![]() |
|
Log-Analyse und Auswertung: Windows 8 - Websites voll mit Werbung von lyricxeekerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Windows 8 - Websites voll mit Werbung von lyricxeeker Liebes Team, Mein Browser ( Mozilla Firefox) ist voll mit Werbung von lyricxeeker. Immer wieder sind Worte doppelt unterstrichen und enthalten eine Sprechblase mit Werbung, die sich öffnet, wenn man mit der Maus über das Wort fährt. Außerdem öffnet sich immer wieder ein Pop-up. Hier meine Logs: FRST Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013 Ran by Christian (administrator) on CHRISSI-PC on 18-10-2013 21:53:13 Running from C:\Users\Christian\Downloads Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (AMD) C:\Windows\system32\atieclxx.exe (Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Windows\SysWOW64\irstrtsv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (Pokki) C:\Users\Christian\AppData\Local\Pokki\Engine\pokki.exe (Pokki) C:\Users\Christian\AppData\Local\Pokki\Engine\pokki.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Pokki) C:\Users\Christian\AppData\Local\Pokki\Engine\pokki.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Dropbox, Inc.) C:\Users\Christian\AppData\Roaming\Dropbox\bin\Dropbox.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\system32\wwahost.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe () C:\Users\Christian\Downloads\Defogger.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-21] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-25] (Synaptics Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-06-13] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [Pokki] - C:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform MountPoints2: {afac40d7-1c5d-11e3-be73-6894230c20ea} - "E:\XeonKing.exe" MountPoints2: {afac43e0-1c5d-11e3-be73-6894230c20ea} - "H:\SETUP.EXE" MountPoints2: {c2ebea75-1ea4-11e3-be77-6894230c20ea} - "I:\HTC_Sync_Manager_PC.exe" HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-06] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [BtTray] - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [363520 2012-08-02] (IVT Corporation) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [HP CoolSense] - C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1343904 2012-11-05] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-16] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1603024 2013-09-12] (APN) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [581024 2012-09-07] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [AdobeCEPServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [1039248 2013-03-13] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Creative Cloud] - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2237328 2013-09-03] (Adobe Systems Incorporated) AppInit_DLLs-x32: [ ] () Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Christian\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT13/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT13/4 SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKLM - {014F7B2D-5627-4EFB-B459-52123F74DA62} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 - {014F7B2D-5627-4EFB-B459-52123F74DA62} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKCU - {014F7B2D-5627-4EFB-B459-52123F74DA62} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 217.0.43.49 217.0.43.33 FireFox: ======== FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\iz133p23.default FF Homepage: google.de FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll () FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.40.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: pokki.com/PokkiDownloadHelper - C:\Users\Christian\AppData\Local\Pokki\Download Helper\npPokkiDownloadHelper.1.2.0.78.dll (Pokki) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: No Name - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\iz133p23.default\Extensions\763ab44b-71df-436c-906e-2ee8e1d7b302@af951efb-381e-47b2-ac45-80df41e44bc7.com FF Extension: Adblock Plus Pop-up Addon - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\iz133p23.default\Extensions\adblockpopups@jessehakanen.net FF Extension: No Name - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\iz133p23.default\Extensions\staged FF Extension: Adblock Plus - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\iz133p23.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} FF Extension: adblockpopups - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\iz133p23.default\Extensions\adblockpopups@jessehakanen.net.xpi FF Extension: No Name - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\iz133p23.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-09-16] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-16] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [815160 2013-09-16] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [164816 2013-09-12] (APN LLC.) R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1544192 2012-08-02] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-07-10] (IVT Corporation) R2 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-19] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-07-02] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [35496 2012-07-09] (Advanced Micro Devices, Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-16] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132088 2013-09-16] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-09-16] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [82136 2013-09-16] (Avira Operations GmbH & Co. KG) R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation) U4 BthAvrcpTg; U4 BthHFEnum; U4 bthhfhid; R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-08] (Ralink Corporation) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2013-09-13] (DT Soft Ltd) R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-20] (Intel Corporation) R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [695392 2012-08-09] (Ralink Technology, Corp.) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-25] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-25] (Synaptics Incorporated) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.) U5 BlueletAudio; C:\Windows\System32\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.) U5 BlueletAudio; C:\Windows\SysWOW64\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-10-18 21:51 - 2013-10-18 21:51 - 00000550 _____ C:\Users\Christian\Downloads\defogger_disable.log 2013-10-18 21:51 - 2013-10-18 21:51 - 00000168 _____ C:\Users\Christian\defogger_reenable 2013-10-18 21:47 - 2013-10-18 21:47 - 00050477 _____ C:\Users\Christian\Downloads\Defogger.exe 2013-10-18 19:57 - 2013-10-18 20:02 - 00000000 ____D C:\AdwCleaner 2013-10-18 19:56 - 2013-10-18 19:56 - 01050644 _____ C:\Users\Christian\Downloads\adwcleaner_3.0.0.8.exe 2013-10-18 19:55 - 2013-10-18 19:56 - 00024126 _____ C:\Users\Christian\Downloads\Addition.txt 2013-10-18 19:53 - 2013-10-18 19:53 - 00000000 ____D C:\FRST 2013-10-18 19:52 - 2013-10-18 19:53 - 01954124 _____ (Farbar) C:\Users\Christian\Downloads\FRST64.exe 2013-10-18 19:46 - 2013-10-18 19:47 - 53407584 _____ C:\Users\Christian\Downloads\Kasabian - Velociraptor! (Limited Edition).part2.rar 2013-10-18 19:45 - 2013-10-18 19:47 - 105906176 _____ C:\Users\Christian\Downloads\Kasabian - Velociraptor! (Limited Edition).part1.rar 2013-10-16 00:00 - 2013-10-16 00:00 - 00001153 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-10-16 00:00 - 2013-10-16 00:00 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Mozilla 2013-10-16 00:00 - 2013-10-16 00:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-10-13 19:26 - 2013-10-13 19:26 - 00001074 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk 2013-10-13 19:01 - 2013-09-12 01:28 - 00000000 ____D C:\Users\Christian\Downloads\updapcc_14.1 2013-10-13 18:39 - 2013-10-13 18:39 - 00003514 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-***** 2013-10-13 18:37 - 2013-10-13 18:39 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2013-10-13 18:35 - 2013-10-13 18:35 - 00000000 ____D C:\Program Files\Adobe 2013-10-13 18:33 - 2013-10-13 19:25 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-10-13 18:31 - 2013-10-13 18:35 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-10-13 18:21 - 2013-10-18 19:32 - 00000000 ____D C:\Users\Christian\AppData\Local\Adobe 2013-10-13 18:21 - 2013-10-15 23:25 - 00000000 ____D C:\ProgramData\Adobe 2013-10-13 18:18 - 2013-10-13 18:18 - 00000000 ____D C:\Users\Christian\Desktop\Adobe CC 2013-10-13 18:09 - 2013-06-25 03:52 - 00000000 ____D C:\Users\Christian\Downloads\apt14OOO 2013-10-13 18:06 - 2013-10-13 19:01 - 309831310 _____ C:\Users\Christian\Downloads\updapcc_14.1.rar 2013-10-13 14:13 - 2013-10-13 14:13 - 890378419 _____ C:\Windows\MEMORY.DMP 2013-10-13 14:13 - 2013-10-13 14:13 - 00285584 _____ C:\Windows\Minidump\101313-12328-01.dmp 2013-10-13 14:13 - 2013-10-13 14:13 - 00000000 ____D C:\Windows\Minidump 2013-10-13 03:03 - 2013-10-13 03:03 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-10-13 01:13 - 2013-10-13 01:13 - 100651105 _____ C:\Windows\SysWOW64\虷L¥ 2013-10-03 22:51 - 2013-10-03 23:03 - 576716815 _____ C:\Users\Christian\Downloads\Feuchtgebiete 2013 - CRG.part1.rar 2013-10-03 22:51 - 2013-10-03 23:03 - 474331644 _____ C:\Users\Christian\Downloads\Feuchtgebiete 2013 - CRG.part2.rar 2013-09-24 11:35 - 2013-09-24 11:35 - 00000000 _____ C:\Users\Christian\Desktop\1344946.txt 2013-09-24 11:01 - 2013-09-24 11:01 - 98852061 _____ C:\Windows\SysWOW64\檬솜Lÿ 2013-09-23 11:05 - 2013-10-14 00:57 - 05103552 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-22 23:14 - 2013-09-22 23:15 - 57200811 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part82.rar.part 2013-09-22 23:13 - 2013-09-22 23:15 - 65531275 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part79.rar.part 2013-09-22 23:13 - 2013-09-22 23:15 - 62972967 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part81.rar.part 2013-09-22 23:13 - 2013-09-22 23:15 - 56928631 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part80.rar.part 2013-09-22 23:11 - 2013-09-22 23:13 - 54715443 