![]() |
|
Plagegeister aller Art und deren Bekämpfung: Nach versehentlichem Download öffnen sich im IE Firefox und Google Chrome Nation Zoom SeitenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
![]() ![]() | ![]() Nach versehentlichem Download öffnen sich im IE Firefox und Google Chrome Nation Zoom Seiten Guten Tag liebe TrojanerBoard Helfer, ich habe heute ein paar Videos geschaut und bei einem ist ein Download gestartet den ich noch abbrechen wollte aber ohne Erfolg. Danach habe ich in all meinen Internet Browsern eine Startseite die www.nationzoom.com heisst und ich bekomme diese nicht weg. Ich möchte mich dafür entschuldigen das ich schon selbstständig versucht habe diese Seite loszuwerden nach folgenden beiden Anleitungen: hxxp://praxistipps.chip.de/nationzoom-virus-entfernen-so-gehts_20339 und hxxp://www.browserdoktor.de/nationzoom-entfernen/ Die ersten beiden Links wenn man bei Google "Nation Zoom Entfernen" eingibt falls ihr die Links als unsicher ansehen solltet. Keine dieser beiden Anleitungen hat geholfen somit wende ich mich nun an dieses Forum weil das hier ja professionelle Hilfe bietet. Ich habe ausserdem einen FRST Scan durchgeführt den ich nachfolgend poste. Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-01-2014 Ran by Ozoma (administrator) on OZOMA-PC on 06-01-2014 19:47:26 Running from C:\Users\Ozoma\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\audiodg.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2012-02-01] (Intel Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252296 2012-01-17] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe [37296 2012-01-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-01-02] (Adobe Systems Incorporated) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3806544 2013-11-29] (LogMeIn Inc.) HKCU\...\Run: [DAEMON Tools Lite] - D:\DAEMON Tools Lite\DTLite.exe [3672384 2012-04-11] (DT Soft Ltd) HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [18642024 2013-02-28] (Skype Technologies S.A.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nationzoom.com/?type=hp&ts=1389015938&from=amt&uid=ST31000524AS_9VPFBC69XXXX9VPFBC69 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Winsock: Catalog5 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [327168] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" FireFox: ======== FF ProfilePath: C:\Users\Ozoma\AppData\Roaming\Mozilla\Firefox\Profiles\xf4j3rjr.default-1389032603445 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.5.1 - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.5.1 - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\nationzoom.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com FF StartMenuInternet: FIREFOX.EXE - firefox.exe Chrome: ======= CHR Extension: (Adblock Plus) - C:\Users\Ozoma\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.7.2_0 CHR Extension: (AdBlock) - C:\Users\Ozoma\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.16_0 CHR Extension: (Google Wallet) - C:\Users\Ozoma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1 CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Ozoma\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.nationzoom.com/?type=sc&ts=1389015938&from=amt&uid=ST31000524AS_9VPFBC69XXXX9VPFBC69 CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.) S4 RemoteAccess; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [746392 2013-03-20] (Tunngle.net GmbH) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-07-12] (VIA Technologies, Inc.) ==================== Drivers (Whitelisted) ==================== R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-05-31] (DT Soft Ltd) S3 E100B; C:\Windows\System32\DRIVERS\efe5b32e.sys [192256 2009-06-10] (Intel Corporation) R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-07-24] (AnchorFree Inc.) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-06 19:47 - 2014-01-06 19:47 - 01931762 _____ (Farbar) C:\Users\Ozoma\Downloads\FRST64.exe 2014-01-06 19:47 - 2014-01-06 19:47 - 00011153 _____ C:\Users\Ozoma\Downloads\FRST.txt 2014-01-06 19:42 - 2014-01-06 19:42 - 00015608 _____ C:\ComboFix.txt 2014-01-06 19:29 - 2014-01-06 19:29 - 00000000 ____D C:\avast! sandbox 2014-01-06 19:23 - 2014-01-06 19:23 - 00000000 ____D C:\Users\Ozoma\Desktop\Alte Firefox-Daten 2014-01-06 19:17 - 2014-01-06 19:17 - 00000000 _____ C:\autoexec.bat 2014-01-06 19:13 - 2014-01-06 19:13 - 00002260 _____ C:\Users\Ozoma\Desktop\SpyHunter.lnk 2014-01-06 19:13 - 2014-01-06 19:13 - 00000000 ____D C:\Users\Ozoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2014-01-06 19:13 - 2014-01-06 19:13 - 00000000 ____D C:\sh4ldr 2014-01-06 19:13 - 2014-01-06 19:13 - 00000000 ____D C:\Program Files\Enigma Software Group 2014-01-06 19:12 - 2014-01-06 19:13 - 00000000 ____D C:\Windows\CD09642E061D4844BA37ED1480916404.TMP 2014-01-06 19:11 - 2014-01-06 19:11 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Ozoma\Downloads\SpyHunter-Installer.exe 2014-01-06 15:30 - 2014-01-06 15:30 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-06 15:17 - 2014-01-06 15:18 - 91412976 _____ (AVAST Software) C:\Users\Ozoma\Downloads\avast_free_antivirus_setup.exe 2014-01-06 14:46 - 2014-01-06 14:48 - 00000000 ____D C:\Users\Ozoma\AppData\Local\Mobogenie 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\Documents\Mobogenie 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\AppData\Local\genienext 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\AppData\Local\cache 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\.android 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 _____ C:\Users\Ozoma\daemonprocess.txt 2014-01-06 14:45 - 2014-01-06 14:55 - 00000000 ____D C:\ProgramData\WPM 2014-01-06 14:45 - 2014-01-06 14:45 - 00000000 ____D C:\Users\Ozoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop 2014-01-05 19:36 - 2014-01-05 19:36 - 00000202 _____ C:\Users\Ozoma\Desktop\Eryi's Action.url 2014-01-05 16:01 - 2014-01-05 16:02 - 63332844 _____ C:\Users\Ozoma\Downloads\v. 0.5.rar 2014-01-05 16:00 - 2014-01-05 16:00 - 00215642 _____ C:\Users\Ozoma\Downloads\tMorph.zip 2014-01-05 12:47 - 2014-01-05 12:48 - 11182439 _____ C:\Users\Ozoma\Downloads\suprise_download_1_by_gagfan01-d70of0q.rar 2014-01-02 23:43 - 2014-01-02 23:43 - 00000000 ____D C:\Users\Ozoma\AppData\Local\WSplitTimer 2014-01-02 20:13 - 2014-01-02 20:14 - 16277032 _____ C:\Users\Ozoma\Downloads\moriya_1100a.zip 2014-01-02 18:52 - 2014-01-02 20:42 - 00000091 _____ C:\Users\Ozoma\Desktop\SM64 70Star.txt 2014-01-02 14:50 - 2014-01-02 14:50 - 00146117 _____ C:\Users\Ozoma\Downloads\WSplit 1.5.2.zip 2014-01-02 14:50 - 2013-11-15 04:48 - 00336896 _____ C:\Users\Ozoma\Desktop\WSplit.exe 2014-01-01 13:19 - 2014-01-01 13:19 - 00095665 _____ C:\Users\Ozoma\Downloads\pt_BR.zip 2013-12-31 23:20 - 2013-12-31 23:20 - 00000200 _____ C:\Users\Ozoma\Desktop\Shadowgrounds.url 2013-12-31 15:28 - 2013-12-31 15:28 - 00938490 _____ C:\Users\Ozoma\Downloads\Legend of Zelda, The - Oracle of Seasons (D, F, E).zip 2013-12-31 15:19 - 2013-12-31 15:20 - 01020607 _____ C:\Users\Ozoma\Downloads\Legend of Zelda, The - Oracle of Ages (D, F, E).zip 2013-12-31 14:41 - 2013-12-31 14:42 - 47542730 _____ C:\Users\Ozoma\Downloads\v. 