|
Plagegeister aller Art und deren Bekämpfung: lollipop lässt sich nicht löschen!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
02.12.2013, 02:10 | #1 |
| lollipop lässt sich nicht löschen! hallo! ich bin ziemlich verzweifelt, ich habe gerade einen neuen laptop gekauft und bin dabei ihn einzurichten und jetzt habe ich eine komische datei "lollipop" die ich nicht mehr loswerde. wenn ich ins internet gehe über chrome lande ich auf der seite aartemis, was mir ebenfalls komisch vorkommt... was kann ich tun? |
02.12.2013, 02:18 | #2 |
/// TB-Ausbilder | lollipop lässt sich nicht löschen! Hallo,
__________________mach bitte einen FRST-Scan: Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
02.12.2013, 13:00 | #3 |
| lollipop lässt sich nicht löschen!FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-12-2013 Ran by sarah (administrator) on SARAH-PC on 02-12-2013 12:54:39 Running from C:\Users\sarah\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\PSUService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\TrayManager.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Users\sarah\AppData\Local\Lollipop\Lollipop.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Dropbox, Inc.) C:\Users\sarah\AppData\Roaming\Dropbox\bin\Dropbox.exe (FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe (Fujitsu Technology Solutions) C:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNAutoCon.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LoadFUJ02E3] - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [76104 2011-11-24] (FUJITSU LIMITED) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-12-13] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_DTS] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2277992 2011-11-15] (Realtek Semiconductor) HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [589176 2011-12-20] (Alps Electric Co., Ltd.) HKLM\...\Run: [BTMTrayAgent] - rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp HKLM\...\Run: [PSUTility] - C:\Program Files\Fujitsu\PSUtility\TrayManager.exe [169368 2012-06-30] (FUJITSU LIMITED) HKLM\...\Run: [LoadFujitsuQuickTouch] - C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe [158024 2011-10-01] (FUJITSU LIMITED) HKLM\...\Run: [LoadBtnHnd] - C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [23368 2011-10-01] (FUJITSU LIMITED) HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM-x32\...\Winlogon: [Userinit] C:\Windows\sysWOW64\userinit.exe [26624 2010-11-21] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [lollipop] - C:\Users\sarah\AppData\Local\Lollipop\Lollipop.exe [2426368 2013-11-30] () HKCU\...\Run: [DelayShred] - C:\Program Files\McAfee\MQS\ShrCL.exe [67856 2013-02-01] () HKLM-x32\...\Run: [IndicatorUtility] - C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [48752 2010-09-30] (FUJITSU LIMITED) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [946352 2012-12-18] (Adobe Systems Incorporated) HKLM-x32\...\Run: [DeskUpdateNotifier] - C:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe [101288 2012-07-25] (Fujitsu Technology Solutions) HKLM-x32\...\Run: [YouCam Service] - C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [255208 2012-03-21] (CyberLink Corp.) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [454600 2013-02-28] (McAfee, Inc.) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions) Startup: C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\sarah\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) Startup: C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://aartemis.com/?type=hp&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://aartemis.com/?type=hp&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {06996E89-5C6F-4D78-B39A-59E0ABE3945A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MAFSJS SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {06996E89-5C6F-4D78-B39A-59E0ABE3945A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MAFSJS SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear BHO: weDownload - {11111111-1111-1111-1111-110411581120} - C:\Program Files (x86)\weDownload\weDownload-bho64.dll (weDownload) BHO-x32: weDownload - {11111111-1111-1111-1111-110411581120} - C:\Program Files (x86)\weDownload\weDownload-bho.dll (weDownload) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: DealPly Shopping - {ae48ed75-5a56-4c5f-bbce-6f1ac3875f66} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (DealPly) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Chrome: ======= CHR HomePage: hxxp://aartemis.com/?type=hp&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L CHR RestoreOnStartup: "hxxp://aartemis.com/?type=hp&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L" CHR DefaultSearchURL: (aartemis) - hxxp://www.aartemis.com/web/?type=ds&ts=1385906444&from=s32&uid=ST500LT012-9WS142_W0VG4M1LXXXXW0VG4M1L&q={searchTerms} CHR DefaultSuggestURL: (aartemis) - "suggest_url": "", CHR Extension: (Google Docs) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (weDownload) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhhamfkcejhlnpojdpnjbmcfkpnadlpn\1.25.17_0 CHR Extension: (DealPly Shopping) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\mphpbdjcljebbcnfopfngmfdackbbdgf\3.5.0.0_0 CHR Extension: (Google Wallet) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Gmail) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 ==================== Services (Whitelisted) ================= S2 dealplylive; C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [148000 2013-12-01] (DealPly Technologies Ltd) S3 dealplylivem; C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [148000 2013-12-01] (DealPly Technologies Ltd) R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [225280 2011-08-05] (DTS, Inc) R2 FUJ02E3Service; C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [76104 2011-11-24] (FUJITSU LIMITED) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [334760 2012-12-21] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [388680 2013-08-23] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1017016 2013-02-28] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218760 2013-04-03] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-04-03] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2012-04-18] () R2 PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2213376 2011-12-22] (FUJITSU LIMITED) R2 PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [51608 2012-06-30] (FUJITSU LIMITED) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2671376 2012-04-18] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-04-03] (McAfee, Inc.) R0 FBIOSDRV; C:\Windows\System32\Drivers\FBIOSDRV.sys [21104 2009-06-24] (FUJITSU LIMITED) R3 FUJ02B1; C:\Windows\system32\drivers\FUJ02B1.sys [7808 2006-11-01] (FUJITSU LIMITED) R3 FUJ02E3; C:\Windows\system32\drivers\FUJ02E3.sys [7296 2006-11-01] (FUJITSU LIMITED) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197264 2012-05-28] (McAfee, Inc.) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179664 2013-04-03] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309968 2013-04-03] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [516608 2013-04-03] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [772944 2013-04-03] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [337120 2013-02-18] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [95856 2013-02-18] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [342416 2013-04-03] (McAfee, Inc.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1812608 2011-12-28] () ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-02 12:54 - 2013-12-02 12:55 - 00017932 _____ C:\Users\sarah\Downloads\FRST.txt 2013-12-02 12:54 - 2013-12-02 12:54 - 00000000 ____D C:\FRST 2013-12-02 12:53 - 2013-12-02 12:53 - 01959184 _____ (Farbar) C:\Users\sarah\Downloads\FRST64.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 07:22 - 2013-12-02 07:22 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 07:19 - 2013-12-02 07:51 - 00017438 _____ C:\Windows\IE10_main.log 2013-12-02 07:03 - 2010-02-23 09:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2013-12-02 06:36 - 2012-07-26 04:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2013-12-02 06:36 - 2012-07-26 04:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2013-12-02 06:36 - 2012-07-26 04:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2013-12-02 06:36 - 2012-07-26 04:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2013-12-02 06:36 - 2012-07-26 04:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2013-12-02 06:36 - 2012-07-26 03:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2013-12-02 06:36 - 2012-07-26 03:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2013-12-02 06:36 - 2012-06-02 15:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-12-02 01:54 - 2013-12-02 12:43 - 00000000 ____D C:\Users\sarah\Documents\Youcam 2013-12-02 01:53 - 2013-12-02 01:53 - 00000000 ____D C:\Users\Public\Documents\CyberLink 2013-12-02 01:41 - 2013-12-02 01:41 - 00891184 _____ C:\Users\sarah\Desktop\SecurityCheck.exe 2013-12-01 23:52 - 2013-12-01 23:52 - 02347384 _____ (ESET) C:\Users\sarah\Downloads\esetsmartinstaller_enu.exe 2013-12-01 23:23 - 2013-12-02 12:55 - 00001974 _____ C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk 2013-12-01 15:48 - 2013-12-02 12:43 - 00000000 ___RD C:\Users\sarah\Dropbox 2013-12-01 15:46 - 2013-12-01 15:46 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-12-01 15:45 - 2013-12-02 12:43 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Dropbox 2013-12-01 15:44 - 2013-12-01 15:45 - 35334016 _____ (Dropbox, Inc.) C:\Users\sarah\Downloads\Dropbox 2.4.7.exe 2013-12-01 15:16 - 2013-12-01 23:01 - 00000000 ____D C:\Users\sarah\AppData\Roaming\vlc 2013-12-01 15:04 - 2013-12-01 16:36 - 00000000 ____D C:\Users\sarah\.phase-6 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Phase6 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Mozilla 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\.swt 2013-12-01 15:03 - 2013-12-01 16:36 - 00000000 ____D C:\ProgramData\Phase6 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\phase-6 2013-12-01 15:01 - 2013-12-02 12:48 - 00000900 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job 2013-12-01 15:01 - 2013-12-02 12:42 - 00001932 _____ C:\Windows\Tasks\weDownload-chromeinstaller.job 2013-12-01 15:01 - 2013-12-02 12:42 - 00001324 _____ C:\Windows\Tasks\weDownload-updater.job 2013-12-01 15:01 - 2013-12-02 12:42 - 00001226 _____ C:\Windows\Tasks\weDownload-codedownloader.job 2013-12-01 15:01 - 2013-12-02 12:42 - 00001126 _____ C:\Windows\Tasks\weDownload-enabler.job 2013-12-01 15:01 - 2013-12-02 12:42 - 00000904 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job 2013-12-01 15:01 - 2013-12-02 12:42 - 00000290 _____ C:\Windows\Tasks\Dealply.job 2013-12-01 15:01 - 2013-12-01 15:01 - 00004354 _____ C:\Windows\System32\Tasks\weDownload-updater 2013-12-01 15:01 - 2013-12-01 15:01 - 00004256 _____ C:\Windows\System32\Tasks\weDownload-codedownloader 2013-12-01 15:01 - 2013-12-01 15:01 - 00004156 _____ C:\Windows\System32\Tasks\weDownload-enabler 2013-12-01 15:01 - 2013-12-01 15:01 - 00003900 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA 2013-12-01 15:01 - 2013-12-01 15:01 - 00003648 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineCore 2013-12-01 15:01 - 2013-12-01 15:01 - 00003230 _____ C:\Windows\System32\Tasks\Dealply 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Dealply 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Users\sarah\AppData\Local\DealPlyLive 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\ProgramData\DealPlyLive 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Program Files (x86)\weDownload 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Program