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part77.rar.part 2013-09-22 23:09 - 2013-09-22 23:13 - 60768842 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part75.rar.part 2013-09-22 23:09 - 2013-09-22 23:11 - 55974327 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part76.rar.part 2013-09-22 23:07 - 2013-09-22 23:13 - 92368870 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part74.rar.part 2013-09-22 23:07 - 2013-09-22 23:12 - 78265051 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part73.rar.part 2013-09-22 23:04 - 2013-09-22 23:09 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part72.rar 2013-09-22 23:04 - 2013-09-22 23:09 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part71.rar 2013-09-22 23:01 - 2013-09-22 23:07 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part70.rar 2013-09-22 23:01 - 2013-09-22 23:07 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part69.rar 2013-09-22 22:59 - 2013-09-22 23:04 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part68.rar 2013-09-22 22:58 - 2013-09-22 23:04 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part67.rar 2013-09-22 22:56 - 2013-09-22 23:01 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part66.rar 2013-09-22 22:55 - 2013-09-22 23:01 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part65.rar 2013-09-22 22:53 - 2013-09-22 22:59 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part64.rar 2013-09-22 22:53 - 2013-09-22 22:58 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part63.rar 2013-09-22 22:50 - 2013-09-22 22:56 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part62.rar 2013-09-22 22:49 - 2013-09-22 22:55 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part61.rar 2013-09-22 22:48 - 2013-09-22 22:53 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part58.rar 2013-09-22 22:45 - 2013-09-22 22:50 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part57.rar 2013-09-22 22:45 - 2013-09-22 22:49 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part56.rar 2013-09-22 22:44 - 2013-09-22 22:48 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part55.rar 2013-09-22 22:44 - 2013-09-22 22:48 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part54.rar 2013-09-22 22:39 - 2013-09-22 22:45 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part53.rar 2013-09-22 22:39 - 2013-09-22 22:45 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part52.rar 2013-09-22 22:38 - 2013-09-22 22:44 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part51.rar 2013-09-22 22:38 - 2013-09-22 22:44 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part50.rar 2013-09-22 22:34 - 2013-09-22 22:39 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part49.rar 2013-09-22 22:34 - 2013-09-22 22:39 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part48.rar 2013-09-22 22:33 - 2013-09-22 22:38 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part47.rar 2013-09-22 22:33 - 2013-09-22 22:38 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part46.rar 2013-09-22 22:30 - 2013-09-22 22:34 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part45.rar 2013-09-22 22:29 - 2013-09-22 22:34 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part44.rar 2013-09-22 22:29 - 2013-09-22 22:33 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part43.rar 2013-09-22 22:28 - 2013-09-22 22:33 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part42.rar 2013-09-22 22:24 - 2013-09-22 22:30 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part41.rar 2013-09-22 22:16 - 2013-09-22 22:53 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part60.rar 2013-09-22 22:16 - 2013-09-22 22:24 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part59.rar 2013-09-22 22:15 - 2013-09-22 22:24 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part40.rar 2013-09-22 22:13 - 2013-09-22 22:29 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part39.rar 2013-09-22 22:13 - 2013-09-22 22:28 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part38.rar 2013-09-22 22:12 - 2013-09-22 22:27 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part37.rar 2013-09-22 22:08 - 2013-09-22 22:24 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part36.rar 2013-09-22 22:07 - 2013-09-22 22:29 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part35.rar 2013-09-22 22:07 - 2013-09-22 22:28 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part34.rar 2013-09-22 22:05 - 2013-09-22 22:22 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part33.rar 2013-09-22 22:04 - 2013-09-22 22:08 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part32.rar 2013-09-22 22:02 - 2013-09-22 22:07 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part31.rar 2013-09-22 22:02 - 2013-09-22 22:06 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part30.rar 2013-09-22 22:01 - 2013-09-22 22:05 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part29.rar 2013-09-22 21:59 - 2013-09-22 22:03 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part28.rar 2013-09-22 21:57 - 2013-09-22 22:02 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part27.rar 2013-09-22 21:57 - 2013-09-22 22:02 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part26.rar 2013-09-22 21:56 - 2013-09-22 22:01 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part25.rar 2013-09-22 21:54 - 2013-09-22 21:59 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part24.rar 2013-09-22 21:53 - 2013-09-22 21:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part23.rar 2013-09-22 21:52 - 2013-09-22 21:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part22.rar 2013-09-22 21:52 - 2013-09-22 21:56 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part21.rar 2013-09-22 21:49 - 2013-09-22 21:54 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part20.rar 2013-09-22 21:48 - 2013-09-22 21:53 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part18.rar 2013-09-22 21:48 - 2013-09-22 21:52 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part19.rar 2013-09-22 21:47 - 2013-09-22 21:52 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part17.rar 2013-09-22 21:45 - 2013-09-22 21:49 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part16.rar 2013-09-22 21:44 - 2013-09-22 21:48 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part15.rar 2013-09-22 21:43 - 2013-09-22 21:47 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part13.rar 2013-09-22 21:40 - 2013-09-22 21:44 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part12.rar 2013-09-22 21:40 - 2013-09-22 21:44 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part11.rar 2013-09-22 21:38 - 2013-09-22 21:43 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part09.rar 2013-09-22 21:30 - 2013-09-22 21:35 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part04.rar 2013-09-22 21:30 - 2013-09-22 21:35 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part03.rar 2013-09-22 21:30 - 2013-09-22 21:35 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part01.rar 2013-09-22 21:30 - 2013-09-22 21:34 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part02.rar 2013-09-22 21:17 - 2013-09-22 21:17 - 00000000 ____D C:\Users\Christian\Downloads\Sabaton - 2013 - Swedish Empire Live (320) 2013-09-22 21:17 - 2013-07-24 23:43 - 00000000 ____D C:\Users\Christian\Downloads\redhotchiimwit1213 2013-09-22 21:16 - 2013-09-20 01:19 - 00000000 ____D C:\Users\Christian\Downloads\a-tr.320CD 2013-09-22 21:03 - 2013-09-22 21:05 - 00000000 ____D C:\Users\Christian\Downloads\Linkin Park & Eminem 2013-09-22 20:57 - 2013-09-22 21:48 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part14.rar 2013-09-22 20:57 - 2013-09-22 21:43 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part10.rar 2013-09-22 20:57 - 2013-09-22 21:40 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part08.rar 2013-09-22 20:57 - 2013-09-22 21:40 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part07.rar 2013-09-22 20:57 - 2013-09-22 21:39 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part06.rar 2013-09-22 20:57 - 2013-09-22 21:38 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part05.rar 2013-09-20 11:13 - 2013-07-02 02:44 - 00036288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2013-09-20 11:13 - 2013-07-02 00:08 - 00247216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2013-09-20 11:11 - 2013-03-02 10:23 - 00375808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2013-09-20 11:11 - 2013-03-02 04:44 - 01011200 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2013-09-20 11:11 - 2012-12-15 06:55 - 00443392 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2013-09-20 11:11 - 2012-11-03 07:26 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\sysreset.exe 2013-09-20 11:11 - 2012-11-03 07:25 - 00945152 _____ (Microsoft Corporation) C:\Windows\system32\resetengmig.dll 2013-09-20 11:11 - 2012-10-24 05:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe 2013-09-20 11:11 - 2012-10-24 04:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2013-09-20 11:07 - 2013-08-07 07:15 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll 2013-09-19 23:27 - 2013-09-19 23:28 - 00000000 ____D C:\Windows\system32\MRT 2013-09-19 23:27 - 2013-09-01 17:08 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-19 23:23 - 2013-09-19 23:23 - 00000117 _____ C:\Windows\system32\netcfg-176120843.txt 2013-09-19 23:23 - 2013-09-19 23:23 - 00000117 _____ C:\Windows\system32\netcfg-176120640.txt 2013-09-19 23:23 - 2013-09-19 23:23 - 00000117 _____ C:\Windows\system32\netcfg-176117515.txt 2013-09-19 23:22 - 2013-09-19 23:22 - 00000117 _____ C:\Windows\system32\netcfg-176086406.txt 2013-09-19 23:22 - 2013-09-19 23:22 - 00000117 _____ C:\Windows\system32\netcfg-176085937.txt 2013-09-19 23:22 - 2013-09-19 23:22 - 00000117 _____ C:\Windows\system32\netcfg-176085734.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138540375.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138537578.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138537515.