|
Plagegeister aller Art und deren Bekämpfung: Passwidget Plagegeist - wie werde ich diesen wieder los?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
10.02.2014, 17:12 | #1 |
| Passwidget Plagegeist - wie werde ich diesen wieder los? Hallo, seit heute habe ich auf meinem Rechner, Betriebssystem Windows 7 pro, das Problem, dass in meinen Browseren(Mozilla Firefox 27.0 und Internet Explorer 11.0.2) auf unterschiedlichen Websites willkürliche Wörter als Link erscheinen und ständig Popups aufgehen. Die Links werden dann angezeigt als: Ads by Passwidget oder auch jrsdriver (oder so ähnlich) Nun habe ich hier im Forum schon etwas gefunden, und sowohl adwcleaner als auch Malewarebytes heruntergeladen, während meine Antivir Suite noch aktiv war. Der erste Scan ergab folgendes Ergebnis: Für Malewarebytes Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2014.02.10.02 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.16476 Kerstin :: PCTAROX [Administrator] Schutz: Aktiviert 10.02.2014 11:14:57 mbam-log-2014-02-10 (11-14-57).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 451293 Laufzeit: 31 Minute(n), 40 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 2 HKLM\SOFTWARE\Mozilla\Firefox\Extensions\{21EAF666-26B3-4a3c-ABD0-CA2F5A326744} (PUP.Optional.VBates) -> Daten: -> Keine Aktion durchgeführt. HKLM\SOFTWARE\Mozilla\Firefox\Extensions|{21EAF666-26B3-4a3c-ABD0-CA2F5A326744} (PUP.Optional.VBates) -> Daten: C:\Program Files\V-bates\Firefox -> Keine Aktion durchgeführt. Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 3 C:\$Recycle.Bin\S-1-5-21-3873850997-4134086419-739098876-1000\$RDN22V7.exe (PUP.Optional.Vittalia) -> Keine Aktion durchgeführt. C:\Users\Kerstin\AppData\Local\Temp\instloffer.exe (PUP.Optional.Vittalia) -> Keine Aktion durchgeführt. C:\Windows\Tasks\PassWidget Update.job (PUP.Optional.PassWidget.A) -> Keine Aktion durchgeführt. (Ende) für adwcleaner bekam ich folgendes Ergebnis: Code:
ATTFilter # AdwCleaner v3.018 - Bericht erstellt am 10/02/2014 um 10:36:21 # Updated 28/01/2014 von Xplode # Betriebssystem : Windows 7 Professional Service Pack 1 (64 bits) # Benutzername : Kerstin - PCTAROX # Gestartet von : C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\Extension.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B302A1BD-0157-49FA-90F1-4E94F22C7B4B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{1D5A4199-956E-49BC-B89F-6A35C57C0D13} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB} Schlüssel Gelöscht : HKLM\Software\Vittalia ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v27.0 (de) [ Datei : C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\8yswqjke.default\prefs.js ] [ Datei : C:\Users\Sid\AppData\Roaming\Mozilla\Firefox\Profiles\t4oh2icx.default\prefs.js ] ************************* AdwCleaner[R0].txt - [1929 octets] - [10/02/2014 10:33:26] AdwCleaner[S0].txt - [1838 octets] - [10/02/2014 10:36:21] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1898 octets] ########## Allerdings lande ich da stets auf irgendwechen dubiosen Seiten oder Tools, die definitiv nicht zum Entfernen von schädliche Software sind, sondern eher zum Abspielen von Musik, z. Bsp i-Mesh, die nächste Datei nennt sich einfach setup, ohne irgendwelchen Zusatz, und lässt mich so daran zweifeln, dass ich wirklich den richtigen Scanner heruntergeladen habe. Kann mir jemand bei meinem Problem helfen? Viele Grüße sendet Kerstin |
10.02.2014, 17:37 | #2 |
/// the machine /// TB-Ausbilder | Passwidget Plagegeist - wie werde ich diesen wieder los? Hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Du musst bei Filepony auf den Schriftzug Download FRST.exe klicken, nicht auf die fetten Download Buttons unten drunter.
__________________ |
10.02.2014, 19:12 | #3 |
| Passwidget Plagegeist - wie werde ich diesen wieder los? Danke für die Rückmeldung.
__________________Der Tip mit dem Schriftzug hat gefehlt *ggg Hier ist die FRST. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 Ran by Kerstin (administrator) on PCTAROX on 10-02-2014 18:33:56 Running from C:\Users\Kerstin\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (DATA BECKER GmbH & Co KG) C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe () C:\Program Files (x86)\Pass-Widget\PassWidget153.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe (NComputing Inc.) C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE () C:\Program Files (x86)\Pass-Widget\PassWidget_wd.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCTRAY.EXE (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\system32\LogonUI.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7204568 2013-11-04] (Realtek Semiconductor) HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2747680 2013-12-19] () HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-05-15] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-08-15] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [CLMLServer_For_P2G8] - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491632 2012-09-26] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1778640 2013-12-20] (APN) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) ==================== Internet (Whitelisted) ==================== ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: http=127.0.0.1:13828 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localoem.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://localoem.msn.com SearchScopes: HKLM - DefaultScope {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM-x32 - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\xxbekle1.default FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @protectdisc.com/NPPDLicenseHelper - C:\Users\Kerstin\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll ( ) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{21EAF666-26B3-4a3c-ABD0-CA2F5A326744}] - C:\Program Files\V-bates\Firefox ==================== Services (Whitelisted) ================= R2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [908856 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-29] () R2 DBService; C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe [189776 2010-10-28] (DATA BECKER GmbH & Co KG) R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2012-11-01] (Firebird Project) R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2012-11-01] (Firebird Project) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [54976 2013-09-24] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-15] (Intel Corporation) R2 NCBootSrv; C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE [556888 2013-01-30] (NComputing Inc.) R2 NCWTService; C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe [1938632 2013-01-30] (NComputing, Inc.) R2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) R2 PassWidget; C:\Program Files (x86)\Pass-Widget\PassWidget153.exe [180736 2014-02-07] () ==================== Drivers (Whitelisted) ==================== S3 3wareDrv; C:\Windows\system32\drivers\3wareDrv.sys [102400 2009-08-31] (AMCC) S3 adp3132; C:\Windows\system32\drivers\adp3132.sys [385072 2010-01-28] (Adaptec, Inc.) S3 asahci64; C:\Windows\system32\drivers\asahci64.sys [36448 2011-03-23] (Asmedia Technology) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2012-05-07] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG) R1 HpVcard; C:\Windows\System32\drivers\hpvcard.sys [24776 2013-01-30] (NComputing, Inc.) R1 hstd; C:\Windows\System32\drivers\hstd.sys [89800 2013-01-30] (NComputing, Inc.) R3 htsatran; C:\Windows\System32\DRIVERS\htsatran.sys [181448 2013-01-30] (NComputing, Inc.) R3 HtsBusEnum; C:\Windows\System32\DRIVERS\HtsBus.sys [45768 2013-01-30] (NComputing, Inc.) R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28656 2013-03-18] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [636184 2011-12-06] (Intel Corporation) S3 megasas2; C:\Windows\system32\drivers\megasas2.sys [52048 2012-11-07] (LSI Corporation) S3 MegaSR1; C:\Windows\system32\drivers\MegaSR1.sys [521512 2011-07-28] (LSI Corporation, Inc.) S3 MTsensor; C:\Windows\system32\drivers\ASACPI.sys [15416 2009-07-16] () R3 ncehci; C:\Windows\System32\DRIVERS\ncehci.sys [66248 2013-01-30] (NComputing, Inc.) R3 NcFsFltr; C:\Windows\System32\DRIVERS\NcFsFltr.sys [22216 2013-01-30] (NComputing, Inc.) R1 NcPciVga; C:\Windows\System32\drivers\NcWpsMs.sys [140488 2013-01-30] (NComputing, Inc.) S4 NcStore; C:\Windows\System32\drivers\NCStore.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbKeyboard; C:\Windows\System32\drivers\NcKbdCls.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbMouse; C:\Windows\System32\drivers\NcMouCls.sys [39624 2013-01-30] (NComputing, Inc.) S3 ocz10xx; C:\Windows\system32\drivers\ocz10xx.sys [137520 2011-07-08] (OCZ Technology Group, Inc.) R1 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\C:\oa3\asus\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-10 18:33 - 2014-02-10 18:34 - 00015267 _____ () C:\Users\Kerstin\Desktop\FRST.txt 2014-02-10 18:33 - 2014-02-10 18:33 - 00000000 ____D () C:\FRST 2014-02-10 18:32 - 2014-02-10 18:32 - 02150400 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST64.exe 2014-02-10 18:30 - 2014-02-10 18:30 - 01139200 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST.exe 2014-02-10 16:40 - 2014-02-10 16:40 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-10 15:53 - 2014-02-10 15:53 - 00000000 ____D () C:\Program Files (x86)\iMesh Applications 2014-02-10 14:43 - 2014-02-10 14:43 - 01166132 _____ () C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Malwarebytes 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-10 11:10 - 2014-02-10 11:11 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Kerstin\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-10 10:32 - 2014-02-10 14:45 - 00000000 ____D () C:\AdwCleaner 2014-02-10 10:32 - 2014-02-10 10:32 - 01166132 _____ () C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe 2014-02-07 19:00 - 2014-02-10 18:27 - 00000384 _____ () C:\Windows\Tasks\PassWidget_wd.job 2014-02-07 19:00 - 2014-02-07 19:00 - 00002976 _____ () C:\Windows\System32\Tasks\PassWidget_wd 2014-02-07 19:00 - 2014-02-07 19:00 - 00000000 ____D () C:\Program Files (x86)\Pass-Widget 2014-02-07 17:54 - 2014-02-07 17:54 - 00000713 _____ () C:\Users\Sid\Desktop\Sid_Arbeitsplatz.lnk 2014-02-07 10:21 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Kerstin\Desktop\Amazon.lnk 2014-02-06 10:51 - 2014-02-06 10:51 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Avira 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-02-06 10:47 - 2014-02-06 10:47 - 00002073 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\ProgramData\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-06 10:47 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-02-06 10:47 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-02-06 10:47 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-06 10:47 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-02-06 10:40 - 2014-02-06 10:40 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-02-06 09:49 - 2014-02-06 09:50 - 140300048 _____ () C:\Users\Kerstin\Downloads\avira_antivirus_suite_de.exe 2014-02-06 09:26 - 2014-02-06 09:26 - 02482750 _____ () C:\Users\Kerstin\Downloads\_Angebot 2014-02-06 09:25 - 2014-02-06 09:25 - 01409527 _____ () C:\Users\Kerstin\Downloads\chalet werbung Dez. 13.zip 2014-02-06 09:10 - 2014-02-06 09:10 - 02499632 _____ () C:\Users\Kerstin\Downloads\Outlook.zip 2014-02-06 09:05 - 2014-02-06 09:05 - 02148771 _____ () C:\Users\Kerstin\Downloads\WG chalet kitzbichl anfr. hr. weichselbaumer.zip 2014-02-05 13:09 - 2014-02-05 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 08:13 - 2014-02-02 21:19 - 00001367 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (1).lnk 2014-02-04 12:58 - 2014-02-04 12:58 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Microsoft Help 2014-02-04 08:33 - 2014-02-04 08:33 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00001790 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iTunes 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iPod 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-04 08:28 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\ProgramData\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-02-04 08:11 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Kerstin\Desktop\2013_04_Drachensilber_SCHWEIZ_brielabel.lbx 2014-02-04 08:04 - 2014-02-04 08:05 - 148904784 _____ (Apple Inc.) C:\Users\Kerstin\Downloads\iTunes64Setup.exe 2014-02-03 13:11 - 2014-02-03 13:11 - 00000000 ____D () C:\Users\Kerstin\Documents\Dokumente 2014-02-03 10:13 - 2014-02-03 10:13 - 00000000 ____D () C:\Users\Sid\AppData\Local\Okidata 2014-02-03 10:11 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Sid\Desktop\Amazon_Bewertung.lnk 2014-02-03 10:09 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Sid\Desktop\Schnittstellen.lnk 2014-02-03 10:07 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Sid\Desktop\KommServer.lnk 2014-02-03 09:06 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Kerstin\Desktop\Schnittstelle.lnk 2014-02-03 07:06 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Kerstin\Desktop\KommNikServerMdbConnector - Verknüpfung.lnk 2014-02-03 07:03 - 2014-02-03 07:03 - 00001573 _____ () C:\Users\Sid\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-02-02 21:10 - 2013-05-31 09:48 - 00000611 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (2).lnk 2014-02-02 21:10 - 2013-03-05 11:58 - 00000529 _____ () C:\Users\Kerstin\Desktop\Ware bestellen.lnk 2014-02-02 21:09 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Kerstin\Desktop\Merkliste.lnk 2014-02-02 21:05 - 2014-01-14 18:09 - 00000607 _____ () C:\Users\Sid\Desktop\2014_Rechnungen.lnk 2014-02-02 21:04 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Sid\Desktop\Merkliste.lnk 2014-02-02 21:02 - 2014-02-03 09:43 - 00001315 _____ () C:\Users\Sid\Desktop\2014_Einnahmen.lnk 2014-02-02 20:58 - 2014-02-02 20:58 - 00000000 ____D () C:\Users\Sid\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-02 12:49 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Local\Adobe 2014-02-02 12:33 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Sid\Desktop\SCHWEIZ + NN Label.lbx 2014-02-02 12:28 - 2014-01-30 13:14 - 00000813 _____ () C:\Users\Sid\Desktop\DE_Label.lnk 2014-02-02 12:25 - 2014-02-02 12:25 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Brother 2014-02-01 23:50 - 2014-02-02 12:21 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Thunderbird 2014-02-01 23:50 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Local\Thunderbird 2014-02-01 22:32 - 2014-02-01 22:33 - 126829760 _____ (DATA BECKER ) C:\Users\Kerstin\Downloads\ws2d8_8s_sp5.exe 2014-02-01 19:37 - 2014-02-10 11:57 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Mozilla 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Local\Mozilla 2014-02-01 18:52 - 2014-02-06 08:57 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\ProtectDISC 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\Documents\web to date Projekte 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Local\DATA BECKER 2014-02-01 18:46 - 2014-02-01 18:46 - 00136208 _____ () C:\Users\Sid\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-01 18:44 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Adobe 2014-02-01 18:44 - 2014-02-01 18:44 - 00001421 _____ () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Vorlagen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Startmenü 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Netzwerkumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Lokale Einstellungen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Eigene Dateien 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Druckumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Musik 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Bilder 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Verlauf 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Power2Go8 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Packages 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid 2014-02-01 18:44 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Sid\ntuser.ini 2014-02-01 18:44 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-02-01 18:44 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-02-01 18:42 - 2014-02-04 16:30 - 00000000 ____D () C:\Users\Kerstin\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\Windows Multipoint Server 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\NComputing 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\DIFX 2014-02-01 18:01 - 2014-02-01 18:01 - 00003442 _____ () C:\Windows\System32\Tasks\{44808670-A833-4543-A834-80458BA98216} 2014-01-31 12:33 - 2014-02-10 18:28 - 00005140 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox 2014-01-31 12:26 - 2014-01-31 12:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-31 12:25 - 2014-02-01 19:23 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-01-31 12:24 - 2014-01-31 12:24 - 00575168 _____ (Microsoft Corporation) C:\Users\Kerstin\Downloads\Setup.X86.de-de_O365SmallBusPremRetail_70a0572d-295c-43ae-b690-afa0e6a0acc5_TX_PR_.exe 2014-01-31 10:05 - 2014-02-10 17:55 - 00000000 ____D () C:\ProgramData\firebird 2014-01-31 10:01 - 2014-01-31 10:04 - 00000000 ____D () C:\Program Files (x86)\Amicron-Faktura 11.0 2014-01-31 10:01 - 2014-01-31 10:01 - 00001093 _____ () C:\Users\Public\Desktop\Amicron-Faktura 11.0.lnk 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Users\Public\Documents\Amicron-Data 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Firebird 2014-01-31 10:01 - 2012-11-01 12:01 - 00462848 _____ (IBPhoenix) C:\Windows\SysWOW64\Firebird2Control.cpl 2014-01-31 10:01 - 2012-11-01 11:59 - 00552960 _____ (Firebird Project) C:\Windows\SysWOW64\GDS32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00200704 _____ (DATEV eG Nürnberg) C:\Windows\SysWOW64\SELF32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00020864 _____ () C:\Windows\SysWOW64\SELF32.TBL 2014-01-31 10:01 - 2003-04-01 07:00 - 00015156 _____ () C:\Windows\SysWOW64\SELF32.INI 2014-01-31 09:38 - 2014-01-31 09:39 - 90367905 _____ () C:\Users\Kerstin\Downloads\AF11-Setup.exe 2014-01-30 15:39 - 2014-01-30 17:20 - 00004096 _____ () C:\Users\Public\Documents\00002B92.LCS 2014-01-30 15:38 - 2014-02-03 07:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\ProtectDisc 2014-01-30 15:38 - 2014-01-30 15:38 - 00002215 _____ () C:\Users\Public\Desktop\shop to date 8 pro.lnk 2014-01-30 15:37 - 2006-07-01 03:25 - 00151552 _____ (Info-ZIP) C:\Windows\SysWOW64\w2dzip32.dll 2014-01-30 15:35 - 2014-02-05 16:51 - 00000000 ____D () C:\Program Files (x86)\DATA BECKER 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\web to date Projekte 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\Erzeugte Websites 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\DATA BECKER 2014-01-30 15:35 - 2004-03-09 16:45 - 00132880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00260880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx 2014-01-30 15:35 - 2003-07-14 14:22 - 00132360 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00144640 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00132344 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00279800 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00148736 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.ocx 2014-01-30 15:35 - 2003-03-22 11:50 - 00173304 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MimeX.dll 2014-01-30 15:35 - 2002-11-21 13:38 - 00099576 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MabryObj.dll 2014-01-30 15:35 - 2002-10-07 11:42 - 00152824 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.dll 2014-01-30 15:35 - 2002-01-23 08:27 - 00628736 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltocx12n.ocx 2014-01-30 15:35 - 2002-01-23 08:19 - 00328704 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfcmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:18 - 00035328 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfgif12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00751616 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltann12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00207872 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltefx12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00164864 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltimg12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00035840 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lttwn12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00030720 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfbmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00406016 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltkrn12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00259072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltdis12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00131072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltfil12n.DLL 2014-01-30 15:35 - 2001-07-17 07:02 - 00446464 _____ () C:\Windows\SysWOW64\Tx32.dll 2014-01-30 15:35 - 2001-07-17 00:19 - 00290816 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\Tx4ole.ocx 2014-01-30 15:35 - 2001-07-05 00:41 - 00135168 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_htm32.dll 2014-01-30 15:35 - 2001-06-27 02:10 - 00131072 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_rtf32.dll 2014-01-30 15:35 - 2000-12-13 01:41 - 00323584 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_word.dll 2014-01-30 15:35 - 2000-12-13 01:12 - 00327680 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txobj32.dll 2014-01-30 15:35 - 2000-10-16 02:43 - 00045056 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_tif32.flt 2014-01-30 15:35 - 2000-10-16 01:32 - 00061440 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\wndtls32.dll 2014-01-30 15:35 - 2000-10-16 01:25 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_bmp32.flt 2014-01-30 15:35 - 2000-10-16 01:12 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_wmf32.flt 2014-01-30 15:35 - 2000-10-12 01:50 - 00081920 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txtls32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00069632 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\ic32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00000151 _____ () C:\Windows\SysWOW64\ic32.ini 2014-01-30 15:35 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb6de.dll 2014-01-30 15:35 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-01-30 15:35 - 2000-05-21 23:00 - 00647872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx 2014-01-30 15:35 - 1999-09-28 20:42 - 01050896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet35.dll 2014-01-30 15:35 - 1999-08-25 13:57 - 00415504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl35.dll 2014-01-30 15:35 - 1999-03-26 02:00 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscmcde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscc2de.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\flxgdde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdlgde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetde.dll 2014-01-30 15:35 - 1998-06-17 23:00 - 00089360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb5db.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00252176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00148240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00024848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter35.dll 2014-01-30 15:21 - 2014-01-30 15:22 - 454279096 _____ (DATA BECKER GmbH & Co. KG ) C:\Users\Kerstin\Downloads\s2d8pro_r1.exe 2014-01-30 12:57 - 2014-02-10 09:59 - 00000729 _____ () C:\Users\Kerstin\Desktop\DE_Label.lnk 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\Documents\Eigene Etiketten 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Brother 2014-01-30 12:13 - 2014-01-30 12:15 - 00000000 ____D () C:\Program Files\Brother_P-touch 2014-01-30 12:11 - 2014-01-30 12:11 - 01601536 _____ () C:\Users\Kerstin\Downloads\qd560w550avt64ger.exe 2014-01-30 12:03 - 2014-01-30 12:03 - 00001878 _____ () C:\Users\Public\Desktop\P-touch Editor 5.1.lnk 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-01-30 11:57 - 2014-01-30 11:57 - 50049648 _____ (Brother Industries, Ltd. ) C:\Users\Kerstin\Downloads\pew51005ager.exe 2014-01-30 11:39 - 2014-01-30 11:39 - 00002093 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2014-01-30 10:55 - 2014-02-05 11:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Thunderbird 2014-01-30 10:55 - 2014-01-30 11:33 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Thunderbird 2014-01-30 10:54 - 2014-01-30 10:54 - 21981704 _____ (Mozilla) C:\Users\Kerstin\Downloads\Thunderbird Setup 24.2.0.exe 2014-01-30 09:22 - 2014-01-30 09:22 - 00001629 _____ () C:\Users\Kerstin\Desktop\FileZilla.lnk 2014-01-30 09:20 - 2014-02-04 14:54 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\FileZilla 2014-01-30 09:18 - 2014-01-30 09:19 - 00000000 ____D () C:\Program Files\Filezilla 2014-01-30 09:16 - 2014-01-30 09:16 - 07241860 _____ () C:\Users\Kerstin\Downloads\FileZilla_3.7.3_win32.zip 2014-01-30 08:47 - 2014-01-30 11:48 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\SuperMailer 2014-01-30 08:47 - 2014-01-30 11:47 - 00000000 ____D () C:\Program Files\SuperMailer 2014-01-30 08:47 - 2014-01-30 08:47 - 00000804 _____ () C:\Users\Kerstin\Desktop\SuperMailer.lnk 2014-01-30 08:44 - 2014-01-30 08:44 - 28054257 _____ () C:\Users\Kerstin\Downloads\smsw_x64.zip 2014-01-29 18:08 - 2014-01-29 18:08 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Okidata 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Adobe 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Program Files\Okidata 2014-01-29 17:59 - 2013-02-05 08:58 - 00000104 _____ () C:\Windows\system32\opnetext.ver 2014-01-29 17:59 - 2013-02-04 16:00 - 00003894 _____ () C:\Windows\system32\opnedef.str 2014-01-29 17:59 - 2013-01-29 18:39 - 00130048 ____N (Oki Data Corporation) C:\Windows\system32\opnetext.dll 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\SysWOW64\opnetext.hlp 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\system32\OPNETEXT.HLP 2014-01-29 17:59 - 2013-01-29 10:03 - 00005832 ____N () C:\Windows\system32\license.txt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\SysWOW64\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\system32\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\SysWOW64\opnetext.gid 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\system32\OPNETEXT.GID 2014-01-29 17:58 - 2014-01-29 17:58 - 00000000 ____D () C:\ProgramData\Okidata 2014-01-29 17:54 - 2014-01-29 17:54 - 00000000 ____D () C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105 2014-01-29 17:54 - 2009-06-25 11:00 - 00027648 _____ (Oki Data Corporation) C:\Windows\system32\OKLMON64.DLL 2014-01-29 17:52 - 2014-01-29 17:53 - 07757512 _____ (Oki Data Corporation) C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105.exe 2014-01-29 17:31 - 2014-02-01 18:59 - 00000000 ____D () C:\Program Files (x86)\Password Keeper 2001 2014-01-29 17:31 - 2014-01-29 17:31 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Keeper 2001 2014-01-29 17:29 - 2014-01-29 17:29 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-01-29 16:55 - 2014-01-29 16:55 - 00001573 _____ () C:\Users\Kerstin\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-01-29 16:36 - 2014-01-29 16:36 - 00000000 ____D () C:\ProgramData\APN 2014-01-29 16:32 - 2014-01-29 16:32 - 129598176 _____ () C:\Users\Kerstin\Downloads\avira_free344_antivirus_de.exe 2014-01-29 16:29 - 2014-02-10 16:34 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Mozilla 2014-01-29 16:29 - 2014-01-29 16:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Mozilla 2014-01-29 16:29 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-29 13:59 - 2014-01-31 13:02 - 00135328 _____ () C:\Users\Kerstin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-29 13:57 - 2014-02-04 11:39 - 00000000 ____D () C:\Users\Kerstin 2014-01-29 13:57 - 2014-01-31 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\VirtualStore 2014-01-29 13:57 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Adobe 2014-01-29 13:57 - 2014-01-29 13:57 - 00001421 _____ () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Vorlagen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Startmenü 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Netzwerkumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Lokale Einstellungen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Eigene Dateien 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Druckumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Musik 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Bilder 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Verlauf 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Power2Go8 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Packages 2014-01-29 13:57 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Kerstin\ntuser.ini 2014-01-29 13:57 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-29 13:57 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-29 13:56 - 2014-02-10 18:31 - 00366149 _____ () C:\Windows\WindowsUpdate.log 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 __SHD () C:\Recovery 2014-01-22 19:22 - 2014-02-10 18:27 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-01-22 19:22 - 2013-12-19 21:33 - 02498848 _____ (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe 2014-01-22 19:22 - 2013-12-19 21:33 - 00004084 _____ () C:\Windows\system32\nvPerfProvider.man 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:21 - 00000000 ____D () C:\Users\Public\CyberLink 2014-01-22 19:21 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvir3dgenco6420172.