Files (x86)\DealPlyLive 2013-12-01 15:00 - 2013-12-01 15:01 - 24278649 _____ C:\Users\sarah\Downloads\vlc-2.1.0-win32.exe 2013-12-01 15:00 - 2013-12-01 15:00 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly 2013-12-01 15:00 - 2013-12-01 15:00 - 00000000 ____D C:\Program Files (x86)\DealPly 2013-12-01 14:56 - 2013-12-01 14:58 - 85741120 _____ C:\Users\sarah\Downloads\phase-6-desktop-2.3.3-windows-installer.exe 2013-12-01 14:56 - 2013-12-01 14:56 - 00605960 _____ C:\Users\sarah\Downloads\vlc media player setup.exe 2013-12-01 12:50 - 2012-05-28 10:28 - 00197264 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2013-12-01 11:34 - 2013-12-01 11:34 - 00000000 ____D C:\Users\Public\CyberLink 2013-12-01 09:49 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2013-12-01 09:49 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2013-12-01 09:48 - 2013-02-15 07:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2013-12-01 09:48 - 2013-02-15 07:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-12-01 09:48 - 2013-02-15 07:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2013-12-01 09:48 - 2013-02-15 05:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-12-01 09:48 - 2013-02-15 05:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2013-12-01 09:48 - 2013-02-15 04:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2013-12-01 09:48 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2013-12-01 09:48 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2013-12-01 09:47 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-12-01 09:47 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-12-01 09:46 - 2013-02-27 07:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2013-12-01 09:46 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2013-12-01 09:45 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-12-01 09:45 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-12-01 09:45 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-12-01 09:45 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-12-01 09:45 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-12-01 09:45 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-12-01 09:45 - 2013-04-12 15:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2013-12-01 09:45 - 2013-03-19 06:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-12-01 09:45 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2013-12-01 09:44 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-12-01 09:44 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-12-01 09:44 - 2013-07-19 02:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-01 09:44 - 2013-07-19 02:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-01 09:43 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-12-01 09:43 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-12-01 09:43 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-12-01 09:43 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-12-01 09:43 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-12-01 09:43 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-12-01 09:43 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-12-01 09:43 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-12-01 09:43 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-12-01 09:43 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-12-01 09:43 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-12-01 09:43 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-12-01 09:43 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-12-01 09:43 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-12-01 09:43 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-12-01 09:43 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-12-01 09:43 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-12-01 09:43 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-12-01 09:43 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-12-01 09:43 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-12-01 09:43 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2013-12-01 09:43 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2013-12-01 09:43 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2013-12-01 09:43 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-12-01 09:43 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2013-12-01 09:43 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2013-12-01 09:43 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2013-12-01 09:43 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-12-01 09:43 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2013-12-01 09:43 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2013-12-01 09:42 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-12-01 09:42 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-12-01 09:42 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-12-01 09:42 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-12-01 09:42 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-12-01 09:42 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-12-01 09:42 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-12-01 09:42 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-12-01 09:42 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2013-12-01 09:42 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2013-12-01 09:42 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-12-01 09:42 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-12-01 09:42 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2013-12-01 09:42 - 2013-04-26 00:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-12-01 09:42 - 2013-03-31 23:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2013-12-01 09:42 - 2013-02-12 05:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2013-12-01 09:42 - 2012-11-28 23:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2013-12-01 09:42 - 2012-11-28 23:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2013-12-01 09:42 - 2012-11-28 23:56 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-12-01 09:41 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2013-12-01 09:41 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2013-12-01 09:41 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2013-12-01 09:41 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2013-12-01 09:41 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2013-12-01 09:41 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-12-01 09:41 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2013-12-01 09:41 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-12-01 09:41 - 2013-06-04 07:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-12-01 09:41 - 2013-06-04 05:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-12-01 09:40 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-12-01 09:40 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2013-12-01 09:40 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2013-12-01 09:40 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-01 09:39 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-12-01 09:39 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-12-01 09:39 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2013-12-01 09:39 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-12-01 09:39 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2013-12-01 09:39 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-12-01 09:39 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-12-01 09:39 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-12-01 09:39 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2013-12-01 09:39 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-12-01 09:39 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2013-12-01 09:39 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-12-01 09:39 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-12-01 09:39 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-12-01 09:39 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-12-01 09:38 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-12-01 09:38 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-12-01 09:38 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-12-01 09:38 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-12-01 09:37 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-12-01 09:37 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-12-01 09:37 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2013-12-01 09:37 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2013-12-01 09:37 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-12-01 09:37 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-12-01 09:37 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2013-12-01 09:37 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-12-01 09:37 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2013-12-01 09:37 - 2013-01-03 07:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2013-12-01 09:36 - 2013-08-01 10:19 - 00984512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-12-01 09:36 - 2013-08-01 10:19 - 00265152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-12-01 09:36 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2013-12-01 09:36 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-12-01 09:36 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-12-01 09:36 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-12-01 09:35 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-12-01 09:35 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-12-01 09:35 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-12-01 09:35 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-12-01 09:35 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-12-01 09:35 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2013-11-30 21:21 - 2013-11-30 21:21 - 00001666 _____ C:\Users\Public\Desktop\MediaSuite.lnk 2013-11-30 21:21 - 2011-12-28 01:14 - 01812608 _____ () C:\Windows\system32\Drivers\snp2uvc.sys 2013-11-30 21:21 - 2011-12-09 23:15 - 00305152 _____ (Sonix Technology Co., Ltd.) C:\Windows\SysWOW64\vsnp2uvc.dll 2013-11-30 21:21 - 2011-12-09 23:13 - 00374784 _____ (Sonix Technology Co., Ltd.) C:\Windows\system32\vsnp2uvc.dll 2013-11-30 21:21 - 2011-11-04 18:20 - 00274432 _____ (Sonix Technology Co., Ltd.) C:\Windows\SysWOW64\rsnp2uvc.dll 2013-11-30 21:21 - 2011-11-04 18:20 - 00272896 _____ (Sonix Technology Co., Ltd.) C:\Windows\system32\rsnp2uvc.dll 2013-11-30 21:21 - 2011-02-18 01:10 - 00024576 _____ () C:\Windows\snuvcdsm.exe 2013-11-30 21:21 - 2011-01-26 23:53 - 00243712 _____ (Sonix Technology Co., Ltd.) C:\Windows\system32\csnp2uvc.dll 2013-11-30 21:21 - 2009-07-22 12:08 - 00013021 _____ C:\Windows\snp2uvc.src 2013-11-30 21:21 - 2008-12-31 08:14 - 00035456 _____ C:\Windows\system32\Drivers\sncduvc.sys 2013-11-30 21:21 - 2006-05-21 02:39 - 00015497 _____ C:\Windows\snp2uvc.ini 2013-11-30 21:19 - 2013-11-30 21:23 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:19 - 2013-11-30 21:23 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:19 - 2013-02-28 18:44 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-11-30 21:19 - 2013-02-28 18:44 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-11-30 21:19 - 2013-02-28 18:28 - 00058016 _____ C:\Users\Default\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 21:19 - 2013-02-28 18:28 - 00058016 _____ C:\Users\Default User\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 21:19 - 2013-02-28 18:27 - 00000000 ____D C:\Users\Default\AppData\Roaming\Fujitsu 2013-11-30 21:19 - 2013-02-28 18:27 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Fujitsu 2013-11-30 21:19 - 2013-02-28 18:10 - 00000000 ____D