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138537421.txt 2013-09-19 12:50 - 2013-10-18 20:03 - 00000000 ___RD C:\Users\Christian\Dropbox 2013-09-19 12:48 - 2013-09-19 12:48 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-09-19 12:46 - 2013-10-18 20:03 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Dropbox 2013-09-19 12:46 - 2013-09-19 12:46 - 32966136 _____ (Dropbox, Inc.) C:\Users\Christian\Downloads\Dropbox 2.0.26.exe 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137744062.txt 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137742515.txt 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137742437.txt 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137742343.txt 2013-09-19 12:42 - 2013-09-19 12:42 - 00000117 _____ C:\Windows\system32\netcfg-137643937.txt 2013-09-19 12:41 - 2013-09-19 12:41 - 00000117 _____ C:\Windows\system32\netcfg-137638906.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132313281.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132313156.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132313093.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132310125.txt 2013-09-19 10:58 - 2013-09-19 10:58 - 00000117 _____ C:\Windows\system32\netcfg-131403828.txt 2013-09-19 10:58 - 2013-09-19 10:58 - 00000117 _____ C:\Windows\system32\netcfg-131403734.txt 2013-09-19 10:57 - 2013-09-19 10:58 - 00000117 _____ C:\Windows\system32\netcfg-131400609.txt 2013-09-19 10:57 - 2013-09-19 10:57 - 00000117 _____ C:\Windows\system32\netcfg-131399546.txt 2013-09-19 10:56 - 2013-09-19 10:56 - 00000117 _____ C:\Windows\system32\netcfg-131304250.txt 2013-09-19 00:42 - 2013-09-19 00:42 - 00000117 _____ C:\Windows\system32\netcfg-94496625.txt 2013-09-19 00:42 - 2013-09-19 00:42 - 00000117 _____ C:\Windows\system32\netcfg-94493890.txt 2013-09-18 23:56 - 2013-09-18 23:56 - 00000117 _____ C:\Windows\system32\netcfg-91727125.txt 2013-09-18 23:56 - 2013-09-18 23:56 - 00000117 _____ C:\Windows\system32\netcfg-91727031.txt 2013-09-18 22:46 - 2013-09-18 22:46 - 00000117 _____ C:\Windows\system32\netcfg-87527265.txt 2013-09-18 22:46 - 2013-09-18 22:46 - 00000117 _____ C:\Windows\system32\netcfg-87527062.txt 2013-09-18 22:45 - 2013-08-15 09:48 - 00000000 ____D C:\Users\Christian\Downloads\emidro2013 2013-09-18 22:42 - 2013-10-18 21:52 - 00000000 ____D C:\Users\Christian\Downloads\Eminem - Relapse 2 (2013) 2013-09-18 22:41 - 2013-09-17 14:43 - 00000000 ____D C:\Users\Christian\Downloads\metthr20132cd 2013-09-18 22:05 - 2013-09-18 22:05 - 00000117 _____ C:\Windows\system32\netcfg-85072015.txt 2013-09-18 22:05 - 2013-09-18 22:05 - 00000117 _____ C:\Windows\system32\netcfg-85071921.txt 2013-09-18 22:05 - 2013-09-18 22:05 - 00000117 _____ C:\Windows\system32\netcfg-85071828.txt 2013-09-18 22:04 - 2013-09-18 22:04 - 00000117 _____ C:\Windows\system32\netcfg-85009546.txt 2013-09-18 16:05 - 2013-09-18 16:05 - 00000117 _____ C:\Windows\system32\netcfg-63477609.txt 2013-09-18 16:05 - 2013-09-18 16:05 - 00000117 _____ C:\Windows\system32\netcfg-63477531.txt 2013-09-18 15:21 - 2012-10-24 06:54 - 00396008 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2013-09-18 15:21 - 2012-10-17 06:32 - 01172992 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll 2013-09-18 15:21 - 2012-10-17 06:32 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll 2013-09-18 15:21 - 2012-10-17 06:32 - 00673280 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2013-09-18 15:21 - 2012-10-17 05:57 - 00929792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll 2013-09-18 15:21 - 2012-10-17 05:57 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll 2013-09-18 15:21 - 2012-10-17 05:57 - 00513024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2013-09-18 15:21 - 2012-10-12 08:13 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll 2013-09-18 15:21 - 2012-10-12 07:39 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquota.dll 2013-09-18 15:21 - 2012-10-11 09:47 - 00793200 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2013-09-18 15:21 - 2012-10-11 09:23 - 00441576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2013-09-18 15:21 - 2012-10-11 07:46 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2013-09-18 15:21 - 2012-10-11 07:46 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2013-09-18 15:21 - 2012-10-11 07:46 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Compression.dll 2013-09-18 15:21 - 2012-10-11 07:45 - 01045504 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2013-09-18 15:21 - 2012-10-11 07:45 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2013-09-18 15:21 - 2012-10-11 07:45 - 00579584 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2013-09-18 15:21 - 2012-10-11 07:44 - 01265152 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-09-18 15:21 - 2012-10-11 07:44 - 00904192 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2013-09-18 15:21 - 2012-10-11 07:43 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2013-09-18 15:21 - 2012-10-11 07:43 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2013-09-18 15:21 - 2012-10-11 07:42 - 00612416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2013-09-18 15:21 - 2012-10-11 07:16 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-09-18 15:21 - 2012-10-11 07:07 - 01226752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2013-09-18 15:21 - 2012-10-11 07:07 - 00460800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2013-09-18 15:21 - 2012-10-11 07:07 - 00414720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2013-09-18 15:21 - 2012-10-11 02:45 - 00478424 _____ C:\Windows\SysWOW64\locale.nls 2013-09-18 15:21 - 2012-10-11 02:44 - 00478424 _____ C:\Windows\system32\locale.nls 2013-09-18 15:20 - 2013-06-17 00:41 - 00997632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-09-18 15:20 - 2013-06-01 13:34 - 02391280 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2013-09-18 15:20 - 2013-06-01 13:29 - 00337152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2013-09-18 15:20 - 2013-06-01 13:29 - 00213248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2013-09-18 15:20 - 2013-06-01 13:26 - 06987008 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-09-18 15:20 - 2013-06-01 13:26 - 00327936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2013-09-18 15:20 - 2013-06-01 12:24 - 02106176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2013-09-18 15:20 - 2013-06-01 11:25 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-09-18 15:20 - 2013-06-01 11:25 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2013-09-18 15:20 - 2013-06-01 11:24 - 01453568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2013-09-18 15:20 - 2013-06-01 11:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2013-09-18 15:20 - 2013-06-01 11:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2013-09-18 15:20 - 2013-06-01 11:23 - 01842176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2013-09-18 15:20 - 2013-06-01 11:23 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2013-09-18 15:20 - 2013-06-01 11:22 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-09-18 15:20 - 2013-06-01 11:22 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2013-09-18 15:20 - 2013-06-01 11:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2013-09-18 15:20 - 2013-06-01 11:21 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2013-09-18 15:20 - 2013-06-01 11:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2013-09-18 15:20 - 2013-06-01 11:20 - 02219520 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2013-09-18 15:20 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2013-09-18 15:20 - 2013-06-01 11:20 - 01048576 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2013-09-18 15:20 - 2013-06-01 11:20 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2013-09-18 15:20 - 2013-06-01 11:19 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2013-09-18 15:20 - 2013-06-01 11:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll 2013-09-18 15:20 - 2013-06-01 05:08 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-09-18 15:20 - 2013-05-25 00:09 - 01403296 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2013-09-18 15:20 - 2013-05-25 00:09 - 01271584 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2013-09-18 15:20 - 2013-05-25 00:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2013-09-18 15:20 - 2013-05-25 00:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2013-09-18 15:20 - 2013-04-09 04:34 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-09-18 15:20 - 2013-04-09 04:34 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2013-09-18 15:20 - 2012-11-27 08:39 - 01122768 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe 2013-09-18 15:20 - 2012-11-27 06:49 - 01027152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe 2013-09-18 15:20 - 2012-11-27 06:20 - 01217536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2013-09-18 15:20 - 2012-11-27 06:20 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2013-09-18 15:20 - 2012-11-27 06:20 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2013-09-18 15:20 - 2012-11-27 06:20 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll 2013-09-18 15:20 - 2012-11-27 06:20 - 00560128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll 2013-09-18 15:20 - 2012-11-27 06:20 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll 2013-09-18 15:20 - 2012-11-27 06:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll 2013-09-18 15:20 - 2012-11-27 06:19 - 03245568 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2013-09-18 15:20 - 2012-11-27 06:19 - 01536512 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2013-09-18 15:20 - 2012-11-27 06:19 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll 2013-09-18 15:20 - 2012-11-27 06:19 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll 2013-09-18 15:20 - 2012-11-27 06:19 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll 2013-09-18 15:20 - 2012-10-12 10:08 - 00027880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2013-09-18 15:20 - 2012-10-12 08:14 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2013-09-18 15:20 - 2012-10-12 07:50 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2013-09-18 15:20 - 2012-10-11 09:25 - 00056552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys 2013-09-18 15:20 - 2012-10-11 09:18 - 