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00451872 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00357152 _____ () C:\Windows\system32\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00314656 _____ () C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00023754 _____ () C:\Windows\system32\nvinfo.pb 2014-01-22 19:21 - 2013-12-19 19:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-01-22 19:21 - 2013-12-19 19:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-01-22 19:21 - 2013-12-19 06:01 - 03539040 _____ () C:\Windows\system32\nvcoproc.bin 2014-01-22 19:21 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-22 19:21 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-22 19:21 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-01-22 13:45 - 2014-01-22 13:45 - 00098489 _____ () C:\TN1388179.MHT 2014-01-17 16:04 - 2014-01-17 16:04 - 00002043 _____ () C:\Users\Public\Desktop\CyberLink Media Suite 10.lnk 2014-01-17 16:03 - 2014-01-17 16:04 - 00000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-01-17 16:02 - 2014-01-17 16:04 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-17 16:02 - 2014-01-17 16:03 - 00000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2014-01-17 16:02 - 2014-01-17 16:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-01-17 16:01 - 2014-01-17 16:06 - 00000000 ____D () C:\ProgramData\CyberLink 2014-01-17 16:01 - 2014-01-17 16:03 - 00000000 ____D () C:\ProgramData\install_clap 2014-01-17 16:01 - 2014-01-17 16:02 - 00000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-01-17 16:01 - 2014-01-17 16:02 - 00000000 ____D () C:\ProgramData\CLSK 2014-01-17 09:02 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-01-17 09:02 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-01-17 09:02 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-01-17 09:02 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-01-17 09:02 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-01-17 09:02 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-01-17 09:02 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-01-17 09:02 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-01-17 09:02 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-01-17 09:02 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-01-17 09:02 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-01-17 09:02 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-01-17 09:02 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-01-17 09:02 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-17 08:48 - 2014-01-17 08:51 - 00009844 _____ () C:\Windows\IE11_main.log 2014-01-17 08:43 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-17 08:43 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-17 08:43 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-17 08:36 - 2014-01-17 08:36 - 00017840 _____ () C:\Windows\system32\results.xml 2014-01-17 08:34 - 2014-01-29 14:06 - 00000000 ____D () C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2014-01-17 08:34 - 2014-01-17 08:34 - 00001343 _____ () C:\Users\Public\Desktop\Intel(R) Small Business Advantage.lnk 2014-01-17 08:33 - 2014-01-17 08:33 - 00002026 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-17 08:32 - 2014-02-01 17:44 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-17 08:32 - 2014-01-17 16:04 - 00000000 ____D () C:\Windows\tmp 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-17 08:32 - 2013-10-07 14:52 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-01-17 08:32 - 2013-10-07 14:52 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-01-17 08:32 - 2013-08-15 13:34 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2014-01-17 08:31 - 2013-05-15 18:09 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-01-17 08:30 - 2014-01-17 08:36 - 00000000 ____D () C:\ProgramData\Intel 2014-01-17 08:30 - 2014-01-17 08:33 - 00000000 ____D () C:\Program Files\Intel 2014-01-17 08:29 - 2014-01-17 08:34 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files\Realtek 2014-01-17 08:29 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-17 08:29 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-17 08:29 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-17 08:29 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-17 08:29 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-17 08:29 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-17 08:29 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-17 08:29 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-17 08:29 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-17 08:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-17 08:29 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-17 08:29 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-17 08:29 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-17 08:28 - 2014-01-29 17:59 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-17 08:28 - 2014-01-17 08:28 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-17 08:28 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-17 08:28 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-17 08:28 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-17 08:28 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-17 08:28 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-17 08:28 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-17 08:28 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-17 08:28 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-17 08:28 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-17 08:28 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-17 08:28 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-17 08:28 - 2013-09-13 18:44 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-17 08:28 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-17 08:28 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-17 08:28 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-17 08:28 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-17 08:28 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-17 08:28 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-17 08:28 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-17 08:28 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-17 08:28 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-17 08:28 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-17 08:28 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-17 08:28 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-01-16 18:09 - 2012-05-07 17:04 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2014-01-16 18:09 - 2012-05-07 17:04 - 00013440 _____ () C:\Windows\SysWOW64\Drivers\AsIO.sys 2014-01-16 17:07 - 2014-01-16 17:07 - 00000000 ____D () C:\ProgramData\LSI 2014-01-16 17:04 - 2014-01-16 17:04 - 00000000 ____D () C:\Program Files\ASUS 2014-01-16 17:03 - 2014-01-16 18:09 - 00000000 ____D () C:\Windows\CSC 2014-01-16 17:03 - 2009-06-10 21:30 - 00053551 _____ () C:\Windows\Professional.xml ==================== One Month Modified Files and Folders ======= 2014-02-10 18:34 - 2014-02-10 18:33 - 00015267 _____ () C:\Users\Kerstin\Desktop\FRST.txt 2014-02-10 18:33 - 2014-02-10 18:33 - 00000000 ____D () C:\FRST 2014-02-10 18:32 - 2014-02-10 18:32 - 02150400 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST64.exe 2014-02-10 18:32 - 2010-11-21 07:50 - 00699416 _____ () C:\Windows \system32\perfh007.dat 2014-02-10 18:32 - 2010-11-21 07:50 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-10 18:32 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-10 18:31 - 2014-01-29 13:56 - 00366149 _____ () C:\Windows\WindowsUpdate.log 2014-02-10 18:30 - 2014-02-10 18:30 - 01139200 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST.exe 2014-02-10 18:28 - 2014-01-31 12:33 - 00005140 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox 2014-02-10 18:27 - 2014-02-07 19:00 - 00000384 _____ () C:\Windows\Tasks\PassWidget_wd.job 2014-02-10 18:27 - 2014-01-22 19:22 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-10 18:27 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-10 18:27 - 2009-07-14 05:51 - 00054624 _____ () C:\Windows\setupact.log 2014-02-10 17:55 - 2014-01-31 10:05 - 00000000 ____D () C:\ProgramData\firebird 2014-02-10 16:41 - 2009-07-14 05:45 - 00042096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-10 16:41 - 2009-07-14 05:45 - 00042096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-10 16:40 - 2014-02-10 16:40 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-10 16:34 - 2014-01-29 16:29 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Mozilla 2014-02-10 16:33 - 2010-11-21 04:47 - 00342252 _____ () C:\Windows\PFRO.log 2014-02-10 15:53 - 2014-02-10 15:53 - 00000000 ____D () C:\Program Files (x86)\iMesh Applications 2014-02-10 14:45 - 2014-02-10 10:32 - 00000000 ____D () C:\AdwCleaner 2014-02-10 14:43 - 2014-02-10 14:43 - 01166132 _____ () C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe 2014-02-10 11:57 - 2014-02-01 19:37 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Malwarebytes 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-10 11:11 - 2014-02-10 11:10 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Kerstin\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-10 10:32 - 2014-02-10 10:32 - 01166132 _____ () C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe 2014-02-10 09:59 - 2014-01-30 12:57 - 00000729 _____ () C:\Users\Kerstin\Desktop\DE_Label.lnk 2014-02-07 19:00 - 2014-02-07 19:00 - 00002976 _____ () C:\Windows\System32\Tasks\PassWidget_wd 2014-02-07 19:00 - 2014-02-07 19:00 - 00000000 ____D () C:\Program Files (x86)\Pass-Widget 2014-02-07 17:54 - 2014-02-07 17:54 - 00000713 _____ () C:\Users\Sid\Desktop\Sid_Arbeitsplatz.lnk 2014-02-06 10:51 - 2014-02-06 10:51 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Avira 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-02-06 10:47 - 2014-02-06 10:47 - 00002073 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\ProgramData\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-06 10:40 - 2014-02-06 10:40 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-02-06 09:50 - 2014-02-06 09:49 - 140300048 _____ () C:\Users\Kerstin\Downloads\avira_antivirus_suite_de.exe 2014-02-06 09:26 - 2014-02-06 09:26 - 02482750 _____ () C:\Users\Kerstin\Downloads\_Angebot 2014-02-06 09:25 - 2014-02-06 09:25 - 01409527 _____ () C:\Users\Kerstin\Downloads\chalet werbung Dez. 13.zip 2014-02-06 09:10 - 2014-02-06 09:10 - 02499632 _____ () C:\Users\Kerstin\Downloads\Outlook.zip 2014-02-06 09:05 - 2014-02-06 09:05 - 02148771 _____ () C:\Users\Kerstin\Downloads\WG chalet kitzbichl anfr. hr. weichselbaumer.zip 2014-02-06 08:57 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\ProtectDISC 2014-02-05 16:51 - 2014-01-30 15:35 - 00000000 ____D () C:\Program Files (x86)\DATA BECKER 2014-02-05 13:45 - 2014-02-05 13:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 11:59 - 2014-01-30 10:55 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Thunderbird 2014-02-04 16:30 - 2014-02-01 18:42 - 00000000 ____D () C:\Users\Kerstin\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-04 14:54 - 2014-01-30 09:20 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\FileZilla 2014-02-04 12:58 - 2014-02-04 12:58 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Microsoft Help 2014-02-04 11:39 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin 2014-02-04 09:21 - 2009-07-14 03:34 - 00000447 _____ () C:\Windows\win.ini 2014-02-04 08:35 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Apple Computer 2014-02-04 08:33 - 2014-02-04 08:33 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00001790 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iTunes 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iPod 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\ProgramData\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-02-04 08:05 - 2014-02-04 08:04 - 148904784 _____ (Apple Inc.) C:\Users\Kerstin\Downloads\iTunes64Setup.exe 2014-02-03 13:11 - 2014-02-03 13:11 - 00000000 ____D () C:\Users\Kerstin\Documents\Dokumente 2014-02-03 10:13 - 2014-02-03 10:13 - 00000000 ____D () C:\Users\Sid\AppData\Local\Okidata 2014-02-03 09:43 - 2014-02-02 21:02 - 00001315 _____ () C:\Users\Sid\Desktop\2014_Einnahmen.lnk 2014-02-03 09:06 - 2014-02-03 10:09 - 00001461 _____ () C:\Users\Sid\Desktop\Schnittstellen.lnk 2014-02-03 09:06 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Kerstin\Desktop\Schnittstelle.lnk 2014-02-03 07:30 - 2014-01-30 15:38 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\ProtectDisc 2014-02-03 07:06 - 2014-02-03 10:07 - 00001255 _____ () C:\Users\Sid\Desktop\KommServer.lnk 2014-02-03 07:06 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Kerstin\Desktop\KommNikServerMdbConnector - Verknüpfung.lnk 2014-02-03 07:03 - 2014-02-03 07:03 - 00001573 _____ () C:\Users\Sid\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-02-02 21:19 - 2014-02-05 08:13 - 00001367 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (1).lnk 2014-02-02 20:58 - 2014-02-02 20:58 - 00000000 ____D () C:\Users\Sid\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-02 12:49 - 2014-02-04 08:11 - 00002228 _____ () C:\Users\Kerstin\Desktop\2013_04_Drachensilber_SCHWEIZ_brielabel.lbx 2014-02-02 12:49 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Local\Adobe 2014-02-02 12:49 - 2014-02-02 12:33 - 00002228 _____ () C:\Users\Sid\Desktop\SCHWEIZ + NN Label.lbx 2014-02-02 12:49 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Adobe 2014-02-02 12:25 - 2014-02-02 12:25 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Brother 2014-02-02 12:21 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Thunderbird 2014-02-01 23:50 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Local\Thunderbird 2014-02-01 22:33 - 2014-02-01 22:32 - 126829760 _____ (DATA BECKER ) C:\Users\Kerstin\Downloads\ws2d8_8s_sp5.exe 2014-02-01 19:23 - 2014-01-31 12:25 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Mozilla 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Local\Mozilla 2014-02-01 18:59 - 2014-01-29 17:31 - 00000000 ____D () C:\Program Files (x86)\Password Keeper 2001 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\Documents\web to date Projekte 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Local\DATA BECKER 2014-02-01 18:46 - 2014-02-01 18:46 - 00136208 _____ () C:\Users\Sid\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-01 18:44 - 2014-02-01 18:44 - 00001421 _____ () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Vorlagen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Startmenü 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Netzwerkumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Lokale Einstellungen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Eigene Dateien 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Druckumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Musik 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Bilder 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Verlauf 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Power2Go8 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Packages 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\Windows Multipoint Server 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\NComputing 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\DIFX 2014-02-01 18:10 - 2009-07-14 05:45 - 00524344 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-01 18:01 - 2014-02-01 18:01 - 00003442 _____ () C:\Windows\System32\Tasks\{44808670-A833-4543-A834-80458BA98216} 2014-02-01 17:44 - 2014-01-17 08:32 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-31 13:02 - 2014-01-29 13:59 - 00135328 _____ () C:\Users\Kerstin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-31 12:26 - 2014-01-31 12:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-31 12:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-01-31 12:25 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\VirtualStore 2014-01-31 12:24 - 2014-01-31 12:24 - 00575168 _____ (Microsoft Corporation) C:\Users\Kerstin\Downloads\Setup.X86.de-de_O365SmallBusPremRetail_70a0572d-295c-43ae-b690-afa0e6a0acc5_TX_PR_.exe 2014-01-31 10:04 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Amicron-Faktura 11.0 2014-01-31 10:01 - 2014-01-31 10:01 - 00001093 _____ () C:\Users\Public\Desktop\Amicron-Faktura 11.0.lnk 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Users\Public\Documents\Amicron-Data 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Firebird 2014-01-31 09:39 - 2014-01-31 09:38 - 90367905 _____ () C:\Users\Kerstin\Downloads\AF11-Setup.exe 2014-01-30 17:20 - 2014-01-30 15:39 - 00004096 _____ () C:\Users\Public\Documents\00002B92.LCS 2014-01-30 15:38 - 2014-01-30 15:38 - 00002215 _____ () C:\Users\Public\Desktop\shop to date 8 pro.lnk 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\web to date Projekte 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\Erzeugte Websites 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\DATA BECKER 2014-01-30 15:22 - 2014-01-30 15:21 - 454279096 _____ (DATA BECKER GmbH & Co. KG ) C:\Users\Kerstin\Downloads\s2d8pro_r1.exe 2014-01-30 13:14 - 2014-02-02 12:28 - 00000813 _____ () C:\Users\Sid\Desktop\DE_Label.lnk 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\Documents\Eigene Etiketten 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Brother 2014-01-30 12:15 - 2014-01-30 12:13 - 00000000 ____D () C:\Program Files\Brother_P-touch 2014-01-30 12:11 - 2014-01-30 12:11 - 01601536 _____ () C:\Users\Kerstin\Downloads\qd560w550avt64ger.exe 2014-01-30 12:03 - 2014-01-30 12:03 - 00001878 _____ () C:\Users\Public\Desktop\P-touch Editor 5.1.lnk 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-01-30 12:03 - 2013-09-12 08:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-01-30 11:57 - 2014-01-30 11:57 - 50049648 _____ (Brother Industries, Ltd. ) C:\Users\Kerstin\Downloads\pew51005ager.exe 2014-01-30 11:48 - 2014-01-30 08:47 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\SuperMailer 2014-01-30 11:47 - 2014-01-30 08:47 - 00000000 ____D () C:\Program Files\SuperMailer 2014-01-30 11:39 - 2014-01-30 11:39 - 00002093 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2014-01-30 11:33 - 2014-01-30 10:55 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Thunderbird 2014-01-30 10:54 - 2014-01-30 10:54 - 21981704 _____ (Mozilla) C:\Users\Kerstin\Downloads\Thunderbird Setup 24.2.0.exe 2014-01-30 09:22 - 2014-01-30 09:22 - 00001629 _____ () C:\Users\Kerstin\Desktop\FileZilla.lnk 2014-01-30 09:19 - 2014-01-30 09:18 - 00000000 ____D () C:\Program Files\Filezilla 2014-01-30 09:16 - 2014-01-30 09:16 - 07241860 _____ () C:\Users\Kerstin\Downloads\FileZilla_3.7.3_win32.zip 2014-01-30 08:47 - 2014-01-30 08:47 - 00000804 _____ () C:\Users\Kerstin\Desktop\SuperMailer.lnk 2014-01-30 08:44 - 2014-01-30 08:44 - 28054257 _____ () C:\Users\Kerstin\Downloads\smsw_x64.zip 2014-01-29 18:08 - 2014-01-29 18:08 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Okidata 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Adobe 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Program Files\Okidata 2014-01-29 17:59 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Adobe 2014-01-29 17:59 - 2014-01-17 08:28 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-29 17:58 - 2014-01-29 17:58 - 00000000 ____D () C:\ProgramData\Okidata 2014-01-29 17:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Web 2014-01-29 17:54 - 2014-01-29 17:54 - 00000000 ____D () C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105 2014-01-29 17:53 - 2014-01-29 17:52 - 07757512 _____ (Oki Data Corporation) C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105.exe 2014-01-29 17:31 - 2014-01-29 17:31 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Keeper 2001 2014-01-29 17:29 - 2014-01-29 17:29 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-01-29 16:55 - 2014-01-29 16:55 - 00001573 _____ () C:\Users\Kerstin\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-01-29 16:36 - 2014-01-29 16:36 - 00000000 ____D () C:\ProgramData\APN 2014-01-29 16:32 - 2014-01-29 16:32 - 129598176 _____ () C:\Users\Kerstin\Downloads\avira_free344_antivirus_de.exe 2014-01-29 16:30 - 2014-01-29 16:29 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Mozilla 2014-01-29 16:29 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-29 14:34 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2014-01-29 14:06 - 2014-01-17 08:34 - 00000000 ____D () C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2014-01-29 13:57 - 2014-01-29 13:57 - 00001421 _____ () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Vorlagen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Startmenü 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Netzwerkumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Lokale Einstellungen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Eigene Dateien 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Druckumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Musik 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Bilder 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Verlauf 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Power2Go8 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Packages 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 __SHD () C:\Recovery 2014-01-29 13:56 - 2013-09-12 08:58 - 00000000 ____D () C:\Windows\Panther 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:21 - 00000000 ____D () C:\Users\Public\CyberLink 2014-01-22 19:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-22 13:58 - 2013-09-12 08:01 - 00010543 _____ () C:\Windows\TSSysprep.log 2014-01-22 13:58 - 2009-07-14 05:46 - 00006854 _____ () C:\Windows\DtcInstall.log 2014-01-22 13:52 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-01-22 13:45 - 2014-01-22 13:45 - 00098489 _____ () C:\TN1388179.MHT 2014-01-17 16:06 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\CyberLink 2014-01-17 16:04 - 2014-01-17 16:04 - 00002043 _____ () C:\Users\Public\Desktop\CyberLink Media Suite 10.lnk 2014-01-17 16:04 - 2014-01-17 16:03 - 00000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-01-17 16:04 - 2014-01-17 16:02 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-17 16:04 - 2014-01-17 08:32 - 00000000 ____D () C:\Windows\tmp 2014-01-17 16:03 - 2014-01-17 16:02 - 00000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2014-01-17 16:03 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\install_clap 2014-01-17 16:02 - 2014-01-17 16:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-01-17 16:02 - 2014-01-17 16:01 - 00000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-01-17 16:02 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\CLSK 2014-01-17 08:54 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-01-17 08:51 - 2014-01-17 08:48 - 00009844 _____ () C:\Windows\IE11_main.log 2014-01-17 08:49 - 2014-01-17 08:49 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-17 08:48 - 2013-09-12 09:33 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-17 08:48 - 2013-09-12 08:18 - 01593956 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-17 08:47 - 2013-09-12 09:33 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-17 08:36 - 2014-01-17 08:36 - 00017840 _____ () C:\Windows\system32\results.xml 2014-01-17 08:36 - 2014-01-17 08:30 - 00000000 ____D () C:\ProgramData\Intel 2014-01-17 08:34 - 2014-01-17 08:34 - 00001343 _____ () C:\Users\Public\Desktop\Intel(R) Small Business Advantage.lnk 2014-01-17 08:34 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-01-17 08:33 - 2014-01-17 08:33 - 00002026 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-17 08:33 - 2014-01-17 08:30 - 00000000 ____D () C:\Program Files\Intel 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files\Realtek 2014-01-17 08:28 - 2014-01-17 08:28 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-01-16 18:09 - 2014-01-16 17:03 - 00000000 ____D () C:\Windows\CSC 2014-01-16 17:07 - 2014-01-16 17:07 - 00000000 ____D () C:\ProgramData\LSI 2014-01-16 17:04 - 2014-01-16 17:04 - 00000000 ____D () C:\Program Files\ASUS 2014-01-16 17:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\security 2014-01-14 18:09 - 2014-02-02 21:05 - 00000607 _____ () C:\Users\Sid\Desktop\2014_Rechnungen.lnk 2014-01-13 18:56 - 2014-02-02 21:09 - 00000667 _____ () C:\Users\Kerstin\Desktop\Merkliste.lnk 2014-01-13 18:56 - 2014-02-02 21:04 - 00000667 _____ () C:\Users\Sid\Desktop\Merkliste.lnk Some content of TEMP: ==================== C:\Users\Kerstin\AppData\Local\Temp\avgnt.exe C:\Users\Kerstin\AppData\Local\Temp\ICReinstall_Setup.exe C:\Users\Kerstin\AppData\Local\Temp\Offercast_AVIRAV7_.exe C:\Users\Kerstin\AppData\Local\Temp\OfficeSetup.exe C:\Users\Kerstin\AppData\Local\Temp\Quarantine.exe C:\Users\Kerstin\AppData\Local\Temp\setup.exe C:\Users\Sid\AppData\Local\Temp\avgnt.exe C:\Users\Sid\AppData\Local\Temp\fp_pl_pfs_installer.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-10 13:33 ==================== End Of Log ============================ |
10.02.2014, 19:13 | #4 |
