|
Plagegeister aller Art und deren Bekämpfung: Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
23.01.2014, 18:15 | #1 |
| Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Hallo zusammen, Vor drei Tagen habe ich eine Phishing Mail von "Paypal" erhalten und leider auf den Link geklickt. Seitdem habe ich die wichtigsten Passwörter geändert und mein Avira mehrmals laufen lassen - ohne Hinweise. Stellenweise war mein Internet sehr langsam, weswegen ich weitere Hilfe gesucht habe. So bin ich bei der Arbeit auf dieses Forum hingewiesen worden. Gerade nach Hause, wollte ich mich bei Win 8.1 Pro anmelden, jedoch hat mein PC kein Internet (Verbindung steht, alle anderen Geräte laufen einwandfrei) und ich komme so nicht in mein Admin Konto ("PC ist offline, bitte mit dem letzten PW anmelden") und auch bei meinem anderen User nicht ins Internet. Es stand ein Fehler von wegen "zu lange SSL" im Firefox. Was kann ich nun tun, um den Rechner wieder zum Laufen zu bringen und zu säubern? Danke! Geändert von diebutter (23.01.2014 um 18:49 Uhr) |
23.01.2014, 18:49 | #2 |
/// the machine /// TB-Ausbilder | Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
23.01.2014, 19:01 | #3 |
| Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Hallo,
__________________habe mit dem Laptop meiner Freundin das Programm geladen und per USB auf meinen Rechner gespielt. Anbei die beiden Log-Files. FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-01-2014 Ran by Oliver (administrator) on BTTR on 23-01-2014 18:53:57 Running from C:\Users\Oliver\Desktop Windows 8.1 Pro N (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros Commnucations) C:\Windows\System32\AdminService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Validity Sensors, Inc.) C:\Windows\System32\valWBFPolicyService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.16470_none_fa2491fd9b3cfcb2\TiWorker.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Fieldston Software) C:\Program Files (x86)\Fieldston Software\gSyncit\gsyncit.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Windows (R) Win 7 DDK provider) C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [Razer Synapse] - C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [442712 2013-11-17] (Razer Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [FLxHCIm64] - C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe [47616 2011-08-31] (Windows (R) Win 7 DDK provider) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKCU\...\Run: [gSyncit] - C:\Program Files (x86)\Fieldston Software\gSyncit\gsyncit.exe [167424 2014-01-14] (Fieldston Software) Lsa: [Authentication Packages] msv1_0 wvauth Startup: C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 195.34.133.21 212.186.211.21 FireFox: ======== FF ProfilePath: C:\Users\Oliver\AppData\Roaming\Mozilla\Firefox\Profiles\b9ro14mo.default FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml ==================== Services (Whitelisted) ================= U2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [908856 2013-12-09] (Avira Operations GmbH & Co. KG) U2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) U2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) U2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG) U2 AtherosSvc; C:\Windows\system32\AdminService.exe [208384 2012-08-29] (Atheros Commnucations) U2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) U2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [35328 2013-10-11] (Validity Sensors, Inc.) U3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== U0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) U3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.) U2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG) U1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG) U1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG) U2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG) U3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) U3 FLxHCIh; C:\Windows\System32\drivers\FLxHCIh.sys [69184 2011-09-05] (Fresco Logic) U3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) U3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) U0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) U0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) U3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-08-23] (Microsoft Corporation) U0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) U3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) U3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) U3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) U3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [39080 2013-11-15] (Razer Inc) U3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) U0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) U3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) U3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-23 18:53 - 2014-01-23 18:54 - 00010041 _____ C:\Users\Oliver\Desktop\FRST.txt 2014-01-23 18:53 - 2014-01-23 18:53 - 00000000 ____D C:\FRST 2014-01-23 18:53 - 2014-01-23 00:01 - 02077184 _____ (Farbar) C:\Users\Oliver\Desktop\FRST64.exe 2014-01-23 18:12 - 2014-01-23 18:12 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Macromedia 2014-01-23 18:12 - 2014-01-23 18:12 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Avira 2014-01-23 18:12 - 2014-01-23 18:12 - 00000000 ____D C:\Users\Gast\AppData\Local\Razer 2014-01-23 18:11 - 2014-01-23 18:11 - 00001452 _____ C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-23 18:11 - 2014-01-23 18:11 - 00000020 ___SH C:\Users\Gast\ntuser.ini 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ___RD C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ___RD C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Apple Computer 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Adobe 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Local\VirtualStore 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Local\Packages 2014-01-23 17:41 - 2014-01-23 17:41 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Macromedia 2014-01-22 17:06 - 2014-01-22 17:06 - 00000000 ____D C:\Users\Oliver\Documents\Outlook-Dateien 2014-01-22 16:59 - 2014-01-22 22:26 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\gSyncit 2014-01-22 16:59 - 2014-01-22 16:59 - 00000000 ____D C:\Program Files (x86)\Fieldston Software 2014-01-22 16:53 - 2014-01-22 16:53 - 04806656 _____ C:\Users\Oliver\Downloads\gSyncit_3_8_74.msi 2014-01-22 16:49 - 2014-01-22 16:49 - 05818368 _____ C:\Users\Oliver\Downloads\gSyncit64_3_8_74.msi 2014-01-22 16:45 - 2014-01-22 17:05 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-22 16:45 - 2014-01-22 16:45 - 00000000 ____D C:\Users\Oliver\AppData\Local\Google 2014-01-22 16:44 - 2014-01-22 16:44 - 00700784 _____ C:\Users\Oliver\Downloads\GoogleCalendarSync_Installer_0.9.3.5.exe 2014-01-19 09:56 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2014-01-19 09:56 - 2013-11-27 16:36 - 03395920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2014-01-19 09:56 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe 2014-01-19 09:56 - 2013-11-27 11:34 - 00138240 _____ C:\WINDOWS\system32\OEMLicense.dll 2014-01-19 09:56 - 2013-11-27 10:54 - 00103936 _____ C:\WINDOWS\SysWOW64\OEMLicense.dll 2014-01-19 09:56 - 2013-11-27 09:48 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-19 09:56 - 2013-11-27 09:45 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll 2014-01-19 09:56 - 2013-11-27 09:40 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-19 09:56 - 2013-11-27 09:38 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll 2014-01-19 09:56 - 2013-11-27 09:17 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-01-19 09:56 - 2013-11-27 09:12 - 00848384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-01-14 20:11 - 2014-01-14 20:11 - 00000000 ____D C:\Users\Oliver\Documents\Benutzerdefinierte Office-Vorlagen 2014-01-14 16:13 - 2014-01-14 16:13 - 00000000 ____D C:\Users\Oliver\Documents\OneNote-Notizbücher 2014-01-14 15:50 - 2014-01-20 17:47 - 00005120 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for BTTR-Oliver Bttr 2014-01-14 15:50 - 2014-01-14 15:50 - 00000000 ____D C:\ProgramData\Microsoft SkyDrive 2014-01-14 15:43 - 2014-01-23 17:54 - 00000000 ____D C:\Program Files\Microsoft Office 15 2014-01-14 15:40 - 2014-01-14 15:40 - 00575168 _____ (Microsoft Corporation) C:\Users\Oliver\Downloads\Setup.X86.de-DE_O365HomePremRetail_c7845a12-779f-44a5-bb34-2d190fb94db4_TX_DB_.exe 2014-01-14 14:22 - 2014-01-14 14:22 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2014-01-14 14:22 - 2014-01-14 14:22 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2014-01-13 23:22 - 2014-01-13 23:22 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Macromedia 2014-01-13 23:22 - 2014-01-13 23:22 - 00000000 ____D C:\Users\Oliver\AppData\Local\Macromedia 2014-01-13 23:21 - 2014-01-13 23:21 - 00000000 ____D C:\Users\Oliver\AppData\Local\Adobe 2014-01-13 23:07 - 2014-01-16 19:24 - 00000000 ____D C:\ProgramData\Microsoft Help 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\WINDOWS\PCHEALTH 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\Users\Oliver\AppData\Local\Microsoft Help 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2014-01-13 23:06 - 2014-01-13 23:06 - 00000000 ____D C:\Program Files\Microsoft Office 2014-01-13 22:48 - 2014-01-13 22:48 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\Visio Professional 2013 (x86 and x64) - DVD (German) 2014-01-13 22:48 - 2014-01-13 22:48 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\Project Professional 2013 (x86 and x64) - DVD (German) 2014-01-13 22:45 - 2014-01-13 22:45 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\OneNote 2013 (x86 and x64) - DVD (German) 2014-01-13 22:45 - 2014-01-13 22:45 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\InfoPath 2013 (x86 and x64) - DVD (German) 2014-01-13 22:42 - 2014-01-13 22:42 - 01070944 _____ (Solid State Networks) C:\Users\Oliver M. Schmieder\Downloads\install_flashplayer11x32_mssd_aaa_aih.exe 2014-01-13 22:30 - 2014-01-13 22:30 - 00003263 _____ C:\Users\Oliver M. Schmieder\Desktop\Secure Download Manager.lnk 2014-01-13 22:30 - 2014-01-13 22:30 - 00000184 _____ C:\Users\Oliver M. Schmieder\Downloads\100232553200.sdx 2014-01-13 22:30 - 2014-01-13 22:30 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\e-academy Inc 2014-01-13 22:30 - 2014-01-13 22:30 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\e-academy Inc 2014-01-13 22:30 - 2014-01-13 22:30 - 00000000 _____ C:\Users\Oliver M. Schmieder\Downloads\SecureDownloadManager.log 2014-01-13 22:29 - 2014-01-13 22:29 - 00719360 _____ C:\Users\Oliver M. Schmieder\Downloads\SDM_DE.msi 2014-01-13 22:21 - 2014-01-13 22:21 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-01-13 22:20 - 2014-01-13 22:20 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Apple Computer 2014-01-13 22:16 - 2014-01-13 22:17 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\GitHub 2014-01-13 22:16 - 2014-01-13 22:17 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\GitHub 2014-01-13 22:16 - 2014-01-13 22:16 - 00002254 _____ C:\Users\Oliver M. Schmieder\Desktop\Git Shell.lnk 2014-01-13 22:16 - 2014-01-13 22:16 - 00000308 _____ C:\Users\Oliver M. Schmieder\Desktop\GitHub.appref-ms 2014-01-13 22:16 - 2014-01-13 22:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GitHub, Inc 2014-01-13 22:15 - 2014-01-13 22:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Twister 2014-01-13 22:12 - 2014-01-13 22:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Deployment 2014-01-13 22:12 - 2014-01-13 22:12 - 00715360 _____ () C:\Users\Oliver M. Schmieder\Downloads\GitHubSetup.exe 2014-01-13 22:12 - 2014-01-13 22:12 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Apps\2.0 2014-01-12 17:10 - 2014-01-13 22:55 - 00003970 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F7EBCDBD-26C4-46F8-8BAC-971984D97FF3} 2014-01-12 10:28 - 2014-01-12 10:28 - 00000000 ____D C:\ProgramData\SQL Anywhere 10 2014-01-12 10:26 - 2014-01-13 22:24 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Apple Computer 2014-01-12 01:39 - 2014-01-12 01:39 - 00000000 ____D C:\Users\Oliver\Documents\RtsUVStor_6.2.9200.39052 2014-01-12 01:39 - 2014-01-12 01:39 - 00000000 ____D C:\Program Files (x86)\Realtek 2014-01-12 01:39 - 2013-08-08 16:27 - 00329944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtsUVStor.sys 2014-01-12 01:39 - 2013-04-25 18:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RtsUVStoricon.dll 2014-01-12 01:38 - 2014-01-12 01:38 - 00000000 ____D C:\System 2014-01-12 01:38 - 2014-01-12 01:38 - 00000000 ____D C:\redist 2014-01-12 01:31 - 2014-01-12 01:41 - 00000000 ____D C:\Program Files\ARIS7.2 2014-01-12 01:27 - 2014-01-12 01:29 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Apple Computer 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Users\Oliver\AppData\Local\Apple Computer 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\ProgramData\Apple Computer 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Program Files\iTunes 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Program Files\iPod 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Program Files (x86)\iTunes 2014-01-12 01:27 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Users\Oliver\AppData\Local\Apple 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\ProgramData\Apple 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files\Common Files\Apple 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files\Bonjour 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files (x86)\Bonjour 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2014-01-12 01:25 - 2014-01-12 01:26 - 100400976 _____ (Apple Inc.) C:\Users\Oliver\Downloads\iTunes64Setup.exe 2014-01-12 01:24 - 2014-01-12 01:24 - 00000000 ____D C:\ProgramData\USBChargerPlus 2014-01-12 01:21 - 2014-01-23 17:47 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-741602991-2670020195-3668170717-1001 2014-01-12 01:21 - 2014-01-12 01:21 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Avira 2014-01-12 01:20 - 2014-01-12 01:21 - 100400976 _____ (Apple Inc.) C:\Users\Oliver M. Schmieder\Downloads\iTunes64Setup.exe 2014-01-12 01:19 - 2014-01-12 01:19 - 23924520 _____ (Mozilla) C:\Users\Oliver M. Schmieder\Downloads\Firefox Setup 26.0.exe 2014-01-12 01:18 - 2014-01-12 01:19 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Mozilla 2014-01-12 01:18 - 2014-01-12 01:19 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Mozilla 2014-01-12 01:16 - 2014-01-12 01:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Razer 2014-01-12 01:15 - 2014-01-12 01:34 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Packages 2014-01-12 01:15 - 2014-01-12 01:15 - 00001452 _____ C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ___RD C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ___RD C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Adobe 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\VirtualStore 2014-01-12 01:14 - 2014-01-12 01:14 - 00000020 ___SH C:\Users\Oliver M. Schmieder\ntuser.ini 2014-01-12 01:12 - 2014-01-12 01:12 - 00000000 ____D C:\Users\Public\ASUS 2014-01-12 01:12 - 2012-09-21 14:05 - 01219584 _____ C:\WINDOWS\system32\AsusFPCredentialProvider.dll 2014-01-12 01:11 - 2014-01-12 01:11 - 00000000 ____D C:\Users\Oliver\Documents\ASUSFingerPrint_Win8_32_64_Z105 2014-01-12 01:10 - 2014-01-12 01:12 - 00000000 ____D C:\Program Files (x86)\ASUS 2014-01-12 01:10 - 2014-01-12 01:10 - 00003028 _____ C:\WINDOWS\System32\Tasks\ASUS USB Charger Plus 2014-01-12 01:10 - 2012-01-30 14:32 - 00017152 _____ (ASUSTek Computer Inc.) C:\WINDOWS\system32\Drivers\AiCharger.sys 2014-01-12 01:07 - 2014-01-12 01:40 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2014-01-12 01:07 - 2014-01-12 01:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-12 01:07 - 2014-01-12 01:07 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin 2014-01-12 01:07 - 2014-01-12 01:07 - 00000000 ____D C:\Program Files\Fresco Logic 2014-01-12 01:02 - 2014-01-12 01:02 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Avira 2014-01-12 01:01 - 2014-01-12 01:01 - 00000000 ____D C:\ProgramData\Avira 2014-01-12 01:01 - 2014-01-12 01:01 - 00000000 ____D C:\Program Files (x86)\Avira 2014-01-12 01:01 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2014-01-12 01:01 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2014-01-12 01:01 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2014-01-12 01:01 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys 2014-01-12 00:56 - 2014-01-12 00:58 - 140300048 _____ C:\Users\Oliver\Downloads\avira_antivirus_suite_de.exe 2014-01-12 00:46 - 2014-01-12 00:46 - 00051080 _____ C:\WINDOWS\DPINST.LOG 2014-01-12 00:41 - 2014-01-12 00:46 - 00000000 ____D C:\Program Files (x86)\Razer 2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Oliver\AppData\Local\Razer 2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\ProgramData\Razer 2014-01-12 00:40 - 2014-01-12 00:40 - 13163200 _____ (Razer Inc.) C:\Users\Oliver\Downloads\Razer_Synapse_Framework_V1.16.06.exe 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Mozilla 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Users\Oliver\AppData\Local\Mozilla 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2014-01-12 00:37 - 2014-01-22 22:37 - 00003918 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A197F6DD-ADAB-4C4D-AE17-8439420C1949} 2014-01-12 00:37 - 2014-01-12 00:37 - 00003544 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask 2014-01-12 00:35 - 2014-01-06 23:31 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-01-12 00:35 - 2014-01-06 23:31 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-12 00:32 - 2014-01-12 00:37 - 00000000 ___RD C:\WINDOWS\BrowserChoice 2014-01-12 00:25 - 2014-01-22 18:02 - 00000000 ____D C:\WINDOWS\system32\MRT 2014-01-12 00:24 - 2014-01-22 18:01 - 86054176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-01-12 00:18 - 2013-11-19 11:30 - 00267936 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-01-12 00:10 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2014-01-12 00:10 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2014-01-12 00:10 - 2013-11-23 04:32 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-01-12 00:10 - 2013-11-23 04:10 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-01-12 00:10 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll 2014-01-12 00:10 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll 2014-01-12 00:10 - 2013-10-13 03:48 - 00136536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-01-12 00:10 - 2013-10-12 22:48 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-01-12 00:10 - 2013-10-12 22:34 - 01104384 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-01-12 00:10 - 2013-10-05 15:21 - 01341288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-01-12 00:10 - 2013-10-05 09:39 - 01067008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-01-12 00:10 - 2013-10-03 10:16 - 00294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-01-12 00:10 - 2013-10-03 10:02 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-01-12 00:10 - 2013-10-02 12:00 - 01286552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2014-01-12 00:10 - 2013-10-02 10:47 - 01018960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2014-01-12 00:09 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-01-12 00:09 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-01-12 00:09 - 2013-11-05 21:21 - 21196664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-01-12 00:09 - 2013-11-05 19:51 - 18642504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-01-12 00:09 - 2013-11-05 17:20 - 13925888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-01-12 00:09 - 2013-11-05 17:11 - 18577408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-01-12 00:09 - 2013-10-23 12:29 - 00044936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll 2014-01-12 00:09 - 2013-10-23 12:13 - 00171864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll 2014-01-12 00:09 - 2013-10-22 09:18 - 01287064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-01-12 00:09 - 2013-10-22 09:18 - 00096088 _____ (Microsoft Corporation) C:\WINDOWS\system32\embeddedapplauncher.exe 2014-01-12 00:09 - 2013-10-22 08:55 - 02328872 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-01-12 00:09 - 2013-10-22 07:03 - 02065448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-01-12 00:09 - 2013-10-22 06:15 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2014-01-12 00:09 - 2013-10-22 05:04 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2014-01-12 00:09 - 2013-10-22 05:02 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-01-12 00:09 - 2013-10-22 04:56 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-01-12 00:09 - 2013-10-22 04:44 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-01-12 00:09 - 2013-10-22 03:38 - 01362944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2014-01-12 00:09 - 2013-10-22 03:22 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-01-12 00:09 - 2013-10-22 03:13 - 01704448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-01-12 00:09 - 2013-10-22 03:07 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-01-12 00:09 - 2013-10-22 02:53 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-01-12 00:09 - 2013-10-22 02:47 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-01-12 00:09 - 2013-10-19 05:48 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2014-01-12 00:09 - 2013-10-19 05:03 - 00531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2014-01-12 00:09 - 2013-10-16 10:34 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2014-01-12 00:09 - 2013-10-16 10:33 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2014-01-12 00:09 - 2013-10-13 04:06 - 00258904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys 2014-01-12 00:09 - 2013-10-13 03:43 - 00708616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2014-01-12 00:09 - 2013-10-10 17:44 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-01-12 00:09 - 2013-10-10 17:26 - 00317616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-01-12 00:09 - 2013-10-10 17:26 - 00104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2014-01-12 00:09 - 2013-10-10 15:53 - 00235960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2014-01-12 00:09 - 2013-10-10 15:53 - 00088272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2014-01-12 00:09 - 2013-10-10 12:38 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-01-12 00:09 - 2013-10-10 12:26 - 02801664 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2014-01-12 00:09 - 2013-10-10 12:05 - 01019392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2014-01-12 00:09 - 2013-10-10 11:34 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-01-12 00:09 - 2013-10-10 11:27 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-01-12 00:09 - 2013-10-09 06:40 - 00385528 _____ C:\WINDOWS\system32\ApnDatabase.xml 2014-01-12 00:09 - 2013-10-08 11:28 - 00523096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2014-01-12 00:09 - 2013-10-08 11:13 - 02551640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-01-12 00:09 - 2013-10-08 07:46 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll 2014-01-12 00:09 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll 2014-01-12 00:09 - 2013-10-08 06:50 - 00656384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-01-12 00:09 - 2013-10-08 06:48 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-01-12 00:09 - 2013-10-08 06:15 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-01-12 00:09 - 2013-10-08 06:09 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2014-01-12 00:09 - 2013-10-08 05:50 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2014-01-12 00:09 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2014-01-12 00:09 - 2013-10-07 08:21 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-01-12 00:09 - 2013-10-07 03:13 - 03532288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-01-12 00:09 - 2013-10-05 16:25 - 00057176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2014-01-12 00:09 - 2013-10-05 15:21 - 00699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2014-01-12 00:09 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2014-01-12 00:09 - 2013-10-05 12:01 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2014-01-12 00:09 - 2013-10-05 12:01 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2014-01-12 00:09 - 2013-10-05 12:00 - 01200640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-01-12 00:09 - 2013-10-05 10:36 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe 2014-01-12 00:09 - 2013-10-05 10:18 - 01011712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2014-01-12 00:09 - 2013-10-05 10:07 - 00830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2014-01-12 00:09 - 2013-10-05 09:56 - 01147904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2014-01-12 00:09 - 2013-10-05 09:55 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll 2014-01-12 00:09 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2014-01-12 00:09 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll 2014-01-12 00:09 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2014-01-12 00:09 - 2013-10-05 09:15 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll 2014-01-12 00:09 - 2013-10-05 08:43 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2014-01-12 00:09 - 2013-10-05 08:39 - 06639616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-01-12 00:09 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2014-01-12 00:09 - 2013-10-05 08:32 - 05769728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-01-12 00:09 - 2013-10-04 09:10 - 00533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2014-01-12 00:09 - 2013-09-19 06:04 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2014-01-12 00:09 - 2013-09-17 10:06 - 00465960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-01-12 00:09 - 2013-09-17 07:31 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-01-12 00:09 - 2013-09-17 05:37 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2014-01-12 00:09 - 2013-09-14 15:07 - 02134120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-01-12 00:09 - 2013-09-14 15:00 - 00391512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2014-01-12 00:09 - 2013-09-14 13:39 - 01799944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2014-01-12 00:09 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2014-01-12 00:09 - 2013-09-14 11:05 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2014-01-12 00:09 - 2013-09-14 10:11 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2014-01-12 00:09 - 2013-09-13 09:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe 2014-01-12 00:09 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ftp.exe 2014-01-12 00:09 - 2013-09-12 09:45 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2014-01-12 00:09 - 2013-09-12 09:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2014-01-12 00:09 - 2013-09-12 09:08 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2014-01-12 00:09 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2014-01-12 00:09 - 2013-09-12 08:44 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2014-01-12 00:09 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2014-01-12 00:09 - 2013-09-12 08:37 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-01-12 00:09 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2014-01-12 00:09 - 2013-09-12 08:16 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2014-01-12 00:09 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2014-01-12 00:09 - 2013-09-10 06:26 - 04599808 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2014-01-12 00:09 - 2013-09-10 05:52 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll 2014-01-12 00:09 - 2013-09-10 05:34 - 03934208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2014-01-12 00:08 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-01-12 00:08 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-01-12 00:08 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-01-12 00:08 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-01-12 00:08 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-01-12 00:08 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-01-12 00:08 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-01-12 00:08 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-01-12 00:08 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-01-12 00:08 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-01-12 00:08 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-01-12 00:08 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-01-12 00:08 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-01-12 00:08 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-01-12 00:08 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-01-12 00:08 - 2013-11-11 03:48 - 00039768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2014-01-12 00:08 - 2013-11-09 12:55 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2014-01-12 00:08 - 2013-11-08 11:26 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-01-12 00:08 - 2013-11-08 06:23 - 00449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appmgr.dll 2014-01-12 00:08 - 2013-11-08 05:43 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-01-12 00:08 - 2013-11-08 05:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appmgr.dll 2014-01-12 00:08 - 2013-11-08 05:28 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-01-12 00:08 - 2013-11-08 05:26 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-01-12 00:08 - 2013-11-08 05:16 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2014-01-12 00:08 - 2013-11-08 05:15 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-01-12 00:08 - 2013-11-08 05:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2014-01-12 00:08 - 2013-11-08 04:41 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-01-12 00:08 - 2013-11-08 04:14 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-01-12 00:08 - 2013-11-05 15:19 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2014-01-12 00:08 - 2013-11-05 15:03 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2014-01-12 00:08 - 2013-11-05 14:57 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2014-01-12 00:08 - 2013-11-05 14:33 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2014-01-12 00:08 - 2013-11-05 14:32 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2014-01-12 00:08 - 2013-11-04 18:13 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-01-12 00:08 - 2013-11-04 18:13 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-01-12 00:08 - 2013-11-04 14:07 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-01-12 00:08 - 2013-11-04 12:50 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-01-12 00:08 - 2013-11-04 11:32 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-01-12 00:08 - 2013-11-04 03:28 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2014-01-12 00:08 - 2013-11-04 02:30 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2014-01-12 00:08 - 2013-11-01 12:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2014-01-12 00:08 - 2013-11-01 07:08 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll 2014-01-12 00:08 - 2013-11-01 06:57 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2014-01-12 00:08 - 2013-10-31 01:58 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-01-12 00:08 - 2013-10-31 01:42 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-01-12 00:08 - 2013-10-31 01:33 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2014-01-12 00:08 - 2013-10-31 01:33 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2014-01-12 00:08 - 2013-10-31 01:33 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2014-01-12 00:08 - 2013-10-31 01:33 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2014-01-12 00:08 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys 2014-01-12 00:08 - 2013-10-24 10:31 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-01-12 00:08 - 2013-10-24 10:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-01-12 00:08 - 2013-10-19 06:37 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-01-12 00:08 - 2013-10-17 12:21 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-01-12 00:08 - 2013-10-17 11:36 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-01-12 00:08 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll 2014-01-12 00:08 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll 2014-01-12 00:08 - 2013-10-11 14:24 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-01-12 00:08 - 2013-10-11 14:03 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-01-12 00:08 - 2013-10-10 12:53 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-01-12 00:08 - 2013-10-10 12:21 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-01-12 00:08 - 2013-10-05 15:21 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-01-12 00:08 - 2013-10-05 15:21 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-01-12 00:08 - 2013-10-05 13:05 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-01-12 00:08 - 2013-10-05 13:05 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2014-01-12 00:07 - 2013-09-26 10:20 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\recimg.exe 2014-01-12 00:07 - 2013-09-26 09:24 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-01-12 00:07 - 2013-09-26 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2014-01-12 00:07 - 2013-09-26 08:14 - 00528896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2014-01-12 00:07 - 2013-09-25 08:32 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2014-01-12 00:07 - 2013-09-25 06:40 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll 2014-01-12 00:07 - 2013-09-24 07:55 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe 2014-01-12 00:07 - 2013-09-24 06:59 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe 2014-01-12 00:07 - 2013-09-24 06:54 - 02050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2014-01-12 00:07 - 2013-09-24 06:10 - 01741824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2014-01-12 00:07 - 2013-09-24 06:05 - 01245696 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2014-01-12 00:07 - 2013-09-24 04:56 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll 2014-01-12 00:07 - 2013-09-21 13:10 - 00579416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-01-12 00:07 - 2013-09-21 13:10 - 00236376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2014-01-12 00:07 - 2013-09-21 13:10 - 00151384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2014-01-12 00:07 - 2013-09-21 12:50 - 00528048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2014-01-12 00:07 - 2013-09-21 12:48 - 00534048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2014-01-12 00:07 - 2013-09-21 12:48 - 00123480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-01-12 00:07 - 2013-09-21 12:18 - 01109936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-01-12 00:07 - 2013-09-21 12:04 - 00419160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2014-01-12 00:07 - 2013-09-21 11:56 - 01119576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2014-01-12 00:07 - 2013-09-21 11:56 - 00101208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2014-01-12 00:07 - 2013-09-21 11:53 - 01928656 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2014-01-12 00:07 - 2013-09-21 11:53 - 01534504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-01-12 00:07 - 2013-09-21 11:53 - 00996320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2014-01-12 00:07 - 2013-09-21 11:51 - 01720552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2014-01-12 00:07 - 2013-09-21 11:45 - 00171968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2014-01-12 00:07 - 2013-09-21 10:23 - 00427096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2014-01-12 00:07 - 2013-09-21 10:23 - 00098104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2014-01-12 00:07 - 2013-09-21 10:12 - 01370800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2014-01-12 00:07 - 2013-09-21 10:12 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2014-01-12 00:07 - 2013-09-21 10:09 - 01472048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2014-01-12 00:07 - 2013-09-21 08:58 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-01-12 00:07 - 2013-09-21 08:57 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-01-12 00:07 - 2013-09-21 08:56 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-01-12 00:07 - 2013-09-21 08:55 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys 2014-01-12 00:07 - 2013-09-21 08:50 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll 2014-01-12 00:07 - 2013-09-21 08:17 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe 2014-01-12 00:07 - 2013-09-21 08:05 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-01-12 00:07 - 2013-09-21 07:55 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll 2014-01-12 00:07 - 2013-09-21 07:33 - 11366912 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll 2014-01-12 00:07 - 2013-09-21 07:27 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-01-12 00:07 - 2013-09-21 07:06 - 01415168 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-01-12 00:07 - 2013-09-21 07:01 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-01-12 00:07 - 2013-09-21 07:00 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-01-12 00:07 - 2013-09-21 06:59 - 00940544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-01-12 00:07 - 2013-09-21 06:57 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\livessp.dll 2014-01-12 00:07 - 2013-09-21 06:56 - 08712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll 2014-01-12 00:07 - 2013-09-21 06:50 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2014-01-12 00:07 - 2013-09-21 06:43 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll 2014-01-12 00:07 - 2013-09-21 06:38 - 00365568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2014-01-12 00:07 - 2013-09-21 06:37 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2014-01-12 00:07 - 2013-09-21 06:36 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2014-01-12 00:07 - 2013-09-21 06:34 - 01555456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2014-01-12 00:07 - 2013-09-21 06:31 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-01-12 00:07 - 2013-09-21 06:26 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2014-01-12 00:07 - 2013-09-21 06:20 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-01-12 00:07 - 2013-09-21 06:16 - 01503232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-01-12 00:07 - 2013-09-21 06:10 - 12028416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-01-12 00:07 - 2013-09-21 06:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-01-12 00:07 - 2013-09-21 06:05 - 08875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2014-01-12 00:07 - 2013-09-21 06:02 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2014-01-12 00:07 - 2013-09-21 05:54 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2014-01-12 00:07 - 2013-09-21 05:49 - 04975104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-01-12 00:07 - 2013-09-21 05:48 - 07544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-01-12 00:07 - 2013-09-21 05:45 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-01-12 00:07 - 2013-09-21 05:44 - 01662464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2014-01-12 00:07 - 2013-09-21 05:42 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-01-12 00:07 - 2013-09-21 05:39 - 01455616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2014-01-12 00:07 - 2013-09-21 05:38 - 01057792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll 2014-01-12 00:07 - 2013-09-21 05:38 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2014-01-12 00:07 - 2013-09-21 05:37 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2014-01-12 00:07 - 2013-09-21 05:36 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll 2014-01-12 00:07 - 2013-09-19 08:19 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersRes.dll 2014-01-12 00:07 - 2013-09-19 07:39 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll 2014-01-12 00:07 - 2013-09-19 07:27 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe 2014-01-12 00:07 - 2013-09-19 07:23 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WorkFoldersRes.dll 2014-01-12 00:07 - 2013-09-19 07:17 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx 2014-01-12 00:07 - 2013-09-19 06:47 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.dll 2014-01-12 00:07 - 2013-09-19 06:29 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx 2014-01-12 00:07 - 2013-09-19 06:08 - 01150976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2014-01-12 00:07 - 2013-09-19 06:01 - 00401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-01-12 00:07 - 2013-09-19 05:37 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2014-01-12 00:07 - 2013-09-19 05:32 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2014-01-12 00:07 - 2013-09-19 05:27 - 01730560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll 2014-01-12 00:07 - 2013-09-19 05:27 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2014-01-12 00:07 - 2013-09-19 05:25 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2014-01-12 00:07 - 2013-09-19 05:11 - 01344000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll 2014-01-12 00:07 - 2013-09-19 05:10 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2014-01-12 00:07 - 2013-09-19 04:59 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll 2014-01-12 00:07 - 2013-09-19 04:55 - 00552448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll 2014-01-12 00:07 - 2013-09-19 04:34 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2014-01-12 00:07 - 2013-09-19 04:32 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2014-01-12 00:07 - 2013-09-17 10:18 - 00467800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-01-12 00:07 - 2013-09-17 07:58 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2014-01-12 00:07 - 2013-09-17 06:26 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2014-01-12 00:07 - 2013-09-17 06:15 - 01225728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2014-01-12 00:07 - 2013-09-17 06:00 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2014-01-12 00:07 - 2013-09-17 05:09 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2014-01-12 00:07 - 2013-09-17 05:08 - 00738304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2014-01-12 00:07 - 2013-09-17 04:28 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll 2014-01-12 00:07 - 2013-09-14 15:06 - 00175960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VerifierExt.sys 2014-01-12 00:07 - 2013-09-14 15:06 - 00066904 _____ (Microsoft Corporation) C:\WINDOWS\system32\PSHED.DLL 2014-01-12 00:07 - 2013-09-14 12:39 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2014-01-12 00:07 - 2013-09-14 12:38 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys 2014-01-12 00:07 - 2013-09-13 10:52 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsClassExtension.dll 2014-01-12 00:07 - 2013-09-13 09:54 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2014-01-12 00:07 - 2013-09-13 09:10 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2014-01-12 00:07 - 2013-09-13 08:55 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2014-01-12 00:07 - 2013-09-13 08:30 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2014-01-12 00:07 - 2013-09-12 13:33 - 06353952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2014-01-12 00:07 - 2013-09-12 08:37 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll 2014-01-12 00:07 - 2013-09-11 10:32 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2014-01-12 00:07 - 2013-09-11 10:31 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-01-12 00:07 - 2013-09-11 10:31 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-01-12 00:07 - 2013-09-11 08:41 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2014-01-12 00:07 - 2013-09-11 08:09 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2014-01-12 00:07 - 2013-09-07 17:12 - 00458616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2014-01-12 00:07 - 2013-09-07 17:12 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2014-01-12 00:07 - 2013-09-07 15:45 - 00408480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2014-01-12 00:07 - 2013-09-07 15:45 - 00368736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2014-01-12 00:07 - 2013-09-07 13:44 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdprint.dll 2014-01-12 00:07 - 2013-09-07 13:29 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll 2014-01-12 00:07 - 2013-09-07 13:00 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdprint.dll 2014-01-12 00:07 - 2013-09-07 12:50 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceCenter.dll 2014-01-12 00:07 - 2013-09-07 12:45 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2014-01-12 00:07 - 2013-09-07 12:30 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2014-01-12 00:07 - 2013-09-07 12:22 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2014-01-12 00:07 - 2013-09-07 12:13 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2014-01-12 00:07 - 2013-09-07 12:07 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll 2014-01-12 00:07 - 2013-09-07 11:51 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2014-01-12 00:07 - 2013-09-07 11:51 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-01-12 00:07 - 2013-09-05 08:39 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys 2014-01-12 00:07 - 2013-09-05 07:42 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe 2014-01-12 00:07 - 2013-09-05 06:40 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe 2014-01-12 00:07 - 2013-09-04 08:01 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersGPExt.dll 2014-01-12 00:07 - 2013-09-04 07:16 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2014-01-12 00:07 - 2013-09-04 06:47 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll 2014-01-12 00:07 - 2013-09-04 06:12 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCoreConfProv.dll 2014-01-12 00:07 - 2013-09-04 05:57 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2014-01-12 00:07 - 2013-09-04 05:48 - 00326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-01-12 00:07 - 2013-09-04 05:35 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2014-01-12 00:07 - 2013-08-31 13:04 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll 2014-01-12 00:07 - 2013-08-31 11:46 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched20.dll 2014-01-12 00:07 - 2013-08-31 11:00 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-01-12 00:07 - 2013-08-31 10:25 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2014-01-12 00:07 - 2013-08-30 08:31 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2014-01-12 00:07 - 2013-08-28 09:03 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-01-12 00:07 - 2013-08-28 08:49 - 00597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe 2014-01-12 00:07 - 2013-08-28 08:09 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll 2014-01-12 00:07 - 2013-08-28 08:04 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll 2014-01-12 00:07 - 2013-08-27 08:44 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys 2014-01-12 00:05 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-01-12 00:05 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2014-01-12 00:05 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2014-01-12 00:05 - 2013-11-08 08:21 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-01-12 00:05 - 2013-10-16 16:58 - 01943536 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2014-01-12 00:05 - 2013-10-16 14:54 - 01581968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2014-01-12 00:05 - 2013-09-26 07:51 - 00669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-01-12 00:05 - 2013-09-26 07:34 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll 2014-01-12 00:05 - 2013-09-26 07:34 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll 2014-01-12 00:02 - 2014-01-22 22:05 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-741602991-2670020195-3668170717-1000 2014-01-12 00:00 - 2014-01-12 00:00 - 00000000 ___HD C:\ProgramData\CanonBJ 2014-01-12 00:00 - 2012-03-26 05:00 - 00389120 _____ (CANON INC.) C:\WINDOWS\system32\CNMLMB9.DLL 2014-01-11 23:59 - 2014-01-11 23:59 - 00000000 ____D C:\Program Files (x86)\Intel 2014-01-11 23:58 - 2014-01-11 23:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_wbf_vfs300_01_09_00.Wdf 2014-01-11 23:58 - 2014-01-11 23:58 - 00000000 ____D C:\ProgramData\Validity 2014-01-11 23:58 - 2014-01-11 23:58 - 00000000 ____D C:\Program Files\Validity Sensors 2014-01-11 23:57 - 2014-01-23 18:53 - 00000000 __RDO C:\Users\Oliver\SkyDrive 2014-01-11 23:55 - 2014-01-14 16:13 - 00000000 ___RD C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-11 23:55 - 2014-01-12 00:37 - 00000000 ___RD C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-11 23:55 - 2014-01-11 23:55 - 00001452 _____ C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-11 23:55 - 2014-01-11 23:55 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Adobe 2014-01-11 23:55 - 2014-01-11 23:55 - 00000000 ____D C:\Users\Oliver\AppData\Local\VirtualStore 2014-01-11 23:54 - 2014-01-12 01:42 - 00000000 ____D C:\Users\Oliver\AppData\Local\Packages 2014-01-11 23:52 - 2014-01-11 23:52 - 00000020 ___SH C:\Users\Oliver\ntuser.ini 2014-01-11 23:46 - 2014-01-23 17:40 - 01686150 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Vorlagen 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Startmenü 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Programme 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Vorlagen 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Startmenü 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Favoriten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Dokumente 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Dokumente und Einstellungen 2014-01-11 23:41 - 2014-01-23 18:09 - 01959547 _____ C:\WINDOWS\WindowsUpdate.log 2014-01-11 23:41 - 2014-01-11 23:41 - 00017148 _____ C:\WINDOWS\diagwrn.xml 2014-01-11 23:41 - 2014-01-11 23:41 - 00017148 _____ C:\WINDOWS\diagerr.xml 2014-01-11 23:41 - 2014-01-11 23:41 - 00000000 ____D C:\WINDOWS\CSC 2014-01-11 23:40 - 2014-01-22 22:44 - 00000000 ____D C:\Users\Oliver 2014-01-11 23:40 - 2014-01-12 23:43 - 00000000 ____D C:\Users\Oliver M. Schmieder 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Vorlagen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Startmenü 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Netzwerkumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Lokale Einstellungen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Eigene Dateien 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Druckumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Documents\Eigene Musik 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Documents\Eigene Bilder 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\AppData\Local\Verlauf 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\AppData\Local\Anwendungsdaten 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Anwendungsdaten 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Vorlagen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Startmenü 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Netzwerkumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Lokale Einstellungen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Eigene Dateien 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Druckumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Documents\Eigene Musik 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Documents\Eigene Bilder 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\AppData\Local\Verlauf 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\AppData\Local\Anwendungsdaten 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Anwendungsdaten 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-11 23:40 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-11 23:39 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Vorlagen 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Startmenü 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Netzwerkumgebung 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Lokale Einstellungen 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Eigene Dateien 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Druckumgebung 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Musik 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Bilder 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Verlauf 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Anwendungsdaten 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Anwendungsdaten 2014-01-11 23:39 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-01-11 23:39 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-11 23:39 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-01-11 23:39 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-11 23:37 - 2013-08-22 06:17 - 02407936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2014-01-11 23:35 - 2014-01-11 23:35 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WUDFUsbccidDriver_01_11_00.Wdf 2014-01-11 23:34 - 2014-01-23 17:34 - 00109756 _____ C:\WINDOWS\PFRO.log 2014-01-11 23:34 - 2014-01-12 00:00 - 00000000 ___DC C:\WINDOWS\Panther 2014-01-11 23:33 - 2014-01-20 01:32 - 00000000 ____D C:\Windows.old 2014-01-11 23:33 - 2014-01-11 23:33 - 00262144 _____ C:\WINDOWS\system32\config\userdiff 2014-01-11 23:31 - 2014-01-11 23:31 - 00155480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys 2014-01-11 23:21 - 2013-06-18 13:18 - 00000001 ___SH C:\BOOTNXT 2014-01-06 14:10 - 2014-01-06 14:10 - 00113310 _____ C:\Users\Oliver M. Schmieder\Downloads\csp_12(1) 2014-01-06 14:09 - 2014-01-06 14:09 - 00113310 _____ C:\Users\Oliver M. Schmieder\Downloads\csp_12 2014-01-05 18:43 - 2014-01-05 18:43 - 04108288 _____ C:\Users\Oliver M. Schmieder\Downloads\anyconnect_31_win.msi 2014-01-02 21:02 - 2014-01-02 21:03 - 68852620 _____ C:\Users\Oliver M. Schmieder\Downloads\bdp2980_12_fus_deu.zip 2014-01-01 17:45 - 2014-01-01 17:45 - 00000000 ____D C:\Users\Oliver M. Schmieder\Documents\ARIS 7.1 ==================== One Month Modified Files and Folders ======= 2014-01-23 18:54 - 2014-01-23 18:53 - 00010041 _____ C:\Users\Oliver\Desktop\FRST.txt 2014-01-23 18:53 - 2014-01-23 18:53 - 00000000 ____D C:\FRST 2014-01-23 18:53 - 2014-01-11 23:57 - 00000000 __RDO C:\Users\Oliver\SkyDrive 2014-01-23 18:51 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2014-01-23 18:12 - 2014-01-23 18:12 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Macromedia 2014-01-23 18:12 - 2014-01-23 18:12 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Avira 2014-01-23 18:12 - 2014-01-23 18:12 - 00000000 ____D C:\Users\Gast\AppData\Local\Razer 2014-01-23 18:11 - 2014-01-23 18:11 - 00001452 _____ C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-23 18:11 - 2014-01-23 18:11 - 00000020 ___SH C:\Users\Gast\ntuser.ini 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ___RD C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ___RD C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Apple Computer 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Roaming\Adobe 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Local\VirtualStore 2014-01-23 18:11 - 2014-01-23 18:11 - 00000000 ____D C:\Users\Gast\AppData\Local\Packages 2014-01-23 18:11 - 2014-01-11 23:39 - 00000000 ____D C:\Users\Gast 2014-01-23 18:09 - 2014-01-11 23:41 - 01959547 _____ C:\WINDOWS\WindowsUpdate.log 2014-01-23 18:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\sru 2014-01-23 17:54 - 2014-01-14 15:43 - 00000000 ____D C:\Program Files\Microsoft Office 15 2014-01-23 17:47 - 2014-01-12 01:21 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-741602991-2670020195-3668170717-1001 2014-01-23 17:46 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF 2014-01-23 17:41 - 2014-01-23 17:41 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Macromedia 2014-01-23 17:40 - 2014-01-11 23:46 - 01686150 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2014-01-23 17:40 - 2013-08-23 00:26 - 00727930 _____ C:\WINDOWS\system32\perfh007.dat 2014-01-23 17:40 - 2013-08-23 00:26 - 00151586 _____ C:\WINDOWS\system32\perfc007.dat 2014-01-23 17:35 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2014-01-23 17:34 - 2014-01-11 23:34 - 00109756 _____ C:\WINDOWS\PFRO.log 2014-01-23 00:01 - 2014-01-23 18:53 - 02077184 _____ (Farbar) C:\Users\Oliver\Desktop\FRST64.exe 2014-01-22 22:44 - 2014-01-11 23:40 - 00000000 ____D C:\Users\Oliver 2014-01-22 22:37 - 2014-01-12 00:37 - 00003918 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A197F6DD-ADAB-4C4D-AE17-8439420C1949} 2014-01-22 22:26 - 2014-01-22 16:59 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\gSyncit 2014-01-22 22:05 - 2014-01-12 00:02 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-741602991-2670020195-3668170717-1000 2014-01-22 18:02 - 2014-01-12 00:25 - 00000000 ____D C:\WINDOWS\system32\MRT 2014-01-22 18:01 - 2014-01-12 00:24 - 86054176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-01-22 17:06 - 2014-01-22 17:06 - 00000000 ____D C:\Users\Oliver\Documents\Outlook-Dateien 2014-01-22 17:05 - 2014-01-22 16:45 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-22 16:59 - 2014-01-22 16:59 - 00000000 ____D C:\Program Files (x86)\Fieldston Software 2014-01-22 16:53 - 2014-01-22 16:53 - 04806656 _____ C:\Users\Oliver\Downloads\gSyncit_3_8_74.msi 2014-01-22 16:49 - 2014-01-22 16:49 - 05818368 _____ C:\Users\Oliver\Downloads\gSyncit64_3_8_74.msi 2014-01-22 16:45 - 2014-01-22 16:45 - 00000000 ____D C:\Users\Oliver\AppData\Local\Google 2014-01-22 16:44 - 2014-01-22 16:44 - 00700784 _____ C:\Users\Oliver\Downloads\GoogleCalendarSync_Installer_0.9.3.5.exe 2014-01-20 17:47 - 2014-01-14 15:50 - 00005120 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for BTTR-Oliver Bttr 2014-01-20 01:32 - 2014-01-11 23:33 - 00000000 ____D C:\Windows.old 2014-01-19 23:52 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2014-01-19 23:51 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\WinStore 2014-01-17 16:42 - 2013-08-22 15:44 - 00496384 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2014-01-16 19:24 - 2014-01-13 23:07 - 00000000 ____D C:\ProgramData\Microsoft Help 2014-01-14 20:11 - 2014-01-14 20:11 - 00000000 ____D C:\Users\Oliver\Documents\Benutzerdefinierte Office-Vorlagen 2014-01-14 16:13 - 2014-01-14 16:13 - 00000000 ____D C:\Users\Oliver\Documents\OneNote-Notizbücher 2014-01-14 16:13 - 2014-01-11 23:55 - 00000000 ___RD C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-14 15:50 - 2014-01-14 15:50 - 00000000 ____D C:\ProgramData\Microsoft SkyDrive 2014-01-14 15:40 - 2014-01-14 15:40 - 00575168 _____ (Microsoft Corporation) C:\Users\Oliver\Downloads\Setup.X86.de-DE_O365HomePremRetail_c7845a12-779f-44a5-bb34-2d190fb94db4_TX_DB_.exe 2014-01-14 14:22 - 2014-01-14 14:22 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2014-01-14 14:22 - 2014-01-14 14:22 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2014-01-13 23:22 - 2014-01-13 23:22 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Macromedia 2014-01-13 23:22 - 2014-01-13 23:22 - 00000000 ____D C:\Users\Oliver\AppData\Local\Macromedia 2014-01-13 23:21 - 2014-01-13 23:21 - 00000000 ____D C:\Users\Oliver\AppData\Local\Adobe 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\WINDOWS\PCHEALTH 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\Users\Oliver\AppData\Local\Microsoft Help 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2014-01-13 23:07 - 2014-01-13 23:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2014-01-13 23:07 - 2013-08-23 00:28 - 00000000 ____D C:\WINDOWS\ShellNew 2014-01-13 23:06 - 2014-01-13 23:06 - 00000000 ____D C:\Program Files\Microsoft Office 2014-01-13 23:06 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2014-01-13 22:55 - 2014-01-12 17:10 - 00003970 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F7EBCDBD-26C4-46F8-8BAC-971984D97FF3} 2014-01-13 22:48 - 2014-01-13 22:48 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\Visio Professional 2013 (x86 and x64) - DVD (German) 2014-01-13 22:48 - 2014-01-13 22:48 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\Project Professional 2013 (x86 and x64) - DVD (German) 2014-01-13 22:45 - 2014-01-13 22:45 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\OneNote 2013 (x86 and x64) - DVD (German) 2014-01-13 22:45 - 2014-01-13 22:45 - 00000000 ____D C:\Users\Oliver M. Schmieder\Downloads\InfoPath 2013 (x86 and x64) - DVD (German) 2014-01-13 22:42 - 2014-01-13 22:42 - 01070944 _____ (Solid State Networks) C:\Users\Oliver M. Schmieder\Downloads\install_flashplayer11x32_mssd_aaa_aih.exe 2014-01-13 22:30 - 2014-01-13 22:30 - 00003263 _____ C:\Users\Oliver M. Schmieder\Desktop\Secure Download Manager.lnk 2014-01-13 22:30 - 2014-01-13 22:30 - 00000184 _____ C:\Users\Oliver M. Schmieder\Downloads\100232553200.sdx 2014-01-13 22:30 - 2014-01-13 22:30 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\e-academy Inc 2014-01-13 22:30 - 2014-01-13 22:30 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\e-academy Inc 2014-01-13 22:30 - 2014-01-13 22:30 - 00000000 _____ C:\Users\Oliver M. Schmieder\Downloads\SecureDownloadManager.log 2014-01-13 22:29 - 2014-01-13 22:29 - 00719360 _____ C:\Users\Oliver M. Schmieder\Downloads\SDM_DE.msi 2014-01-13 22:24 - 2014-01-12 10:26 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Apple Computer 2014-01-13 22:21 - 2014-01-13 22:21 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-01-13 22:20 - 2014-01-13 22:20 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Apple Computer 2014-01-13 22:17 - 2014-01-13 22:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\GitHub 2014-01-13 22:17 - 2014-01-13 22:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\GitHub 2014-01-13 22:16 - 2014-01-13 22:16 - 00002254 _____ C:\Users\Oliver M. Schmieder\Desktop\Git Shell.lnk 2014-01-13 22:16 - 2014-01-13 22:16 - 00000308 _____ C:\Users\Oliver M. Schmieder\Desktop\GitHub.appref-ms 2014-01-13 22:16 - 2014-01-13 22:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GitHub, Inc 2014-01-13 22:16 - 2014-01-13 22:15 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Twister 2014-01-13 22:16 - 2014-01-13 22:12 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Deployment 2014-01-13 22:12 - 2014-01-13 22:12 - 00715360 _____ () C:\Users\Oliver M. Schmieder\Downloads\GitHubSetup.exe 2014-01-13 22:12 - 2014-01-13 22:12 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Apps\2.0 2014-01-12 23:43 - 2014-01-11 23:40 - 00000000 ____D C:\Users\Oliver M. Schmieder 2014-01-12 19:14 - 2013-12-15 13:09 - 00000000 ____D C:\Users\Oliver M. Schmieder\ARIS71 2014-01-12 18:44 - 2013-12-15 13:08 - 00000000 ____D C:\Users\Oliver M. Schmieder\Desktop\BIS2 2014-01-12 10:28 - 2014-01-12 10:28 - 00000000 ____D C:\ProgramData\SQL Anywhere 10 2014-01-12 01:42 - 2014-01-11 23:54 - 00000000 ____D C:\Users\Oliver\AppData\Local\Packages 2014-01-12 01:41 - 2014-01-12 01:31 - 00000000 ____D C:\Program Files\ARIS7.2 2014-01-12 01:40 - 2014-01-12 01:07 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2014-01-12 01:40 - 2013-08-22 14:25 - 00017821 _____ C:\WINDOWS\system32\Drivers\etc\services 2014-01-12 01:39 - 2014-01-12 01:39 - 00000000 ____D C:\Users\Oliver\Documents\RtsUVStor_6.2.9200.39052 2014-01-12 01:39 - 2014-01-12 01:39 - 00000000 ____D C:\Program Files (x86)\Realtek 2014-01-12 01:38 - 2014-01-12 01:38 - 00000000 ____D C:\System 2014-01-12 01:38 - 2014-01-12 01:38 - 00000000 ____D C:\redist 2014-01-12 01:34 - 2014-01-12 01:15 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Packages 2014-01-12 01:34 - 2014-01-12 01:07 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-12 01:29 - 2014-01-12 01:27 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Apple Computer 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Users\Oliver\AppData\Local\Apple Computer 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\ProgramData\Apple Computer 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Program Files\iTunes 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Program Files\iPod 2014-01-12 01:27 - 2014-01-12 01:27 - 00000000 ____D C:\Program Files (x86)\iTunes 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Users\Oliver\AppData\Local\Apple 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\ProgramData\Apple 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files\Common Files\Apple 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files\Bonjour 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files (x86)\Bonjour 2014-01-12 01:26 - 2014-01-12 01:26 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2014-01-12 01:26 - 2014-01-12 01:25 - 100400976 _____ (Apple Inc.) C:\Users\Oliver\Downloads\iTunes64Setup.exe 2014-01-12 01:24 - 2014-01-12 01:24 - 00000000 ____D C:\ProgramData\USBChargerPlus 2014-01-12 01:21 - 2014-01-12 01:21 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Avira 2014-01-12 01:21 - 2014-01-12 01:20 - 100400976 _____ (Apple Inc.) C:\Users\Oliver M. Schmieder\Downloads\iTunes64Setup.exe 2014-01-12 01:19 - 2014-01-12 01:19 - 23924520 _____ (Mozilla) C:\Users\Oliver M. Schmieder\Downloads\Firefox Setup 26.0.exe 2014-01-12 01:19 - 2014-01-12 01:18 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Mozilla 2014-01-12 01:19 - 2014-01-12 01:18 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Mozilla 2014-01-12 01:16 - 2014-01-12 01:16 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\Razer 2014-01-12 01:15 - 2014-01-12 01:15 - 00001452 _____ C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ___RD C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ___RD C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Roaming\Adobe 2014-01-12 01:15 - 2014-01-12 01:15 - 00000000 ____D C:\Users\Oliver M. Schmieder\AppData\Local\VirtualStore 2014-01-12 01:14 - 2014-01-12 01:14 - 00000020 ___SH C:\Users\Oliver M. Schmieder\ntuser.ini 2014-01-12 01:12 - 2014-01-12 01:12 - 00000000 ____D C:\Users\Public\ASUS 2014-01-12 01:12 - 2014-01-12 01:10 - 00000000 ____D C:\Program Files (x86)\ASUS 2014-01-12 01:11 - 2014-01-12 01:11 - 00000000 ____D C:\Users\Oliver\Documents\ASUSFingerPrint_Win8_32_64_Z105 2014-01-12 01:10 - 2014-01-12 01:10 - 00003028 _____ C:\WINDOWS\System32\Tasks\ASUS USB Charger Plus 2014-01-12 01:07 - 2014-01-12 01:07 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin 2014-01-12 01:07 - 2014-01-12 01:07 - 00000000 ____D C:\Program Files\Fresco Logic 2014-01-12 01:02 - 2014-01-12 01:02 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Avira 2014-01-12 01:01 - 2014-01-12 01:01 - 00000000 ____D C:\ProgramData\Avira 2014-01-12 01:01 - 2014-01-12 01:01 - 00000000 ____D C:\Program Files (x86)\Avira 2014-01-12 00:58 - 2014-01-12 00:56 - 140300048 _____ C:\Users\Oliver\Downloads\avira_antivirus_suite_de.exe 2014-01-12 00:46 - 2014-01-12 00:46 - 00051080 _____ C:\WINDOWS\DPINST.LOG 2014-01-12 00:46 - 2014-01-12 00:41 - 00000000 ____D C:\Program Files (x86)\Razer 2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Oliver\AppData\Local\Razer 2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\ProgramData\Razer 2014-01-12 00:40 - 2014-01-12 00:40 - 13163200 _____ (Razer Inc.) C:\Users\Oliver\Downloads\Razer_Synapse_Framework_V1.16.06.exe 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Mozilla 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Users\Oliver\AppData\Local\Mozilla 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\ProgramData\Mozilla 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-12 00:38 - 2014-01-12 00:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2014-01-12 00:37 - 2014-01-12 00:37 - 00003544 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask 2014-01-12 00:37 - 2014-01-12 00:32 - 00000000 ___RD C:\WINDOWS\BrowserChoice 2014-01-12 00:37 - 2014-01-11 23:55 - 00000000 ___RD C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\migwiz 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\MediaViewer 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\FileManager 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Defender 2014-01-12 00:32 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2014-01-12 00:32 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2014-01-12 00:32 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\oobe 2014-01-12 00:32 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\Dism 2014-01-12 00:00 - 2014-01-12 00:00 - 00000000 ___HD C:\ProgramData\CanonBJ 2014-01-12 00:00 - 2014-01-11 23:34 - 00000000 ___DC C:\WINDOWS\Panther 2014-01-12 00:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2014-01-11 23:59 - 2014-01-11 23:59 - 00000000 ____D C:\Program Files (x86)\Intel 2014-01-11 23:58 - 2014-01-11 23:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_wbf_vfs300_01_09_00.Wdf 2014-01-11 23:58 - 2014-01-11 23:58 - 00000000 ____D C:\ProgramData\Validity 2014-01-11 23:58 - 2014-01-11 23:58 - 00000000 ____D C:\Program Files\Validity Sensors 2014-01-11 23:58 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2014-01-11 23:58 - 2013-08-22 15:45 - 00042402 _____ C:\WINDOWS\setupact.log 2014-01-11 23:55 - 2014-01-11 23:55 - 00001452 _____ C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-11 23:55 - 2014-01-11 23:55 - 00000000 ____D C:\Users\Oliver\AppData\Roaming\Adobe 2014-01-11 23:55 - 2014-01-11 23:55 - 00000000 ____D C:\Users\Oliver\AppData\Local\VirtualStore 2014-01-11 23:52 - 2014-01-11 23:52 - 00000020 ___SH C:\Users\Oliver\ntuser.ini 2014-01-11 23:49 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\restore 2014-01-11 23:43 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Vorlagen 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Startmenü 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Programme 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Vorlagen 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Startmenü 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Favoriten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Dokumente 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2014-01-11 23:42 - 2014-01-11 23:42 - 00000000 _SHDL C:\Dokumente und Einstellungen 2014-01-11 23:42 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows NT 2014-01-11 23:42 - 2013-08-22 14:36 - 00000000 __RHD C:\Users\Default 2014-01-11 23:41 - 2014-01-11 23:41 - 00017148 _____ C:\WINDOWS\diagwrn.xml 2014-01-11 23:41 - 2014-01-11 23:41 - 00017148 _____ C:\WINDOWS\diagerr.xml 2014-01-11 23:41 - 2014-01-11 23:41 - 00000000 ____D C:\WINDOWS\CSC 2014-01-11 23:41 - 2013-08-22 16:36 - 00000000 __RHD C:\Users\Public\Libraries 2014-01-11 23:41 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\Recovery 2014-01-11 23:41 - 2009-07-14 08:45 - 00000000 ___RD C:\Users\Public\Recorded TV 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Vorlagen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Startmenü 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Netzwerkumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Lokale Einstellungen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Eigene Dateien 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Druckumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Documents\Eigene Musik 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Documents\Eigene Bilder 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\AppData\Local\Verlauf 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\AppData\Local\Anwendungsdaten 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver\Anwendungsdaten 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Vorlagen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Startmenü 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Netzwerkumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Lokale Einstellungen 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Eigene Dateien 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Druckumgebung 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Documents\Eigene Musik 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Documents\Eigene Bilder 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\AppData\Local\Verlauf 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\AppData\Local\Anwendungsdaten 2014-01-11 23:40 - 2014-01-11 23:40 - 00000000 _SHDL C:\Users\Oliver M. Schmieder\Anwendungsdaten 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Vorlagen 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Startmenü 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Netzwerkumgebung 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Lokale Einstellungen 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Eigene Dateien 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Druckumgebung 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Musik 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Bilder 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Verlauf 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Anwendungsdaten 2014-01-11 23:39 - 2014-01-11 23:39 - 00000000 _SHDL C:\Users\Gast\Anwendungsdaten 2014-01-11 23:37 - 2013-08-22 16:37 - 00001720 _____ C:\WINDOWS\DtcInstall.log 2014-01-11 23:35 - 2014-01-11 23:35 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WUDFUsbccidDriver_01_11_00.Wdf 2014-01-11 23:34 - 2009-07-29 06:58 - 00000000 __SHD C:\Recovery 2014-01-11 23:33 - 2014-01-11 23:33 - 00262144 _____ C:\WINDOWS\system32\config\userdiff 2014-01-11 23:33 - 2013-08-22 16:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template 2014-01-11 23:31 - 2014-01-11 23:31 - 00155480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys 2014-01-11 23:21 - 2009-07-29 07:51 - 00008192 __RSH C:\BOOTSECT.BAK 2014-01-11 22:49 - 2013-08-28 17:43 - 00000000 ____D C:\Users\Oliver M. Schmieder\Documents\Outlook-Dateien 2014-01-11 19:38 - 2012-05-02 12:56 - 00000000 ___RD C:\Users\Oliver M. Schmieder\Google Drive 2014-01-11 19:38 - 2011-09-25 22:57 - 00000000 ___RD C:\Users\Oliver M. Schmieder\Dropbox 2014-01-10 19:00 - 2012-10-02 20:06 - 02742784 ___SH C:\Users\Oliver M. Schmieder\Desktop\Thumbs.db 2014-01-06 23:31 - 2014-01-12 00:35 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-01-06 23:31 - 2014-01-12 00:35 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-06 14:10 - 2014-01-06 14:10 - 00113310 _____ C:\Users\Oliver M. Schmieder\Downloads\csp_12(1) 2014-01-06 14:09 - 2014-01-06 14:09 - 00113310 _____ C:\Users\Oliver M. Schmieder\Downloads\csp_12 2014-01-05 18:43 - 2014-01-05 18:43 - 04108288 _____ C:\Users\Oliver M. Schmieder\Downloads\anyconnect_31_win.msi 2014-01-02 21:03 - 2014-01-02 21:02 - 68852620 _____ C:\Users\Oliver M. Schmieder\Downloads\bdp2980_12_fus_deu.zip 2014-01-01 17:45 - 2014-01-01 17:45 - 00000000 ____D C:\Users\Oliver M. Schmieder\Documents\ARIS 7.1 Some content of TEMP: ==================== C:\Users\Gast\AppData\Local\Temp\avgnt.exe C:\Users\Oliver\AppData\Local\Temp\avgnt.exe C:\Users\Oliver\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\Oliver\AppData\Local\Temp\OfficeSetup.exe C:\Users\Oliver\AppData\Local\Temp\ose00000.exe C:\Users\Oliver M. Schmieder\AppData\Local\Temp\avgnt.exe C:\Users\Oliver M. Schmieder\AppData\Local\Temp\install_flashplayer11x32_mssd_aaa_aih.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-23 17:47 ==================== End Of Log ============================ Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-01-2014 Ran by Oliver at 2014-01-23 18:55:27 Running from C:\Users\Oliver\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Apple Application Support (x32 Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) ARIS Platform 7.2 (x32 Version: 7.2 - Software AG) ASUS FingerPrint (x32 Version: 1.0.5 - ASUSTek Computer Inc.) ASUS USB Charger Plus (x32 Version: 2.0.8 - ASUS) ATK Package (x32 Version: 1.0.0023 - ASUS) Avira Antivirus Suite (x32 Version: 14.0.2.286 - Avira) Bonjour (Version: 3.0.0.10 - Apple Inc.) Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition (x32 Version: - Microsoft) Fresco Logic USB3.0 Host Controller (Version: 3.4.6.0 - Fresco Logic Inc.) gSyncit (x32 Version: 3.8.74 - Fieldston Software) Intel(R) Processor Graphics (x32 Version: 9.17.10.2932 - Intel Corporation) iTunes (Version: 11.1.3.8 - Apple Inc.) Microsoft Office 365 Home Premium - de-de (Version: 15.0.4551.1512 - Microsoft Corporation) Microsoft Office 64-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Korrekturhilfen 2013 - Deutsch (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office OSM MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - English (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - Italiano (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Project MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Project Professional 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Project Professional 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft SkyDrive (HKCU Version: 17.0.2015.0811 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Outils de vérification linguistique 2013 de Microsoft Office*- Français (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Razer Synapse 2.0 (x32 Version: 1.16.6 - Razer Inc.) Realtek Card Reader (x32 Version: 6.2.9200.39052 - Realtek Semiconductor Corp.) Secure Download Manager (x32 Version: 3.1.40 - Kivuto Solutions Inc.) Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2738038) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760242) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760267) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2768016) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2817626) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2826004) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827225) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827230) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837626) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837638) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2850061) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2837652) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition (x32 Version: - Microsoft) ==================== Restore Points ========================= 22-01-2014 15:53:49 Installed gSyncit ==================== Hosts content: ========================== 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0BBA5EB4-A5EF-492C-BC22-B3D85DC8549B} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {0F932D8E-9118-4094-A341-40B96839E930} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {218C64FF-CDEC-459A-99B0-AE679DD1A071} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {2C3FB786-5806-472A-94BB-99AFD8888592} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation) Task: {35F46C32-E0CE-47D5-830A-7981D95F51C7} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2012-01-30] (ASUSTek Computer Inc.) Task: {392BC788-C97F-4CD2-A750-A1E1041F73BC} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {3C2866E4-A07D-4927-A56B-B4B7F56E9CCB} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {3E676A85-B1CC-4E94-A930-9C0214EE8115} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {4C4217BD-650D-4676-B62A-AE0E785F0AC4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {543751FC-D185-4C74-8F6A-9D18AF3724F3} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {59DE7D46-940E-441C-B979-44BAB99D9115} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {5A5F9A27-863B-4043-A782-37E4FE21EA2B} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {5D995BC4-BFA7-493A-9EC1-CD55AD66071A} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {6A59C583-FBB0-4F2B-A452-307A30BEF6BC} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {6A82CF27-7CF0-4C5D-95D0-076861B84611} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {79D1FAC0-7A97-4193-8DF0-4A5765B737DA} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {9389E41D-1FF0-4176-AE81-7441CD836EA6} - System32\Tasks\Microsoft Office 15 Sync Maintenance for BTTR-Oliver Bttr => C:\Program Files\Microsoft Office 15\root\Office15\MsoSync.exe [2014-01-16] (Microsoft Corporation) Task: {98F49E92-8A4B-4EFB-BADA-C0C35773148A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {9E866A98-DC70-45AB-85EB-406FBC341756} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {A3810495-81CE-4AA1-804C-3BA4752C5DC2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-01-22] (Microsoft Corporation) Task: {AC61A7FA-D235-4603-9DCF-625BCB5168FF} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {B3805F3E-2FF3-4FF3-98BA-6323C487698C} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {B39B4F5E-989A-429C-8E5A-702722991457} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-01-16] (Microsoft Corporation) Task: {E14AFE67-7292-44ED-83D4-2362B8190702} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {E8A76586-10E2-4180-8156-AC9B910B3722} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {ECEFDD38-F394-425B-8D03-F7816CAB1D45} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task ==================== Loaded Modules (whitelisted) ============= 2012-12-14 02:42 - 2012-12-14 02:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-01-12 01:01 - 2013-12-09 11:37 - 00394808 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-01-14 15:43 - 2014-01-14 15:46 - 00121920 _____ () C:\Program Files\Microsoft Office 15\root\Office15\JitV.dll 2014-01-14 15:43 - 2014-01-14 15:43 - 00316584 _____ () C:\Program Files\Microsoft Office 15\root\Office15\AppVIsvStream32.dll 2014-01-16 19:19 - 2014-01-16 19:19 - 00359592 _____ () C:\Program Files\Microsoft Office 15\root\Office15\c2r32.dll 2014-01-14 15:43 - 2014-01-14 15:43 - 00316584 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll 2014-01-16 19:19 - 2014-01-16 19:19 - 00359592 _____ () C:\Program Files\Microsoft Office 15\root\office15\c2r32.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Oliver\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Could not start eventlog service, could not read events. Der angeforderte Dienst wurde bereits gestartet. Sie erhalten weitere Hilfe, wenn Sie NET HELPMSG 2182 eingeben. ==================== Memory info =========================== Percentage of memory in use: 33% Total physical RAM: 4007.08 MB Available physical RAM: 2672.5 MB Total Pagefile: 4711.08 MB Available Pagefile: 3106.75 MB Total Virtual: 131072 MB Available Virtual: 131071.8 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:119.24 GB) (Free:45.55 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (DATA) (Fixed) (Total:153.85 GB) (Free:16.81 GB) NTFS Drive f: () (Removable) (Total:3.65 GB) (Free:2.55 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: AA9693FE) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=119 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=154 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 4 GB) (Disk ID: C3072E18) Partition 1: (Active) - (Size=4 GB) - (Type=0B) ==================== End Of Log ============================ |
24.01.2014, 10:41 | #4 |
/// the machine /// TB-Ausbilder | Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. hi, Downloade dir bitte Farbar Service Scanner
Poste bitte den Inhalt hier. Downloade dir bitte Farbar's MiniToolBox auf deinen Desktop und starte das Tool Setze einen Haken bei folgenden Einträgen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
24.01.2014, 16:19 | #5 |
| Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Hallo Schrauber, ich habe seit gestern nichts an meinem PC getan. Nun bin ich Deinen Anweisungen gefolgt. Hier die beiden Log-Files: Code:
ATTFilter Farbar Service Scanner Version: 08-01-2014 Ran by Oliver (administrator) on 24-01-2014 at 16:13:58 Running from "C:\Users\Oliver\Desktop" Microsoft Windows 8.1 Pro N (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== WinDefend Service is not running. Checking service configuration: The start type of WinDefend service is set to Demand. The default start type is Auto. The ImagePath of WinDefend: ""%ProgramFiles%\Windows Defender\MsMpEng.exe"". Windows Defender Disabled Policy: ========================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender] "DisableAntiSpyware"=DWORD:1 Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll [2013-08-22 14:25] - [2013-08-22 14:25] - 0029184 ____A (Microsoft Corporation) 6E2271ED0C3E95B8E29F3752B91B9E84 C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit C:\Windows\System32\dhcpcore.dll => MD5 is legit C:\Windows\System32\drivers\afd.sys => MD5 is legit C:\Windows\System32\drivers\tdx.sys => MD5 is legit C:\Windows\System32\Drivers\tcpip.sys [2014-01-12 00:09] - [2013-10-08 11:13] - 2551640 ____A (Microsoft Corporation) 6617F44D2432C529B2249A0498B6B40A C:\Windows\System32\dnsrslvr.dll [2014-01-12 00:09] - [2013-10-08 06:48] - 0255488 ____A (Microsoft Corporation) 5BAF7714E68F93515A937A3FA8587EF9 C:\Windows\System32\mpssvc.dll => MD5 is legit C:\Windows\System32\bfe.dll [2014-01-12 00:10] - [2013-10-12 22:48] - 0828416 ____A (Microsoft Corporation) 6468B696C65775D51A06615830E0E79D C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit C:\Windows\System32\wscsvc.dll => MD5 is legit C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit C:\Windows\System32\wuaueng.dll [2014-01-12 00:09] - [2013-10-07 03:13] - 3532288 ____A (Microsoft Corporation) 86D0BF4F792053A50D6EE43DFA5837A5 C:\Windows\System32\qmgr.dll => MD5 is legit C:\Windows\System32\es.dll => MD5 is legit C:\Windows\System32\cryptsvc.dll => MD5 is legit C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit C:\Program Files\Windows Defender\MsMpEng.exe => MD5 is legit C:\Windows\System32\ipnathlp.dll [2014-01-12 00:09] - [2013-09-14 10:11] - 0433664 ____A (Microsoft Corporation) F4414F57DF2CECB8FC969AA43A6B0D50 C:\Windows\System32\iphlpsvc.dll [2014-01-12 00:09] - [2013-10-08 05:50] - 0903168 ____A (Microsoft Corporation) DFC4050D58565ADBEE793A8D4AEBDAE6 C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit **** End of log **** Code:
ATTFilter MiniToolBox by Farbar Version: 23-01-2014 Ran by Oliver (administrator) on 24-01-2014 at 16:15:17 Running from "C:\Users\Oliver\Desktop" Microsoft Windows 8.1 Pro N (X64) Boot Mode: Normal *************************************************************************** ========================= Flush DNS: =================================== Windows-IP-Konfiguration Der DNS-Auflîsungscache wurde geleert. ========================= IE Proxy Settings: ============================== Proxy is not enabled. No Proxy Server is set. "Reset IE Proxy Settings": IE Proxy Settings were reset. ========================= FF Proxy Settings: ============================== "Reset FF Proxy Settings": Firefox Proxy settings were reset. ========================= Hosts content: ================================= ========================= IP Configuration: ================================ Qualcomm Atheros AR9002WB-1NG-Funknetzwerkadapter = WiFi (Connected) Controller der Familie Realtek PCIe GBE = Ethernet (Media disconnected) Bluetooth-Ger‰t (PAN) = Bluetooth-Netzwerkverbindung (Media disconnected) # ---------------------------------- # IPv4-Konfiguration # ---------------------------------- pushd interface ipv4 reset set global icmpredirects=enabled set interface interface="LAN-Verbindung* 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="WiFi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="LAN-Verbindung* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled set interface interface="Bluetooth-Netzwerkverbindung" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled popd # Ende der IPv4-Konfiguration Windows-IP-Konfiguration Hostname . . . . . . . . . . . . : Bttr PrimÑres DNS-Suffix . . . . . . . : Knotentyp . . . . . . . . . . . . : Hybrid IP-Routing aktiviert . . . . . . : Nein WINS-Proxy aktiviert . . . . . . : Nein Ethernet-Adapter Bluetooth-Netzwerkverbindung: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Bluetooth-GerÑt (PAN) Physische Adresse . . . . . . . . : 74-2F-68-80-EE-BB DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Drahtlos-LAN-Adapter LAN-Verbindung* 1: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Virtueller Microsoft-Adapter fÅr direktes WiFi Physische Adresse . . . . . . . . : 16-2F-68-80-2B-7D DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Drahtlos-LAN-Adapter WiFi: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Qualcomm Atheros AR9002WB-1NG-Funknetzwerkadapter Physische Adresse . . . . . . . . : 74-2F-68-80-2B-7D DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Verbindungslokale IPv6-Adresse . : fe80::8006:134c:a151:a521%4(Bevorzugt) IPv4-Adresse . . . . . . . . . . : 192.168.0.15(Bevorzugt) Subnetzmaske . . . . . . . . . . : 255.255.255.0 Lease erhalten. . . . . . . . . . : Donnerstag, 23. Januar 2014 17:35:17 Lease lÑuft ab. . . . . . . . . . : Samstag, 25. Januar 2014 16:13:51 Standardgateway . . . . . . . . . : 192.168.0.1 DHCP-Server . . . . . . . . . . . : 192.168.0.1 DHCPv6-IAID . . . . . . . . . . . : 74723176 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-1A-63-82-9E-14-DA-E9-4B-73-0B DNS-Server . . . . . . . . . . . : 195.34.133.21 212.186.211.21 NetBIOS Åber TCP/IP . . . . . . . : Aktiviert Ethernet-Adapter Ethernet: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Controller der Familie Realtek PCIe GBE Physische Adresse . . . . . . . . : 14-DA-E9-4B-73-0B DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Tunneladapter Teredo Tunneling Pseudo-Interface: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Teredo Tunneling Pseudo-Interface Physische Adresse . . . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja IPv6-Adresse. . . . . . . . . . . : 2001:0:5ef5:79fd:1ccf:82d:3f57:fff0(Bevorzugt) Verbindungslokale IPv6-Adresse . : fe80::1ccf:82d:3f57:fff0%7(Bevorzugt) Standardgateway . . . . . . . . . : :: DHCPv6-IAID . . . . . . . . . . . : 318767104 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-1A-63-82-9E-14-DA-E9-4B-73-0B NetBIOS Åber TCP/IP . . . . . . . : Deaktiviert Tunneladapter isatap.{49CF2243-9A36-4583-82A1-DFE81DB62106}: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter #2 Physische Adresse . . . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Server: viedns09.chello.at Address: 195.34.133.21 Name: google.com Addresses: 2a00:1450:400a:805::1006 64.15.113.93 64.15.113.123 64.15.113.88 64.15.113.108 64.15.113.113 64.15.113.89 64.15.113.109 64.15.113.104 64.15.113.118 64.15.113.99 64.15.113.119 64.15.113.103 64.15.113.94 64.15.113.98 64.15.113.114 64.15.113.84 Ping wird ausgefÅhrt fÅr google.com [64.15.113.34] mit 32 Bytes Daten: Antwort von 64.15.113.34: Bytes=32 Zeit=19ms TTL=58 Antwort von 64.15.113.34: Bytes=32 Zeit=18ms TTL=58 Ping-Statistik fÅr 64.15.113.34: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 18ms, Maximum = 19ms, Mittelwert = 18ms Server: viedns09.chello.at Address: 195.34.133.21 Name: yahoo.com Addresses: 98.139.183.24 206.190.36.45 98.138.253.109 Ping wird ausgefÅhrt fÅr yahoo.com [98.138.253.109] mit 32 Bytes Daten: Antwort von 98.138.253.109: Bytes=32 Zeit=156ms TTL=51 Antwort von 98.138.253.109: Bytes=32 Zeit=146ms TTL=51 Ping-Statistik fÅr 98.138.253.109: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 146ms, Maximum = 156ms, Mittelwert = 151ms Ping wird ausgefÅhrt fÅr 127.0.0.1 mit 32 Bytes Daten: Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128 Antwort von 127.0.0.1: Bytes=32 Zeit<1ms TTL=128 Ping-Statistik fÅr 127.0.0.1: Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 0ms, Maximum = 0ms, Mittelwert = 0ms =========================================================================== Schnittstellenliste 8...74 2f 68 80 ee bb ......Bluetooth-GerÑt (PAN) 5...16 2f 68 80 2b 7d ......Virtueller Microsoft-Adapter fÅr direktes WiFi 4...74 2f 68 80 2b 7d ......Qualcomm Atheros AR9002WB-1NG-Funknetzwerkadapter 3...14 da e9 4b 73 0b ......Controller der Familie Realtek PCIe GBE 1...........................Software Loopback Interface 1 7...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface 22...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter #2 =========================================================================== IPv4-Routentabelle =========================================================================== Aktive Routen: Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik 0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.15 25 127.0.0.0 255.0.0.0 Auf Verbindung 127.0.0.1 306 127.0.0.1 255.255.255.255 Auf Verbindung 127.0.0.1 306 127.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 192.168.0.0 255.255.255.0 Auf Verbindung 192.168.0.15 281 192.168.0.15 255.255.255.255 Auf Verbindung 192.168.0.15 281 192.168.0.255 255.255.255.255 Auf Verbindung 192.168.0.15 281 224.0.0.0 240.0.0.0 Auf Verbindung 127.0.0.1 306 224.0.0.0 240.0.0.0 Auf Verbindung 192.168.0.15 281 255.255.255.255 255.255.255.255 Auf Verbindung 127.0.0.1 306 255.255.255.255 255.255.255.255 Auf Verbindung 192.168.0.15 281 =========================================================================== StÑndige Routen: Keine IPv6-Routentabelle =========================================================================== Aktive Routen: If Metrik Netzwerkziel Gateway 7 306 ::/0 Auf Verbindung 1 306 ::1/128 Auf Verbindung 7 306 2001::/32 Auf Verbindung 7 306 2001:0:5ef5:79fd:1ccf:82d:3f57:fff0/128 Auf Verbindung 4 281 fe80::/64 Auf Verbindung 7 306 fe80::/64 Auf Verbindung 7 306 fe80::1ccf:82d:3f57:fff0/128 Auf Verbindung 4 281 fe80::8006:134c:a151:a521/128 Auf Verbindung 1 306 ff00::/8 Auf Verbindung 4 281 ff00::/8 Auf Verbindung 7 306 ff00::/8 Auf Verbindung =========================================================================== StÑndige Routen: Keine ========================= Winsock entries ===================================== Catalog5 01 C:\WINDOWS\SysWOW64\napinsp.dll [53760] (Microsoft Corporation) Catalog5 02 C:\WINDOWS\SysWOW64\pnrpnsp.dll [68096] (Microsoft Corporation) Catalog5 03 C:\WINDOWS\SysWOW64\pnrpnsp.dll [68096] (Microsoft Corporation) Catalog5 04 C:\WINDOWS\SysWOW64\NLAapi.dll [64000] (Microsoft Corporation) Catalog5 05 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog5 06 C:\WINDOWS\SysWOW64\winrnr.dll [21504] (Microsoft Corporation) Catalog5 07 C:\WINDOWS\SysWOW64\wshbth.dll [51200] (Microsoft Corporation) Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.) Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) Catalog9 11 C:\WINDOWS\SysWOW64\mswsock.dll [270848] (Microsoft Corporation) x64-Catalog5 01 C:\Windows\System32\napinsp.dll [67584] (Microsoft Corporation) x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation) x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [87040] (Microsoft Corporation) x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [84480] (Microsoft Corporation) x64-Catalog5 05 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog5 06 C:\Windows\System32\winrnr.dll [30208] (Microsoft Corporation) x64-Catalog5 07 C:\Windows\System32\wshbth.dll [63488] (Microsoft Corporation) x64-Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.) x64-Catalog9 01 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 02 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 03 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 04 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 05 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 06 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 07 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 08 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 09 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 10 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) x64-Catalog9 11 C:\Windows\System32\mswsock.dll [338432] (Microsoft Corporation) ========================= Event log errors: =============================== Application errors: ================== Error: (01/24/2014 00:04:40 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 12797 Error: (01/24/2014 00:04:40 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 12797 Error: (01/24/2014 00:04:40 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/23/2014 06:13:26 PM) (Source: Application Hang) (User: ) Description: Programm RzSynapse.exe, Version 1.16.6.17931 kann nicht mehr unter Windows ausgef¸hrt werden und wurde beendet. ‹berpr¸fen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1570 Startzeit: 01cf185e36fc3995 Endzeit: 15 Anwendungspfad: C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe Berichts-ID: 9faa1297-8451-11e3-9bfd-742f6880eebb Vollst‰ndiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (01/23/2014 05:51:25 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: RzSynapse.exe, Version: 1.16.6.17931, Zeitstempel: 0x52899215 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.16408, Zeitstempel: 0x523d4548 Ausnahmecode: 0xc0020001 Fehleroffset: 0x00012eec ID des fehlerhaften Prozesses: 0x17c0 Startzeit der fehlerhaften Anwendung: 0xRzSynapse.exe0 Pfad der fehlerhaften Anwendung: RzSynapse.exe1 Pfad des fehlerhaften Moduls: RzSynapse.exe2 Berichtskennung: RzSynapse.exe3 Vollst‰ndiger Name des fehlerhaften Pakets: RzSynapse.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: RzSynapse.exe5 Error: (01/23/2014 05:47:54 PM) (Source: Office 2013 Licensing Service) (User: ) Description: Subscription licensing service failed: -2143485946 Error: (01/23/2014 05:47:54 PM) (Source: Microsoft Office 15) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {494A6159-3681-429B-8A6F-ED6914121214} Error: (01/22/2014 10:44:54 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 12141 Error: (01/22/2014 10:44:54 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 12141 Error: (01/22/2014 10:44:54 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (01/24/2014 04:08:49 PM) (Source: WudfUsbccidDriver) (User: NT-AUTORITƒT) Description: 0x810x20x10xfe0x00x0 Error: (01/24/2014 00:04:23 AM) (Source: WudfUsbccidDriver) (User: NT-AUTORITƒT) Description: 0x810x20x10xfe0x00x0 Error: (01/23/2014 06:52:30 PM) (Source: DCOM) (User: BTTR) Description: AnwendungsspezifischLokalAktivierung{8BC3F05E-D86B-11D0-A075-00C04FB68820}{8BC3F05E-D86B-11D0-A075-00C04FB68820}BTTRGastS-1-5-21-741602991-2670020195-3668170717-501LocalHost (unter Verwendung von LRPC)Nicht verf¸gbarNicht verf¸gbar Error: (01/23/2014 06:52:25 PM) (Source: DCOM) (User: BTTR) Description: AnwendungsspezifischLokalAktivierung{8BC3F05E-D86B-11D0-A075-00C04FB68820}{8BC3F05E-D86B-11D0-A075-00C04FB68820}BTTRGastS-1-5-21-741602991-2670020195-3668170717-501LocalHost (unter Verwendung von LRPC)Nicht verf¸gbarNicht verf¸gbar Error: (01/23/2014 06:52:21 PM) (Source: DCOM) (User: BTTR) Description: AnwendungsspezifischLokalAktivierung{8BC3F05E-D86B-11D0-A075-00C04FB68820}{8BC3F05E-D86B-11D0-A075-00C04FB68820}BTTRGastS-1-5-21-741602991-2670020195-3668170717-501LocalHost (unter Verwendung von LRPC)Nicht verf¸gbarNicht verf¸gbar Error: (01/23/2014 06:51:50 PM) (Source: WudfUsbccidDriver) (User: NT-AUTORITƒT) Description: 0x810x20x10xfe0x00x0 Error: (01/23/2014 06:12:08 PM) (Source: DCOM) (User: BTTR) Description: AnwendungsspezifischLokalAktivierung{8BC3F05E-D86B-11D0-A075-00C04FB68820}{8BC3F05E-D86B-11D0-A075-00C04FB68820}BTTRGastS-1-5-21-741602991-2670020195-3668170717-501LocalHost (unter Verwendung von LRPC)Nicht verf¸gbarNicht verf¸gbar Error: (01/23/2014 06:12:08 PM) (Source: DCOM) (User: BTTR) Description: AnwendungsspezifischLokalAktivierung{8BC3F05E-D86B-11D0-A075-00C04FB68820}{8BC3F05E-D86B-11D0-A075-00C04FB68820}BTTRGastS-1-5-21-741602991-2670020195-3668170717-501LocalHost (unter Verwendung von LRPC)Nicht verf¸gbarNicht verf¸gbar Error: (01/23/2014 06:12:08 PM) (Source: DCOM) (User: BTTR) Description: AnwendungsspezifischLokalAktivierung{8BC3F05E-D86B-11D0-A075-00C04FB68820}{8BC3F05E-D86B-11D0-A075-00C04FB68820}BTTRGastS-1-5-21-741602991-2670020195-3668170717-501LocalHost (unter Verwendung von LRPC)Nicht verf¸gbarNicht verf¸gbar Error: (01/23/2014 06:12:04 PM) (Source: DCOM) (User: BTTR) Description: AnwendungsspezifischLokalAktivierung{8BC3F05E-D86B-11D0-A075-00C04FB68820}{8BC3F05E-D86B-11D0-A075-00C04FB68820}BTTRGastS-1-5-21-741602991-2670020195-3668170717-501LocalHost (unter Verwendung von LRPC)Nicht verf¸gbarNicht verf¸gbar Microsoft Office Sessions: ========================= Error: (01/24/2014 00:04:40 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 12797 Error: (01/24/2014 00:04:40 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 12797 Error: (01/24/2014 00:04:40 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/23/2014 06:13:26 PM) (Source: Application Hang)(User: ) Description: RzSynapse.exe1.16.6.17931157001cf185e36fc399515C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe9faa1297-8451-11e3-9bfd-742f6880eebb Error: (01/23/2014 05:51:25 PM) (Source: Application Error)(User: ) Description: RzSynapse.exe1.16.6.1793152899215KERNELBASE.dll6.3.9600.16408523d4548c002000100012eec17c001cf185a805f99e4C:\Program Files (x86)\Razer\Synapse\RzSynapse.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dll97d340b4-844e-11e3-9bfd-742f6880eebb Error: (01/23/2014 05:47:54 PM) (Source: Office 2013 Licensing Service)(User: ) Description: Subscription licensing service failed: -2143485946 Error: (01/23/2014 05:47:54 PM) (Source: Microsoft Office 15)(User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0006; CorrelationId: {494A6159-3681-429B-8A6F-ED6914121214} Error: (01/22/2014 10:44:54 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 12141 Error: (01/22/2014 10:44:54 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 12141 Error: (01/22/2014 10:44:54 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second =========================== Installed Programs ============================ Adobe Flash Player 11 Plugin (Version: 11.9.900.170) Apple Application Support (Version: 2.3.6) Apple Mobile Device Support (Version: 7.0.0.117) Apple Software Update (Version: 2.1.3.127) ARIS Platform 7.2 (Version: 7.2) ASUS FingerPrint (Version: 1.0.5) ASUS USB Charger Plus (Version: 2.0.8) ATK Package (Version: 1.0.0023) Avira Antivirus Suite (Version: 14.0.2.286) Bonjour (Version: 3.0.0.10) Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition Fresco Logic USB3.0 Host Controller (Version: 3.4.6.0) gSyncit (Version: 3.8.74) Intel(R) Processor Graphics (Version: 9.17.10.2932) iTunes (Version: 11.1.3.8) Microsoft Office 365 Home Premium - de-de (Version: 15.0.4551.1512) Microsoft Office 64-bit Components 2013 (Version: 15.0.4420.1017) Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017) Microsoft Office OSM MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Office Proofing (German) 2013 (Version: 15.0.4420.1017) Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017) Microsoft Office Proofing Tools 2013 - Italiano (Version: 15.0.4420.1017) Microsoft Office Shared 64-bit MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Office Shared MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Project MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Project Professional 2013 (Version: 15.0.4420.1017) Microsoft SkyDrive (Version: 17.0.2015.0811) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219) Mozilla Firefox 26.0 (x86 de) (Version: 26.0) Mozilla Maintenance Service (Version: 26.0) Office 15 Click-to-Run Extensibility Component (Version: 15.0.4551.1512) Office 15 Click-to-Run Licensing Component (Version: 15.0.4551.1512) Office 15 Click-to-Run Localization Component (Version: 15.0.4551.1512) Outils de vÈrification linguistique 2013 de Microsoft Office†- FranÁais (Version: 15.0.4420.1017) Razer Synapse 2.0 (Version: 1.16.6) Realtek Card Reader (Version: 6.2.9200.39052) Secure Download Manager (Version: 3.1.40) Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition Update for Microsoft Office 2013 (KB2738038) 32-Bit Edition Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition Update for Microsoft Office 2013 (KB2760242) 32-Bit Edition Update for Microsoft Office 2013 (KB2760267) 32-Bit Edition Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition Update for Microsoft Office 2013 (KB2768016) 32-Bit Edition Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition Update for Microsoft Office 2013 (KB2817626) 32-Bit Edition Update for Microsoft Office 2013 (KB2826004) 32-Bit Edition Update for Microsoft Office 2013 (KB2827225) 32-Bit Edition Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition Update for Microsoft Office 2013 (KB2827230) 32-Bit Edition Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition Update for Microsoft Office 2013 (KB2837626) 32-Bit Edition Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition Update for Microsoft Office 2013 (KB2837638) 32-Bit Edition Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition Update for Microsoft Outlook 2013 (KB2850061) 32-Bit Edition Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition Update for Microsoft SkyDrive Pro (KB2837652) 32-Bit Edition Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition ========================= Memory info: =================================== Percentage of memory in use: 34% Total physical RAM: 4007.08 MB Available physical RAM: 2608.23 MB Total Pagefile: 4711.08 MB Available Pagefile: 2867.11 MB Total Virtual: 4095.88 MB Available Virtual: 3954.61 MB ========================= Partitions: ===================================== 1 Drive c: (OS) (Fixed) (Total:119.24 GB) (Free:42.73 GB) NTFS 2 Drive d: (DATA) (Fixed) (Total:153.85 GB) (Free:16.81 GB) NTFS 4 Drive f: () (Removable) (Total:3.65 GB) (Free:2.83 GB) FAT32 ========================= Users: ======================================== Benutzerkonten fÅr \\BTTR Administrator Gast Oliver Oliver M. Schmieder Der Befehl wurde erfolgreich ausgefÅhrt. ========================= Minidump Files ================================== No minidump file found **** End of log **** Wie geht es weiter? Gruß |
25.01.2014, 12:43 | #6 |
/// the machine /// TB-Ausbilder | Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Hi, was genau passiert wenn Du den Browser öffnest und eine Seite ansteuern willst?
__________________ --> Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. |
25.01.2014, 15:54 | #7 |
| Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Hallo Schrauber, ich gebe in Firefox www.google.de ein, drücke "Enter" und minutenlang passiert nichts. Im Tab steht seit knapp 10 Minuten "Verbinden..." und ein grüner Kreis dreht sich. Alle anderen Geräte im selben Netz funktionieren. Liebe Grüße, Gerade den Internet Explorer ausprobiert. MSN Startseite funktioniert, Suchmaschine Bing auch. Habe dann versucht weitere Seiten zu laden. Google. de funktioniert nicht, Kicker.de funktioniert nicht, Bunte.de funktioniert nicht, Yahoo.net funktioniert! Anscheinend komme ich nur nicht auf .de Domains. |
26.01.2014, 07:33 | #8 |
/// the machine /// TB-Ausbilder | Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. ok. Rechtsklick auf die Netzwerkverbindung unten in der Taskleiste > Netzwerk und Freigabecenter > Klick auf die Lan oder WLAN Verbindung > Eigenschaften > Doppelklick auf TCP/IPv4 > Haken raus bei DNS Server von autmatisch auf manuell, dann folgendes eintragen: 8.8.8.8 8.8.4.4 Übernehmen, speichern, ok, alle Fenster mit Ok schliessen. Testen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
26.01.2014, 10:24 | #9 |
| Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Guten Morgen, Habe es so eingegeben. Keine Veränderung. Dann PC Neustart - hat eine Weile gedauert, länger als üblich - dann wieder im Browser der Fehlercode, den ich vor ein paar Tagen hatte, gestern aber nicht reproduzieren konnte: Fehler: Gesicherte Verbindung fehlgeschlagen. Ein Fehler ist während einer Verbindung mit www.google.de aufgetreten. SSL hat einen Eintrag erhalten, der die maximal erlaubte Länge überschritten hat. (Fehlercode: ssl_error_rx_record_too_long) Bei "Status von WiFi" stehen noch diese Infos: IPv4-Konnektivität: Internet IPv6-Konnektivität: Kein Internetzugriff Medienstatus: aktiviert Kennung: (zensiert) Dauer: 16:00 Übertragungsrate: 65,0 MBit/s Signalqualität: hervorragend Gesendet: 105.767 Bytes Empfangen: 1.009.754 Bytes Vielleicht ist da ja noch eine hilfreiche Info bei. Wie geht es weiter? Vielen Dank für die Hilfe- Gruß Geändert von diebutter (26.01.2014 um 10:36 Uhr) |
26.01.2014, 13:19 | #10 |
/// the machine /// TB-Ausbilder | Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. eigentlich unmöglich. Nochmal Rechtsklick auf die Verbindung > wähle Problembehandlung. Wird ein Fehler gefunden? Andere Geräte am gleichen Router funktionieren fehlerfrei??? Und es gehen nur DE Domains nicht? Du schreibst oben es gehen keine De Domains, das ist ein typischer DNS Fehler, deswegen haben wir jetzt auf Google DNS umgestellt, dann muss es eigentlich gehen.....
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
26.01.2014, 20:31 | #11 |
| Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Hallo, Ich antworte derzeit immer von meinem iPhone/ iPad oder dem MacBook meiner Freundin. Der einzige Computer im Netz mit Fehler ist mein Asus Laptop. Windows Netzwerkdiagnose: Ich kann einige Websites aufrufen. Das stimmt auch. Problembehandlung findet also nichts. Google.de geht noch immer nicht. Google.com und .fr allerdings auch nicht. Bing.com lädt umgehend! adquick.nl geht. NBA.com geht. Sueddeutsche.DE geht nun auch... Bunte.de geht nicht. Bundestag.de geht nicht. Trojaner-Board.de geht!? Hallo ich habe den Treiber meines Netzwerkadapters "Qualcomm Atheros AR9002" manuell aktualisiert. Keine Veränderung. Nach wie vor gehen manche Seiten und manche nicht. Da google.fr auch nicht lädt, scheint es nicht nur an .de Domains zu liegen. Und nachdem mein Browser mich zumindest auf das Trojaner Board lässt, hier der genauer Text, wenn ich google.de ansteuere. Fehler: Gesicherte Verbindung fehlgeschlagen Ein Fehler ist während einer Verbindung mit Google aufgetreten. SSL hat einen Eintrag erhalten, der die maximal erlaubte Länge überschritten hat. (Fehlercode: ssl_error_rx_record_too_long) Die Website kann nicht angezeigt werden, da die Authentizität der erhaltenen Daten nicht verifiziert werden konnte. Kontaktieren Sie bitte den Inhaber der Website, um ihn über dieses Problem zu informieren. Alternativ können Sie auch die Funktion im Hilfe-Menü verwenden, um diese Website als fehlerhaft zu melden. Habe mir die Anleitungen der anderen Threads durchgelesene und daraufhin den ESET und JRT laufen lassen. Anbei die Logfiles: ESET Code:
ATTFilter C:\Program Files (x86)\Avira\AntiVir Desktop\offercast_avirav7_.exe a variant of Win32/Bundled.Toolbar.Ask.D application cleaned by deleting - quarantined C:\Users\Oliver\Downloads\avira_antivirus_suite_de.exe a variant of Win32/Bundled.Toolbar.Ask.D application deleted - quarantined C:\Users\Oliver M. Schmieder\Desktop\Superlead\SweetHome3D-4.2-windows-oc.exe Win32/OpenCandy application cleaned by deleting - quarantined C:\Windows.old\$Recycle.Bin\S-1-5-21-741602991-2670020195-3668170717-1000\$R6Y6BAX.exe a variant of Win32/DownloadSponsor.A application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2WEFMTN0\ApnIC[1].0 a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JG7CVAVY\ApnIC[1].0 a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JG7CVAVY\ApnIC[2].0 a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JG7CVAVY\ApnIC[3].0 a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\AskSLib.dll a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\instloffer.exe multiple threats cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\tbedrs.dll a variant of Win32/Toolbar.Conduit.B application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\tbuTor.dll a variant of Win32/Toolbar.Conduit.B application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\Yontoo-C4.exe multiple threats cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\OCS\ocs_v6z.exe a variant of Win32/DownloadSponsor.A application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\RarSFX0\apnic.dll a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver\AppData\Local\Temp\RarSFX0\apntoolbarinstaller.exe a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined C:\Windows.old\Users\Oliver M. Schmieder\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaabfjnbeinlpljodiajipidiompfl\7.15.19.38091_0\background\setup.exe a variant of Win32/Bundled.Toolbar.Ask application cleaned by deleting - quarantined Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.0 (01.07.2014:1) OS: Windows 8.1 Pro N x64 Ran by Oliver on 26.01.2014 at 20:24:08,89 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\caphyon Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\caphyon ~~~ Files ~~~ Folders Failed to delete: [Folder] "C:\WINDOWS\syswow64\ai_recyclebin" ~~~ FireFox Emptied folder: C:\Users\Oliver\AppData\Roaming\mozilla\firefox\profiles\b9ro14mo.default\minidumps [2 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 26.01.2014 at 20:27:02,73 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Gruß Geändert von diebutter (26.01.2014 um 13:59 Uhr) |
27.01.2014, 16:08 | #12 |
/// the machine /// TB-Ausbilder | Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Setz den Firefox mal komplett zurück und versuch es nochmal. Ein extrem komisches Problem.....
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.01.2014, 21:40 | #13 |
| Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Hallo, habe Firefox deinstalliert. Nachdem ich eine Seite gefunden habe, über die ich den Installer laden konnte (die Firefox Webseite lädt bei mir nicht), habe ich es wieder installiert. Keine Änderung. Wenn ich es bis morgen früh nicht repariert bekomme, werde ich den Rechner zur Reparatur geben.. Vielen Dank jedenfalls für die Hilfe. Gerne poste ich hier die Lösung; wenn es denn eine gibt :-( Grüße Hallo, ich habe nun Avira deinstalliert und neu aufgespielt. Jetzt geht alles wieder. Irgendwo hier scheint ein das Problem gelegen zu haben. Vielen Dank für die Hilfe. Gruß |
28.01.2014, 15:39 | #14 |
/// the machine /// TB-Ausbilder | Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. Avira ist halt geil.....
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Win8.1: Nach Phishing Mail läuft das Internet erst langsam, jetzt nicht mehr; kein PopUp o.ä. |
anderen, anmelden, avira, erhalte, forum, gesucht, geändert, hallo zusammen, hilfe gesucht, internet, kein internet, konto, langsam, link, mail, melden, nicht mehr, passwörter, paypal, phishing, rechner, seltsam, verbindung, win, win8.1, zusammen |