00172264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-09-18 15:20 - 2012-10-11 09:13 - 00033512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\battc.sys 2013-09-18 15:20 - 2012-10-11 09:08 - 00562392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-09-18 15:20 - 2012-10-11 09:02 - 01636672 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll 2013-09-18 15:20 - 2012-10-11 07:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\BdeUISrv.exe 2013-09-18 15:20 - 2012-10-11 07:46 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll 2013-09-18 15:20 - 2012-10-11 07:45 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll 2013-09-18 15:20 - 2012-10-11 07:45 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll 2013-09-18 15:20 - 2012-10-11 07:45 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\PCPKsp.dll 2013-09-18 15:20 - 2012-10-11 07:44 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2013-09-18 15:20 - 2012-10-11 07:44 - 00264704 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll 2013-09-18 15:20 - 2012-10-11 07:44 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2013-09-18 15:20 - 2012-10-11 07:44 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll 2013-09-18 15:20 - 2012-10-11 07:43 - 01280000 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-09-18 15:20 - 2012-10-11 07:43 - 00757760 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll 2013-09-18 15:20 - 2012-10-11 07:43 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2013-09-18 15:20 - 2012-10-11 07:43 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2013-09-18 15:20 - 2012-10-11 07:43 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2013-09-18 15:20 - 2012-10-11 07:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2013-09-18 15:20 - 2012-10-11 07:23 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-pdc.dll 2013-09-18 15:20 - 2012-10-11 07:23 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\kbdhebl3.dll 2013-09-18 15:20 - 2012-10-11 07:19 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2013-09-18 15:20 - 2012-10-11 07:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-09-18 15:20 - 2012-10-11 07:15 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys 2013-09-18 15:20 - 2012-10-11 07:07 - 00962560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2013-09-18 15:20 - 2012-10-11 07:07 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll 2013-09-18 15:20 - 2012-10-11 07:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll 2013-09-18 15:20 - 2012-10-11 07:07 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll 2013-09-18 15:20 - 2012-10-11 07:06 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll 2013-09-18 15:20 - 2012-10-11 07:06 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2013-09-18 15:20 - 2012-10-11 07:06 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2013-09-18 15:20 - 2012-10-11 07:06 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2013-09-18 15:20 - 2012-10-11 07:06 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2013-09-18 15:20 - 2012-10-11 07:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2013-09-18 15:20 - 2012-10-11 07:06 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2013-09-18 15:20 - 2012-10-11 07:05 - 00099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2013-09-18 15:20 - 2012-10-11 06:42 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdhebl3.dll 2013-09-18 15:20 - 2012-09-11 07:28 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe 2013-09-18 15:20 - 2012-09-11 07:27 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll 2013-09-18 15:19 - 2012-11-20 07:24 - 01164800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2013-09-18 15:19 - 2012-11-20 07:17 - 01184256 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2013-09-18 15:19 - 2012-11-20 07:02 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDKURD.DLL 2013-09-18 15:19 - 2012-11-20 06:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDKURD.DLL 2013-09-18 15:19 - 2012-11-06 09:52 - 00277736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2013-09-18 15:19 - 2012-11-06 09:33 - 01566432 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2013-09-18 15:19 - 2012-11-06 09:33 - 00522640 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2013-09-18 15:19 - 2012-11-06 07:00 - 00463768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2013-09-18 15:19 - 2012-11-06 06:48 - 01150160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2013-09-18 15:19 - 2012-11-06 06:20 - 00883712 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2013-09-18 15:19 - 2012-11-06 06:20 - 00516608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2013-09-18 15:19 - 2012-11-06 06:20 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2013-09-18 15:19 - 2012-11-06 06:20 - 00375296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll 2013-09-18 15:19 - 2012-11-06 06:20 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe 2013-09-18 15:19 - 2012-11-06 06:20 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2013-09-18 15:19 - 2012-11-06 06:20 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll 2013-09-18 15:19 - 2012-11-06 06:20 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 08552448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00466944 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll 2013-09-18 15:19 - 2012-11-06 06:19 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll 2013-09-18 15:19 - 2012-11-06 06:18 - 11459584 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2013-09-18 15:19 - 2012-11-06 06:18 - 00976384 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-09-18 15:19 - 2012-11-06 06:18 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2013-09-18 15:19 - 2012-11-06 06:18 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl 2013-09-18 15:19 - 2012-11-06 06:18 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2013-09-18 15:19 - 2012-11-06 06:18 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll 2013-09-18 15:19 - 2012-11-06 06:18 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll 2013-09-18 15:19 - 2012-11-06 06:17 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl 2013-09-18 15:19 - 2012-11-06 06:17 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll 2013-09-18 15:19 - 2012-11-06 06:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll 2013-09-18 15:19 - 2012-11-06 05:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2013-09-18 15:19 - 2012-11-06 05:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2013-09-18 15:19 - 2012-11-06 05:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys 2013-09-18 15:19 - 2012-11-06 05:55 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys 2013-09-18 15:19 - 2012-11-06 05:55 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys 2013-09-18 15:19 - 2012-11-06 05:55 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys 2013-09-18 15:19 - 2012-11-06 05:55 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fxppm.sys 2013-09-18 15:19 - 2012-11-06 05:53 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-09-18 15:19 - 2012-11-06 05:51 - 00665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-09-18 15:18 - 2013-05-31 01:24 - 01257472 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-09-18 15:18 - 2013-05-31 01:08 - 00974848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-09-18 15:18 - 2013-05-15 04:25 - 00888320 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe 2013-09-18 15:18 - 2013-05-15 04:25 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2013-09-18 15:18 - 2013-05-15 04:24 - 00793088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe 2013-09-18 15:18 - 2013-05-15 04:24 - 00482816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2013-09-18 15:18 - 2013-05-04 09:58 - 00120736 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe 2013-09-18 15:18 - 2013-05-04 09:34 - 00446720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2013-09-18 15:18 - 2013-05-04 09:34 - 00284416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2013-09-18 15:18 - 2013-05-04 08:59 - 13644288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2013-09-18 15:18 - 2013-05-04 08:59 - 01483776 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2013-09-18 15:18 - 2013-05-04 08:59 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe 2013-09-18 15:18 - 2013-05-04 08:58 - 10116096 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2013-09-18 15:18 - 2013-05-04 08:58 - 01332736 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2013-09-18 15:18 - 2013-05-04 08:58 - 00470528 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll 2013-09-18 15:18 - 2013-05-04 08:58 - 00330240 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2013-09-18 15:18 - 2013-05-04 08:58 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll 2013-09-18 15:18 - 2013-05-04 08:58 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll 2013-09-18 15:18 - 2013-05-04 08:58 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 02305024 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 00708096 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 00501760 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll 2013-09-18 15:18 - 2013-05-04 08:57 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll 2013-09-18 15:18 - 2013-05-04 08:56 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2013-09-18 15:18 - 2013-05-04 06:58 - 00758784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe 2013-09-18 15:18 - 2013-05-04 06:57 - 10788864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2013-09-18 15:18 - 2013-05-04 06:57 - 08857088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2013-09-18 15:18 - 2013-05-04 06:57 - 00303616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2013-09-18 15:18 - 2013-05-04 06:57 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll 2013-09-18 15:18 - 2013-05-04 06:57 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll 2013-09-18 15:18 - 2013-05-04 06:57 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll 2013-09-18 15:18 - 2013-05-04 06:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll 2013-09-18 15:18 - 2013-05-04 06:56 - 