| Passwidget Plagegeist - wie werde ich diesen wieder los? und das ist die Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-02-2014 Ran by Kerstin at 2014-02-10 18:34:25 Running from C:\Users\Kerstin\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Disabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} AS: Avira Desktop (Disabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Adobe Reader XI (11.0.06) MUI (x32 Version: 11.0.06 - Adobe Systems Incorporated) Amicron-Faktura 11.0 © Amicron Software (x32 Version: - ) Apple Application Support (x32 Version: 3.0 - Apple Inc.) Apple Mobile Device Support (Version: 7.1.0.32 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) Avira Antivirus Suite (x32 Version: 14.0.2.286 - Avira) Avira SearchFree Toolbar (x32 Version: 12.10.0.2951 - APN, LLC) Bonjour (Version: 3.0.0.10 - Apple Inc.) Brother P-touch Editor 5.1 (x32 Version: 5.1.0051 - Brother Industries, Ltd.) CyberLink Media Suite 10 (x32 Version: 10.0 - CyberLink Corp.) CyberLink Media Suite 10 (x32 Version: 10.0.0.2219 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (x32 Version: 8.0.0.2126 - CyberLink Corp.) Hidden CyberLink PowerDVD 10 (x32 Version: 10.0.4616.02 - CyberLink Corp.) Hidden DATA BECKER shop to date 8 pro (x32 Version: 8.0.0.2395 - DATA BECKER GmbH & Co. KG) Firebird 2.5.2.26539 (Win32) (x32 Version: 2.5.2.26539 - Firebird Project) Intel(R) Control Center (x32 Version: 1.2.1.1011 - Intel Corporation) Intel(R) Management Engine Components (x32 Version: 9.0.5.1367 - Intel Corporation) Intel(R) Processor Graphics (x32 Version: 10.18.10.3345 - Intel Corporation) Intel(R) Small Business Advantage (x32 Version: 2.2.42.8185 - Intel(R) Corporation) Intel(R) Update Manager (x32 Version: 1.0.0.36888 - Intel Corporation) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 2.5.1.28 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden iTunes (Version: 11.1.4.62 - Apple Inc.) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Access database engine 2010 (German) (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office 365 Small Business Premium - de-de (Version: 15.0.4551.1512 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 27.0 (x86 de) (x32 Version: 27.0 - Mozilla) Mozilla Maintenance Service (x32 Version: 27.0 - Mozilla) Mozilla Thunderbird 24.3.0 (x86 de) (x32 Version: 24.3.0 - Mozilla) MSI to redistribute MS VS2005 CRT libraries (x32 Version: 8.0.50727.42 - The Firebird Project) NComputing vSpace (Version: 6.6.9 - NComputing) NVIDIA 3D Vision Controller-Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA Grafiktreiber 332.21 (Version: 332.21 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.30.1 (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden NVIDIA nView 140.75 (Version: 140.75 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3221 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 332.21 (Version: 332.21 - NVIDIA Corporation) Hidden NVIDIA WMI 2.15.0 (Version: 2.15.0 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4551.1512 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden OKI Network Extension (x32 Version: 1.00.000 - Okidata) PassWidget (x32 Version: - PassWidget Software) Password Keeper 2001 (x32 Version: 3.1.2.2070 - Wolff Software) Protect Disc License Helper 1.0.125 (IE) (HKCU Version: 1.0.125 - Protect Disc) ProtectDisc Driver, Version 11 (x32 Version: 11.0.0.14 - ProtectDisc Software GmbH) Realtek High Definition Audio Driver (x32 Version: 6.0.1.7083 - Realtek Semiconductor Corp.) SuperMailer 7.51 (Version: 7.51 - Mirko Boeer Softwareentwicklungen) Windows-Treiberpaket - NComputing Inc. (htsatran) HYDRATS (10/30/2009 1.00.0.5) (Version: 10/30/2009 1.00.0.5 - NComputing Inc.) Windows-Treiberpaket - NComputing Inc. (HtsBusEnum) System (09/21/2010 1.00.0.1) (Version: 09/21/2010 1.00.0.1 - NComputing Inc.) Windows-Treiberpaket - NComputing Inc. (ncehci) USB (08/31/2011 1.0.2.1) (Version: 08/31/2011 1.0.2.1 - NComputing Inc.) ==================== Restore Points ========================= 10-02-2014 12:40:11 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {25AB685F-75FE-42E0-96B9-A2BC4E50270A} - System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-02-01] (Microsoft Corporation) Task: {5FBF0E5E-7065-477E-950C-97A07C2681A5} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-02-01] (Microsoft Corporation) Task: {7C807973-FB0C-4ABE-8827-2F0D15A46418} - System32\Tasks\PassWidget_wd => C:\Program Files (x86)\Pass-Widget\PassWidget_wd.exe [2014-02-07] () Task: {8249DBA8-658B-4EF7-B8C4-88461A179750} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation) Task: {A6A2FA2C-765B-412E-B86B-390B30319CF5} - System32\Tasks\Intel(R) Small Business Advantage\Notifier => C:\Program Files\Intel\Intel(R) Small Business Advantage\UI\SBA_Notifier.exe [2013-09-24] (Intel Corporation) Task: {B0E1FB47-340B-4BD0-A6FE-0D95AED14107} - System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-02-01] (Microsoft Corporation) Task: {DBA8731C-86DA-4FCA-A187-A511E09C2245} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: C:\Windows\Tasks\PassWidget_wd.job => C:\Program Files (x86)\Pass-Widget\PassWidget_wd.exe ==================== Loaded Modules (whitelisted) ============= 2014-02-07 19:00 - 2014-02-07 19:00 - 00093184 _____ () C:\Program Files (x86)\Pass-Widget\PassWidget_wd.exe 2014-01-17 16:02 - 2012-06-08 04:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-01-20 13:16 - 2014-01-20 13:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-02-10 16:40 - 2014-01-28 07:54 - 03583600 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-02-01 18:33 - 2014-02-01 18:33 - 00316584 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll 2014-02-01 18:33 - 2014-02-01 18:33 - 00359592 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\c2r32.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/10/2014 06:29:29 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 04:35:32 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 02:48:19 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 10:45:03 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 10:39:28 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 08:04:14 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/07/2014 08:05:37 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/06/2014 10:43:18 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/06/2014 10:29:58 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/06/2014 10:24:39 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (02/10/2014 06:28:02 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC) Error: (02/10/2014 04:34:15 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC) Error: (02/10/2014 03:43:19 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 252. Error: (02/10/2014 03:43:19 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 252. Error: (02/10/2014 02:46:57 PM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC) Error: (02/10/2014 00:03:17 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 252. Error: (02/10/2014 00:03:17 PM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 40. Der interne Fehlerstatus lautet: 252. Error: (02/10/2014 10:43:33 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC) Error: (02/10/2014 10:38:02 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC) Error: (02/10/2014 08:02:51 AM) (Source: DCOM) (User: NT-AUTORITÄT) Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC) Microsoft Office Sessions: ========================= Error: (02/10/2014 06:29:29 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 04:35:32 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 02:48:19 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 10:45:03 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 10:39:28 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2014 08:04:14 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/07/2014 08:05:37 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/06/2014 10:43:18 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/06/2014 10:29:58 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/06/2014 10:24:39 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 27% Total physical RAM: 8098.65 MB Available physical RAM: 5845.91 MB Total Pagefile: 16195.48 MB Available Pagefile: 13834.27 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:100 GB) (Free:55.23 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Volume) (Fixed) (Total:831.51 GB) (Free:829.74 GB) NTFS Drive w: (SHOP) (Network) (Total:1829.35 GB) (Free:1064.38 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: AA1D03F1) Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=832 GB) - (Type=07 NTFS) ==================== End Of Log ============================ LG Kerstin |
11.02.2014, 16:47 | #5 |
/// the machine /// TB-Ausbilder | Passwidget Plagegeist - wie werde ich diesen wieder los? Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.02.2014, 17:10 | #6 |
| Passwidget Plagegeist - wie werde ich diesen wieder los? Hallo Schrauber, lieben Dank für Deine weitere Meldung. Gestern habe ich weitere Schritte unternommen. Zuerst bin ich in die Software und habe das Programm Passwidget über die Sytemsteuerung entfernt. Dann habe ich die adwcleaner installiert und laufen lassen, danach folgendem Ergenis erhalten: Code:
ATTFilter # AdwCleaner v3.018 - Bericht erstellt am 10/02/2014 um 21:10:31 # Updated 28/01/2014 von Xplode # Betriebssystem : Windows 7 Professional Service Pack 1 (64 bits) # Benutzername : Kerstin - PCTAROX # Gestartet von : C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Program Files (x86)\iMesh Applications ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\InstallCore ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16428 -\\ Mozilla Firefox v27.0 (de) [ Datei : C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\xxbekle1.default\prefs.js ] [ Datei : C:\Users\Sid\AppData\Roaming\Mozilla\Firefox\Profiles\t4oh2icx.default\prefs.js ] ************************* AdwCleaner[R0].txt - [1929 octets] - [10/02/2014 10:33:26] AdwCleaner[R1].txt - [1028 octets] - [10/02/2014 10:40:53] AdwCleaner[R2].txt - [1150 octets] - [10/02/2014 14:44:55] AdwCleaner[R3].txt - [1432 octets] - [10/02/2014 21:09:46] AdwCleaner[S0].txt - [1990 octets] - [10/02/2014 10:36:21] AdwCleaner[S1].txt - [1090 octets] - [10/02/2014 10:42:15] AdwCleaner[S2].txt - [1212 octets] - [10/02/2014 14:45:43] AdwCleaner[S3].txt - [1301 octets] - [10/02/2014 21:10:31] ########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1361 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.1 (02.04.2014:1) OS: Windows 7 Professional x64 Ran by Kerstin on 10.02.2014 at 21:15:50,80 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\apntbmon ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\apn" ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 10.02.2014 at 21:18:49,54 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Meine Browser funktionieren jetzt zumindest einmal ohne lästige Links und ohne Popups Für Deine Unterstützung danke ich Dir jetzt schon ganz herzlich!!! |
11.02.2014, 17:13 | #7 |
| Passwidget Plagegeist - wie werde ich diesen wieder los? die neue Frst: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01 Ran by Kerstin (administrator) on PCTAROX on 11-02-2014 17:11:25 Running from C:\Users\Kerstin\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (DATA BECKER GmbH & Co KG) C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe ( ) C:\Windows\system32\lxcecoms.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe (NComputing Inc.) C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCTRAY.EXE (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Amicron Software) C:\Program Files (x86)\Amicron-Faktura 11.0\Faktura.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Microsoft Corporation) C:\Windows\system32\LogonUI.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\system32\prevhost.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7204568 2013-11-04] (Realtek Semiconductor) HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2747680 2013-12-19] () HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-05-15] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-08-15] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [CLMLServer_For_P2G8] - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491632 2012-09-26] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localoem.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://localoem.msn.com SearchScopes: HKLM - DefaultScope {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM-x32 - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\qzou934j.default-1392063583983 FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @protectdisc.com/NPPDLicenseHelper - C:\Users\Kerstin\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll ( ) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF HKLM\...\Firefox\Extensions: [{21EAF666-26B3-4a3c-ABD0-CA2F5A326744}] - C:\Program Files\V-bates\Firefox ==================== Services (Whitelisted) ================= R2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [908856 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-29] () R2 DBService; C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe [189776 2010-10-28] (DATA BECKER GmbH & Co KG) R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2012-11-01] (Firebird Project) R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2012-11-01] (Firebird Project) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [54976 2013-09-24] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-15] (Intel Corporation) R2 lxce_device; C:\Windows\system32\lxcecoms.exe [566704 2007-03-08] ( ) R2 lxce_device; C:\Windows\SysWOW64\lxcecoms.exe [537520 2007-03-08] ( ) R2 NCBootSrv; C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE [556888 2013-01-30] (NComputing Inc.) R2 NCWTService; C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe [1938632 2013-01-30] (NComputing, Inc.) R2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S3 3wareDrv; C:\Windows\system32\drivers\3wareDrv.sys [102400 2009-08-31] (AMCC) S3 adp3132; C:\Windows\system32\drivers\adp3132.sys [385072 2010-01-28] (Adaptec, Inc.) S3 asahci64; C:\Windows\system32\drivers\asahci64.sys [36448 2011-03-23] (Asmedia Technology) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2012-05-07] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG) R1 HpVcard; C:\Windows\System32\drivers\hpvcard.sys [24776 2013-01-30] (NComputing, Inc.) R1 hstd; C:\Windows\System32\drivers\hstd.sys [89800 2013-01-30] (NComputing, Inc.) R3 htsatran; C:\Windows\System32\DRIVERS\htsatran.sys [181448 2013-01-30] (NComputing, Inc.) R3 HtsBusEnum; C:\Windows\System32\DRIVERS\HtsBus.sys [45768 2013-01-30] (NComputing, Inc.) R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28656 2013-03-18] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [636184 2011-12-06] (Intel Corporation) S3 megasas2; C:\Windows\system32\drivers\megasas2.sys [52048 2012-11-07] (LSI Corporation) S3 MegaSR1; C:\Windows\system32\drivers\MegaSR1.sys [521512 2011-07-28] (LSI Corporation, Inc.) S3 MTsensor; C:\Windows\system32\drivers\ASACPI.sys [15416 2009-07-16] () R3 ncehci; C:\Windows\System32\DRIVERS\ncehci.sys [66248 2013-01-30] (NComputing, Inc.) R3 NcFsFltr; C:\Windows\System32\DRIVERS\NcFsFltr.sys [22216 2013-01-30] (NComputing, Inc.) R1 NcPciVga; C:\Windows\System32\drivers\NcWpsMs.sys [140488 2013-01-30] (NComputing, Inc.) S4 NcStore; C:\Windows\System32\drivers\NCStore.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbKeyboard; C:\Windows\System32\drivers\NcKbdCls.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbMouse; C:\Windows\System32\drivers\NcMouCls.sys [39624 2013-01-30] (NComputing, Inc.) S3 ocz10xx; C:\Windows\system32\drivers\ocz10xx.sys [137520 2011-07-08] (OCZ Technology Group, Inc.) R1 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\C:\oa3\asus\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-11 17:11 - 2014-02-11 17:11 - 00000000 ____D () C:\Users\Kerstin\Desktop\FRST-OlderVersion 2014-02-11 12:41 - 2014-02-11 12:54 - 00004485 _____ () C:\Windows\system32\LexFiles.ulf 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files\Lexmark 4300 Series 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files (x86)\Lexmark 4300 Series 2014-02-11 12:41 - 2007-03-08 05:21 - 00566704 _____ ( ) C:\Windows\system32\lxcecoms.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00537520 _____ ( ) C:\Windows\SysWOW64\lxcecoms.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00385968 _____ ( ) C:\Windows\SysWOW64\lxceih.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00381872 _____ ( ) C:\Windows\SysWOW64\lxcecfg.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00236464 _____ ( ) C:\Windows\system32\lxcecfg.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00233392 _____ ( ) C:\Windows\system32\lxceih.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00181168 _____ ( ) C:\Windows\SysWOW64\lxceppls.exe 2014-02-11 12:41 - 2007-03-08 05:11 - 00002270 _____ () C:\Windows\SysWOW64\lxce.loc 2014-02-11 12:41 - 2007-03-08 05:11 - 00002270 _____ () C:\Windows\system32\lxce.loc 2014-02-11 12:41 - 2007-03-05 14:53 - 00090112 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceinsr.dll 2014-02-11 12:41 - 2007-03-05 14:53 - 00022016 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecur.dll 2014-02-11 12:41 - 2007-03-05 14:52 - 00115712 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcejswr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00131072 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcejswr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00106496 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceinsr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00036864 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecur.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00216576 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceins.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00183808 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceinsb.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00095744 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecu.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00067584 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecub.dll 2014-02-11 12:41 - 2007-03-05 14:48 - 00628224 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceutil.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00200704 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceinsb.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00155648 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceins.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00086016 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecub.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00073728 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecu.dll 2014-02-11 12:41 - 2007-03-05 14:46 - 00446464 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceutil.dll 2014-02-11 12:41 - 2007-02-28 02:06 - 00059392 _____ (Lexmark International) C:\Windows\system32\lxcecfg.dll 2014-02-11 12:41 - 2007-02-28 02:05 - 00069632 _____ (Lexmark International) C:\Windows\SysWOW64\lxcecfg.dll 2014-02-11 12:41 - 2007-02-07 03:18 - 00385024 _____ () C:\Windows\SysWOW64\lxcecomx.dll 2014-02-11 12:41 - 2007-01-30 11:54 - 00410112 _____ ( ) C:\Windows\system32\lxcepmui.dll 2014-02-11 12:41 - 2007-01-30 11:51 - 01418240 _____ ( ) C:\Windows\system32\lxceserv.dll 2014-02-11 12:41 - 2007-01-30 11:42 - 00249856 _____ ( ) C:\Windows\system32\lxcecomm.dll 2014-02-11 12:41 - 2007-01-30 11:38 - 00488448 _____ ( ) C:\Windows\system32\lxcelmpm.dll 2014-02-11 12:41 - 2007-01-30 11:36 - 00194048 _____ () C:\Windows\system32\lxceinst.dll 2014-02-11 12:41 - 2007-01-30 11:35 - 00226816 _____ ( ) C:\Windows\system32\lxceiesc.dll 2014-02-11 12:41 - 2007-01-30 11:33 - 00010752 _____ ( ) C:\Windows\system32\lxcepplc.dll 2014-02-11 12:41 - 2007-01-30 11:31 - 00696320 _____ ( ) C:\Windows\system32\lxcecomc.dll 2014-02-11 12:41 - 2007-01-30 11:30 - 00035328 _____ ( ) C:\Windows\system32\lxceprox.dll 2014-02-11 12:41 - 2007-01-30 11:20 - 00238592 _____ ( ) C:\Windows\system32\lxceinpa.dll 2014-02-11 12:41 - 2007-01-30 11:19 - 01099776 _____ ( ) C:\Windows\system32\lxceusb1.dll 2014-02-11 12:41 - 2007-01-30 11:12 - 00305664 _____ ( ) C:\Windows\system32\lxcehcp.dll 2014-02-11 12:41 - 2007-01-30 11:10 - 00660480 _____ ( ) C:\Windows\system32\lxcehbn3.dll 2014-02-11 12:41 - 2007-01-30 10:47 - 00643072 _____ ( ) C:\Windows\SysWOW64\lxcepmui.dll 2014-02-11 12:41 - 2007-01-30 10:46 - 01224704 _____ ( ) C:\Windows\SysWOW64\lxceserv.dll 2014-02-11 12:41 - 2007-01-30 10:38 - 00421888 _____ ( ) C:\Windows\SysWOW64\lxcecomm.dll 2014-02-11 12:41 - 2007-01-30 10:36 - 00585728 _____ ( ) C:\Windows\SysWOW64\lxcelmpm.dll 2014-02-11 12:41 - 2007-01-30 10:35 - 00397312 _____ ( ) C:\Windows\SysWOW64\lxceiesc.dll 2014-02-11 12:41 - 2007-01-30 10:35 - 00274432 _____ () C:\Windows\SysWOW64\lxceinst.dll 2014-02-11 12:41 - 2007-01-30 10:32 - 00094208 _____ ( ) C:\Windows\SysWOW64\lxcepplc.dll 2014-02-11 12:41 - 2007-01-30 10:31 - 00684032 _____ ( ) C:\Windows\SysWOW64\lxcecomc.dll 2014-02-11 12:41 - 2007-01-30 10:30 - 00163840 _____ ( ) C:\Windows\SysWOW64\lxceprox.dll 2014-02-11 12:41 - 2007-01-30 10:22 - 00413696 _____ ( ) C:\Windows\SysWOW64\lxceinpa.dll 2014-02-11 12:41 - 2007-01-30 10:21 - 00995328 _____ ( ) C:\Windows\SysWOW64\lxceusb1.dll 2014-02-11 12:41 - 2007-01-30 10:17 - 00696320 _____ ( ) C:\Windows\SysWOW64\lxcehbn3.dll 2014-02-11 12:41 - 2006-10-03 23:21 - 00330030 _____ () C:\Windows\SysWOW64\lxcehelp.chm 2014-02-11 12:41 - 2006-10-03 23:21 - 00330030 _____ () C:\Windows\system32\lxcehelp.chm 2014-02-11 12:41 - 2005-12-12 06:15 - 00983091 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lxcegf.dll 2014-02-11 12:41 - 2005-12-12 06:15 - 00983091 _____ (Microsoft Corporation) C:\Windows\system32\lxcegf.dll 2014-02-11 09:41 - 2014-02-11 09:41 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Subsembly 2014-02-10 21:19 - 2014-02-11 13:29 - 00000000 ____D () C:\Users\Kerstin\Desktop\Alte Firefox-Daten 2014-02-10 21:18 - 2014-02-10 21:18 - 00000799 _____ () C:\Users\Kerstin\Desktop\JRT.txt 2014-02-10 21:15 - 2014-02-10 21:15 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 21:14 - 2014-02-10 21:14 - 01037530 _____ (Thisisu) C:\Users\Kerstin\Desktop\JRT_6.1.1.exe 2014-02-10 18:34 - 2014-02-10 18:34 - 00016709 _____ () C:\Users\Kerstin\Desktop\Addition.txt 2014-02-10 18:33 - 2014-02-11 17:11 - 00015008 _____ () C:\Users\Kerstin\Desktop\FRST.txt 2014-02-10 18:33 - 2014-02-11 17:11 - 00000000 ____D () C:\FRST 2014-02-10 18:32 - 2014-02-11 17:11 - 02151424 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST64.exe 2014-02-10 16:40 - 2014-02-10 16:40 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-10 14:43 - 2014-02-10 14:43 - 01166132 _____ () C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Malwarebytes 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-10 11:10 - 2014-02-10 11:11 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Kerstin\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-10 10:32 - 2014-02-10 21:10 - 00000000 ____D () C:\AdwCleaner 2014-02-10 10:32 - 2014-02-10 10:32 - 01166132 _____ () C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe 2014-02-07 17:54 - 2014-02-07 17:54 - 00000713 _____ () C:\Users\Sid\Desktop\Sid_Arbeitsplatz.lnk 2014-02-07 10:21 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Kerstin\Desktop\Amazon.lnk 2014-02-06 10:51 - 2014-02-06 10:51 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Avira 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-02-06 10:47 - 2014-02-06 10:47 - 00002073 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\ProgramData\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-06 10:47 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-02-06 10:47 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-02-06 10:47 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-06 10:47 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-02-06 10:40 - 2014-02-06 10:40 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-02-06 09:49 - 2014-02-06 09:50 - 140300048 _____ () C:\Users\Kerstin\Downloads\avira_antivirus_suite_de.exe 2014-02-06 09:26 - 2014-02-06 09:26 - 02482750 _____ () C:\Users\Kerstin\Downloads\_Angebot 2014-02-06 09:25 - 2014-02-06 09:25 - 01409527 _____ () C:\Users\Kerstin\Downloads\chalet werbung Dez. 13.zip 2014-02-06 09:10 - 2014-02-06 09:10 - 02499632 _____ () C:\Users\Kerstin\Downloads\Outlook.zip 2014-02-06 09:05 - 2014-02-06 09:05 - 02148771 _____ () C:\Users\Kerstin\Downloads\WG chalet kitzbichl anfr. hr. weichselbaumer.zip 2014-02-05 13:09 - 2014-02-05 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 08:13 - 2014-02-02 21:19 - 00001367 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (1).lnk 2014-02-04 12:58 - 2014-02-04 12:58 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Microsoft Help 2014-02-04 08:33 - 2014-02-04 08:33 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00001790 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iTunes 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iPod 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-04 08:28 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\ProgramData\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-02-04 08:11 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Kerstin\Desktop\2013_04_Drachensilber_SCHWEIZ_brielabel.lbx 2014-02-04 08:04 - 2014-02-04 08:05 - 148904784 _____ (Apple Inc.) C:\Users\Kerstin\Downloads\iTunes64Setup.exe 2014-02-03 13:11 - 2014-02-03 13:11 - 00000000 ____D () C:\Users\Kerstin\Documents\Dokumente 2014-02-03 10:13 - 2014-02-03 10:13 - 00000000 ____D () C:\Users\Sid\AppData\Local\Okidata 2014-02-03 10:11 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Sid\Desktop\Amazon_Bewertung.lnk 2014-02-03 10:09 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Sid\Desktop\Schnittstellen.lnk 2014-02-03 10:07 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Sid\Desktop\KommServer.lnk 2014-02-03 09:06 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Kerstin\Desktop\Schnittstelle.lnk 2014-02-03 07:06 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Kerstin\Desktop\KommNikServerMdbConnector - Verknüpfung.lnk 2014-02-03 07:03 - 2014-02-03 07:03 - 00001573 _____ () C:\Users\Sid\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-02-02 21:10 - 2013-05-31 09:48 - 00000611 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (2).lnk 2014-02-02 21:10 - 2013-03-05 11:58 - 00000529 _____ () C:\Users\Kerstin\Desktop\Ware bestellen.lnk 2014-02-02 21:09 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Kerstin\Desktop\Merkliste.lnk 2014-02-02 21:05 - 2014-01-14 18:09 - 00000607 _____ () C:\Users\Sid\Desktop\2014_Rechnungen.lnk 2014-02-02 21:04 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Sid\Desktop\Merkliste.lnk 2014-02-02 21:02 - 2014-02-03 09:43 - 00001315 _____ () C:\Users\Sid\Desktop\2014_Einnahmen.lnk 2014-02-02 20:58 - 2014-02-02 20:58 - 00000000 ____D () C:\Users\Sid\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-02 12:49 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Local\Adobe 2014-02-02 12:33 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Sid\Desktop\SCHWEIZ + NN Label.lbx 2014-02-02 12:28 - 2014-01-30 13:14 - 00000813 _____ () C:\Users\Sid\Desktop\DE_Label.lnk 2014-02-02 12:25 - 2014-02-02 12:25 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Brother 2014-02-01 23:50 - 2014-02-02 12:21 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Thunderbird 2014-02-01 23:50 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Local\Thunderbird 2014-02-01 22:32 - 2014-02-01 22:33 - 126829760 _____ (DATA BECKER ) C:\Users\Kerstin\Downloads\ws2d8_8s_sp5.exe 2014-02-01 19:37 - 2014-02-11 15:19 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Mozilla 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Local\Mozilla 2014-02-01 18:52 - 2014-02-06 08:57 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\ProtectDISC 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\Documents\web to date Projekte 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Local\DATA BECKER 2014-02-01 18:46 - 2014-02-01 18:46 - 00136208 _____ () C:\Users\Sid\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-01 18:44 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Adobe 2014-02-01 18:44 - 2014-02-01 18:44 - 00001421 _____ () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Vorlagen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Startmenü 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Netzwerkumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Lokale Einstellungen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Eigene Dateien 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Druckumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Musik 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Bilder 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Verlauf 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Power2Go8 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Packages 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid 2014-02-01 18:44 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Sid\ntuser.ini 2014-02-01 18:44 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-02-01 18:44 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-02-01 18:42 - 2014-02-04 16:30 - 00000000 ____D () C:\Users\Kerstin\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\Windows Multipoint Server 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\NComputing 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\DIFX 2014-02-01 18:01 - 2014-02-01 18:01 - 00003442 _____ () C:\Windows\System32\Tasks\{44808670-A833-4543-A834-80458BA98216} 2014-01-31 12:33 - 2014-02-11 14:17 - 00005140 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox 2014-01-31 12:26 - 2014-01-31 12:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-31 12:25 - 2014-02-01 19:23 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-01-31 12:24 - 2014-01-31 12:24 - 00575168 _____ (Microsoft Corporation) C:\Users\Kerstin\Downloads\Setup.X86.de-de_O365SmallBusPremRetail_70a0572d-295c-43ae-b690-afa0e6a0acc5_TX_PR_.exe 2014-01-31 10:05 - 2014-02-11 14:23 - 00000000 ____D () C:\ProgramData\firebird 2014-01-31 10:01 - 2014-01-31 10:04 - 00000000 ____D () C:\Program Files (x86)\Amicron-Faktura 11.0 2014-01-31 10:01 - 2014-01-31 10:01 - 00001093 _____ () C:\Users\Public\Desktop\Amicron-Faktura 11.0.lnk 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Users\Public\Documents\Amicron-Data 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Firebird 2014-01-31 10:01 - 2012-11-01 12:01 - 00462848 _____ (IBPhoenix) C:\Windows\SysWOW64\Firebird2Control.cpl 2014-01-31 10:01 - 2012-11-01 11:59 - 00552960 _____ (Firebird Project) C:\Windows\SysWOW64\GDS32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00200704 _____ (DATEV eG Nürnberg) C:\Windows\SysWOW64\SELF32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00020864 _____ () C:\Windows\SysWOW64\SELF32.TBL 2014-01-31 10:01 - 2003-04-01 07:00 - 00015156 _____ () C:\Windows\SysWOW64\SELF32.INI 2014-01-31 09:38 - 2014-01-31 09:39 - 90367905 _____ () C:\Users\Kerstin\Downloads\AF11-Setup.exe 2014-01-30 15:39 - 2014-01-30 17:20 - 00004096 _____ () C:\Users\Public\Documents\00002B92.LCS 2014-01-30 15:38 - 2014-02-03 07:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\ProtectDisc 2014-01-30 15:38 - 2014-01-30 15:38 - 00002215 _____ () C:\Users\Public\Desktop\shop to date 8 pro.lnk 2014-01-30 15:37 - 2006-07-01 03:25 - 00151552 _____ (Info-ZIP) C:\Windows\SysWOW64\w2dzip32.dll 2014-01-30 15:35 - 2014-02-05 16:51 - 00000000 ____D () C:\Program Files (x86)\DATA BECKER 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\web to date Projekte 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\Erzeugte Websites 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\DATA BECKER 2014-01-30 15:35 - 2004-03-09 16:45 - 00132880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00260880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx 2014-01-30 15:35 - 2003-07-14 14:22 - 00132360 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00144640 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00132344 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00279800 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00148736 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.ocx 2014-01-30 15:35 - 2003-03-22 11:50 - 00173304 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MimeX.dll 2014-01-30 15:35 - 2002-11-21 13:38 - 00099576 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MabryObj.dll 2014-01-30 15:35 - 2002-10-07 11:42 - 00152824 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.dll 2014-01-30 15:35 - 2002-01-23 08:27 - 00628736 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltocx12n.ocx 2014-01-30 15:35 - 2002-01-23 08:19 - 00328704 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfcmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:18 - 00035328 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfgif12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00751616 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltann12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00207872 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltefx12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00164864 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltimg12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00035840 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lttwn12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00030720 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfbmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00406016 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltkrn12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00259072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltdis12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00131072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltfil12n.DLL 2014-01-30 15:35 - 2001-07-17 07:02 - 00446464 _____ () C:\Windows\SysWOW64\Tx32.dll 2014-01-30 15:35 - 2001-07-17 00:19 - 00290816 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\Tx4ole.ocx 2014-01-30 15:35 - 2001-07-05 00:41 - 00135168 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_htm32.dll 2014-01-30 15:35 - 2001-06-27 02:10 - 00131072 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_rtf32.dll 2014-01-30 15:35 - 2000-12-13 01:41 - 00323584 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_word.dll 2014-01-30 15:35 - 2000-12-13 01:12 - 00327680 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txobj32.dll 2014-01-30 15:35 - 2000-10-16 02:43 - 00045056 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_tif32.flt 2014-01-30 15:35 - 2000-10-16 01:32 - 00061440 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\wndtls32.dll 2014-01-30 15:35 - 2000-10-16 01:25 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_bmp32.flt 2014-01-30 15:35 - 2000-10-16 01:12 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_wmf32.flt 2014-01-30 15:35 - 2000-10-12 01:50 - 00081920 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txtls32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00069632 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\ic32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00000151 _____ () C:\Windows\SysWOW64\ic32.ini 2014-01-30 15:35 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb6de.dll 2014-01-30 15:35 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-01-30 15:35 - 2000-05-21 23:00 - 00647872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx 2014-01-30 15:35 - 1999-09-28 20:42 - 01050896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet35.dll 2014-01-30 15:35 - 1999-08-25 13:57 - 00415504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl35.dll 2014-01-30 15:35 - 1999-03-26 02:00 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscmcde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscc2de.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\flxgdde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdlgde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetde.dll 2014-01-30 15:35 - 1998-06-17 23:00 - 00089360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb5db.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00252176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00148240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00024848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter35.dll 2014-01-30 15:21 - 2014-01-30 15:22 - 454279096 _____ (DATA BECKER GmbH & Co. KG ) C:\Users\Kerstin\Downloads\s2d8pro_r1.exe 2014-01-30 12:57 - 2014-02-10 09:59 - 00000729 _____ () C:\Users\Kerstin\Desktop\DE_Label.lnk 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\Documents\Eigene Etiketten 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Brother 2014-01-30 12:13 - 2014-01-30 12:15 - 00000000 ____D () C:\Program Files\Brother_P-touch 2014-01-30 12:11 - 2014-01-30 12:11 - 01601536 _____ () C:\Users\Kerstin\Downloads\qd560w550avt64ger.exe 2014-01-30 12:03 - 2014-01-30 12:03 - 00001878 _____ () C:\Users\Public\Desktop\P-touch Editor 5.1.lnk 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-01-30 11:57 - 2014-01-30 11:57 - 50049648 _____ (Brother Industries, Ltd. ) C:\Users\Kerstin\Downloads\pew51005ager.exe 2014-01-30 11:39 - 2014-01-30 11:39 - 00002093 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2014-01-30 10:55 - 2014-02-05 11:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Thunderbird 2014-01-30 10:55 - 2014-01-30 11:33 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Thunderbird 2014-01-30 10:54 - 2014-01-30 10:54 - 21981704 _____ (Mozilla) C:\Users\Kerstin\Downloads\Thunderbird Setup 24.2.0.exe 2014-01-30 09:22 - 2014-01-30 09:22 - 00001629 _____ () C:\Users\Kerstin\Desktop\FileZilla.lnk 2014-01-30 09:20 - 2014-02-04 14:54 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\FileZilla 2014-01-30 09:18 - 2014-01-30 09:19 - 00000000 ____D () C:\Program Files\Filezilla 2014-01-30 09:16 - 2014-01-30 09:16 - 07241860 _____ () C:\Users\Kerstin\Downloads\FileZilla_3.7.3_win32.zip 2014-01-30 08:47 - 2014-01-30 11:48 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\SuperMailer 2014-01-30 08:47 - 2014-01-30 11:47 - 00000000 ____D () C:\Program Files\SuperMailer 2014-01-30 08:47 - 2014-01-30 08:47 - 00000804 _____ () C:\Users\Kerstin\Desktop\SuperMailer.lnk 2014-01-30 08:44 - 2014-01-30 08:44 - 28054257 _____ () C:\Users\Kerstin\Downloads\smsw_x64.zip 2014-01-29 18:08 - 2014-01-29 18:08 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Okidata 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Adobe 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Program Files\Okidata 2014-01-29 17:59 - 2013-02-05 08:58 - 00000104 _____ () C:\Windows\system32\opnetext.ver 2014-01-29 17:59 - 2013-02-04 16:00 - 00003894 _____ () C:\Windows\system32\opnedef.str 2014-01-29 17:59 - 2013-01-29 18:39 - 00130048 ____N (Oki Data Corporation) C:\Windows\system32\opnetext.dll 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\SysWOW64\opnetext.hlp 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\system32\OPNETEXT.HLP 2014-01-29 17:59 - 2013-01-29 10:03 - 00005832 ____N () C:\Windows\system32\license.txt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\SysWOW64\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\system32\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\SysWOW64\opnetext.gid 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\system32\OPNETEXT.GID 2014-01-29 17:58 - 2014-01-29 17:58 - 00000000 ____D () C:\ProgramData\Okidata 2014-01-29 17:54 - 2014-01-29 17:54 - 00000000 ____D () C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105 2014-01-29 17:54 - 2009-06-25 11:00 - 00027648 _____ (Oki Data Corporation) C:\Windows\system32\OKLMON64.DLL 2014-01-29 17:52 - 2014-01-29 17:53 - 07757512 _____ (Oki Data Corporation) C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105.exe 2014-01-29 17:31 - 2014-02-01 18:59 - 00000000 ____D () C:\Program Files (x86)\Password Keeper 2001 2014-01-29 17:31 - 2014-01-29 17:31 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Keeper 2001 2014-01-29 17:29 - 2014-01-29 17:29 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-01-29 16:55 - 2014-01-29 16:55 - 00001573 _____ () C:\Users\Kerstin\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-01-29 16:32 - 2014-01-29 16:32 - 129598176 _____ () C:\Users\Kerstin\Downloads\avira_free344_antivirus_de.exe 2014-01-29 16:29 - 2014-02-10 16:34 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Mozilla 2014-01-29 16:29 - 2014-01-29 16:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Mozilla 2014-01-29 16:29 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-29 13:59 - 2014-01-31 13:02 - 00135328 _____ () C:\Users\Kerstin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-29 13:57 - 2014-02-04 11:39 - 00000000 ____D () C:\Users\Kerstin 2014-01-29 13:57 - 2014-01-31 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\VirtualStore 2014-01-29 13:57 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Adobe 2014-01-29 13:57 - 2014-01-29 13:57 - 00001421 _____ () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Vorlagen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Startmenü 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Netzwerkumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Lokale Einstellungen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Eigene Dateien 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Druckumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Musik 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Bilder 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Verlauf 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Power2Go8 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Packages 2014-01-29 13:57 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Kerstin\ntuser.ini 2014-01-29 13:57 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-29 13:57 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-29 13:56 - 2014-02-11 13:21 - 00413358 _____ () C:\Windows\WindowsUpdate.log 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 __SHD () C:\Recovery 2014-01-22 19:22 - 2014-02-11 13:21 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-01-22 19:22 - 2013-12-19 21:33 - 02498848 _____ (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe 2014-01-22 19:22 - 2013-12-19 21:33 - 00004084 _____ () C:\Windows\system32\nvPerfProvider.man 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:21 - 00000000 ____D () C:\Users\Public\CyberLink 2014-01-22 19:21 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvir3dgenco6420172.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00451872 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00357152 _____ () C:\Windows\system32\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00314656 _____ () C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00023754 _____ () C:\Windows\system32\nvinfo.pb 2014-01-22 19:21 - 2013-12-19 19:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-01-22 19:21 - 2013-12-19 19:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-01-22 19:21 - 2013-12-19 06:01 - 03539040 _____ () C:\Windows\system32\nvcoproc.bin 2014-01-22 19:21 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-22 19:21 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-22 19:21 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-01-22 13:45 - 2014-01-22 13:45 - 00098489 _____ () C:\TN1388179.MHT 2014-01-17 16:04 - 2014-01-17 16:04 - 00002043 _____ () C:\Users\Public\Desktop\CyberLink Media Suite 10.lnk 2014-01-17 16:03 - 2014-01-17 16:04 - 00000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-01-17 16:02 - 2014-01-17 16:04 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-17 16:02 - 2014-01-17 16:03 - 00000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2014-01-17 16:02 - 2014-01-17 16:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-01-17 16:01 - 2014-01-17 16:06 - 00000000 ____D () C:\ProgramData\CyberLink 2014-01-17 16:01 - 2014-01-17 16:03 - 00000000 ____D () C:\ProgramData\install_clap 2014-01-17 16:01 - 2014-01-17 16:02 - 00000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-01-17 16:01 - 2014-01-17 16:02 - 00000000 ____D () C:\ProgramData\CLSK 2014-01-17 09:02 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-01-17 09:02 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-01-17 09:02 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-01-17 09:02 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-01-17 09:02 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-01-17 09:02 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-01-17 09:02 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-01-17 09:02 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-01-17 09:02 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-01-17 09:02 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-01-17 09:02 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-01-17 09:02 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-01-17 09:02 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-01-17 09:02 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-17 08:48 - 2014-01-17 08:51 - 00009844 _____ () C:\Windows\IE11_main.log 2014-01-17 08:43 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-17 08:43 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-17 08:43 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-17 08:36 - 2014-01-17 08:36 - 00017840 _____ () C:\Windows\system32\results.xml 2014-01-17 08:34 - 2014-01-29 14:06 - 00000000 ____D () C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2014-01-17 08:34 - 2014-01-17 08:34 - 00001343 _____ () C:\Users\Public\Desktop\Intel(R) Small Business Advantage.lnk 2014-01-17 08:33 - 2014-01-17 08:33 - 00002026 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-17 08:32 - 2014-02-01 17:44 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-17 08:32 - 2014-01-17 16:04 - 00000000 ____D () C:\Windows\tmp 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-17 08:32 - 2013-10-07 14:52 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-01-17 08:32 - 2013-10-07 14:52 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-01-17 08:32 - 2013-08-15 13:34 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2014-01-17 08:31 - 2013-05-15 18:09 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-01-17 08:30 - 2014-01-17 08:36 - 00000000 ____D () C:\ProgramData\Intel 2014-01-17 08:30 - 2014-01-17 08:33 - 00000000 ____D () C:\Program Files\Intel 2014-01-17 08:29 - 2014-01-17 08:34 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files\Realtek 2014-01-17 08:29 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-17 08:29 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-17 08:29 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-17 08:29 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-17 08:29 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-17 08:29 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-17 08:29 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-17 08:29 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-17 08:29 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-17 08:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-17 08:29 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-17 08:29 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-17 08:29 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-17 08:28 - 2014-01-29 17:59 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-17 08:28 - 2014-01-17 08:28 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-17 08:28 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-17 08:28 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-17 08:28 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-17 08:28 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-17 08:28 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-17 08:28 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-17 08:28 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-17 08:28 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-17 08:28 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-17 08:28 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-17 08:28 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-17 08:28 - 2013-09-13 18:44 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-17 08:28 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-17 08:28 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-17 08:28 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-17 08:28 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-17 08:28 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-17 08:28 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-17 08:28 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-17 08:28 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-17 08:28 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-17 08:28 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-17 08:28 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-17 08:28 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-01-16 18:09 - 2012-05-07 17:04 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2014-01-16 18:09 - 2012-05-07 17:04 - 00013440 _____ () C:\Windows\SysWOW64\Drivers\AsIO.sys 2014-01-16 17:07 - 2014-01-16 17:07 - 00000000 ____D () C:\ProgramData\LSI 2014-01-16 17:04 - 2014-01-16 17:04 - 00000000 ____D () C:\Program Files\ASUS 2014-01-16 17:03 - 2014-01-16 18:09 - 00000000 ____D () C:\Windows\CSC 2014-01-16 17:03 - 2009-06-10 21:30 - 00053551 _____ () C:\Windows\Professional.xml ==================== One Month Modified Files and Folders ======= 2014-02-11 17:11 - 2014-02-11 17:11 - 00000000 ____D () C:\Users\Kerstin\Desktop\FRST-OlderVersion 2014-02-11 17:11 - 2014-02-10 18:33 - 00015008 _____ () C:\Users\Kerstin\Desktop\FRST.txt 2014-02-11 17:11 - 2014-02-10 18:33 - 00000000 ____D () C:\FRST 2014-02-11 17:11 - 2014-02-10 18:32 - 02151424 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST64.exe 2014-02-11 15:19 - 2014-02-01 19:37 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox 2014-02-11 14:23 - 2014-01-31 10:05 - 00000000 ____D () C:\ProgramData\firebird 2014-02-11 14:17 - 2014-01-31 12:33 - 00005140 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox 2014-02-11 13:30 - 2010-11-21 07:50 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-02-11 13:30 - 2010-11-21 07:50 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-11 13:30 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-11 13:29 - 2014-02-10 21:19 - 00000000 ____D () C:\Users\Kerstin\Desktop\Alte Firefox-Daten 2014-02-11 13:29 - 2009-07-14 05:45 - 00042096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-11 13:29 - 2009-07-14 05:45 - 00042096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-11 13:25 - 2014-01-29 13:56 - 00413358 _____ () C:\Windows\WindowsUpdate.log 2014-02-11 13:21 - 2014-01-22 19:22 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-11 13:21 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-11 13:21 - 2009-07-14 05:51 - 00056494 _____ () C:\Windows\setupact.log 2014-02-11 12:54 - 2014-02-11 12:41 - 00004485 _____ () C:\Windows\system32\LexFiles.ulf 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files\Lexmark 4300 Series 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files (x86)\Lexmark 4300 Series 2014-02-11 09:41 - 2014-02-11 09:41 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Subsembly 2014-02-10 21:18 - 2014-02-10 21:18 - 00000799 _____ () C:\Users\Kerstin\Desktop\JRT.txt 2014-02-10 21:15 - 2014-02-10 21:15 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 21:14 - 2014-02-10 21:14 - 01037530 _____ (Thisisu) C:\Users\Kerstin\Desktop\JRT_6.1.1.exe 2014-02-10 21:10 - 2014-02-10 10:32 - 00000000 ____D () C:\AdwCleaner 2014-02-10 18:34 - 2014-02-10 18:34 - 00016709 _____ () C:\Users\Kerstin\Desktop\Addition.txt 2014-02-10 16:40 - 2014-02-10 16:40 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-10 16:34 - 2014-01-29 16:29 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Mozilla 2014-02-10 16:33 - 2010-11-21 04:47 - 00342252 _____ () C:\Windows\PFRO.log 2014-02-10 14:43 - 2014-02-10 14:43 - 01166132 _____ () C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Malwarebytes 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-10 11:11 - 2014-02-10 11:10 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Kerstin\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-10 10:32 - 2014-02-10 10:32 - 01166132 _____ () C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe 2014-02-10 09:59 - 2014-01-30 12:57 - 00000729 _____ () C:\Users\Kerstin\Desktop\DE_Label.lnk 2014-02-07 17:54 - 2014-02-07 17:54 - 00000713 _____ () C:\Users\Sid\Desktop\Sid_Arbeitsplatz.lnk 2014-02-06 10:51 - 2014-02-06 10:51 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Avira 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-02-06 10:48 - 2014-02-06 10:48 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-02-06 10:47 - 2014-02-06 10:47 - 00002073 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\ProgramData\Avira 2014-02-06 10:47 - 2014-02-06 10:47 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-06 10:40 - 2014-02-06 10:40 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-02-06 09:50 - 2014-02-06 09:49 - 140300048 _____ () C:\Users\Kerstin\Downloads\avira_antivirus_suite_de.exe 2014-02-06 09:26 - 2014-02-06 09:26 - 02482750 _____ () C:\Users\Kerstin\Downloads\_Angebot 2014-02-06 09:25 - 2014-02-06 09:25 - 01409527 _____ () C:\Users\Kerstin\Downloads\chalet werbung Dez. 13.zip 2014-02-06 09:10 - 2014-02-06 09:10 - 02499632 _____ () C:\Users\Kerstin\Downloads\Outlook.zip 2014-02-06 09:05 - 2014-02-06 09:05 - 02148771 _____ () C:\Users\Kerstin\Downloads\WG chalet kitzbichl anfr. hr. weichselbaumer.zip 2014-02-06 08:57 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\ProtectDISC 2014-02-05 16:51 - 2014-01-30 15:35 - 00000000 ____D () C:\Program Files (x86)\DATA BECKER 2014-02-05 13:45 - 2014-02-05 13:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 11:59 - 2014-01-30 10:55 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Thunderbird 2014-02-04 16:30 - 2014-02-01 18:42 - 00000000 ____D () C:\Users\Kerstin\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-04 14:54 - 2014-01-30 09:20 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\FileZilla 2014-02-04 12:58 - 2014-02-04 12:58 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Microsoft Help 2014-02-04 11:39 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin 2014-02-04 09:21 - 2009-07-14 03:34 - 00000447 _____ () C:\Windows\win.ini 2014-02-04 08:35 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Apple Computer 2014-02-04 08:33 - 2014-02-04 08:33 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00001790 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iTunes 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iPod 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\ProgramData\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-02-04 08:05 - 2014-02-04 08:04 - 148904784 _____ (Apple Inc.) C:\Users\Kerstin\Downloads\iTunes64Setup.exe 2014-02-03 13:11 - 2014-02-03 13:11 - 00000000 ____D () C:\Users\Kerstin\Documents\Dokumente 2014-02-03 10:13 - 2014-02-03 10:13 - 00000000 ____D () C:\Users\Sid\AppData\Local\Okidata 2014-02-03 09:43 - 2014-02-02 21:02 - 00001315 _____ () C:\Users\Sid\Desktop\2014_Einnahmen.lnk 2014-02-03 09:06 - 2014-02-03 10:09 - 00001461 _____ () C:\Users\Sid\Desktop\Schnittstellen.lnk 2014-02-03 09:06 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Kerstin\Desktop\Schnittstelle.lnk 2014-02-03 07:30 - 2014-01-30 15:38 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\ProtectDisc 2014-02-03 07:06 - 2014-02-03 10:07 - 00001255 _____ () C:\Users\Sid\Desktop\KommServer.lnk 2014-02-03 07:06 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Kerstin\Desktop\KommNikServerMdbConnector - Verknüpfung.lnk 2014-02-03 07:03 - 2014-02-03 07:03 - 00001573 _____ () C:\Users\Sid\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-02-02 21:19 - 2014-02-05 08:13 - 00001367 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (1).lnk 2014-02-02 20:58 - 2014-02-02 20:58 - 00000000 ____D () C:\Users\Sid\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-02 12:49 - 2014-02-04 08:11 - 00002228 _____ () C:\Users\Kerstin\Desktop\2013_04_Drachensilber_SCHWEIZ_brielabel.lbx 2014-02-02 12:49 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Local\Adobe 2014-02-02 12:49 - 2014-02-02 12:33 - 00002228 _____ () C:\Users\Sid\Desktop\SCHWEIZ + NN Label.lbx 2014-02-02 12:49 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Adobe 2014-02-02 12:25 - 2014-02-02 12:25 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Brother 2014-02-02 12:21 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Thunderbird 2014-02-01 23:50 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Local\Thunderbird 2014-02-01 22:33 - 2014-02-01 22:32 - 126829760 _____ (DATA BECKER ) C:\Users\Kerstin\Downloads\ws2d8_8s_sp5.exe 2014-02-01 19:23 - 2014-01-31 12:25 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Mozilla 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Local\Mozilla 2014-02-01 18:59 - 2014-01-29 17:31 - 00000000 ____D () C:\Program Files (x86)\Password Keeper 2001 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\Documents\web to date Projekte 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Local\DATA BECKER 2014-02-01 18:46 - 2014-02-01 18:46 - 00136208 _____ () C:\Users\Sid\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-01 18:44 - 2014-02-01 18:44 - 00001421 _____ () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Vorlagen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Startmenü 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Netzwerkumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Lokale Einstellungen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Eigene Dateien 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Druckumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Musik 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Bilder 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Verlauf 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Power2Go8 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Packages 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\Windows Multipoint Server 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\NComputing 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\DIFX 2014-02-01 18:10 - 2009-07-14 05:45 - 00524344 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-01 18:01 - 2014-02-01 18:01 - 00003442 _____ () C:\Windows\System32\Tasks\{44808670-A833-4543-A834-80458BA98216} 2014-02-01 17:44 - 2014-01-17 08:32 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-31 13:02 - 2014-01-29 13:59 - 00135328 _____ () C:\Users\Kerstin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-31 12:26 - 2014-01-31 12:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-31 12:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-01-31 12:25 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\VirtualStore 2014-01-31 12:24 - 2014-01-31 12:24 - 00575168 _____ (Microsoft Corporation) C:\Users\Kerstin\Downloads\Setup.X86.de-de_O365SmallBusPremRetail_70a0572d-295c-43ae-b690-afa0e6a0acc5_TX_PR_.exe 