![]() |
|
Log-Analyse und Auswertung: Win7: (evt.e) Malwarereste zu entfernenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #7 |
![]() | ![]() Win7: (evt.e) Malwarereste zu entfernen FRST Part 3: Code:
ATTFilter 2013-10-10 07:36 - 2013-10-10 07:36 - 00000000 _____ C:\Windows\ativpsrm.bin 2013-10-10 07:35 - 2013-10-10 07:35 - 00000000 ____D C:\Program Files\ATI Technologies 2013-10-10 07:35 - 2013-10-10 07:35 - 00000000 ____D C:\Program Files (x86)\ATI Technologies 2013-10-10 07:35 - 2010-11-25 22:20 - 08120320 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2013-10-10 07:35 - 2010-11-25 21:19 - 21610496 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2013-10-10 07:35 - 2010-11-25 21:02 - 16702976 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2013-10-10 07:35 - 2010-11-25 20:58 - 00550400 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2013-10-10 07:35 - 2010-11-25 20:58 - 00143360 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2013-10-10 07:35 - 2010-11-25 20:58 - 00121776 _____ C:\Windows\system32\atiapfxx.blb 2013-10-10 07:35 - 2010-11-25 20:57 - 00648704 _____ (ATI Technologies Inc. ) C:\Windows\system32\aticfx64.dll 2013-10-10 07:35 - 2010-11-25 20:54 - 00478720 _____ (AMD) C:\Windows\system32\atieclxx.exe 2013-10-10 07:35 - 2010-11-25 20:54 - 00462848 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll 2013-10-10 07:35 - 2010-11-25 20:54 - 00203776 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2013-10-10 07:35 - 2010-11-25 20:53 - 00120320 _____ (AMD) C:\Windows\system32\atitmm64.dll 2013-10-10 07:35 - 2010-11-25 20:52 - 00423424 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdl64.dll 2013-10-10 07:35 - 2010-11-25 20:52 - 00356352 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\atipdlxx.dll 2013-10-10 07:35 - 2010-11-25 20:52 - 00278528 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\Oemdspif.dll 2013-10-10 07:35 - 2010-11-25 20:52 - 00059392 _____ (ATI Technologies, Inc.) C:\Windows\system32\atiedu64.dll 2013-10-10 07:35 - 2010-11-25 20:52 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll 2013-10-10 07:35 - 2010-11-25 20:52 - 00016384 _____ (AMD) C:\Windows\system32\atimuixx.dll 2013-10-10 07:35 - 2010-11-25 20:49 - 04066816 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2013-10-10 07:35 - 2010-11-25 20:40 - 04794368 _____ (ATI Technologies Inc. ) C:\Windows\system32\atidxx64.dll 2013-10-10 07:35 - 2010-11-25 20:30 - 06815232 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2013-10-10 07:35 - 2010-11-25 20:30 - 04122624 _____ (ATI Technologies Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2013-10-10 07:35 - 2010-11-25 20:30 - 00051200 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2013-10-10 07:35 - 2010-11-25 20:30 - 00046080 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2013-10-10 07:35 - 2010-11-25 20:30 - 00044544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2013-10-10 07:35 - 2010-11-25 20:30 - 00044032 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2013-10-10 07:35 - 2010-11-25 20:29 - 03217408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2013-10-10 07:35 - 2010-11-25 20:28 - 05441024 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2013-10-10 07:35 - 2010-11-25 20:27 - 00667648 _____ C:\Windows\system32\atiumd6a.cap 2013-10-10 07:35 - 2010-11-25 20:24 - 05258240 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumd64.dll 2013-10-10 07:35 - 2010-11-25 20:24 - 00058880 _____ (AMD) C:\Windows\system32\coinst.dll 2013-10-10 07:35 - 2010-11-25 20:22 - 03460096 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2013-10-10 07:35 - 2010-11-25 20:22 - 00667648 _____ C:\Windows\SysWOW64\atiumdva.cap 2013-10-10 07:35 - 2010-11-25 20:17 - 00351232 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2013-10-10 07:35 - 2010-11-25 20:17 - 00249856 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2013-10-10 07:35 - 2010-11-25 20:17 - 00031744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2013-10-10 07:35 - 2010-11-25 20:17 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2013-10-10 07:35 - 2010-11-25 20:17 - 00012800 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2013-10-10 07:35 - 2010-11-25 20:17 - 00012800 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2013-10-10 07:35 - 2010-11-25 20:16 - 00289792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2013-10-10 07:35 - 2010-11-25 20:16 - 00039936 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2013-10-10 07:35 - 2010-11-25 20:16 - 00030720 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2013-10-10 07:35 - 2010-11-25 20:16 - 00027136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2013-10-10 07:35 - 2010-11-25 20:15 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2013-10-10 07:35 - 2010-11-25 20:15 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2013-10-10 07:35 - 2010-11-25 20:15 - 00028672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2013-10-10 07:35 - 2010-11-25 20:09 - 00053760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2013-10-10 07:35 - 2010-11-25 20:09 - 00053760 