C:\Users\Default\AppData\Roaming\Intel 2013-11-30 21:19 - 2013-02-28 18:10 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Intel 2013-11-30 21:19 - 2013-01-16 20:00 - 00001443 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-30 21:19 - 2013-01-16 20:00 - 00001443 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-30 21:19 - 2013-01-16 20:00 - 00001409 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2013-11-30 21:19 - 2013-01-16 20:00 - 00001409 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2013-11-30 21:19 - 2010-11-21 03:50 - 00000020 ___SH C:\Users\Default\ntuser.ini 2013-11-30 15:24 - 2013-12-02 12:42 - 00000000 ____D C:\Users\sarah\AppData\Local\Lollipop 2013-11-30 15:24 - 2013-11-30 15:24 - 14965064 _____ (Google Inc.) C:\Users\sarah\Downloads\picasa39-setup.exe 2013-11-30 15:24 - 2013-11-30 15:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-11-30 14:50 - 2013-12-02 12:54 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-11-30 14:50 - 2013-12-02 12:43 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-11-30 14:50 - 2013-11-30 15:28 - 00000000 ____D C:\Users\sarah\AppData\Local\Google 2013-11-30 14:50 - 2013-11-30 15:26 - 00000000 ____D C:\Program Files (x86)\Google 2013-11-30 14:50 - 2013-11-30 14:55 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-11-30 14:50 - 2013-11-30 14:55 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-11-30 14:49 - 2013-11-30 14:50 - 00000000 ____D C:\Users\sarah\AppData\Local\Deployment 2013-11-30 14:49 - 2013-11-30 14:49 - 00000000 ____D C:\Users\sarah\AppData\Local\Apps\2.0 2013-11-30 14:25 - 2013-11-30 14:25 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Macromedia 2013-11-30 14:16 - 2013-12-02 12:44 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-30 14:16 - 2013-11-30 14:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-11-30 14:16 - 2013-11-30 14:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-30 14:16 - 2013-11-30 14:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\system32\Macromed 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Adobe 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Local\Adobe 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\SysWOW64\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\system32\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Fujitsu Launch Center 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Local\VirtualStore 2013-11-30 13:01 - 2013-12-02 12:46 - 00001850 _____ C:\Users\Public\Desktop\McAfee Internet Security.lnk 2013-11-30 13:00 - 2013-12-01 11:32 - 00000000 ____D C:\Program Files\Common Files\McAfee 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Users\sarah\AppData\Local\CyberLink 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Program Files (x86)\McAfee.com 2013-11-30 13:00 - 2013-04-03 13:34 - 00182752 _____ (McAfee, Inc.) C:\Windows\system32\mfevtps.exe 2013-11-30 12:59 - 2013-12-01 23:28 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-11-30 12:59 - 2013-12-01 11:30 - 00000000 ____D C:\ProgramData\McAfee 2013-11-30 12:59 - 2013-11-30 13:01 - 00000000 ____D C:\Program Files\McAfee 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\install_clap 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\CyberLink 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files\McAfee.com 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files (x86)\CyberLink 2013-11-30 12:59 - 2011-04-14 04:47 - 00031216 _____ (CyberLink Corporation) C:\Windows\system32\Drivers\clwvd.sys 2013-11-30 12:58 - 2013-11-30 12:58 - 00001755 _____ C:\Users\Public\Desktop\Service Shop.lnk 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\Windows\System32\Tasks\Fujitsu 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\ProgramData\Fujitsu 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\Program Files (x86)\eBay 2013-11-30 12:50 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-11-30 12:50 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-11-30 12:50 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-11-30 12:50 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-11-30 12:50 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-11-30 12:50 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-11-30 12:50 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-11-30 12:50 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-11-30 12:50 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-11-30 12:47 - 2013-12-02 12:42 - 00001431 _____ C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-30 12:47 - 2013-12-02 12:42 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 12:47 - 2013-12-02 12:42 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-11-30 12:47 - 2013-12-01 15:48 - 00000000 ____D C:\Users\sarah 2013-11-30 12:47 - 2013-11-30 12:47 - 00058016 _____ C:\Users\sarah\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Vorlagen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Startmenü 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Netzwerkumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Lokale Einstellungen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Eigene Dateien 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Druckumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Musik 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Bilder 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Verlauf 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Anwendungsdaten 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Anwendungsdaten 2013-11-30 12:47 - 2013-02-28 18:27 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Fujitsu 2013-11-30 12:47 - 2013-02-28 18:10 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Intel 2013-11-30 12:47 - 2010-11-21 03:50 - 00000020 ___SH C:\Users\sarah\ntuser.ini 2013-11-30 12:47 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-11-30 12:47 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-11-30 12:44 - 2013-12-02 12:49 - 01774200 _____ C:\Windows\WindowsUpdate.log ==================== One Month Modified Files and Folders ======= 2013-12-02 12:55 - 2013-12-02 12:54 - 00017932 _____ C:\Users\sarah\Downloads\FRST.txt 2013-12-02 12:55 - 2013-12-01 23:23 - 00001974 _____ C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk 2013-12-02 12:54 - 2013-12-02 12:54 - 00000000 ____D C:\FRST 2013-12-02 12:54 - 2013-11-30 14:50 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-02 12:53 - 2013-12-02 12:53 - 01959184 _____ (Farbar) C:\Users\sarah\Downloads\FRST64.exe 2013-12-02 12:49 - 2013-11-30 12:44 - 01774200 _____ C:\Windows\WindowsUpdate.log 2013-12-02 12:48 - 2013-12-01 15:01 - 00000900 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job 2013-12-02 12:46 - 2013-11-30 13:01 - 00001850 _____ C:\Users\Public\Desktop\McAfee Internet Security.lnk 2013-12-02 12:44 - 2013-11-30 14:16 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-02 12:43 - 2013-12-02 01:54 - 00000000 ____D C:\Users\sarah\Documents\Youcam 2013-12-02 12:43 - 2013-12-01 15:48 - 00000000 ___RD C:\Users\sarah\Dropbox 2013-12-02 12:43 - 2013-12-01 15:45 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Dropbox 2013-12-02 12:43 - 2013-11-30 14:50 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-02 12:42 - 2013-12-01 15:01 - 00001932 _____ C:\Windows\Tasks\weDownload-chromeinstaller.job 2013-12-02 12:42 - 2013-12-01 15:01 - 00001324 _____ C:\Windows\Tasks\weDownload-updater.job 2013-12-02 12:42 - 2013-12-01 15:01 - 00001226 _____ C:\Windows\Tasks\weDownload-codedownloader.job 2013-12-02 12:42 - 2013-12-01 15:01 - 00001126 _____ C:\Windows\Tasks\weDownload-enabler.job 2013-12-02 12:42 - 2013-12-01 15:01 - 00000904 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job 2013-12-02 12:42 - 2013-12-01 15:01 - 00000290 _____ C:\Windows\Tasks\Dealply.job 2013-12-02 12:42 - 2013-11-30 15:24 - 00000000 ____D C:\Users\sarah\AppData\Local\Lollipop 2013-12-02 12:42 - 2013-11-30 12:47 - 00001431 _____ C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-02 12:42 - 2013-11-30 12:47 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-02 12:42 - 2013-11-30 12:47 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-12-02 10:09 - 2009-07-14 05:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-02 10:09 - 2009-07-14 05:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-02 10:08 - 2013-01-16 19:53 - 00732970 _____ C:\Windows\system32\perfh013.dat 2013-12-02 10:08 - 2013-01-16 19:53 - 00151802 _____ C:\Windows\system32\perfc013.dat 2013-12-02 10:08 - 2013-01-16 19:49 - 00729792 _____ C:\Windows\system32\perfh010.dat 2013-12-02 10:08 - 2013-01-16 19:49 - 00145674 _____ C:\Windows\system32\perfc010.dat 2013-12-02 10:08 - 2013-01-16 19:45 - 00735256 _____ C:\Windows\system32\perfh00C.dat 2013-12-02 10:08 - 2013-01-16 19:45 - 00148178 _____ C:\Windows\system32\perfc00C.dat 2013-12-02 10:08 - 2013-01-16 19:41 - 00735100 _____ C:\Windows\system32\perfh00A.dat 2013-12-02 10:08 - 2013-01-16 19:41 - 00157210 _____ C:\Windows\system32\perfc00A.dat 2013-12-02 10:08 - 2013-01-16 19:37 - 00696870 _____ C:\Windows\system32\perfh007.dat 2013-12-02 10:08 - 2013-01-16 19:37 - 00148134 _____ C:\Windows\system32\perfc007.dat 2013-12-02 10:08 - 2009-07-14 06:13 - 05146234 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-02 10:03 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-02 10:03 - 2009-07-14 05:51 - 00048867 _____ C:\Windows\setupact.log 2013-12-02 10:03 - 2009-07-14 05:45 - 00275856 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-02 10:00 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System 2013-12-02 09:59 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-12-02 09:59 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-12-02 09:57 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\zh-HK 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-12-02 09:54 - 2010-11-21 08:17 - 00000000 ____D C:\Program Files\Windows Journal 2013-12-02 08:26 - 2013-02-28 18:19 - 05048234 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-02 07:51 - 2013-12-02 07:19 - 00017438 _____ C:\Windows\IE10_main.log 2013-12-02 07:24 - 2013-12-02 07:24 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 07:22 - 2013-12-02 07:22 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 01:53 - 2013-12-02 01:53 - 00000000 ____D C:\Users\Public\Documents\CyberLink 2013-12-02 01:52 - 2010-11-21 04:47 - 00007588 _____ C:\Windows\PFRO.log 2013-12-02 01:41 - 2013-12-02 01:41 - 00891184 _____ C:\Users\sarah\Desktop\SecurityCheck.exe 2013-12-01 23:52 - 2013-12-01 23:52 - 02347384 _____ (ESET) C:\Users\sarah\Downloads\esetsmartinstaller_enu.exe 2013-12-01 23:30 - 2010-11-21 08:16 - 00000000 ___RD C:\Users\Public\Recorded TV 2013-12-01 23:28 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-12-01 23:01 - 2013-12-01 15:16 - 00000000 ____D C:\Users\sarah\AppData\Roaming\vlc 2013-12-01 16:36 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\.phase-6 2013-12-01 16:36 - 2013-12-01 15:03 - 00000000 ____D C:\ProgramData\Phase6 2013-12-01 15:48 - 2013-11-30 12:47 - 00000000 ____D C:\Users\sarah 2013-12-01 15:48 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-01 15:46 - 2013-12-01 15:46 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-12-01 15:45 - 2013-12-01 15:44 - 35334016 _____ (Dropbox, Inc.) C:\Users\sarah\Downloads\Dropbox 2.4.7.exe 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Phase6 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Mozilla 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\.swt 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\phase-6 2013-12-01 15:01 - 2013-12-01 15:01 - 00004354 _____ C:\Windows\System32\Tasks\weDownload-updater 2013-12-01 15:01 - 2013-12-01 15:01 - 00004256 _____ C:\Windows\System32\Tasks\weDownload-codedownloader 