012-08-23 08:26 - 2012-08-23 08:26 - 00101952 _____ (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\OutlookDispatch.dll 2012-08-23 08:26 - 2012-08-23 08:26 - 00465384 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll 2012-08-23 08:25 - 2012-08-23 08:25 - 00062528 _____ (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\LUInterface.dll 2012-08-23 08:26 - 2012-08-23 08:26 - 00024128 _____ (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\MUI\0407\lang.dll 2012-11-14 01:32 - 2012-11-14 01:32 - 03558400 _____ (wxWidgets development team) C:\Users\Caro\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll 2013-03-13 22:48 - 2013-03-13 22:48 - 24978944 _____ () C:\Users\Caro\AppData\Roaming\Dropbox\bin\libcef.dll 2013-03-13 22:48 - 2013-03-13 22:48 - 09956864 _____ (The ICU Project) C:\Users\Caro\AppData\Roaming\Dropbox\bin\icudt.dll 2012-08-10 16:51 - 2012-08-10 16:51 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll 2013-09-08 17:42 - 2013-09-02 22:35 - 00709584 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\libglesv2.dll 2013-09-08 17:42 - 2013-09-02 22:35 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\libegl.dll 2013-09-08 17:42 - 2013-09-02 22:35 - 04053456 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\pdf.dll 2013-09-08 17:42 - 2013-09-02 22:35 - 00410576 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ppGoogleNaClPluginChrome.dll 2013-09-08 17:42 - 2013-09-02 22:35 - 01604560 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ffmpegsumo.dll 2013-09-08 17:42 - 2013-09-02 22:35 - 13599184 _____ () C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\PepperFlash\pepflashplayer.dll 2012-08-23 00:04 - 2012-08-23 00:04 - 00025744 _____ ( ) C:\Program Files\Acer\Acer Instant Service\InstantUpdate\Interop.NETWORKLIST.dll ==================== Alternate Data Streams (whitelisted) ========== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/16/2013 01:00:00 PM) (Source: ESENT) (User: ) Description: svchost (1540) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/16/2013 00:35:28 PM) (Source: ETDService) (User: ) Description: ETDServiceCreateInteractiveProcess failed w/err 0x000003f0 Error: (09/15/2013 11:00:00 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/15/2013 09:59:03 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/15/2013 07:00:00 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/15/2013 06:13:28 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/15/2013 05:00:00 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/15/2013 04:00:00 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/15/2013 03:00:00 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). Error: (09/15/2013 02:00:00 PM) (Source: ESENT) (User: ) Description: svchost (1512) SRUJet: Datenbank C:\Windows\system32\SRU\SRUDB.dat: Index AppIdTimeStamp von Tabelle {973F5D5C-1D90-4944-BE8E-24B94231A174} ist beschädigt (0). System errors: ============= Error: (09/15/2013 06:13:33 PM) (Source: BTHUSB) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/14/2013 03:19:25 PM) (Source: Service Control Manager) (User: ) Description: Dienst "NTI IScheduleSvc" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/14/2013 03:19:24 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Canon Inkjet Printer/Scanner/Fax Extended Survey Program" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/14/2013 03:19:24 PM) (Source: Service Control Manager) (User: ) Description: Dienst "Adobe Acrobat Update Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (09/14/2013 02:47:31 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst MBAMService erreicht. Error: (09/14/2013 00:34:13 PM) (Source: BTHUSB) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/13/2013 06:55:40 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 13.09.2013 um 13:45:58 unerwartet heruntergefahren. Error: (09/12/2013 10:33:43 AM) (Source: BTHUSB) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/11/2013 09:13:10 PM) (Source: BTHUSB) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/11/2013 06:56:16 PM) (Source: BTHUSB) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Microsoft Office Sessions: ========================= Error: (09/16/2013 01:00:00 PM) (Source: ESENT)(User: ) Description: svchost1540SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/16/2013 00:35:28 PM) (Source: ETDService)(User: ) Description: ETDServiceCreateInteractiveProcess failed w/err 0x000003f0 Error: (09/15/2013 11:00:00 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/15/2013 09:59:03 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/15/2013 07:00:00 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/15/2013 06:13:28 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/15/2013 05:00:00 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/15/2013 04:00:00 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/15/2013 03:00:00 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 Error: (09/15/2013 02:00:00 PM) (Source: ESENT)(User: ) Description: svchost1512SRUJet: AppIdTimeStamp{973F5D5C-1D90-4944-BE8E-24B94231A174}C:\Windows\system32\SRU\SRUDB.dat0 ==================== Memory info =========================== Percentage of memory in use: 68% Total physical RAM: 3911.27 MB Available physical RAM: 1221.69 MB Total Pagefile: 5703.27 MB Available Pagefile: 2275.81 MB Total Virtual: 8192 MB Available Virtual: 8191.76 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:447.95 GB) (Free:365.05 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: FFB0B93D) Partition: GPT Partition Type ======================================================== Disk: 1 (Size: 19 GB) (Disk ID: 53E9802E) Partition: GPT Partition Type ==================== End Of Log ============================ Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-09-2013 01 Ran by Caro (administrator) on CAROLINSPC on 16-09-2013 12:59:12 Running from C:\Users\Caro\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe (Acer Incorporated) C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ( ) C:\Windows\system32\lxcgcoms.exe ( ) C:\Windows\system32\lxdncoms.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe (Dropbox, Inc.) C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Acer Incorporated) C:\Program Files\Acer\Acer Theft Shield\USecuAppClient.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor) HKLM\...\Run: [BtPreLoad] - "C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe" Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications)) HKCU\...\Run: [Spotify Web Helper] - C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1193176 2012-10-19] () HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [LManager] - [x] HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CanonQuickMenu] - C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-21] (Acer Incorporated) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com SearchScopes: HKLM - DefaultScope {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - DefaultScope {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - DefaultScope {1BC89615-0326-4FE2-854A-24D871073D03} URL = BHO: LyriXeeker-1 - {11111111-1111-1111-1111-110411181156} - C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-bho64.dll No File BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll No File BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: Citavi Picker - {609D670F-B735-4da7-AC6D-F3BD358E325E} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://acer13.msn.com/ CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll No File CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () CHR Plugin: (McAfee SecurityCenter) - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL No File CHR Extension: (Google Docs) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (LyriXeeker-1) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgmpcnmaamenhngcinchjeifhhnlaig\1.24.10_0 CHR Extension: (AdBlock) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.7_0 CHR Extension: (ProxMate - Proxy on steroids!) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgjpnmnpjmabddgmjdiaggacbololbjm\3.0.7_0 CHR Extension: (Chrome In-App Payments service) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0 CHR Extension: (Citavi Picker) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\piehhloihgjjiomhieeddiidpekaajio\2013.5.30_0 CHR Extension: (Gmail) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR HKLM-x32\...\Chrome\Extension: [piehhloihgjjiomhieeddiidpekaajio] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Chrome\ChromePicker.crx ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2435728 2012-08-23] (Acer Incorporated) S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [28560 2012-08-30] (ELAN Microelectronics Corp.) R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation) R2 FFSOpzSvc; C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe [161384 2012-03-12] (Acer Incorporated) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] () S3 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-19] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 lxcg_device; C:\Windows\system32\lxcgcoms.exe [566704 2007-04-29] ( ) R2 lxdn_device; C:\Windows\system32\lxdncoms.exe [1039872 2007-11-28] ( ) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-08-23] (NTI Corporation) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-10-19] (Dritek System INC.) S3 USecuAppSvc; C:\Program Files\Acer\Acer Theft Shield\USecuAppSvc.exe [345744 2012-11-12] (Acer Incorporated) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-02-26] (Avira Operations GmbH & Co. KG) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation) R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation) R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-20] (Intel Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-10-19] (Dritek System Inc.) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:57 - 2013-09-16 12:57 - 01951150 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-16 12:55 - 2013-09-16 12:55 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:19 - 2013-09-14 15:21 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:24 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:18 - 2013-05-02 17:29 - 00278800 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-09-14 15:16 - 2013-09-14 15:18 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:45 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-14 13:40 - 2013-09-14 13:42 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:14 - 2013-09-14 13:15 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 11:40 - 2013-09-14 12:04 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 21:34 - 2013-08-16 07:41 - 00058200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2013-09-13 21:34 - 2013-08-16 07:39 - 02371728 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2013-09-13 21:34 - 2013-08-16 07:39 - 00059416 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-09-13 21:34 - 2013-08-16 07:32 - 00209200 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 04917760 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-09-13 21:34 - 2013-08-16 07:21 - 03275776 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01621504 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00773120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-09-13 21:34 - 2013-08-16 07:20 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00083968 _____ C:\Windows\SysWOW64\OEMLicense.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2013-09-13 21:34 - 2013-08-16 00:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-13 21:29 - 2013-08-21 06:11 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-13 21:29 - 2013-08-21 04:34 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 04:06 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-13 21:29 - 2013-08-21 03:43 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 01:52 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-09-13 21:19 - 2013-08-03 06:30 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-13 21:18 - 2013-07-09 10:04 - 00120144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2013-09-13 21:18 - 2013-07-09 08:18 - 00439488 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2013-09-13 21:18 - 2013-07-09 06:25 - 00385768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2013-09-13 21:18 - 2013-07-09 05:57 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00543744 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanadvui.dll 2013-09-13 21:18 - 2013-07-09 00:45 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2013-09-13 21:18 - 2013-07-06 02:16 - 01025024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 02839552 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 01300480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:10 - 02273792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2013-09-13 21:18 - 2013-07-02 00:08 - 00387583 _____ C:\Windows\system32\ApnDatabase.xml 2013-09-13 21:18 - 2013-07-01 00:30 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe 2013-09-13 21:18 - 2013-07-01 00:29 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe 2013-09-13 21:18 - 2013-06-29 08:15 - 00195416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-09-13 21:18 - 2013-06-29 08:15 - 00125784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-09-13 21:18 - 2013-06-29 07:43 - 00327512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2013-09-13 21:18 - 2013-06-29 03:12 - 01022464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-09-13 21:18 - 2013-06-26 05:01 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2013-09-13 21:18 - 2013-06-26 04:59 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys 2013-09-13 21:18 - 2013-06-25 00:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2013-09-13 21:18 - 2013-06-12 01:43 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2013-09-13 21:18 - 2013-06-12 01:26 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2013-09-13 21:18 - 2013-06-10 23:17 - 00096512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2013-09-13 21:18 - 2013-06-10 21:16 - 00888832 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:15 - 01156096 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-10 21:10 - 00702464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-06 10:03 - 00119040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2013-09-13 13:19 - 2013-09-16 12:36 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-13 13:19 - 2013-09-16 12:36 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-13 13:19 - 2013-09-16 12:36 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:18 - 2013-09-16 12:36 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-13 13:18 - 2013-09-14 14:45 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 16:56 - 2013-09-11 14:13 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-10 16:48 - 2013-09-10 17:06 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 12:08 - 2013-09-10 16:48 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:05 - 2012-02-08 16:34 - 