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2013-10-10 07:35 - 2010-11-25 20:09 - 00052736 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2013-10-10 07:35 - 2010-11-25 20:09 - 00052736 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2013-10-10 07:35 - 2010-11-22 20:06 - 00022305 _____ C:\Windows\atiogl.xml 2013-10-10 07:35 - 2010-11-17 06:04 - 00115216 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdW76.sys 2013-10-10 07:35 - 2010-09-28 13:07 - 00224001 _____ C:\Windows\system32\atiicdxx.dat 2013-10-10 07:35 - 2010-09-17 12:17 - 00002888 _____ C:\Windows\SysWOW64\atipblag.dat 2013-10-10 07:35 - 2010-09-17 12:17 - 00002888 _____ C:\Windows\system32\atipblag.dat 2013-10-10 07:35 - 2010-08-27 12:33 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe 2013-10-10 07:35 - 2009-06-22 09:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe 2013-10-10 07:35 - 2009-05-11 15:35 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atibtmon.exe 2013-10-10 07:34 - 2013-10-10 07:34 - 00000000 ____D C:\Users\Raik\AppData\Local\Dell 2013-10-10 07:34 - 2013-10-10 07:34 - 00000000 ____D C:\Program Files\ATI 2013-10-10 07:07 - 2013-11-03 13:05 - 00000000 ____D C:\Users\Raik 2013-10-10 07:07 - 2013-10-29 22:06 - 00000000 ___RD C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-10-10 07:07 - 2013-10-10 11:22 - 00001425 _____ C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-10-10 07:07 - 2013-10-10 11:22 - 00000000 ___RD C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-10-10 07:07 - 2013-10-10 07:07 - 00000020 ___SH C:\Users\Raik\ntuser.ini 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Vorlagen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Startmenü 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Netzwerkumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Lokale Einstellungen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Eigene Dateien 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Druckumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\AppData\Local\Verlauf 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\AppData\Local\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Vorlagen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Startmenü 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Vorlagen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Startmenü 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Favoriten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Dokumente 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Dokumente und Einstellungen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 __SHD C:\Recovery 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 ____D C:\Users\Raik\AppData\Local\VirtualStore 2013-10-10 07:07 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-10-10 07:07 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-10-10 05:54 - 2013-10-10 07:07 - 00000000 ____D C:\Windows\Panther 2013-10-10 05:54 - 2013-10-10 05:54 - 00008192 __RSH C:\BOOTSECT.BAK 2013-10-10 05:54 - 2010-11-20 13:40 - 00383786 __RSH C:\bootmgr 2013-10-10 05:03 - 2013-11-03 12:43 - 01497589 _____ C:\Windows\WindowsUpdate.log 2013-10-10 04:57 - 2013-10-10 04:57 - 00001313 _____ C:\Windows\TSSysprep.log 2013-10-10 04:56 - 2013-10-10 04:56 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf ==================== One Month Modified Files and Folders ======= 2013-11-03 13:08 - 2013-11-03 13:08 - 00000000 ____D C:\FRST 2013-11-03 13:07 - 2013-11-03 13:07 - 01957098 _____ (Farbar) C:\Users\Raik\Desktop\FRST64.exe 2013-11-03 13:05 - 2013-11-03 13:05 - 00050477 _____ C:\Users\Raik\Desktop\Defogger.exe 2013-11-03 13:05 - 2013-11-03 13:05 - 00000470 _____ C:\Users\Raik\Desktop\defogger_disable.log 2013-11-03 13:05 - 2013-11-03 13:05 - 00000000 _____ C:\Users\Raik\defogger_reenable 2013-11-03 13:05 - 2013-10-10 07:07 - 00000000 ____D C:\Users\Raik 2013-11-03 12:59 - 2013-10-29 21:12 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-03 12:46 - 2009-07-14 05:45 - 00013712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-03 12:46 - 2009-07-14 05:45 - 00013712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-03 12:43 - 2013-10-10 05:03 - 01497589 _____ C:\Windows\WindowsUpdate.log 2013-11-03 12:43 - 2009-07-14 18:58 - 00657438 _____ C:\Windows\system32\perfh007.dat 2013-11-03 12:43 - 2009-07-14 18:58 - 00130810 _____ C:\Windows\system32\perfc007.dat 2013-11-03 12:43 - 2009-07-14 06:13 - 01507106 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-03 12:39 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-03 12:39 - 2009-07-14 05:51 - 00024946 _____ C:\Windows\setupact.log 2013-11-03 11:40 - 2013-10-10 08:56 - 00146334 _____ C:\Windows\PFRO.log 2013-11-03 11:40 - 2009-07-14 05:45 - 00460504 _____ C:\Windows\system32\FNTCACHE.DAT 2013-11-02 19:00 - 2013-10-10 12:12 - 00000000 ____D C:\Users\Raik\Documents\Outlook-Dateien 2013-11-02 17:53 - 2013-11-02 17:53 - 00000000 ____D C:\Users\Raik\AppData\Roaming\Panda Security 2013-11-02 17:53 - 2013-11-02 17:53 - 00000000 ____D C:\ProgramData\Panda Security 2013-11-02 17:53 - 2013-11-02 17:53 - 00000000 ____D