2014-01-31 10:04 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Amicron-Faktura 11.0 2014-01-31 10:01 - 2014-01-31 10:01 - 00001093 _____ () C:\Users\Public\Desktop\Amicron-Faktura 11.0.lnk 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Users\Public\Documents\Amicron-Data 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Firebird 2014-01-31 09:39 - 2014-01-31 09:38 - 90367905 _____ () C:\Users\Kerstin\Downloads\AF11-Setup.exe 2014-01-30 17:20 - 2014-01-30 15:39 - 00004096 _____ () C:\Users\Public\Documents\00002B92.LCS 2014-01-30 15:38 - 2014-01-30 15:38 - 00002215 _____ () C:\Users\Public\Desktop\shop to date 8 pro.lnk 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\web to date Projekte 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\Erzeugte Websites 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\DATA BECKER 2014-01-30 15:22 - 2014-01-30 15:21 - 454279096 _____ (DATA BECKER GmbH & Co. KG ) C:\Users\Kerstin\Downloads\s2d8pro_r1.exe 2014-01-30 13:14 - 2014-02-02 12:28 - 00000813 _____ () C:\Users\Sid\Desktop\DE_Label.lnk 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\Documents\Eigene Etiketten 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Brother 2014-01-30 12:15 - 2014-01-30 12:13 - 00000000 ____D () C:\Program Files\Brother_P-touch 2014-01-30 12:11 - 2014-01-30 12:11 - 01601536 _____ () C:\Users\Kerstin\Downloads\qd560w550avt64ger.exe 2014-01-30 12:03 - 2014-01-30 12:03 - 00001878 _____ () C:\Users\Public\Desktop\P-touch Editor 5.1.lnk 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-01-30 12:03 - 2013-09-12 08:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-01-30 11:57 - 2014-01-30 11:57 - 50049648 _____ (Brother Industries, Ltd. ) C:\Users\Kerstin\Downloads\pew51005ager.exe 2014-01-30 11:48 - 2014-01-30 08:47 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\SuperMailer 2014-01-30 11:47 - 2014-01-30 08:47 - 00000000 ____D () C:\Program Files\SuperMailer 2014-01-30 11:39 - 2014-01-30 11:39 - 00002093 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2014-01-30 11:33 - 2014-01-30 10:55 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Thunderbird 2014-01-30 10:54 - 2014-01-30 10:54 - 21981704 _____ (Mozilla) C:\Users\Kerstin\Downloads\Thunderbird Setup 24.2.0.exe 2014-01-30 09:22 - 2014-01-30 09:22 - 00001629 _____ () C:\Users\Kerstin\Desktop\FileZilla.lnk 2014-01-30 09:19 - 2014-01-30 09:18 - 00000000 ____D () C:\Program Files\Filezilla 2014-01-30 09:16 - 2014-01-30 09:16 - 07241860 _____ () C:\Users\Kerstin\Downloads\FileZilla_3.7.3_win32.zip 2014-01-30 08:47 - 2014-01-30 08:47 - 00000804 _____ () C:\Users\Kerstin\Desktop\SuperMailer.lnk 2014-01-30 08:44 - 2014-01-30 08:44 - 28054257 _____ () C:\Users\Kerstin\Downloads\smsw_x64.zip 2014-01-29 18:08 - 2014-01-29 18:08 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Okidata 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Adobe 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Program Files\Okidata 2014-01-29 17:59 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Adobe 2014-01-29 17:59 - 2014-01-17 08:28 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-29 17:58 - 2014-01-29 17:58 - 00000000 ____D () C:\ProgramData\Okidata 2014-01-29 17:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Web 2014-01-29 17:54 - 2014-01-29 17:54 - 00000000 ____D () C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105 2014-01-29 17:53 - 2014-01-29 17:52 - 07757512 _____ (Oki Data Corporation) C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105.exe 2014-01-29 17:31 - 2014-01-29 17:31 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Keeper 2001 2014-01-29 17:29 - 2014-01-29 17:29 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-01-29 16:55 - 2014-01-29 16:55 - 00001573 _____ () C:\Users\Kerstin\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-01-29 16:32 - 2014-01-29 16:32 - 129598176 _____ () C:\Users\Kerstin\Downloads\avira_free344_antivirus_de.exe 2014-01-29 16:30 - 2014-01-29 16:29 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Mozilla 2014-01-29 16:29 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-29 14:34 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2014-01-29 14:06 - 2014-01-17 08:34 - 00000000 ____D () C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2014-01-29 13:57 - 2014-01-29 13:57 - 00001421 _____ () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Vorlagen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Startmenü 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Netzwerkumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Lokale Einstellungen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Eigene Dateien 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Druckumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Musik 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Bilder 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Verlauf 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Power2Go8 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Packages 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 __SHD () C:\Recovery 2014-01-29 13:56 - 2013-09-12 08:58 - 00000000 ____D () C:\Windows\Panther 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:21 - 00000000 ____D () C:\Users\Public\CyberLink 2014-01-22 19:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-22 13:58 - 2013-09-12 08:01 - 00010543 _____ () C:\Windows\TSSysprep.log 2014-01-22 13:58 - 2009-07-14 05:46 - 00006854 _____ () C:\Windows\DtcInstall.log 2014-01-22 13:52 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-01-22 13:45 - 2014-01-22 13:45 - 00098489 _____ () C:\TN1388179.MHT 2014-01-17 16:06 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\CyberLink 2014-01-17 16:04 - 2014-01-17 16:04 - 00002043 _____ () C:\Users\Public\Desktop\CyberLink Media Suite 10.lnk 2014-01-17 16:04 - 2014-01-17 16:03 - 00000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-01-17 16:04 - 2014-01-17 16:02 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-17 16:04 - 2014-01-17 08:32 - 00000000 ____D () C:\Windows\tmp 2014-01-17 16:03 - 2014-01-17 16:02 - 00000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2014-01-17 16:03 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\install_clap 2014-01-17 16:02 - 2014-01-17 16:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-01-17 16:02 - 2014-01-17 16:01 - 00000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-01-17 16:02 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\CLSK 2014-01-17 08:54 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-01-17 08:51 - 2014-01-17 08:48 - 00009844 _____ () C:\Windows\IE11_main.log 2014-01-17 08:49 - 2014-01-17 08:49 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-17 08:48 - 2013-09-12 09:33 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-17 08:48 - 2013-09-12 08:18 - 01593956 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-17 08:47 - 2013-09-12 09:33 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-17 08:36 - 2014-01-17 08:36 - 00017840 _____ () C:\Windows\system32\results.xml 2014-01-17 08:36 - 2014-01-17 08:30 - 00000000 ____D () C:\ProgramData\Intel 2014-01-17 08:34 - 2014-01-17 08:34 - 00001343 _____ () C:\Users\Public\Desktop\Intel(R) Small Business Advantage.lnk 2014-01-17 08:34 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-01-17 08:33 - 2014-01-17 08:33 - 00002026 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-17 08:33 - 2014-01-17 08:30 - 00000000 ____D () C:\Program Files\Intel 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files\Realtek 2014-01-17 08:28 - 2014-01-17 08:28 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-01-16 18:09 - 2014-01-16 17:03 - 00000000 ____D () C:\Windows\CSC 2014-01-16 17:07 - 2014-01-16 17:07 - 00000000 ____D () C:\ProgramData\LSI 2014-01-16 17:04 - 2014-01-16 17:04 - 00000000 ____D () C:\Program Files\ASUS 2014-01-16 17:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\security 2014-01-14 18:09 - 2014-02-02 21:05 - 00000607 _____ () C:\Users\Sid\Desktop\2014_Rechnungen.lnk 2014-01-13 18:56 - 2014-02-02 21:09 - 00000667 _____ () C:\Users\Kerstin\Desktop\Merkliste.lnk 2014-01-13 18:56 - 2014-02-02 21:04 - 00000667 _____ () C:\Users\Sid\Desktop\Merkliste.lnk Some content of TEMP: ==================== C:\Users\Kerstin\AppData\Local\Temp\avgnt.exe C:\Users\Kerstin\AppData\Local\Temp\ICReinstall_Setup.exe C:\Users\Kerstin\AppData\Local\Temp\Offercast_AVIRAV7_.exe C:\Users\Kerstin\AppData\Local\Temp\OfficeSetup.exe C:\Users\Kerstin\AppData\Local\Temp\Quarantine.exe C:\Users\Kerstin\AppData\Local\Temp\setup.exe C:\Users\Sid\AppData\Local\Temp\avgnt.exe C:\Users\Sid\AppData\Local\Temp\fp_pl_pfs_installer.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-10 13:33 ==================== End Of Log =========================== |
12.02.2014, 17:42 | #8 |
/// the machine /// TB-Ausbilder | Passwidget Plagegeist - wie werde ich diesen wieder los?ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
13.02.2014, 09:56 | #9 |
| Passwidget Plagegeist - wie werde ich diesen wieder los? Hier kommt die EST: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=8d2bf96d471329449bb71e5abc0ce06a # engine=17045 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-02-12 05:43:02 # local_time=2014-02-12 06:43:02 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776574 100 94 1229693 143856832 0 0 # scanned=269016 # found=0 # cleaned=0 # scan_time=2197 Code:
ATTFilter Results of screen317's Security Check version 0.99.79 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Adobe Reader XI Mozilla Firefox (27.0) Mozilla Thunderbird (24.3.0) ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avgnt.exe Avira Antivir avguard.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Und hier nochmal die frische FRST Leider passt die nicht in ein Fenster, also hab ich gestückelt! Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01 Ran by Kerstin (administrator) on PCTAROX on 12-02-2014 18:59:52 Running from C:\Users\Kerstin\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (DATA BECKER GmbH & Co KG) C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe ( ) C:\Windows\system32\lxcecoms.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe (NComputing Inc.) C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCTRAY.EXE (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\system32\LogonUI.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7204568 2013-11-04] (Realtek Semiconductor) HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2747680 2013-12-19] () HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-05-15] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-08-15] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [CLMLServer_For_P2G8] - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491632 2012-09-26] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1778640 2013-12-20] (APN) HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Startup: C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localoem.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://localoem.msn.com SearchScopes: HKLM - DefaultScope {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM-x32 - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\qzou934j.default-1392063583983 FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @protectdisc.com/NPPDLicenseHelper - C:\Users\Kerstin\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll ( ) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\qzou934j.default-1392063583983\Extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi [2013-12-20] FF HKLM\...\Firefox\Extensions: [{21EAF666-26B3-4a3c-ABD0-CA2F5A326744}] - C:\Program Files\V-bates\Firefox ==================== Services (Whitelisted) ================= R2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [908856 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-29] () R2 DBService; C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe [189776 2010-10-28] (DATA BECKER GmbH & Co KG) R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2012-11-01] (Firebird Project) R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2012-11-01] (Firebird Project) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [54976 2013-09-24] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-15] (Intel Corporation) R2 lxce_device; C:\Windows\system32\lxcecoms.exe [566704 2007-03-08] ( ) R2 lxce_device; C:\Windows\SysWOW64\lxcecoms.exe [537520 2007-03-08] ( ) R2 NCBootSrv; C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE [556888 2013-01-30] (NComputing Inc.) R2 NCWTService; C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe [1938632 2013-01-30] (NComputing, Inc.) R2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S3 3wareDrv; C:\Windows\system32\drivers\3wareDrv.sys [102400 2009-08-31] (AMCC) S3 adp3132; C:\Windows\system32\drivers\adp3132.sys [385072 2010-01-28] (Adaptec, Inc.) S3 asahci64; C:\Windows\system32\drivers\asahci64.sys [36448 2011-03-23] (Asmedia Technology) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2012-05-07] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG) R1 HpVcard; C:\Windows\System32\drivers\hpvcard.sys [24776 2013-01-30] (NComputing, Inc.) R1 hstd; C:\Windows\System32\drivers\hstd.sys [89800 2013-01-30] (NComputing, Inc.) R3 htsatran; C:\Windows\System32\DRIVERS\htsatran.sys [181448 2013-01-30] (NComputing, Inc.) R3 HtsBusEnum; C:\Windows\System32\DRIVERS\HtsBus.sys [45768 2013-01-30] (NComputing, Inc.) R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28656 2013-03-18] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [636184 2011-12-06] (Intel Corporation) S3 megasas2; C:\Windows\system32\drivers\megasas2.sys [52048 2012-11-07] (LSI Corporation) S3 MegaSR1; C:\Windows\system32\drivers\MegaSR1.sys [521512 2011-07-28] (LSI Corporation, Inc.) S3 MTsensor; C:\Windows\system32\drivers\ASACPI.sys [15416 2009-07-16] () R3 ncehci; C:\Windows\System32\DRIVERS\ncehci.sys [66248 2013-01-30] (NComputing, Inc.) R3 NcFsFltr; C:\Windows\System32\DRIVERS\NcFsFltr.sys [22216 2013-01-30] (NComputing, Inc.) R1 NcPciVga; C:\Windows\System32\drivers\NcWpsMs.sys [140488 2013-01-30] (NComputing, Inc.) S4 NcStore; C:\Windows\System32\drivers\NCStore.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbKeyboard; C:\Windows\System32\drivers\NcKbdCls.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbMouse; C:\Windows\System32\drivers\NcMouCls.sys [39624 2013-01-30] (NComputing, Inc.) S3 ocz10xx; C:\Windows\system32\drivers\ocz10xx.sys [137520 2011-07-08] (OCZ Technology Group, Inc.) R1 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\C:\oa3\asus\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-12 18:56 - 2014-02-12 18:56 - 00987425 _____ () C:\Users\Kerstin\Desktop\SecurityCheck.exe 2014-02-12 18:01 - 2014-02-12 18:01 - 02347384 _____ (ESET) C:\Users\Kerstin\Downloads\esetsmartinstaller_enu.exe 2014-02-12 13:34 - 2014-02-12 13:34 - 00000000 ____D () C:\Users\Kerstin\Documents\OneNote-Notizbücher 2014-02-12 13:26 - 2014-02-12 13:26 - 00001086 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk 2014-02-12 13:26 - 2014-02-12 13:26 - 00001066 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk 2014-02-12 13:26 - 2014-02-12 13:26 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\PDF24 2014-02-12 13:26 - 2014-02-12 13:26 - 00000000 ____D () C:\Program Files (x86)\PDF24 2014-02-12 13:25 - 2014-02-12 13:25 - 00614792 _____ (Chip Digital GmbH) C:\Users\Kerstin\Downloads\PDF24 Creator - CHIP-Downloader.exe 2014-02-12 11:20 - 2014-02-12 11:20 - 00001363 _____ () C:\Users\Kerstin\Desktop\2014_EK-Übersicht.lnk 2014-02-12 08:32 - 2014-02-12 08:32 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Avira 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\ProgramData\APN 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-02-12 07:46 - 2014-02-12 07:46 - 00002073 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Avira 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\ProgramData\Avira 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-12 07:46 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-02-12 07:46 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-02-12 07:46 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-12 07:46 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-02-11 17:11 - 2014-02-11 17:11 - 00000000 ____D () C:\Users\Kerstin\Desktop\FRST-OlderVersion 2014-02-11 12:41 - 2014-02-11 12:54 - 00004485 _____ () C:\Windows\system32\LexFiles.ulf 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files\Lexmark 4300 Series 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files (x86)\Lexmark 4300 Series 2014-02-11 12:41 - 2007-03-08 05:21 - 00566704 _____ ( ) C:\Windows\system32\lxcecoms.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00537520 _____ ( ) C:\Windows\SysWOW64\lxcecoms.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00385968 _____ ( ) C:\Windows\SysWOW64\lxceih.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00381872 _____ ( ) C:\Windows\SysWOW64\lxcecfg.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00236464 _____ ( ) C:\Windows\system32\lxcecfg.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00233392 _____ ( ) C:\Windows\system32\lxceih.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00181168 _____ ( ) C:\Windows\SysWOW64\lxceppls.exe 2014-02-11 12:41 - 2007-03-08 05:11 - 00002270 _____ () C:\Windows\SysWOW64\lxce.loc 2014-02-11 12:41 - 2007-03-08 05:11 - 00002270 _____ () C:\Windows\system32\lxce.loc 2014-02-11 12:41 - 2007-03-05 14:53 - 00090112 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceinsr.dll 2014-02-11 12:41 - 2007-03-05 14:53 - 00022016 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecur.dll 2014-02-11 12:41 - 2007-03-05 14:52 - 00115712 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcejswr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00131072 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcejswr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00106496 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceinsr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00036864 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecur.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00216576 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceins.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00183808 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceinsb.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00095744 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecu.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00067584 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecub.dll 2014-02-11 12:41 - 2007-03-05 14:48 - 00628224 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceutil.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00200704 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceinsb.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00155648 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceins.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00086016 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecub.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00073728 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecu.dll 2014-02-11 12:41 - 2007-03-05 14:46 - 00446464 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceutil.dll 2014-02-11 12:41 - 2007-02-28 02:06 - 00059392 _____ (Lexmark International) C:\Windows\system32\lxcecfg.dll 2014-02-11 12:41 - 2007-02-28 02:05 - 00069632 _____ (Lexmark International) C:\Windows\SysWOW64\lxcecfg.dll 2014-02-11 12:41 - 2007-02-07 03:18 - 00385024 _____ () C:\Windows\SysWOW64\lxcecomx.dll 2014-02-11 12:41 - 2007-01-30 11:54 - 00410112 _____ ( ) C:\Windows\system32\lxcepmui.dll 2014-02-11 12:41 - 2007-01-30 11:51 - 01418240 _____ ( ) C:\Windows\system32\lxceserv.dll 2014-02-11 12:41 - 2007-01-30 11:42 - 00249856 _____ ( ) C:\Windows\system32\lxcecomm.dll 2014-02-11 12:41 - 2007-01-30 11:38 - 00488448 _____ ( ) C:\Windows\system32\lxcelmpm.dll 2014-02-11 12:41 - 2007-01-30 11:36 - 00194048 _____ () C:\Windows\system32\lxceinst.dll 2014-02-11 12:41 - 2007-01-30 11:35 - 00226816 _____ ( ) C:\Windows\system32\lxceiesc.dll 2014-02-11 12:41 - 2007-01-30 11:33 - 00010752 _____ ( ) C:\Windows\system32\lxcepplc.dll 2014-02-11 12:41 - 2007-01-30 11:31 - 00696320 _____ ( ) C:\Windows\system32\lxcecomc.dll 2014-02-11 12:41 - 2007-01-30 11:30 - 00035328 _____ ( ) C:\Windows\system32\lxceprox.dll 2014-02-11 12:41 - 2007-01-30 11:20 - 00238592 _____ ( ) C:\Windows\system32\lxceinpa.dll 2014-02-11 12:41 - 2007-01-30 11:19 - 01099776 _____ ( ) C:\Windows\system32\lxceusb1.dll 2014-02-11 12:41 - 2007-01-30 11:12 - 00305664 _____ ( ) C:\Windows\system32\lxcehcp.dll 2014-02-11 12:41 - 2007-01-30 11:10 - 00660480 _____ ( ) C:\Windows\system32\lxcehbn3.dll 2014-02-11 12:41 - 2007-01-30 10:47 - 00643072 _____ ( ) C:\Windows\SysWOW64\lxcepmui.dll 2014-02-11 12:41 - 2007-01-30 10:46 - 01224704 _____ ( ) C:\Windows\SysWOW64\lxceserv.dll 2014-02-11 12:41 - 2007-01-30 10:38 - 00421888 _____ ( ) C:\Windows\SysWOW64\lxcecomm.dll 2014-02-11 12:41 - 2007-01-30 10:36 - 00585728 _____ ( ) C:\Windows\SysWOW64\lxcelmpm.dll 2014-02-11 12:41 - 2007-01-30 10:35 - 00397312 _____ ( ) C:\Windows\SysWOW64\lxceiesc.dll 2014-02-11 12:41 - 2007-01-30 10:35 - 00274432 _____ () C:\Windows\SysWOW64\lxceinst.dll 2014-02-11 12:41 - 2007-01-30 10:32 - 00094208 _____ ( ) C:\Windows\SysWOW64\lxcepplc.dll 2014-02-11 12:41 - 2007-01-30 10:31 - 00684032 _____ ( ) C:\Windows\SysWOW64\lxcecomc.dll 2014-02-11 12:41 - 2007-01-30 10:30 - 00163840 _____ ( ) C:\Windows\SysWOW64\lxceprox.dll 2014-02-11 12:41 - 2007-01-30 10:22 - 00413696 _____ ( ) C:\Windows\SysWOW64\lxceinpa.dll 2014-02-11 12:41 - 2007-01-30 10:21 - 00995328 _____ ( ) C:\Windows\SysWOW64\lxceusb1.dll 2014-02-11 12:41 - 2007-01-30 10:17 - 00696320 _____ ( ) C:\Windows\SysWOW64\lxcehbn3.dll 2014-02-11 12:41 - 2006-10-03 23:21 - 00330030 _____ () C:\Windows\SysWOW64\lxcehelp.chm 2014-02-11 12:41 - 2006-10-03 23:21 - 00330030 _____ () C:\Windows\system32\lxcehelp.chm 2014-02-11 12:41 - 2005-12-12 06:15 - 00983091 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lxcegf.dll 2014-02-11 12:41 - 2005-12-12 06:15 - 00983091 _____ (Microsoft Corporation) C:\Windows\system32\lxcegf.dll 2014-02-11 09:41 - 2014-02-11 09:41 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Subsembly 2014-02-10 21:18 - 2014-02-10 21:18 - 00000799 _____ () C:\Users\Kerstin\Desktop\JRT.txt 2014-02-10 21:15 - 2014-02-10 21:15 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 21:14 - 2014-02-10 21:14 - 01037530 _____ (Thisisu) C:\Users\Kerstin\Desktop\JRT_6.1.1.exe 2014-02-10 18:34 - 2014-02-10 18:34 - 00016709 _____ () C:\Users\Kerstin\Desktop\Addition.txt 2014-02-10 18:33 - 2014-02-12 18:59 - 00015722 _____ () C:\Users\Kerstin\Desktop\FRST.txt 2014-02-10 18:33 - 2014-02-12 18:59 - 00000000 ____D () C:\FRST 2014-02-10 18:32 - 2014-02-11 17:11 - 02151424 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST64.exe 2014-02-10 16:40 - 2014-02-10 16:40 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-10 14:43 - 2014-02-10 14:43 - 01166132 _____ () C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Malwarebytes 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-10 11:10 - 2014-02-10 11:11 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Kerstin\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-10 10:32 - 2014-02-10 21:10 - 00000000 ____D () C:\AdwCleaner 2014-02-10 10:32 - 2014-02-10 10:32 - 01166132 _____ () C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe 2014-02-07 17:54 - 2014-02-07 17:54 - 00000713 _____ () C:\Users\Sid\Desktop\Sid_Arbeitsplatz.lnk 2014-02-07 10:21 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Kerstin\Desktop\Amazon.lnk 2014-02-06 10:40 - 2014-02-06 10:40 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-02-06 09:49 - 2014-02-06 09:50 - 140300048 _____ () C:\Users\Kerstin\Downloads\avira_antivirus_suite_de.exe 2014-02-06 09:26 - 2014-02-06 09:26 - 02482750 _____ () C:\Users\Kerstin\Downloads\_Angebot 2014-02-06 09:25 - 2014-02-06 09:25 - 01409527 _____ () C:\Users\Kerstin\Downloads\chalet werbung Dez. 13.zip 2014-02-06 09:10 - 2014-02-06 09:10 - 02499632 _____ () C:\Users\Kerstin\Downloads\Outlook.zip 2014-02-06 09:05 - 2014-02-06 09:05 - 02148771 _____ () C:\Users\Kerstin\Downloads\WG chalet kitzbichl anfr. hr. weichselbaumer.zip 2014-02-05 13:09 - 2014-02-05 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 08:13 - 2014-02-02 21:19 - 00001367 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (1).lnk 2014-02-04 12:58 - 2014-02-04 12:58 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Microsoft Help 2014-02-04 08:33 - 2014-02-04 08:33 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00001790 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iTunes 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iPod 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-04 08:28 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\ProgramData\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-02-04 08:11 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Kerstin\Desktop\2013_04_Drachensilber_SCHWEIZ_brielabel.lbx 2014-02-04 08:04 - 2014-02-04 08:05 - 148904784 _____ (Apple Inc.) C:\Users\Kerstin\Downloads\iTunes64Setup.exe 2014-02-03 13:11 - 2014-02-03 13:11 - 00000000 ____D () C:\Users\Kerstin\Documents\Dokumente 2014-02-03 10:13 - 2014-02-03 10:13 - 00000000 ____D () C:\Users\Sid\AppData\Local\Okidata 2014-02-03 10:11 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Sid\Desktop\Amazon_Bewertung.lnk 2014-02-03 10:09 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Sid\Desktop\Schnittstellen.lnk 2014-02-03 10:07 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Sid\Desktop\KommServer.lnk 2014-02-03 09:06 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Kerstin\Desktop\Schnittstelle.lnk 2014-02-03 07:06 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Kerstin\Desktop\KommNikServerMdbConnector - Verknüpfung.lnk 2014-02-03 07:03 - 2014-02-03 07:03 - 00001573 _____ () C:\Users\Sid\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-02-02 21:10 - 2013-05-31 09:48 - 00000611 _____ () C:\Users\Kerstin\Desktop\Gesamt_Sorti.lnk 2014-02-02 21:10 - 2013-03-05 11:58 - 00000529 _____ () C:\Users\Kerstin\Desktop\Ware bestellen.lnk 2014-02-02 21:09 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Kerstin\Desktop\Merkliste.lnk 2014-02-02 21:05 - 2014-01-14 18:09 - 00000607 _____ () C:\Users\Sid\Desktop\2014_Rechnungen.lnk 2014-02-02 21:04 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Sid\Desktop\Merkliste.lnk 2014-02-02 21:02 - 2014-02-03 09:43 - 00001315 _____ () C:\Users\Sid\Desktop\2014_Einnahmen.lnk 2014-02-02 20:58 - 2014-02-02 20:58 - 00000000 ____D () C:\Users\Sid\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-02 12:49 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Local\Adobe 2014-02-02 12:33 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Sid\Desktop\SCHWEIZ + NN Label.lbx 2014-02-02 12:28 - 2014-01-30 13:14 - 00000813 _____ () C:\Users\Sid\Desktop\DE_Label.lnk 2014-02-02 12:25 - 2014-02-02 12:25 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Brother 2014-02-01 23:50 - 2014-02-02 12:21 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Thunderbird 2014-02-01 23:50 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Local\Thunderbird 2014-02-01 22:32 - 2014-02-01 22:33 - 126829760 _____ (DATA BECKER ) C:\Users\Kerstin\Downloads\ws2d8_8s_sp5.exe 2014-02-01 19:37 - 2014-02-12 11:30 - 00005122 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Mozilla 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Local\Mozilla 2014-02-01 18:52 - 2014-02-06 08:57 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\ProtectDISC 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\Documents\web to date Projekte 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Local\DATA BECKER 2014-02-01 18:46 - 2014-02-01 18:46 - 00136208 _____ () C:\Users\Sid\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-01 18:44 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Adobe 2014-02-01 18:44 - 2014-02-01 18:44 - 00001421 _____ () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Vorlagen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Startmenü 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Netzwerkumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Lokale Einstellungen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Eigene Dateien 