02035712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-09-18 15:18 - 2013-05-04 06:56 - 00449536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll 2013-09-18 15:18 - 2013-05-04 06:56 - 00411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2013-09-18 15:18 - 2013-05-04 06:56 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll 2013-09-18 15:18 - 2013-05-04 06:56 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll 2013-09-18 15:18 - 2013-05-04 06:55 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2013-09-18 15:18 - 2013-05-04 06:51 - 00014848 _____ (Microsoft) C:\Windows\system32\rars.rs 2013-09-18 15:18 - 2013-05-04 06:47 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys 2013-09-18 15:18 - 2013-05-04 06:10 - 00014848 _____ (Microsoft) C:\Windows\SysWOW64\rars.rs 2013-09-18 15:18 - 2013-03-02 10:23 - 01338880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-09-18 15:18 - 2013-03-02 04:45 - 01627648 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-09-18 15:18 - 2013-03-02 04:45 - 01149952 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2013-09-18 15:18 - 2013-03-02 04:45 - 01101824 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2013-09-18 15:18 - 2013-03-02 04:45 - 00951808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2013-09-18 15:18 - 2013-03-02 04:45 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll 2013-09-18 15:18 - 2013-03-02 04:44 - 05978624 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-09-18 15:17 - 2013-03-02 12:57 - 00332520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2013-09-18 15:17 - 2013-03-02 12:57 - 00077544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys 2013-09-18 15:17 - 2013-03-02 12:45 - 00148712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys 2013-09-18 15:17 - 2013-03-02 12:39 - 00495336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys 2013-09-18 15:17 - 2013-03-02 10:23 - 00893952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2013-09-18 15:17 - 2013-03-02 10:23 - 00601088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2013-09-18 15:17 - 2013-03-02 10:23 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2013-09-18 15:17 - 2013-03-02 10:23 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2013-09-18 15:17 - 2013-03-02 10:23 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncInfo.dll 2013-09-18 15:17 - 2013-03-02 10:22 - 05091840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-09-18 15:17 - 2013-03-02 10:22 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2013-09-18 15:17 - 2013-03-02 10:21 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll 2013-09-18 15:17 - 2013-03-02 10:21 - 00145408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2013-09-18 15:17 - 2013-03-02 10:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevDispItemProvider.dll 2013-09-18 15:17 - 2013-03-02 04:45 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2013-09-18 15:17 - 2013-03-02 04:45 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe 2013-09-18 15:17 - 2013-03-02 04:45 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2013-09-18 15:17 - 2013-03-02 04:45 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerServer.dll 2013-09-18 15:17 - 2013-03-02 04:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2013-09-18 15:17 - 2013-03-02 04:45 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\WSDPrintProxy.DLL 2013-09-18 15:17 - 2013-03-02 04:44 - 00703488 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll 2013-09-18 15:17 - 2013-03-02 04:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2013-09-18 15:17 - 2013-03-02 04:44 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2013-09-18 15:17 - 2013-03-02 04:44 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll 2013-09-18 15:17 - 2013-03-02 04:44 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncInfo.dll 2013-09-18 15:17 - 2013-03-02 04:44 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\NdisImPlatform.dll 2013-09-18 15:17 - 2013-03-02 04:44 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\DevDispItemProvider.dll 2013-09-18 15:17 - 2013-03-02 04:43 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2013-09-18 15:17 - 2013-03-02 04:15 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys 2013-09-18 15:17 - 2013-03-01 06:56 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys 2013-09-18 15:17 - 2013-03-01 06:56 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys 2013-09-18 15:17 - 2013-03-01 06:55 - 01175040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2013-09-18 15:17 - 2013-01-09 05:59 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS 2013-09-18 15:17 - 2013-01-09 05:58 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys 2013-09-18 15:17 - 2012-08-31 02:53 - 00017888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100_clr0400.dll 2013-09-18 15:17 - 2012-08-31 02:52 - 00017888 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100_clr0400.dll 2013-09-18 15:15 - 2013-04-09 06:51 - 14267904 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-09-18 15:15 - 2013-04-09 06:51 - 03552768 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2013-09-18 15:15 - 2013-04-09 06:50 - 02107904 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2013-09-18 15:15 - 2013-04-08 23:52 - 11878912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-09-18 15:15 - 2013-04-08 23:51 - 02767360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2013-09-18 15:15 - 2013-01-10 03:53 - 00028904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpiowin32.sys 2013-09-18 15:15 - 2013-01-10 03:29 - 00785504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2013-09-18 15:15 - 2013-01-10 03:29 - 00091880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2013-09-18 15:15 - 2013-01-10 01:26 - 01752064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll 2013-09-18 15:15 - 2013-01-10 01:26 - 01611776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe 2013-09-18 15:15 - 2013-01-10 01:26 - 00890880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2013-09-18 15:15 - 2013-01-10 01:26 - 00436736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL 2013-09-18 15:15 - 2013-01-10 01:26 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2013-09-18 15:15 - 2013-01-10 01:26 - 00083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaacmgr.exe 2013-09-18 15:15 - 2013-01-10 01:23 - 02094592 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe 2013-09-18 15:15 - 2013-01-10 01:23 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll 2013-09-18 15:15 - 2013-01-10 01:23 - 01886208 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2013-09-18 15:15 - 2013-01-10 01:23 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2013-09-18 15:15 - 2013-01-10 01:23 - 00256000 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2013-09-18 15:15 - 2013-01-10 01:23 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe 2013-09-18 15:15 - 2013-01-10 01:22 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2013-09-18 15:15 - 2013-01-10 01:22 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2013-09-18 15:15 - 2013-01-10 01:22 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL 2013-09-18 15:15 - 2013-01-10 01:22 - 00438272 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll 2013-09-18 15:15 - 2013-01-10 01:22 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2013-09-18 15:15 - 2012-11-02 07:19 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll 2013-09-18 15:15 - 2012-11-02 07:18 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2013-09-18 15:15 - 2012-11-02 07:18 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2013-09-18 15:15 - 2012-11-02 07:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\adhapi.dll 2013-09-18 15:15 - 2012-11-02 07:18 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll 2013-09-18 15:15 - 2012-11-02 07:18 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll 2013-09-18 15:14 - 2013-04-09 07:33 - 00489576 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2013-09-18 15:14 - 2013-04-09 07:33 - 00446792 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2013-09-18 15:14 - 2013-04-09 07:33 - 00253544 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2013-09-18 15:14 - 2013-04-09 07:20 - 00306952 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_10ec.dll 2013-09-18 15:14 - 2013-04-09 07:20 - 00086280 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll 2013-09-18 15:14 - 2013-04-09 07:18 - 00077960 _____ (Microsoft Corporation) C:\Windows\system32\kdvm.dll 2013-09-18 15:14 - 2013-04-09 07:17 - 01829408 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-09-18 15:14 - 2013-04-09 06:52 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2013-09-18 15:14 - 2013-04-09 06:52 - 00804352 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe 2013-09-18 15:14 - 2013-04-09 06:52 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2013-09-18 15:14 - 2013-04-09 06:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2013-09-18 15:14 - 2013-04-09 06:52 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2013-09-18 15:14 - 2013-04-09 06:51 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2013-09-18 15:14 - 2013-04-09 06:51 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2013-09-18 15:14 - 2013-04-09 06:51 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-09-18 15:14 - 2013-04-09 06:51 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 01285632 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 00745984 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 00435200 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\GenuineCenter.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2013-09-18 15:14 - 2013-04-09 06:50 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 01444864 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00817152 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\fhengine.