C:\Program Files (x86)\Panda Security 2013-11-02 17:53 - 2013-10-10 07:37 - 00109296 _____ C:\Users\Raik\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-02 17:18 - 2013-10-10 11:43 - 00001912 _____ C:\Windows\epplauncher.mif 2013-11-02 16:18 - 2013-11-02 16:18 - 00845944 _____ C:\Users\Raik\Downloads\PandaCloud23Antivirus.exe 2013-11-02 15:43 - 2013-11-02 15:41 - 123853152 _____ C:\Users\Raik\Downloads\avira_free_antivirus_de.exe 2013-10-31 15:37 - 2013-10-31 15:37 - 719551604 _____ C:\Windows\MEMORY.DMP 2013-10-31 15:37 - 2013-10-31 15:37 - 00274640 _____ C:\Windows\Minidump\103113-14773-01.dmp 2013-10-31 15:37 - 2013-10-31 15:37 - 00000000 ____D C:\Windows\Minidump 2013-10-29 23:06 - 2013-10-29 22:53 - 00000000 ____D C:\Users\Raik\AppData\Local\Microsoft Games 2013-10-29 23:05 - 2013-10-29 21:00 - 00000000 ____D C:\Program Files (x86)\BonanzaDealsLive 2013-10-29 22:48 - 2013-10-29 21:13 - 00000000 ____D C:\Program Files (x86)\IminentToolbar 2013-10-29 22:19 - 2013-10-29 22:19 - 00000000 ____D C:\Windows\system32\appmgmt 2013-10-29 22:06 - 2013-10-29 21:03 - 00000000 ____D C:\Program Files (x86)\MyPC Backup 2013-10-29 22:06 - 2013-10-10 07:07 - 00000000 ___RD C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-10-29 22:05 - 2013-10-29 21:00 - 00000000 ____D C:\Program Files (x86)\BonanzaDeals 2013-10-29 21:53 - 2013-10-29 21:12 - 00000898 _____ C:\Windows\SysWOW64\InstallUtil.InstallLog 2013-10-29 21:25 - 2013-10-29 21:25 - 00819168 _____ (Google Inc.) C:\Users\Raik\Downloads\ChromeSetup(1).exe 2013-10-29 21:24 - 2013-10-29 21:24 - 00002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-10-29 21:12 - 2013-10-29 21:12 - 00697272 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-10-29 21:12 - 2013-10-29 21:12 - 00073656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-10-29 21:12 - 2013-10-29 21:12 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-10-29 21:12 - 2013-10-29 21:12 - 00000000 ____D C:\Windows\system32\Macromed 2013-10-29 21:11 - 2013-10-29 21:11 - 00169272 _____ (Firseria·s·l·) C:\Users\Raik\Downloads\Google Chrome.exe 2013-10-29 21:07 - 2013-10-29 21:00 - 00000000 ____D C:\Users\Raik\AppData\Local\Adobe 2013-10-29 21:05 - 2013-10-29 21:05 - 00000000 ____D C:\Users\Raik\Documents\Optimizer Pro 2013-10-29 21:00 - 2013-10-29 21:00 - 00000000 ____D C:\Users\Raik\AppData\Roaming\FoxTab 2013-10-29 21:00 - 2013-10-29 21:00 - 00000000 ____D C:\Users\Raik\AppData\Local\BonanzaDealsLive 2013-10-29 21:00 - 2013-10-29 21:00 - 00000000 ____D C:\ProgramData\BonanzaDealsLive 2013-10-29 20:59 - 2013-10-29 20:59 - 00000000 ____D C:\Users\Raik\AppData\Roaming\UpdaterEX 2013-10-29 20:58 - 2013-10-29 20:58 - 00683016 _____ C:\Users\Raik\Downloads\Adobe_Reader_setup.exe 2013-10-28 20:55 - 2013-10-25 11:04 - 00000000 ____D C:\Users\Raik\Documents\Haushaltsordner 2013-10-28 20:45 - 2013-10-25 09:15 - 00000000 ____D C:\Users\Raik\Documents\Arbeit 2013-10-26 20:57 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-10-26 19:14 - 2013-10-26 19:13 - 73404238 _____ C:\Users\Raik\Downloads\1995 Mod ().rar 2013-10-26 19:04 - 2013-10-26 19:03 - 103101466 _____ C:\Users\Raik\Downloads\F1_2008_Mod_GPGMG.rar 2013-10-26 18:59 - 2013-10-26 18:59 - 05228785 _____ C:\Users\Raik\Downloads\Patch96_infogrames.rar 2013-10-26 18:55 - 2013-10-26 18:54 - 00001157 _____ C:\Users\Raik\Desktop\Continue Zip Extractor Installation.lnk 2013-10-26 18:30 - 2013-10-26 18:30 - 00000218 _____ C:\Windows\Directx.log 2013-10-26 18:30 - 2013-10-26 18:30 - 00000000 ____D C:\Program Files (x86)\directx 2013-10-25 09:26 - 2013-10-25 09:26 - 00000000 ___HD C:\ProgramData\CanonBJ 2013-10-25 09:19 - 2013-10-25 09:19 - 00350208 _____ C:\Users\Raik\Downloads\Anruflisten Neukunden.xls 2013-10-25 09:06 - 2013-10-25 09:06 - 00000000 ____D C:\Users\Raik\AppData\Local\Google 2013-10-25 09:06 - 2013-10-25 09:06 - 00000000 ____D C:\Program Files (x86)\Google 2013-10-25 09:03 - 2013-10-25 09:03 - 00819192 _____ (Google Inc.) C:\Users\Raik\Downloads\ChromeSetup.exe 2013-10-24 17:28 - 2013-10-24 17:28 - 00000000 ____D C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-10-24 17:28 - 2013-10-24 17:28 - 00000000 ____D C:\Program Files (x86)\Infogrames 2013-10-23 18:14 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-10-17 20:31 - 2013-10-17 20:31 - 00169192 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINAflt.sys 2013-10-11 10:46 - 2013-10-11 10:46 - 00206056 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINKNC.sys 2013-10-11 10:46 - 2013-10-11 10:46 - 00137960 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINProt.sys 2013-10-11 10:46 - 2013-10-11 10:46 - 00124648 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINProc.sys 2013-10-11 10:46 - 2013-10-11 10:46 - 00122600 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINFile.sys 2013-10-11 10:46 - 2013-10-11 10:46 - 00105704 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSINReg.sys 2013-10-10 12:12 - 2013-10-10 12:12 - 01526060 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-10-10 11:55 - 2013-10-10 11:43 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-10-10 