00320000 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8L.dll 2013-09-10 12:05 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\SysWOW64\CNC1762D.TBL 2013-09-10 12:05 - 2012-01-16 14:21 - 00103424 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8U.dll 2013-09-10 12:05 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:49 - 2012-02-08 16:36 - 00363520 _____ (CANON INC.) C:\Windows\system32\CNC_B8L.dll 2013-09-10 11:49 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\system32\CNC1762D.TBL 2013-09-10 11:49 - 2012-01-16 14:21 - 00287744 _____ (CANON INC.) C:\Windows\system32\CNC_B8C.dll 2013-09-10 11:49 - 2012-01-16 14:20 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_B8I.dll 2013-09-10 11:49 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:48 - 2012-03-28 19:01 - 00359936 _____ (CANON INC.) C:\Windows\system32\CNMN6PPM.DLL 2013-09-10 11:48 - 2012-03-28 19:01 - 00039424 _____ (CANON INC.) C:\Windows\system32\CNMN6UI.DLL 2013-09-10 11:48 - 2012-03-28 19:00 - 00366592 _____ (CANON INC.) C:\Windows\SysWOW64\CNMNPPM.DLL 2013-09-10 11:48 - 2012-03-26 05:00 - 00389120 _____ (CANON INC.) C:\Windows\system32\CNMLMB8.DLL 2013-09-10 11:45 - 2013-09-10 17:06 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-08 19:07 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-09-08 19:07 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-09-08 19:07 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-09-08 19:06 - 2013-09-08 19:07 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:06 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-09-08 19:06 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-09-08 19:06 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-09-08 19:06 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-09-08 19:06 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-09-08 19:06 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-09-08 19:06 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-09-08 19:06 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-09-08 19:06 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-09-08 19:06 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-09-08 19:06 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-09-08 19:04 - 2013-09-08 19:05 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:56 - 2013-09-08 18:58 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-08 10:11 - 2013-09-14 13:12 - 00000000 ____D C:\Games 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:15 - 2013-09-03 11:23 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 13:08 - 2013-02-26 16:56 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-08-28 10:18 - 2013-08-28 10:38 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe 2013-08-18 16:21 - 2013-09-13 22:41 - 00000000 ____D C:\Windows\system32\MRT 2013-08-18 16:09 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-18 16:09 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-18 15:45 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-18 15:45 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-18 15:45 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-18 15:45 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-18 15:44 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-18 15:44 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-18 15:44 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-18 15:44 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-18 15:44 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-18 15:23 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-18 15:23 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-18 14:37 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-18 14:14 - 2013-08-18 14:14 - 00000000 ____D C:\ProgramData\APN 2013-08-18 14:13 - 2013-08-18 14:14 - 00000000 ____D C:\ProgramData\YTD Video Downloader 2013-08-18 14:13 - 2013-08-18 14:13 - 00000000 ____D C:\Program Files (x86)\GreenTree Applications 2013-08-18 14:01 - 2013-08-18 14:03 - 12015642 _____ C:\Users\Caro\Downloads\acerCloud2_2_3_0008.apk 2013-08-17 21:11 - 2013-08-19 14:13 - 00000000 ____D C:\Users\Caro\AppData\Roaming\vlc 2013-08-17 21:09 - 2013-08-17 21:09 - 00001074 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-08-17 21:09 - 2013-08-17 21:09 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-08-17 21:05 - 2013-08-17 21:08 - 23003252 _____ C:\Users\Caro\Downloads\vlc-2.0.8_win32.exe 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\Documents\CyberLink 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\AppData\Roaming\CyberLink 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\AppData\Local\Software ==================== One Month Modified Files and Folders ======= 2013-09-16 13:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:57 - 2013-09-16 12:57 - 01951150 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-16 12:55 - 2013-09-16 12:55 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-16 12:54 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro 2013-09-16 12:41 - 2013-06-29 17:42 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4089398181-3264069202-3345016257-1001 2013-09-16 12:40 - 2012-10-20 04:19 - 00753134 _____ C:\Windows\system32\perfh007.dat 2013-09-16 12:40 - 2012-10-20 04:19 - 00155826 _____ C:\Windows\system32\perfc007.dat 2013-09-16 12:40 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-16 12:38 - 2013-06-29 12:28 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-16 12:37 - 2013-06-29 14:03 - 00000000 ___RD C:\Users\Caro\Dropbox 2013-09-16 12:37 - 2013-06-29 14:00 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Dropbox 2013-09-16 12:36 - 2013-09-13 13:19 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-16 12:36 - 2013-09-13 13:19 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-16 12:36 - 2013-09-13 13:19 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-16 12:36 - 2013-09-13 13:18 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-16 12:36 - 2013-06-29 12:28 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-16 12:35 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-15 23:32 - 2013-06-29 17:36 - 01586897 _____ C:\Windows\WindowsUpdate.log 2013-09-15 18:13 - 2013-07-07 00:00 - 00000000 ____D C:\Users\Caro\Documents\Bluetooth Folder 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 16:17 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:24 - 2013-09-14 15:18 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:21 - 2013-09-14 15:19 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:16 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 15:04 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-09-14 15:00 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\BackupManager 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 14:46 - 2012-09-01 05:07 - 00214800 _____ C:\Windows\PFRO.log 2013-09-14 14:45 - 2013-09-13 13:18 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-14 13:54 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Spotify 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:42 - 2013-09-14 13:40 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:15 - 2013-09-14 13:14 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 13:12 - 2013-09-08 10:11 - 00000000 ____D C:\Games 2013-09-14 12:41 - 2013-06-29 17:37 - 00000000 ___RD C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 12:04 - 2013-09-14 11:40 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-09-13 23:19 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-09-13 22:41 - 2013-08-18 16:21 - 00000000 ____D C:\Windows\system32\MRT 2013-09-13 22:38 - 2013-07-01 18:19 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-13 21:39 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-11 23:47 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-09-11 22:17 - 2013-07-13 09:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Skype 2013-09-11 14:13 - 2013-09-10 16:56 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-11 08:59 - 2013-06-29 13:54 - 00002030 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2013-09-11 08:59 - 2012-10-19 18:44 - 00192908 _____ C:\Windows\DPINST.LOG 2013-09-11 08:59 - 2012-09-01 05:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-09-10 23:22 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 17:06 - 2013-09-10 16:48 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 17:06 - 2013-09-10 11:45 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 16:48 - 2013-09-10 12:08 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:07 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro\AppData\Local\Packages 2013-09-10 12:05 - 2013-06-29 17:32 - 00000000 ____D C:\Program Files (x86)\Canon 2013-09-10 12:05 - 2012-07-26 10:12 - 00000000 __RSD C:\Windows\Media 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-10 09:58 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Local\Spotify 2013-09-08 19:07 - 2013-09-08 19:06 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:05 - 2013-09-08 19:04 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:58 - 2013-09-08 18:56 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-08 17:42 - 2013-06-29 12:29 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-09-05 22:09 - 2013-07-03 15:43 - 00694232 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-05 22:09 - 2013-07-03 15:43 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-03 11:23 - 2013-08-28 13:15 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-09-01 10:32 - 2013-06-29 14:54 - 00000000 ____D C:\Users\Caro\AppData\Local\CrashDumps 2013-08-31 18:34 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\McAfee 2013-08-29 12:39 - 2012-09-01 05:17 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 12:46 - 2012-07-26 10:12 - 00000000 ___HD C:\Windows\ELAMBKUP 2013-08-28 10:38 - 2013-08-28 10:18 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe 2013-08-27 19:34 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-08-21 06:12 - 2013-09-13 21:29 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-21 06:12 - 2013-09-13 21:29 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-21 06:11 - 2013-09-13 21:29 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-21 04:34 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-21 04:06 - 2013-09-13 21:29 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-21 03:43 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-21 01:52 - 2013-09-13 21:29 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-19 14:13 - 2013-08-17 21:11 - 00000000 ____D C:\Users\Caro\AppData\Roaming\vlc 2013-08-18 23:00 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-18 23:00 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-18 22:59 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-18 22:59 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-18 14:14 - 2013-08-18 14:14 - 00000000 ____D C:\ProgramData\APN 2013-08-18 14:14 - 2013-08-18 14:13 - 00000000 ____D C:\ProgramData\YTD Video Downloader 2013-08-18 14:13 - 2013-08-18 14:13 - 00000000 ____D C:\Program Files (x86)\GreenTree Applications 2013-08-18 14:03 - 2013-08-18 14:01 - 12015642 _____ C:\Users\Caro\Downloads\acerCloud2_2_3_0008.apk 2013-08-18 14:02 - 2013-06-29 12:11 - 00000000 ____D C:\Users\Caro\AppData\Local\clear.fi 2013-08-17 21:09 - 2013-08-17 21:09 - 00001074 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-08-17 21:09 - 2013-08-17 21:09 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-08-17 21:08 - 2013-08-17 21:05 - 23003252 _____ C:\Users\Caro\Downloads\vlc-2.0.8_win32.exe 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\Documents\CyberLink 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\AppData\Roaming\CyberLink 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\AppData\Local\Software 2013-08-17 21:02 - 2013-06-29 13:48 - 00000000 ____D C:\Users\Caro\AppData\Local\Cyberlink 2013-08-17 21:02 - 2012-10-19 19:18 - 00000000 ____D C:\ProgramData\CyberLink Some content of TEMP: ==================== C:\Users\Caro\AppData\Local\Temp\AskSLib.dll C:\Users\Caro\AppData\Local\Temp\InstallNorton.exe C:\Users\Caro\AppData\Local\Temp\MSETUP4.EXE C:\Users\Caro\AppData\Local\Temp\SymcPCCUInstaller.exe C:\Users\Caro\AppData\Local\Temp\uninstall.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-09 11:39 ==================== End Of Log ============================ Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.09.14.04 Windows 8 x64 NTFS Internet Explorer 10.0.9200.16688 Caro :: CAROLINSPC [Administrator] Schutz: Aktiviert 14.09.2013 13:47:28 mbam-log-2013-09-14 (13-47-28).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 435490 Laufzeit: 55 Minute(n), 7 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 10 HKCR\CLSID\{11111111-1111-1111-1111-110411181156} (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\TypeLib\{44444444-4444-4444-4444-440444184456} (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\Interface\{55555555-5555-5555-5555-550455185556} (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0041856.BHO.1 (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411181156} (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0041856.BHO (PUP.Optional.CrossRider.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0041856.Sandbox (PUP.Optional.CrossRider.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCR\CrossriderApp0041856.Sandbox.1 (PUP.Optional.CrossRider.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\Software\InstalledBrowserExtensions\Lyrics (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 1 HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Daten: 0N2P2W1F0Z1S1U1H -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 13 C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-bho.dll (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-bho64.dll (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\AskPartnerNetwork\Toolbar\APNSetup.exe (PUP.Optional.ASKToolbar.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-bg.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-buttonutil.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-buttonutil64.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-chromeinstaller.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-codedownloader.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-enabler.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-updater.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Program Files (x86)\LyriXeeker-1\utils.exe (PUP.Optional.Lyrics.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Caro\AppData\Local\Temp\is1070216317\102632495_stp.EXE (Heuristics.Shuriken) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Caro\Downloads\YTD43Setup.exe (PUP.Optional.BundledToolBar.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) |
16.09.2013, 13:50 | #2 |
/// the machine /// TB-Ausbilder | Windows 8: Bedrohung durch ici.resynccdn.net hi,
__________________Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ |
16.09.2013, 18:22 | #3 |
| Windows 8: Bedrohung durch ici.resynccdn.net Danke dir Schrauber für deine Antwort.