0.4.2.rar 2013-12-31 14:34 - 2013-12-31 14:34 - 08338122 _____ C:\Users\Ozoma\Downloads\WoW_17688-patched_64bit.zip 2013-12-26 22:36 - 2013-12-26 22:36 - 00000202 _____ C:\Users\Ozoma\Desktop\7 Days to Die.url 2013-12-26 17:02 - 2013-12-26 17:02 - 00000199 _____ C:\Users\Ozoma\Desktop\Left 4 Dead 2.url 2013-12-23 04:53 - 2013-12-23 04:53 - 00000000 ____D C:\Users\Ozoma\Documents\VVVVVV 2013-12-21 22:10 - 2013-12-31 04:08 - 00000050 _____ C:\Users\Ozoma\Desktop\save1 2013-12-21 22:09 - 2013-12-31 04:12 - 00000024 _____ C:\Users\Ozoma\Desktop\DeathTime 2013-12-21 22:09 - 2013-11-23 09:22 - 147172145 _____ () C:\Users\Ozoma\Desktop\I wanna go the Parallel World.exe 2013-12-21 18:22 - 2013-12-21 18:22 - 07471137 _____ C:\Users\Ozoma\Downloads\BloodElfxFleshbeast_V.mp4 2013-12-20 20:15 - 2013-12-20 20:15 - 00000202 _____ C:\Users\Ozoma\Desktop\Starbound.url 2013-12-19 00:31 - 2013-12-19 00:31 - 00160989 _____ C:\Users\Ozoma\Downloads\dfef536d5aade075c46c26009b77ce80.jpeg 2013-12-19 00:31 - 2013-12-19 00:31 - 00153385 _____ C:\Users\Ozoma\Downloads\a093cb2782a9934ee1eeeadf05688b14.jpeg 2013-12-18 21:50 - 2013-12-31 00:35 - 00000456 _____ C:\Users\Ozoma\Desktop\Megaman Unlimited Speedrun 1 2013-12-18 00:36 - 2013-12-18 00:36 - 00205935 _____ C:\Users\Ozoma\Downloads\Battle Kid 2 - Mountain of Torment.zip 2013-12-16 19:24 - 2013-12-16 19:24 - 00000201 _____ C:\Users\Ozoma\Desktop\VVVVVV.url 2013-12-15 22:49 - 2013-12-15 22:49 - 00000621 _____ C:\Users\Public\Desktop\Age of Wulin.lnk 2013-12-15 21:26 - 2013-12-15 21:26 - 00696824 _____ C:\Users\Ozoma\Downloads\Wulin_DE.exe 2013-12-14 22:12 - 2013-12-14 23:26 - 146138520 _____ C:\Users\Ozoma\Desktop\I wanna go the Parallel World.zip 2013-12-12 22:36 - 2013-12-12 22:36 - 00017189 _____ C:\Users\Ozoma\Desktop\SRL Emotes.rar 2013-12-12 03:01 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-12 03:01 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-12 03:01 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-12 03:01 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-12 03:00 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-12 03:00 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-12 03:00 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-12 03:00 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-12 03:00 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-12 03:00 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-12 03:00 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-12 03:00 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-12 03:00 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-12 03:00 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-12 03:00 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-12 03:00 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-12 03:00 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-12 03:00 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-12 03:00 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-12 03:00 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-12 03:00 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-12 03:00 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-12 03:00 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-12 03:00 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-12 03:00 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-12 03:00 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-12 03:00 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-12 03:00 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-12 03:00 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-12 