11:55 - 2013-10-10 11:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-10-10 11:32 - 2013-10-10 08:16 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-10-10 11:22 - 2013-10-10 11:22 - 00000000 ____D C:\Users\Raik\AppData\Roaming\Adobe 2013-10-10 11:22 - 2013-10-10 07:07 - 00001425 _____ C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-10-10 11:22 - 2013-10-10 07:07 - 00000000 ___RD C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-10-10 11:19 - 2009-07-14 19:18 - 00000000 ____D C:\Program Files\Windows Journal 2013-10-10 11:19 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-10-10 11:19 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-10-10 11:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK 2013-10-10 11:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2013-10-10 11:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\zh-HK 2013-10-10 11:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-10-10 11:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-10-10 11:05 - 2013-10-10 11:01 - 00011018 _____ C:\Windows\IE10_main.log 2013-10-10 11:02 - 2013-10-10 11:02 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-10-10 11:02 - 2013-10-10 11:02 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-10-10 11:02 - 2013-10-10 11:02 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-10-10 11:02 - 2013-10-10 11:02 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-10-10 11:02 - 2013-10-10 11:02 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-10-10 11:02 - 2013-10-10 11:02 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-10-10 11:02 - 2013-10-10 11:02 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-10-10 11:02 - 2013-10-10 11:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-10-10 11:02 - 2013-10-10 11:02 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-10-10 11:02 - 2013-10-10 11:02 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-10-10 11:02 - 2013-10-10 11:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-10-10 11:02 - 2013-10-10 11:02 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-10-10 11:02 - 2013-10-10 11:02 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-10-10 10:41 - 2013-10-10 07:44 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\2C0A 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0C0A 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0C04 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0816 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0804 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0424 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\041F 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\041E 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\041D 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\041B 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0419 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0416 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0415 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0414 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0413 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0412 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0411 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0410 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\040E 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\040D 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\040C 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\040B 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\040A 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0409 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0408 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0406 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0405 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0404 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Windows\system32\0401 2013-10-10 10:40 - 2013-10-10 10:40 - 00000000 ____D C:\Program Files (x86)\Renesas Electronics 2013-10-10 10:40 - 2009-07-14 18:58 - 00000000 ____D C:\Windows\system32\0407 2013-10-10 10:39 - 2013-10-10 10:39 - 08312353 _____ C:\Users\Raik\Downloads\RENESAS_USB3_Host_Driver_30230_Setup_x86_x64_Binary.zip 2013-10-10 10:33 - 2013-10-10 10:33 - 00000017 _____ C:\Users\Raik\AppData\Local\resmon.resmoncfg 2013-10-10 10:15 - 2009-07-14 03:34 - 00000478 _____ C:\Windows\win.ini 2013-10-10 09:45 - 2009-07-14 19:18 - 00000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents 2013-10-10 09:45 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-10-10 09:45 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Portable Devices 2013-10-10 09:45 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2013-10-10 09:45 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker 2013-10-10 09:45 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-10-10 09:45 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2013-10-10 09:45 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\sppui 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\Setup 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\oobe 