2013-12-01 15:01 - 2013-12-01 15:01 - 00004156 _____ C:\Windows\System32\Tasks\weDownload-enabler 2013-12-01 15:01 - 2013-12-01 15:01 - 00003900 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA 2013-12-01 15:01 - 2013-12-01 15:01 - 00003648 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineCore 2013-12-01 15:01 - 2013-12-01 15:01 - 00003230 _____ C:\Windows\System32\Tasks\Dealply 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Dealply 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Users\sarah\AppData\Local\DealPlyLive 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\ProgramData\DealPlyLive 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Program Files (x86)\weDownload 2013-12-01 15:01 - 2013-12-01 15:01 - 00000000 ____D C:\Program Files (x86)\DealPlyLive 2013-12-01 15:01 - 2013-12-01 15:00 - 24278649 _____ C:\Users\sarah\Downloads\vlc-2.1.0-win32.exe 2013-12-01 15:00 - 2013-12-01 15:00 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly 2013-12-01 15:00 - 2013-12-01 15:00 - 00000000 ____D C:\Program Files (x86)\DealPly 2013-12-01 14:58 - 2013-12-01 14:56 - 85741120 _____ C:\Users\sarah\Downloads\phase-6-desktop-2.3.3-windows-installer.exe 2013-12-01 14:56 - 2013-12-01 14:56 - 00605960 _____ C:\Users\sarah\Downloads\vlc media player setup.exe 2013-12-01 11:34 - 2013-12-01 11:34 - 00000000 ____D C:\Users\Public\CyberLink 2013-12-01 11:32 - 2013-11-30 13:00 - 00000000 ____D C:\Program Files\Common Files\McAfee 2013-12-01 11:30 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\McAfee 2013-11-30 21:41 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-11-30 21:23 - 2013-11-30 21:19 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:23 - 2013-11-30 21:19 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:21 - 2013-11-30 21:21 - 00001666 _____ C:\Users\Public\Desktop\MediaSuite.lnk 2013-11-30 21:21 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\restore 2013-11-30 21:19 - 2013-01-16 19:34 - 00005949 _____ C:\Windows\TSSysprep.log 2013-11-30 21:19 - 2009-07-14 05:46 - 00005262 _____ C:\Windows\DtcInstall.log 2013-11-30 21:19 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default 2013-11-30 21:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Registration 2013-11-30 21:17 - 2013-02-28 18:07 - 00000000 ____D C:\Program Files\Apoint2K 2013-11-30 15:37 - 2013-02-28 00:05 - 00000000 ____D C:\Fujitsu 2013-11-30 15:28 - 2013-11-30 14:50 - 00000000 ____D C:\Users\sarah\AppData\Local\Google 2013-11-30 15:26 - 2013-11-30 14:50 - 00000000 ____D C:\Program Files (x86)\Google 2013-11-30 15:24 - 2013-11-30 15:24 - 14965064 _____ (Google Inc.) C:\Users\sarah\Downloads\picasa39-setup.exe 2013-11-30 15:24 - 2013-11-30 15:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-11-30 14:55 - 2013-11-30 14:50 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-11-30 14:55 - 2013-11-30 14:50 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-11-30 14:50 - 2013-11-30 14:49 - 00000000 ____D C:\Users\sarah\AppData\Local\Deployment 2013-11-30 14:49 - 2013-11-30 14:49 - 00000000 ____D C:\Users\sarah\AppData\Local\Apps\2.0 2013-11-30 14:25 - 2013-11-30 14:25 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Macromedia 2013-11-30 14:16 - 2013-11-30 14:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-11-30 14:16 - 2013-11-30 14:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-30 14:16 - 2013-11-30 14:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\system32\Macromed 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Adobe 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Local\Adobe 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\SysWOW64\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\system32\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Fujitsu Launch Center 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Local\VirtualStore 2013-11-30 13:01 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files\McAfee 2013-11-30 13:01 - 2009-07-14 03:34 - 00000435 _____ C:\Windows\win.ini 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Users\sarah\AppData\Local\CyberLink 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Program Files (x86)\McAfee.com 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\install_clap 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\CyberLink 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files\McAfee.com 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files (x86)\CyberLink 2013-11-30 12:59 - 2013-02-28 17:58 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-30 12:58 - 2013-11-30 12:58 - 00001755 _____ C:\Users\Public\Desktop\Service Shop.lnk 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\Windows\System32\Tasks\Fujitsu 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\ProgramData\Fujitsu 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\Program Files (x86)\eBay 2013-11-30 12:58 - 2013-02-28 18:07 - 00022682 _____ C:\Windows\DPINST.LOG 2013-11-30 12:47 - 2013-11-30 12:47 - 00058016 _____ C:\Users\sarah\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Vorlagen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Startmenü 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Netzwerkumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Lokale Einstellungen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Eigene Dateien 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Druckumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Musik 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Bilder 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Verlauf 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Anwendungsdaten 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Anwendungsdaten 2013-11-30 12:47 - 2013-02-28 18:04 - 00015428 _____ C:\Windows\system32\results.xml 2013-11-30 12:46 - 2013-01-16 01:50 - 00000000 ____D C:\Windows\Panther 2013-11-30 12:45 - 2010-11-21 03:50 - 00000000 ____D C:\Users\Administrator 2013-11-30 12:45 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries 2013-11-20 09:22 - 2009-07-14 06:38 - 00029696 ___SH C:\Windows\system32\config\BCD-Template.LOG 2013-11-20 09:22 - 2009-07-14 06:32 - 00032768 _____ C:\Windows\system32\config\BCD-Template Some content of TEMP: ==================== C:\Users\sarah\AppData\Local\Temp\1384432943_s32_aartemis_20131111182247.exe C:\Users\sarah\AppData\Local\Temp\1384452412_dp.exe C:\Users\sarah\AppData\Local\Temp\1385723378_wedownload.exe C:\Users\sarah\AppData\Local\Temp\SHSetup.exe C:\Users\sarah\AppData\Local\Temp\vlc-2.1.1-win32.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-01-16 19:33 ==================== End Of Log ============================ |
02.12.2013, 13:02 | #4 |
| lollipop lässt sich nicht löschen! FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-12-2013 Ran by sarah at 2013-12-02 12:57:05 Running from C:\Users\sarah\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9} ==================== Installed Programs ====================== Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.152) Adobe Reader XI (11.0.01) MUI (x32 Version: 11.0.01) ALPS Touch Pad Driver CyberLink YouCam 5 (x32 Version: 5.0.1521) Dealply (HKCU) DealPly (remove only) (x32 Version: 4.8.7.2) DeskUpdate 4.13 (x32 Version: 4.13.0114) Dropbox (HKCU Version: 2.4.7) eBay (x32 Version: 1.0.1) FJ Camera (x32 Version: 5.8.52032.0_WHQL) Fujitsu Hotkey Utility (x32 Version: 3.70.0.0) Fujitsu MobilityCenter Extension Utility (Version: 4.01.00.000) Fujitsu MobilityCenter Extension Utility (x32 Version: 4.01.00.000) Fujitsu System Extension Utility (Version: 3.4.4.0) Fujitsu System Extension Utility (x32 Version: 3.4.4.0) Google Chrome (x32 Version: 31.0.1650.57) Google Update Helper (x32 Version: 1.3.21.165) Intel PROSet Wireless Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) OpenCL CPU Runtime (x32) Intel(R) Processor Graphics (x32 Version: 8.15.10.2696) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (Version: 15.1.1.0170) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (Version: 2.0.0.0086) Intel® PROSet/Wireless WiFi Software (Version: 15.01.1500.1034) Intel® Trusted Connect Service Client (Version: 1.24.388.1) LIFEBOOK Application Panel (Version: 8.3.2.0) LIFEBOOK Application Panel (x32 Version: 8.3.2.0) Lollipop (HKCU) McAfee Internet Security (x32 Version: 12.1.353) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft Office (x32 Version: 15.0.4454.1510) Microsoft Silverlight (x32 Version: 4.0.60310.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) phase-6 2.3.3 (x32 Version: 2.3.3) Picasa 3 (x32 Version: 3.9) Plugfree NETWORK (Version: 6.2.0.1) Plugfree NETWORK (Version: 6.2.001) Power Saving Utility (x32 Version: 32.01.10.043) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6526) Realtek USB 2.0 Card Reader (x32 Version: 6.1.7601.30129) Shared C Run-time for x64 (Version: 10.0.0) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3) VLC media player 2.1.1 (x32 Version: 2.1.1) weDownload (x32 Version: 1.31.153.0) ==================== Restore Points ========================= 02-12-2013 01:12:00 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {20E6F82B-3F4E-4424-901B-3725BAF4FC76} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-30] (Google Inc.) Task: {41870347-6489-4DCE-B050-1A8516B7F17D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-30] (Adobe Systems Incorporated) Task: {4C5BFA24-99E8-43A5-8872-2FD2B202C13B} - System32\Tasks\DealPlyLiveUpdateTaskMachineCore => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [2013-12-01] (DealPly Technologies Ltd) <==== ATTENTION Task: {52B7A22B-A3B0-4345-89AF-A7B3741D8039} - System32\Tasks\weDownload-codedownloader => C:\Program Files (x86)\weDownload\weDownload-codedownloader.exe [2013-12-01] (weDownload) Task: {78155BD9-E0D8-4D3D-A13D-D626C21CD43D} - System32\Tasks\weDownload-updater => C:\Program Files (x86)\weDownload\weDownload-updater.exe [2013-12-01] (weDownload) Task: {7EAE8F64-236D-4413-804A-74D272CCC28E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-30] (Google Inc.) Task: {89B87BA0-5CE6-4398-B024-BCF375F6B711} - System32\Tasks\Fujitsu\DeskUpdateStartup => C:\Fujitsu\Programs\DeskUpdate\ducmd.exe [2012-07-25] (Fujitsu Technology Solutions) Task: {92FE54FC-E060-4D44-8979-F82D9DD77D86} - System32\Tasks\Fujitsu\DeskUpdate => C:\Fujitsu\Programs\DeskUpdate\ducmd.exe [2012-07-25] (Fujitsu Technology Solutions) Task: {A43F4B8B-49F1-41D0-87A1-BA6AFF2FFA6E} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\Windows\System32\oobe\setupsqm.exe [2009-07-14] (Microsoft Corporation) Task: {A7F52AC2-B400-4C61-A70E-5385F4BA33C3} - System32\Tasks\weDownload-enabler => C:\Program Files (x86)\weDownload\weDownload-enabler.exe [2013-12-01] (weDownload) Task: {B0C73F5C-D318-4C4A-8382-E01B2B66D629} - System32\Tasks\DealPlyLiveUpdateTaskMachineUA => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe [2013-12-01] (DealPly Technologies Ltd) <==== ATTENTION Task: {B55001CF-82D8-4500-AFCE-95FD4120DE08} - System32\Tasks\weDownload-chromeinstaller => C:\Program Files (x86)\weDownload\weDownload-chromeinstaller.exe [2013-12-01] (weDownload) Task: {D061B317-6A88-476F-8DC8-35A3387872D6} - System32\Tasks\Dealply => C:\Users\sarah\AppData\Roaming\Dealply\UpdateProc\UpdateTask.exe [2013-12-01] () <==== ATTENTION Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Dealply.job => C:\Users\sarah\AppData\Roaming\Dealply\UPDATE~1\UPDATE~1.EXE Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\weDownload-chromeinstaller.job => C:\Program Files (x86)\weDownload\weDownload-chromeinstaller.exe Task: C:\Windows\Tasks\weDownload-codedownloader.job => C:\Program Files (x86)\weDownload\weDownload-codedownloader.exe Task: C:\Windows\Tasks\weDownload-enabler.job => C:\Program Files (x86)\weDownload\weDownload-enabler.exe Task: C:\Windows\Tasks\weDownload-updater.job => C:\Program Files (x86)\weDownload\weDownload-updater.exe ==================== Loaded Modules (whitelisted) ============= 2012-07-06 12:13 - 2012-03-19 07:09 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-02-28 17:46 - 2012-06-25 02:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\sarah\AppData\Roaming\Dropbox\bin\libcef.dll 2013-11-30 14:51 - 2013-11-14 12:28 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\libglesv2.dll 2013-11-30 14:51 - 2013-11-14 12:28 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\libegl.dll 2013-11-30 14:51 - 2013-11-14 12:29 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\pdf.dll 2013-11-30 14:51 - 2013-11-14 12:29 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll 2013-11-30 14:51 - 2013-11-14 12:28 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ffmpegsumo.dll 2013-11-30 14:51 - 2013-11-14 12:29 - 13582800 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/02/2013 10:04:58 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Configuration, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:57 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.DirectoryServices, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:57 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.DirectoryServices.Protocols, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:55 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Security, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:54 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Web.RegularExpressions, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:54 AM) (Source: .NET Runtime Optimization Service) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Web, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=x86" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:03:59 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/02/2013 09:54:04 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/02/2013 01:53:22 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/02/2013 01:50:11 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. System errors: ============= Error: (12/02/2013 00:29:19 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst Dnscache erreicht. Error: (12/02/2013 00:29:15 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst wuauserv erreicht. Error: (12/02/2013 10:07:22 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80242016 fehlgeschlagen: Kumulatives Sicherheitsupdate für Internet Explorer 9 für Windows 7 für x64-Systeme (KB2888505) Error: (12/02/2013 10:04:54 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Modules Installer" wurde mit folgendem Fehler beendet: %%16405 Error: (12/02/2013 10:00:24 AM) (Source: DCOM) (User: ) Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (12/02/2013 09:57:01 AM) (Source: WMPNetworkSvc) (User: ) Description: WMPNetworkSvc0x80004002 Error: (12/02/2013 09:56:55 AM) (Source: Application Popup) (User: ) Description: Fehler [DATABASE OPEN FAILED] beim Verarbeiten der Treiberdatenbank. Error: (12/02/2013 09:56:28 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows-Dienst für Schriftartencache" wurde mit folgendem Fehler beendet: %%32 Error: (12/02/2013 09:54:03 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde mit folgendem Fehler beendet: %%-2147196306 Error: (12/02/2013 01:53:22 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde mit folgendem Fehler beendet: %%-2147196306 Microsoft Office Sessions: ========================= Error: (12/02/2013 10:04:58 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Configuration, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:57 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.DirectoryServices, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:57 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.DirectoryServices.Protocols, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:55 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Security, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:54 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Web.RegularExpressions, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:04:54 AM) (Source: .NET Runtime Optimization Service)(User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to execute command from the offline queue: uninstall "System.Web, Version=2.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=x86" /NoDependencies . The error returned was Error: The specified assembly is not installed. . Error: (12/02/2013 10:03:59 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/02/2013 09:54:04 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/02/2013 01:53:22 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/02/2013 01:50:11 AM) (Source: SideBySide)(User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\sarah\Downloads\esetsmartinstaller_enu.exe CodeIntegrity Errors: =================================== Date: 2013-12-02 12:43:00.706 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-02 10:03:41.000 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-02 09:53:58.443 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-02 02:11:52.765 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-02 01:53:11.408 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-02 01:35:53.137 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 23:58:43.923 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 23:50:00.528 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 23:38:02.530 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-12-01 23:28:31.849 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\sxs.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 58% Total physical RAM: 3951.63 MB Available physical RAM: 1621.83 MB Total Pagefile: 7901.43 MB Available Pagefile: 5161.55 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:80 GB) (Free:46.75 GB) NTFS Drive d: (Data) (Fixed) (Total:368.75 GB) (Free:368.65 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 53F25B4E) Partition 1: (Active) - (Size=2 GB) - (Type=27) Partition 2: (Not Active) - (Size=464 GB) - (Type=OF Extended) ==================== End Of Log ============================ danke für die schnelle antwort!! sind das die richtigen infos? |
02.12.2013, 17:31 | #5 |
/// TB-Ausbilder | lollipop lässt sich nicht löschen! Ok, dann so weiter: Schritt 1
Schritt 2 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 3 Starte noch einmal FRST.
Bitte poste in deiner nächsten Antwort:
__________________ cheers, Leo |
02.12.2013, 17:59 | #6 |
| lollipop lässt sich nicht löschen! AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v3.014 - Bericht erstellt am 02/12/2013 um 17:50:00 # Updated 01/12/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : sarah - SARAH-PC # Gestartet von : C:\Users\sarah\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gelöscht : C:\Windows\Tasks\Dealply.job Datei Gelöscht : C:\Windows\System32\Tasks\Dealply ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\Classes\Applications\lollipop.exe Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422582220} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466586620} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466586620} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : HKCU\Software\lollipop Schlüssel Gelöscht : HKCU\Software\WEDLMNGR Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKLM\Software\aartemisSoftware ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16736 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] -\\ Google Chrome v31.0.1650.57 [ Datei : C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht : urls_to_restore_on_startup ************************* AdwCleaner[R0].txt - [3134 octets] - [02/12/2013 17:44:57] AdwCleaner[S0].txt - [2265 octets] - [02/12/2013 17:50:00] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2325 octets] ########## FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-12-2013 Ran by sarah (administrator) on SARAH-PC on 02-12-2013 17:56:21 Running from C:\Users\sarah\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (DTS, Inc) C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\PSUService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\TrayManager.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Dropbox, Inc.) C:\Users\sarah\AppData\Roaming\Dropbox\bin\Dropbox.exe (Fujitsu Technology Solutions) C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNAutoCon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.exe (FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) \\?\C:\Windows\system32\wbem\WMIADAP.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LoadFUJ02E3] - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [76104 2011-11-24] (FUJITSU LIMITED) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-12-13] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_DTS] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2277992 2011-11-15] (Realtek Semiconductor) HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [589176 2011-12-20] (Alps Electric Co., Ltd.) HKLM\...\Run: [BTMTrayAgent] - rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp HKLM\...\Run: [PSUTility] - C:\Program Files\Fujitsu\PSUtility\TrayManager.exe [169368 2012-06-30] (FUJITSU LIMITED) HKLM\...\Run: [LoadFujitsuQuickTouch] - C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe [158024 2011-10-01] (FUJITSU LIMITED) HKLM\...\Run: [LoadBtnHnd] - C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [23368 2011-10-01] (FUJITSU LIMITED) HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM-x32\...\Winlogon: [Userinit] C:\Windows\sysWOW64\userinit.exe [26624 2010-11-21] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM-x32\...\Run: [IndicatorUtility] - C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [48752 2010-09-30] (FUJITSU LIMITED) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [946352 2012-12-18] (Adobe Systems Incorporated) HKLM-x32\...\Run: [YouCam Service] - C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [255208 2012-03-21] (CyberLink Corp.) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [454600 2013-02-28] (McAfee, Inc.) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] - C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [707984 2013-10-10] (Cisco Systems, Inc.) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions) Startup: C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\sarah\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LaunchCenter.lnk ShortcutTarget: LaunchCenter.lnk -> C:\Program Files\Fujitsu\LaunchCenter\lcStarter.exe (Fujitsu Technology Solutions) Startup: C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\newreminderdialog.lnk ShortcutTarget: newreminderdialog.lnk -> C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (Fujitsu Technology Solutions) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {06996E89-5C6F-4D78-B39A-59E0ABE3945A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MAFSJS SearchScopes: HKLM-x32 - {06996E89-5C6F-4D78-B39A-59E0ABE3945A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MAFSJS SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Chrome: ======= CHR HomePage: hxxp://www.google.de/ CHR RestoreOnStartup: "hxxp://www.google.com" CHR Extension: (Google Docs) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Google Wallet) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Gmail) - C:\Users\sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 ==================== Services (Whitelisted) ================= R2 DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [225280 2011-08-05] (DTS, Inc) R2 FUJ02E3Service; C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [76104 2011-11-24] (FUJITSU LIMITED) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [334760 2012-12-21] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [388680 2013-08-23] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1017016 2013-02-28] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218760 2013-04-03] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-04-03] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [221296 2013-03-05] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2012-04-18] () R2 PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2213376 2011-12-22] (FUJITSU LIMITED) R2 PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [51608 2012-06-30] (FUJITSU LIMITED) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2671376 2012-04-18] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-04-03] (McAfee, Inc.) R0 FBIOSDRV; C:\Windows\System32\Drivers\FBIOSDRV.sys [21104 2009-06-24] (FUJITSU LIMITED) R3 FUJ02B1; C:\Windows\system32\drivers\FUJ02B1.sys [7808 2006-11-01] (FUJITSU LIMITED) R3 FUJ02E3; C:\Windows\system32\drivers\FUJ02E3.sys [7296 2006-11-01] (FUJITSU LIMITED) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197264 2012-05-28] (McAfee, Inc.) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179664 2013-04-03] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309968 2013-04-03] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [516608 2013-04-03] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [772944 2013-04-03] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [337120 2013-02-18] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [95856 2013-02-18] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [342416 2013-04-03] (McAfee, Inc.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1812608 2011-12-28] () S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [52080 2013-10-10] (Cisco Systems, Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-02 17:56 - 2013-12-02 17:56 - 00013838 _____ C:\Users\sarah\Downloads\FRST.txt 2013-12-02 17:55 - 2013-12-02 17:56 - 01959184 _____ (Farbar) C:\Users\sarah\Downloads\FRST64.exe 2013-12-02 17:44 - 2013-12-02 17:50 - 00000000 ____D C:\AdwCleaner 2013-12-02 17:42 - 2013-12-02 17:43 - 01110034 _____ C:\Users\sarah\Downloads\adwcleaner.exe 2013-12-02 17:35 - 2013-12-02 17:35 - 00002257 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-12-02 15:00 - 2013-12-02 15:00 - 00001119 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-02 15:00 - 2013-12-02 15:00 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Malwarebytes 2013-12-02 15:00 - 2013-12-02 15:00 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-02 15:00 - 2013-12-02 15:00 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-02 15:00 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-12-02 14:36 - 2013-12-02 14:36 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-12-02 14:24 - 2013-12-02 14:24 - 00000000 ____D C:\Users\sarah\AppData\Local\Cisco 2013-12-02 14:24 - 2013-12-02 14:24 - 00000000 ____D C:\ProgramData\Cisco 2013-12-02 12:54 - 2013-12-02 12:54 - 00000000 ____D C:\FRST 2013-12-02 07:24 - 2013-12-02 07:24 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 07:22 - 2013-12-02 07:22 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 07:19 - 2013-12-02 07:51 - 00017438 _____ C:\Windows\IE10_main.log 2013-12-02 07:03 - 2010-02-23 09:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2013-12-02 06:36 - 2012-07-26 04:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2013-12-02 06:36 - 2012-07-26 04:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2013-12-02 06:36 - 2012-07-26 04:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2013-12-02 06:36 - 2012-07-26 04:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2013-12-02 06:36 - 2012-07-26 04:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2013-12-02 06:36 - 2012-07-26 03:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2013-12-02 06:36 - 2012-07-26 03:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2013-12-02 06:36 - 2012-06-02 15:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-12-02 01:54 - 2013-12-02 17:52 - 00000000 ____D C:\Users\sarah\Documents\Youcam 2013-12-02 01:53 - 2013-12-02 01:53 - 00000000 ____D C:\Users\Public\Documents\CyberLink 2013-12-02 01:41 - 2013-12-02 01:41 - 00891184 _____ C:\Users\sarah\Desktop\SecurityCheck.exe 2013-12-01 15:48 - 2013-12-02 17:52 - 00000000 ___RD C:\Users\sarah\Dropbox 2013-12-01 15:46 - 2013-12-01 15:46 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-12-01 15:45 - 2013-12-02 17:52 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Dropbox 2013-12-01 15:16 - 2013-12-01 23:01 - 00000000 ____D C:\Users\sarah\AppData\Roaming\vlc 2013-12-01 15:04 - 2013-12-01 16:36 - 00000000 ____D C:\Users\sarah\.phase-6 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Phase6 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Mozilla 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\.swt 2013-12-01 15:03 - 2013-12-01 16:36 - 00000000 ____D C:\ProgramData\Phase6 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\phase-6 2013-12-01 12:50 - 2012-05-28 10:28 - 00197264 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2013-12-01 11:34 - 2013-12-01 11:34 - 00000000 ____D C:\Users\Public\CyberLink 2013-12-01 09:49 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2013-12-01 09:49 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2013-12-01 09:48 - 2013-02-15 07:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2013-12-01 09:48 - 2013-02-15 07:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2013-12-01 09:48 - 2013-02-15 07:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2013-12-01 09:48 - 2013-02-15 05:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2013-12-01 09:48 - 2013-02-15 05:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2013-12-01 09:48 - 2013-02-15 04:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2013-12-01 09:48 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2013-12-01 09:48 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2013-12-01 09:47 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-12-01 09:47 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-12-01 09:46 - 2013-02-27 07:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2013-12-01 09:46 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2013-12-01 09:45 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-12-01 09:45 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-12-01 09:45 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-12-01 09:45 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-12-01 09:45 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-12-01 09:45 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-12-01 09:45 - 2013-04-12 15:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2013-12-01 09:45 - 2013-03-19 06:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-12-01 09:45 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2013-12-01 09:44 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-12-01 09:44 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2013-12-01 09:44 - 2013-07-19 02:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-01 09:44 - 2013-07-19 02:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-01 09:43 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-12-01 09:43 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-12-01 09:43 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-12-01 09:43 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-12-01 09:43 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-12-01 09:43 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-12-01 09:43 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-12-01 09:43 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-12-01 09:43 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-12-01 09:43 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-12-01 09:43 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-12-01 09:43 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-12-01 09:43 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-12-01 09:43 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-12-01 09:43 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-12-01 09:43 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-12-01 09:43 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-12-01 09:43 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-12-01 09:43 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-12-01 09:43 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-12-01 09:43 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2013-12-01 09:43 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2013-12-01 09:43 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2013-12-01 09:43 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2013-12-01 09:43 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2013-12-01 09:43 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2013-12-01 09:43 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2013-12-01 09:43 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2013-12-01 09:43 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2013-12-01 09:43 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2013-12-01 09:42 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2013-12-01 09:42 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2013-12-01 09:42 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2013-12-01 09:42 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2013-12-01 09:42 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2013-12-01 09:42 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-12-01 09:42 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-12-01 09:42 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-12-01 09:42 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-12-01 09:42 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2013-12-01 09:42 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2013-12-01 09:42 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-12-01 09:42 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-12-01 09:42 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2013-12-01 09:42 - 2013-04-26 00:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-12-01 09:42 - 2013-03-31 23:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2013-12-01 09:42 - 2013-02-12 05:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2013-12-01 09:42 - 2012-11-28 23:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2013-12-01 09:42 - 2012-11-28 23:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2013-12-01 09:42 - 2012-11-28 23:56 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-12-01 09:41 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2013-12-01 09:41 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2013-12-01 09:41 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2013-12-01 09:41 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2013-12-01 09:41 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2013-12-01 09:41 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-12-01 09:41 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2013-12-01 09:41 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-12-01 09:41 - 2013-06-04 07:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-12-01 09:41 - 2013-06-04 05:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-12-01 09:40 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-12-01 09:40 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2013-12-01 09:40 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2013-12-01 09:40 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-01 09:39 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-12-01 