__________________Ich hab mir den Adw Cleaner runtergeladen und auch das gemacht, was du gesagt hast, hab auch die Textdatei nach dem Neustart bekommen, das Problem ist nur jetzt, dass ich mit meinem Laptop jetzt keine Verbindung mit dem Internet mehr herstellen kann. Hängt das irgendwie damit zusammen, oder ist das noch was anderes? LG Caroson So, das Internetproblem hat sich dann jetzt auch gelöst Also hier dann die Log Dateien: Adw Code:
ATTFilter # AdwCleaner v3.004 - Bericht erstellt am 16/09/2013 um 15:05:38 # Updated 15/09/2013 von Xplode # Betriebssystem : Windows 8 (64 bits) # Benutzername : Caro - CAROLINSPC # Gestartet von : C:\Users\Caro\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gelöscht : C:\Users\Caro\AppData\Local\Temp\Uninstall.exe ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16688 -\\ Google Chrome v29.0.1547.66 [ Datei : C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1507 octets] - [16/09/2013 15:04:42] AdwCleaner[S0].txt - [1351 octets] - [16/09/2013 15:05:38] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1411 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.0.1 (09.15.2013:1) OS: Windows 8 x64 Ran by Caro on 16.09.2013 at 19:00:24,03 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\anchorfree Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220422182256} Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660466186656} Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220422182256} Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660466186656} Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660466186656} Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660466186656} ~~~ Files ~~~ Folders Failed to delete: [Folder] "C:\ProgramData\apn" Failed to delete: [Folder] "C:\ProgramData\ytd video downloader" Successfully deleted: [Folder] "C:\Users\Caro\appdata\local\software" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader" ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 16.09.2013 at 19:08:02,93 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-09-2013 01 Ran by Caro (administrator) on CAROLINSPC on 16-09-2013 19:10:47 Running from C:\Users\Caro\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe (Acer Incorporated) C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ( ) C:\Windows\system32\lxcgcoms.exe ( ) C:\Windows\system32\lxdncoms.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe (Dropbox, Inc.) C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Theft Shield\USecuAppClient.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Thisisu) C:\Users\Caro\Downloads\JRT.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Microsoft Corporation) C:\Program Files\Windows NT\Accessories\WORDPAD.EXE (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor) HKLM\...\Run: [BtPreLoad] - "C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe" Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications)) HKCU\...\Run: [Spotify Web Helper] - C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1193176 2012-10-19] () HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [LManager] - [x] HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CanonQuickMenu] - C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-21] (Acer Incorporated) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com SearchScopes: HKLM - DefaultScope {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS BHO: LyriXeeker-1 - {11111111-1111-1111-1111-110411181156} - C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-bho64.dll No File BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: Citavi Picker - {609D670F-B735-4da7-AC6D-F3BD358E325E} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://acer13.msn.com/ CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll No File CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () CHR Plugin: (McAfee SecurityCenter) - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL No File CHR Extension: (Google Docs) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (LyriXeeker-1) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgmpcnmaamenhngcinchjeifhhnlaig\1.24.10_0 CHR Extension: (AdBlock) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.7_0 CHR Extension: (ProxMate - Proxy on steroids!) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgjpnmnpjmabddgmjdiaggacbololbjm\3.0.7_0 CHR Extension: (Chrome In-App Payments service) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0 CHR Extension: (Citavi Picker) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\piehhloihgjjiomhieeddiidpekaajio\2013.5.30_0 CHR Extension: (Gmail) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR HKLM-x32\...\Chrome\Extension: [piehhloihgjjiomhieeddiidpekaajio] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Chrome\ChromePicker.crx ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2435728 2012-08-23] (Acer Incorporated) S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [28560 2012-08-30] (ELAN Microelectronics Corp.) R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation) R2 FFSOpzSvc; C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe [161384 2012-03-12] (Acer Incorporated) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] () S3 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-19] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 lxcg_device; C:\Windows\system32\lxcgcoms.exe [566704 2007-04-29] ( ) R2 lxdn_device; C:\Windows\system32\lxdncoms.exe [1039872 2007-11-28] ( ) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-08-23] (NTI Corporation) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-10-19] (Dritek System INC.) S3 USecuAppSvc; C:\Program Files\Acer\Acer Theft Shield\USecuAppSvc.exe [345744 2012-11-12] (Acer Incorporated) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-02-26] (Avira Operations GmbH & Co. KG) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation) R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation) R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-20] (Intel Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-10-19] (Dritek System Inc.) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-16 19:08 - 2013-09-16 19:08 - 00001655 _____ C:\Users\Caro\Desktop\JRT.txt 2013-09-16 19:00 - 2013-09-16 19:00 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 18:59 - 2013-09-16 19:00 - 01029675 _____ (Thisisu) C:\Users\Caro\Downloads\JRT.exe 2013-09-16 15:13 - 2013-09-16 15:13 - 00001499 _____ C:\Users\Caro\Desktop\AdwCleaner[S0].txt 2013-09-16 15:04 - 2013-09-16 15:05 - 00000000 ____D C:\AdwCleaner 2013-09-16 15:03 - 2013-09-16 15:04 - 01039554 _____ C:\Users\Caro\Downloads\adwcleaner.exe 2013-09-16 13:11 - 2013-09-16 13:11 - 00000193 _____ C:\Windows\WORDPAD.INI 2013-09-16 13:07 - 2013-09-16 13:07 - 00003277 _____ C:\Users\Caro\Desktop\GMER.log 2013-09-16 13:03 - 2013-09-16 13:03 - 00377856 _____ C:\Users\Caro\Downloads\gmer_2.1.19163.exe 2013-09-16 13:02 - 2013-09-16 13:02 - 00075189 _____ C:\Users\Caro\Desktop\FRST.txt 2013-09-16 13:02 - 2013-09-16 13:02 - 00029364 _____ C:\Users\Caro\Desktop\Addition.txt 2013-09-16 13:00 - 2013-09-16 13:01 - 00029364 _____ C:\Users\Caro\Downloads\Addition.txt 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:57 - 2013-09-16 12:57 - 01951150 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-16 12:55 - 2013-09-16 13:09 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:19 - 2013-09-14 15:21 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:24 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:18 - 2013-05-02 17:29 - 00278800 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-09-14 15:16 - 2013-09-14 15:18 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:45 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-14 13:40 - 2013-09-14 13:42 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:14 - 2013-09-14 13:15 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 11:40 - 2013-09-14 12:04 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 21:34 - 2013-08-16 07:41 - 00058200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2013-09-13 21:34 - 2013-08-16 07:39 - 02371728 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2013-09-13 21:34 - 2013-08-16 07:39 - 00059416 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-09-13 21:34 - 2013-08-16 07:32 - 00209200 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 04917760 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-09-13 21:34 - 2013-08-16 07:21 - 03275776 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01621504 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00773120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-09-13 21:34 - 2013-08-16 07:20 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00083968 _____ C:\Windows\SysWOW64\OEMLicense.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2013-09-13 21:34 - 2013-08-16 00:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-13 21:29 - 2013-08-21 06:11 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-13 21:29 - 2013-08-21 04:34 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 04:06 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-13 21:29 - 2013-08-21 03:43 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 01:52 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-09-13 21:19 - 2013-08-03 06:30 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-13 21:18 - 2013-07-09 10:04 - 00120144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2013-09-13 21:18 - 2013-07-09 08:18 - 00439488 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2013-09-13 21:18 - 2013-07-09 06:25 - 00385768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2013-09-13 21:18 - 2013-07-09 05:57 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00543744 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanadvui.dll 2013-09-13 21:18 - 2013-07-09 00:45 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2013-09-13 21:18 - 2013-07-06 02:16 - 01025024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 02839552 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 01300480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:10 - 02273792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2013-09-13 21:18 - 2013-07-02 00:08 - 00387583 _____ C:\Windows\system32\ApnDatabase.xml 2013-09-13 21:18 - 2013-07-01 00:30 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe 2013-09-13 21:18 - 2013-07-01 00:29 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe 2013-09-13 21:18 - 2013-06-29 08:15 - 00195416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-09-13 21:18 - 2013-06-29 08:15 - 00125784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-09-13 21:18 - 2013-06-29 07:43 - 00327512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2013-09-13 21:18 - 2013-06-29 03:12 - 01022464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-09-13 21:18 - 2013-06-26 05:01 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2013-09-13 21:18 - 2013-06-26 04:59 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys 2013-09-13 21:18 - 2013-06-25 00:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2013-09-13 21:18 - 2013-06-12 01:43 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2013-09-13 21:18 - 2013-06-12 01:26 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2013-09-13 21:18 - 2013-06-10 23:17 - 00096512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2013-09-13 21:18 - 2013-06-10 21:16 - 00888832 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:15 - 01156096 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-10 21:10 - 00702464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-06 10:03 - 00119040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2013-09-13 13:19 - 2013-09-16 18:51 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-13 13:19 - 2013-09-16 18:51 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-13 13:19 - 2013-09-16 18:51 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:18 - 2013-09-16 18:51 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-13 13:18 - 2013-09-14 14:45 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 16:56 - 2013-09-11 14:13 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-10 16:48 - 2013-09-10 17:06 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 12:08 - 2013-09-10 16:48 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:05 - 2012-02-08 16:34 - 00320000 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8L.dll 2013-09-10 12:05 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\SysWOW64\CNC1762D.TBL 2013-09-10 12:05 - 2012-01-16 14:21 - 00103424 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8U.dll 2013-09-10 12:05 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:49 - 2012-02-08 16:36 - 00363520 _____ (CANON INC.) C:\Windows\system32\CNC_B8L.dll 2013-09-10 11:49 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\system32\CNC1762D.TBL 2013-09-10 11:49 - 2012-01-16 14:21 - 00287744 _____ (CANON INC.) C:\Windows\system32\CNC_B8C.dll 2013-09-10 11:49 - 2012-01-16 14:20 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_B8I.dll 2013-09-10 11:49 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:48 - 2012-03-28 19:01 - 00359936 _____ (CANON INC.) C:\Windows\system32\CNMN6PPM.DLL 2013-09-10 11:48 - 2012-03-28 19:01 - 00039424 _____ (CANON