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\migwiz 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\manifeststore 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\Dism 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\sppui 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\Setup 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\oobe 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\migwiz 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\manifeststore 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\Dism 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\servicing 2013-10-10 09:45 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System 2013-10-10 09:43 - 2009-07-14 03:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll 2013-10-10 09:43 - 2009-07-14 03:36 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2013-10-10 09:32 - 2013-10-10 09:32 - 00000000 ____D C:\Windows\system32\SPReview 2013-10-10 09:32 - 2013-10-10 09:32 - 00000000 ____D C:\Windows\system32\EventProviders 2013-10-10 09:11 - 2013-10-10 09:11 - 00000000 ____D C:\Users\Raik\AppData\Local\WindowsUpdate 2013-10-10 09:05 - 2009-07-14 19:18 - 00000000 ____D C:\Windows\ShellNew 2013-10-10 09:05 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\MSBuild 2013-10-10 09:04 - 2013-10-10 09:04 - 00000000 ____D C:\Windows\PCHEALTH 2013-10-10 09:04 - 2013-10-10 09:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services 2013-10-10 09:04 - 2013-10-10 09:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Sync Framework 2013-10-10 09:04 - 2013-10-10 09:04 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2013-10-10 09:04 - 2013-10-10 09:02 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-10-10 09:03 - 2013-10-10 09:03 - 00000000 ____D C:\Program Files\Microsoft Office 2013-10-10 09:03 - 2013-10-10 09:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2013-10-10 09:03 - 2013-10-10 09:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2013-10-10 09:03 - 2013-10-10 09:03 - 00000000 ____D C:\IDE 2013-10-10 09:03 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-10-10 09:02 - 2013-10-10 09:02 - 00000000 __RHD C:\MSOCache 2013-10-10 09:01 - 2013-10-10 09:00 - 00000000 ____D C:\Users\Raik\AppData\Roaming\Mozilla 2013-10-10 09:00 - 2013-10-10 09:00 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-10-10 09:00 - 2013-10-10 09:00 - 00000000 ____D C:\Users\Raik\AppData\Local\Mozilla 2013-10-10 09:00 - 2013-10-10 09:00 - 00000000 ____D C:\ProgramData\Mozilla 2013-10-10 09:00 - 2013-10-10 09:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-10-10 09:00 - 2013-10-10 09:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-10-10 08:25 - 2013-10-10 08:23 - 00004747 _____ C:\Windows\IE9_main.log 2013-10-10 08:17 - 2013-10-10 08:17 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-10-10 08:16 - 2013-10-10 08:16 - 00000000 ____D C:\Users\Raik\AppData\Local\Microsoft Help 2013-10-10 08:13 - 2013-10-10 08:12 - 00000000 ____D C:\Windows\system32\MRT 2013-10-10 07:48 - 2013-10-10 07:48 - 00000000 ____D C:\Program Files\Broadcom 2013-10-10 07:48 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries 2013-10-10 07:45 - 2013-10-10 07:45 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-10-10 07:45 - 2013-10-10 07:45 - 00000000 ____D C:\Program Files\Realtek 2013-10-10 07:45 - 2013-10-10 07:45 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-10-10 07:44 - 2013-10-10 07:44 - 00000000 ____D C:\Users\Raik\AppData\Roaming\InstallShield 2013-10-10 07:44 - 2013-10-10 07:40 - 00000000 ____D C:\Program Files (x86)\Intel 2013-10-10 07:40 - 2013-10-10 07:40 - 00000000 ____D C:\Intel 2013-10-10 07:39 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\restore 2013-10-10 07:38 - 2013-10-10 07:38 - 00000000 ____D C:\Dell 2013-10-10 07:37 - 2013-10-10 07:37 - 00000000 ____D C:\Users\Raik\AppData\Roaming\ATI 2013-10-10 07:37 - 2013-10-10 07:37 - 00000000 ____D C:\Users\Raik\AppData\Local\ATI 2013-10-10 07:37 - 2013-10-10 07:37 - 00000000 ____D C:\ProgramData\ATI 2013-10-10 07:36 - 2013-10-10 07:36 - 00000000 _____ C:\Windows\ativpsrm.bin 2013-10-10 07:35 - 2013-10-10 07:35 - 00000000 ____D C:\Program Files\ATI Technologies 2013-10-10 07:35 - 2013-10-10 07:35 - 00000000 ____D C:\Program Files (x86)\ATI Technologies 2013-10-10 07:34 - 2013-10-10 07:34 - 00000000 ____D C:\Users\Raik\AppData\Local\Dell 2013-10-10 07:34 - 2013-10-10 07:34 - 00000000 ____D C:\Program Files\ATI 2013-10-10 07:07 - 2013-10-10 07:07 - 00000020 ___SH C:\Users\Raik\ntuser.ini 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Vorlagen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Startmenü 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Netzwerkumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Lokale Einstellungen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Eigene Dateien 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Druckumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\AppData\Local\Verlauf 