03:00 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-12 03:00 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-12 03:00 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-12 03:00 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-12 03:00 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-12 03:00 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-11 15:28 - 2013-12-11 16:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 12:45 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-11 12:45 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-11 12:45 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-11 12:45 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-11 12:45 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-11 12:45 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-11 12:45 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-11 12:45 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-11 12:45 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-11 12:45 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-11 12:45 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-11 12:45 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-11 12:45 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-11 12:45 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-11 12:45 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-11 12:45 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-11 12:45 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-11 12:45 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-11 12:45 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-11 03:03 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-11 03:00 - 2013-12-11 03:00 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-11 03:00 - 2013-12-11 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-11 03:00 - 2013-12-11 03:00 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-11 03:00 - 2013-12-11 03:00 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-11 03:00 - 2013-12-11 03:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-11 03:00 - 2013-12-11 03:00 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-11 03:00 - 2013-12-11 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-11 02:59 - 2013-12-11 03:03 - 00010277 _____ C:\Windows\IE11_main.log 2013-12-08 00:51 - 2014-01-04 23:15 - 00000000 ____D C:\Users\Ozoma\Desktop\MegaMan Unlimited Update 2013-12-08 00:50 - 2013-12-31 14:52 - 00000000 ____D C:\Users\Ozoma\Desktop\MegaMan Unlimited Speedrunmode 2013-12-07 19:33 - 2013-12-07 19:33 - 00000000 ____D C:\Users\Ozoma\AppData\Local\{919835E6-46EA-4053-B5E2-458DB270630D} 2013-12-07 15:49 - 2013-12-07 15:52 - 79259754 _____ C:\Users\Ozoma\Downloads\MegaManUnlimited.zip 2013-12-07 15:48 - 2013-12-07 15:50 - 79316716 _____ C:\Users\Ozoma\Downloads\MegaManUnlimited1.1.0SR.zip ==================== One Month Modified Files and Folders ======= 2014-01-06 19:47 - 2014-01-06 19:47 - 01931762 _____ (Farbar) C:\Users\Ozoma\Downloads\FRST64.exe 2014-01-06 19:47 - 2014-01-06 19:47 - 00011153 _____ C:\Users\Ozoma\Downloads\FRST.txt 2014-01-06 19:47 - 2012-04-24 07:18 - 00000000 ____D C:\Users\Ozoma\AppData\Roaming\Skype 2014-01-06 19:42 - 2014-01-06 19:42 - 00015608 _____ C:\ComboFix.txt 2014-01-06 19:42 - 2012-07-31 10:22 - 00000000 ____D C:\Qoobox 2014-01-06 19:40 - 2013-04-29 19:53 - 00000000 ____D C:\Users\Ozoma\AppData\Local\LogMeIn Hamachi 2014-01-06 19:40 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini 2014-01-06 19:35 - 2009-07-14 05:45 - 00020288 