INC.) C:\Windows\system32\CNMN6UI.DLL 2013-09-10 11:48 - 2012-03-28 19:00 - 00366592 _____ (CANON INC.) C:\Windows\SysWOW64\CNMNPPM.DLL 2013-09-10 11:48 - 2012-03-26 05:00 - 00389120 _____ (CANON INC.) C:\Windows\system32\CNMLMB8.DLL 2013-09-10 11:45 - 2013-09-10 17:06 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-08 19:07 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-09-08 19:07 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-09-08 19:07 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-09-08 19:06 - 2013-09-08 19:07 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:06 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-09-08 19:06 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-09-08 19:06 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-09-08 19:06 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-09-08 19:06 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-09-08 19:06 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-09-08 19:06 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-09-08 19:06 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-09-08 19:06 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-09-08 19:06 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-09-08 19:06 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-09-08 19:04 - 2013-09-08 19:05 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:56 - 2013-09-08 18:58 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-08 10:11 - 2013-09-14 13:12 - 00000000 ____D C:\Games 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:15 - 2013-09-03 11:23 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 13:08 - 2013-02-26 16:56 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-08-28 10:18 - 2013-08-28 10:38 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe 2013-08-18 16:21 - 2013-09-13 22:41 - 00000000 ____D C:\Windows\system32\MRT 2013-08-18 16:09 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-18 16:09 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-18 15:45 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-18 15:45 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-18 15:45 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-18 15:45 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-18 15:44 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-18 15:44 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-18 15:44 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-18 15:44 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-18 15:44 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-18 15:23 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-18 15:23 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-18 14:37 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-18 14:14 - 2013-08-18 14:14 - 00000000 ____D C:\ProgramData\APN 2013-08-18 14:13 - 2013-09-16 19:02 - 00000000 ____D C:\ProgramData\YTD Video Downloader 2013-08-18 14:13 - 2013-08-18 14:13 - 00000000 ____D C:\Program Files (x86)\GreenTree Applications 2013-08-18 14:01 - 2013-08-18 14:03 - 12015642 _____ C:\Users\Caro\Downloads\acerCloud2_2_3_0008.apk 2013-08-17 21:11 - 2013-08-19 14:13 - 00000000 ____D C:\Users\Caro\AppData\Roaming\vlc 2013-08-17 21:09 - 2013-08-17 21:09 - 00001074 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-08-17 21:09 - 2013-08-17 21:09 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-08-17 21:05 - 2013-08-17 21:08 - 23003252 _____ C:\Users\Caro\Downloads\vlc-2.0.8_win32.exe 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\Documents\CyberLink 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\AppData\Roaming\CyberLink ==================== One Month Modified Files and Folders ======= 2013-09-16 19:08 - 2013-09-16 19:08 - 00001655 _____ C:\Users\Caro\Desktop\JRT.txt 2013-09-16 19:07 - 2013-06-29 17:42 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4089398181-3264069202-3345016257-1001 2013-09-16 19:02 - 2013-08-18 14:13 - 00000000 ____D C:\ProgramData\YTD Video Downloader 2013-09-16 19:00 - 2013-09-16 19:00 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 19:00 - 2013-09-16 18:59 - 01029675 _____ (Thisisu) C:\Users\Caro\Downloads\JRT.exe 2013-09-16 19:00 - 2013-06-29 14:03 - 00000000 ___RD C:\Users\Caro\Dropbox 2013-09-16 19:00 - 2013-06-29 14:00 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Dropbox 2013-09-16 19:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-09-16 18:57 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-09-16 18:54 - 2012-10-20 04:19 - 00753134 _____ C:\Windows\system32\perfh007.dat 2013-09-16 18:54 - 2012-10-20 04:19 - 00155826 _____ C:\Windows\system32\perfc007.dat 2013-09-16 18:54 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-16 18:51 - 2013-09-13 13:19 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-16 18:51 - 2013-09-13 13:19 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-16 18:51 - 2013-09-13 13:19 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-16 18:51 - 2013-09-13 13:18 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-16 18:51 - 2013-06-29 12:28 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-16 18:50 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-16 18:48 - 2013-07-07 00:00 - 00000000 ____D C:\Users\Caro\Documents\Bluetooth Folder 2013-09-16 15:51 - 2013-06-29 17:36 - 01630876 _____ C:\Windows\WindowsUpdate.log 2013-09-16 15:38 - 2013-06-29 12:28 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-16 15:13 - 2013-09-16 15:13 - 00001499 _____ C:\Users\Caro\Desktop\AdwCleaner[S0].txt 2013-09-16 15:06 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-09-16 15:05 - 2013-09-16 15:04 - 00000000 ____D C:\AdwCleaner 2013-09-16 15:04 - 2013-09-16 15:03 - 01039554 _____ C:\Users\Caro\Downloads\adwcleaner.exe 2013-09-16 14:05 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Spotify 2013-09-16 13:11 - 2013-09-16 13:11 - 00000193 _____ C:\Windows\WORDPAD.INI 2013-09-16 13:09 - 2013-09-16 12:55 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 13:07 - 2013-09-16 13:07 - 00003277 _____ C:\Users\Caro\Desktop\GMER.log 2013-09-16 13:03 - 2013-09-16 13:03 - 00377856 _____ C:\Users\Caro\Downloads\gmer_2.1.19163.exe 2013-09-16 13:02 - 2013-09-16 13:02 - 00075189 _____ C:\Users\Caro\Desktop\FRST.txt 2013-09-16 13:02 - 2013-09-16 13:02 - 00029364 _____ C:\Users\Caro\Desktop\Addition.txt 2013-09-16 13:01 - 2013-09-16 13:00 - 00029364 _____ C:\Users\Caro\Downloads\Addition.txt 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:57 - 2013-09-16 12:57 - 01951150 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-16 12:54 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 16:17 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:24 - 2013-09-14 15:18 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:21 - 2013-09-14 15:19 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:16 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 15:00 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\BackupManager 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 14:46 - 2012-09-01 05:07 - 00214800 _____ C:\Windows\PFRO.log 2013-09-14 14:45 - 2013-09-13 13:18 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:42 - 2013-09-14 13:40 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:15 - 2013-09-14 13:14 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 13:12 - 2013-09-08 10:11 - 00000000 ____D C:\Games 2013-09-14 12:41 - 2013-06-29 17:37 - 00000000 ___RD C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 12:04 - 2013-09-14 11:40 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-09-13 23:19 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-09-13 22:41 - 2013-08-18 16:21 - 00000000 ____D C:\Windows\system32\MRT 2013-09-13 22:38 - 2013-07-01 18:19 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-13 21:39 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-11 22:17 - 2013-07-13 09:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Skype 2013-09-11 14:13 - 2013-09-10 16:56 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-11 08:59 - 2013-06-29 13:54 - 00002030 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2013-09-11 08:59 - 2012-10-19 18:44 - 00192908 _____ C:\Windows\DPINST.LOG 2013-09-11 08:59 - 2012-09-01 05:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-09-10 23:22 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 17:06 - 2013-09-10 16:48 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 17:06 - 2013-09-10 11:45 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 16:48 - 2013-09-10 12:08 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:07 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro\AppData\Local\Packages 2013-09-10 12:05 - 2013-06-29 17:32 - 00000000 ____D C:\Program Files (x86)\Canon 2013-09-10 12:05 - 2012-07-26 10:12 - 00000000 __RSD C:\Windows\Media 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-10 09:58 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Local\Spotify 2013-09-08 19:07 - 2013-09-08 19:06 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:05 - 2013-09-08 19:04 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:58 - 2013-09-08 18:56 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-08 17:42 - 2013-06-29 12:29 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-09-05 22:09 - 2013-07-03 15:43 - 00694232 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-05 22:09 - 2013-07-03 15:43 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-03 11:23 - 2013-08-28 13:15 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-09-01 10:32 - 2013-06-29 14:54 - 00000000 ____D C:\Users\Caro\AppData\Local\CrashDumps 2013-08-31 18:34 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\McAfee 2013-08-29 12:39 - 2012-09-01 05:17 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 12:46 - 2012-07-26 10:12 - 00000000 ___HD C:\Windows\ELAMBKUP 2013-08-28 10:38 - 2013-08-28 10:18 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe 2013-08-27 19:34 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-08-21 06:12 - 2013-09-13 21:29 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-21 06:12 - 2013-09-13 21:29 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-21 06:11 - 2013-09-13 21:29 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-21 04:34 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-21 04:06 - 2013-09-13 21:29 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-21 03:43 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-21 01:52 - 2013-09-13 21:29 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-19 14:13 - 2013-08-17 21:11 - 00000000 ____D C:\Users\Caro\AppData\Roaming\vlc 2013-08-18 23:00 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-18 23:00 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-18 22:59 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-18 22:59 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-18 14:14 - 2013-08-18 14:14 - 00000000 ____D C:\ProgramData\APN 2013-08-18 14:13 - 2013-08-18 14:13 - 00000000 ____D C:\Program Files (x86)\GreenTree Applications 2013-08-18 14:03 - 2013-08-18 14:01 - 12015642 _____ C:\Users\Caro\Downloads\acerCloud2_2_3_0008.apk 2013-08-18 14:02 - 2013-06-29 12:11 - 00000000 ____D C:\Users\Caro\AppData\Local\clear.fi 2013-08-17 21:09 - 2013-08-17 21:09 - 00001074 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-08-17 21:09 - 2013-08-17 21:09 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-08-17 21:08 - 2013-08-17 21:05 - 23003252 _____ C:\Users\Caro\Downloads\vlc-2.0.8_win32.exe 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\Documents\CyberLink 2013-08-17 21:02 - 2013-08-17 21:02 - 00000000 ____D C:\Users\Caro\AppData\Roaming\CyberLink 2013-08-17 21:02 - 2013-06-29 13:48 - 00000000 ____D C:\Users\Caro\AppData\Local\Cyberlink 2013-08-17 21:02 - 2012-10-19 19:18 - 00000000 ____D C:\ProgramData\CyberLink Some content of TEMP: ==================== C:\Users\Caro\AppData\Local\Temp\AskSLib.dll C:\Users\Caro\AppData\Local\Temp\InstallNorton.exe C:\Users\Caro\AppData\Local\Temp\MSETUP4.EXE C:\Users\Caro\AppData\Local\Temp\Quarantine.exe C:\Users\Caro\AppData\Local\Temp\SymcPCCUInstaller.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-09 11:39 ==================== End Of Log ============================ --- --- --- Lieben Gruß! Geändert von Caroson (16.09.2013 um 18:19 Uhr) |
16.09.2013, 20:19 | #4 |
/// the machine /// TB-Ausbilder | Windows 8: Bedrohung durch ici.resynccdn.netESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.09.2013, 23:08 | #5 |
| Windows 8: Bedrohung durch ici.resynccdn.net Also hier die neuen Logs ESET Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=ea41b069f900f14fb91e0e6636e8b816 # engine=15156 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-09-16 09:46:48 # local_time=2013-09-16 11:46:48 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=1799 16775165 100 96 116280 244791298 109031 0 # compatibility_mode=5893 16776574 100 94 105731 6651483 0 0 # scanned=223165 # found=0 # cleaned=0 # scan_time=7427 Code:
ATTFilter Results of screen317's Security Check version 0.99.73 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender Avira Desktop Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Adobe Reader XI Mozilla Thunderbird (17.0.8) Google Chrome 29.0.1547.57 Google Chrome 29.0.1547.66 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Avira Antivir avgnt.exe Avira Antivir avguard.exe Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-09-2013 03 Ran by Caro (administrator) on CAROLINSPC on 17-09-2013 00:02:28 Running from C:\Users\Caro\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe (Acer Incorporated) C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ( ) C:\Windows\system32\lxcgcoms.exe ( ) C:\Windows\system32\lxdncoms.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe (Dropbox, Inc.) C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Theft Shield\USecuAppClient.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows NT\Accessories\WORDPAD.EXE (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Microsoft Corporation) C:\Windows\splwow64.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor) HKLM\...\Run: [BtPreLoad] - "C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe" Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications)) HKCU\...\Run: [Spotify Web Helper] - C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1193176 2012-10-19] () HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [LManager] - [x] HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CanonQuickMenu] - C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-21] (Acer Incorporated) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com SearchScopes: HKLM - DefaultScope {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS BHO: LyriXeeker-1 - {11111111-1111-1111-1111-110411181156} - C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-bho64.dll No File BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: Citavi Picker - {609D670F-B735-4da7-AC6D-F3BD358E325E} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Toolbar: HKCU - No Name - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Chrome: ======= CHR HomePage: hxxp://acer13.msn.com/ CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll No File CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () CHR Plugin: (McAfee SecurityCenter) - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL No File CHR Extension: (Google Docs) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (LyriXeeker-1) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgmpcnmaamenhngcinchjeifhhnlaig\1.24.10_0 CHR Extension: (AdBlock) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.7_0 CHR Extension: (ProxMate - Proxy on steroids!) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgjpnmnpjmabddgmjdiaggacbololbjm\3.0.7_0 CHR Extension: (Chrome In-App Payments service) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0 CHR Extension: (Citavi Picker) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\piehhloihgjjiomhieeddiidpekaajio\2013.5.30_0 CHR Extension: (Gmail) - C:\Users\Caro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR HKLM-x32\...\Chrome\Extension: [piehhloihgjjiomhieeddiidpekaajio] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Chrome\ChromePicker.crx ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2435728 2012-08-23] (Acer Incorporated) S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [28560 2012-08-30] (ELAN Microelectronics Corp.) R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation) R2 FFSOpzSvc; C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe [161384 2012-03-12] (Acer Incorporated) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] () S3 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-19] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 lxcg_device; C:\Windows\system32\lxcgcoms.exe [566704 2007-04-29] ( ) R2 lxdn_device; C:\Windows\system32\lxdncoms.exe [1039872 2007-11-28] ( ) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-08-23] (NTI Corporation) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-10-19] (Dritek System INC.) S3 USecuAppSvc; C:\Program Files\Acer\Acer Theft Shield\USecuAppSvc.exe [345744 2012-11-12] (Acer Incorporated) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-02-26] (Avira Operations GmbH & Co. KG) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation) R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation) R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-20] (Intel Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-10-19] (Dritek System Inc.) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-17 00:01 - 2013-09-17 00:01 - 01950524 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-17 00:01 - 2013-09-17 00:01 - 00000000 ___SH C:\DkHyperbootSync 2013-09-17 00:00 - 2013-09-17 00:00 - 00000050 _____ C:\Users\Caro\AppData\Local\Citavi Picker Internet Explorer Protocol.txt 2013-09-16 23:59 - 2013-09-16 23:59 - 00000925 _____ C:\Users\Caro\Desktop\checkup.txt 2013-09-16 23:58 - 2013-09-16 23:58 - 00891144 _____ C:\Users\Caro\Downloads\SecurityCheck.exe 2013-09-16 21:31 - 2013-09-16 21:32 - 02347384 _____ (ESET) C:\Users\Caro\Downloads\esetsmartinstaller_enu.exe 2013-09-16 19:12 - 2013-09-16 19:12 - 00076935 _____ C:\Users\Caro\Desktop\FRST1.txt 2013-09-16 19:08 - 2013-09-16 19:08 - 00001655 _____ C:\Users\Caro\Desktop\JRT.txt 2013-09-16 19:00 - 2013-09-16 19:00 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 18:59 - 2013-09-16 19:00 - 01029675 _____ (Thisisu) C:\Users\Caro\Downloads\JRT.exe 2013-09-16 15:13 - 2013-09-16 15:13 - 00001499 _____ C:\Users\Caro\Desktop\AdwCleaner[S0].txt 2013-09-16 15:04 - 2013-09-16 15:05 - 00000000 ____D C:\AdwCleaner 2013-09-16 15:03 - 2013-09-16 15:04 - 01039554 _____ C:\Users\Caro\Downloads\adwcleaner.exe 2013-09-16 13:11 - 2013-09-16 13:11 - 00000193 _____ C:\Windows\WORDPAD.INI 2013-09-16 13:07 - 2013-09-16 13:07 - 00003277 _____ C:\Users\Caro\Desktop\GMER.log 2013-09-16 13:03 - 2013-09-16 13:03 - 00377856 _____ C:\Users\Caro\Downloads\gmer_2.1.19163.exe 2013-09-16 13:02 - 2013-09-16 13:02 - 00075189 _____ C:\Users\Caro\Desktop\FRST.txt 2013-09-16 13:02 - 2013-09-16 13:02 - 00029364 _____ C:\Users\Caro\Desktop\Addition.txt 2013-09-16 13:00 - 2013-09-16 13:01 - 00029364 _____ C:\Users\Caro\Downloads\Addition.txt 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:55 - 2013-09-16 13:09 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:19 - 2013-09-14 15:21 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:24 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:18 - 2013-05-02 17:29 - 00278800 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-09-14 15:16 - 2013-09-14 15:18 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:45 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-14 13:40 - 2013-09-14 13:42 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:14 - 2013-09-14 13:15 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 11:40 - 2013-09-14 12:04 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 21:34 - 2013-08-16 07:41 - 00058200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2013-09-13 21:34 - 2013-08-16 07:39 - 02371728 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2013-09-13 21:34 - 2013-08-16 07:39 - 00059416 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-09-13 21:34 - 2013-08-16 07:32 - 00209200 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 04917760 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-09-13 21:34 - 2013-08-16 07:21 - 03275776 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01621504 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00773120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-09-13 21:34 - 2013-08-16 07:20 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00083968 _____ C:\Windows\SysWOW64\OEMLicense.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2013-09-13 21:34 - 2013-08-16 00:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-13 21:29 - 2013-08-21 06:11 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-13 21:29 - 2013-08-21 04:34 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 04:06 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-13 21:29 - 2013-08-21 03:43 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 01:52 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-09-13 21:19 - 2013-08-03 06:30 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-13 21:18 - 2013-07-09 10:04 - 00120144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2013-09-13 21:18 - 2013-07-09 08:18 - 00439488 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2013-09-13 21:18 - 2013-07-09 06:25 - 00385768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2013-09-13 21:18 - 2013-07-09 05:57 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00543744 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanadvui.dll 2013-09-13 21:18 - 2013-07-09 00:45 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2013-09-13 21:18 - 2013-07-06 02:16 - 01025024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 02839552 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 01300480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:10 - 02273792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2013-09-13 21:18 - 2013-07-02 00:08 - 00387583 _____ C:\Windows\system32\ApnDatabase.xml 2013-09-13 21:18 - 2013-07-01 00:30 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe 2013-09-13 21:18 - 2013-07-01 00:29 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe 2013-09-13 21:18 - 2013-06-29 08:15 - 00195416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-09-13 21:18 - 2013-06-29 08:15 - 00125784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-09-13 21:18 - 2013-06-29 07:43 - 00327512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2013-09-13 21:18 - 2013-06-29 03:12 - 01022464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-09-13 21:18 - 2013-06-26 05:01 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2013-09-13 21:18 - 2013-06-26 04:59 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys 2013-09-13 21:18 - 2013-06-25 00:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2013-09-13 21:18 - 2013-06-12 01:43 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2013-09-13 21:18 - 2013-06-12 01:26 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2013-09-13 21:18 - 2013-06-10 23:17 - 00096512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2013-09-13 21:18 - 2013-06-10 21:16 - 00888832 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:15 - 01156096 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-10 21:10 - 00702464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-06 10:03 - 00119040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2013-09-13 13:19 - 2013-09-16 19:19 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-13 13:19 - 2013-09-16 19:19 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-13 13:19 - 2013-09-16 19:19 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:18 - 2013-09-16 19:18 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-13 13:18 - 2013-09-14 14:45 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 16:56 - 2013-09-11 14:13 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-10 16:48 - 2013-09-10 17:06 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 12:08 - 2013-09-10 16:48 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:05 - 2012-02-08 16:34 - 00320000 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8L.dll 2013-09-10 12:05 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\SysWOW64\CNC1762D.TBL 2013-09-10 12:05 - 2012-01-16 14:21 - 00103424 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8U.dll 2013-09-10 12:05 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:49 - 2012-02-08 16:36 - 00363520 _____ (CANON INC.) C:\Windows\system32\CNC_B8L.dll 2013-09-10 11:49 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\system32\CNC1762D.TBL 2013-09-10 11:49 - 2012-01-16 14:21 - 00287744 _____ (CANON INC.) C:\Windows\system32\CNC_B8C.dll 2013-09-10 11:49 - 2012-01-16 14:20 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_B8I.dll 2013-09-10 11:49 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:48 - 2012-03-28 19:01 - 00359936 _____ (CANON INC.) C:\Windows\system32\CNMN6PPM.DLL 2013-09-10 11:48 - 2012-03-28 19:01 - 00039424 _____ (CANON INC.) C:\Windows\system32\CNMN6UI.DLL 2013-09-10 11:48 - 2012-03-28 19:00 - 00366592 _____ (CANON INC.) C:\Windows\SysWOW64\CNMNPPM.DLL 2013-09-10 11:48 - 2012-03-26 05:00 - 00389120 _____ (CANON INC.) C:\Windows\system32\CNMLMB8.DLL 2013-09-10 11:45 - 2013-09-10 17:06 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-08 19:07 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-09-08 19:07 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-09-08 19:07 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-09-08 19:06 - 2013-09-08 19:07 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:06 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-09-08 19:06 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-09-08 19:06 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-09-08 19:06 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-09-08 19:06 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-09-08 19:06 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-09-08 19:06 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-09-08 19:06 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-09-08 19:06 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-09-08 19:06 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-09-08 19:06 