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\AppData\Local\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Raik\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Vorlagen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Startmenü 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Programme 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Vorlagen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Startmenü 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Favoriten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Dokumente 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 _SHDL C:\Dokumente und Einstellungen 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 __SHD C:\Recovery 2013-10-10 07:07 - 2013-10-10 07:07 - 00000000 ____D C:\Users\Raik\AppData\Local\VirtualStore 2013-10-10 07:07 - 2013-10-10 05:54 - 00000000 ____D C:\Windows\Panther 2013-10-10 07:07 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default 2013-10-10 07:07 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\Recovery 2013-10-10 07:07 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Windows NT 2013-10-10 05:54 - 2013-10-10 05:54 - 00008192 __RSH C:\BOOTSECT.BAK 2013-10-10 05:54 - 2009-07-14 06:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG 2013-10-10 05:54 - 2009-07-14 06:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2013-10-10 04:57 - 2013-10-10 04:57 - 00001313 _____ C:\Windows\TSSysprep.log 2013-10-10 04:57 - 2009-07-14 05:46 - 00001774 _____ C:\Windows\DtcInstall.log 2013-10-10 04:57 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\sysprep 2013-10-10 04:56 - 2013-10-10 04:56 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2013-10-10 04:55 - 2009-07-14 19:18 - 00000000 ____D C:\Windows\CSC Some content of TEMP: ==================== C:\Users\Raik\AppData\Local\Temp\avgnt.exe C:\Users\Raik\AppData\Local\Temp\BackupSetup.exe C:\Users\Raik\AppData\Local\Temp\fp_pl_pfs_installer-1.exe C:\Users\Raik\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\Raik\AppData\Local\Temp\ICReinstall_ZipExtractorSetup (1).exe C:\Users\Raik\AppData\Local\Temp\ICReinstall_ZipExtractorSetup.exe C:\Users\Raik\AppData\Local\Temp\ose00000.exe C:\Users\Raik\AppData\Local\Temp\ose00001.exe C:\Users\Raik\AppData\Local\Temp\Sqlite3.dll C:\Users\Raik\AppData\Local\Temp\vcredist_x64.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-10-31 14:16 ==================== End Of Log ============================ Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-10-2013 Ran by Raik at 2013-11-03 13:10:11 Running from C:\Users\Raik\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Panda Cloud Antivirus (Enabled - Up to date) {3456760B-FDAA-FFFD-06C2-7BB528D2066C} AS: Panda Cloud Antivirus (Enabled - Up to date) {8F3797EF-DB90-F073-3C72-40C753554CD1} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Cloud Antivirus Firewall (Disabled) {0C6DF72E-B7C5-FEA5-2D9D-D280D6014117} ==================== Installed Programs ====================== Adobe Flash Player 11 ActiveX (x32 Version: 11.5.502.135) ATI Catalyst Install Manager (Version: 3.0.804.0) Broadcom Gigabit NetLink Controller (Version: 12.33.02) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center InstallProxy (x32 Version: 2010.1209.1249.22922) Catalyst Control Center Localization All (x32 Version: 2010.1209.1249.22922) CCC Help Chinese Standard (x32 Version: 2010.1209.1248.22922) CCC Help Chinese Traditional (x32 Version: 2010.1209.1248.22922) CCC Help Czech (x32 Version: 2010.1209.1248.22922) CCC Help Danish (x32 Version: 2010.1209.1248.22922) CCC Help Dutch (x32 Version: 2010.1209.1248.22922) CCC Help English (x32 Version: 2010.1209.1248.22922) CCC Help Finnish (x32 Version: 2010.1209.1248.22922) CCC Help French (x32 Version: 2010.1209.1248.22922) CCC Help German (x32 Version: 2010.1209.1248.22922) CCC Help Greek (x32 Version: 2010.1209.1248.22922) CCC Help Hungarian (x32 Version: 2010.1209.1248.22922) CCC Help Italian (x32 Version: 2010.1209.1248.22922) CCC Help Japanese (x32 Version: 2010.1209.1248.22922) CCC Help Korean (x32 Version: 2010.1209.1248.22922) CCC Help Norwegian (x32 Version: 2010.1209.1248.22922) CCC Help Polish (x32 Version: 2010.1209.1248.22922) CCC Help Portuguese (x32 Version: 2010.1209.1248.22922) CCC Help Russian (x32 Version: 2010.1209.1248.22922) CCC Help Spanish (x32 Version: 2010.1209.1248.22922) CCC Help Swedish (x32 Version: 2010.1209.1248.22922) CCC Help Thai (x32 Version: 2010.1209.1248.22922) ccc-core-static (x32 Version: 2010.1209.1249.22922) ccc-utility64 (Version: 2010.1209.1249.22922) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32) Extended Update (HKCU) Google Chrome (x32 Version: 30.0.1599.101) Google Update Helper (x32 Version: 1.3.21.165) Intel(R) Management Engine Components (x32 Version: 6.0.0.1179) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000) Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000) Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 24.0 (x86 de) (x32 Version: 24.0) Mozilla Maintenance Service (x32 Version: 24.0) Panda Cloud Antivirus (Version: 6.06.00.0000) Panda Cloud Antivirus (x32 Version: 02.03.00.0000) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6024) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 