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-06 19:35 - 2009-07-14 05:45 - 00020288 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-06 19:31 - 2012-04-20 22:40 - 01311990 _____ C:\Windows\WindowsUpdate.log 2014-01-06 19:29 - 2014-01-06 19:29 - 00000000 ____D C:\avast! sandbox 2014-01-06 19:28 - 2013-01-03 23:39 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-06 19:27 - 2013-05-11 13:54 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-06 19:27 - 2012-04-18 06:46 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-06 19:27 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-06 19:27 - 2009-07-14 05:51 - 00876558 _____ C:\Windows\setupact.log 2014-01-06 19:26 - 2013-11-25 15:24 - 00000000 ____D C:\AdwCleaner 2014-01-06 19:23 - 2014-01-06 19:23 - 00000000 ____D C:\Users\Ozoma\Desktop\Alte Firefox-Daten 2014-01-06 19:21 - 2013-05-11 13:54 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-06 19:17 - 2014-01-06 19:17 - 00000000 _____ C:\autoexec.bat 2014-01-06 19:16 - 2013-11-25 15:28 - 05160001 ____R (Swearware) C:\Users\Ozoma\Downloads\ComboFix.exe 2014-01-06 19:13 - 2014-01-06 19:13 - 00002260 _____ C:\Users\Ozoma\Desktop\SpyHunter.lnk 2014-01-06 19:13 - 2014-01-06 19:13 - 00000000 ____D C:\Users\Ozoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter 2014-01-06 19:13 - 2014-01-06 19:13 - 00000000 ____D C:\sh4ldr 2014-01-06 19:13 - 2014-01-06 19:13 - 00000000 ____D C:\Program Files\Enigma Software Group 2014-01-06 19:13 - 2014-01-06 19:12 - 00000000 ____D C:\Windows\CD09642E061D4844BA37ED1480916404.TMP 2014-01-06 19:11 - 2014-01-06 19:11 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Ozoma\Downloads\SpyHunter-Installer.exe 2014-01-06 19:03 - 2010-11-21 04:47 - 00907684 _____ C:\Windows\PFRO.log 2014-01-06 18:53 - 2012-04-20 22:59 - 00000000 ____D C:\Users\Ozoma\AppData\Roaming\TS3Client 2014-01-06 15:30 - 2014-01-06 15:30 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-01-06 15:30 - 2013-11-25 16:34 - 00000000 ____D C:\ProgramData\AVAST Software 2014-01-06 15:27 - 2012-04-20 22:45 - 00000000 ___RD C:\Users\Ozoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-06 15:24 - 2013-01-20 02:32 - 00000000 ____D C:\Program Files (x86)\Sony 2014-01-06 15:18 - 2014-01-06 15:17 - 91412976 _____ (AVAST Software) C:\Users\Ozoma\Downloads\avast_free_antivirus_setup.exe 2014-01-06 14:55 - 2014-01-06 14:45 - 00000000 ____D C:\ProgramData\WPM 2014-01-06 14:48 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\AppData\Local\Mobogenie 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\Documents\Mobogenie 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\AppData\Local\genienext 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\AppData\Local\cache 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 ____D C:\Users\Ozoma\.android 2014-01-06 14:46 - 2014-01-06 14:46 - 00000000 _____ C:\Users\Ozoma\daemonprocess.txt 2014-01-06 14:46 - 2012-04-20 22:45 - 00000000 ____D C:\Users\Ozoma 2014-01-06 14:45 - 2014-01-06 14:45 - 00000000 ____D C:\Users\Ozoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop 2014-01-06 14:45 - 2013-05-11 13:54 - 00002373 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2014-01-06 14:45 - 2013-03-02 11:33 - 00001328 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-01-06 14:45 - 2012-04-20 22:45 - 00001631 _____ C:\Users\Ozoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-06 13:46 - 2012-08-16 23:56 - 00029696 _____ C:\Users\Ozoma\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-01-06 12:42 - 2012-04-21 10:44 - 00000000 ____D C:\Users\Ozoma\Desktop\Let's plays und fails 