09:39 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-12-01 09:39 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2013-12-01 09:39 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-12-01 09:39 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2013-12-01 09:39 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-12-01 09:39 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-12-01 09:39 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-12-01 09:39 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2013-12-01 09:39 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-12-01 09:39 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2013-12-01 09:39 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-12-01 09:39 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-12-01 09:39 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-12-01 09:39 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-12-01 09:38 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-12-01 09:38 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-12-01 09:38 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-12-01 09:38 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-12-01 09:37 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-12-01 09:37 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-12-01 09:37 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2013-12-01 09:37 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2013-12-01 09:37 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-12-01 09:37 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-12-01 09:37 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2013-12-01 09:37 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-12-01 09:37 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2013-12-01 09:37 - 2013-01-03 07:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2013-12-01 09:36 - 2013-08-01 10:19 - 00984512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-12-01 09:36 - 2013-08-01 10:19 - 00265152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-12-01 09:36 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2013-12-01 09:36 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-12-01 09:36 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-12-01 09:36 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-12-01 09:35 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-12-01 09:35 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-12-01 09:35 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-12-01 09:35 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-12-01 09:35 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-12-01 09:35 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2013-11-30 21:21 - 2013-11-30 21:21 - 00001666 _____ C:\Users\Public\Desktop\MediaSuite.lnk 2013-11-30 21:21 - 2011-12-28 01:14 - 01812608 _____ () C:\Windows\system32\Drivers\snp2uvc.sys 2013-11-30 21:21 - 2011-12-09 23:15 - 00305152 _____ (Sonix Technology Co., Ltd.) C:\Windows\SysWOW64\vsnp2uvc.dll 2013-11-30 21:21 - 2011-12-09 23:13 - 00374784 _____ (Sonix Technology Co., Ltd.) C:\Windows\system32\vsnp2uvc.dll 2013-11-30 21:21 - 2011-11-04 18:20 - 00274432 _____ (Sonix Technology Co., Ltd.) C:\Windows\SysWOW64\rsnp2uvc.dll 2013-11-30 21:21 - 2011-11-04 18:20 - 00272896 _____ (Sonix Technology Co., Ltd.) C:\Windows\system32\rsnp2uvc.dll 2013-11-30 21:21 - 2011-02-18 01:10 - 00024576 _____ () C:\Windows\snuvcdsm.exe 2013-11-30 21:21 - 2011-01-26 23:53 - 00243712 _____ (Sonix Technology Co., Ltd.) C:\Windows\system32\csnp2uvc.dll 2013-11-30 21:21 - 2009-07-22 12:08 - 00013021 _____ C:\Windows\snp2uvc.src 2013-11-30 21:21 - 2008-12-31 08:14 - 00035456 _____ C:\Windows\system32\Drivers\sncduvc.sys 2013-11-30 21:21 - 2006-05-21 02:39 - 00015497 _____ C:\Windows\snp2uvc.ini 2013-11-30 21:19 - 2013-11-30 21:23 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:19 - 2013-11-30 21:23 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:19 - 2013-02-28 18:44 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-11-30 21:19 - 2013-02-28 18:44 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-11-30 21:19 - 2013-02-28 18:28 - 00058016 _____ C:\Users\Default\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 21:19 - 2013-02-28 18:28 - 00058016 _____ C:\Users\Default User\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 21:19 - 2013-02-28 18:27 - 00000000 ____D C:\Users\Default\AppData\Roaming\Fujitsu 2013-11-30 21:19 - 2013-02-28 18:27 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Fujitsu 2013-11-30 21:19 - 2013-02-28 18:10 - 00000000 ____D C:\Users\Default\AppData\Roaming\Intel 2013-11-30 21:19 - 2013-02-28 18:10 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Intel 2013-11-30 21:19 - 2013-01-16 20:00 - 00001443 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-30 21:19 - 2013-01-16 20:00 - 00001443 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-30 21:19 - 2013-01-16 20:00 - 00001409 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2013-11-30 21:19 - 2013-01-16 20:00 - 00001409 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2013-11-30 21:19 - 2010-11-21 03:50 - 00000020 ___SH C:\Users\Default\ntuser.ini 2013-11-30 15:24 - 2013-11-30 15:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-11-30 14:50 - 2013-12-02 17:51 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-11-30 14:50 - 2013-12-02 17:00 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-11-30 14:50 - 2013-11-30 15:28 - 00000000 ____D C:\Users\sarah\AppData\Local\Google 2013-11-30 14:50 - 2013-11-30 15:26 - 00000000 ____D C:\Program Files (x86)\Google 2013-11-30 14:50 - 2013-11-30 14:55 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-11-30 14:50 - 2013-11-30 14:55 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-11-30 14:49 - 2013-11-30 14:50 - 00000000 ____D C:\Users\sarah\AppData\Local\Deployment 2013-11-30 14:49 - 2013-11-30 14:49 - 00000000 ____D C:\Users\sarah\AppData\Local\Apps\2.0 2013-11-30 14:25 - 2013-11-30 14:25 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Macromedia 2013-11-30 14:16 - 2013-12-02 17:44 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-30 14:16 - 2013-11-30 14:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-11-30 14:16 - 2013-11-30 14:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-30 14:16 - 2013-11-30 14:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\system32\Macromed 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Adobe 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Local\Adobe 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\SysWOW64\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\system32\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Fujitsu Launch Center 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Local\VirtualStore 2013-11-30 13:01 - 2013-12-02 17:56 - 00001850 _____ C:\Users\Public\Desktop\McAfee Internet Security.lnk 2013-11-30 13:00 - 2013-12-01 11:32 - 00000000 ____D C:\Program Files\Common Files\McAfee 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Users\sarah\AppData\Local\CyberLink 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Program Files (x86)\McAfee.com 2013-11-30 13:00 - 2013-04-03 13:34 - 00182752 _____ (McAfee, Inc.) C:\Windows\system32\mfevtps.exe 2013-11-30 12:59 - 2013-12-01 23:28 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-11-30 12:59 - 2013-12-01 11:30 - 00000000 ____D C:\ProgramData\McAfee 2013-11-30 12:59 - 2013-11-30 13:01 - 00000000 ____D C:\Program Files\McAfee 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\install_clap 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\CyberLink 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files\McAfee.com 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files (x86)\CyberLink 2013-11-30 12:59 - 2011-04-14 04:47 - 00031216 _____ (CyberLink Corporation) C:\Windows\system32\Drivers\clwvd.sys 2013-11-30 12:58 - 2013-11-30 12:58 - 00001755 _____ C:\Users\Public\Desktop\Service Shop.lnk 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\ProgramData\Fujitsu 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\Program Files (x86)\eBay 2013-11-30 12:50 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2013-11-30 12:50 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2013-11-30 12:50 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2013-11-30 12:50 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2013-11-30 12:50 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2013-11-30 12:50 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2013-11-30 12:50 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2013-11-30 12:50 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2013-11-30 12:50 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2013-11-30 12:47 - 2013-12-02 14:52 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 12:47 - 2013-12-02 12:42 - 00001431 _____ C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-30 12:47 - 2013-12-02 12:42 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-11-30 12:47 - 2013-12-01 15:48 - 00000000 ____D C:\Users\sarah 2013-11-30 12:47 - 2013-11-30 12:47 - 00058016 _____ C:\Users\sarah\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Vorlagen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Startmenü 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Netzwerkumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Lokale Einstellungen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Eigene Dateien 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Druckumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Musik 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Bilder 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Verlauf 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Anwendungsdaten 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Anwendungsdaten 2013-11-30 12:47 - 2013-02-28 18:27 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Fujitsu 2013-11-30 12:47 - 2013-02-28 18:10 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Intel 2013-11-30 12:47 - 2010-11-21 03:50 - 00000020 ___SH C:\Users\sarah\ntuser.ini 2013-11-30 12:47 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-11-30 12:47 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-11-30 12:44 - 2013-12-02 17:50 - 01946262 _____ C:\Windows\WindowsUpdate.log ==================== One Month Modified Files and Folders ======= 2013-12-02 17:57 - 2013-12-02 17:56 - 00013838 _____ C:\Users\sarah\Downloads\FRST.txt 2013-12-02 17:57 - 2013-01-16 19:53 - 00732970 _____ C:\Windows\system32\perfh013.dat 2013-12-02 17:57 - 2013-01-16 19:53 - 00151802 _____ C:\Windows\system32\perfc013.dat 2013-12-02 17:57 - 2013-01-16 19:49 - 00729792 _____ C:\Windows\system32\perfh010.dat 2013-12-02 17:57 - 2013-01-16 19:49 - 00145674 _____ C:\Windows\system32\perfc010.dat 2013-12-02 17:57 - 2013-01-16 19:45 - 00735256 _____ C:\Windows\system32\perfh00C.dat 2013-12-02 17:57 - 2013-01-16 19:45 - 00148178 _____ C:\Windows\system32\perfc00C.dat 2013-12-02 17:57 - 2013-01-16 19:41 - 00735100 _____ C:\Windows\system32\perfh00A.dat 2013-12-02 17:57 - 2013-01-16 19:41 - 00157210 _____ C:\Windows\system32\perfc00A.dat 2013-12-02 17:57 - 2013-01-16 19:37 - 00696870 _____ C:\Windows\system32\perfh007.dat 2013-12-02 17:57 - 2013-01-16 19:37 - 00148134 _____ C:\Windows\system32\perfc007.dat 2013-12-02 17:57 - 2009-07-14 06:13 - 05146234 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-02 17:56 - 2013-12-02 17:55 - 01959184 _____ (Farbar) C:\Users\sarah\Downloads\FRST64.exe 2013-12-02 17:56 - 2013-11-30 13:01 - 00001850 _____ C:\Users\Public\Desktop\McAfee Internet Security.lnk 2013-12-02 17:56 - 2013-11-30 12:44 - 01946262 _____ C:\Windows\WindowsUpdate.log 