3.0.23.0) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3) Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32) Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32) Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32) Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32) Update for Microsoft Word 2010 (KB2827323) 32-Bit Edition (x32) ==================== Restore Points ========================= 26-10-2013 17:39:23 Windows Update 29-10-2013 21:19:10 Removed Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 30-10-2013 18:25:50 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {7600C02D-6227-4A8F-98EB-6A90B619B564} - \Adobe Flash Player Updater No Task File Task: {80B7B7C7-6689-4C89-8F41-11A215C28D28} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {8DD3943A-C039-4AEA-AC76-30F5D8C39A4A} - \CreateChoiceProcessTask No Task File Task: {C2D47D60-B75B-407C-AE03-164448CB81F3} - \{B06AAE53-3B55-45A7-9FFA-46B9AFE7E231} No Task File Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2013-04-04 00:09 - 2013-04-04 00:09 - 04300432 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2010-12-09 11:48 - 2010-12-09 11:48 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2010-08-26 15:15 - 2010-08-26 15:15 - 00016384 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2013-04-12 18:23 - 2013-04-12 18:23 - 00612664 _____ () C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\SQLite3.dll 2013-04-04 00:09 - 2013-04-04 00:09 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2013-10-25 09:06 - 2013-10-09 01:01 - 00698832 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\libglesv2.dll 2013-10-25 09:06 - 2013-10-09 01:01 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\libegl.dll 2013-10-25 09:06 - 2013-10-09 01:02 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\pdf.dll 2013-10-25 09:06 - 2013-10-09 01:02 - 00415184 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll 2013-10-25 09:06 - 2013-10-09 01:01 - 01604560 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\ffmpegsumo.dll 2013-10-25 09:06 - 2013-10-09 01:02 - 13584336 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/29/2013 09:00:16 PM) (Source: MsiInstaller) (User: Raik-PC) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\GoogleUpdateHelper.msi Error: (10/26/2013 06:37:00 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Setup.exe_InstallShield (R), Version: 6.10.100.1281, Zeitstempel: 0x387a466f Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc000000d Fehleroffset: 0x000983bf ID des fehlerhaften Prozesses: 0xdc4 Startzeit der fehlerhaften Anwendung: 0xSetup.exe_InstallShield (R)0 Pfad der fehlerhaften Anwendung: Setup.exe_InstallShield (R)1 Pfad des fehlerhaften Moduls: Setup.exe_InstallShield (R)2 Berichtskennung: Setup.exe_InstallShield (R)3 Error: (10/26/2013 06:30:13 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Setup.exe_InstallShield (R), Version: 6.10.100.1281, Zeitstempel: 0x387a466f Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc000000d Fehleroffset: 0x000983bf ID des fehlerhaften Prozesses: 0xa24 Startzeit der fehlerhaften Anwendung: 0xSetup.exe_InstallShield (R)0 Pfad der fehlerhaften Anwendung: Setup.exe_InstallShield (R)1 Pfad des fehlerhaften Moduls: Setup.exe_InstallShield (R)2 Berichtskennung: Setup.exe_InstallShield (R)3 Error: (10/24/2013 05:28:47 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Setup.exe_InstallShield (R), Version: 6.10.100.1281, Zeitstempel: 0x387a466f Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc000000d Fehleroffset: 0x000983bf ID des fehlerhaften Prozesses: 0x238 Startzeit der fehlerhaften Anwendung: 0xSetup.exe_InstallShield (R)0 Pfad der fehlerhaften Anwendung: Setup.exe_InstallShield (R)1 Pfad des fehlerhaften Moduls: Setup.exe_InstallShield (R)2 Berichtskennung: Setup.exe_InstallShield (R)3 Error: (10/10/2013 10:00:52 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile: System.IdentityModel.Selectors, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070005 Error: (10/10/2013 09:45:30 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Service reached limit of transient errors. Will shut down. Last error returned from Service Manager: 0x80004005. Error: (10/10/2013 09:45:29 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Service reached limit of transient errors. Will shut down. Last error returned from Service Manager: 0x80004005. Error: (10/10/2013 08:57:34 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: LMS.exe, Version: 6.0.0.1184, Zeitstempel: 0x4ac414e3 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x74df6a64 ID des fehlerhaften Prozesses: 0x5b4 Startzeit der fehlerhaften Anwendung: 0xLMS.exe0 Pfad der fehlerhaften Anwendung: LMS.exe1 Pfad des fehlerhaften Moduls: LMS.exe2 Berichtskennung: LMS.exe3 Error: (10/10/2013 08:17:53 AM) (Source: MsiInstaller) (User: Raik-PC) Description: Produkt: Microsoft Office Office 64-bit Components 2010 -- Fehler 1935.Fehler beim Installieren der Assemblykomponente '{89EDD3A9-944B-3257-8484-D6EB6A00DDF5}'. HRESULT: 0x80070BC9. Assemblyschnittstelle: IAssemblyCacheItem, Funktion: Commit, Assemblyname: Microsoft.VC90.ATL,version="9.0.30729.4148",type="win32",processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b" Error: (10/10/2013 05:00:59 AM) (Source: Software Protection Platform Service) (User: ) Description: Fehler bei der Installation des Kaufnachweises. 