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2013-09-18 15:14 - 2013-04-09 06:49 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll 2013-09-18 15:14 - 2013-04-09 06:48 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2013-09-18 15:14 - 2013-04-09 04:34 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys 2013-09-18 15:14 - 2013-04-09 04:33 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2013-09-18 15:14 - 2013-04-09 04:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2013-09-18 15:14 - 2013-04-09 04:32 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys 2013-09-18 15:14 - 2013-04-09 04:31 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2013-09-18 15:14 - 2013-04-09 04:31 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2013-09-18 15:14 - 2013-04-09 01:44 - 00123880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll 2013-09-18 15:14 - 2013-04-09 01:39 - 01408896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-09-18 15:14 - 2013-04-09 01:37 - 00426024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2013-09-18 15:14 - 2013-04-09 01:37 - 00324368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2013-09-18 15:14 - 2013-04-08 23:52 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2013-09-18 15:14 - 2013-04-08 23:52 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2013-09-18 15:14 - 2013-04-08 23:52 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2013-09-18 15:14 - 2013-04-08 23:52 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2013-09-18 15:14 - 2013-04-08 23:51 - 01593344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 01113600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00659456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00403968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fmifs.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll 2013-09-18 15:14 - 2013-04-08 23:51 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll 2013-09-18 15:14 - 2013-04-05 01:30 - 00503080 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2013-09-18 15:14 - 2013-03-16 00:05 - 00298456 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2013-09-18 15:14 - 2013-03-16 00:05 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2013-09-18 15:14 - 2013-03-02 12:39 - 00069864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2013-09-18 15:14 - 2013-03-02 04:43 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2013-09-18 15:14 - 2013-02-07 03:33 - 00754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2013-09-18 15:14 - 2012-12-13 06:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-09-18 15:14 - 2012-12-13 05:59 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-09-18 15:14 - 2012-10-11 07:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2013-09-18 15:14 - 2012-10-11 07:44 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll 2013-09-18 15:14 - 2012-10-11 07:06 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll 2013-09-18 15:14 - 2012-10-11 07:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2013-09-18 15:14 - 2012-09-20 08:33 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\fhmanagew.exe 2013-09-18 15:14 - 2012-09-20 08:33 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp 2013-09-18 15:14 - 2012-09-20 08:33 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp 2013-09-18 15:14 - 2012-09-20 08:32 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll 2013-09-18 15:14 - 2012-09-20 08:32 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll 2013-09-18 15:14 - 2012-09-20 08:32 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll 2013-09-18 15:14 - 2012-09-20 08:32 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll 2013-09-18 15:14 - 2012-09-20 08:32 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2013-09-18 15:14 - 2012-09-20 08:32 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2013-09-18 15:14 - 2012-09-20 08:32 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\fhcat.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\fhshl.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\fhsvc.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchapi.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fhevents.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchph.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\fhlisten.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\fhautoplay.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\fhcleanup.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\fhtask.dll 2013-09-18 15:14 - 2012-09-20 08:31 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll 2013-09-18 15:14 - 2012-09-20 08:12 - 09374208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-09-18 15:14 - 2012-09-20 08:09 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys 2013-09-18 15:14 - 2012-09-20 07:55 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp 2013-09-18 15:14 - 2012-09-20 07:55 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp 2013-09-18 15:14 - 2012-09-20 07:54 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll 2013-09-18 15:14 - 2012-09-20 07:54 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll 2013-09-18 15:14 - 2012-09-20 07:54 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll 2013-09-18 15:14 - 2012-09-20 07:54 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll 2013-09-18 15:14 - 2012-09-20 07:54 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll 2013-09-18 15:14 - 2012-09-20 07:54 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx 2013-09-18 15:14 - 2012-09-20 07:54 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll 2013-09-18 15:14 - 2012-09-20 07:32 - 09374208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-09-18 15:09 - 2013-09-18 15:09 - 00000117 _____ C:\Windows\system32\netcfg-60098000.txt 2013-09-18 15:09 - 2013-09-18 15:09 - 00000117 _____ C:\Windows\system32\netcfg-60097062.txt 2013-09-18 12:00 - 2013-09-18 12:00 - 00000117 _____ C:\Windows\system32\netcfg-48769296.txt 2013-09-18 12:00 - 2013-09-18 12:00 - 00000117 _____ C:\Windows\system32\netcfg-48769203.txt ==================== One Month Modified Files and Folders ======= 2013-10-18 21:52 - 2013-09-18 22:42 - 00000000 ____D C:\Users\Christian\Downloads\Eminem - Relapse 2 (2013) 2013-10-18 21:52 - 2013-09-16 23:23 - 00000000 ____D C:\Users\Christian\Downloads\Alligatoah -Triebwerke 2013-10-18 21:51 - 2013-10-18 21:51 - 00000550 _____ C:\Users\Christian\Downloads\defogger_disable.log 2013-10-18 21:51 - 2013-10-18 21:51 - 00000168 _____ C:\Users\Christian\defogger_reenable 2013-10-18 21:51 - 2013-09-13 14:26 - 00000000 ____D C:\Users\Christian 2013-10-18 21:47 - 2013-10-18 21:47 - 00050477 _____ C:\Users\Christian\Downloads\Defogger.exe 2013-10-18 21:37 - 2013-09-13 15:14 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-10-18 21:37 - 2012-08-10 17:45 - 00000821 _____ C:\Windows\SysWOW64\bscs.ini 2013-10-18 21:34 - 2012-09-23 18:34 - 00004524 _____ C:\Windows\SysWOW64\LOCALSERVICE.INI 2013-10-18 21:34 - 2012-09-23 18:34 - 00000043 _____ C:\Windows\SysWOW64\LOCALDEVICE.INI 2013-10-18 21:02 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-10-18 20:54 - 2013-09-13 14:49 - 00001864 _____ C:\Windows\Tasks\LyriXeeker-1-firefoxinstaller.job 2013-10-18 20:50 - 2013-09-13 14:50 - 00001230 _____ C:\Windows\Tasks\LyriXeeker-1-codedownloader.job 2013-10-18 20:30 - 2012-08-28 04:00 - 00830120 _____ C:\Windows\system32\perfh007.dat 2013-10-18 20:30 - 2012-08-28 04:00 - 00188224 _____ C:\Windows\system32\perfc007.dat 2013-10-18 20:30 - 2012-07-26 09:28 - 01949368 _____ C:\Windows\system32\PerfStringBackup.INI 2013-10-18 20:03 - 2013-09-19 12:50 - 00000000 ___RD C:\Users\Christian\Dropbox 2013-10-18 20:03 - 2013-09-19 12:46 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Dropbox 2013-10-18 20:03 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-10-18 20:03 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-10-18 20:02 - 2013-10-18 19:57 - 00000000 ____D C:\AdwCleaner 2013-10-18 20:00 - 2013-09-13 16:55 - 00000000 ____D C:\Users\Christian\AppData\Local\Pokki 2013-10-18 19:56 - 2013-10-18 19:56 - 01050644 _____ C:\Users\Christian\Downloads\adwcleaner_3.0.0.8.exe 2013-10-18 19:56 - 2013-10-18 19:55 - 00024126 _____ C:\Users\Christian\Downloads\Addition.txt 2013-10-18 19:53 - 2013-10-18 19:53 - 00000000 ____D C:\FRST 2013-10-18 19:53 - 2013-10-18 19:52 - 01954124 _____ (Farbar) C:\Users\Christian\Downloads\FRST64.exe 2013-10-18 19:47 - 2013-10-18 19:46 - 53407584 _____ C:\Users\Christian\Downloads\Kasabian - Velociraptor! (Limited Edition).part2.rar 2013-10-18 19:47 - 2013-10-18 19:45 - 105906176 _____ C:\Users\Christian\Downloads\Kasabian - Velociraptor! (Limited Edition).part1.rar 2013-10-18 19:32 - 2013-10-13 18:21 - 00000000 ____D C:\Users\Christian\AppData\Local\Adobe 2013-10-16 22:13 - 2012-08-04 00:23 - 00457800 _____ C:\Windows\PFRO.log 2013-10-16 00:04 - 2013-09-13 14:27 - 01120075 _____ C:\Windows\WindowsUpdate.log 2013-10-16 00:00 - 2013-10-16 00:00 - 00001153 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-10-16 00:00 - 2013-10-16 00:00 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Mozilla 2013-10-16 00:00 - 2013-10-16 00:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-10-16 00:00 - 2013-09-13 14:42 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-10-15 23:41 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-10-15 23:25 - 2013-10-13 18:21 - 00000000 ____D C:\ProgramData\Adobe 2013-10-14 00:57 - 2013-09-23 11:05 - 05103552 _____ C:\Windows\system32\FNTCACHE.DAT 2013-10-13 19:27 - 2013-09-13 14:29 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Adobe 2013-10-13 19:26 - 2013-10-13 19:26 - 00001074 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk 2013-10-13 19:25 - 2013-10-13 18:33 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-10-13 19:01 - 2013-10-13 18:06 - 309831310 _____ C:\Users\Christian\Downloads\updapcc_14.1.rar 2013-10-13 18:39 - 2013-10-13 18:39 - 00003514 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-***** 2013-10-13 18:39 - 2013-10-13 18:37 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2013-10-13 18:35 - 2013-10-13 18:35 - 00000000 ____D C:\Program Files\Adobe 2013-10-13 18:35 - 2013-10-13 18:31 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-10-13 18:18 - 2013-10-13 18:18 - 00000000 ____D C:\Users\Christian\Desktop\Adobe CC 2013-10-13 14:25 - 2013-09-13 14:27 - 00000000 ____D