2013-12-02 17:52 - 2013-12-02 01:54 - 00000000 ____D C:\Users\sarah\Documents\Youcam 2013-12-02 17:52 - 2013-12-01 15:48 - 00000000 ___RD C:\Users\sarah\Dropbox 2013-12-02 17:52 - 2013-12-01 15:45 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Dropbox 2013-12-02 17:51 - 2013-11-30 14:50 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-02 17:51 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-02 17:51 - 2009-07-14 05:51 - 00050625 _____ C:\Windows\setupact.log 2013-12-02 17:50 - 2013-12-02 17:44 - 00000000 ____D C:\AdwCleaner 2013-12-02 17:44 - 2013-11-30 14:16 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-02 17:43 - 2013-12-02 17:42 - 01110034 _____ C:\Users\sarah\Downloads\adwcleaner.exe 2013-12-02 17:35 - 2013-12-02 17:35 - 00002257 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-12-02 17:35 - 2009-07-14 05:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-02 17:35 - 2009-07-14 05:45 - 00016752 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-02 17:00 - 2013-11-30 14:50 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-02 16:42 - 2010-11-21 04:47 - 00038058 _____ C:\Windows\PFRO.log 2013-12-02 15:00 - 2013-12-02 15:00 - 00001119 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-12-02 15:00 - 2013-12-02 15:00 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Malwarebytes 2013-12-02 15:00 - 2013-12-02 15:00 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-12-02 15:00 - 2013-12-02 15:00 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-02 14:52 - 2013-11-30 12:47 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-02 14:36 - 2013-12-02 14:36 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-12-02 14:24 - 2013-12-02 14:24 - 00000000 ____D C:\Users\sarah\AppData\Local\Cisco 2013-12-02 14:24 - 2013-12-02 14:24 - 00000000 ____D C:\ProgramData\Cisco 2013-12-02 14:24 - 2013-02-28 18:09 - 00000000 ____D C:\Program Files (x86)\Cisco 2013-12-02 12:54 - 2013-12-02 12:54 - 00000000 ____D C:\FRST 2013-12-02 12:42 - 2013-11-30 12:47 - 00001431 _____ C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-02 12:42 - 2013-11-30 12:47 - 00000000 ___RD C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-12-02 10:03 - 2009-07-14 05:45 - 00275856 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-02 10:00 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System 2013-12-02 09:59 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-12-02 09:59 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-12-02 09:57 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\zh-HK 2013-12-02 09:56 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\tr-TR 2013-12-02 09:54 - 2010-11-21 08:17 - 00000000 ____D C:\Program Files\Windows Journal 2013-12-02 08:26 - 2013-02-28 18:19 - 05048234 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-02 07:51 - 2013-12-02 07:19 - 00017438 _____ C:\Windows\IE10_main.log 2013-12-02 07:24 - 2013-12-02 07:24 - 19269632 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 14355968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-02 07:24 - 2013-12-02 07:24 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-02 07:24 - 2013-12-02 07:24 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01138176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-02 07:24 - 2013-12-02 07:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-02 07:24 - 2013-12-02 07:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-02 07:24 - 2013-12-02 07:24 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-02 07:24 - 2013-12-02 07:24 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-02 07:22 - 2013-12-02 07:22 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 07:22 - 2013-12-02 07:22 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-12-02 01:53 - 2013-12-02 01:53 - 00000000 ____D C:\Users\Public\Documents\CyberLink 2013-12-02 01:41 - 2013-12-02 01:41 - 00891184 _____ C:\Users\sarah\Desktop\SecurityCheck.exe 2013-12-01 23:30 - 2010-11-21 08:16 - 00000000 ___RD C:\Users\Public\Recorded TV 2013-12-01 23:28 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-12-01 23:01 - 2013-12-01 15:16 - 00000000 ____D C:\Users\sarah\AppData\Roaming\vlc 2013-12-01 16:36 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\.phase-6 2013-12-01 16:36 - 2013-12-01 15:03 - 00000000 ____D C:\ProgramData\Phase6 2013-12-01 15:48 - 2013-11-30 12:47 - 00000000 ____D C:\Users\sarah 2013-12-01 15:48 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-01 15:46 - 2013-12-01 15:46 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Phase6 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Mozilla 2013-12-01 15:04 - 2013-12-01 15:04 - 00000000 ____D C:\Users\sarah\.swt 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-12-01 15:02 - 2013-12-01 15:02 - 00000000 ____D C:\Program Files (x86)\phase-6 2013-12-01 11:34 - 2013-12-01 11:34 - 00000000 ____D C:\Users\Public\CyberLink 2013-12-01 11:32 - 2013-11-30 13:00 - 00000000 ____D C:\Program Files\Common Files\McAfee 2013-12-01 11:30 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\McAfee 2013-11-30 21:41 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-11-30 21:23 - 2013-11-30 21:19 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:23 - 2013-11-30 21:19 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-11-30 21:21 - 2013-11-30 21:21 - 00001666 _____ C:\Users\Public\Desktop\MediaSuite.lnk 2013-11-30 21:21 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\restore 2013-11-30 21:19 - 2013-01-16 19:34 - 00005949 _____ C:\Windows\TSSysprep.log 2013-11-30 21:19 - 2009-07-14 05:46 - 00005262 _____ C:\Windows\DtcInstall.log 2013-11-30 21:19 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default 2013-11-30 21:19 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Registration 2013-11-30 21:17 - 2013-02-28 18:07 - 00000000 ____D C:\Program Files\Apoint2K 2013-11-30 15:37 - 2013-02-28 00:05 - 00000000 ____D C:\Fujitsu 2013-11-30 15:28 - 2013-11-30 14:50 - 00000000 ____D C:\Users\sarah\AppData\Local\Google 2013-11-30 15:26 - 2013-11-30 14:50 - 00000000 ____D C:\Program Files (x86)\Google 2013-11-30 15:24 - 2013-11-30 15:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-11-30 14:55 - 2013-11-30 14:50 - 00004104 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-11-30 14:55 - 2013-11-30 14:50 - 00003852 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-11-30 14:50 - 2013-11-30 14:49 - 00000000 ____D C:\Users\sarah\AppData\Local\Deployment 2013-11-30 14:49 - 2013-11-30 14:49 - 00000000 ____D C:\Users\sarah\AppData\Local\Apps\2.0 2013-11-30 14:25 - 2013-11-30 14:25 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Macromedia 2013-11-30 14:16 - 2013-11-30 14:16 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-11-30 14:16 - 2013-11-30 14:16 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-11-30 14:16 - 2013-11-30 14:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-11-30 14:16 - 2013-11-30 14:16 - 00000000 ____D C:\Windows\system32\Macromed 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Adobe 2013-11-30 14:14 - 2013-11-30 14:14 - 00000000 ____D C:\Users\sarah\AppData\Local\Adobe 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\SysWOW64\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000012 _____ C:\Windows\system32\Drivers\10CF_FUJITSU_FTS_LIFEBOOK A512_PI_FUJITSU_FJNBB29_Phoenix BIOS SC-T v2.2_FUJ - 1100000_Version 1.16_Intel(R) HD Graphics.MRK 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Roaming\Fujitsu Launch Center 2013-11-30 13:03 - 2013-11-30 13:03 - 00000000 ____D C:\Users\sarah\AppData\Local\VirtualStore 2013-11-30 13:01 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files\McAfee 2013-11-30 13:01 - 2009-07-14 03:34 - 00000435 _____ C:\Windows\win.ini 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Users\sarah\AppData\Local\CyberLink 2013-11-30 13:00 - 2013-11-30 13:00 - 00000000 ____D C:\Program Files (x86)\McAfee.com 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\install_clap 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\ProgramData\CyberLink 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files\McAfee.com 2013-11-30 12:59 - 2013-11-30 12:59 - 00000000 ____D C:\Program Files (x86)\CyberLink 2013-11-30 12:59 - 2013-02-28 17:58 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-30 12:58 - 2013-11-30 12:58 - 00001755 _____ C:\Users\Public\Desktop\Service Shop.lnk 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\ProgramData\Fujitsu 2013-11-30 12:58 - 2013-11-30 12:58 - 00000000 ____D C:\Program Files (x86)\eBay 2013-11-30 12:58 - 2013-02-28 18:07 - 00022682 _____ C:\Windows\DPINST.LOG 2013-11-30 12:47 - 2013-11-30 12:47 - 00058016 _____ C:\Users\sarah\AppData\Local\GDIPFONTCACHEV1.DAT 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Vorlagen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Startmenü 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Netzwerkumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Lokale Einstellungen 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Eigene Dateien 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Druckumgebung 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Musik 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Documents\Eigene Bilder 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Verlauf 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\AppData\Local\Anwendungsdaten 2013-11-30 12:47 - 2013-11-30 12:47 - 00000000 _SHDL C:\Users\sarah\Anwendungsdaten 2013-11-30 12:47 - 2013-02-28 18:04 - 00015428 _____ C:\Windows\system32\results.xml 2013-11-30 12:46 - 2013-01-16 01:50 - 00000000 ____D C:\Windows\Panther 2013-11-30 12:45 - 2010-11-21 03:50 - 00000000 ____D C:\Users\Administrator 2013-11-30 12:45 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Public\Libraries 2013-11-20 09:22 - 2009-07-14 06:38 - 00029696 ___SH C:\Windows\system32\config\BCD-Template.LOG 2013-11-20 09:22 - 2009-07-14 06:32 - 00032768 _____ C:\Windows\system32\config\BCD-Template Some content of TEMP: ==================== C:\Users\sarah\AppData\Local\Temp\1385723378_wedownload.exe C:\Users\sarah\AppData\Local\Temp\Quarantine.exe C:\Users\sarah\AppData\Local\Temp\SHSetup.exe C:\Users\sarah\AppData\Local\Temp\vlc-2.1.1-win32.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-01-16 19:33 ==================== End Of Log ============================ --- --- --- --- --- --- bin ich wieder sauber? :-) |
02.12.2013, 18:47 | #7 |
/// TB-Ausbilder | lollipop lässt sich nicht löschen! Bestehen noch irgendwelche Probleme? ESET Online Scanner
__________________ cheers, Leo |
02.12.2013, 19:27 | #8 |
| lollipop lässt sich nicht löschen! nichts was ich bemerken würde,, lollipop finde ich nicht mehr wieder auf meinen pc und aartemis öffnet sich auch nicht mehr wenn ich chrome öffne. dann ist wohl alles wieder okay. den eset scanner muss ich dann nicht mehr durchlaufen lassen, oder? vielen vielen dank für die hilfe!!!! :-) |
02.12.2013, 22:20 | #9 |
/// TB-Ausbilder | lollipop lässt sich nicht löschen! Ich würd ESET noch als abschliessende Kontrolle laufen lassen.
__________________ cheers, Leo |
07.01.2014, 15:19 | #10 |
/// TB-Ausbilder | lollipop lässt sich nicht löschen! Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Ich bekomme somit keine Benachrichtigung mehr über neue Antworten. Solltest du das Thema erneut brauchen, schicke mir bitte eine PM und wir machen hier weiter. Jeder andere bitte diese Anleitung lesen und einen eigenen Thread erstellen.
__________________ cheers, Leo |
Themen zu lollipop lässt sich nicht löschen! |
aartemis, chrome, datei, ebenfalls, gekauft, inter, interne, internet, komische, laptop, lollipop, löschen, löschen nicht möglich, neue, neuen, nicht löschen, nicht mehr, seite, verzweifel, verzweifelt, ziemlich |