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Druckumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Musik 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Bilder 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Verlauf 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Power2Go8 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Packages 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid 2014-02-01 18:44 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Sid\ntuser.ini 2014-02-01 18:44 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-02-01 18:44 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-02-01 18:42 - 2014-02-04 16:30 - 00000000 ____D () C:\Users\Kerstin\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\Windows Multipoint Server 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\NComputing 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\DIFX 2014-02-01 18:01 - 2014-02-01 18:01 - 00003442 _____ () C:\Windows\System32\Tasks\{44808670-A833-4543-A834-80458BA98216} 2014-01-31 12:33 - 2014-02-12 17:31 - 00005138 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox 2014-01-31 12:26 - 2014-01-31 12:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-31 12:25 - 2014-02-01 19:23 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-01-31 12:24 - 2014-01-31 12:24 - 00575168 _____ (Microsoft Corporation) C:\Users\Kerstin\Downloads\Setup.X86.de-de_O365SmallBusPremRetail_70a0572d-295c-43ae-b690-afa0e6a0acc5_TX_PR_.exe 2014-01-31 10:05 - 2014-02-12 18:00 - 00000000 ____D () C:\ProgramData\firebird 2014-01-31 10:01 - 2014-01-31 10:04 - 00000000 ____D () C:\Program Files (x86)\Amicron-Faktura 11.0 2014-01-31 10:01 - 2014-01-31 10:01 - 00001093 _____ () C:\Users\Public\Desktop\Amicron-Faktura 11.0.lnk 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Users\Public\Documents\Amicron-Data 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Firebird 2014-01-31 10:01 - 2012-11-01 12:01 - 00462848 _____ (IBPhoenix) C:\Windows\SysWOW64\Firebird2Control.cpl 2014-01-31 10:01 - 2012-11-01 11:59 - 00552960 _____ (Firebird Project) C:\Windows\SysWOW64\GDS32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00200704 _____ (DATEV eG Nürnberg) C:\Windows\SysWOW64\SELF32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00020864 _____ () C:\Windows\SysWOW64\SELF32.TBL 2014-01-31 10:01 - 2003-04-01 07:00 - 00015156 _____ () C:\Windows\SysWOW64\SELF32.INI 2014-01-31 09:38 - 2014-01-31 09:39 - 90367905 _____ () C:\Users\Kerstin\Downloads\AF11-Setup.exe 2014-01-30 15:39 - 2014-01-30 17:20 - 00004096 _____ () C:\Users\Public\Documents\00002B92.LCS 2014-01-30 15:38 - 2014-02-03 07:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\ProtectDisc 2014-01-30 15:38 - 2014-01-30 15:38 - 00002215 _____ () C:\Users\Public\Desktop\shop to date 8 pro.lnk 2014-01-30 15:37 - 2006-07-01 03:25 - 00151552 _____ (Info-ZIP) C:\Windows\SysWOW64\w2dzip32.dll 2014-01-30 15:35 - 2014-02-05 16:51 - 00000000 ____D () C:\Program Files (x86)\DATA BECKER 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\web to date Projekte 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\Erzeugte Websites 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\DATA BECKER 2014-01-30 15:35 - 2004-03-09 16:45 - 00132880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00260880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx 2014-01-30 15:35 - 2003-07-14 14:22 - 00132360 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00144640 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00132344 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00279800 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00148736 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.ocx 2014-01-30 15:35 - 2003-03-22 11:50 - 00173304 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MimeX.dll 2014-01-30 15:35 - 2002-11-21 13:38 - 00099576 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MabryObj.dll 2014-01-30 15:35 - 2002-10-07 11:42 - 00152824 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.dll 2014-01-30 15:35 - 2002-01-23 08:27 - 00628736 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltocx12n.ocx 2014-01-30 15:35 - 2002-01-23 08:19 - 00328704 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfcmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:18 - 00035328 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfgif12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00751616 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltann12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00207872 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltefx12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00164864 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltimg12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00035840 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lttwn12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00030720 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfbmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00406016 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltkrn12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00259072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltdis12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00131072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltfil12n.DLL 2014-01-30 15:35 - 2001-07-17 07:02 - 00446464 _____ () C:\Windows\SysWOW64\Tx32.dll 2014-01-30 15:35 - 2001-07-17 00:19 - 00290816 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\Tx4ole.ocx 2014-01-30 15:35 - 2001-07-05 00:41 - 00135168 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_htm32.dll 2014-01-30 15:35 - 2001-06-27 02:10 - 00131072 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_rtf32.dll 2014-01-30 15:35 - 2000-12-13 01:41 - 00323584 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_word.dll 2014-01-30 15:35 - 2000-12-13 01:12 - 00327680 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txobj32.dll 2014-01-30 15:35 - 2000-10-16 02:43 - 00045056 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_tif32.flt 2014-01-30 15:35 - 2000-10-16 01:32 - 00061440 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\wndtls32.dll 2014-01-30 15:35 - 2000-10-16 01:25 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_bmp32.flt 2014-01-30 15:35 - 2000-10-16 01:12 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_wmf32.flt 2014-01-30 15:35 - 2000-10-12 01:50 - 00081920 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txtls32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00069632 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\ic32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00000151 _____ () C:\Windows\SysWOW64\ic32.ini 2014-01-30 15:35 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb6de.dll 2014-01-30 15:35 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-01-30 15:35 - 2000-05-21 23:00 - 00647872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx 2014-01-30 15:35 - 1999-09-28 20:42 - 01050896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet35.dll 2014-01-30 15:35 - 1999-08-25 13:57 - 00415504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl35.dll 2014-01-30 15:35 - 1999-03-26 02:00 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscmcde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscc2de.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\flxgdde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdlgde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetde.dll 2014-01-30 15:35 - 1998-06-17 23:00 - 00089360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb5db.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00252176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00148240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00024848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter35.dll 2014-01-30 15:21 - 2014-01-30 15:22 - 454279096 _____ (DATA BECKER GmbH & Co. KG ) C:\Users\Kerstin\Downloads\s2d8pro_r1.exe 2014-01-30 12:57 - 2014-02-10 09:59 - 00000729 _____ () C:\Users\Kerstin\Desktop\DE_Label.lnk 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\Documents\Eigene Etiketten 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Brother 2014-01-30 12:13 - 2014-01-30 12:15 - 00000000 ____D () C:\Program Files\Brother_P-touch 2014-01-30 12:11 - 2014-01-30 12:11 - 01601536 _____ () C:\Users\Kerstin\Downloads\qd560w550avt64ger.exe 2014-01-30 12:03 - 2014-01-30 12:03 - 00001878 _____ () C:\Users\Public\Desktop\P-touch Editor 5.1.lnk 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-01-30 11:57 - 2014-01-30 11:57 - 50049648 _____ (Brother Industries, Ltd. ) C:\Users\Kerstin\Downloads\pew51005ager.exe 2014-01-30 11:39 - 2014-01-30 11:39 - 00002093 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2014-01-30 10:55 - 2014-02-05 11:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Thunderbird 2014-01-30 10:55 - 2014-01-30 11:33 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Thunderbird 2014-01-30 10:54 - 2014-01-30 10:54 - 21981704 _____ (Mozilla) C:\Users\Kerstin\Downloads\Thunderbird Setup 24.2.0.exe 2014-01-30 09:22 - 2014-01-30 09:22 - 00001629 _____ () C:\Users\Kerstin\Desktop\FileZilla.lnk 2014-01-30 09:20 - 2014-02-04 14:54 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\FileZilla 2014-01-30 09:18 - 2014-01-30 09:19 - 00000000 ____D () C:\Program Files\Filezilla 2014-01-30 09:16 - 2014-01-30 09:16 - 07241860 _____ () C:\Users\Kerstin\Downloads\FileZilla_3.7.3_win32.zip 2014-01-30 08:47 - 2014-01-30 11:48 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\SuperMailer 2014-01-30 08:47 - 2014-01-30 11:47 - 00000000 ____D () C:\Program Files\SuperMailer 2014-01-30 08:47 - 2014-01-30 08:47 - 00000804 _____ () C:\Users\Kerstin\Desktop\SuperMailer.lnk 2014-01-30 08:44 - 2014-01-30 08:44 - 28054257 _____ () C:\Users\Kerstin\Downloads\smsw_x64.zip 2014-01-29 18:08 - 2014-01-29 18:08 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Okidata 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Adobe 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Program Files\Okidata 2014-01-29 17:59 - 2013-02-05 08:58 - 00000104 _____ () C:\Windows\system32\opnetext.ver 2014-01-29 17:59 - 2013-02-04 16:00 - 00003894 _____ () C:\Windows\system32\opnedef.str 2014-01-29 17:59 - 2013-01-29 18:39 - 00130048 ____N (Oki Data Corporation) C:\Windows\system32\opnetext.dll 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\SysWOW64\opnetext.hlp 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\system32\OPNETEXT.HLP 2014-01-29 17:59 - 2013-01-29 10:03 - 00005832 ____N () C:\Windows\system32\license.txt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\SysWOW64\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\system32\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\SysWOW64\opnetext.gid 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\system32\OPNETEXT.GID 2014-01-29 17:58 - 2014-01-29 17:58 - 00000000 ____D () C:\ProgramData\Okidata 2014-01-29 17:54 - 2014-01-29 17:54 - 00000000 ____D () C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105 2014-01-29 17:54 - 2009-06-25 11:00 - 00027648 _____ (Oki Data Corporation) C:\Windows\system32\OKLMON64.DLL 2014-01-29 17:52 - 2014-01-29 17:53 - 07757512 _____ (Oki Data Corporation) C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105.exe 2014-01-29 17:31 - 2014-02-01 18:59 - 00000000 ____D () C:\Program Files (x86)\Password Keeper 2001 2014-01-29 17:31 - 2014-01-29 17:31 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Keeper 2001 2014-01-29 17:29 - 2014-01-29 17:29 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-01-29 16:55 - 2014-01-29 16:55 - 00001573 _____ () C:\Users\Kerstin\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-01-29 16:32 - 2014-01-29 16:32 - 129598176 _____ () C:\Users\Kerstin\Downloads\avira_free344_antivirus_de.exe 2014-01-29 16:29 - 2014-02-10 16:34 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Mozilla 2014-01-29 16:29 - 2014-01-29 16:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Mozilla 2014-01-29 16:29 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-29 13:59 - 2014-01-31 13:02 - 00135328 _____ () C:\Users\Kerstin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-29 13:57 - 2014-02-12 13:34 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-29 13:57 - 2014-02-04 11:39 - 00000000 ____D () C:\Users\Kerstin 2014-01-29 13:57 - 2014-01-31 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\VirtualStore 2014-01-29 13:57 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Adobe 2014-01-29 13:57 - 2014-01-29 13:57 - 00001421 _____ () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Vorlagen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Startmenü 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Netzwerkumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Lokale Einstellungen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Eigene Dateien 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Druckumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Musik 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Bilder 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Verlauf 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Power2Go8 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Packages 2014-01-29 13:57 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Kerstin\ntuser.ini 2014-01-29 13:57 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-29 13:57 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-29 13:56 - 2014-02-12 18:44 - 00619857 _____ () C:\Windows\WindowsUpdate.log 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 __SHD () C:\Recovery 2014-01-22 19:22 - 2014-02-12 17:09 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-01-22 19:22 - 2013-12-19 21:33 - 02498848 _____ (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe 2014-01-22 19:22 - 2013-12-19 21:33 - 00004084 _____ () C:\Windows\system32\nvPerfProvider.man 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:21 - 00000000 ____D () C:\Users\Public\CyberLink 2014-01-22 19:21 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvir3dgenco6420172.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00451872 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00357152 _____ () C:\Windows\system32\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00314656 _____ () C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00023754 _____ () C:\Windows\system32\nvinfo.pb 2014-01-22 19:21 - 2013-12-19 19:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-01-22 19:21 - 2013-12-19 19:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-01-22 19:21 - 2013-12-19 06:01 - 03539040 _____ () C:\Windows\system32\nvcoproc.bin 2014-01-22 19:21 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-22 19:21 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-22 19:21 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-01-22 13:45 - 2014-01-22 13:45 - 00098489 _____ () C:\TN1388179.MHT 2014-01-17 16:04 - 2014-01-17 16:04 - 00002043 _____ () C:\Users\Public\Desktop\CyberLink Media Suite 10.lnk 2014-01-17 16:03 - 2014-01-17 16:04 - 00000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-01-17 16:02 - 2014-01-17 16:04 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-17 16:02 - 2014-01-17 16:03 - 00000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2014-01-17 16:02 - 2014-01-17 16:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-01-17 16:01 - 2014-01-17 16:06 - 00000000 ____D () C:\ProgramData\CyberLink 2014-01-17 16:01 - 2014-01-17 16:03 - 00000000 ____D () C:\ProgramData\install_clap 2014-01-17 16:01 - 2014-01-17 16:02 - 00000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-01-17 16:01 - 2014-01-17 16:02 - 00000000 ____D () C:\ProgramData\CLSK 2014-01-17 09:02 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-01-17 09:02 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-01-17 09:02 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-01-17 09:02 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-01-17 09:02 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-01-17 09:02 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-01-17 09:02 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-01-17 09:02 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-01-17 09:02 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-01-17 09:02 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-01-17 09:02 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-01-17 09:02 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-01-17 09:02 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-01-17 09:02 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-17 08:48 - 2014-01-17 08:51 - 00009844 _____ () C:\Windows\IE11_main.log 2014-01-17 08:43 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-17 08:43 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-17 08:43 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-17 08:36 - 2014-01-17 08:36 - 00017840 _____ () C:\Windows\system32\results.xml 2014-01-17 08:34 - 2014-01-29 14:06 - 00000000 ____D () C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2014-01-17 08:34 - 2014-01-17 08:34 - 00001343 _____ () C:\Users\Public\Desktop\Intel(R) Small Business Advantage.lnk 2014-01-17 08:33 - 2014-01-17 08:33 - 00002026 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-17 08:32 - 2014-02-01 17:44 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-17 08:32 - 2014-01-17 16:04 - 00000000 ____D () C:\Windows\tmp 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-17 08:32 - 2013-10-07 14:52 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-01-17 08:32 - 2013-10-07 14:52 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-01-17 08:32 - 2013-08-15 13:34 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2014-01-17 08:31 - 2013-05-15 18:09 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-01-17 08:30 - 2014-01-17 08:36 - 00000000 ____D () C:\ProgramData\Intel 2014-01-17 08:30 - 2014-01-17 08:33 - 00000000 ____D () C:\Program Files\Intel 2014-01-17 08:29 - 2014-01-17 08:34 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files\Realtek 2014-01-17 08:29 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-17 08:29 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-17 08:29 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-17 08:29 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-17 08:29 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-17 08:29 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-17 08:29 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-17 08:29 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-17 08:29 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-17 08:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-17 08:29 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-17 08:29 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-17 08:29 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-17 08:28 - 2014-01-29 17:59 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-17 08:28 - 2014-01-17 08:28 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-17 08:28 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-17 08:28 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-17 08:28 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-17 08:28 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-17 08:28 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-17 08:28 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-17 08:28 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-17 08:28 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-17 08:28 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-17 08:28 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-17 08:28 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-17 08:28 - 2013-09-13 18:44 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-17 08:28 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-17 08:28 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-17 08:28 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-17 08:28 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-17 08:28 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-17 08:28 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-17 08:28 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-17 08:28 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-17 08:28 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-17 08:28 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-17 08:28 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-17 08:28 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-01-16 18:09 - 2012-05-07 17:04 - 00028672 _____ (ASUSTek Computer Inc.) LG Kerstin Da gestern abend dann ein Ausfall auf der Seite war, kommt die neue FRST erst jetzt: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01 Ran by Kerstin (administrator) on PCTAROX on 12-02-2014 18:59:52 Running from C:\Users\Kerstin\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (DATA BECKER GmbH & Co KG) C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe ( ) C:\Windows\system32\lxcecoms.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe (NComputing Inc.) C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (NComputing, Inc.) C:\Program Files\NComputing\NComputing vSpace\NCTRAY.EXE (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\system32\LogonUI.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7204568 2013-11-04] (Realtek Semiconductor) HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2747680 2013-12-19] () HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-05-15] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-08-15] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [CLMLServer_For_P2G8] - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491632 2012-09-26] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1778640 2013-12-20] (APN) HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Startup: C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localoem.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://localoem.msn.com SearchScopes: HKLM - DefaultScope {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; SearchScopes: HKLM-x32 - {34A6ADE8-153E-4AC1-BD85-E96E49F603A6} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS; BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\qzou934j.default-1392063583983 FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @protectdisc.com/NPPDLicenseHelper - C:\Users\Kerstin\AppData\Roaming\ProtectDisc\License Helper v2\NPPDLicenseHelper.dll ( ) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Kerstin\AppData\Roaming\Mozilla\Firefox\Profiles\qzou934j.default-1392063583983\Extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi [2013-12-20] FF HKLM\...\Firefox\Extensions: [{21EAF666-26B3-4a3c-ABD0-CA2F5A326744}] - C:\Program Files\V-bates\Firefox ==================== Services (Whitelisted) ================= R2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [908856 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-29] () R2 DBService; C:\Program Files (x86)\Common Files\DATA BECKER Shared\DBService.exe [189776 2010-10-28] (DATA BECKER GmbH & Co KG) R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2012-11-01] (Firebird Project) R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2012-11-01] (Firebird Project) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [54976 2013-09-24] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-15] (Intel Corporation) R2 lxce_device; C:\Windows\system32\lxcecoms.exe [566704 2007-03-08] ( ) R2 lxce_device; C:\Windows\SysWOW64\lxcecoms.exe [537520 2007-03-08] ( ) R2 NCBootSrv; C:\Program Files\NComputing\NComputing vSpace\Bootsrv\BOOTSRV.EXE [556888 2013-01-30] (NComputing Inc.) R2 NCWTService; C:\Program Files\NComputing\NComputing vSpace\NCWTService.exe [1938632 2013-01-30] (NComputing, Inc.) R2 NVWMI; C:\Windows\system32\nvwmi64.exe [2498848 2013-12-19] (NVIDIA Corporation) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S3 3wareDrv; C:\Windows\system32\drivers\3wareDrv.sys [102400 2009-08-31] (AMCC) S3 adp3132; C:\Windows\system32\drivers\adp3132.sys [385072 2010-01-28] (Adaptec, Inc.) S3 asahci64; C:\Windows\system32\drivers\asahci64.sys [36448 2011-03-23] (Asmedia Technology) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2012-05-07] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG) R1 HpVcard; C:\Windows\System32\drivers\hpvcard.sys [24776 2013-01-30] (NComputing, Inc.) R1 hstd; C:\Windows\System32\drivers\hstd.sys [89800 2013-01-30] (NComputing, Inc.) R3 htsatran; C:\Windows\System32\DRIVERS\htsatran.sys [181448 2013-01-30] (NComputing, Inc.) R3 HtsBusEnum; C:\Windows\System32\DRIVERS\HtsBus.sys [45768 2013-01-30] (NComputing, Inc.) R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28656 2013-03-18] (Intel Corporation) S3 iaStorS; C:\Windows\system32\drivers\iaStorS.sys [636184 2011-12-06] (Intel Corporation) S3 megasas2; C:\Windows\system32\drivers\megasas2.sys [52048 2012-11-07] (LSI Corporation) S3 MegaSR1; C:\Windows\system32\drivers\MegaSR1.sys [521512 2011-07-28] (LSI Corporation, Inc.) S3 MTsensor; C:\Windows\system32\drivers\ASACPI.sys [15416 2009-07-16] () R3 ncehci; C:\Windows\System32\DRIVERS\ncehci.sys [66248 2013-01-30] (NComputing, Inc.) R3 NcFsFltr; C:\Windows\System32\DRIVERS\NcFsFltr.sys [22216 2013-01-30] (NComputing, Inc.) R1 NcPciVga; C:\Windows\System32\drivers\NcWpsMs.sys [140488 2013-01-30] (NComputing, Inc.) S4 NcStore; C:\Windows\System32\drivers\NCStore.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbKeyboard; C:\Windows\System32\drivers\NcKbdCls.sys [43720 2013-01-30] (NComputing, Inc.) R1 NcUsbMouse; C:\Windows\System32\drivers\NcMouCls.sys [39624 2013-01-30] (NComputing, Inc.) S3 ocz10xx; C:\Windows\system32\drivers\ocz10xx.sys [137520 2011-07-08] (OCZ Technology Group, Inc.) R1 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\C:\oa3\asus\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-12 18:56 - 2014-02-12 18:56 - 00987425 _____ () C:\Users\Kerstin\Desktop\SecurityCheck.exe 2014-02-12 18:01 - 2014-02-12 18:01 - 02347384 _____ (ESET) C:\Users\Kerstin\Downloads\esetsmartinstaller_enu.exe 2014-02-12 13:34 - 2014-02-12 13:34 - 00000000 ____D () C:\Users\Kerstin\Documents\OneNote-Notizbücher 2014-02-12 13:26 - 2014-02-12 13:26 - 00001086 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk 2014-02-12 13:26 - 2014-02-12 13:26 - 00001066 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk 2014-02-12 13:26 - 2014-02-12 13:26 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\PDF24 2014-02-12 13:26 - 2014-02-12 13:26 - 00000000 ____D () C:\Program Files (x86)\PDF24 2014-02-12 13:25 - 2014-02-12 13:25 - 00614792 _____ (Chip Digital GmbH) C:\Users\Kerstin\Downloads\PDF24 Creator - CHIP-Downloader.exe 2014-02-12 11:20 - 2014-02-12 11:20 - 00001363 _____ () C:\Users\Kerstin\Desktop\2014_EK-Übersicht.lnk 2014-02-12 08:32 - 2014-02-12 08:32 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Avira 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\ProgramData\APN 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-02-12 07:46 - 2014-02-12 07:46 - 00002073 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Avira 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\ProgramData\Avira 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-12 07:46 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-02-12 07:46 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-02-12 07:46 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-02-12 07:46 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2014-02-11 17:11 - 2014-02-11 17:11 - 00000000 ____D () C:\Users\Kerstin\Desktop\FRST-OlderVersion 2014-02-11 12:41 - 2014-02-11 12:54 - 00004485 _____ () C:\Windows\system32\LexFiles.ulf 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files\Lexmark 4300 Series 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files (x86)\Lexmark 4300 Series 2014-02-11 12:41 - 2007-03-08 05:21 - 00566704 _____ ( ) C:\Windows\system32\lxcecoms.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00537520 _____ ( ) C:\Windows\SysWOW64\lxcecoms.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00385968 _____ ( ) C:\Windows\SysWOW64\lxceih.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00381872 _____ ( ) C:\Windows\SysWOW64\lxcecfg.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00236464 _____ ( ) C:\Windows\system32\lxcecfg.