C:\Users\Christian\AppData\Local\Packages 2013-10-13 14:18 - 2013-09-14 16:21 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log 2013-10-13 14:18 - 2013-09-14 16:21 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2013-10-13 14:13 - 2013-10-13 14:13 - 890378419 _____ C:\Windows\MEMORY.DMP 2013-10-13 14:13 - 2013-10-13 14:13 - 00285584 _____ C:\Windows\Minidump\101313-12328-01.dmp 2013-10-13 14:13 - 2013-10-13 14:13 - 00000000 ____D C:\Windows\Minidump 2013-10-13 03:05 - 2012-08-04 02:02 - 00000000 ____D C:\SWSetup 2013-10-13 03:03 - 2013-10-13 03:03 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-10-13 01:39 - 2012-08-27 18:25 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2013-10-13 01:39 - 2012-07-26 20:40 - 00000000 ____D C:\Program Files\Hewlett-Packard 2013-10-13 01:14 - 2013-09-13 15:14 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-10-13 01:13 - 2013-10-13 01:13 - 100651105 _____ C:\Windows\SysWOW64\虷L¥ 2013-10-10 18:13 - 2012-07-26 09:21 - 00050100 _____ C:\Windows\setupact.log 2013-10-03 23:03 - 2013-10-03 22:51 - 576716815 _____ C:\Users\Christian\Downloads\Feuchtgebiete 2013 - CRG.part1.rar 2013-10-03 23:03 - 2013-10-03 22:51 - 474331644 _____ C:\Users\Christian\Downloads\Feuchtgebiete 2013 - CRG.part2.rar 2013-10-03 15:24 - 2013-09-13 14:44 - 00000000 ____D C:\Users\Christian\AppData\Local\Mozilla 2013-10-03 12:36 - 2013-09-13 16:58 - 00002106 _____ C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk 2013-09-30 03:46 - 2013-09-13 19:17 - 00000000 ____D C:\Users\Christian\AppData\Roaming\hpqlog 2013-09-29 23:44 - 2012-09-23 18:33 - 00000000 ____D C:\Windows\Hewlett-Packard 2013-09-24 12:31 - 2013-09-13 14:36 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2676852233-3817916550-2005382525-1001 2013-09-24 11:35 - 2013-09-24 11:35 - 00000000 _____ C:\Users\Christian\Desktop\1344946.txt 2013-09-24 11:01 - 2013-09-24 11:01 - 98852061 _____ C:\Windows\SysWOW64\檬솜Lÿ 2013-09-22 23:43 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-09-22 23:43 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2013-09-22 23:43 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Defender 2013-09-22 23:43 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-09-22 23:15 - 2013-09-22 23:14 - 57200811 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part82.rar.part 2013-09-22 23:15 - 2013-09-22 23:13 - 65531275 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part79.rar.part 2013-09-22 23:15 - 2013-09-22 23:13 - 62972967 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part81.rar.part 2013-09-22 23:15 - 2013-09-22 23:13 - 56928631 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part80.rar.part 2013-09-22 23:13 - 2013-09-22 23:11 - 54715443 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part77.rar.part 2013-09-22 23:13 - 2013-09-22 23:09 - 60768842 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part75.rar.part 2013-09-22 23:13 - 2013-09-22 23:07 - 92368870 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part74.rar.part 2013-09-22 23:12 - 2013-09-22 23:07 - 78265051 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part73.rar.part 2013-09-22 23:11 - 2013-09-22 23:09 - 55974327 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part76.rar.part 2013-09-22 23:09 - 2013-09-22 23:04 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part72.rar 2013-09-22 23:09 - 2013-09-22 23:04 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part71.rar 2013-09-22 23:07 - 2013-09-22 23:01 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part70.rar 2013-09-22 23:07 - 2013-09-22 23:01 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part69.rar 2013-09-22 23:04 - 2013-09-22 22:59 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part68.rar 2013-09-22 23:04 - 2013-09-22 22:58 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part67.rar 2013-09-22 23:01 - 2013-09-22 22:56 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part66.rar 2013-09-22 23:01 - 2013-09-22 22:55 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part65.rar 2013-09-22 22:59 - 2013-09-22 22:53 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part64.rar 2013-09-22 22:58 - 2013-09-22 22:53 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part63.rar 2013-09-22 22:56 - 2013-09-22 22:50 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part62.rar 2013-09-22 22:55 - 2013-09-22 22:49 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part61.rar 2013-09-22 22:53 - 2013-09-22 22:48 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part58.rar 2013-09-22 22:53 - 2013-09-22 22:16 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part60.rar 2013-09-22 22:50 - 2013-09-22 22:45 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part57.rar 2013-09-22 22:49 - 2013-09-22 22:45 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part56.rar 2013-09-22 22:48 - 2013-09-22 22:44 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part55.rar 2013-09-22 22:48 - 2013-09-22 22:44 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part54.rar 2013-09-22 22:45 - 2013-09-22 22:39 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part53.rar 2013-09-22 22:45 - 2013-09-22 22:39 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part52.rar 2013-09-22 22:44 - 2013-09-22 22:38 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part51.rar 2013-09-22 22:44 - 2013-09-22 22:38 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part50.rar 2013-09-22 22:39 - 2013-09-22 22:34 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part49.rar 2013-09-22 22:39 - 2013-09-22 22:34 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part48.rar 2013-09-22 22:38 - 2013-09-22 22:33 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part47.rar 2013-09-22 22:38 - 2013-09-22 22:33 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part46.rar 2013-09-22 22:34 - 2013-09-22 22:30 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part45.rar 2013-09-22 22:34 - 2013-09-22 22:29 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part44.rar 2013-09-22 22:33 - 2013-09-22 22:29 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part43.rar 2013-09-22 22:33 - 2013-09-22 22:28 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part42.rar 2013-09-22 22:30 - 2013-09-22 22:24 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part41.rar 2013-09-22 22:29 - 2013-09-22 22:13 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part39.rar 2013-09-22 22:29 - 2013-09-22 22:07 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part35.rar 2013-09-22 22:28 - 2013-09-22 22:13 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part38.rar 2013-09-22 22:28 - 2013-09-22 22:07 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part34.rar 2013-09-22 22:27 - 2013-09-22 22:12 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part37.rar 2013-09-22 22:24 - 2013-09-22 22:16 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part59.rar 2013-09-22 22:24 - 2013-09-22 22:15 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part40.rar 2013-09-22 22:24 - 2013-09-22 22:08 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part36.rar 2013-09-22 22:22 - 2013-09-22 22:05 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part33.rar 2013-09-22 22:08 - 2013-09-22 22:04 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part32.rar 2013-09-22 22:07 - 2013-09-22 22:02 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part31.rar 2013-09-22 22:06 - 2013-09-22 22:02 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part30.rar 2013-09-22 22:05 - 2013-09-22 22:01 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part29.rar 2013-09-22 22:03 - 2013-09-22 21:59 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part28.rar 2013-09-22 22:02 - 2013-09-22 21:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part27.rar 2013-09-22 22:02 - 2013-09-22 21:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part26.rar 2013-09-22 22:01 - 2013-09-22 21:56 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part25.rar 2013-09-22 21:59 - 2013-09-22 21:54 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part24.rar 2013-09-22 21:57 - 2013-09-22 21:53 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part23.rar 2013-09-22 21:57 - 2013-09-22 21:52 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part22.rar 2013-09-22 21:56 - 2013-09-22 21:52 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part21.rar 2013-09-22 21:54 - 2013-09-22 21:49 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part20.rar 2013-09-22 21:53 - 2013-09-22 21:48 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part18.rar 2013-09-22 21:52 - 2013-09-22 21:48 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part19.rar 2013-09-22 21:52 - 2013-09-22 21:47 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part17.rar 2013-09-22 21:49 - 2013-09-22 21:45 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part16.rar 2013-09-22 21:48 - 2013-09-22 21:44 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part15.rar 2013-09-22 21:48 - 2013-09-22 20:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part14.rar 2013-09-22 21:47 - 2013-09-22 21:43 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part13.rar 2013-09-22 21:44 - 2013-09-22 21:40 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part12.rar 2013-09-22 21:44 - 2013-09-22 21:40 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part11.rar 2013-09-22 21:43 - 2013-09-22 21:38 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part09.rar 2013-09-22 21:43 - 2013-09-22 20:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part10.rar 2013-09-22 21:40 - 2013-09-22 20:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part08.rar 2013-09-22 21:40 - 2013-09-22 20:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part07.rar 2013-09-22 21:39 - 2013-09-22 20:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part06.rar 2013-09-22 21:38 - 2013-09-22 20:57 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part05.rar 2013-09-22 21:35 - 2013-09-22 21:30 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part04.rar 2013-09-22 21:35 - 2013-09-22 21:30 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part03.rar 