|
Plagegeister aller Art und deren Bekämpfung: Antivir hat einen beblockten Zugriffsversuch mit "APPL/FirInstaller.B (Cloud)" gemeldet.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
02.02.2014, 00:51 | #16 |
| Antivir hat einen beblockten Zugriffsversuch mit "APPL/FirInstaller.B (Cloud)" gemeldet. Hier Teil 2 der frischen FRST log Code:
ATTFilter 2014-01-21 23:21 - 2014-01-21 23:21 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-01-21 23:20 - 2014-01-21 23:26 - 00010741 _____ () C:\Windows\IE10_main.log 2014-01-21 23:11 - 2014-01-21 23:11 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-01-21 23:11 - 2014-01-21 23:11 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-01-21 22:55 - 2014-01-21 22:58 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-21 22:40 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-01-21 22:40 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-01-21 22:40 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-01-21 22:40 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-01-21 22:40 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-01-21 22:40 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-01-21 22:39 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-21 22:39 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-21 22:39 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-21 22:39 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-21 22:39 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-21 22:39 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-21 22:39 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-21 22:39 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-01-21 22:39 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-01-21 22:39 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-01-21 22:39 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-01-21 22:39 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-01-21 22:39 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-01-21 22:39 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-01-21 22:39 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-01-21 22:39 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-01-21 22:39 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-01-21 22:39 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-01-21 22:39 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-01-21 22:39 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-01-21 22:39 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-01-21 22:39 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-01-21 22:39 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-01-21 22:39 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-01-21 22:39 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-01-21 22:39 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-01-21 22:39 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-01-21 22:39 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-01-21 22:39 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-01-21 22:39 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-01-21 22:39 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-01-21 22:39 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-01-21 22:39 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-01-21 22:39 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-01-21 22:39 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-01-21 22:39 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-01-21 22:39 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-01-21 22:39 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-01-21 22:39 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-01-21 22:39 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-01-21 22:39 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-01-21 22:39 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-01-21 22:39 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-01-21 22:39 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-01-21 22:39 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-01-21 22:39 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-01-21 22:39 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-01-21 22:39 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-01-21 22:39 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-01-21 22:39 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-01-21 22:39 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-01-21 