2014-01-05 21:18 - 2013-08-15 19:52 - 00000000 ____D C:\Users\Ozoma\AppData\Roaming\Mumble 2014-01-05 19:36 - 2014-01-05 19:36 - 00000202 _____ C:\Users\Ozoma\Desktop\Eryi's Action.url 2014-01-05 16:02 - 2014-01-05 16:01 - 63332844 _____ C:\Users\Ozoma\Downloads\v. 0.5.rar 2014-01-05 16:00 - 2014-01-05 16:00 - 00215642 _____ C:\Users\Ozoma\Downloads\tMorph.zip 2014-01-05 12:49 - 2012-10-01 16:39 - 00000000 ____D C:\Users\Ozoma\AppData\Local\Paint.NET 2014-01-05 12:48 - 2014-01-05 12:47 - 11182439 _____ C:\Users\Ozoma\Downloads\suprise_download_1_by_gagfan01-d70of0q.rar 2014-01-04 23:15 - 2013-12-08 00:51 - 00000000 ____D C:\Users\Ozoma\Desktop\MegaMan Unlimited Update 2014-01-02 23:43 - 2014-01-02 23:43 - 00000000 ____D C:\Users\Ozoma\AppData\Local\WSplitTimer 2014-01-02 20:42 - 2014-01-02 18:52 - 00000091 _____ C:\Users\Ozoma\Desktop\SM64 70Star.txt 2014-01-02 20:14 - 2014-01-02 20:13 - 16277032 _____ C:\Users\Ozoma\Downloads\moriya_1100a.zip 2014-01-02 14:50 - 2014-01-02 14:50 - 00146117 _____ C:\Users\Ozoma\Downloads\WSplit 1.5.2.zip 2014-01-01 13:19 - 2014-01-01 13:19 - 00095665 _____ C:\Users\Ozoma\Downloads\pt_BR.zip 2013-12-31 23:20 - 2013-12-31 23:20 - 00000200 _____ C:\Users\Ozoma\Desktop\Shadowgrounds.url 2013-12-31 15:28 - 2013-12-31 15:28 - 00938490 _____ C:\Users\Ozoma\Downloads\Legend of Zelda, The - Oracle of Seasons (D, F, E).zip 2013-12-31 15:20 - 2013-12-31 15:19 - 01020607 _____ C:\Users\Ozoma\Downloads\Legend of Zelda, The - Oracle of Ages (D, F, E).zip 2013-12-31 14:52 - 2013-12-08 00:50 - 00000000 ____D C:\Users\Ozoma\Desktop\MegaMan Unlimited Speedrunmode 2013-12-31 14:42 - 2013-12-31 14:41 - 47542730 _____ C:\Users\Ozoma\Downloads\v. 0.4.2.rar 2013-12-31 14:34 - 2013-12-31 14:34 - 08338122 _____ C:\Users\Ozoma\Downloads\WoW_17688-patched_64bit.zip 2013-12-31 04:12 - 2013-12-21 22:09 - 00000024 _____ C:\Users\Ozoma\Desktop\DeathTime 2013-12-31 04:08 - 2013-12-21 22:10 - 00000050 _____ C:\Users\Ozoma\Desktop\save1 2013-12-31 00:35 - 2013-12-18 21:50 - 00000456 _____ C:\Users\Ozoma\Desktop\Megaman Unlimited Speedrun 1 2013-12-30 10:21 - 2013-11-11 06:09 - 00001945 _____ C:\Users\Ozoma\Desktop\Warp 9,975.txt 2013-12-26 22:36 - 2013-12-26 22:36 - 00000202 _____ C:\Users\Ozoma\Desktop\7 Days to Die.url 2013-12-26 17:02 - 2013-12-26 17:02 - 00000199 _____ C:\Users\Ozoma\Desktop\Left 4 Dead 2.url 2013-12-23 04:55 - 2013-06-27 19:58 - 00000000 ____D C:\Users\Ozoma\Desktop\JoyToKey_en 2013-12-23 04:53 - 2013-12-23 04:53 - 00000000 ____D C:\Users\Ozoma\Documents\VVVVVV 2013-12-21 18:22 - 2013-12-21 18:22 - 07471137 _____ C:\Users\Ozoma\Downloads\BloodElfxFleshbeast_V.mp4 2013-12-21 04:20 - 2012-05-11 14:51 - 00000000 ____D C:\Users\Ozoma\Documents\StarCraft II 2013-12-20 21:16 - 2012-04-20 22:44 - 00407840 _____ C:\Windows\DirectX.log 2013-12-20 20:15 - 2013-12-20 20:15 - 00000202 _____ C:\Users\Ozoma\Desktop\Starbound.url 2013-12-20 07:35 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-19 15:42 - 2012-05-23 10:35 - 00002884 _____ C:\Users\Ozoma\Desktop\Tag.txt 2013-12-19 00:31 - 2013-12-19 00:31 - 00160989 _____ C:\Users\Ozoma\Downloads\dfef536d5aade075c46c26009b77ce80.jpeg 2013-12-19 00:31 - 2013-12-19 00:31 - 00153385 _____ C:\Users\Ozoma\Downloads\a093cb2782a9934ee1eeeadf05688b14.jpeg 2013-12-18 21:50 - 2013-08-15 19:51 - 00000000 ____D C:\Users\Ozoma\AppData\Local\WSplit 2013-12-18 18:58 - 2013-11-25 15:29 - 00001467 _____ C:\Users\Ozoma\Desktop\ComboFix - Verknüpfung.lnk 2013-12-18 00:36 - 2013-12-18 00:36 - 00205935 _____ C:\Users\Ozoma\Downloads\Battle Kid 2 - Mountain of Torment.zip 2013-12-16 19:24 - 2013-12-16 