2013-09-22 21:35 - 2013-09-22 21:30 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part01.rar 2013-09-22 21:34 - 2013-09-22 21:30 - 105906248 _____ C:\Users\Christian\Downloads\exq-springbreakers-1080p.part02.rar 2013-09-22 21:17 - 2013-09-22 21:17 - 00000000 ____D C:\Users\Christian\Downloads\Sabaton - 2013 - Swedish Empire Live (320) 2013-09-22 21:05 - 2013-09-22 21:03 - 00000000 ____D C:\Users\Christian\Downloads\Linkin Park & Eminem 2013-09-21 23:43 - 2013-09-13 14:28 - 00003727 _____ C:\Users\Christian\AppData\Roaming\AbsoluteReminder.xml 2013-09-20 01:19 - 2013-09-22 21:16 - 00000000 ____D C:\Users\Christian\Downloads\a-tr.320CD 2013-09-19 23:54 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ToastData 2013-09-19 23:54 - 2012-07-26 10:12 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2013-09-19 23:54 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\SysWOW64\en-GB 2013-09-19 23:54 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\en-GB 2013-09-19 23:54 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2013-09-19 23:54 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-09-19 23:51 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2013-09-19 23:51 - 2012-07-26 10:12 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2013-09-19 23:51 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2013-09-19 23:51 - 2012-07-26 10:12 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2013-09-19 23:51 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\SysWOW64\Dism 2013-09-19 23:51 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\Dism 2013-09-19 23:28 - 2013-09-19 23:27 - 00000000 ____D C:\Windows\system32\MRT 2013-09-19 23:23 - 2013-09-19 23:23 - 00000117 _____ C:\Windows\system32\netcfg-176120843.txt 2013-09-19 23:23 - 2013-09-19 23:23 - 00000117 _____ C:\Windows\system32\netcfg-176120640.txt 2013-09-19 23:23 - 2013-09-19 23:23 - 00000117 _____ C:\Windows\system32\netcfg-176117515.txt 2013-09-19 23:22 - 2013-09-19 23:22 - 00000117 _____ C:\Windows\system32\netcfg-176086406.txt 2013-09-19 23:22 - 2013-09-19 23:22 - 00000117 _____ C:\Windows\system32\netcfg-176085937.txt 2013-09-19 23:22 - 2013-09-19 23:22 - 00000117 _____ C:\Windows\system32\netcfg-176085734.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138540375.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138537578.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138537515.txt 2013-09-19 12:56 - 2013-09-19 12:56 - 00000117 _____ C:\Windows\system32\netcfg-138537421.txt 2013-09-19 12:51 - 2013-09-17 22:39 - 00001952 _____ C:\Users\Christian\Desktop\Uni.lnk 2013-09-19 12:48 - 2013-09-19 12:48 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-09-19 12:48 - 2013-09-13 14:29 - 00000000 ___RD C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-19 12:46 - 2013-09-19 12:46 - 32966136 _____ (Dropbox, Inc.) C:\Users\Christian\Downloads\Dropbox 2.0.26.exe 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137744062.txt 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137742515.txt 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137742437.txt 2013-09-19 12:43 - 2013-09-19 12:43 - 00000117 _____ C:\Windows\system32\netcfg-137742343.txt 2013-09-19 12:42 - 2013-09-19 12:42 - 00000117 _____ C:\Windows\system32\netcfg-137643937.txt 2013-09-19 12:41 - 2013-09-19 12:41 - 00000117 _____ C:\Windows\system32\netcfg-137638906.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132313281.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132313156.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132313093.txt 2013-09-19 11:13 - 2013-09-19 11:13 - 00000117 _____ C:\Windows\system32\netcfg-132310125.txt 2013-09-19 10:58 - 2013-09-19 10:58 - 00000117 _____ C:\Windows\system32\netcfg-131403828.txt 2013-09-19 10:58 - 2013-09-19 10:58 - 00000117 _____ C:\Windows\system32\netcfg-131403734.txt 2013-09-19 10:58 - 2013-09-19 10:57 - 00000117 _____ C:\Windows\system32\netcfg-131400609.txt 2013-09-19 10:57 - 2013-09-19 10:57 - 00000117 _____ C:\Windows\system32\netcfg-131399546.txt 2013-09-19 10:56 - 2013-09-19 10:56 - 00000117 _____ C:\Windows\system32\netcfg-131304250.txt 2013-09-19 01:26 - 2012-07-26 10:14 - 00694232 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-19 01:26 - 2012-07-26 10:14 - 00078296 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-19 00:42 - 2013-09-19 00:42 - 00000117 _____ C:\Windows\system32\netcfg-94496625.txt 2013-09-19 00:42 - 2013-09-19 00:42 - 00000117 _____ C:\Windows\system32\netcfg-94493890.txt 2013-09-18 23:56 - 2013-09-18 23:56 - 00000117 _____ C:\Windows\system32\netcfg-91727125.txt 2013-09-18 23:56 - 2013-09-18 23:56 - 00000117 _____ C:\Windows\system32\netcfg-91727031.txt 2013-09-18 22:46 - 2013-09-18 22:46 - 00000117 _____ C:\Windows\system32\netcfg-87527265.txt 2013-09-18 22:46 - 2013-09-18 22:46 - 00000117 _____ C:\Windows\system32\netcfg-87527062.txt 2013-09-18 22:43 - 2013-09-13 14:50 - 00000000 ____D C:\Program Files\JDownloader 2013-09-18 22:05 - 2013-09-18 22:05 - 00000117 _____ C:\Windows\system32\netcfg-85072015.txt 2013-09-18 22:05 - 2013-09-18 22:05 - 00000117 _____ C:\Windows\system32\netcfg-85071921.txt 2013-09-18 22:05 - 2013-09-18 22:05 - 00000117 _____ C:\Windows\system32\netcfg-85071828.txt 2013-09-18 22:04 - 2013-09-18 22:04 - 00000117 _____ C:\Windows\system32\netcfg-85009546.txt 2013-09-18 16:05 - 2013-09-18 16:05 - 00000117 _____ C:\Windows\system32\netcfg-63477609.txt 2013-09-18 16:05 - 2013-09-18 16:05 - 00000117 _____ C:\Windows\system32\netcfg-63477531.txt 2013-09-18 15:09 - 2013-09-18 15:09 - 00000117 _____ C:\Windows\system32\netcfg-60098000.txt 2013-09-18 15:09 - 2013-09-18 15:09 - 00000117 _____ C:\Windows\system32\netcfg-60097062.txt 2013-09-18 12:00 - 2013-09-18 12:00 - 00000117 _____ C:\Windows\system32\netcfg-48769296.txt 2013-09-18 12:00 - 2013-09-18 12:00 - 00000117 _____ C:\Windows\system32\netcfg-48769203.txt Some content of TEMP: ==================== C:\Users\Christian\AppData\Local\Temp\AAMHelper.exe C:\Users\Christian\AppData\Local\Temp\AdobeApplicationManager.exe C:\Users\Christian\AppData\Local\Temp\Extract.exe C:\Users\Christian\AppData\Local\Temp\fp_pl_pfs_installer-1.exe C:\Users\Christian\AppData\Local\Temp\fp_pl_pfs_installer-2.exe C:\Users\Christian\AppData\Local\Temp\fp_pl_pfs_installer-3.exe C:\Users\Christian\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\Christian\AppData\Local\Temp\ose00000.exe C:\Users\Christian\AppData\Local\Temp\Quarantine.exe C:\Users\Christian\AppData\Local\Temp\SP59202.exe C:\Users\Christian\AppData\Local\Temp\SP59835.exe C:\Users\Christian\AppData\Local\Temp\SP59927.exe C:\Users\Christian\AppData\Local\Temp\SP60051.exe C:\Users\Christian\AppData\Local\Temp\tmpAF00.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-10-07 23:43 ==================== End Of Log ============================ Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 21:51 on 18/10/2013 (Christian) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. HKCU:DAEMON Tools Lite -> Removed Checking for services/drivers... -=E.O.F=- Code:
ATTFilter GMER 2.1.19163 - hxxp://www.gmer.net Rootkit scan 2013-10-18 22:05:38 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000036 Intel___ rev.1.0. 465,76GB Running: gmer_2.1.19163.exe; Driver: C:\Users\CHRIST~1\AppData\Local\Temp\fwldafod.sys ---- User code sections - GMER 2.1 ---- .text C:\Windows\system32\atiesrxx.exe[916] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ff942b177a 4 bytes [2B, 94, FF, 07] .text C:\Windows\system32\atiesrxx.exe[916] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ff942b1782 4 bytes [2B, 94, FF, 07] .text C:\Windows\system32\atieclxx.exe[1048] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ff942b177a 4 bytes [2B, 94, FF, 07] .text C:\Windows\system32\atieclxx.exe[1048] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ff942b1782 4 bytes [2B, 94, FF, 07] .text C:\Windows\system32\atieclxx.exe[1048] C:\Windows\system32\WSOCK32.dll!recvfrom + 742 000007ff8ec31b32 4 bytes [C3, 8E, FF, 07] .text C:\Windows\system32\atieclxx.exe[1048] C:\Windows\system32\WSOCK32.dll!recvfrom + 750 000007ff8ec31b3a 4 bytes [C3, 8E, FF, 07] ? C:\Windows\SYSTEM32\BsHelpCSps.dll [1920] entry point in ".data" section 00000000027b5055 .text C:\Windows\Explorer.EXE[2924] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 742 000007ff8ec31b32 4 bytes [C3, 8E, FF, 07] .text C:\Windows\Explorer.EXE[2924] C:\Windows\SYSTEM32\WSOCK32.dll!recvfrom + 750 000007ff8ec31b3a 4 bytes [C3, 8E, FF, 07] .text C:\Windows\Explorer.EXE[2924] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 690 0000000003b71532 3 bytes [B7, 03, 00] .text C:\Windows\Explorer.EXE[2924] C:\Windows\SYSTEM32\MSIMG32.dll!GradientFill + 698 0000000003b7153a 3 bytes [B7, 03, 00] .text C:\Windows\Explorer.EXE[2924] C:\Windows\SYSTEM32\MSIMG32.dll!TransparentBlt + 246 0000000003b7165a 3 bytes [B7, 03, 00] .text C:\Windows\System32\igfxpers.exe[3220] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ff942b177a 4 bytes [2B, 94, FF, 07] .text C:\Windows\System32\igfxpers.exe[3220] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ff942b1782 4 bytes [2B, 94, FF, 07] .text C:\Program Files\Synaptics\SynTP\SynTPEnh.exe[5300] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ff942b177a 4 bytes [2B, 94, FF, 07] .text C:\Program Files\Synaptics\SynTP\SynTPEnh.exe[5300] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ff942b1782 4 bytes [2B, 94, FF, 07] ? C:\Windows\SYSTEM32\BsHelpCSps.dll [5588] entry point in ".data" section 00000000018a5055 ? C:\Windows\SYSTEM32\BlueSoleilCSps.dll [5588] entry point in ".rdata" section 0000000003124085 .text C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE[5856] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007ff942b177a 4 bytes [2B, 94, FF, 07] .text C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE[5856] C:\Windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007ff942b1782 4 bytes [2B, 94, FF, 07] ---- Threads - GMER 2.1 ---- Thread C:\Windows\system32\csrss.exe [600:624] fffff9600094f5e8 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ---- ![]() Schon jetzt ein großes Dankeschön, Liebe Grüße fragg3r |