22:39 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-01-21 22:39 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-01-21 22:39 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-01-21 22:39 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-01-21 22:39 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-01-21 22:39 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-01-21 22:39 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-01-21 22:39 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-01-21 22:39 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-01-21 22:39 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-01-21 22:39 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-01-21 22:39 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-01-21 22:39 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-01-21 22:39 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-01-21 22:39 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-01-21 22:39 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-01-21 22:39 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-01-21 22:39 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-01-21 22:39 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-01-21 22:39 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-01-21 22:39 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-01-21 22:39 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-01-21 22:39 - 2013-06-04 07:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-01-21 22:39 - 2013-06-04 05:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-01-21 22:39 - 2013-04-26 00:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2014-01-21 22:39 - 2013-04-12 15:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-01-21 22:39 - 2013-03-31 23:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-01-21 22:39 - 2013-03-19 06:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-01-21 22:39 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-01-21 22:39 - 2013-02-27 07:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-01-21 22:39 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-01-21 22:39 - 2013-02-12 05:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-01-21 22:38 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-21 22:38 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-21 22:38 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-01-21 22:38 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-01-21 22:38 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-01-21 22:38 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-01-21 22:38 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-01-21 22:38 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-01-21 22:38 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-01-21 22:38 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-01-21 22:38 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-01-21 22:38 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-01-21 22:38 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-01-21 22:38 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-01-21 22:38 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-01-21 22:38 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-01-21 22:38 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-01-21 22:38 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-01-21 22:38 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-01-21 22:38 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-01-21 22:38 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-01-21 22:38 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-01-21 22:38 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-01-21 22:38 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-01-21 22:38 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-01-21 22:38 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-01-21 22:38 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-01-21 22:38 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-01-21 22:38 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-01-21 22:38 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-01-21 22:38 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-01-21 22:38 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-01-21 22:38 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-01-21 22:38 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-01-21 22:38 