0xC004F015 Teil-Pkey=K4HH6 ACID=da22eadd-46dc-4056-a287-f5041c852470 Genauer Fehler[?] System errors: ============= Error: (10/31/2013 03:37:33 PM) (Source: BugCheck) (User: ) Description: 0x0000003b (0x00000000c0000005, 0xfffff880048d2817, 0xfffff880054f78f0, 0x0000000000000000)C:\Windows\MEMORY.DMP103113-14773-01 Error: (10/31/2013 03:37:23 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 31.10.2013 um 15:35:58 unerwartet heruntergefahren. Error: (10/29/2013 09:12:51 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "SProtection" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (10/25/2013 11:03:31 AM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk5\DR5 gefunden. Error: (10/25/2013 11:03:31 AM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk5\DR5 gefunden. Error: (10/25/2013 10:19:35 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10. Error: (10/25/2013 10:19:34 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10. Error: (10/25/2013 10:17:28 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10. Error: (10/25/2013 10:17:28 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10. Error: (10/25/2013 10:17:28 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10. Microsoft Office Sessions: ========================= Error: (10/29/2013 09:00:16 PM) (Source: MsiInstaller)(User: Raik-PC) Description: Product: Google Update Helper -- Error 1316. A network error occurred while attempting to read from the file: C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\GoogleUpdateHelper.msi(NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/26/2013 06:37:00 PM) (Source: Application Error)(User: ) Description: Setup.exe_InstallShield (R)6.10.100.1281387a466fntdll.dll6.1.7601.18247521ea8e7c000000d000983bfdc401ced271db76e912D:\Setup.exeC:\Windows\SysWOW64\ntdll.dll37359629-3e65-11e3-9f83-a4badbfee4bb Error: (10/26/2013 06:30:13 PM) (Source: Application Error)(User: ) Description: Setup.exe_InstallShield (R)6.10.100.1281387a466fntdll.dll6.1.7601.18247521ea8e7c000000d000983bfa2401ced270d94247b9D:\Setup.exeC:\Windows\SysWOW64\ntdll.dll44c4f412-3e64-11e3-9f83-a4badbfee4bb Error: (10/24/2013 05:28:47 PM) (Source: Application Error)(User: ) Description: Setup.exe_InstallShield (R)6.10.100.1281387a466fntdll.dll6.1.7601.18247521ea8e7c000000d000983bf23801ced0d6013f933bD:\Setup.exeC:\Windows\SysWOW64\ntdll.dll5add2533-3cc9-11e3-aca8-a4badbfee4bb Error: (10/10/2013 10:00:52 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile: System.IdentityModel.Selectors, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070005 System.IdentityModel.Selectors, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 Error: (10/10/2013 09:45:30 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Service reached limit of transient errors. Will shut down. Last error returned from Service Manager: 0x80004005. Error: (10/10/2013 09:45:29 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Service reached limit of transient errors. Will shut down. Last error returned from Service Manager: 0x80004005. Error: (10/10/2013 08:57:34 AM) (Source: Application Error)(User: ) Description: LMS.exe6.0.0.11844ac414e3unknown0.0.0.000000000c000000574df6a645b401cec58e3f0e1cebC:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exeunknown9e8751cf-3181-11e3-a88d-a4badbfee4bb Error: (10/10/2013 08:17:53 AM) (Source: MsiInstaller)(User: Raik-PC) Description: Produkt: Microsoft Office Office 64-bit Components 2010 -- Fehler 1935.Fehler beim Installieren der Assemblykomponente '{89EDD3A9-944B-3257-8484-D6EB6A00DDF5}'. HRESULT: 0x80070BC9. Assemblyschnittstelle: IAssemblyCacheItem, Funktion: Commit, Assemblyname: Microsoft.VC90.ATL,version="9.0.30729.4148",type="win32",processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b"(NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/10/2013 05:00:59 AM) (Source: Software Protection Platform Service)(User: ) Description: 0xC004F015K4HH6da22eadd-46dc-4056-a287-f5041c852470? ==================== Memory info =========================== Percentage of memory in use: 13% Total physical RAM: 16343.11 MB Available physical RAM: 14187.96 MB Total Pagefile: 32684.41 MB Available Pagefile: 30091.42 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.51 GB) (Free:852.87 GB) NTFS ==>[Drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: F42FB334) Partition 1: (Active) - (Size=932 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
Themen zu Win7: (evt.e) Malwarereste zu entfernen |
adobe, anleitung, appdata, avira, continue, datei, desktop, entfernen, folge, forum, google, gratis, icreinstall, install.exe, installation, malwarereste entfernen, microsoft, neue, plötzlich, programme, rechner, roaming, scanner, temp, uninstall.exe, update, win, win7, windows |