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-09-08 19:04 - 2013-09-08 19:05 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:56 - 2013-09-08 18:58 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-08 10:11 - 2013-09-14 13:12 - 00000000 ____D C:\Games 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:15 - 2013-09-03 11:23 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 13:08 - 2013-02-26 16:56 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-08-28 10:18 - 2013-08-28 10:38 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe 2013-08-18 16:21 - 2013-09-13 22:41 - 00000000 ____D C:\Windows\system32\MRT 2013-08-18 16:09 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-08-18 16:09 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-08-18 15:45 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-18 15:45 - 2013-07-13 08:16 - 01889280 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-18 15:45 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-18 15:45 - 2013-07-13 06:23 - 01568256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-18 15:44 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-18 15:44 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2013-08-18 15:44 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2013-08-18 15:44 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2013-08-18 15:44 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2013-08-18 15:23 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-18 15:23 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-18 14:37 - 2013-07-09 08:07 - 02233168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-18 14:14 - 2013-08-18 14:14 - 00000000 ____D C:\ProgramData\APN 2013-08-18 14:13 - 2013-09-16 19:02 - 00000000 ____D C:\ProgramData\YTD Video Downloader 2013-08-18 14:13 - 2013-08-18 14:13 - 00000000 ____D C:\Program Files (x86)\GreenTree Applications 2013-08-18 14:01 - 2013-08-18 14:03 - 12015642 _____ C:\Users\Caro\Downloads\acerCloud2_2_3_0008.apk ==================== One Month Modified Files and Folders ======= 2013-09-17 00:02 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-09-17 00:01 - 2013-09-17 00:01 - 01950524 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-17 00:01 - 2013-09-17 00:01 - 00000000 ___SH C:\DkHyperbootSync 2013-09-17 00:00 - 2013-09-17 00:00 - 00000050 _____ C:\Users\Caro\AppData\Local\Citavi Picker Internet Explorer Protocol.txt 2013-09-16 23:59 - 2013-09-16 23:59 - 00000925 _____ C:\Users\Caro\Desktop\checkup.txt 2013-09-16 23:58 - 2013-09-16 23:58 - 00891144 _____ C:\Users\Caro\Downloads\SecurityCheck.exe 2013-09-16 23:38 - 2013-06-29 12:28 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-16 22:41 - 2013-06-29 17:36 - 01649762 _____ C:\Windows\WindowsUpdate.log 2013-09-16 21:35 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Spotify 2013-09-16 21:32 - 2013-09-16 21:31 - 02347384 _____ (ESET) C:\Users\Caro\Downloads\esetsmartinstaller_enu.exe 2013-09-16 21:23 - 2013-07-13 09:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Skype 2013-09-16 21:13 - 2013-07-07 00:00 - 00000000 ____D C:\Users\Caro\Documents\Bluetooth Folder 2013-09-16 19:41 - 2013-06-29 17:42 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4089398181-3264069202-3345016257-1001 2013-09-16 19:19 - 2013-09-13 13:19 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-16 19:19 - 2013-09-13 13:19 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-16 19:19 - 2013-09-13 13:19 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-16 19:18 - 2013-09-13 13:18 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-16 19:12 - 2013-09-16 19:12 - 00076935 _____ C:\Users\Caro\Desktop\FRST1.txt 2013-09-16 19:08 - 2013-09-16 19:08 - 00001655 _____ C:\Users\Caro\Desktop\JRT.txt 2013-09-16 19:02 - 2013-08-18 14:13 - 00000000 ____D C:\ProgramData\YTD Video Downloader 2013-09-16 19:00 - 2013-09-16 19:00 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 19:00 - 2013-09-16 18:59 - 01029675 _____ (Thisisu) C:\Users\Caro\Downloads\JRT.exe 2013-09-16 19:00 - 2013-06-29 14:03 - 00000000 ___RD C:\Users\Caro\Dropbox 2013-09-16 19:00 - 2013-06-29 14:00 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Dropbox 2013-09-16 18:57 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-09-16 18:54 - 2012-10-20 04:19 - 00753134 _____ C:\Windows\system32\perfh007.dat 2013-09-16 18:54 - 2012-10-20 04:19 - 00155826 _____ C:\Windows\system32\perfc007.dat 2013-09-16 18:54 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-16 18:51 - 2013-06-29 12:28 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-16 18:50 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-16 15:13 - 2013-09-16 15:13 - 00001499 _____ C:\Users\Caro\Desktop\AdwCleaner[S0].txt 2013-09-16 15:06 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-09-16 15:05 - 2013-09-16 15:04 - 00000000 ____D C:\AdwCleaner 2013-09-16 15:04 - 2013-09-16 15:03 - 01039554 _____ C:\Users\Caro\Downloads\adwcleaner.exe 2013-09-16 13:11 - 2013-09-16 13:11 - 00000193 _____ C:\Windows\WORDPAD.INI 2013-09-16 13:09 - 2013-09-16 12:55 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 13:07 - 2013-09-16 13:07 - 00003277 _____ C:\Users\Caro\Desktop\GMER.log 2013-09-16 13:03 - 2013-09-16 13:03 - 00377856 _____ C:\Users\Caro\Downloads\gmer_2.1.19163.exe 2013-09-16 13:02 - 2013-09-16 13:02 - 00075189 _____ C:\Users\Caro\Desktop\FRST.txt 2013-09-16 13:02 - 2013-09-16 13:02 - 00029364 _____ C:\Users\Caro\Desktop\Addition.txt 2013-09-16 13:01 - 2013-09-16 13:00 - 00029364 _____ C:\Users\Caro\Downloads\Addition.txt 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-16 12:54 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 16:17 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:24 - 2013-09-14 15:18 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:21 - 2013-09-14 15:19 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:16 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 15:00 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\BackupManager 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 14:46 - 2012-09-01 05:07 - 00214800 _____ C:\Windows\PFRO.log 2013-09-14 14:45 - 2013-09-13 13:18 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:42 - 2013-09-14 13:40 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:15 - 2013-09-14 13:14 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 13:12 - 2013-09-08 10:11 - 00000000 ____D C:\Games 2013-09-14 12:41 - 2013-06-29 17:37 - 00000000 ___RD C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 12:04 - 2013-09-14 11:40 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-09-13 23:19 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-09-13 22:41 - 2013-08-18 16:21 - 00000000 ____D C:\Windows\system32\MRT 2013-09-13 22:38 - 2013-07-01 18:19 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-13 21:39 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-11 14:13 - 2013-09-10 16:56 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-11 08:59 - 2013-06-29 13:54 - 00002030 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2013-09-11 08:59 - 2012-10-19 18:44 - 00192908 _____ C:\Windows\DPINST.LOG 2013-09-11 08:59 - 2012-09-01 05:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-09-10 23:22 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 17:06 - 2013-09-10 16:48 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 17:06 - 2013-09-10 11:45 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 16:48 - 2013-09-10 12:08 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:07 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro\AppData\Local\Packages 2013-09-10 12:05 - 2013-06-29 17:32 - 00000000 ____D C:\Program Files (x86)\Canon 2013-09-10 12:05 - 2012-07-26 10:12 - 00000000 __RSD C:\Windows\Media 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-10 09:58 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Local\Spotify 2013-09-08 19:07 - 2013-09-08 19:06 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:05 - 2013-09-08 19:04 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:58 - 2013-09-08 18:56 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-08 17:42 - 2013-06-29 12:29 - 00002187 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-09-05 22:09 - 2013-07-03 15:43 - 00694232 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-05 22:09 - 2013-07-03 15:43 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-03 11:23 - 2013-08-28 13:15 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-09-01 10:32 - 2013-06-29 14:54 - 00000000 ____D C:\Users\Caro\AppData\Local\CrashDumps 2013-08-31 18:34 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\McAfee 2013-08-29 12:39 - 2012-09-01 05:17 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 12:46 - 2012-07-26 10:12 - 00000000 ___HD C:\Windows\ELAMBKUP 2013-08-28 10:38 - 2013-08-28 10:18 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe 2013-08-27 19:34 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-08-21 06:12 - 2013-09-13 21:29 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-21 06:12 - 2013-09-13 21:29 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-21 06:11 - 2013-09-13 21:29 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-21 04:34 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-21 04:06 - 2013-09-13 21:29 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-21 03:43 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-21 01:52 - 2013-09-13 21:29 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-19 14:13 - 2013-08-17 21:11 - 00000000 ____D C:\Users\Caro\AppData\Roaming\vlc 2013-08-18 23:00 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-18 23:00 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-08-18 22:59 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-18 22:59 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-18 14:14 - 2013-08-18 14:14 - 00000000 ____D C:\ProgramData\APN 2013-08-18 14:13 - 2013-08-18 14:13 - 00000000 ____D C:\Program Files (x86)\GreenTree Applications 2013-08-18 14:03 - 2013-08-18 14:01 - 12015642 _____ C:\Users\Caro\Downloads\acerCloud2_2_3_0008.apk 2013-08-18 14:02 - 2013-06-29 12:11 - 00000000 ____D C:\Users\Caro\AppData\Local\clear.fi Some content of TEMP: ==================== C:\Users\Caro\AppData\Local\Temp\AskSLib.dll C:\Users\Caro\AppData\Local\Temp\InstallNorton.exe C:\Users\Caro\AppData\Local\Temp\MSETUP4.EXE C:\Users\Caro\AppData\Local\Temp\Quarantine.exe C:\Users\Caro\AppData\Local\Temp\SymcPCCUInstaller.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-09 11:39 ==================== End Of Log ============================ Kannst du mir sagen, ob das alles schon irgendwie was gerbacht hat? Denn die Werbung und dieses Browser Fenster bekomme ich immer noch Aber ich danke dir auf alle Fälle, dass du mir so schnell geholfen hast und auch noch weiterhin Liebe Grüße, Caroson |
17.09.2013, 13:06 | #6 |
/// the machine /// TB-Ausbilder | Windows 8: Bedrohung durch ici.resynccdn.net in welchem Browser?
__________________ --> Windows 8: Bedrohung durch ici.resynccdn.net |
17.09.2013, 13:16 | #7 |
| Windows 8: Bedrohung durch ici.resynccdn.net In Google Chrome öffnet sich das immer wieder.... |
17.09.2013, 15:49 | #8 |
/// the machine /// TB-Ausbilder | Windows 8: Bedrohung durch ici.resynccdn.net Chrome deinstallieren, keine Daten behalten, neu installieren. Wenn Du mit einem Google konto verknüpfst mach das, dann in den Einstellungen von Chrome dort auch nochmal alles rauslöschen. Dann frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.09.2013, 02:46 | #9 |