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00233392 _____ ( ) C:\Windows\system32\lxceih.exe 2014-02-11 12:41 - 2007-03-08 05:21 - 00181168 _____ ( ) C:\Windows\SysWOW64\lxceppls.exe 2014-02-11 12:41 - 2007-03-08 05:11 - 00002270 _____ () C:\Windows\SysWOW64\lxce.loc 2014-02-11 12:41 - 2007-03-08 05:11 - 00002270 _____ () C:\Windows\system32\lxce.loc 2014-02-11 12:41 - 2007-03-05 14:53 - 00090112 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceinsr.dll 2014-02-11 12:41 - 2007-03-05 14:53 - 00022016 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecur.dll 2014-02-11 12:41 - 2007-03-05 14:52 - 00115712 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcejswr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00131072 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcejswr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00106496 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceinsr.dll 2014-02-11 12:41 - 2007-03-05 14:51 - 00036864 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecur.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00216576 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceins.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00183808 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceinsb.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00095744 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecu.dll 2014-02-11 12:41 - 2007-03-05 14:49 - 00067584 _____ (Lexmark International, Inc.) C:\Windows\system32\lxcecub.dll 2014-02-11 12:41 - 2007-03-05 14:48 - 00628224 _____ (Lexmark International, Inc.) C:\Windows\system32\lxceutil.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00200704 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceinsb.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00155648 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceins.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00086016 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecub.dll 2014-02-11 12:41 - 2007-03-05 14:47 - 00073728 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxcecu.dll 2014-02-11 12:41 - 2007-03-05 14:46 - 00446464 _____ (Lexmark International, Inc.) C:\Windows\SysWOW64\lxceutil.dll 2014-02-11 12:41 - 2007-02-28 02:06 - 00059392 _____ (Lexmark International) C:\Windows\system32\lxcecfg.dll 2014-02-11 12:41 - 2007-02-28 02:05 - 00069632 _____ (Lexmark International) C:\Windows\SysWOW64\lxcecfg.dll 2014-02-11 12:41 - 2007-02-07 03:18 - 00385024 _____ () C:\Windows\SysWOW64\lxcecomx.dll 2014-02-11 12:41 - 2007-01-30 11:54 - 00410112 _____ ( ) C:\Windows\system32\lxcepmui.dll 2014-02-11 12:41 - 2007-01-30 11:51 - 01418240 _____ ( ) C:\Windows\system32\lxceserv.dll 2014-02-11 12:41 - 2007-01-30 11:42 - 00249856 _____ ( ) C:\Windows\system32\lxcecomm.dll 2014-02-11 12:41 - 2007-01-30 11:38 - 00488448 _____ ( ) C:\Windows\system32\lxcelmpm.dll 2014-02-11 12:41 - 2007-01-30 11:36 - 00194048 _____ () C:\Windows\system32\lxceinst.dll 2014-02-11 12:41 - 2007-01-30 11:35 - 00226816 _____ ( ) C:\Windows\system32\lxceiesc.dll 2014-02-11 12:41 - 2007-01-30 11:33 - 00010752 _____ ( ) C:\Windows\system32\lxcepplc.dll 2014-02-11 12:41 - 2007-01-30 11:31 - 00696320 _____ ( ) C:\Windows\system32\lxcecomc.dll 2014-02-11 12:41 - 2007-01-30 11:30 - 00035328 _____ ( ) C:\Windows\system32\lxceprox.dll 2014-02-11 12:41 - 2007-01-30 11:20 - 00238592 _____ ( ) C:\Windows\system32\lxceinpa.dll 2014-02-11 12:41 - 2007-01-30 11:19 - 01099776 _____ ( ) C:\Windows\system32\lxceusb1.dll 2014-02-11 12:41 - 2007-01-30 11:12 - 00305664 _____ ( ) C:\Windows\system32\lxcehcp.dll 2014-02-11 12:41 - 2007-01-30 11:10 - 00660480 _____ ( ) C:\Windows\system32\lxcehbn3.dll 2014-02-11 12:41 - 2007-01-30 10:47 - 00643072 _____ ( ) C:\Windows\SysWOW64\lxcepmui.dll 2014-02-11 12:41 - 2007-01-30 10:46 - 01224704 _____ ( ) C:\Windows\SysWOW64\lxceserv.dll 2014-02-11 12:41 - 2007-01-30 10:38 - 00421888 _____ ( ) C:\Windows\SysWOW64\lxcecomm.dll 2014-02-11 12:41 - 2007-01-30 10:36 - 00585728 _____ ( ) C:\Windows\SysWOW64\lxcelmpm.dll 2014-02-11 12:41 - 2007-01-30 10:35 - 00397312 _____ ( ) C:\Windows\SysWOW64\lxceiesc.dll 2014-02-11 12:41 - 2007-01-30 10:35 - 00274432 _____ () C:\Windows\SysWOW64\lxceinst.dll 2014-02-11 12:41 - 2007-01-30 10:32 - 00094208 _____ ( ) C:\Windows\SysWOW64\lxcepplc.dll 2014-02-11 12:41 - 2007-01-30 10:31 - 00684032 _____ ( ) C:\Windows\SysWOW64\lxcecomc.dll 2014-02-11 12:41 - 2007-01-30 10:30 - 00163840 _____ ( ) C:\Windows\SysWOW64\lxceprox.dll 2014-02-11 12:41 - 2007-01-30 10:22 - 00413696 _____ ( ) C:\Windows\SysWOW64\lxceinpa.dll 2014-02-11 12:41 - 2007-01-30 10:21 - 00995328 _____ ( ) C:\Windows\SysWOW64\lxceusb1.dll 2014-02-11 12:41 - 2007-01-30 10:17 - 00696320 _____ ( ) C:\Windows\SysWOW64\lxcehbn3.dll 2014-02-11 12:41 - 2006-10-03 23:21 - 00330030 _____ () C:\Windows\SysWOW64\lxcehelp.chm 2014-02-11 12:41 - 2006-10-03 23:21 - 00330030 _____ () C:\Windows\system32\lxcehelp.chm 2014-02-11 12:41 - 2005-12-12 06:15 - 00983091 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lxcegf.dll 2014-02-11 12:41 - 2005-12-12 06:15 - 00983091 _____ (Microsoft Corporation) C:\Windows\system32\lxcegf.dll 2014-02-11 09:41 - 2014-02-11 09:41 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Subsembly 2014-02-10 21:18 - 2014-02-10 21:18 - 00000799 _____ () C:\Users\Kerstin\Desktop\JRT.txt 2014-02-10 21:15 - 2014-02-10 21:15 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 21:14 - 2014-02-10 21:14 - 01037530 _____ (Thisisu) C:\Users\Kerstin\Desktop\JRT_6.1.1.exe 2014-02-10 18:34 - 2014-02-10 18:34 - 00016709 _____ () C:\Users\Kerstin\Desktop\Addition.txt 2014-02-10 18:33 - 2014-02-12 18:59 - 00015722 _____ () C:\Users\Kerstin\Desktop\FRST.txt 2014-02-10 18:33 - 2014-02-12 18:59 - 00000000 ____D () C:\FRST 2014-02-10 18:32 - 2014-02-11 17:11 - 02151424 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST64.exe 2014-02-10 16:40 - 2014-02-10 16:40 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-10 14:43 - 2014-02-10 14:43 - 01166132 _____ () C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Malwarebytes 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-10 11:10 - 2014-02-10 11:11 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Kerstin\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-10 10:32 - 2014-02-10 21:10 - 00000000 ____D () C:\AdwCleaner 2014-02-10 10:32 - 2014-02-10 10:32 - 01166132 _____ () C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe 2014-02-07 17:54 - 2014-02-07 17:54 - 00000713 _____ () C:\Users\Sid\Desktop\Sid_Arbeitsplatz.lnk 2014-02-07 10:21 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Kerstin\Desktop\Amazon.lnk 2014-02-06 10:40 - 2014-02-06 10:40 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-02-06 09:49 - 2014-02-06 09:50 - 140300048 _____ () C:\Users\Kerstin\Downloads\avira_antivirus_suite_de.exe 2014-02-06 09:26 - 2014-02-06 09:26 - 02482750 _____ () C:\Users\Kerstin\Downloads\_Angebot 2014-02-06 09:25 - 2014-02-06 09:25 - 01409527 _____ () C:\Users\Kerstin\Downloads\chalet werbung Dez. 13.zip 2014-02-06 09:10 - 2014-02-06 09:10 - 02499632 _____ () C:\Users\Kerstin\Downloads\Outlook.zip 2014-02-06 09:05 - 2014-02-06 09:05 - 02148771 _____ () C:\Users\Kerstin\Downloads\WG chalet kitzbichl anfr. hr. weichselbaumer.zip 2014-02-05 13:09 - 2014-02-05 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 08:13 - 2014-02-02 21:19 - 00001367 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (1).lnk 2014-02-04 12:58 - 2014-02-04 12:58 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Microsoft Help 2014-02-04 08:33 - 2014-02-04 08:33 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00001790 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iTunes 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iPod 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-04 08:28 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\ProgramData\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-02-04 08:11 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Kerstin\Desktop\2013_04_Drachensilber_SCHWEIZ_brielabel.lbx 2014-02-04 08:04 - 2014-02-04 08:05 - 148904784 _____ (Apple Inc.) C:\Users\Kerstin\Downloads\iTunes64Setup.exe 2014-02-03 13:11 - 2014-02-03 13:11 - 00000000 ____D () C:\Users\Kerstin\Documents\Dokumente |
13.02.2014, 09:57 | #10 |
| Passwidget Plagegeist - wie werde ich diesen wieder los? 2. Teil (ging leider nicht in ein Fenster: Code:
ATTFilter 2014-02-03 10:13 - 2014-02-03 10:13 - 00000000 ____D () C:\Users\Sid\AppData\Local\Okidata 2014-02-03 10:11 - 2013-10-04 18:26 - 00000601 _____ () C:\Users\Sid\Desktop\Amazon_Bewertung.lnk 2014-02-03 10:09 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Sid\Desktop\Schnittstellen.lnk 2014-02-03 10:07 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Sid\Desktop\KommServer.lnk 2014-02-03 09:06 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Kerstin\Desktop\Schnittstelle.lnk 2014-02-03 07:06 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Kerstin\Desktop\KommNikServerMdbConnector - Verknüpfung.lnk 2014-02-03 07:03 - 2014-02-03 07:03 - 00001573 _____ () C:\Users\Sid\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-02-02 21:10 - 2013-05-31 09:48 - 00000611 _____ () C:\Users\Kerstin\Desktop\Gesamt_Sorti.lnk 2014-02-02 21:10 - 2013-03-05 11:58 - 00000529 _____ () C:\Users\Kerstin\Desktop\Ware bestellen.lnk 2014-02-02 21:09 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Kerstin\Desktop\Merkliste.lnk 2014-02-02 21:05 - 2014-01-14 18:09 - 00000607 _____ () C:\Users\Sid\Desktop\2014_Rechnungen.lnk 2014-02-02 21:04 - 2014-01-13 18:56 - 00000667 _____ () C:\Users\Sid\Desktop\Merkliste.lnk 2014-02-02 21:02 - 2014-02-03 09:43 - 00001315 _____ () C:\Users\Sid\Desktop\2014_Einnahmen.lnk 2014-02-02 20:58 - 2014-02-02 20:58 - 00000000 ____D () C:\Users\Sid\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-02 12:49 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Local\Adobe 2014-02-02 12:33 - 2014-02-02 12:49 - 00002228 _____ () C:\Users\Sid\Desktop\SCHWEIZ + NN Label.lbx 2014-02-02 12:28 - 2014-01-30 13:14 - 00000813 _____ () C:\Users\Sid\Desktop\DE_Label.lnk 2014-02-02 12:25 - 2014-02-02 12:25 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Brother 2014-02-01 23:50 - 2014-02-02 12:21 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Thunderbird 2014-02-01 23:50 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Local\Thunderbird 2014-02-01 22:32 - 2014-02-01 22:33 - 126829760 _____ (DATA BECKER ) C:\Users\Kerstin\Downloads\ws2d8_8s_sp5.exe 2014-02-01 19:37 - 2014-02-12 11:30 - 00005122 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Mozilla 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Local\Mozilla 2014-02-01 18:52 - 2014-02-06 08:57 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\ProtectDISC 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\Documents\web to date Projekte 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Local\DATA BECKER 2014-02-01 18:46 - 2014-02-01 18:46 - 00136208 _____ () C:\Users\Sid\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-01 18:44 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Adobe 2014-02-01 18:44 - 2014-02-01 18:44 - 00001421 _____ () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Vorlagen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Startmenü 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Netzwerkumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Lokale Einstellungen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Eigene Dateien 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Druckumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Musik 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Bilder 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Verlauf 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Power2Go8 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Packages 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid 2014-02-01 18:44 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Sid\ntuser.ini 2014-02-01 18:44 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-02-01 18:44 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-02-01 18:42 - 2014-02-04 16:30 - 00000000 ____D () C:\Users\Kerstin\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\Windows Multipoint Server 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\NComputing 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\DIFX 2014-02-01 18:01 - 2014-02-01 18:01 - 00003442 _____ () C:\Windows\System32\Tasks\{44808670-A833-4543-A834-80458BA98216} 2014-01-31 12:33 - 2014-02-12 17:31 - 00005138 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox 2014-01-31 12:26 - 2014-01-31 12:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-31 12:25 - 2014-02-01 19:23 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-01-31 12:24 - 2014-01-31 12:24 - 00575168 _____ (Microsoft Corporation) C:\Users\Kerstin\Downloads\Setup.X86.de-de_O365SmallBusPremRetail_70a0572d-295c-43ae-b690-afa0e6a0acc5_TX_PR_.exe 2014-01-31 10:05 - 2014-02-12 18:00 - 00000000 ____D () C:\ProgramData\firebird 2014-01-31 10:01 - 2014-01-31 10:04 - 00000000 ____D () C:\Program Files (x86)\Amicron-Faktura 11.0 2014-01-31 10:01 - 2014-01-31 10:01 - 00001093 _____ () C:\Users\Public\Desktop\Amicron-Faktura 11.0.lnk 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Users\Public\Documents\Amicron-Data 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Firebird 2014-01-31 10:01 - 2012-11-01 12:01 - 00462848 _____ (IBPhoenix) C:\Windows\SysWOW64\Firebird2Control.cpl 2014-01-31 10:01 - 2012-11-01 11:59 - 00552960 _____ (Firebird Project) C:\Windows\SysWOW64\GDS32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00200704 _____ (DATEV eG Nürnberg) C:\Windows\SysWOW64\SELF32.DLL 2014-01-31 10:01 - 2003-04-01 07:00 - 00020864 _____ () C:\Windows\SysWOW64\SELF32.TBL 2014-01-31 10:01 - 2003-04-01 07:00 - 00015156 _____ () C:\Windows\SysWOW64\SELF32.INI 2014-01-31 09:38 - 2014-01-31 09:39 - 90367905 _____ () C:\Users\Kerstin\Downloads\AF11-Setup.exe 2014-01-30 15:39 - 2014-01-30 17:20 - 00004096 _____ () C:\Users\Public\Documents\00002B92.LCS 2014-01-30 15:38 - 2014-02-03 07:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\ProtectDisc 2014-01-30 15:38 - 2014-01-30 15:38 - 00002215 _____ () C:\Users\Public\Desktop\shop to date 8 pro.lnk 2014-01-30 15:37 - 2006-07-01 03:25 - 00151552 _____ (Info-ZIP) C:\Windows\SysWOW64\w2dzip32.dll 2014-01-30 15:35 - 2014-02-05 16:51 - 00000000 ____D () C:\Program Files (x86)\DATA BECKER 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\web to date Projekte 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\Erzeugte Websites 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\DATA BECKER 2014-01-30 15:35 - 2004-03-09 16:45 - 00132880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00260880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-01-30 15:35 - 2004-03-09 00:00 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx 2014-01-30 15:35 - 2003-07-14 14:22 - 00132360 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00144640 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.ocx 2014-01-30 15:35 - 2003-06-06 19:19 - 00132344 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\PopX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00279800 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.dll 2014-01-30 15:35 - 2003-06-03 10:04 - 00148736 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\FtpX.ocx 2014-01-30 15:35 - 2003-03-22 11:50 - 00173304 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MimeX.dll 2014-01-30 15:35 - 2002-11-21 13:38 - 00099576 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\MabryObj.dll 2014-01-30 15:35 - 2002-10-07 11:42 - 00152824 _____ (Mabry Software, Inc.) C:\Windows\SysWOW64\EncodeX.dll 2014-01-30 15:35 - 2002-01-23 08:27 - 00628736 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltocx12n.ocx 2014-01-30 15:35 - 2002-01-23 08:19 - 00328704 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfcmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:18 - 00035328 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfgif12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00751616 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltann12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00207872 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltefx12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00164864 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltimg12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00035840 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lttwn12n.dll 2014-01-30 15:35 - 2002-01-23 08:17 - 00030720 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\lfbmp12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00406016 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltkrn12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00259072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltdis12n.dll 2014-01-30 15:35 - 2002-01-23 08:16 - 00131072 _____ (LEAD Technologies, Inc.) C:\Windows\SysWOW64\ltfil12n.DLL 2014-01-30 15:35 - 2001-07-17 07:02 - 00446464 _____ () C:\Windows\SysWOW64\Tx32.dll 2014-01-30 15:35 - 2001-07-17 00:19 - 00290816 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\Tx4ole.ocx 2014-01-30 15:35 - 2001-07-05 00:41 - 00135168 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_htm32.dll 2014-01-30 15:35 - 2001-06-27 02:10 - 00131072 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_rtf32.dll 2014-01-30 15:35 - 2000-12-13 01:41 - 00323584 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_word.dll 2014-01-30 15:35 - 2000-12-13 01:12 - 00327680 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txobj32.dll 2014-01-30 15:35 - 2000-10-16 02:43 - 00045056 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_tif32.flt 2014-01-30 15:35 - 2000-10-16 01:32 - 00061440 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\wndtls32.dll 2014-01-30 15:35 - 2000-10-16 01:25 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_bmp32.flt 2014-01-30 15:35 - 2000-10-16 01:12 - 00032768 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\tx_wmf32.flt 2014-01-30 15:35 - 2000-10-12 01:50 - 00081920 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\txtls32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00069632 _____ (The Imaging Source Europe GmbH) C:\Windows\SysWOW64\ic32.dll 2014-01-30 15:35 - 2000-10-06 02:24 - 00000151 _____ () C:\Windows\SysWOW64\ic32.ini 2014-01-30 15:35 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb6de.dll 2014-01-30 15:35 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-01-30 15:35 - 2000-05-21 23:00 - 00647872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx 2014-01-30 15:35 - 1999-09-28 20:42 - 01050896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet35.dll 2014-01-30 15:35 - 1999-08-25 13:57 - 00415504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrepl35.dll 2014-01-30 15:35 - 1999-03-26 02:00 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscmcde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscc2de.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\flxgdde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdlgde.dll 2014-01-30 15:35 - 1998-07-05 23:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetde.dll 2014-01-30 15:35 - 1998-06-17 23:00 - 00089360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb5db.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00252176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00148240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjint35.dll 2014-01-30 15:35 - 1998-04-23 23:00 - 00024848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjter35.dll 2014-01-30 15:21 - 2014-01-30 15:22 - 454279096 _____ (DATA BECKER GmbH & Co. KG ) C:\Users\Kerstin\Downloads\s2d8pro_r1.exe 2014-01-30 12:57 - 2014-02-10 09:59 - 00000729 _____ () C:\Users\Kerstin\Desktop\DE_Label.lnk 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\Documents\Eigene Etiketten 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Brother 2014-01-30 12:13 - 2014-01-30 12:15 - 00000000 ____D () C:\Program Files\Brother_P-touch 2014-01-30 12:11 - 2014-01-30 12:11 - 01601536 _____ () C:\Users\Kerstin\Downloads\qd560w550avt64ger.exe 2014-01-30 12:03 - 2014-01-30 12:03 - 00001878 _____ () C:\Users\Public\Desktop\P-touch Editor 5.1.lnk 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-01-30 11:57 - 2014-01-30 11:57 - 50049648 _____ (Brother Industries, Ltd. ) C:\Users\Kerstin\Downloads\pew51005ager.exe 2014-01-30 11:39 - 2014-01-30 11:39 - 00002093 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2014-01-30 10:55 - 2014-02-05 11:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Thunderbird 2014-01-30 10:55 - 2014-01-30 11:33 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Thunderbird 2014-01-30 10:54 - 2014-01-30 10:54 - 21981704 _____ (Mozilla) C:\Users\Kerstin\Downloads\Thunderbird Setup 24.2.0.exe 2014-01-30 09:22 - 2014-01-30 09:22 - 00001629 _____ () C:\Users\Kerstin\Desktop\FileZilla.lnk 2014-01-30 09:20 - 2014-02-04 14:54 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\FileZilla 2014-01-30 09:18 - 2014-01-30 09:19 - 00000000 ____D () C:\Program Files\Filezilla 2014-01-30 09:16 - 2014-01-30 09:16 - 07241860 _____ () C:\Users\Kerstin\Downloads\FileZilla_3.7.3_win32.zip 2014-01-30 08:47 - 2014-01-30 11:48 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\SuperMailer 2014-01-30 08:47 - 2014-01-30 11:47 - 00000000 ____D () C:\Program Files\SuperMailer 2014-01-30 08:47 - 2014-01-30 08:47 - 00000804 _____ () C:\Users\Kerstin\Desktop\SuperMailer.lnk 2014-01-30 08:44 - 2014-01-30 08:44 - 28054257 _____ () C:\Users\Kerstin\Downloads\smsw_x64.zip 2014-01-29 18:08 - 2014-01-29 18:08 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Okidata 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Adobe 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Program Files\Okidata 2014-01-29 17:59 - 2013-02-05 08:58 - 00000104 _____ () C:\Windows\system32\opnetext.ver 2014-01-29 17:59 - 2013-02-04 16:00 - 00003894 _____ () C:\Windows\system32\opnedef.str 2014-01-29 17:59 - 2013-01-29 18:39 - 00130048 ____N (Oki Data Corporation) C:\Windows\system32\opnetext.dll 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\SysWOW64\opnetext.hlp 2014-01-29 17:59 - 2013-01-29 10:03 - 00010359 ____N () C:\Windows\system32\OPNETEXT.HLP 2014-01-29 17:59 - 2013-01-29 10:03 - 00005832 ____N () C:\Windows\system32\license.txt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\SysWOW64\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000141 ____N () C:\Windows\system32\opnetext.cnt 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\SysWOW64\opnetext.gid 2014-01-29 17:59 - 2013-01-29 10:03 - 00000000 ____N () C:\Windows\system32\OPNETEXT.GID 2014-01-29 17:58 - 2014-01-29 17:58 - 00000000 ____D () C:\ProgramData\Okidata 2014-01-29 17:54 - 2014-01-29 17:54 - 00000000 ____D () C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105 2014-01-29 17:54 - 2009-06-25 11:00 - 00027648 _____ (Oki Data Corporation) C:\Windows\system32\OKLMON64.DLL 2014-01-29 17:52 - 2014-01-29 17:53 - 07757512 _____ (Oki Data Corporation) C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105.exe 2014-01-29 17:31 - 2014-02-01 18:59 - 00000000 ____D () C:\Program Files (x86)\Password Keeper 2001 2014-01-29 17:31 - 2014-01-29 17:31 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Keeper 2001 2014-01-29 17:29 - 2014-01-29 17:29 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-01-29 16:55 - 2014-01-29 16:55 - 00001573 _____ () C:\Users\Kerstin\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-01-29 16:32 - 2014-01-29 16:32 - 129598176 _____ () C:\Users\Kerstin\Downloads\avira_free344_antivirus_de.exe 2014-01-29 16:29 - 2014-02-10 16:34 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Mozilla 2014-01-29 16:29 - 2014-01-29 16:30 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Mozilla 2014-01-29 16:29 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-29 13:59 - 2014-01-31 13:02 - 00135328 _____ () C:\Users\Kerstin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-29 13:57 - 2014-02-12 13:34 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-29 13:57 - 2014-02-04 11:39 - 00000000 ____D () C:\Users\Kerstin 2014-01-29 13:57 - 2014-01-31 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\VirtualStore 2014-01-29 13:57 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Adobe 2014-01-29 13:57 - 2014-01-29 13:57 - 00001421 _____ () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Vorlagen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Startmenü 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Netzwerkumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Lokale Einstellungen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Eigene Dateien 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Druckumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Musik 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Bilder 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Verlauf 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Power2Go8 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Packages 2014-01-29 13:57 - 2010-11-21 03:50 - 00000020 ___SH () C:\Users\Kerstin\ntuser.ini 2014-01-29 13:57 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-01-29 13:57 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-01-29 13:56 - 2014-02-12 18:44 - 00619857 _____ () C:\Windows\WindowsUpdate.log 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 __SHD () C:\Recovery 2014-01-22 19:22 - 2014-02-12 17:09 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-01-22 19:22 - 2013-12-19 21:33 - 02498848 _____ (NVIDIA Corporation) C:\Windows\system32\nvwmi64.exe 2014-01-22 19:22 - 2013-12-19 21:33 - 00004084 _____ () C:\Windows\system32\nvPerfProvider.man 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:22 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:21 - 00000000 ____D () C:\Users\Public\CyberLink 2014-01-22 19:21 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvir3dgenco6420172.