19:24 - 00000201 _____ C:\Users\Ozoma\Desktop\VVVVVV.url 2013-12-15 22:49 - 2013-12-15 22:49 - 00000621 _____ C:\Users\Public\Desktop\Age of Wulin.lnk 2013-12-15 22:49 - 2012-04-18 06:50 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-12-15 21:26 - 2013-12-15 21:26 - 00696824 _____ C:\Users\Ozoma\Downloads\Wulin_DE.exe 2013-12-14 23:26 - 2013-12-14 22:12 - 146138520 _____ C:\Users\Ozoma\Desktop\I wanna go the Parallel World.zip 2013-12-14 18:43 - 2012-07-08 22:49 - 00007601 _____ C:\Users\Ozoma\AppData\Local\Resmon.ResmonCfg 2013-12-14 03:02 - 2013-09-06 00:05 - 00000000 ____D C:\Windows\system32\MRT 2013-12-14 03:00 - 2012-07-23 16:49 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-13 14:56 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-12 22:36 - 2013-12-12 22:36 - 00017189 _____ C:\Users\Ozoma\Desktop\SRL Emotes.rar 2013-12-12 14:02 - 2011-04-12 08:43 - 05873572 _____ C:\Windows\system32\perfh007.dat 2013-12-12 14:02 - 2011-04-12 08:43 - 01756324 _____ C:\Windows\system32\perfc007.dat 2013-12-12 14:02 - 2009-07-14 06:13 - 00005884 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-12 13:56 - 2009-07-14 05:45 - 04918320 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-11 16:28 - 2013-12-11 15:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 16:28 - 2013-01-03 23:39 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-11 16:28 - 2012-04-21 18:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 12:35 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-11 03:03 - 2013-12-11 02:59 - 00010277 _____ C:\Windows\IE11_main.log 2013-12-11 03:00 - 2013-12-11 03:00 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-11 03:00 - 2013-12-11 03:00 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-11 03:00 - 2013-12-11 03:00 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-11 03:00 - 2013-12-11 03:00 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-11 03:00 - 2013-12-11 03:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-11 03:00 - 2013-12-11 03:00 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-11 03:00 - 2013-12-11 03:00 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-11 03:00 - 2013-12-11 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-11 03:00 - 2013-12-11 03:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-07 19:33 - 2013-12-07 19:33 - 00000000 ____D C:\Users\Ozoma\AppData\Local\{919835E6-46EA-4053-B5E2-458DB270630D} 2013-12-07 15:52 - 2013-12-07 15:49 - 79259754 _____ C:\Users\Ozoma\Downloads\MegaManUnlimited.zip 2013-12-07 15:50 - 2013-12-07 15:48 - 79316716 _____ C:\Users\Ozoma\Downloads\MegaManUnlimited1.1.0SR.zip 2013-12-07 15:41 - 2013-07-17 06:09 - 00000000 ____D C:\Users\Ozoma\Desktop\MegaMan Unlimited Orginal Files to move or delete: ==================== C:\Users\Ozoma\AppData\Roaming\Camdata.ini C:\Users\Ozoma\AppData\Roaming\CamLayout.ini C:\Users\Ozoma\AppData\Roaming\CamShapes.ini C:\Users\Ozoma\AppData\Roaming\CamStudio.Producer.Data.ini ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-31 15:55 ==================== End Of Log ============================ |
Themen zu Nach versehentlichem Download öffnen sich im IE Firefox und Google Chrome Nation Zoom Seiten |
adblock, administrator, antivirus, combofix, desktop, firefox, flash player, helper, hotspot, installation, internet browser, mobogenie, mobogenie entfernen, nation zoom, nation zoom entfernen, nationzoom, nationzoom entfernen, plug-in, registry, services.exe, software, spyhunter, spyhunter entfernen, svchost.exe, win32/adware.multiplug.i, win32/adware.multiplug.n, win64/agent.ba, winlogon.exe |