| Windows 8: Bedrohung durch ici.resynccdn.net Hier die neue Log FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-09-2013 03 Ran by Caro (administrator) on CAROLINSPC on 18-09-2013 03:40:32 Running from C:\Users\Caro\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe (Acer Incorporated) C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ( ) C:\Windows\system32\lxcgcoms.exe ( ) C:\Windows\system32\lxdncoms.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Dropbox, Inc.) C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe () C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Theft Shield\USecuAppClient.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Microsoft Corporation) C:\Windows\system32\msiexec.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwsc.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor) HKLM\...\Run: [BtPreLoad] - "C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe" Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications)) HKCU\...\Run: [Spotify Web Helper] - C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1193176 2012-10-19] () HKCU\...\Run: [Sony PC Companion] - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [LManager] - [x] HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CanonQuickMenu] - C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-08-21] (Acer Incorporated) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Caro\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com SearchScopes: HKLM - DefaultScope {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {1BC89615-0326-4FE2-854A-24D871073D03} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - DefaultScope {1BC89615-0326-4FE2-854A-24D871073D03} URL = SearchScopes: HKCU - {1BC89615-0326-4FE2-854A-24D871073D03} URL = BHO: LyriXeeker-1 - {11111111-1111-1111-1111-110411181156} - C:\Program Files (x86)\LyriXeeker-1\LyriXeeker-1-bho64.dll No File BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: Citavi Picker - {609D670F-B735-4da7-AC6D-F3BD358E325E} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Toolbar: HKCU - No Name - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-03] (Avira Operations GmbH & Co. KG) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2435728 2012-08-23] (Acer Incorporated) S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [28560 2012-08-30] (ELAN Microelectronics Corp.) R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation) R2 FFSOpzSvc; C:\Program Files\Acer\Acer Instant Service\Sleep Memory Optimizer\FFSService.exe [161384 2012-03-12] (Acer Incorporated) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] () S3 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-19] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 lxcg_device; C:\Windows\system32\lxcgcoms.exe [566704 2007-04-29] ( ) R2 lxdn_device; C:\Windows\system32\lxdncoms.exe [1039872 2007-11-28] ( ) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-08-23] (NTI Corporation) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-10-19] (Dritek System INC.) S3 USecuAppSvc; C:\Program Files\Acer\Acer Theft Shield\USecuAppSvc.exe [345744 2012-11-12] (Acer Incorporated) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132088 2013-09-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-02-26] (Avira Operations GmbH & Co. KG) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation) R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation) R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-20] (Intel Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-10-19] (Dritek System Inc.) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-17 17:09 - 2013-09-17 17:09 - 97949955 _____ C:\Windows\SysWOW64\᯾瞾ᰈĹ߿ 2013-09-17 00:01 - 2013-09-17 00:01 - 01950524 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-17 00:00 - 2013-09-18 03:39 - 00000210 _____ C:\Users\Caro\AppData\Local\Citavi Picker Internet Explorer Protocol.txt 2013-09-16 23:59 - 2013-09-16 23:59 - 00000925 _____ C:\Users\Caro\Desktop\checkup.txt 2013-09-16 23:58 - 2013-09-16 23:58 - 00891144 _____ C:\Users\Caro\Downloads\SecurityCheck.exe 2013-09-16 21:31 - 2013-09-16 21:32 - 02347384 _____ (ESET) C:\Users\Caro\Downloads\esetsmartinstaller_enu.exe 2013-09-16 19:12 - 2013-09-16 19:12 - 00076935 _____ C:\Users\Caro\Desktop\FRST1.txt 2013-09-16 19:08 - 2013-09-16 19:08 - 00001655 _____ C:\Users\Caro\Desktop\JRT.txt 2013-09-16 19:00 - 2013-09-16 19:00 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 18:59 - 2013-09-16 19:00 - 01029675 _____ (Thisisu) C:\Users\Caro\Downloads\JRT.exe 2013-09-16 15:13 - 2013-09-16 15:13 - 00001499 _____ C:\Users\Caro\Desktop\AdwCleaner[S0].txt 2013-09-16 15:04 - 2013-09-16 15:05 - 00000000 ____D C:\AdwCleaner 2013-09-16 15:03 - 2013-09-16 15:04 - 01039554 _____ C:\Users\Caro\Downloads\adwcleaner.exe 2013-09-16 13:11 - 2013-09-16 13:11 - 00000193 _____ C:\Windows\WORDPAD.INI 2013-09-16 13:07 - 2013-09-16 13:07 - 00003277 _____ C:\Users\Caro\Desktop\GMER.log 2013-09-16 13:03 - 2013-09-16 13:03 - 00377856 _____ C:\Users\Caro\Downloads\gmer_2.1.19163.exe 2013-09-16 13:02 - 2013-09-16 13:02 - 00075189 _____ C:\Users\Caro\Desktop\FRST.txt 2013-09-16 13:02 - 2013-09-16 13:02 - 00029364 _____ C:\Users\Caro\Desktop\Addition.txt 2013-09-16 13:00 - 2013-09-16 13:01 - 00029364 _____ C:\Users\Caro\Downloads\Addition.txt 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:55 - 2013-09-16 13:09 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:19 - 2013-09-14 15:21 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:24 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:18 - 2013-05-02 17:29 - 00278800 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-09-14 15:16 - 2013-09-14 15:18 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:45 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-09-14 13:40 - 2013-09-14 13:42 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:14 - 2013-09-14 13:15 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 11:40 - 2013-09-14 12:04 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 21:34 - 2013-08-16 07:41 - 00058200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2013-09-13 21:34 - 2013-08-16 07:39 - 02371728 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2013-09-13 21:34 - 2013-08-16 07:39 - 00059416 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-09-13 21:34 - 2013-08-16 07:32 - 00209200 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 04917760 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2013-09-13 21:34 - 2013-08-16 07:22 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-09-13 21:34 - 2013-08-16 07:21 - 03275776 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01621504 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00773120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-09-13 21:34 - 2013-08-16 07:21 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-09-13 21:34 - 2013-08-16 07:20 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00083968 _____ C:\Windows\SysWOW64\OEMLicense.dll 2013-09-13 21:34 - 2013-08-16 00:43 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2013-09-13 21:34 - 2013-08-16 00:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll 2013-09-13 21:34 - 2013-08-16 00:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-09-13 21:29 - 2013-08-21 06:12 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-09-13 21:29 - 2013-08-21 06:11 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 06:11 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-09-13 21:29 - 2013-08-21 04:34 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 04:06 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-09-13 21:29 - 2013-08-21 04:06 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-09-13 21:29 - 2013-08-21 04:05 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-09-13 21:29 - 2013-08-21 03:43 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-09-13 21:29 - 2013-08-21 01:52 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-09-13 21:19 - 2013-08-03 06:30 - 04038144 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-09-13 21:18 - 2013-07-09 10:04 - 00120144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2013-09-13 21:18 - 2013-07-09 08:18 - 00439488 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2013-09-13 21:18 - 2013-07-09 06:25 - 00385768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2013-09-13 21:18 - 2013-07-09 05:57 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00543744 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2013-09-13 21:18 - 2013-07-09 00:46 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanadvui.dll 2013-09-13 21:18 - 2013-07-09 00:45 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2013-09-13 21:18 - 2013-07-06 02:16 - 01025024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 02839552 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2013-09-13 21:18 - 2013-07-03 02:22 - 01300480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2013-09-13 21:18 - 2013-07-03 02:11 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2013-09-13 21:18 - 2013-07-03 02:10 - 02273792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2013-09-13 21:18 - 2013-07-02 00:08 - 00387583 _____ C:\Windows\system32\ApnDatabase.xml 2013-09-13 21:18 - 2013-07-01 00:30 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe 2013-09-13 21:18 - 2013-07-01 00:29 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe 2013-09-13 21:18 - 2013-06-29 08:15 - 00195416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-09-13 21:18 - 2013-06-29 08:15 - 00125784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-09-13 21:18 - 2013-06-29 07:43 - 00327512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2013-09-13 21:18 - 2013-06-29 03:12 - 01022464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-09-13 21:18 - 2013-06-26 05:01 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2013-09-13 21:18 - 2013-06-26 04:59 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys 2013-09-13 21:18 - 2013-06-25 00:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2013-09-13 21:18 - 2013-06-25 00:54 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 07:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2013-09-13 21:18 - 2013-06-19 00:38 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2013-09-13 21:18 - 2013-06-12 01:43 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2013-09-13 21:18 - 2013-06-12 01:26 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2013-09-13 21:18 - 2013-06-10 23:17 - 00096512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2013-09-13 21:18 - 2013-06-10 21:16 - 00888832 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:15 - 01156096 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2013-09-13 21:18 - 2013-06-10 21:15 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-10 21:10 - 00702464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-09-13 21:18 - 2013-06-10 21:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-09-13 21:18 - 2013-06-06 10:03 - 00119040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2013-09-13 13:19 - 2013-09-17 13:19 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-13 13:19 - 2013-09-17 13:19 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-13 13:19 - 2013-09-17 13:19 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:18 - 2013-09-17 13:18 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-13 13:18 - 2013-09-14 14:45 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 16:56 - 2013-09-11 14:13 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-10 16:48 - 2013-09-10 17:06 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 12:08 - 2013-09-10 16:48 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:05 - 2012-02-08 16:34 - 00320000 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8L.dll 2013-09-10 12:05 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\SysWOW64\CNC1762D.TBL 2013-09-10 12:05 - 2012-01-16 14:21 - 00103424 _____ (CANON INC.) C:\Windows\SysWOW64\CNC_B8U.dll 2013-09-10 12:05 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:49 - 2012-02-08 16:36 - 00363520 _____ (CANON INC.) C:\Windows\system32\CNC_B8L.dll 2013-09-10 11:49 - 2012-01-24 16:18 - 00077568 _____ C:\Windows\system32\CNC1762D.TBL 2013-09-10 11:49 - 2012-01-16 14:21 - 00287744 _____ (CANON INC.) C:\Windows\system32\CNC_B8C.dll 2013-09-10 11:49 - 2012-01-16 14:20 - 00106496 _____ (CANON INC.) C:\Windows\system32\CNC_B8I.dll 2013-09-10 11:49 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:48 - 2012-03-28 19:01 - 00359936 _____ (CANON INC.) C:\Windows\system32\CNMN6PPM.DLL 2013-09-10 11:48 - 2012-03-28 19:01 - 00039424 _____ (CANON INC.) C:\Windows\system32\CNMN6UI.DLL 2013-09-10 11:48 - 2012-03-28 19:00 - 00366592 _____ (CANON INC.) C:\Windows\SysWOW64\CNMNPPM.DLL 2013-09-10 11:48 - 2012-03-26 05:00 - 00389120 _____ (CANON INC.) C:\Windows\system32\CNMLMB8.DLL 2013-09-10 11:45 - 2013-09-10 17:06 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-08 19:07 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2013-09-08 19:07 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2013-09-08 19:07 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-09-08 19:07 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-09-08 19:07 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-09-08 19:07 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-09-08 19:07 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-09-08 19:07 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-09-08 19:07 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-09-08 19:07 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-09-08 19:07 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-09-08 19:07 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-09-08 19:07 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-09-08 19:07 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-09-08 19:06 - 2013-09-08 19:07 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:06 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-09-08 19:06 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-09-08 19:06 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-09-08 19:06 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-09-08 19:06 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-09-08 19:06 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-09-08 19:06 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-09-08 19:06 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-09-08 19:06 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-09-08 19:06 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-09-08 19:06 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-09-08 19:06 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-09-08 19:06 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-09-08 19:06 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-09-08 19:06 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-09-08 19:06 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-09-08 19:06 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-09-08 19:06 