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00451872 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys 2014-01-22 19:21 - 2013-12-19 21:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00357152 _____ () C:\Windows\system32\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00314656 _____ () C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-01-22 19:21 - 2013-12-19 21:33 - 00023754 _____ () C:\Windows\system32\nvinfo.pb 2014-01-22 19:21 - 2013-12-19 19:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-01-22 19:21 - 2013-12-19 19:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2014-01-22 19:21 - 2013-12-19 19:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-01-22 19:21 - 2013-12-19 06:01 - 03539040 _____ () C:\Windows\system32\nvcoproc.bin 2014-01-22 19:21 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-01-22 19:21 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-01-22 19:21 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-01-22 13:45 - 2014-01-22 13:45 - 00098489 _____ () C:\TN1388179.MHT 2014-01-17 16:04 - 2014-01-17 16:04 - 00002043 _____ () C:\Users\Public\Desktop\CyberLink Media Suite 10.lnk 2014-01-17 16:03 - 2014-01-17 16:04 - 00000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-01-17 16:02 - 2014-01-17 16:04 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-17 16:02 - 2014-01-17 16:03 - 00000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2014-01-17 16:02 - 2014-01-17 16:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-01-17 16:01 - 2014-01-17 16:06 - 00000000 ____D () C:\ProgramData\CyberLink 2014-01-17 16:01 - 2014-01-17 16:03 - 00000000 ____D () C:\ProgramData\install_clap 2014-01-17 16:01 - 2014-01-17 16:02 - 00000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-01-17 16:01 - 2014-01-17 16:02 - 00000000 ____D () C:\ProgramData\CLSK 2014-01-17 09:02 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-01-17 09:02 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-01-17 09:02 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-01-17 09:02 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-01-17 09:02 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-01-17 09:02 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-01-17 09:02 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-01-17 09:02 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-01-17 09:02 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-01-17 09:02 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-01-17 09:02 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-01-17 09:02 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-01-17 09:02 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-01-17 09:02 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-01-17 09:02 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-01-17 09:02 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-01-17 09:02 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-01-17 09:02 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-01-17 09:02 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-01-17 09:02 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-01-17 09:02 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-01-17 09:02 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-17 08:48 - 2014-01-17 08:51 - 00009844 _____ () C:\Windows\IE11_main.log 2014-01-17 08:43 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-01-17 08:43 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-01-17 08:43 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-01-17 08:43 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-01-17 08:36 - 2014-01-17 08:36 - 00017840 _____ () C:\Windows\system32\results.xml 2014-01-17 08:34 - 2014-01-29 14:06 - 00000000 ____D () C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2014-01-17 08:34 - 2014-01-17 08:34 - 00001343 _____ () C:\Users\Public\Desktop\Intel(R) Small Business Advantage.lnk 2014-01-17 08:33 - 2014-01-17 08:33 - 00002026 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-17 08:32 - 2014-02-01 17:44 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-17 08:32 - 2014-01-17 16:04 - 00000000 ____D () C:\Windows\tmp 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-17 08:32 - 2013-10-07 14:52 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2014-01-17 08:32 - 2013-10-07 14:52 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL 2014-01-17 08:32 - 2013-08-15 13:34 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2014-01-17 08:31 - 2013-05-15 18:09 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2014-01-17 08:30 - 2014-01-17 08:36 - 00000000 ____D () C:\ProgramData\Intel 2014-01-17 08:30 - 2014-01-17 08:33 - 00000000 ____D () C:\Program Files\Intel 2014-01-17 08:29 - 2014-01-17 08:34 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files\Realtek 2014-01-17 08:29 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-01-17 08:29 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-01-17 08:29 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-01-17 08:29 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-01-17 08:29 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-01-17 08:29 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-01-17 08:29 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-01-17 08:29 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-01-17 08:29 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-01-17 08:29 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-01-17 08:29 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-01-17 08:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-01-17 08:29 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-01-17 08:29 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-01-17 08:29 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-01-17 08:29 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-01-17 08:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-01-17 08:28 - 2014-01-29 17:59 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-17 08:28 - 2014-01-17 08:28 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-17 08:28 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-01-17 08:28 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-01-17 08:28 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-01-17 08:28 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-01-17 08:28 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-01-17 08:28 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-01-17 08:28 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-01-17 08:28 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-01-17 08:28 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-01-17 08:28 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-01-17 08:28 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-01-17 08:28 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-01-17 08:28 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-01-17 08:28 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-01-17 08:28 - 2013-09-13 18:44 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-01-17 08:28 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-01-17 08:28 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-01-17 08:28 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-01-17 08:28 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-01-17 08:28 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-01-17 08:28 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-01-17 08:28 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-01-17 08:28 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-01-17 08:28 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-01-17 08:28 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-01-17 08:28 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-01-17 08:28 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-01-17 08:28 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-01-17 08:28 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-01-17 08:28 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-01-17 08:28 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-01-17 08:28 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-01-17 08:28 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-01-16 18:09 - 2012-05-07 17:04 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2014-01-16 18:09 - 2012-05-07 17:04 - 00013440 _____ () C:\Windows\SysWOW64\Drivers\AsIO.sys 2014-01-16 17:07 - 2014-01-16 17:07 - 00000000 ____D () C:\ProgramData\LSI 2014-01-16 17:04 - 2014-01-16 17:04 - 00000000 ____D () C:\Program Files\ASUS 2014-01-16 17:03 - 2014-01-16 18:09 - 00000000 ____D () C:\Windows\CSC 2014-01-16 17:03 - 2009-06-10 21:30 - 00053551 _____ () C:\Windows\Professional.xml ==================== One Month Modified Files and Folders ======= 2014-02-12 19:00 - 2014-02-10 18:33 - 00015722 _____ () C:\Users\Kerstin\Desktop\FRST.txt 2014-02-12 18:59 - 2014-02-10 18:33 - 00000000 ____D () C:\FRST 2014-02-12 18:56 - 2014-02-12 18:56 - 00987425 _____ () C:\Users\Kerstin\Desktop\SecurityCheck.exe 2014-02-12 18:44 - 2014-01-29 13:56 - 00619857 _____ () C:\Windows\WindowsUpdate.log 2014-02-12 18:01 - 2014-02-12 18:01 - 02347384 _____ (ESET) C:\Users\Kerstin\Downloads\esetsmartinstaller_enu.exe 2014-02-12 18:00 - 2014-01-31 10:05 - 00000000 ____D () C:\ProgramData\firebird 2014-02-12 17:31 - 2014-01-31 12:33 - 00005138 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Kerstin PCTarox 2014-02-12 17:17 - 2009-07-14 05:45 - 00042096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-12 17:17 - 2009-07-14 05:45 - 00042096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-12 17:14 - 2010-11-21 07:50 - 00699416 _____ () C:\Windows\system32\perfh007.dat 2014-02-12 17:14 - 2010-11-21 07:50 - 00149556 _____ () C:\Windows\system32\perfc007.dat 2014-02-12 17:14 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-12 17:09 - 2014-01-22 19:22 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-12 17:09 - 2010-11-21 04:47 - 00447502 _____ () C:\Windows\PFRO.log 2014-02-12 17:09 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-12 17:09 - 2009-07-14 05:51 - 00056662 _____ () C:\Windows\setupact.log 2014-02-12 13:34 - 2014-02-12 13:34 - 00000000 ____D () C:\Users\Kerstin\Documents\OneNote-Notizbücher 2014-02-12 13:34 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-12 13:26 - 2014-02-12 13:26 - 00001086 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk 2014-02-12 13:26 - 2014-02-12 13:26 - 00001066 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk 2014-02-12 13:26 - 2014-02-12 13:26 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\PDF24 2014-02-12 13:26 - 2014-02-12 13:26 - 00000000 ____D () C:\Program Files (x86)\PDF24 2014-02-12 13:25 - 2014-02-12 13:25 - 00614792 _____ (Chip Digital GmbH) C:\Users\Kerstin\Downloads\PDF24 Creator - CHIP-Downloader.exe 2014-02-12 11:30 - 2014-02-01 19:37 - 00005122 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for PCTarox-Sid PCTarox 2014-02-12 11:20 - 2014-02-12 11:20 - 00001363 _____ () C:\Users\Kerstin\Desktop\2014_EK-Übersicht.lnk 2014-02-12 08:32 - 2014-02-12 08:32 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Avira 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\ProgramData\APN 2014-02-12 07:47 - 2014-02-12 07:47 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-02-12 07:46 - 2014-02-12 07:46 - 00002073 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Avira 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\ProgramData\Avira 2014-02-12 07:46 - 2014-02-12 07:46 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-02-11 17:11 - 2014-02-11 17:11 - 00000000 ____D () C:\Users\Kerstin\Desktop\FRST-OlderVersion 2014-02-11 17:11 - 2014-02-10 18:32 - 02151424 _____ (Farbar) C:\Users\Kerstin\Desktop\FRST64.exe 2014-02-11 12:54 - 2014-02-11 12:41 - 00004485 _____ () C:\Windows\system32\LexFiles.ulf 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files\Lexmark 4300 Series 2014-02-11 12:41 - 2014-02-11 12:41 - 00000000 ____D () C:\Program Files (x86)\Lexmark 4300 Series 2014-02-11 09:41 - 2014-02-11 09:41 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Subsembly 2014-02-10 21:18 - 2014-02-10 21:18 - 00000799 _____ () C:\Users\Kerstin\Desktop\JRT.txt 2014-02-10 21:15 - 2014-02-10 21:15 - 00000000 ____D () C:\Windows\ERUNT 2014-02-10 21:14 - 2014-02-10 21:14 - 01037530 _____ (Thisisu) C:\Users\Kerstin\Desktop\JRT_6.1.1.exe 2014-02-10 21:10 - 2014-02-10 10:32 - 00000000 ____D () C:\AdwCleaner 2014-02-10 18:34 - 2014-02-10 18:34 - 00016709 _____ () C:\Users\Kerstin\Desktop\Addition.txt 2014-02-10 16:40 - 2014-02-10 16:40 - 00001154 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-10 16:40 - 2014-02-10 16:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-10 16:34 - 2014-01-29 16:29 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Mozilla 2014-02-10 14:43 - 2014-02-10 14:43 - 01166132 _____ () C:\Users\Kerstin\Desktop\adwcleaner-3.018(1).exe 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Malwarebytes 2014-02-10 11:12 - 2014-02-10 11:12 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-10 11:11 - 2014-02-10 11:10 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Kerstin\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-10 10:32 - 2014-02-10 10:32 - 01166132 _____ () C:\Users\Kerstin\Downloads\adwcleaner-3.018.exe 2014-02-10 09:59 - 2014-01-30 12:57 - 00000729 _____ () C:\Users\Kerstin\Desktop\DE_Label.lnk 2014-02-07 17:54 - 2014-02-07 17:54 - 00000713 _____ () C:\Users\Sid\Desktop\Sid_Arbeitsplatz.lnk 2014-02-06 10:40 - 2014-02-06 10:40 - 00000000 ____D () C:\Windows\system32\appmgmt 2014-02-06 09:50 - 2014-02-06 09:49 - 140300048 _____ () C:\Users\Kerstin\Downloads\avira_antivirus_suite_de.exe 2014-02-06 09:26 - 2014-02-06 09:26 - 02482750 _____ () C:\Users\Kerstin\Downloads\_Angebot 2014-02-06 09:25 - 2014-02-06 09:25 - 01409527 _____ () C:\Users\Kerstin\Downloads\chalet werbung Dez. 13.zip 2014-02-06 09:10 - 2014-02-06 09:10 - 02499632 _____ () C:\Users\Kerstin\Downloads\Outlook.zip 2014-02-06 09:05 - 2014-02-06 09:05 - 02148771 _____ () C:\Users\Kerstin\Downloads\WG chalet kitzbichl anfr. hr. weichselbaumer.zip 2014-02-06 08:57 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\ProtectDISC 2014-02-05 16:51 - 2014-01-30 15:35 - 00000000 ____D () C:\Program Files (x86)\DATA BECKER 2014-02-05 13:45 - 2014-02-05 13:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-05 11:59 - 2014-01-30 10:55 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Thunderbird 2014-02-04 16:30 - 2014-02-01 18:42 - 00000000 ____D () C:\Users\Kerstin\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-04 14:54 - 2014-01-30 09:20 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\FileZilla 2014-02-04 12:58 - 2014-02-04 12:58 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Microsoft Help 2014-02-04 11:39 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin 2014-02-04 09:21 - 2009-07-14 03:34 - 00000447 _____ () C:\Windows\win.ini 2014-02-04 08:35 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Apple Computer 2014-02-04 08:33 - 2014-02-04 08:33 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00001790 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\Apple Computer 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iTunes 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files\iPod 2014-02-04 08:28 - 2014-02-04 08:28 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Windows\System32\Tasks\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\ProgramData\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Bonjour 2014-02-04 08:27 - 2014-02-04 08:27 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update 2014-02-04 08:05 - 2014-02-04 08:04 - 148904784 _____ (Apple Inc.) C:\Users\Kerstin\Downloads\iTunes64Setup.exe 2014-02-03 13:11 - 2014-02-03 13:11 - 00000000 ____D () C:\Users\Kerstin\Documents\Dokumente 2014-02-03 10:13 - 2014-02-03 10:13 - 00000000 ____D () C:\Users\Sid\AppData\Local\Okidata 2014-02-03 09:43 - 2014-02-02 21:02 - 00001315 _____ () C:\Users\Sid\Desktop\2014_Einnahmen.lnk 2014-02-03 09:06 - 2014-02-03 10:09 - 00001461 _____ () C:\Users\Sid\Desktop\Schnittstellen.lnk 2014-02-03 09:06 - 2014-02-03 09:06 - 00001461 _____ () C:\Users\Kerstin\Desktop\Schnittstelle.lnk 2014-02-03 07:30 - 2014-01-30 15:38 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\ProtectDisc 2014-02-03 07:06 - 2014-02-03 10:07 - 00001255 _____ () C:\Users\Sid\Desktop\KommServer.lnk 2014-02-03 07:06 - 2014-02-03 07:06 - 00001255 _____ () C:\Users\Kerstin\Desktop\KommNikServerMdbConnector - Verknüpfung.lnk 2014-02-03 07:03 - 2014-02-03 07:03 - 00001573 _____ () C:\Users\Sid\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-02-02 21:19 - 2014-02-05 08:13 - 00001367 _____ () C:\Users\Kerstin\Desktop\2014_Einnahmen (1).lnk 2014-02-02 20:58 - 2014-02-02 20:58 - 00000000 ____D () C:\Users\Sid\Documents\Benutzerdefinierte Office-Vorlagen 2014-02-02 12:49 - 2014-02-04 08:11 - 00002228 _____ () C:\Users\Kerstin\Desktop\2013_04_Drachensilber_SCHWEIZ_brielabel.lbx 2014-02-02 12:49 - 2014-02-02 12:49 - 00000000 ____D () C:\Users\Sid\AppData\Local\Adobe 2014-02-02 12:49 - 2014-02-02 12:33 - 00002228 _____ () C:\Users\Sid\Desktop\SCHWEIZ + NN Label.lbx 2014-02-02 12:49 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Adobe 2014-02-02 12:25 - 2014-02-02 12:25 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Brother 2014-02-02 12:21 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Thunderbird 2014-02-01 23:50 - 2014-02-01 23:50 - 00000000 ____D () C:\Users\Sid\AppData\Local\Thunderbird 2014-02-01 22:33 - 2014-02-01 22:32 - 126829760 _____ (DATA BECKER ) C:\Users\Kerstin\Downloads\ws2d8_8s_sp5.exe 2014-02-01 19:23 - 2014-01-31 12:25 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Roaming\Mozilla 2014-02-01 19:10 - 2014-02-01 19:10 - 00000000 ____D () C:\Users\Sid\AppData\Local\Mozilla 2014-02-01 18:59 - 2014-01-29 17:31 - 00000000 ____D () C:\Program Files (x86)\Password Keeper 2001 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\Documents\web to date Projekte 2014-02-01 18:52 - 2014-02-01 18:52 - 00000000 ____D () C:\Users\Sid\AppData\Local\DATA BECKER 2014-02-01 18:46 - 2014-02-01 18:46 - 00136208 _____ () C:\Users\Sid\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-01 18:44 - 2014-02-01 18:44 - 00001421 _____ () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Vorlagen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Startmenü 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Netzwerkumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Lokale Einstellungen 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Eigene Dateien 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Druckumgebung 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Musik 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Documents\Eigene Bilder 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Verlauf 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\AppData\Local\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 _SHDL () C:\Users\Sid\Anwendungsdaten 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ___RD () C:\Users\Sid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Power2Go8 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid\AppData\Local\Packages 2014-02-01 18:44 - 2014-02-01 18:44 - 00000000 ____D () C:\Users\Sid 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\Windows Multipoint Server 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\NComputing 2014-02-01 18:13 - 2014-02-01 18:13 - 00000000 ____D () C:\Program Files\DIFX 2014-02-01 18:10 - 2009-07-14 05:45 - 00524344 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-01 18:01 - 2014-02-01 18:01 - 00003442 _____ () C:\Windows\System32\Tasks\{44808670-A833-4543-A834-80458BA98216} 2014-02-01 17:44 - 2014-01-17 08:32 - 00000000 ____D () C:\ProgramData\Adobe 2014-01-31 13:02 - 2014-01-29 13:59 - 00135328 _____ () C:\Users\Kerstin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-31 12:26 - 2014-01-31 12:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-01-31 12:26 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-01-31 12:25 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\VirtualStore 2014-01-31 12:24 - 2014-01-31 12:24 - 00575168 _____ (Microsoft Corporation) C:\Users\Kerstin\Downloads\Setup.X86.de-de_O365SmallBusPremRetail_70a0572d-295c-43ae-b690-afa0e6a0acc5_TX_PR_.exe 2014-01-31 10:04 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Amicron-Faktura 11.0 2014-01-31 10:01 - 2014-01-31 10:01 - 00001093 _____ () C:\Users\Public\Desktop\Amicron-Faktura 11.0.lnk 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Users\Public\Documents\Amicron-Data 2014-01-31 10:01 - 2014-01-31 10:01 - 00000000 ____D () C:\Program Files (x86)\Firebird 2014-01-31 09:39 - 2014-01-31 09:38 - 90367905 _____ () C:\Users\Kerstin\Downloads\AF11-Setup.exe 2014-01-30 17:20 - 2014-01-30 15:39 - 00004096 _____ () C:\Users\Public\Documents\00002B92.LCS 2014-01-30 15:38 - 2014-01-30 15:38 - 00002215 _____ () C:\Users\Public\Desktop\shop to date 8 pro.lnk 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\web to date Projekte 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\Documents\Erzeugte Websites 2014-01-30 15:35 - 2014-01-30 15:35 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\DATA BECKER 2014-01-30 15:22 - 2014-01-30 15:21 - 454279096 _____ (DATA BECKER GmbH & Co. KG ) C:\Users\Kerstin\Downloads\s2d8pro_r1.exe 2014-01-30 13:14 - 2014-02-02 12:28 - 00000813 _____ () C:\Users\Sid\Desktop\DE_Label.lnk 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\Documents\Eigene Etiketten 2014-01-30 12:25 - 2014-01-30 12:25 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Brother 2014-01-30 12:15 - 2014-01-30 12:13 - 00000000 ____D () C:\Program Files\Brother_P-touch 2014-01-30 12:11 - 2014-01-30 12:11 - 01601536 _____ () C:\Users\Kerstin\Downloads\qd560w550avt64ger.exe 2014-01-30 12:03 - 2014-01-30 12:03 - 00001878 _____ () C:\Users\Public\Desktop\P-touch Editor 5.1.lnk 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-01-30 12:03 - 2014-01-30 12:03 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-01-30 12:03 - 2013-09-12 08:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-01-30 11:57 - 2014-01-30 11:57 - 50049648 _____ (Brother Industries, Ltd. ) C:\Users\Kerstin\Downloads\pew51005ager.exe 2014-01-30 11:48 - 2014-01-30 08:47 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\SuperMailer 2014-01-30 11:47 - 2014-01-30 08:47 - 00000000 ____D () C:\Program Files\SuperMailer 2014-01-30 11:39 - 2014-01-30 11:39 - 00002093 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2014-01-30 11:33 - 2014-01-30 10:55 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Thunderbird 2014-01-30 10:54 - 2014-01-30 10:54 - 21981704 _____ (Mozilla) C:\Users\Kerstin\Downloads\Thunderbird Setup 24.2.0.exe 2014-01-30 09:22 - 2014-01-30 09:22 - 00001629 _____ () C:\Users\Kerstin\Desktop\FileZilla.lnk 2014-01-30 09:19 - 2014-01-30 09:18 - 00000000 ____D () C:\Program Files\Filezilla 2014-01-30 09:16 - 2014-01-30 09:16 - 07241860 _____ () C:\Users\Kerstin\Downloads\FileZilla_3.7.3_win32.zip 2014-01-30 08:47 - 2014-01-30 08:47 - 00000804 _____ () C:\Users\Kerstin\Desktop\SuperMailer.lnk 2014-01-30 08:44 - 2014-01-30 08:44 - 28054257 _____ () C:\Users\Kerstin\Downloads\smsw_x64.zip 2014-01-29 18:08 - 2014-01-29 18:08 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Okidata 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Adobe 2014-01-29 17:59 - 2014-01-29 17:59 - 00000000 ____D () C:\Program Files\Okidata 2014-01-29 17:59 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Adobe 2014-01-29 17:59 - 2014-01-17 08:28 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-01-29 17:58 - 2014-01-29 17:58 - 00000000 ____D () C:\ProgramData\Okidata 2014-01-29 17:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Web 2014-01-29 17:54 - 2014-01-29 17:54 - 00000000 ____D () C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105 2014-01-29 17:53 - 2014-01-29 17:52 - 07757512 _____ (Oki Data Corporation) C:\Users\Kerstin\Downloads\OKB3C03W_DEU103_tcm3-135105.exe 2014-01-29 17:31 - 2014-01-29 17:31 - 00000000 ____D () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Keeper 2001 2014-01-29 17:29 - 2014-01-29 17:29 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-01-29 16:55 - 2014-01-29 16:55 - 00001573 _____ () C:\Users\Kerstin\Desktop\SHOP (diskstation) - Verknüpfung.lnk 2014-01-29 16:32 - 2014-01-29 16:32 - 129598176 _____ () C:\Users\Kerstin\Downloads\avira_free344_antivirus_de.exe 2014-01-29 16:30 - 2014-01-29 16:29 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Mozilla 2014-01-29 16:29 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Mozilla 2014-01-29 14:34 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2014-01-29 14:06 - 2014-01-17 08:34 - 00000000 ____D () C:\Windows\System32\Tasks\Intel(R) Small Business Advantage 2014-01-29 13:57 - 2014-01-29 13:57 - 00001421 _____ () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Vorlagen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Startmenü 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Netzwerkumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Lokale Einstellungen 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Eigene Dateien 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Druckumgebung 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Musik 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Documents\Eigene Bilder 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Verlauf 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\AppData\Local\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 _SHDL () C:\Users\Kerstin\Anwendungsdaten 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ___RD () C:\Users\Kerstin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Power2Go8 2014-01-29 13:57 - 2014-01-29 13:57 - 00000000 ____D () C:\Users\Kerstin\AppData\Local\Packages 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Programme 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-01-29 13:56 - 2014-01-29 13:56 - 00000000 __SHD () C:\Recovery 2014-01-29 13:56 - 2013-09-12 08:58 - 00000000 ____D () C:\Windows\Panther 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-01-29 13:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-01-22 19:22 - 2014-01-22 19:21 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-22 19:21 - 2014-01-22 19:21 - 00000000 ____D () C:\Users\Public\CyberLink 2014-01-22 19:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Help 2014-01-22 13:58 - 2013-09-12 08:01 - 00010543 _____ () C:\Windows\TSSysprep.log 2014-01-22 13:58 - 2009-07-14 05:46 - 00006854 _____ () C:\Windows\DtcInstall.log 2014-01-22 13:52 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-01-22 13:45 - 2014-01-22 13:45 - 00098489 _____ () C:\TN1388179.MHT 2014-01-17 16:06 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\CyberLink 2014-01-17 16:04 - 2014-01-17 16:04 - 00002043 _____ () C:\Users\Public\Desktop\CyberLink Media Suite 10.lnk 2014-01-17 16:04 - 2014-01-17 16:03 - 00000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-01-17 16:04 - 2014-01-17 16:02 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-17 16:04 - 2014-01-17 08:32 - 00000000 ____D () C:\Windows\tmp 2014-01-17 16:03 - 2014-01-17 16:02 - 00000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2014-01-17 16:03 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\install_clap 2014-01-17 16:02 - 2014-01-17 16:02 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-01-17 16:02 - 2014-01-17 16:02 - 00029480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll 2014-01-17 16:02 - 2014-01-17 16:01 - 00000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-01-17 16:02 - 2014-01-17 16:01 - 00000000 ____D () C:\ProgramData\CLSK 2014-01-17 08:54 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-01-17 08:51 - 2014-01-17 08:48 - 00009844 _____ () C:\Windows\IE11_main.log 2014-01-17 08:49 - 2014-01-17 08:49 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-01-17 08:49 - 2014-01-17 08:49 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-01-17 08:49 - 2014-01-17 08:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-01-17 08:49 - 2014-01-17 08:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-01-17 08:49 - 2014-01-17 08:49 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-17 08:49 - 2014-01-17 08:49 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-01-17 08:48 - 2013-09-12 09:33 - 00000000 ____D () C:\Windows\system32\MRT 2014-01-17 08:48 - 2013-09-12 08:18 - 01593956 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-01-17 08:47 - 2013-09-12 09:33 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-01-17 08:36 - 2014-01-17 08:36 - 00017840 _____ () C:\Windows\system32\results.xml 2014-01-17 08:36 - 2014-01-17 08:30 - 00000000 ____D () C:\ProgramData\Intel 2014-01-17 08:34 - 2014-01-17 08:34 - 00001343 _____ () C:\Users\Public\Desktop\Intel(R) Small Business Advantage.lnk 2014-01-17 08:34 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-01-17 08:33 - 2014-01-17 08:33 - 00002026 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-01-17 08:33 - 2014-01-17 08:30 - 00000000 ____D () C:\Program Files\Intel 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2014-01-17 08:32 - 2014-01-17 08:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-01-17 08:29 - 2014-01-17 08:29 - 00000000 ____D () C:\Program Files\Realtek 2014-01-17 08:28 - 2014-01-17 08:28 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2014-01-16 18:09 - 2014-01-16 18:09 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-01-16 18:09 - 2014-01-16 17:03 - 00000000 ____D () C:\Windows\CSC 2014-01-16 17:07 - 2014-01-16 17:07 - 00000000 ____D () C:\ProgramData\LSI 2014-01-16 17:04 - 2014-01-16 17:04 - 00000000 ____D () C:\Program Files\ASUS 2014-01-16 17:03 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\security 2014-01-14 18:09 - 2014-02-02 21:05 - 00000607 _____ () C:\Users\Sid\Desktop\2014_Rechnungen.lnk 2014-01-13 18:56 - 2014-02-02 21:09 - 00000667 _____ () C:\Users\Kerstin\Desktop\Merkliste.lnk 2014-01-13 18:56 - 2014-02-02 21:04 - 00000667 _____ () C:\Users\Sid\Desktop\Merkliste.lnk Some content of TEMP: ==================== C:\Users\Kerstin\AppData\Local\Temp\avgnt.exe C:\Users\Kerstin\AppData\Local\Temp\ICReinstall_Setup.exe C:\Users\Kerstin\AppData\Local\Temp\Offercast_AVIRAV7_.exe C:\Users\Kerstin\AppData\Local\Temp\OfficeSetup.exe C:\Users\Kerstin\AppData\Local\Temp\Quarantine.exe C:\Users\Kerstin\AppData\Local\Temp\setup.exe C:\Users\Sid\AppData\Local\Temp\avgnt.exe C:\Users\Sid\AppData\Local\Temp\fp_pl_pfs_installer.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-10 13:33 ==================== End Of Log ============================ |
14.02.2014, 10:43 | #11 |
/// the machine /// TB-Ausbilder | Passwidget Plagegeist - wie werde ich diesen wieder los? Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Passwidget Plagegeist - wie werde ich diesen wieder los? |
administrator, autostart, betriebssystem windows 7, entfernen, explorer, gelöscht, internet explorer, jrsdriver, malwarebytes, musik, passwidget, popups, pup.optional.passwidget.a, pup.optional.vbates, pup.optional.vittalia, registrierungsdatenbank, seite, software, windows |