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-01-21 22:38 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-01-21 22:38 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-01-21 22:38 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-01-21 22:38 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-01-21 22:38 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-01-21 22:38 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-01-21 22:38 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-01-21 22:38 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-01-21 22:38 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-01-21 22:38 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-01-21 22:38 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-01-21 22:38 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-01-21 22:38 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-01-21 22:38 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-01-21 22:38 - 2013-04-10 07:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-01-21 22:38 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-01-21 22:38 - 2013-01-03 07:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-01-21 22:38 - 2011-02-03 12:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-01-21 22:29 - 2013-12-10 18:43 - 00038200 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2014-01-21 22:29 - 2013-12-10 18:43 - 00026936 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2014-01-21 22:26 - 2014-01-21 22:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-01-21 22:20 - 2014-01-21 22:20 - 00002214 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-01-21 22:13 - 2014-01-21 22:13 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-01-21 22:13 - 2014-01-21 22:13 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-01-21 22:13 - 2014-01-21 22:13 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-01-21 22:13 - 2014-01-21 22:13 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-01-21 22:03 - 2014-01-21 22:03 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-01-21 22:03 - 2014-01-21 22:03 - 00000000 ____D () C:\Program Files\McAfee Security Scan ==================== One Month Modified Files and Folders ======= 2014-02-02 00:20 - 2014-01-27 09:32 - 00019033 _____ () C:\Users\Dieter Wörle\Downloads\FRST.txt 2014-02-02 00:19 - 2014-01-27 09:30 - 00000000 ____D () C:\FRST 2014-02-02 00:18 - 2014-01-31 16:52 - 00000000 ____D () C:\Users\Dieter Wörle\Downloads\FRST-OlderVersion 2014-02-02 00:18 - 2014-01-27 09:27 - 02080256 _____ (Farbar) C:\Users\Dieter Wörle\Downloads\FRST64.exe 2014-02-02 00:16 - 2011-10-22 19:49 - 00001122 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-02 00:04 - 2014-02-02 00:04 - 00987425 _____ () C:\Users\Dieter Wörle\Desktop\SecurityCheck.exe 2014-02-01 23:17 - 2011-03-03 22:55 - 02094098 _____ () C:\Windows\WindowsUpdate.log 2014-02-01 22:43 - 2009-07-14 08:44 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-02-01 22:16 - 2011-10-22 19:49 - 00001118 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-01 21:39 - 2014-02-01 21:39 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-02-01 21:37 - 2014-02-01 21:37 - 02347384 _____ (ESET) C:\Users\Dieter Wörle\Downloads\esetsmartinstaller_enu.exe 2014-02-01 21:08 - 2011-03-03 23:31 - 00656044 _____ () C:\Windows\system32\perfh007.dat 2014-02-01 21:08 - 2011-03-03 23:31 - 00130676 _____ () C:\Windows\system32\perfc007.dat 2014-02-01 21:08 - 2009-07-14 06:13 - 01498742 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-01 20:40 - 2014-01-26 20:17 - 00003228 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForDieter Wörle 2014-02-01 20:40 - 2014-01-26 20:17 - 00000360 _____ () C:\Windows\Tasks\HPCeeScheduleForDieter Wörle.job 2014-02-01 20:39 - 2011-10-31 08:36 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-02-01 20:39 - 2011-10-15 07:32 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-02-01 20:37 - 2011-10-15 07:31 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\HpUpdate 2014-02-01 20:37 - 2011-10-15 07:31 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\HP Support Assistant 2014-02-01 20:34 - 2009-07-14 05:45 - 00021408 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-01 20:34 - 2009-07-14 05:45 - 00021408 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-01 20:27 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-01 20:26 - 2009-07-14 05:51 - 00096618 _____ () C:\Windows\setupact.log 2014-02-01 00:16 - 2011-03-03 22:50 - 07712930 _____ () C:\Windows\PFRO.log 2014-01-31 23:19 - 2014-01-31 23:19 - 00001345 _____ () C:\Users\Dieter Wörle\Desktop\Media Center.lnk 2014-01-31 23:16 - 2014-01-31 23:16 - 00003234 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-01-31 21:13 - 2014-01-23 00:08 - 00000000 ____D () C:\Users\Dieter Wörle\Desktop\ImageCache 2014-01-31 21:10 - 2011-03-03 23:09 - 00038774 _____ () C:\Windows\DirectX.log 2014-01-31 21:08 - 2014-01-22 17:03 - 00000000 ____D () C:\Program Files (x86)\Lidl_Fotos 2014-01-31 21:06 - 2012-08-23 12:40 - 00000000 ___RD () C:\Users\Dieter Wörle\Virtual Machines 2014-01-31 21:05 - 2014-01-22 21:39 - 00000000 ___RD () C:\Users\Dieter Wörle\Documents\DOC 2014-01-31 19:48 - 2014-01-31 19:47 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\{5A0F9FF3-B195-4280-963B-7BD09A7CA8FC} 2014-01-31 16:07 - 2014-01-31 16:07 - 00000000 ____D () C:\Windows\ERUNT 2014-01-31 16:06 - 2014-01-31 16:05 - 01037068 _____ (Thisisu) C:\Users\Dieter Wörle\Downloads\JRT61.exe 2014-01-31 15:53 - 2014-01-30 20:07 - 00000000 ____D () C:\AdwCleaner 2014-01-30 20:06 - 2014-01-30 20:06 - 01166132 _____ () C:\Users\Dieter Wörle\Downloads\adwcleaner.exe 2014-01-30 19:40 - 2014-01-30 19:40 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\Malwarebytes 2014-01-30 19:39 - 2014-01-30 19:39 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-01-30 19:35 - 2014-01-30 19:35 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Dieter Wörle\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-30 19:28 - 2014-01-30 19:28 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\MusicNet 2014-01-30 19:27 - 2014-01-30 19:27 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\My Received Files 2014-01-29 19:37 - 2011-10-22 19:50 - 00002177 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-01-29 14:09 - 2014-01-29 14:09 - 00022478 _____ () C:\ComboFix.txt 2014-01-29 14:09 - 2014-01-29 13:36 - 00000000 ____D () C:\Qoobox 2014-01-29 14:08 - 2014-01-29 13:35 - 00000000 ____D () C:\Windows\erdnt 2014-01-29 14:07 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-01-29 13:49 - 2014-01-29 13:49 - 05177551 ____R (Swearware) C:\Users\Dieter Wörle\Downloads\ComboFix.exe 2014-01-28 10:15 - 2011-03-03 23:04 - 00000000 ____D () C:\ProgramData\PDFC 2014-01-27 10:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-01-27 09:36 - 2014-01-27 09:35 - 00041559 _____ () C:\Users\Dieter Wörle\Downloads\Addition.txt 2014-01-27 01:18 - 2011-12-16 00:26 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\CrashDumps 2014-01-27 01:17 - 2011-12-16 22:54 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\Windows Live 2014-01-27 01:15 - 2014-01-27 01:15 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-27 01:15 - 2014-01-27 01:15 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-27 01:15 - 2012-03-20 17:30 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\Adobe 2014-01-27 00:28 - 2011-10-14 17:09 - 00001423 _____ () C:\Users\Dieter Wörle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-27 00:24 - 2014-01-21 23:34 - 00029710 _____ () C:\Windows\IE11_main.log 2014-01-27 00:24 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-01-27 00:17 - 2014-01-27 00:16 - 63320784 _____ (Microsoft Corporation) C:\Users\Dieter Wörle\Downloads\IE11-Windows6.1-x64-de-de.exe 2014-01-26 22:02 - 2014-01-22 04:00 - 00000000 ____D () C:\Users\Dieter Wörle\Zweite Sicherung Lightroom 5 Katalog 2014-01-26 21:57 - 2012-10-11 23:21 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\DoNotTrackPlus 2014-01-24 22:54 - 2014-01-24 22:54 - 00002057 _____ () C:\Users\Public\Desktop\Lightroom 5.3 64-Bit.lnk 2014-01-24 22:53 - 2012-03-20 17:19 - 00000000 ____D () C:\Program Files\Adobe 2014-01-24 22:47 - 2012-06-07 21:33 - 00000000 ____D () C:\Users\Dieter Wörle\Desktop\Adobe 2014-01-24 22:43 - 2014-01-24 22:28 - 914255640 _____ (Adobe Systems Incorporated) C:\Users\Dieter Wörle\Downloads\Lightroom_5_LS11_win_5_3(1).exe 2014-01-24 12:10 - 2011-10-31 08:35 - 00000000 ____D () C:\ProgramData\Recovery 2014-01-23 09:02 - 2014-01-22 04:11 - 00000000 ____D () C:\Users\Dieter Wörle\Zweite Sicherung Fotos Mechthild-2 2014-01-23 01:04 - 2014-01-23 01:04 - 00985600 _____ () C:\Users\Dieter Wörle\Downloads\MicrosoftFixit50123(2).msi 2014-01-23 01:03 - 2014-01-23 01:03 - 00985600 _____ () C:\Users\Dieter Wörle\Downloads\MicrosoftFixit50123(1).msi 2014-01-23 00:09 - 2014-01-23 00:08 - 00000000 ____D () C:\Users\Dieter Wörle\Desktop\Settings 2014-01-23 00:07 - 2014-01-23 00:07 - 00000000 _____ () C:\Users\Dieter Wörle\Downloads\CGWebInstall.exe.fh6tt9v.partial 2014-01-23 00:05 - 2014-01-23 00:05 - 00003694 _____ () C:\Windows\System32\Tasks\Adobe-Online-Aktualisierungsprogramm 2014-01-23 00:05 - 2014-01-22 17:41 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\Downloaded Installations 2014-01-22 23:54 - 2012-02-18 17:35 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\IrfanView 2014-01-22 23:16 - 2014-01-22 23:15 - 65446536 _____ (Microsoft Corporation) C:\Users\Dieter Wörle\Downloads\EIE11_DE-DE_WOL_WIN764.EXE 2014-01-22 22:28 - 2011-10-14 16:34 - 00000000 ____D () C:\Users\Dieter Wörle 2014-01-22 22:18 - 2014-01-22 22:18 - 00000000 ____D () C:\Users\Dieter Wörle\Sicherung Mails Woerleweb Posteingang 2014-01-22 22:18 - 2014-01-22 22:18 - 00000000 ____D () C:\Users\Dieter Wörle\Sicherung Mails Hotmail Posteingang 2014-01-22 22:17 - 2014-01-22 22:17 - 00000000 ____D () C:\Users\Dieter Wörle\Sicherung Mails Woerleweb Gesendete 2014-01-22 22:16 - 2012-09-04 21:50 - 00000000 ____D () C:\Users\Dieter Wörle\Puffer Lightroom 2014-01-22 21:53 - 2014-01-22 21:53 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\TXT 2014-01-22 21:50 - 2014-01-22 21:50 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\TomTom 2014-01-22 21:49 - 2014-01-22 21:49 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\Roxio 2014-01-22 21:48 - 2014-01-22 21:48 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\CyberLink 2014-01-22 21:44 - 2014-01-22 21:44 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\Inhalt Stick vom Laptop Anf_2007 2014-01-22 21:41 - 2012-03-24 15:57 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\Eigene Scans 2014-01-22 21:40 - 2014-01-22 21:40 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\Dokumente für Info Söhne_4 2014-01-22 21:40 - 2014-01-22 21:40 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\Dokumente für Info Söhne_3 2014-01-22 21:32 - 2014-01-22 21:32 - 00000000 ____D () C:\Users\Dieter Wörle\Desktop\TomTom 2014-01-22 21:32 - 2014-01-22 21:31 - 00000000 ____D () C:\Users\Dieter Wörle\Desktop\E-Book Photoshop CS2 Profess Stichwort anklicken 2014-01-22 21:24 - 2014-01-22 21:24 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\AdobeStockPhotos 2014-01-22 21:24 - 2014-01-22 21:24 - 00000000 ____D () C:\Users\Dieter Wörle\Documents\Adobe 2014-01-22 17:56 - 2014-01-22 17:56 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\Apple Computer 2014-01-22 17:56 - 2012-03-20 17:20 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-22 17:42 - 2014-01-22 17:42 - 00002739 _____ () C:\Users\Dieter Wörle\Desktop\TomTom HOME 2.lnk 2014-01-22 17:42 - 2014-01-22 17:42 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\TomTom 2014-01-22 17:42 - 2014-01-22 17:42 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\TomTom 2014-01-22 17:41 - 2014-01-22 17:41 - 00000000 ____D () C:\Program Files (x86)\TomTom International B.V 2014-01-22 17:41 - 2014-01-22 17:41 - 00000000 ____D () C:\Program Files (x86)\TomTom HOME 2 2014-01-22 17:35 - 2011-10-14 18:27 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\Adobe 2014-01-22 17:33 - 2014-01-22 17:33 - 00002021 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-22 17:32 - 2012-03-20 13:58 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-22 17:19 - 2014-01-22 17:19 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\Apple Computer 2014-01-22 17:17 - 2014-01-22 17:17 - 00001847 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk 2014-01-22 17:17 - 2014-01-22 17:17 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-01-22 17:17 - 2014-01-22 17:17 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-01-22 17:16 - 2014-01-22 17:16 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\Apple 2014-01-22 17:16 - 2014-01-22 17:16 - 00000000 ____D () C:\ProgramData\Apple 2014-01-22 17:16 - 2014-01-22 17:16 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-01-22 17:04 - 2014-01-22 17:04 - 00001889 _____ () C:\Users\Dieter Wörle\Desktop\Lidl-Fotos.lnk 2014-01-22 17:04 - 2014-01-22 17:04 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\Lidl_Fotos 2014-01-22 17:03 - 2014-01-22 17:03 - 00000000 ____D () C:\ProgramData\Lidl_Fotos 2014-01-22 04:45 - 2011-10-22 19:50 - 00000000 ____D () C:\Users\Dieter Wörle\Desktop\Google Earth 2014-01-22 04:45 - 2011-10-15 07:36 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Roaming\hpqLog 2014-01-22 01:42 - 2014-01-22 01:42 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-22 01:42 - 2014-01-22 01:42 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-22 01:42 - 2014-01-22 01:42 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-22 01:42 - 2014-01-22 01:42 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-22 01:42 - 2014-01-22 01:42 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-22 01:42 - 2014-01-22 01:42 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-22 01:42 - 2014-01-22 01:42 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-22 01:42 - 2014-01-22 01:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-22 01:42 - 2014-01-22 01:42 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-21 23:52 - 2011-10-14 17:09 - 00000000 ___RD () C:\Users\Dieter Wörle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-21 23:52 - 2011-10-14 17:09 - 00000000 ___RD () C:\Users\Dieter Wörle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-21 23:45 - 2009-07-14 05:45 - 00408008 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-01-21 23:44 - 2012-05-04 21:01 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-21 23:42 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-01-21 23:42 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-01-21 23:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-01-21 23:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-01-21 23:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-01-21 23:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-01-21 23:41 - 2009-07-14 08:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-01-21 23:36 - 2014-01-21 23:36 - 00000134 _____ () C:\Users\Dieter Wörle\Desktop\Internet Explorer Troubleshooting.url 2014-01-21 23:26 - 2014-01-21 23:20 - 00010741 _____ () C:\Windows\IE10_main.log 2014-01-21 23:21 - 2014-01-21 23:21 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-01-21 23:21 - 2014-01-21 23:21 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-01-21 23:11 - 2014-01-21 23:11 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-01-21 23:11 - 2014-01-21 23:11 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-01-21 22:58 - 2014-01-21 22:55 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-21 22:29 - 2012-10-19 20:52 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2013 2014-01-21 22:29 - 2012-08-12 20:25 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-01-21 22:27 - 2011-10-17 14:55 - 00000000 ____D () C:\Users\Dieter Wörle\AppData\Local\Mozilla 2014-01-21 22:26 - 2014-01-21 22:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-01-21 22:26 - 2013-01-12 21:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak 2014-01-21 22:20 - 2014-01-21 22:20 - 00002214 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2014-01-21 22:20 - 2011-10-22 19:49 - 00000000 ____D () C:\Program Files (x86)\Google 2014-01-21 22:13 - 2014-01-21 22:13 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-01-21 22:13 - 2014-01-21 22:13 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-01-21 22:13 - 2014-01-21 22:13 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-01-21 22:13 - 2014-01-21 22:13 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-01-21 22:11 - 2011-10-22 19:49 - 00004118 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-21 22:11 - 2011-10-22 19:49 - 00003866 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-21 22:03 - 2014-01-21 22:03 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-01-21 22:03 - 2014-01-21 22:03 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-01-17 23:41 - 2014-01-22 16:29 - 00050477 _____ () C:\Users\Dieter Wörle\Downloads\Defogger.exe 2014-01-16 01:06 - 2014-01-22 16:29 - 00000247 _____ () C:\Users\Dieter Wörle\Downloads\121214_superbauten2_saeulen_tex.asx 2014-01-16 01:04 - 2014-01-22 16:29 - 00000246 _____ () C:\Users\Dieter Wörle\Downloads\121206_superbauten2_himmel_tex.asx 2014-01-16 01:03 - 2014-01-22 16:29 - 00000248 _____ () C:\Users\Dieter Wörle\Downloads\121221_superbauten2_wahnsinn_tex.asx 2014-01-15 02:18 - 2014-01-22 16:29 - 00000231 _____ () C:\Users\Dieter Wörle\Downloads\121220_oetzi2_inf.asx 2014-01-15 02:17 - 2014-01-22 16:29 - 00000224 _____ () C:\Users\Dieter Wörle\Downloads\120808_kelten6_inf(1).asx 2014-01-15 02:16 - 2014-01-22 16:29 - 00000235 _____ () C:\Users\Dieter Wörle\Downloads\121127_phoenizier_inf(2).asx 2014-01-15 02:16 - 2014-01-22 16:29 - 00000224 _____ () C:\Users\Dieter Wörle\Downloads\120808_kelten1_inf(1).asx 2014-01-15 02:14 - 2014-01-22 16:29 - 00000234 _____ () C:\Users\Dieter Wörle\Downloads\130502_wikinger3_inf(1).asx 2014-01-12 22:25 - 2014-01-22 16:29 - 00000229 _____ () C:\Users\Dieter Wörle\Downloads\121213_blut_inf.asx 2014-01-12 22:24 - 2014-01-22 16:29 - 00000228 _____ () C:\Users\Dieter Wörle\Downloads\081111_friedrich_6_did.asx 2014-01-12 02:24 - 2014-01-22 16:29 - 00000232 _____ () C:\Users\Dieter Wörle\Downloads\101109_6august_zutdufa_did.asx 2014-01-12 02:23 - 2014-01-22 16:29 - 00000230 _____ () C:\Users\Dieter Wörle\Downloads\090109_barbarossa_03_did.asx 2014-01-12 02:23 - 2014-01-22 16:29 - 00000228 _____ () C:\Users\Dieter Wörle\Downloads\090109_heinrich_02_did.asx 2014-01-12 02:22 - 2014-01-22 16:29 - 00000230 _____ () C:\Users\Dieter Wörle\Downloads\101104_karl1_lioudfa_did.asx 2014-01-11 01:54 - 2014-01-22 16:29 - 00000228 _____ () C:\Users\Dieter Wörle\Downloads\120106_hitlerbunker_inf.asx 2014-01-11 01:53 - 2014-01-22 16:29 - 00000236 _____ () C:\Users\Dieter Wörle\Downloads\130409_festungen_inf.asx 2014-01-09 20:17 - 2014-01-22 16:29 - 00000235 _____ () C:\Users\Dieter Wörle\Downloads\121127_phoenizier_inf(1).asx 2014-01-09 20:16 - 2014-01-22 16:29 - 00000235 _____ () C:\Users\Dieter Wörle\Downloads\130403_wikinger_inf.asx 2014-01-09 20:15 - 2014-01-22 16:29 - 00000235 _____ () C:\Users\Dieter Wörle\Downloads\121127_phoenizier_inf.asx 2014-01-09 20:14 - 2014-01-22 16:29 - 00000234 _____ () C:\Users\Dieter Wörle\Downloads\130502_wikinger3_inf.asx 2014-01-09 20:14 - 2014-01-22 16:29 - 00000234 _____ () C:\Users\Dieter Wörle\Downloads\130502_wikinger2_inf.asx 2014-01-09 20:14 - 2014-01-22 16:29 - 00000234 _____ () C:\Users\Dieter Wörle\Downloads\130502_wikinger1_inf.asx 2014-01-09 20:13 - 2014-01-22 16:29 - 00000224 _____ () C:\Users\Dieter Wörle\Downloads\120808_kelten6_inf.asx 2014-01-09 20:13 - 2014-01-22 16:29 - 00000224 _____ () C:\Users\Dieter Wörle\Downloads\120808_kelten1_inf.asx 2014-01-08 23:20 - 2014-01-22 16:29 - 00000245 _____ () C:\Users\Dieter Wörle\Downloads\130321_paradies_in_gefahr_inf(2).asx 2014-01-08 23:19 - 2014-01-22 16:29 - 00000241 _____ () C:\Users\Dieter Wörle\Downloads\130326_heinz_ruehmann_inf.asx 2014-01-08 23:18 - 2014-01-22 16:29 - 00000233 _____ () C:\Users\Dieter Wörle\Downloads\130403_amarna_inf.asx 2014-01-08 23:08 - 2014-01-22 16:29 - 00000230 _____ () C:\Users\Dieter Wörle\Downloads\111128_hitler_frauen_his.asx 2014-01-08 23:08 - 2014-01-22 16:29 - 00000227 _____ () C:\Users\Dieter Wörle\Downloads\111111_hitlergeld_his.asx 2014-01-08 23:07 - 2014-01-22 16:29 - 00000228 _____ () C:\Users\Dieter Wörle\Downloads\111117_himmler_neu_his.asx 2014-01-08 23:06 - 2014-01-22 16:29 - 00000245 _____ () C:\Users\Dieter Wörle\Downloads\130321_paradies_in_gefahr_inf(1).asx 2014-01-06 16:20 - 2011-12-18 11:44 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe Some content of TEMP: ==================== C:\Users\Dieter Wörle\AppData\Local\Temp\avgnt.exe C:\Users\Dieter Wörle\AppData\Local\Temp\Quarantine.exe C:\Users\Dieter Wörle\AppData\Local\Temp\setup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-29 14:52 ==================== End Of Log ============================ |
02.02.2014, 07:43 | #17 |
/// the machine /// TB-Ausbilder | Antivir hat einen beblockten Zugriffsversuch mit "APPL/FirInstaller.B (Cloud)" gemeldet. Java updaten.
__________________Fertig Falls Du Lob oder Kritik loswerden möchtest kannst Du das hier tun Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ |
02.02.2014, 22:05 | #18 |
| Antivir hat einen beblockten Zugriffsversuch mit "APPL/FirInstaller.B (Cloud)" gemeldet. Hallo Schrauber,
__________________mein Sytem läuft wieder in allen Funktionen stabil, und ohne Fehlermeldungen. Ganz, ganz, herzlichen Dank für Deine erfolgreiche Hilfe! Du hast mir sehr geholfen und kannst mich also aus Deinen Abos löschen. Wenn Du einen Weg finden kannst (darfst?) mir Deine Identität zu verraten, würde ich Dir gerne würde ich Dir gerne ein gutes Fläschen aus der Pfalz schicken. Viele Grüße Ladidi |
03.02.2014, 16:57 | #19 |
/// the machine /// TB-Ausbilder | Antivir hat einen beblockten Zugriffsversuch mit "APPL/FirInstaller.B (Cloud)" gemeldet. Passt schon, danke, ich trinke ja eh nix und Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Antivir hat einen beblockten Zugriffsversuch mit "APPL/FirInstaller.B (Cloud)" gemeldet. |
adobe, arbeit, flash player, gen, herunter, hoffe, meldung, notwendig, player, pup.optional.bandoo.a, pup.optional.inbox, pup.optional.installcore.a, pup.optional.softonic, quarantäne, schritt, versuch |