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-09-08 19:06 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-09-08 19:06 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-09-08 19:06 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-09-08 19:06 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-09-08 19:06 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-09-08 19:06 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-09-08 19:06 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-09-08 19:06 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-09-08 19:06 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-09-08 19:04 - 2013-09-08 19:05 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:56 - 2013-09-08 18:58 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-08 10:11 - 2013-09-14 13:12 - 00000000 ____D C:\Games 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:15 - 2013-09-03 11:23 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-08-28 13:08 - 2013-09-03 11:23 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 13:08 - 2013-02-26 16:56 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-08-28 10:18 - 2013-08-28 10:38 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe ==================== One Month Modified Files and Folders ======= 2013-09-18 03:39 - 2013-09-17 00:00 - 00000210 _____ C:\Users\Caro\AppData\Local\Citavi Picker Internet Explorer Protocol.txt 2013-09-18 03:37 - 2013-06-29 12:28 - 00000000 ____D C:\Users\Caro\AppData\Local\Google 2013-09-18 03:37 - 2013-06-29 12:28 - 00000000 ____D C:\Program Files (x86)\Google 2013-09-18 03:02 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-09-17 19:59 - 2013-07-07 00:00 - 00000000 ____D C:\Users\Caro\Documents\Bluetooth Folder 2013-09-17 17:09 - 2013-09-17 17:09 - 97949955 _____ C:\Windows\SysWOW64\᯾瞾ᰈĹ߿ 2013-09-17 13:19 - 2013-09-13 13:19 - 00001316 _____ C:\Windows\Tasks\LyriXeeker-1-updater.job 2013-09-17 13:19 - 2013-09-13 13:19 - 00001220 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-09-17 13:19 - 2013-09-13 13:19 - 00001120 _____ C:\Windows\Tasks\LyriXeeker-1-enabler.job 2013-09-17 13:18 - 2013-09-13 13:18 - 00001930 _____ C:\Windows\Tasks\LyriXeeker-1-chromeinstaller.job 2013-09-17 11:52 - 2013-06-29 17:42 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4089398181-3264069202-3345016257-1001 2013-09-17 11:02 - 2012-10-20 04:19 - 00753134 _____ C:\Windows\system32\perfh007.dat 2013-09-17 11:02 - 2012-10-20 04:19 - 00155826 _____ C:\Windows\system32\perfc007.dat 2013-09-17 11:02 - 2012-07-26 09:28 - 01745416 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-17 10:58 - 2013-06-29 14:03 - 00000000 ___RD C:\Users\Caro\Dropbox 2013-09-17 10:58 - 2013-06-29 14:00 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Dropbox 2013-09-17 10:56 - 2012-09-01 05:07 - 00215634 _____ C:\Windows\PFRO.log 2013-09-17 10:56 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-17 00:18 - 2013-06-29 17:36 - 01654465 _____ C:\Windows\WindowsUpdate.log 2013-09-17 00:01 - 2013-09-17 00:01 - 01950524 _____ (Farbar) C:\Users\Caro\Downloads\FRST64.exe 2013-09-16 23:59 - 2013-09-16 23:59 - 00000925 _____ C:\Users\Caro\Desktop\checkup.txt 2013-09-16 23:58 - 2013-09-16 23:58 - 00891144 _____ C:\Users\Caro\Downloads\SecurityCheck.exe 2013-09-16 21:35 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Spotify 2013-09-16 21:32 - 2013-09-16 21:31 - 02347384 _____ (ESET) C:\Users\Caro\Downloads\esetsmartinstaller_enu.exe 2013-09-16 21:23 - 2013-07-13 09:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Skype 2013-09-16 19:12 - 2013-09-16 19:12 - 00076935 _____ C:\Users\Caro\Desktop\FRST1.txt 2013-09-16 19:08 - 2013-09-16 19:08 - 00001655 _____ C:\Users\Caro\Desktop\JRT.txt 2013-09-16 19:02 - 2013-08-18 14:13 - 00000000 ____D C:\ProgramData\YTD Video Downloader 2013-09-16 19:00 - 2013-09-16 19:00 - 00000000 ____D C:\Windows\ERUNT 2013-09-16 19:00 - 2013-09-16 18:59 - 01029675 _____ (Thisisu) C:\Users\Caro\Downloads\JRT.exe 2013-09-16 18:57 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\NDF 2013-09-16 15:13 - 2013-09-16 15:13 - 00001499 _____ C:\Users\Caro\Desktop\AdwCleaner[S0].txt 2013-09-16 15:06 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-09-16 15:05 - 2013-09-16 15:04 - 00000000 ____D C:\AdwCleaner 2013-09-16 15:04 - 2013-09-16 15:03 - 01039554 _____ C:\Users\Caro\Downloads\adwcleaner.exe 2013-09-16 13:11 - 2013-09-16 13:11 - 00000193 _____ C:\Windows\WORDPAD.INI 2013-09-16 13:09 - 2013-09-16 12:55 - 00000470 _____ C:\Windows\SysWOW64\defogger_disable.log 2013-09-16 13:07 - 2013-09-16 13:07 - 00003277 _____ C:\Users\Caro\Desktop\GMER.log 2013-09-16 13:03 - 2013-09-16 13:03 - 00377856 _____ C:\Users\Caro\Downloads\gmer_2.1.19163.exe 2013-09-16 13:02 - 2013-09-16 13:02 - 00075189 _____ C:\Users\Caro\Desktop\FRST.txt 2013-09-16 13:02 - 2013-09-16 13:02 - 00029364 _____ C:\Users\Caro\Desktop\Addition.txt 2013-09-16 13:01 - 2013-09-16 13:00 - 00029364 _____ C:\Users\Caro\Downloads\Addition.txt 2013-09-16 12:58 - 2013-09-16 12:58 - 00000000 ____D C:\FRST 2013-09-16 12:54 - 2013-09-16 12:54 - 00050477 _____ C:\Users\Caro\Downloads\Defogger.exe 2013-09-16 12:54 - 2013-09-16 12:54 - 00000000 _____ C:\Users\Caro\defogger_reenable 2013-09-16 12:54 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro 2013-09-15 15:21 - 2013-09-15 15:21 - 00133632 _____ C:\Users\Caro\Downloads\LVaustauschIN.xls 2013-09-14 16:17 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\rescache 2013-09-14 15:24 - 2013-09-14 15:24 - 00000112 ___RH C:\Users\Caro\Downloads\Stinger.opt 2013-09-14 15:24 - 2013-09-14 15:18 - 00000000 ____D C:\Program Files (x86)\stinger 2013-09-14 15:21 - 2013-09-14 15:19 - 00000638 _____ C:\Users\Caro\Downloads\Stinger_14092013_151924.html 2013-09-14 15:18 - 2013-09-14 15:16 - 10027040 _____ (McAfee Inc) C:\Users\Caro\Downloads\stinger32_12.0.0.530.exe 2013-09-14 15:00 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\BackupManager 2013-09-14 14:46 - 2013-09-14 14:46 - 00307904 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-14 14:45 - 2013-09-13 13:18 - 00000000 ____D C:\Program Files (x86)\LyriXeeker-1 2013-09-14 13:45 - 2013-09-14 13:45 - 00001117 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-09-14 13:45 - 2013-09-14 13:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-09-14 13:42 - 2013-09-14 13:40 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Caro\Downloads\mbam-setup-1.75.0.1300.exe 2013-09-14 13:15 - 2013-09-14 13:14 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Caro\Downloads\SpyHunter-Installer.exe 2013-09-14 13:12 - 2013-09-08 10:11 - 00000000 ____D C:\Games 2013-09-14 12:41 - 2013-06-29 17:37 - 00000000 ___RD C:\Users\Caro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-14 12:35 - 2013-09-14 12:35 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-14 12:04 - 2013-09-14 11:40 - 182486872 _____ C:\Users\Caro\Downloads\setup_11.0.1.1245.x01_2013_09_03_10_31.exe 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-09-13 23:19 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-09-13 23:19 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-09-13 22:41 - 2013-08-18 16:21 - 00000000 ____D C:\Windows\system32\MRT 2013-09-13 22:38 - 2013-07-01 18:19 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-13 21:39 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-09-13 13:19 - 2013-09-13 13:19 - 00004320 _____ C:\Windows\System32\Tasks\LyriXeeker-1-updater 2013-09-13 13:19 - 2013-09-13 13:19 - 00004224 _____ C:\Windows\System32\Tasks\LyriXeeker-1-codedownloader 2013-09-13 13:19 - 2013-09-13 13:19 - 00004124 _____ C:\Windows\System32\Tasks\LyriXeeker-1-enabler 2013-09-13 13:15 - 2013-09-13 13:15 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Caro\Downloads\jDownloaderWebInstaller09581.exe 2013-09-12 08:47 - 2013-09-12 08:47 - 97238077 _____ C:\Windows\SysWOW64\淖炽LÛ 2013-09-11 14:13 - 2013-09-10 16:56 - 00000000 ____D C:\Users\Caro\Desktop\fotoalbum 2013-09-11 08:59 - 2013-06-29 13:54 - 00002030 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2013-09-11 08:59 - 2012-10-19 18:44 - 00192908 _____ C:\Windows\DPINST.LOG 2013-09-11 08:59 - 2012-09-01 05:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-09-10 23:22 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-10 23:21 - 2013-09-10 23:21 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2013-09-10 17:06 - 2013-09-10 16:48 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2013-09-10 17:06 - 2013-09-10 11:45 - 00000000 ____D C:\ProgramData\CanonIJPLM 2013-09-10 16:48 - 2013-09-10 12:08 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Canon 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJQuickMenu 2013-09-10 12:08 - 2013-09-10 12:08 - 00000000 ___HD C:\ProgramData\CanonIJEGV 2013-09-10 12:07 - 2013-06-29 17:36 - 00000000 ____D C:\Users\Caro\AppData\Local\Packages 2013-09-10 12:05 - 2013-06-29 17:32 - 00000000 ____D C:\Program Files (x86)\Canon 2013-09-10 12:05 - 2012-07-26 10:12 - 00000000 __RSD C:\Windows\Media 2013-09-10 11:58 - 2013-09-10 11:58 - 00002029 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\ProgramData\CanonIJWSpt 2013-09-10 11:58 - 2013-09-10 11:58 - 00000000 ____D C:\Program Files\Common Files\CANON 2013-09-10 11:50 - 2013-09-10 11:50 - 00002364 _____ C:\Users\Public\Desktop\Canon MG3200 series Online-Handbuch.lnk 2013-09-10 11:49 - 2013-09-10 11:49 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ___HD C:\Program Files\CanonBJ 2013-09-10 11:48 - 2013-09-10 11:48 - 00000000 ____D C:\Windows\system32\STRING 2013-09-10 11:44 - 2013-09-10 11:44 - 00000000 ___HD C:\ProgramData\CanonIJETV 2013-09-10 09:58 - 2013-06-29 12:52 - 00000000 ____D C:\Users\Caro\AppData\Local\Spotify 2013-09-08 19:07 - 2013-09-08 19:06 - 00009971 _____ C:\Windows\DirectX.log 2013-09-08 19:05 - 2013-09-08 19:04 - 00000000 ____D C:\Users\Caro\DirectX 2013-09-08 18:58 - 2013-09-08 18:56 - 100273008 _____ (Microsoft Corporation) C:\Users\Caro\Downloads\directx_Jun2010redist.exe 2013-09-05 22:09 - 2013-07-03 15:43 - 00694232 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-05 22:09 - 2013-07-03 15:43 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-03 11:23 - 2013-08-28 13:15 - 00082136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-09-03 11:23 - 2013-08-28 13:08 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-09-01 10:32 - 2013-06-29 14:54 - 00000000 ____D C:\Users\Caro\AppData\Local\CrashDumps 2013-08-31 18:34 - 2012-09-01 05:17 - 00000000 ____D C:\ProgramData\McAfee 2013-08-29 12:39 - 2012-09-01 05:17 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-08-28 13:21 - 2013-08-28 13:21 - 00000000 ____D C:\Users\Caro\AppData\Roaming\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\ProgramData\Avira 2013-08-28 13:08 - 2013-08-28 13:08 - 00000000 ____D C:\Program Files (x86)\Avira 2013-08-28 12:46 - 2012-07-26 10:12 - 00000000 ___HD C:\Windows\ELAMBKUP 2013-08-28 10:38 - 2013-08-28 10:18 - 110344048 _____ C:\Users\Caro\Downloads\avira_free4045_antivirus_de.exe 2013-08-27 19:34 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\ELAM 2013-08-21 06:12 - 2013-09-13 21:29 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-21 06:12 - 2013-09-13 21:29 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-21 06:11 - 2013-09-13 21:29 - 19246592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-21 06:11 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-21 04:34 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-21 04:06 - 2013-09-13 21:29 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-21 04:06 - 2013-09-13 21:29 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 14332928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 02048000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-21 04:05 - 2013-09-13 21:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-21 03:43 - 2013-09-13 21:29 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-21 01:52 - 2013-09-13 21:29 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2013-08-19 14:13 - 2013-08-17 21:11 - 00000000 ____D C:\Users\Caro\AppData\Roaming\vlc Some content of TEMP: ==================== C:\Users\Caro\AppData\Local\Temp\AskSLib.dll C:\Users\Caro\AppData\Local\Temp\InstallNorton.exe C:\Users\Caro\AppData\Local\Temp\MSETUP4.EXE C:\Users\Caro\AppData\Local\Temp\Quarantine.exe C:\Users\Caro\AppData\Local\Temp\SymcPCCUInstaller.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-09 11:39 ==================== End Of Log ============================ Liebe Grüße |
18.09.2013, 10:33 | #10 |
/// the machine /// TB-Ausbilder | Windows 8: Bedrohung durch ici.resynccdn.net noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.09.2013, 11:59 | #11 |
| Windows 8: Bedrohung durch ici.resynccdn.net Also bislang sieht alles super aus und ohne Probleme! Vielen vielen Dank! |
18.09.2013, 15:48 | #12 |
/// the machine /// TB-Ausbilder | Windows 8: Bedrohung durch ici.resynccdn.net Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.09.2013, 23:28 | #13 |
| Windows 8: Bedrohung durch ici.resynccdn.net Hallo Schrauber! Also ich denke soweit ist alles erledigt und ich habe keine Fragen mehr. Vielen lieben Dank nochmal,dass du mir geholfen hast |
19.09.2013, 10:12 | #14 |
/// the machine /// TB-Ausbilder | Windows 8: Bedrohung durch ici.resynccdn.net Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |