|
Log-Analyse und Auswertung: Windows 8.1: Überprüfung ob mein PC-System clean istWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
20.01.2014, 13:53 | #1 |
| Windows 8.1: Überprüfung ob mein PC-System clean ist Liebes TB-Forumteam. Vlt. bin ich etwas paranoid aber ich würde sehr gerne mein PC-System von euch überprüfen lassen, ob sich nicht Schädlinge darauf befinden. Ich benutze folgendes AVP: Trend Micro Titanium Maximum (Vollversion) (Logs stelle ich mit ein auch wenn TMTM nichts gefunden hat da ich es erst seit kurzem besitze. Ich benutze des Weiteren: => AdwCleaner => SpaywareBlaster => Malwarebytes Anti-Rootkit BETA => Secure Banking Angaben zum PC-System: => Systemtyp: 64-Bit-Betriebssystem, x64-basierter Prozessor => Prozessor: Intel(R) Core(TM)2 Due CPU E8400 @ 3.00GHz 3.00 GHz => Edition: Windows 8.1 Enterprise Ich hoffe, die Angaben reichen ansonsten Bescheid geben denn ich kenn mich in Sachen PC genauso gut aus wie eine Scheibe Toastbrot vom Autofahren... Folgend die Logs: => FRST Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-01-2014 04 Ran by Rüdiger (administrator) on RÜDIGER-PC on 20-01-2014 12:03:33 Running from C:\Users\Rüdiger\Desktop Windows 8.1 Enterprise (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Trend Micro Inc.) C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\plugin\TMAS\TMAS_WLM\TMAS_WLMMon.exe (Secure Banking) C:\Program Files (x86)\Secure Banking\SecureBanking.exe () C:\Program Files (x86)\Secure Banking\sbservice.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\UIFramework\TmBrowserProxy.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\livecomm.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [WLM] - C:\Program Files\Trend Micro\Titanium\Plugin\TMAS\TMAS_WLM\TMAS_WLMMon.exe [44152 2013-07-23] (Trend Micro Inc.) HKLM\...\Run: [Trend Micro Client Framework] - C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [229824 2013-10-09] (Trend Micro Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKCU\...\Run: [BrowserChoice] - C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation) HKCU\...\Run: [SecureBanking] - C:\Program Files (x86)\Secure Banking\SecureBanking.exe [507904 2013-06-30] (Secure Banking) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA065BA07AAE3CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: TSToolbarBHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.) BHO: TmIEPlugInBHO Class - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg.dll (Trend Micro Inc.) BHO: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe64.dll (Trend Micro Inc.) BHO-x32: TSToolbarBHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll (Trend Micro Inc.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: TmIEPlugInBHO Class - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg32.dll (Trend Micro Inc.) BHO-x32: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe32.dll (Trend Micro Inc.) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Trend Micro Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.) Toolbar: HKLM-x32 - Trend Micro Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll (Trend Micro Inc.) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe64.dll (Trend Micro Inc.) Handler: tmop - {69FD7CE3-4604-4fe6-967C-49B9735CEE70} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg.dll (Trend Micro Inc.) Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.) Handler: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - No File Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe32.dll (Trend Micro Inc.) Handler-x32: tmop - {69FD7CE3-4604-4fe6-967C-49B9735CEE70} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg32.dll (Trend Micro Inc.) Handler-x32: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll (Trend Micro Inc.) Handler-x32: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\Trend Micro\Titanium\UIFramework\ProToolbarIMRatingActiveX.dll (Trend Micro Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Rüdiger\AppData\Roaming\Mozilla\Firefox\Profiles\wyznpuai.default FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\Rüdiger\AppData\Roaming\Mozilla\Firefox\Profiles\wyznpuai.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-01-14] FF HKLM\...\Firefox\Extensions: [tmbepff@trendmicro.com] - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension FF Extension: Trend Micro BEP Firefox Extension - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension [2014-01-18] FF HKLM-x32\...\Firefox\Extensions: [tmbepff@trendmicro.com] - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension FF Extension: Trend Micro BEP Firefox Extension - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension [2014-01-18] FF HKLM-x32\...\Firefox\Extensions: [{BBB77B49-9FF4-4d5c-8FE2-92B1D6CD696C}] - C:\Program Files\Trend Micro\AMSP\module\20013\FxExt\firefoxextension\ FF Extension: Trend Micro Osprey Firefox Extension - C:\Program Files\Trend Micro\AMSP\module\20013\FxExt\firefoxextension\ [] FF HKLM-x32\...\Firefox\Extensions: [{22181a4d-af90-4ca3-a569-faed9118d6bc}] - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension FF Extension: Trend Micro Toolbar - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension [2014-01-18] FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird ==================== Services (Whitelisted) ================= U2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) U2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) U3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) U2 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 -ad -bt=0 [x] ==================== Drivers (Whitelisted) ==================== U0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) U3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) U3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) U3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) U0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) U0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) U3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation) U0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) U3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) U3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) U3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) U3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) U3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) U0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) U1 tmactmon; C:\Windows\system32\DRIVERS\tmactmon.sys [116264 2013-09-04] (Trend Micro Inc.) U0 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [282624 2013-09-04] (Trend Micro Inc.) U0 TMEBC; C:\Windows\System32\DRIVERS\TMEBC64.sys [50976 2013-07-01] (Trend Micro Inc.) U3 tmeevw; C:\Windows\system32\DRIVERS\tmeevw.sys [100640 2013-06-13] (Trend Micro Inc.) U0 tmel; C:\Windows\System32\DRIVERS\tmel.sys [37904 2013-07-11] (Trend Micro Inc.) U1 tmevtmgr; C:\Windows\system32\DRIVERS\tmevtmgr.sys [85424 2013-09-04] (Trend Micro Inc.) U3 tmnciesc; C:\Windows\system32\DRIVERS\tmnciesc.sys [303392 2013-05-15] (Trend Micro Inc.) U2 tmusa; C:\Windows\system32\DRIVERS\tmusa.sys [103712 2013-07-08] (Trend Micro Inc.) U3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) U3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) U3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] U2 TMAgent; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-20 12:03 - 2014-01-20 12:03 - 00014875 _____ C:\Users\Rüdiger\Desktop\FRST.txt 2014-01-20 12:03 - 2014-01-20 12:03 - 00000000 ____D C:\FRST 2014-01-20 11:56 - 2014-01-20 11:56 - 00370610 _____ C:\Users\Rüdiger\Desktop\gmer_2.1.19323.zip 2014-01-20 11:54 - 2014-01-20 11:54 - 02076672 _____ (Farbar) C:\Users\Rüdiger\Desktop\FRST64.exe 2014-01-20 11:52 - 2014-01-20 11:52 - 00000476 _____ C:\Users\Rüdiger\Desktop\defogger_disable.log 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ C:\Users\Rüdiger\defogger_reenable 2014-01-20 11:50 - 2014-01-20 11:50 - 00050477 _____ C:\Users\Rüdiger\Desktop\Defogger.exe 2014-01-20 11:33 - 2014-01-20 11:33 - 00000845 _____ C:\Users\Rüdiger\AppData\Local\recently-used.xbel 2014-01-20 11:28 - 2014-01-20 11:33 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gtk-2.0 2014-01-20 11:23 - 2014-01-20 11:23 - 00000000 ____D C:\Users\Rüdiger\.thumbnails 2014-01-20 10:02 - 2014-01-20 11:34 - 00000000 ____D C:\Users\Rüdiger\.gimp-2.8 2014-01-20 10:02 - 2014-01-20 10:02 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gegl-0.2 2014-01-19 23:40 - 2014-01-19 23:40 - 00000000 ____D C:\Program Files (x86)\Secure Banking 2014-01-19 18:50 - 2014-01-19 18:50 - 00000000 ____D C:\Program Files\HitmanPro 2014-01-19 18:49 - 2014-01-19 18:52 - 00000000 ____D C:\ProgramData\HitmanPro 2014-01-19 18:48 - 2014-01-19 18:49 - 10264904 _____ (SurfRight B.V.) C:\Users\Rüdiger\Desktop\HitmanPro_x64.exe 2014-01-19 18:34 - 2014-01-19 18:35 - 01037068 _____ (Thisisu) C:\Users\Rüdiger\Desktop\JRT.exe 2014-01-18 23:38 - 2014-01-19 20:12 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-01-18 23:38 - 2014-01-19 20:12 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-01-18 23:31 - 2014-01-20 11:14 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-18 23:31 - 2014-01-18 23:31 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-18 18:50 - 2014-01-18 18:50 - 00000584 _____ C:\Windows\PFRO.log 2014-01-18 16:46 - 2014-01-18 16:46 - 00001742 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-18 16:46 - 2014-01-18 16:46 - 00000000 ____D C:\Program Files\Defraggler 2014-01-18 06:46 - 2014-01-18 06:46 - 00000000 ___HD C:\TMRescueDisk 2014-01-18 06:41 - 2014-01-18 06:41 - 00003276 _____ C:\Windows\System32\Tasks\Titanium BTC 2014-01-18 06:41 - 2014-01-18 06:41 - 00001527 _____ C:\Users\Rüdiger\Desktop\Trend Micro Titanium Maximum Security.lnk 2014-01-18 06:41 - 2014-01-18 06:41 - 00000059 _____ C:\Windows\system32\SupportTool.exe.bat 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Maximum Security 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Program Files\Trend Micro 2014-01-18 06:41 - 2013-09-04 07:24 - 00116264 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmactmon.sys 2014-01-18 06:41 - 2013-09-04 07:22 - 00085424 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmevtmgr.sys 2014-01-18 06:41 - 2013-09-04 07:17 - 00282624 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys 2014-01-18 06:41 - 2013-07-11 03:39 - 00037904 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmel.sys 2014-01-18 06:41 - 2013-07-08 04:16 - 00103712 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmusa.sys 2014-01-18 06:41 - 2013-07-01 14:08 - 00050976 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\TMEBC64.sys 2014-01-18 06:41 - 2013-06-13 07:35 - 00100640 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmeevw.sys 2014-01-18 06:41 - 2013-05-15 11:23 - 00303392 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmnciesc.sys 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\ESET 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\ESET 2014-01-18 05:09 - 2014-01-18 05:09 - 00000418 __RSH C:\ProgramData\ntuser.pol 2014-01-16 18:56 - 2014-01-16 18:56 - 00005327 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-16 18:56 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-16 18:56 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-16 18:56 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-16 18:56 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-15 20:42 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2014-01-15 20:42 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2014-01-15 20:42 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-01-15 20:42 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2014-01-15 20:42 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2014-01-15 20:42 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-01-15 20:42 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys 2014-01-15 20:42 - 2013-11-27 11:54 - 00461824 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-01-15 20:42 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-01-15 20:42 - 2013-11-27 11:08 - 00336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-01-15 20:42 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-01-15 20:42 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2014-01-15 20:42 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2014-01-15 20:42 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll 2014-01-15 20:42 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2014-01-15 20:42 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll 2014-01-15 20:42 - 2013-11-27 09:20 - 04106240 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-01-15 20:42 - 2013-11-27 05:01 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-15 20:42 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll 2014-01-15 20:42 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2014-01-15 20:42 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2014-01-15 20:42 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2014-01-15 20:42 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll 2014-01-15 20:42 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2014-01-15 20:42 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2014-01-15 20:42 - 2013-11-26 11:13 - 04191232 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-15 20:42 - 2013-11-26 10:21 - 18577920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2014-01-15 20:42 - 2013-11-26 09:28 - 13925888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2014-01-15 20:42 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2014-01-15 20:42 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-01-15 20:42 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-01-15 20:42 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2014-01-15 20:42 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2014-01-15 20:42 - 2013-11-23 12:49 - 21196664 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-01-15 20:42 - 2013-11-23 09:19 - 18642504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-01-15 20:42 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll 2014-01-15 20:42 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys 2014-01-15 20:42 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-01-15 20:42 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2014-01-15 20:42 - 2013-11-23 04:57 - 00637952 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe 2014-01-15 20:42 - 2013-11-23 04:48 - 00479744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe 2014-01-15 20:42 - 2013-11-23 04:25 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll 2014-01-15 20:42 - 2013-11-23 04:25 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll 2014-01-15 20:42 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-01-15 20:42 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-01-15 20:42 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll 2014-01-15 20:42 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-01-15 20:42 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2014-01-15 20:42 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2014-01-15 20:42 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2014-01-15 20:42 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2014-01-15 20:42 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2014-01-15 20:42 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-01-15 20:42 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-15 20:42 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-01-15 20:42 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-01-15 20:41 - 2013-12-11 08:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2014-01-15 20:30 - 2014-01-06 23:31 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-15 20:30 - 2014-01-06 23:31 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-15 20:30 - 2013-11-27 16:36 - 03395920 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2014-01-15 20:30 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe 2014-01-15 20:30 - 2013-11-27 11:34 - 00138240 _____ C:\Windows\system32\OEMLicense.dll 2014-01-15 20:30 - 2013-11-27 10:54 - 00103936 _____ C:\Windows\SysWOW64\OEMLicense.dll 2014-01-15 20:30 - 2013-11-27 09:48 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-15 20:30 - 2013-11-27 09:45 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2014-01-15 20:30 - 2013-11-27 09:40 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-15 20:30 - 2013-11-27 09:38 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2014-01-15 20:30 - 2013-11-27 09:17 - 00695808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-01-15 20:30 - 2013-11-27 09:12 - 00848384 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-01-15 20:29 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2014-01-14 11:27 - 2014-01-20 11:21 - 00878465 _____ C:\Windows\WindowsUpdate.log 2014-01-14 10:01 - 2014-01-14 10:02 - 00013030 _____ C:\PDOXUSRS.NET 2014-01-14 10:01 - 2014-01-14 10:01 - 00000084 _____ C:\Windows\access.pwd 2014-01-14 09:54 - 1999-11-12 05:11 - 00184832 _____ C:\Windows\SysWOW64\BDEADMIN.CPL 2014-01-14 09:41 - 2014-01-14 09:41 - 00000000 ____D C:\Program Files (x86)\Borland 2014-01-13 23:18 - 2014-01-13 23:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Macromedia 2014-01-13 22:55 - 2014-01-18 23:29 - 00000000 ____D C:\Program Files (x86)\Adope Flashplayer 2014-01-13 22:25 - 2014-01-13 22:25 - 00001059 _____ C:\Users\Rüdiger\Desktop\mbam-chameleon.exe - Verknüpfung.lnk 2014-01-13 22:07 - 2014-01-13 22:08 - 00000000 ____D C:\Program Files (x86)\Cameleon 2014-01-13 21:53 - 2014-01-19 20:18 - 00000000 ____D C:\Users\Rüdiger\Desktop\mbar 2014-01-13 21:33 - 2014-01-13 21:33 - 00005500 _____ C:\Users\Rüdiger\Documents\cc_20140113_213328.reg 2014-01-13 16:18 - 2014-01-13 16:19 - 00107090 _____ C:\Users\Rüdiger\Documents\cc_20140113_161846.reg 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Mozilla 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-13 14:48 - 2014-01-13 14:48 - 00000000 ____D C:\Windows\ERUNT 2014-01-13 14:39 - 2014-01-13 14:39 - 01236282 _____ C:\Users\Rüdiger\Desktop\adwcleaner.exe 2014-01-09 10:42 - 2014-01-09 10:42 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03357024 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\evbda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02551640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02408208 _____ (Ralink Technology Corp.) C:\Windows\system32\Drivers\netr28ux.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02011488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 01119576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00994144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00924512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00839488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00663040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00651248 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorAV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00591360 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00579416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00575840 _____ (LSI Corporation, Inc.) C:\Windows\system32\Drivers\megasr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00478048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00428896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00412000 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00374112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00366432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00358752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00305504 _____ (VIA Corporation) C:\Windows\system32\Drivers\VSTXRAID.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00303392 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmnciesc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00265056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00258904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00238352 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00217952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00192864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00175960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VerifierExt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00170848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168800 _____ (VIA Technologies Inc.,Ltd) C:\Windows\system32\Drivers\vsmraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168288 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00150368 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146704 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00136536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbusr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00121184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120080 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00116264 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmactmon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00109408 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103712 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmusa.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00100640 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmeevw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00099320 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_I2C.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00097088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00093536 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00090944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00088928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc63.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00085424 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmevtmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorClass.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (Silicon Integrated Systems) C:\Windows\system32\Drivers\sisraid4.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas3.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00078688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmclr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SpbCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mslldp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\GAGP30KX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcivsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UAGP35.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064352 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00063840 _____ (Marvell Semiconductor, Inc.) C:\Windows\system32\Drivers\mvumis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00061248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (LSI Corporation) C:\Windows\system32\Drivers\megasas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Synth3dVsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050976 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\TMEBC64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidir.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00044896 _____ (Silicon Integrated Systems Corp.) C:\Windows\system32\Drivers\sisraid2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00038240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\werkernel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00037904 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00031072 _____ (Promise Technology, Inc.) C:\Windows\system32\Drivers\stexstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00027488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00026976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WpdUpFltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024568 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_GPIO.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WppRecorder.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023040 _____ (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) C:\Windows\system32\Drivers\secdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbldfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HyperVideo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksthunk.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019808 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viaide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisVirtualBus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hyperkbd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmgencounter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00010624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidumdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00006784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys.bak 2014-01-09 10:41 - 2014-01-09 10:42 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 01530200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00782176 _____ (PMC-Sierra) C:\Windows\system32\Drivers\adp80xx.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00564520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00559616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00531296 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\bxvbda.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00337760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00259424 _____ (AMD Technologies Inc.) C:\Windows\system32\Drivers\amdsbs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00114016 _____ (PMC-Sierra, Inc.) C:\Windows\system32\Drivers\arcsas.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00108896 _____ (LSI) C:\Windows\system32\Drivers\3ware.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpiex.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079200 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00071896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00068960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00057696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\condrv.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00036192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dmvsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00025952 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00017624 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\bcmfn2.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dmpusbstor.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys.bak 2014-01-09 01:29 - 2014-01-09 01:58 - 00001780 _____ C:\sc-cleaner.txt 2014-01-09 01:19 - 2014-01-09 01:19 - 00001107 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk 2014-01-09 01:18 - 2014-01-09 01:18 - 04095448 _____ (BrightFort LLC ) C:\Users\Rüdiger\Desktop\spywareblastersetup50.exe 2014-01-08 20:37 - 2014-01-14 09:44 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\KeePass 2014-01-08 14:40 - 2014-01-08 14:40 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Trend Micro 2014-01-08 13:31 - 2014-01-08 13:31 - 00002153 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2014-01-08 13:28 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-08 13:28 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2014-01-08 13:28 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-08 13:28 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-08 13:28 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-01-08 13:26 - 2013-12-10 03:13 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-08 13:26 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-08 13:26 - 2013-12-05 09:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-08 13:26 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-08 12:35 - 2014-01-08 12:35 - 00000000 _____ C:\Users\Rüdiger\AppData\Roaming\tmcef.log 2014-01-08 12:14 - 2013-12-17 15:08 - 116265448 _____ (Trend Micro Inc.) C:\Users\Rüdiger\Desktop\Trend_Micro.exe 2014-01-07 14:48 - 2014-01-07 14:48 - 00018456 _____ (Secunia) C:\Windows\system32\Drivers\psi_mf_amd64.sys.bak 2014-01-07 14:40 - 2014-01-14 12:40 - 00007605 _____ C:\Users\Rüdiger\AppData\Local\resmon.resmoncfg 2014-01-07 12:21 - 2014-01-07 12:21 - 00000679 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Desktop.lnk 2014-01-07 12:03 - 2014-01-19 20:13 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-05 18:43 - 2014-01-20 00:29 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2014-01-05 18:43 - 2014-01-05 18:43 - 00000000 ____D C:\ProgramData\Licenses 2014-01-05 18:43 - 2011-11-04 05:13 - 01070352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.OCX 2014-01-05 18:43 - 2009-03-24 12:52 - 00129872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSSTDFMT.DLL 2014-01-05 18:02 - 2014-01-14 10:51 - 00231960 _____ C:\Windows\RegBootClean64.exe 2014-01-05 17:44 - 2014-01-19 21:39 - 00000000 ____D C:\AdwCleaner 2014-01-05 17:21 - 2014-01-05 17:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Sirrix AG 2014-01-05 17:20 - 2014-01-05 17:20 - 00000000 ____D C:\ProgramData\Sirrix AG 2014-01-05 17:19 - 2014-01-05 17:19 - 00000000 ____D C:\Program Files\Oracle 2014-01-05 17:19 - 2013-07-04 15:58 - 00238352 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-01-05 17:19 - 2013-07-04 15:57 - 00120080 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-01-05 16:48 - 2014-01-05 16:48 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Secunia PSI 2014-01-05 09:53 - 2014-01-09 00:46 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Google 2014-01-05 09:53 - 2014-01-09 00:46 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-02 21:22 - 2014-01-02 21:22 - 00000566 _____ C:\Users\Rüdiger\Desktop\HTML Editor.lnk 2014-01-02 21:22 - 2014-01-02 21:22 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phase 5 HTML-Editor 2013-12-24 12:49 - 2013-12-24 12:49 - 00000000 ___RD C:\Users\Rüdiger\Documents\Notes ==================== One Month Modified Files and Folders ======= 2014-01-20 12:03 - 2014-01-20 12:03 - 00014875 _____ C:\Users\Rüdiger\Desktop\FRST.txt 2014-01-20 12:03 - 2014-01-20 12:03 - 00000000 ____D C:\FRST 2014-01-20 12:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\sru 2014-01-20 11:56 - 2014-01-20 11:56 - 00370610 _____ C:\Users\Rüdiger\Desktop\gmer_2.1.19323.zip 2014-01-20 11:54 - 2014-01-20 11:54 - 02076672 _____ (Farbar) C:\Users\Rüdiger\Desktop\FRST64.exe 2014-01-20 11:52 - 2014-01-20 11:52 - 00000476 _____ C:\Users\Rüdiger\Desktop\defogger_disable.log 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ C:\Users\Rüdiger\defogger_reenable 2014-01-20 11:52 - 2013-11-17 16:19 - 00000000 ____D C:\Users\Rüdiger 2014-01-20 11:50 - 2014-01-20 11:50 - 00050477 _____ C:\Users\Rüdiger\Desktop\Defogger.exe 2014-01-20 11:34 - 2014-01-20 10:02 - 00000000 ____D C:\Users\Rüdiger\.gimp-2.8 2014-01-20 11:33 - 2014-01-20 11:33 - 00000845 _____ C:\Users\Rüdiger\AppData\Local\recently-used.xbel 2014-01-20 11:33 - 2014-01-20 11:28 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gtk-2.0 2014-01-20 11:23 - 2014-01-20 11:23 - 00000000 ____D C:\Users\Rüdiger\.thumbnails 2014-01-20 11:21 - 2014-01-14 11:27 - 00878465 _____ C:\Windows\WindowsUpdate.log 2014-01-20 11:14 - 2014-01-18 23:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-20 11:12 - 2013-12-12 08:58 - 00005088 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for RÜDIGER-PC-Rüdiger Rüdiger-PC 2014-01-20 11:06 - 2013-11-17 16:29 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1565443934-1231221868-2527317360-1001 2014-01-20 11:04 - 2013-09-30 05:14 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-20 11:04 - 2013-09-30 04:58 - 02667448 _____ C:\Windows\system32\perfh007.dat 2014-01-20 11:04 - 2013-09-30 04:58 - 00749124 _____ C:\Windows\system32\perfc007.dat 2014-01-20 11:02 - 2013-11-18 15:43 - 00000000 __RDO C:\Users\Rüdiger\SkyDrive 2014-01-20 11:02 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\ELAM 2014-01-20 11:00 - 2013-11-17 17:06 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-20 11:00 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-20 10:09 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2014-01-20 10:02 - 2014-01-20 10:02 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gegl-0.2 2014-01-20 01:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness 2014-01-20 00:29 - 2014-01-05 18:43 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2014-01-19 23:40 - 2014-01-19 23:40 - 00000000 ____D C:\Program Files (x86)\Secure Banking 2014-01-19 22:18 - 2013-11-18 00:29 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\FileZilla 2014-01-19 21:53 - 2013-11-17 16:19 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Packages 2014-01-19 21:39 - 2014-01-05 17:44 - 00000000 ____D C:\AdwCleaner 2014-01-19 20:18 - 2014-01-13 21:53 - 00000000 ____D C:\Users\Rüdiger\Desktop\mbar 2014-01-19 20:13 - 2014-01-07 12:03 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-19 20:12 - 2014-01-18 23:38 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-01-19 20:12 - 2014-01-18 23:38 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-01-19 18:52 - 2014-01-19 18:49 - 00000000 ____D C:\ProgramData\HitmanPro 2014-01-19 18:50 - 2014-01-19 18:50 - 00000000 ____D C:\Program Files\HitmanPro 2014-01-19 18:49 - 2014-01-19 18:48 - 10264904 _____ (SurfRight B.V.) C:\Users\Rüdiger\Desktop\HitmanPro_x64.exe 2014-01-19 18:35 - 2014-01-19 18:34 - 01037068 _____ (Thisisu) C:\Users\Rüdiger\Desktop\JRT.exe 2014-01-18 23:31 - 2014-01-18 23:31 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-18 23:29 - 2014-01-13 22:55 - 00000000 ____D C:\Program Files (x86)\Adope Flashplayer 2014-01-18 23:29 - 2013-11-18 15:14 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Adobe 2014-01-18 18:50 - 2014-01-18 18:50 - 00000584 _____ C:\Windows\PFRO.log 2014-01-18 16:46 - 2014-01-18 16:46 - 00001742 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-18 16:46 - 2014-01-18 16:46 - 00000000 ____D C:\Program Files\Defraggler 2014-01-18 09:29 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\rescache 2014-01-18 09:05 - 2013-12-17 15:15 - 00000000 ____D C:\ProgramData\Trend Micro 2014-01-18 06:51 - 2013-12-17 15:06 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Trend Micro 2014-01-18 06:46 - 2014-01-18 06:46 - 00000000 ___HD C:\TMRescueDisk 2014-01-18 06:41 - 2014-01-18 06:41 - 00003276 _____ C:\Windows\System32\Tasks\Titanium BTC 2014-01-18 06:41 - 2014-01-18 06:41 - 00001527 _____ C:\Users\Rüdiger\Desktop\Trend Micro Titanium Maximum Security.lnk 2014-01-18 06:41 - 2014-01-18 06:41 - 00000059 _____ C:\Windows\system32\SupportTool.exe.bat 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Maximum Security 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Program Files\Trend Micro 2014-01-18 06:41 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\ESET 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\ESET 2014-01-18 05:09 - 2014-01-18 05:09 - 00000418 __RSH C:\ProgramData\ntuser.pol 2014-01-18 05:09 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2014-01-17 22:16 - 2013-11-18 11:50 - 00000878 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\filezilla.lnk 2014-01-16 18:58 - 2013-11-17 16:46 - 00000000 ____D C:\ProgramData\Oracle 2014-01-16 18:56 - 2014-01-16 18:56 - 00005327 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-16 18:56 - 2013-11-17 16:46 - 00000000 ____D C:\Program Files (x86)\Java 2014-01-15 20:45 - 2013-11-17 16:19 - 00000000 ___RD C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-15 20:45 - 2013-11-17 16:19 - 00000000 ___RD C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-15 20:45 - 2013-08-22 15:44 - 00409192 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ___RD C:\Windows\ToastData 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\MediaViewer 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\FileManager 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Camera 2014-01-15 20:44 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\SysWOW64\Dism 2014-01-15 20:44 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\Dism 2014-01-15 20:35 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\WinStore 2014-01-15 20:31 - 2013-11-17 17:41 - 00000000 ____D C:\ProgramData\Microsoft Help 2014-01-15 20:31 - 2013-11-17 16:52 - 00000000 ____D C:\Windows\system32\MRT 2014-01-15 20:31 - 2013-08-22 14:25 - 00000167 _____ C:\Windows\win.ini 2014-01-15 20:30 - 2013-11-17 16:52 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-14 12:40 - 2014-01-07 14:40 - 00007605 _____ C:\Users\Rüdiger\AppData\Local\resmon.resmoncfg 2014-01-14 10:51 - 2014-01-05 18:02 - 00231960 _____ C:\Windows\RegBootClean64.exe 2014-01-14 10:48 - 2013-11-22 10:15 - 00000000 ____D C:\Windows\Minidump 2014-01-14 10:02 - 2014-01-14 10:01 - 00013030 _____ C:\PDOXUSRS.NET 2014-01-14 10:01 - 2014-01-14 10:01 - 00000084 _____ C:\Windows\access.pwd 2014-01-14 09:57 - 2013-11-17 16:19 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\VirtualStore 2014-01-14 09:44 - 2014-01-08 20:37 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\KeePass 2014-01-14 09:41 - 2014-01-14 09:41 - 00000000 ____D C:\Program Files (x86)\Borland 2014-01-13 23:18 - 2014-01-13 23:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Macromedia 2014-01-13 22:25 - 2014-01-13 22:25 - 00001059 _____ C:\Users\Rüdiger\Desktop\mbam-chameleon.exe - Verknüpfung.lnk 2014-01-13 22:08 - 2014-01-13 22:07 - 00000000 ____D C:\Program Files (x86)\Cameleon 2014-01-13 21:33 - 2014-01-13 21:33 - 00005500 _____ C:\Users\Rüdiger\Documents\cc_20140113_213328.reg 2014-01-13 16:19 - 2014-01-13 16:18 - 00107090 _____ C:\Users\Rüdiger\Documents\cc_20140113_161846.reg 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Mozilla 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-13 15:20 - 2013-11-17 18:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2014-01-13 14:48 - 2014-01-13 14:48 - 00000000 ____D C:\Windows\ERUNT 2014-01-13 14:39 - 2014-01-13 14:39 - 01236282 _____ C:\Users\Rüdiger\Desktop\adwcleaner.exe 2014-01-09 10:42 - 2014-01-09 10:42 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03357024 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\evbda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02551640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02408208 _____ (Ralink Technology Corp.) C:\Windows\system32\Drivers\netr28ux.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02011488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 01119576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00994144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00924512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00839488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00663040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00651248 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorAV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00591360 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00579416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00575840 _____ (LSI Corporation, Inc.) C:\Windows\system32\Drivers\megasr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00478048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00428896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00412000 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00374112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00366432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00358752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00305504 _____ (VIA Corporation) C:\Windows\system32\Drivers\VSTXRAID.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00303392 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmnciesc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00265056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00258904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00238352 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00217952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00192864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00175960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VerifierExt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00170848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168800 _____ (VIA Technologies Inc.,Ltd) C:\Windows\system32\Drivers\vsmraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168288 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00150368 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146704 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00136536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbusr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00121184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120080 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00116264 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmactmon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00109408 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103712 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmusa.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00100640 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmeevw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00099320 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_I2C.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00097088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00093536 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00090944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00088928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc63.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00085424 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmevtmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorClass.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (Silicon Integrated Systems) C:\Windows\system32\Drivers\sisraid4.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas3.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00078688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmclr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SpbCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mslldp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\GAGP30KX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcivsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UAGP35.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064352 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00063840 _____ (Marvell Semiconductor, Inc.) C:\Windows\system32\Drivers\mvumis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00061248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (LSI Corporation) C:\Windows\system32\Drivers\megasas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Synth3dVsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050976 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\TMEBC64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidir.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00044896 _____ (Silicon Integrated Systems Corp.) C:\Windows\system32\Drivers\sisraid2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00038240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\werkernel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00037904 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00031072 _____ (Promise Technology, Inc.) C:\Windows\system32\Drivers\stexstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00027488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00026976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WpdUpFltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024568 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_GPIO.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WppRecorder.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023040 _____ (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) C:\Windows\system32\Drivers\secdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbldfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HyperVideo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksthunk.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019808 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viaide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisVirtualBus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hyperkbd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmgencounter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00010624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidumdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00006784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys.bak 2014-01-09 10:42 - 2014-01-09 10:41 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 01530200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00782176 _____ (PMC-Sierra) C:\Windows\system32\Drivers\adp80xx.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00564520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00559616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00531296 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\bxvbda.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00337760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00259424 _____ (AMD Technologies Inc.) C:\Windows\system32\Drivers\amdsbs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00114016 _____ (PMC-Sierra, Inc.) C:\Windows\system32\Drivers\arcsas.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00108896 _____ (LSI) C:\Windows\system32\Drivers\3ware.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpiex.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079200 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00071896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00068960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00057696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\condrv.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00036192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dmvsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00025952 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00017624 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\bcmfn2.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dmpusbstor.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys.bak 2014-01-09 01:58 - 2014-01-09 01:29 - 00001780 _____ C:\sc-cleaner.txt 2014-01-09 01:19 - 2014-01-09 01:19 - 00001107 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk 2014-01-09 01:18 - 2014-01-09 01:18 - 04095448 _____ (BrightFort LLC ) C:\Users\Rüdiger\Desktop\spywareblastersetup50.exe 2014-01-09 00:46 - 2014-01-05 09:53 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Google 2014-01-09 00:46 - 2014-01-05 09:53 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-08 14:40 - 2014-01-08 14:40 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Trend Micro 2014-01-08 13:31 - 2014-01-08 13:31 - 00002153 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2014-01-08 13:31 - 2013-11-17 16:53 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2014-01-08 12:35 - 2014-01-08 12:35 - 00000000 _____ C:\Users\Rüdiger\AppData\Roaming\tmcef.log 2014-01-07 14:48 - 2014-01-07 14:48 - 00018456 _____ (Secunia) C:\Windows\system32\Drivers\psi_mf_amd64.sys.bak 2014-01-07 12:21 - 2014-01-07 12:21 - 00000679 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Desktop.lnk 2014-01-06 23:31 - 2014-01-15 20:30 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-06 23:31 - 2014-01-15 20:30 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-05 18:43 - 2014-01-05 18:43 - 00000000 ____D C:\ProgramData\Licenses 2014-01-05 17:21 - 2014-01-05 17:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Sirrix AG 2014-01-05 17:20 - 2014-01-05 17:20 - 00000000 ____D C:\ProgramData\Sirrix AG 2014-01-05 17:19 - 2014-01-05 17:19 - 00000000 ____D C:\Program Files\Oracle 2014-01-05 16:48 - 2014-01-05 16:48 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Secunia PSI 2014-01-04 18:40 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\NDF 2014-01-02 21:22 - 2014-01-02 21:22 - 00000566 _____ C:\Users\Rüdiger\Desktop\HTML Editor.lnk 2014-01-02 21:22 - 2014-01-02 21:22 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phase 5 HTML-Editor 2013-12-27 22:25 - 2013-11-17 16:31 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{CDD9FC29-2DC2-4946-BC09-87406C35949E} 2013-12-24 12:49 - 2013-12-24 12:49 - 00000000 ___RD C:\Users\Rüdiger\Documents\Notes 2013-12-22 23:37 - 2013-11-23 17:47 - 00001038 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\mbar.lnk Some content of TEMP: ==================== C:\Users\Rüdiger\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-20 09:50 ==================== End Of Log ============================ Als Anhang gesetzt da die txt zu groß ist und der Hinweis erschien in der Vorschau, dass es als Anhang gesetzt werden soll. Die andere txt-Datei wurde nicht erstellt da Trotz mehrfachen Scan nach Anleitung GMER abgebrochen hat mit dem Hinweis das GMER nicht mehr funktioniert und beendet wird. AVP war ausgeschaltet (deaktiviert), mehrmals neu gedownloadet mit immer dem selbrigen Abbruch des Scans. => Trend Micro Titanium Maximum: Keine Scanberichte vorhanden da seit dem Besitz des AVPs nichts gefunden wurde => AdwCleaner: Code:
ATTFilter # AdwCleaner v3.016 - Bericht erstellt am 05/01/2014 um 17:44:46 # Aktualisiert 23/12/2013 von Xplode # Betriebssystem : Windows 8.1 Enterprise (64 bits) # Benutzername : Rüdiger - RÜDIGER-PC # Gestartet von : I:\AdwCleaner\adwcleaner.exe # Option : Suchen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gefunden : C:\Windows\System32\Tasks\GoforFilesUpdate Ordner Gefunden : C:\Users\Rüdiger\AppData\Local\Google\Chrome\User Data\Default\Extensions\heoldelcflnigdllmlopiefhkkobendj Ordner Gefunden C:\Users\Rüdiger\AppData\Roaming\goforfiles ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gefunden : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gefunden : HKCU\Software\GoforFiles Schlüssel Gefunden : HKCU\Software\lollipop Schlüssel Gefunden : [x64] HKCU\Software\GoforFiles Schlüssel Gefunden : [x64] HKCU\Software\lollipop Schlüssel Gefunden : HKLM\Software\GoforFiles Schlüssel Gefunden : HKLM\SOFTWARE\Google\Chrome\Extensions\heoldelcflnigdllmlopiefhkkobendj ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16384 -\\ Google Chrome v31.0.1650.63 [ Datei : C:\Users\Rüdiger\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1284 octets] - [05/01/2014 17:44:46] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1344 octets] ########## Code:
ATTFilter # AdwCleaner v3.016 - Bericht erstellt am 05/01/2014 um 17:55:00 # Aktualisiert 23/12/2013 von Xplode # Betriebssystem : Windows 8.1 Enterprise (64 bits) # Benutzername : Rüdiger - RÜDIGER-PC # Gestartet von : C:\Users\Rüdiger\Desktop\adwcleaner.exe # Option : Suchen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16384 -\\ Google Chrome v31.0.1650.63 [ Datei : C:\Users\Rüdiger\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [1432 octets] - [05/01/2014 17:45:09] AdwCleaner[R1].txt - [711 octets] - [05/01/2014 17:55:00] AdwCleaner[S0].txt - [1391 octets] - [05/01/2014 17:47:06] ########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [830 octets] ########## Code:
ATTFilter # AdwCleaner v3.017 - Bericht erstellt am 19/01/2014 um 21:39:47 # Aktualisiert 12/01/2014 von Xplode # Betriebssystem : Windows 8.1 Enterprise (64 bits) # Benutzername : Rüdiger - RÜDIGER-PC # Gestartet von : C:\Users\Rüdiger\Desktop\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16384 -\\ Mozilla Firefox v26.0 (de) [ Datei : C:\Users\Rüdiger\AppData\Roaming\Mozilla\Firefox\Profiles\wyznpuai.default\prefs.js ] ************************* AdwCleaner[R0].txt - [1432 octets] - [05/01/2014 17:45:09] AdwCleaner[R10].txt - [1570 octets] - [07/01/2014 10:01:43] AdwCleaner[R11].txt - [1631 octets] - [07/01/2014 12:02:23] AdwCleaner[R12].txt - [1703 octets] - [08/01/2014 11:22:18] AdwCleaner[R13].txt - [1985 octets] - [09/01/2014 00:17:48] AdwCleaner[R14].txt - [1747 octets] - [09/01/2014 02:05:04] AdwCleaner[R15].txt - [1808 octets] - [09/01/2014 02:06:56] AdwCleaner[R16].txt - [1869 octets] - [09/01/2014 10:44:57] AdwCleaner[R17].txt - [1931 octets] - [09/01/2014 16:58:25] AdwCleaner[R18].txt - [1992 octets] - [13/01/2014 14:40:57] AdwCleaner[R19].txt - [2053 octets] - [13/01/2014 14:44:42] AdwCleaner[R1].txt - [909 octets] - [05/01/2014 17:55:23] AdwCleaner[R20].txt - [2249 octets] - [13/01/2014 15:24:47] AdwCleaner[R21].txt - [2310 octets] - [14/01/2014 11:24:25] AdwCleaner[R22].txt - [422 octets] - [18/01/2014 04:30:14] AdwCleaner[R23].txt - [2491 octets] - [18/01/2014 04:36:56] AdwCleaner[R24].txt - [2646 octets] - [18/01/2014 19:00:26] AdwCleaner[R25].txt - [2673 octets] - [18/01/2014 19:03:54] AdwCleaner[R26].txt - [2734 octets] - [19/01/2014 20:08:47] AdwCleaner[R27].txt - [2795 octets] - [19/01/2014 21:39:28] AdwCleaner[R2].txt - [1027 octets] - [05/01/2014 18:00:13] AdwCleaner[R3].txt - [1088 octets] - [05/01/2014 18:06:38] AdwCleaner[R4].txt - [1148 octets] - [05/01/2014 18:19:53] AdwCleaner[R5].txt - [1208 octets] - [05/01/2014 18:50:05] AdwCleaner[R6].txt - [1269 octets] - [05/01/2014 20:19:02] AdwCleaner[R7].txt - [1329 octets] - [06/01/2014 11:55:40] AdwCleaner[R8].txt - [1449 octets] - [06/01/2014 13:56:09] AdwCleaner[R9].txt - [1509 octets] - [06/01/2014 20:18:54] AdwCleaner[S0].txt - [1391 octets] - [05/01/2014 17:47:06] AdwCleaner[S1].txt - [969 octets] - [05/01/2014 17:56:18] AdwCleaner[S2].txt - [1390 octets] - [06/01/2014 11:56:06] AdwCleaner[S3].txt - [2045 octets] - [09/01/2014 00:20:04] AdwCleaner[S4].txt - [2370 octets] - [14/01/2014 11:25:19] AdwCleaner[S5].txt - [2706 octets] - [18/01/2014 19:01:33] AdwCleaner[S6].txt - [2715 octets] - [19/01/2014 21:39:47] ########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [2775 octets] ########## Ich setze nur den aktuellsten Scan ein da die Vorherigen genauso aussehen... Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.07.0.1008 www.malwarebytes.org Database version: v2014.01.14.02 Windows 8 x64 NTFS Internet Explorer 11.0.9600.16476 Rüdiger :: RÜDIGER-PC [administrator] 19.01.2014 20:12:30 mbar-log-2014-01-19 (20-12-30).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 230382 Time elapsed: 5 minute(s), 52 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) Sollte ich etwas vergessen haben wie auch immer, bitte ich um Nachsicht und hole es selbstverständlich nach... Ich habe auf dem Desktop nun folgende Progs sitzen: => Deffoger.exe => FRST 64 => Gmer Diese wurden für diesen Thread laut Anleitung gefordert. Nun bin ich gespannt auf das Ergebnis von Euch, habe im Garten schon ein Loch ausgehoben um meinen Rechner zu begraben..., hoffe natürlich, das es nicht so weit kommen wird. Liebe Grüße... Euer Dog |
20.01.2014, 14:01 | #2 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1: Überprüfung ob mein PC-System clean istZitat:
Enterprise-Editionen von Microsoft-Software werden nur über Volumenlizenzen vertrieben
__________________ |
20.01.2014, 14:30 | #3 |
| Windows 8.1: Überprüfung ob mein PC-System clean ist Danke für deine Nachfrage die ich gerne beantworte.
__________________Mein PC nutze ich neben privaten Arbeiten auch dienstlich und das Betriebssystem habe ich von meiner Gemeinde/Stadt entsprechend zur Verfügung gestellt bekommen. Liebe Grüße, Dog |
20.01.2014, 15:05 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1: Überprüfung ob mein PC-System clean ist Adware/Junkware/Toolbars entfernen 1. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
2. Schritt: MBAM Downloade Dir bitte Malwarebytes Anti-Malware
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
20.01.2014, 16:44 | #5 |
| Windows 8.1: Überprüfung ob mein PC-System clean ist Danke das du dich dem angenommen hast. Ich habe die Anweisungen umgesetzt und frisch aus der Druckerpresse die Logs eingesetzt... => JRT - Junkware Removal Tool: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.0 (01.07.2014:1) OS: Windows 8.1 Enterprise x64 Ran by Rdiger on 20.01.2014 at 15:20:38,30 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.01.2014 at 15:23:28,58 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Malwarebytes Anti-Malware (PRO) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.01.20.04 Windows 8 x64 NTFS Internet Explorer 11.0.9600.16476 Rüdiger :: RÜDIGER-PC [Administrator] Schutz: Aktiviert 20.01.2014 15:37:01 mbam-log-2014-01-20 (15-37-01).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|E:\|F:\|H:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 337927 Laufzeit: 13 Minute(n), 27 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-01-2014 04 Ran by Rüdiger (administrator) on RÜDIGER-PC on 20-01-2014 16:04:03 Running from C:\Users\Rüdiger\Desktop Windows 8.1 Enterprise (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\plugin\TMAS\TMAS_WLM\TMAS_WLMMon.exe (Secure Banking) C:\Program Files (x86)\Secure Banking\SecureBanking.exe () C:\Program Files (x86)\Secure Banking\sbservice.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\FileManager\PhotosApp.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Trend Micro Inc.) C:\Program Files\Trend Micro\UniClient\UiFrmwrk\uiWatchDog.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation) HKLM\...\Run: [WLM] - C:\Program Files\Trend Micro\Titanium\Plugin\TMAS\TMAS_WLM\TMAS_WLMMon.exe [44152 2013-07-23] (Trend Micro Inc.) HKLM\...\Run: [Trend Micro Client Framework] - C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [229824 2013-10-09] (Trend Micro Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKCU\...\Run: [BrowserChoice] - C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation) HKCU\...\Run: [SecureBanking] - C:\Program Files (x86)\Secure Banking\SecureBanking.exe [507904 2013-06-30] (Secure Banking) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA065BA07AAE3CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: TSToolbarBHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.) BHO: TmIEPlugInBHO Class - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg.dll (Trend Micro Inc.) BHO: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe64.dll (Trend Micro Inc.) BHO-x32: TSToolbarBHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll (Trend Micro Inc.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: TmIEPlugInBHO Class - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg32.dll (Trend Micro Inc.) BHO-x32: TmBpIeBHO Class - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe32.dll (Trend Micro Inc.) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Trend Micro Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.) Toolbar: HKLM-x32 - Trend Micro Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll (Trend Micro Inc.) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe64.dll (Trend Micro Inc.) Handler: tmop - {69FD7CE3-4604-4fe6-967C-49B9735CEE70} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg.dll (Trend Micro Inc.) Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.) Handler: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - No File Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\TmBpIe32.dll (Trend Micro Inc.) Handler-x32: tmop - {69FD7CE3-4604-4fe6-967C-49B9735CEE70} - C:\Program Files\Trend Micro\AMSP\module\20013\3.0.1277\1.6.1092\TmopIEPlg32.dll (Trend Micro Inc.) Handler-x32: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll (Trend Micro Inc.) Handler-x32: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\Trend Micro\Titanium\UIFramework\ProToolbarIMRatingActiveX.dll (Trend Micro Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Rüdiger\AppData\Roaming\Mozilla\Firefox\Profiles\wyznpuai.default FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: NoScript - C:\Users\Rüdiger\AppData\Roaming\Mozilla\Firefox\Profiles\wyznpuai.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-01-14] FF HKLM\...\Firefox\Extensions: [tmbepff@trendmicro.com] - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension FF Extension: Trend Micro BEP Firefox Extension - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension [2014-01-18] FF HKLM-x32\...\Firefox\Extensions: [tmbepff@trendmicro.com] - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension FF Extension: Trend Micro BEP Firefox Extension - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1135\8.0.1135\firefoxextension [2014-01-18] FF HKLM-x32\...\Firefox\Extensions: [{BBB77B49-9FF4-4d5c-8FE2-92B1D6CD696C}] - C:\Program Files\Trend Micro\AMSP\module\20013\FxExt\firefoxextension\ FF Extension: Trend Micro Osprey Firefox Extension - C:\Program Files\Trend Micro\AMSP\module\20013\FxExt\firefoxextension\ [] FF HKLM-x32\...\Firefox\Extensions: [{22181a4d-af90-4ca3-a569-faed9118d6bc}] - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension FF Extension: Trend Micro Toolbar - C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension [2014-01-18] FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird ==================== Services (Whitelisted) ================= U2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation) U2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation) U3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) U2 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 -ad -bt=0 [x] ==================== Drivers (Whitelisted) ==================== U0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) U3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) U3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) U3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) U0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) U0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) U3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation) U0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) U3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) U3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) U3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) U3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) U3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) U0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) U1 tmactmon; C:\Windows\system32\DRIVERS\tmactmon.sys [116264 2013-09-04] (Trend Micro Inc.) U0 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [282624 2013-09-04] (Trend Micro Inc.) U0 TMEBC; C:\Windows\System32\DRIVERS\TMEBC64.sys [50976 2013-07-01] (Trend Micro Inc.) U3 tmeevw; C:\Windows\system32\DRIVERS\tmeevw.sys [100640 2013-06-13] (Trend Micro Inc.) U0 tmel; C:\Windows\System32\DRIVERS\tmel.sys [37904 2013-07-11] (Trend Micro Inc.) U1 tmevtmgr; C:\Windows\system32\DRIVERS\tmevtmgr.sys [85424 2013-09-04] (Trend Micro Inc.) U3 tmnciesc; C:\Windows\system32\DRIVERS\tmnciesc.sys [303392 2013-05-15] (Trend Micro Inc.) U2 tmusa; C:\Windows\system32\DRIVERS\tmusa.sys [103712 2013-07-08] (Trend Micro Inc.) U3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) U3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) U3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] U2 TMAgent; U3 fwddqfod; \??\C:\Users\RDIGER~1\AppData\Local\Temp\fwddqfod.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-20 16:04 - 2014-01-20 16:04 - 00014699 _____ C:\Users\Rüdiger\Desktop\FRST.txt 2014-01-20 15:58 - 2013-07-01 14:08 - 00050976 ____N (Trend Micro Inc.) C:\Windows\system32\Drivers\TMEBC64.sys 2014-01-20 15:30 - 2014-01-20 15:30 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rüdiger\Desktop\mbam-setup-1.75.0.1300.exe 2014-01-20 15:23 - 2014-01-20 15:23 - 00000627 _____ C:\Users\Rüdiger\Desktop\JRT.txt 2014-01-20 12:19 - 2013-12-04 09:53 - 00379904 _____ C:\Users\Rüdiger\Desktop\gmer.exe 2014-01-20 12:03 - 2014-01-20 12:04 - 00017073 _____ C:\Users\Rüdiger\Desktop\Additions.txt 2014-01-20 12:03 - 2014-01-20 12:03 - 00000000 ____D C:\FRST 2014-01-20 11:56 - 2014-01-20 11:56 - 00370610 _____ C:\Users\Rüdiger\Desktop\gmer_2.1.19323.zip 2014-01-20 11:54 - 2014-01-20 11:54 - 02076672 _____ (Farbar) C:\Users\Rüdiger\Desktop\FRST64.exe 2014-01-20 11:52 - 2014-01-20 11:52 - 00000476 _____ C:\Users\Rüdiger\Desktop\defogger_disable.log 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ C:\Users\Rüdiger\defogger_reenable 2014-01-20 11:50 - 2014-01-20 11:50 - 00050477 _____ C:\Users\Rüdiger\Desktop\Defogger.exe 2014-01-20 11:33 - 2014-01-20 11:33 - 00000845 _____ C:\Users\Rüdiger\AppData\Local\recently-used.xbel 2014-01-20 11:28 - 2014-01-20 11:33 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gtk-2.0 2014-01-20 11:23 - 2014-01-20 11:23 - 00000000 ____D C:\Users\Rüdiger\.thumbnails 2014-01-20 10:02 - 2014-01-20 11:34 - 00000000 ____D C:\Users\Rüdiger\.gimp-2.8 2014-01-20 10:02 - 2014-01-20 10:02 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gegl-0.2 2014-01-19 23:40 - 2014-01-19 23:40 - 00000000 ____D C:\Program Files (x86)\Secure Banking 2014-01-19 18:50 - 2014-01-19 18:50 - 00000000 ____D C:\Program Files\HitmanPro 2014-01-19 18:49 - 2014-01-19 18:52 - 00000000 ____D C:\ProgramData\HitmanPro 2014-01-19 18:48 - 2014-01-19 18:49 - 10264904 _____ (SurfRight B.V.) C:\Users\Rüdiger\Desktop\HitmanPro_x64.exe 2014-01-19 18:34 - 2014-01-19 18:35 - 01037068 _____ (Thisisu) C:\Users\Rüdiger\Desktop\JRT.exe 2014-01-18 23:31 - 2014-01-20 15:14 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-18 23:31 - 2014-01-18 23:31 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-18 18:50 - 2014-01-18 18:50 - 00000584 _____ C:\Windows\PFRO.log 2014-01-18 16:46 - 2014-01-18 16:46 - 00001742 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-18 16:46 - 2014-01-18 16:46 - 00000000 ____D C:\Program Files\Defraggler 2014-01-18 06:46 - 2014-01-18 06:46 - 00000000 ___HD C:\TMRescueDisk 2014-01-18 06:41 - 2014-01-18 06:41 - 00003276 _____ C:\Windows\System32\Tasks\Titanium BTC 2014-01-18 06:41 - 2014-01-18 06:41 - 00001527 _____ C:\Users\Rüdiger\Desktop\Trend Micro Titanium Maximum Security.lnk 2014-01-18 06:41 - 2014-01-18 06:41 - 00000059 _____ C:\Windows\system32\SupportTool.exe.bat 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Maximum Security 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Program Files\Trend Micro 2014-01-18 06:41 - 2013-09-04 07:24 - 00116264 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmactmon.sys 2014-01-18 06:41 - 2013-09-04 07:22 - 00085424 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmevtmgr.sys 2014-01-18 06:41 - 2013-09-04 07:17 - 00282624 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys 2014-01-18 06:41 - 2013-07-11 03:39 - 00037904 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmel.sys 2014-01-18 06:41 - 2013-07-08 04:16 - 00103712 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmusa.sys 2014-01-18 06:41 - 2013-06-13 07:35 - 00100640 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmeevw.sys 2014-01-18 06:41 - 2013-05-15 11:23 - 00303392 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmnciesc.sys 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\ESET 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\ESET 2014-01-18 05:09 - 2014-01-18 05:09 - 00000418 __RSH C:\ProgramData\ntuser.pol 2014-01-16 18:56 - 2014-01-16 18:56 - 00005327 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-16 18:56 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-01-16 18:56 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-01-16 18:56 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-01-16 18:56 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-01-15 20:42 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2014-01-15 20:42 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2014-01-15 20:42 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-01-15 20:42 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2014-01-15 20:42 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2014-01-15 20:42 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-01-15 20:42 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys 2014-01-15 20:42 - 2013-11-27 11:54 - 00461824 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-01-15 20:42 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-01-15 20:42 - 2013-11-27 11:08 - 00336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-01-15 20:42 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-01-15 20:42 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2014-01-15 20:42 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2014-01-15 20:42 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll 2014-01-15 20:42 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2014-01-15 20:42 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll 2014-01-15 20:42 - 2013-11-27 09:20 - 04106240 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2014-01-15 20:42 - 2013-11-27 05:01 - 00385614 _____ C:\Windows\system32\ApnDatabase.xml 2014-01-15 20:42 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll 2014-01-15 20:42 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2014-01-15 20:42 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2014-01-15 20:42 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2014-01-15 20:42 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll 2014-01-15 20:42 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2014-01-15 20:42 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2014-01-15 20:42 - 2013-11-26 11:13 - 04191232 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-15 20:42 - 2013-11-26 10:21 - 18577920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2014-01-15 20:42 - 2013-11-26 09:28 - 13925888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2014-01-15 20:42 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2014-01-15 20:42 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-01-15 20:42 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-01-15 20:42 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2014-01-15 20:42 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2014-01-15 20:42 - 2013-11-23 12:49 - 21196664 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-01-15 20:42 - 2013-11-23 09:19 - 18642504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-01-15 20:42 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll 2014-01-15 20:42 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys 2014-01-15 20:42 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-01-15 20:42 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2014-01-15 20:42 - 2013-11-23 04:57 - 00637952 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe 2014-01-15 20:42 - 2013-11-23 04:48 - 00479744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe 2014-01-15 20:42 - 2013-11-23 04:25 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll 2014-01-15 20:42 - 2013-11-23 04:25 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll 2014-01-15 20:42 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-01-15 20:42 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-01-15 20:42 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll 2014-01-15 20:42 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-01-15 20:42 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2014-01-15 20:42 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2014-01-15 20:42 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2014-01-15 20:42 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2014-01-15 20:42 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2014-01-15 20:42 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-01-15 20:42 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-15 20:42 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-01-15 20:42 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-01-15 20:41 - 2013-12-11 08:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2014-01-15 20:30 - 2014-01-06 23:31 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-15 20:30 - 2014-01-06 23:31 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-15 20:30 - 2013-11-27 16:36 - 03395920 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2014-01-15 20:30 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe 2014-01-15 20:30 - 2013-11-27 11:34 - 00138240 _____ C:\Windows\system32\OEMLicense.dll 2014-01-15 20:30 - 2013-11-27 10:54 - 00103936 _____ C:\Windows\SysWOW64\OEMLicense.dll 2014-01-15 20:30 - 2013-11-27 09:48 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-15 20:30 - 2013-11-27 09:45 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2014-01-15 20:30 - 2013-11-27 09:40 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-15 20:30 - 2013-11-27 09:38 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2014-01-15 20:30 - 2013-11-27 09:17 - 00695808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2014-01-15 20:30 - 2013-11-27 09:12 - 00848384 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2014-01-15 20:29 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2014-01-14 11:27 - 2014-01-20 11:21 - 00878465 _____ C:\Windows\WindowsUpdate.log 2014-01-14 10:01 - 2014-01-14 10:02 - 00013030 _____ C:\PDOXUSRS.NET 2014-01-14 10:01 - 2014-01-14 10:01 - 00000084 _____ C:\Windows\access.pwd 2014-01-14 09:54 - 1999-11-12 05:11 - 00184832 _____ C:\Windows\SysWOW64\BDEADMIN.CPL 2014-01-14 09:41 - 2014-01-14 09:41 - 00000000 ____D C:\Program Files (x86)\Borland 2014-01-13 23:18 - 2014-01-13 23:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Macromedia 2014-01-13 22:55 - 2014-01-18 23:29 - 00000000 ____D C:\Program Files (x86)\Adope Flashplayer 2014-01-13 22:25 - 2014-01-13 22:25 - 00001059 _____ C:\Users\Rüdiger\Desktop\mbam-chameleon.exe - Verknüpfung.lnk 2014-01-13 22:07 - 2014-01-13 22:08 - 00000000 ____D C:\Program Files (x86)\Cameleon 2014-01-13 21:53 - 2014-01-19 20:18 - 00000000 ____D C:\Users\Rüdiger\Desktop\mbar 2014-01-13 21:33 - 2014-01-13 21:33 - 00005500 _____ C:\Users\Rüdiger\Documents\cc_20140113_213328.reg 2014-01-13 16:18 - 2014-01-13 16:19 - 00107090 _____ C:\Users\Rüdiger\Documents\cc_20140113_161846.reg 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Mozilla 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-13 14:48 - 2014-01-13 14:48 - 00000000 ____D C:\Windows\ERUNT 2014-01-13 14:39 - 2014-01-13 14:39 - 01236282 _____ C:\Users\Rüdiger\Desktop\adwcleaner.exe 2014-01-09 10:42 - 2014-01-09 10:42 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03357024 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\evbda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02551640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02408208 _____ (Ralink Technology Corp.) C:\Windows\system32\Drivers\netr28ux.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02011488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 01119576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00994144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00924512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00839488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00663040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00651248 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorAV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00591360 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00579416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00575840 _____ (LSI Corporation, Inc.) C:\Windows\system32\Drivers\megasr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00478048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00428896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00412000 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00374112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00366432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00358752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00305504 _____ (VIA Corporation) C:\Windows\system32\Drivers\VSTXRAID.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00303392 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmnciesc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00265056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00258904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00238352 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00217952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00192864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00175960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VerifierExt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00170848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168800 _____ (VIA Technologies Inc.,Ltd) C:\Windows\system32\Drivers\vsmraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168288 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00150368 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146704 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00136536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbusr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00121184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120080 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00116264 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmactmon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00109408 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103712 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmusa.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00100640 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmeevw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00099320 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_I2C.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00097088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00093536 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00090944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00088928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc63.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00085424 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmevtmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorClass.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (Silicon Integrated Systems) C:\Windows\system32\Drivers\sisraid4.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas3.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00078688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmclr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SpbCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mslldp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\GAGP30KX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcivsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UAGP35.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064352 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00063840 _____ (Marvell Semiconductor, Inc.) C:\Windows\system32\Drivers\mvumis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00061248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (LSI Corporation) C:\Windows\system32\Drivers\megasas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Synth3dVsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050976 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\TMEBC64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidir.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00044896 _____ (Silicon Integrated Systems Corp.) C:\Windows\system32\Drivers\sisraid2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00038240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\werkernel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00037904 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00031072 _____ (Promise Technology, Inc.) C:\Windows\system32\Drivers\stexstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00027488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00026976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WpdUpFltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024568 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_GPIO.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WppRecorder.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023040 _____ (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) C:\Windows\system32\Drivers\secdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbldfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HyperVideo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksthunk.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019808 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viaide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisVirtualBus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hyperkbd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmgencounter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00010624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidumdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00006784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys.bak 2014-01-09 10:41 - 2014-01-09 10:42 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 01530200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00782176 _____ (PMC-Sierra) C:\Windows\system32\Drivers\adp80xx.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00564520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00559616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00531296 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\bxvbda.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00337760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00259424 _____ (AMD Technologies Inc.) C:\Windows\system32\Drivers\amdsbs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00114016 _____ (PMC-Sierra, Inc.) C:\Windows\system32\Drivers\arcsas.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00108896 _____ (LSI) C:\Windows\system32\Drivers\3ware.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpiex.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079200 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00071896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00068960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00057696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\condrv.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00036192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dmvsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00025952 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00017624 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\bcmfn2.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dmpusbstor.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys.bak 2014-01-09 01:29 - 2014-01-09 01:58 - 00001780 _____ C:\sc-cleaner.txt 2014-01-09 01:19 - 2014-01-09 01:19 - 00001107 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk 2014-01-09 01:18 - 2014-01-09 01:18 - 04095448 _____ (BrightFort LLC ) C:\Users\Rüdiger\Desktop\spywareblastersetup50.exe 2014-01-08 20:37 - 2014-01-14 09:44 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\KeePass 2014-01-08 14:40 - 2014-01-08 14:40 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Trend Micro 2014-01-08 13:31 - 2014-01-08 13:31 - 00002153 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2014-01-08 13:28 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-08 13:28 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-08 13:28 - 2013-12-19 21:33 - 00023754 _____ C:\Windows\system32\nvinfo.pb 2014-01-08 13:28 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-08 13:28 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-08 13:28 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-01-08 13:26 - 2013-12-10 03:13 - 01100248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2014-01-08 13:26 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2014-01-08 13:26 - 2013-12-05 09:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2014-01-08 13:26 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2014-01-08 12:35 - 2014-01-08 12:35 - 00000000 _____ C:\Users\Rüdiger\AppData\Roaming\tmcef.log 2014-01-08 12:14 - 2013-12-17 15:08 - 116265448 _____ (Trend Micro Inc.) C:\Users\Rüdiger\Desktop\Trend_Micro.exe 2014-01-07 14:48 - 2014-01-07 14:48 - 00018456 _____ (Secunia) C:\Windows\system32\Drivers\psi_mf_amd64.sys.bak 2014-01-07 14:40 - 2014-01-14 12:40 - 00007605 _____ C:\Users\Rüdiger\AppData\Local\resmon.resmoncfg 2014-01-07 12:21 - 2014-01-07 12:21 - 00000679 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Desktop.lnk 2014-01-07 12:03 - 2014-01-19 20:13 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-05 18:43 - 2014-01-20 00:29 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2014-01-05 18:43 - 2014-01-05 18:43 - 00000000 ____D C:\ProgramData\Licenses 2014-01-05 18:43 - 2011-11-04 05:13 - 01070352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.OCX 2014-01-05 18:43 - 2009-03-24 12:52 - 00129872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSSTDFMT.DLL 2014-01-05 18:02 - 2014-01-14 10:51 - 00231960 _____ C:\Windows\RegBootClean64.exe 2014-01-05 17:44 - 2014-01-19 21:39 - 00000000 ____D C:\AdwCleaner 2014-01-05 17:21 - 2014-01-05 17:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Sirrix AG 2014-01-05 17:20 - 2014-01-05 17:20 - 00000000 ____D C:\ProgramData\Sirrix AG 2014-01-05 17:19 - 2014-01-05 17:19 - 00000000 ____D C:\Program Files\Oracle 2014-01-05 17:19 - 2013-07-04 15:58 - 00238352 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-01-05 17:19 - 2013-07-04 15:57 - 00120080 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-01-05 16:48 - 2014-01-05 16:48 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Secunia PSI 2014-01-05 09:53 - 2014-01-09 00:46 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Google 2014-01-05 09:53 - 2014-01-09 00:46 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-02 21:22 - 2014-01-02 21:22 - 00000566 _____ C:\Users\Rüdiger\Desktop\HTML Editor.lnk 2014-01-02 21:22 - 2014-01-02 21:22 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phase 5 HTML-Editor 2013-12-24 12:49 - 2013-12-24 12:49 - 00000000 ___RD C:\Users\Rüdiger\Documents\Notes ==================== One Month Modified Files and Folders ======= 2014-01-20 16:04 - 2014-01-20 16:04 - 00014699 _____ C:\Users\Rüdiger\Desktop\FRST.txt 2014-01-20 16:02 - 2013-11-17 16:29 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1565443934-1231221868-2527317360-1001 2014-01-20 16:00 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\sru 2014-01-20 15:58 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\ELAM 2014-01-20 15:30 - 2014-01-20 15:30 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Rüdiger\Desktop\mbam-setup-1.75.0.1300.exe 2014-01-20 15:23 - 2014-01-20 15:23 - 00000627 _____ C:\Users\Rüdiger\Desktop\JRT.txt 2014-01-20 15:17 - 2013-12-12 08:58 - 00005088 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for RÜDIGER-PC-Rüdiger Rüdiger-PC 2014-01-20 15:14 - 2014-01-18 23:31 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-20 12:04 - 2014-01-20 12:03 - 00017073 _____ C:\Users\Rüdiger\Desktop\Additions.txt 2014-01-20 12:03 - 2014-01-20 12:03 - 00000000 ____D C:\FRST 2014-01-20 11:56 - 2014-01-20 11:56 - 00370610 _____ C:\Users\Rüdiger\Desktop\gmer_2.1.19323.zip 2014-01-20 11:54 - 2014-01-20 11:54 - 02076672 _____ (Farbar) C:\Users\Rüdiger\Desktop\FRST64.exe 2014-01-20 11:52 - 2014-01-20 11:52 - 00000476 _____ C:\Users\Rüdiger\Desktop\defogger_disable.log 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ C:\Users\Rüdiger\defogger_reenable 2014-01-20 11:52 - 2013-11-17 16:19 - 00000000 ____D C:\Users\Rüdiger 2014-01-20 11:50 - 2014-01-20 11:50 - 00050477 _____ C:\Users\Rüdiger\Desktop\Defogger.exe 2014-01-20 11:34 - 2014-01-20 10:02 - 00000000 ____D C:\Users\Rüdiger\.gimp-2.8 2014-01-20 11:33 - 2014-01-20 11:33 - 00000845 _____ C:\Users\Rüdiger\AppData\Local\recently-used.xbel 2014-01-20 11:33 - 2014-01-20 11:28 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gtk-2.0 2014-01-20 11:23 - 2014-01-20 11:23 - 00000000 ____D C:\Users\Rüdiger\.thumbnails 2014-01-20 11:21 - 2014-01-14 11:27 - 00878465 _____ C:\Windows\WindowsUpdate.log 2014-01-20 11:04 - 2013-09-30 05:14 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-20 11:04 - 2013-09-30 04:58 - 02667448 _____ C:\Windows\system32\perfh007.dat 2014-01-20 11:04 - 2013-09-30 04:58 - 00749124 _____ C:\Windows\system32\perfc007.dat 2014-01-20 11:02 - 2013-11-18 15:43 - 00000000 __RDO C:\Users\Rüdiger\SkyDrive 2014-01-20 11:00 - 2013-11-17 17:06 - 00000000 ____D C:\ProgramData\NVIDIA 2014-01-20 11:00 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-20 10:09 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2014-01-20 10:02 - 2014-01-20 10:02 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\gegl-0.2 2014-01-20 01:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness 2014-01-20 00:29 - 2014-01-05 18:43 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2014-01-19 23:40 - 2014-01-19 23:40 - 00000000 ____D C:\Program Files (x86)\Secure Banking 2014-01-19 22:18 - 2013-11-18 00:29 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\FileZilla 2014-01-19 21:53 - 2013-11-17 16:19 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Packages 2014-01-19 21:39 - 2014-01-05 17:44 - 00000000 ____D C:\AdwCleaner 2014-01-19 20:18 - 2014-01-13 21:53 - 00000000 ____D C:\Users\Rüdiger\Desktop\mbar 2014-01-19 20:13 - 2014-01-07 12:03 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-01-19 18:52 - 2014-01-19 18:49 - 00000000 ____D C:\ProgramData\HitmanPro 2014-01-19 18:50 - 2014-01-19 18:50 - 00000000 ____D C:\Program Files\HitmanPro 2014-01-19 18:49 - 2014-01-19 18:48 - 10264904 _____ (SurfRight B.V.) C:\Users\Rüdiger\Desktop\HitmanPro_x64.exe 2014-01-19 18:35 - 2014-01-19 18:34 - 01037068 _____ (Thisisu) C:\Users\Rüdiger\Desktop\JRT.exe 2014-01-18 23:31 - 2014-01-18 23:31 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-18 23:29 - 2014-01-13 22:55 - 00000000 ____D C:\Program Files (x86)\Adope Flashplayer 2014-01-18 23:29 - 2013-11-18 15:14 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Adobe 2014-01-18 18:50 - 2014-01-18 18:50 - 00000584 _____ C:\Windows\PFRO.log 2014-01-18 16:46 - 2014-01-18 16:46 - 00001742 _____ C:\Users\Public\Desktop\Defraggler.lnk 2014-01-18 16:46 - 2014-01-18 16:46 - 00000000 ____D C:\Program Files\Defraggler 2014-01-18 09:29 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\rescache 2014-01-18 09:05 - 2013-12-17 15:15 - 00000000 ____D C:\ProgramData\Trend Micro 2014-01-18 06:51 - 2013-12-17 15:06 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Trend Micro 2014-01-18 06:46 - 2014-01-18 06:46 - 00000000 ___HD C:\TMRescueDisk 2014-01-18 06:41 - 2014-01-18 06:41 - 00003276 _____ C:\Windows\System32\Tasks\Titanium BTC 2014-01-18 06:41 - 2014-01-18 06:41 - 00001527 _____ C:\Users\Rüdiger\Desktop\Trend Micro Titanium Maximum Security.lnk 2014-01-18 06:41 - 2014-01-18 06:41 - 00000059 _____ C:\Windows\system32\SupportTool.exe.bat 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Maximum Security 2014-01-18 06:41 - 2014-01-18 06:41 - 00000000 ____D C:\Program Files\Trend Micro 2014-01-18 06:41 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\ESET 2014-01-18 05:18 - 2014-01-18 05:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\ESET 2014-01-18 05:09 - 2014-01-18 05:09 - 00000418 __RSH C:\ProgramData\ntuser.pol 2014-01-18 05:09 - 2013-08-22 16:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2014-01-17 22:16 - 2013-11-18 11:50 - 00000878 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\filezilla.lnk 2014-01-16 18:58 - 2013-11-17 16:46 - 00000000 ____D C:\ProgramData\Oracle 2014-01-16 18:56 - 2014-01-16 18:56 - 00005327 _____ C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-01-16 18:56 - 2013-11-17 16:46 - 00000000 ____D C:\Program Files (x86)\Java 2014-01-15 20:45 - 2013-11-17 16:19 - 00000000 ___RD C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-15 20:45 - 2013-11-17 16:19 - 00000000 ___RD C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-15 20:45 - 2013-08-22 15:44 - 00409192 _____ C:\Windows\system32\FNTCACHE.DAT 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ___RD C:\Windows\ToastData 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\MediaViewer 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\FileManager 2014-01-15 20:44 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Camera 2014-01-15 20:44 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\SysWOW64\Dism 2014-01-15 20:44 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\Dism 2014-01-15 20:35 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\WinStore 2014-01-15 20:31 - 2013-11-17 17:41 - 00000000 ____D C:\ProgramData\Microsoft Help 2014-01-15 20:31 - 2013-11-17 16:52 - 00000000 ____D C:\Windows\system32\MRT 2014-01-15 20:31 - 2013-08-22 14:25 - 00000167 _____ C:\Windows\win.ini 2014-01-15 20:30 - 2013-11-17 16:52 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-14 12:40 - 2014-01-07 14:40 - 00007605 _____ C:\Users\Rüdiger\AppData\Local\resmon.resmoncfg 2014-01-14 10:51 - 2014-01-05 18:02 - 00231960 _____ C:\Windows\RegBootClean64.exe 2014-01-14 10:48 - 2013-11-22 10:15 - 00000000 ____D C:\Windows\Minidump 2014-01-14 10:02 - 2014-01-14 10:01 - 00013030 _____ C:\PDOXUSRS.NET 2014-01-14 10:01 - 2014-01-14 10:01 - 00000084 _____ C:\Windows\access.pwd 2014-01-14 09:57 - 2013-11-17 16:19 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\VirtualStore 2014-01-14 09:44 - 2014-01-08 20:37 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\KeePass 2014-01-14 09:41 - 2014-01-14 09:41 - 00000000 ____D C:\Program Files (x86)\Borland 2014-01-13 23:18 - 2014-01-13 23:18 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Macromedia 2014-01-13 22:25 - 2014-01-13 22:25 - 00001059 _____ C:\Users\Rüdiger\Desktop\mbam-chameleon.exe - Verknüpfung.lnk 2014-01-13 22:08 - 2014-01-13 22:07 - 00000000 ____D C:\Program Files (x86)\Cameleon 2014-01-13 21:33 - 2014-01-13 21:33 - 00005500 _____ C:\Users\Rüdiger\Documents\cc_20140113_213328.reg 2014-01-13 16:19 - 2014-01-13 16:18 - 00107090 _____ C:\Users\Rüdiger\Documents\cc_20140113_161846.reg 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Mozilla 2014-01-13 15:21 - 2014-01-13 15:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-13 15:20 - 2014-01-13 15:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-13 15:20 - 2013-11-17 18:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2014-01-13 14:48 - 2014-01-13 14:48 - 00000000 ____D C:\Windows\ERUNT 2014-01-13 14:39 - 2014-01-13 14:39 - 01236282 _____ C:\Users\Rüdiger\Desktop\adwcleaner.exe 2014-01-09 10:42 - 2014-01-09 10:42 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 03357024 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\evbda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02551640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02408208 _____ (Ralink Technology Corp.) C:\Windows\system32\Drivers\netr28ux.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 02011488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 01119576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00994144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00924512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00839488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00663040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00651248 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorAV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00591360 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00579416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00575840 _____ (LSI Corporation, Inc.) C:\Windows\system32\Drivers\megasr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00478048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00428896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00412000 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00374112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00366432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00358752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00305504 _____ (VIA Corporation) C:\Windows\system32\Drivers\VSTXRAID.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00303392 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmnciesc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00265056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00258904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00238352 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Vid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00217952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00192864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00175960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VerifierExt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00170848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168800 _____ (VIA Technologies Inc.,Ltd) C:\Windows\system32\Drivers\vsmraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00168288 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00150368 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146704 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00146272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00136536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbusr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00124256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00121184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00120080 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00117464 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00116264 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmactmon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00109408 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103712 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmusa.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00101208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00100640 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmeevw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00099320 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_I2C.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00097088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00093536 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00090944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00088928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc63.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00085424 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmevtmgr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorClass.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00082784 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sss.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (Silicon Integrated Systems) C:\Windows\system32\Drivers\sisraid4.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00081760 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas3.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00079200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00078688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmclr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00072032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SpbCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mslldp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\GAGP30KX.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcivsp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UAGP35.SYS.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00064352 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00063840 _____ (Marvell Semiconductor, Inc.) C:\Windows\system32\Drivers\mvumis.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00061248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00060224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056672 _____ (LSI Corporation) C:\Windows\system32\Drivers\megasas.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Synth3dVsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050976 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\TMEBC64.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00050016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcw.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidir.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00044896 _____ (Silicon Integrated Systems Corp.) C:\Windows\system32\Drivers\sisraid2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00038240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\werkernel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00037904 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmel.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00034760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00031072 _____ (Promise Technology, Inc.) C:\Windows\system32\Drivers\stexstor.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00030048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00027488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00026976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WpdUpFltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024568 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_GPIO.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00024416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WppRecorder.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00023040 _____ (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) C:\Windows\system32\Drivers\secdrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbldfltr.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HyperVideo.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00021248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksthunk.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00019808 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viaide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00018272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisVirtualBus.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hyperkbd.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmgencounter.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00010624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidumdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00007040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00006784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys.bak 2014-01-09 10:42 - 2014-01-09 10:42 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys.bak 2014-01-09 10:42 - 2014-01-09 10:41 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 01530200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00782176 _____ (PMC-Sierra) C:\Windows\system32\Drivers\adp80xx.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00564520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00559616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00531296 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\bxvbda.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00377696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00337760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00259424 _____ (AMD Technologies Inc.) C:\Windows\system32\Drivers\amdsbs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00114016 _____ (PMC-Sierra, Inc.) C:\Windows\system32\Drivers\arcsas.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00108896 _____ (LSI) C:\Windows\system32\Drivers\3ware.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpiex.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00079200 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00071896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00068960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00057696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\condrv.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00036192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00033632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dmvsc.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00025952 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00017624 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\bcmfn2.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dmpusbstor.sys.bak 2014-01-09 10:41 - 2014-01-09 10:41 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys.bak 2014-01-09 01:58 - 2014-01-09 01:29 - 00001780 _____ C:\sc-cleaner.txt 2014-01-09 01:19 - 2014-01-09 01:19 - 00001107 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk 2014-01-09 01:18 - 2014-01-09 01:18 - 04095448 _____ (BrightFort LLC ) C:\Users\Rüdiger\Desktop\spywareblastersetup50.exe 2014-01-09 00:46 - 2014-01-05 09:53 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Google 2014-01-09 00:46 - 2014-01-05 09:53 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-08 14:40 - 2014-01-08 14:40 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Trend Micro 2014-01-08 13:31 - 2014-01-08 13:31 - 00002153 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2014-01-08 13:31 - 2013-11-17 16:53 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2014-01-08 12:35 - 2014-01-08 12:35 - 00000000 _____ C:\Users\Rüdiger\AppData\Roaming\tmcef.log 2014-01-07 14:48 - 2014-01-07 14:48 - 00018456 _____ (Secunia) C:\Windows\system32\Drivers\psi_mf_amd64.sys.bak 2014-01-07 12:21 - 2014-01-07 12:21 - 00000679 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Desktop.lnk 2014-01-06 23:31 - 2014-01-15 20:30 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-06 23:31 - 2014-01-15 20:30 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-05 18:43 - 2014-01-05 18:43 - 00000000 ____D C:\ProgramData\Licenses 2014-01-05 17:21 - 2014-01-05 17:21 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Sirrix AG 2014-01-05 17:20 - 2014-01-05 17:20 - 00000000 ____D C:\ProgramData\Sirrix AG 2014-01-05 17:19 - 2014-01-05 17:19 - 00000000 ____D C:\Program Files\Oracle 2014-01-05 16:48 - 2014-01-05 16:48 - 00000000 ____D C:\Users\Rüdiger\AppData\Local\Secunia PSI 2014-01-04 18:40 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\NDF 2014-01-02 21:22 - 2014-01-02 21:22 - 00000566 _____ C:\Users\Rüdiger\Desktop\HTML Editor.lnk 2014-01-02 21:22 - 2014-01-02 21:22 - 00000000 ____D C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phase 5 HTML-Editor 2013-12-27 22:25 - 2013-11-17 16:31 - 00003946 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{CDD9FC29-2DC2-4946-BC09-87406C35949E} 2013-12-24 12:49 - 2013-12-24 12:49 - 00000000 ___RD C:\Users\Rüdiger\Documents\Notes 2013-12-22 23:37 - 2013-11-23 17:47 - 00001038 _____ C:\Users\Rüdiger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\mbar.lnk Some content of TEMP: ==================== C:\Users\Rüdiger\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-20 09:50 ==================== End Of Log ============================ --- --- --- Die FRST. Addition musste ich als Anhang wieder anfügen da es zu lang war/ist. --- --- --- Dann ist mir jetzt aufgefallen, wenn ich die Internet (LAN-Verbindung) deaktivieren möchte, erhalte ich die Meldung das die Internetverbindung nicht unterbrochen werden kann, die Fehlermeldung folgend im Screen: Dies ist, seit ich die ganzen Scantools auf dem Desktop habe für die Überprüfung... hat es ggf. etwas mit dem Tool "Defogger zu tun? Hoffe habe soweit alles richtig gemacht. liebe Grüße, Dog |
20.01.2014, 16:47 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1: Überprüfung ob mein PC-System clean ist Wozu muss man die LAN-Verbindung denn deaktivieren??
__________________ --> Windows 8.1: Überprüfung ob mein PC-System clean ist |
20.01.2014, 16:50 | #7 |
| Windows 8.1: Überprüfung ob mein PC-System clean ist Eigentlich ne gute Frage... Ich möchte ungern 24 Std am Tag den Rechner im Internet laufen haben, deshalb stelle ich das Internet dann aus und wie momentan wegen der Meldung, ziehe ich das Kabel dann aus dem Rechner |
20.01.2014, 16:56 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1: Überprüfung ob mein PC-System clean ist Paranoider gehts nicht? Wozu hast du einen Router und die Windows-Firewall? Dein Rechner ist nicht direkt aus dem Internet erreichbar! Aber nun gut, jeder wie er will, seit wann lässt sich die LAN-BVerbindung nicht mehr deaktivieren
__________________ Logfiles bitte immer in CODE-Tags posten |
20.01.2014, 19:16 | #9 |
| Windows 8.1: Überprüfung ob mein PC-System clean ist Auch da kann ich dir schon Recht geben, ich sag... ähhh schreib ja, das ich da vlt. ein wenig zu paranoid bin. Zu deiner Frage: Das ist, denke ich, seit ich vorhin das Programm Deffoger.exe auf den Desktop installiert und ausgeführt habe. Meine Hand ins Feuer legen möchte ich dafür aber nicht. Auf jeden Fall trat das Problem davor nicht auf. Liebe Grüße, Dog Edit: Das Verbindungs/- bzw. das Deaktivierungsproblem hat sich erledigt. Lösung: Ich habe alle die für diesen Thread relevanten Scanprogramme deinstalliert bzw. gelöscht und nun klappt es wieder wunderbar. Liebe Grüße, Dog |
22.01.2014, 23:43 | #10 |
| Windows 8.1: Überprüfung ob mein PC-System clean ist Ich hoffe es erscheint nicht als unhöflich wenn ich frage ansonsten Asche über mein Haupt..., waren wir jetzt durch und ist mein rechner Clean oder soll ich noch etwas machen? Oder sagen die Scanergebnisse aus, das alles gut ist... ... Wie gesagt, ich bin da echt ein wenig paranoid und brauch für mich ein Okay das alles okay ist...
__________________ Liebe Grüße, Dog |
23.01.2014, 09:09 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1: Überprüfung ob mein PC-System clean ist Ich hab da nichts Auffälliges mehr gesehen
__________________ Logfiles bitte immer in CODE-Tags posten |
25.01.2014, 10:05 | #12 |
| Windows 8.1: Überprüfung ob mein PC-System clean ist Ich danke dir für die Rückmeldung und deine Arbeit. Du/Ihr macht einen tollen Job! Spende geht auf den Weg zu euch... Liebe Grüße, Dog
__________________ Liebe Grüße, Dog |
25.01.2014, 20:22 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1: Überprüfung ob mein PC-System clean ist Danke
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Windows 8.1: Überprüfung ob mein PC-System clean ist |
.dll, abbruch, administrator, adobe, adobe flash player, appdatalow, avp, cpu, defender, explorer, flash player, helper, homepage, mozilla, nvidia, preferences, realtek, registrierungsdatenbank, registry, scan, security, services.exe, software, suche, svchost.exe, temp, windows, windowsapps, winlogon.exe |