|
Plagegeister aller Art und deren Bekämpfung: trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
17.02.2014, 11:11 | #1 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? In den letzten Tagen spinnt mein Laptop unter Windows 8.1 total. Es treten verschiedene Fehler auf. Ich habe fast das Gefühl, er führe ein Eigenleben. Ganz komisch finde ich allerdings die optischen Veränderungen. D.h. die Anzeige ist zB. extrem "übersättigt" oder wualitativ schlecht. Ansonsten läuft eigentlich alles langsam und meist problemlastig-Programmabstürze,Nichtkompatibilität, Beenden nicht möglich, keine Reaktion habe Programme oder Setups und Dateien die ich selbst nicht runtergeladen habe.Darunter u.a. Soup share online sharer, welcher hier in einem anderen Beitrag als Trojaner geoutet wird. Denke aber, das ist noch nicht alles Suchlauf durchgeführt mit anti malwarebytes-> Malwarebytes Anti-Malware 1.75.0.1300 Malwarebytes : Free Anti-Malware Datenbank Version: v2014.02.15.09 Windows 8 x64 NTFS Internet Explorer 11.0.9600.16518 danij_000 :: NIGHTSHINE [Administrator] 16.02.2014 18:20:15 mbam-log-2014-02-16 (18-20-15).txt Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|) Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 750689 Laufzeit: 2 Stunde(n), 29 Minute(n), 41 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Digital Sites (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 1 C:\Users\danij_000\AppData\Roaming\DigitalSites\UpdateProc (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 18 C:\$Recycle.Bin\S-1-5-21-3524602474-1062247959-1074854460-1005\$RR1YWDG.exe (PUP.Optional.JumpyApps.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AnwendungenundSetups\UltimateCodec (1).exe (PUP.Optional.JumpyApps.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000000 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000001 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000002 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000003 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000004 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000005 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000006 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000007 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000008 (PUP.Optional.Somoto) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\File System\006\t\00\00000000 (PUP.Optional.BundleInstaller.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Roaming\DigitalSites\UpdateProc\UpdateTask.exe (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Roaming\DigitalSites\UpdateProc\config.dat (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Roaming\DigitalSites\UpdateProc\info.dat (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Roaming\DigitalSites\UpdateProc\prod.dat (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Roaming\DigitalSites\UpdateProc\STTL.DAT (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\danij_000\AppData\Roaming\DigitalSites\UpdateProc\TTL.DAT (PUP.Optional.Updater) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Gruß Bandalino |
17.02.2014, 11:44 | #2 |
/// the machine /// TB-Ausbilder | trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
17.02.2014, 13:25 | #3 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? frst ist mit 106kb zu groß. was nun?geht rar?
__________________ |
17.02.2014, 13:35 | #4 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? das mit dem additinal und # verstehe ich leider nicht recht. Hab nicht so die Computerkenntisse. Hier additional als normaler Anhang |
18.02.2014, 10:00 | #5 |
/// the machine /// TB-Ausbilder | trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? Hi, Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.02.2014, 03:24 | #6 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014 Ran by danij_000 (administrator) on NIGHTSHINE on 17-02-2014 13:27:59 Running from C:\Users\danij_000\Desktop Windows 8.1 (X64) OS Language: Dutch Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\WINDOWS\system32\Hpservice.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\ENAgent.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE () C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe (Microsoft Corporation) C:\WINDOWS\system32\inetsrv\inetinfo.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Microsoft Corporation) C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe (Microsoft Corporation) C:\WINDOWS\System32\tcpsvcs.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corporation) C:\WINDOWS\system32\inetsrv\wmsvc.exe (Seiko Epson Corporation) C:\WINDOWS\system32\EscSvc64.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Microsoft Corporation) C:\Windows\System32\skydrive.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Greenshot) C:\Program Files\Greenshot\Greenshot.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Google Inc.) C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Symantec Corporation) C:\Program Files\WindowsApps\SymantecCorporation.NortonStudio_1.4.0.21_x86__v68kp9n051hdp\mmamain.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\integrator.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\PerformanceOptimizer.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\swriter.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\WINDOWS\splwow64.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\swriter.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\swriter.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\WINDOWS\system32\prevhost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3053808 2013-11-27] (Synaptics Incorporated) HKLM\...\Run: [Greenshot] - C:\Program Files\Greenshot\Greenshot.exe [495616 2013-12-12] (Greenshot) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-11-27] (IDT, Inc.) HKLM-x32\...\Run: [BtTray] - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [363520 2012-08-02] (IVT Corporation) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491320 2012-07-26] (CyberLink Corp.) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-09] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-12-23] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-01-28] (Hewlett-Packard) HKLM\...\Winlogon: [Shell] explorer.exe /select,explorer.exe Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21822128 2014-01-30] (Google) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [EPLTarget\P0000000000000000] - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-10-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [Mobile Partner] - C:\Program Files (x86)\HiSuite\HiSuite.exe [583488 2013-07-11] () HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [GoogleChromeAutoLaunch_17DC5D510F8BA736D59FAEB6E526DC7E] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [866632 2014-02-02] (Google Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2014-01-23] (Google Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [EPLTarget\P0000000000000001] - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-10-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [457728 2013-09-30] (Microsoft Corporation) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Policies\Explorer: [NoDrives] 0x00000000 AppInit_DLLs-x32: C:\PROGRA~2\MOVIES~1\Datamngr\mgrldr.dll => File Not Found IFEO\bitguard.exe: [Debugger] tasklist.exe IFEO\bprotect.exe: [Debugger] tasklist.exe IFEO\bpsvc.exe: [Debugger] tasklist.exe IFEO\browsemngr.exe: [Debugger] tasklist.exe IFEO\browserdefender.exe: [Debugger] tasklist.exe IFEO\browsermngr.exe: [Debugger] tasklist.exe IFEO\browserprotect.exe: [Debugger] tasklist.exe IFEO\browsersafeguard.exe: [Debugger] tasklist.exe IFEO\bundlesweetimsetup.exe: [Debugger] tasklist.exe IFEO\consumer_cpl.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\delta babylon.exe: [Debugger] tasklist.exe IFEO\delta tb.exe: [Debugger] tasklist.exe IFEO\delta2.exe: [Debugger] tasklist.exe IFEO\deltainstaller.exe: [Debugger] tasklist.exe IFEO\deltasetup.exe: [Debugger] tasklist.exe IFEO\deltatb.exe: [Debugger] tasklist.exe IFEO\deltatb_2501-c733154b.exe: [Debugger] tasklist.exe IFEO\icloud.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\icloudweb.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\iminentsetup.exe: [Debugger] tasklist.exe IFEO\prefutil.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\protectedsearch.exe: [Debugger] tasklist.exe IFEO\rjatydimofu.exe: [Debugger] tasklist.exe IFEO\shellstreamsshortcut.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\snapdo.exe: [Debugger] tasklist.exe IFEO\stinst32.exe: [Debugger] tasklist.exe IFEO\stinst64.exe: [Debugger] tasklist.exe IFEO\sweetimsetup.exe: [Debugger] tasklist.exe IFEO\tbdelta.exetoolbar783881609.exe: [Debugger] tasklist.exe Startup: C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\danij_000\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/2 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/2 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCON13/2 SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1553-29906-12136-18/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM - {F9D1C772-F749-4CC5-89E4-622CD4B9C98D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1553-29906-12136-18/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 - {F9D1C772-F749-4CC5-89E4-622CD4B9C98D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKCU - {7F102906-92D3-4C2D-86EE-EA1550FD9CE5} URL = hxxp://partners.webmasterplan.com/click.asp?ref=383932&site=3357&type=text&ent=25&hnb=12&prd=yes&q={searchTerms}&subid=si SearchScopes: HKCU - {8841A440-41EC-471C-93D0-8F5042620070} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-37276-23097-0/4?satitle={searchTerms} SearchScopes: HKCU - {ED07E9FF-1A2E-4FDA-ACE2-205357BD056D} URL = hxxp://www.amazon.de/gp/search?search-alias=aps&field-keywords={searchTerms} SearchScopes: HKCU - {F9D1C772-F749-4CC5-89E4-622CD4B9C98D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Applon - {1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} - C:\Program Files (x86)\Pagealicious\Applon_ie.dll (Applon) BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) BHO-x32: Pagealicious - {60C07B56-542E-4054-A503-4E9E08DF2F84} - C:\Program Files (x86)\Pagealicious\Pagealicious.dll (TODO: <Company name>) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Chrome: ======= CHR HomePage: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Free Studio) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.3.0.0_1\np_dvs_plugin.dll (DVDVideoSoft Ltd.) CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll No File CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java Deployment Toolkit 7.0.450.18) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Java(TM) Platform SE 7 U45) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll No File CHR Extension: (Google Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2013-11-18] CHR Extension: (PDFzen PDF Viewer & Editor) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\adgncicbhbjfpijkdmbijninnhnmiblj [2013-11-18] CHR Extension: (Calorie Secrets) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkakkeppcemmggcopmjncnlpdefcmcj [2013-11-18] CHR Extension: (Theme Creator) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2013-11-18] CHR Extension: (Fabulous) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambjmeohlajelahhhniggkkceagdlcgj [2013-11-18] CHR Extension: (Google Drive) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-15] CHR Extension: (UJAM - Make your music.) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci [2013-11-18] CHR Extension: (Loupe Collage) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhaonknplhhecdgjpphnooeomecgipkc [2013-11-25] CHR Extension: (Send to Google Maps) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhggankplfegmjjngfmhfajedmiikolo [2013-11-28] CHR Extension: (Twitter Symbols) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjbolaacbpibnnbfnebejhonbdbmpifa [2013-11-18] CHR Extension: (Audiotool) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk [2013-11-29] CHR Extension: (YouTube) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-18] CHR Extension: (Strawberry Pal Regelkalender) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmeafmbadejchdjffdbdjdkcgfmlhjmh [2013-11-18] CHR Extension: (HelloFax: 50 Free Fax Pages) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bocmleclimfnadgmcdgecijlblfcmfnm [2013-11-25] CHR Extension: (Cash Organizer) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bppdehaogjdmkkiaiokmjdjmjnjicddk [2013-11-18] CHR Extension: (QR Code and Barcode Label Generator (FREE)) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciaehkhoafedeehacfjbiajaffodgdcn [2013-11-18] CHR Extension: (Auf den Amazon-Wunschzettel) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciagpekplgpbepdgggflgmahnjgiaced [2014-01-06] CHR Extension: (TypingWeb Typing Tutor) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\clcgempicojkfhpnepfecmklndooebjk [2013-11-18] CHR Extension: (Image Downloader) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnpniohnfphhjihaiiggeabnkjhpaldj [2013-11-18] CHR Extension: (HTML5 Video für YouTube™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\dolajcekhnohkpncmhgledbmndjpblei [2013-12-19] CHR Extension: (Erste Schritte) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ececjiojgdjnkaclcjanmhekfiddedfa [2013-11-18] CHR Extension: (Box - 10GB of FREE storage) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl [2013-11-18] CHR Extension: (Anwendungen iPhone en Förderung) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekckfmbgohljpbplohgkeoepmieffaef [2013-11-18] CHR Extension: (ZenMate for Google Chrome™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2013-11-18] CHR Extension: (Type Scout) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fedokkaolmkkoeedicihicdeppjjeamj [2013-11-18] CHR Extension: (Google Tabellen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2013-11-18] CHR Extension: (Make Passport/Visa/ID Photo) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjecobcbiglolnookbboflgeecppnolh [2013-11-25] CHR Extension: (Wunderlist) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjliknjliaohjgjajlgolhijphojjdkc [2013-11-18] CHR Extension: (Rechtschreibprüfung) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gehceilhofkogkifpjmgdhciddpbcboo [2013-11-18] CHR Extension: (In Google Drive speichern) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2013-11-18] CHR Extension: (Send to Evernote) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnilckpgiopfcokcijkhpghppekcoafm [2013-11-18] CHR Extension: (DocuSign) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\goblijolcnempeilmnkmfbhohlpngemd [2013-11-18] CHR Extension: (i2Symbol - Emoticons, Smileys, Symbols) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gponajbpomilcmbmfoipobkikeopjjhp [2013-11-18] CHR Extension: (SearchPreview) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjdanpjacpeeppdjkppebobilhaglfo [2013-12-19] CHR Extension: (CloudConvert) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpmbfgodkfcebpgheiedaddoikmljkk [2013-11-18] CHR Extension: (PDF Mergy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgecghmkcdefnknohcimkoemhaofpoha [2013-11-18] CHR Extension: (Google Keep) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2013-11-18] CHR Extension: (Snipping Tool for Evernote™ ) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmhpjbejpnnaffkpmebeagdiidibjfa [2013-11-18] CHR Extension: (Pixlr Express) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmjpdlmjopaeginhldhiokeidchjid [2013-11-18] CHR Extension: (Hojoki) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjcgdcbhobdcojhnabjlholpbdmnpaa [2013-11-25] CHR Extension: (instant translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihmgiclibbndffejedjimfjmfoabpcke [2013-11-18] CHR Extension: (Dropbox) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2013-11-18] CHR Extension: (Clearly) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2013-11-18] CHR Extension: (Online PDF Tools) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jddfpnmfhodaljeelokfceepbeapgbdn [2013-11-18] CHR Extension: (Zoho Writer) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgaeidloagadfcohacebhbkkapgpiddj [2013-11-25] CHR Extension: (Google Formulare) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg [2013-11-18] CHR Extension: (Pro Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhoogcgekgpljafaadaohobjcdccpick [2013-11-18] CHR Extension: (HelloSign: Online signatures made easy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kajjckmbclbffbpecfbiecehkfgopppd [2013-11-25] CHR Extension: (Diigo Web) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kipfakkakbicobflnnminhjjdkglgbmf [2013-11-18] CHR Extension: (Little Alchemy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2013-11-25] CHR Extension: (Evernote Web) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2013-11-18] CHR Extension: (Webcam Toy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfbgimoladefibpklnfmkpknadbklade [2013-12-19] CHR Extension: (Babbel) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmkbolconpmgdcpjcmhiiegjjopiofkn [2013-11-18] CHR Extension: (Google Maps) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2013-11-18] CHR Extension: (Google Input Tools) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2013-11-18] CHR Extension: (Until AM for Chrome) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjafmkicbmhcbapadecadciafbkecofl [2013-11-18] CHR Extension: (Uhr) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjocghlclkpgheifflemilcnblodjohg [2013-11-18] CHR Extension: (Google Zeichnungen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkaakpdehdafacodkgkpghoibnmamcme [2013-11-18] CHR Extension: (Norton Identity Protection) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2013-11-14] CHR Extension: (FastestFox – Schneller browsen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmffncokckfccddfenhkhnllmlobdahm [2013-11-18] CHR Extension: (SkyDrive) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2013-11-25] CHR Extension: (Highlight Keywords for Google Search) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhahncknpppipmgjchbbhehkfglelepf [2013-11-18] CHR Extension: (DVDVideoSoft) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2013-11-15] CHR Extension: (Button Generator) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\njphjoojdldjpogfhbncccnkldebgbnd [2013-11-18] CHR Extension: (dict-cc) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknonnojlmhnmjhpeokdbeineeajcemh [2013-11-18] CHR Extension: (Google Wallet) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-14] CHR Extension: (ImTranslator: Google Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2013-11-18] CHR Extension: (Any.do) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocgddccilgpeepgglnlpchkpgamkgmld [2013-11-25] CHR Extension: (Robot Theme, inspired by Android™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeljdmeofcikjblcoehpmdnooimalbmj [2013-12-19] CHR Extension: (WeVideo - Videos bearbeiten & erstellen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb [2013-11-25] CHR Extension: (Readability) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oknpjjbmpnndlpmnhmekjpocelpnlfdi [2013-11-18] CHR Extension: (Picasa) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2013-11-18] CHR Extension: (Diigo Web Collector - Capture and Annotate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oojbgadfejifecebmdnhhkbhdjaphole [2013-11-18] CHR Extension: (Lingualia) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\opbhiklafbmnhlmghmdmgcpbiejldino [2013-11-18] CHR Extension: (Cacoo - Diagramming & Real-Time Collaboration) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcflmbddgcmomcfngehfhlajjapabojh [2013-11-25] CHR Extension: (Windows 8 App Store) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcofehgfaeaakklkbahafjoifnaagecj [2013-11-18] CHR Extension: (Evernote Web Clipper) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2013-11-18] CHR Extension: (italki) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjoaokldacegpfbklgdphngdhejlkinb [2013-11-18] CHR Extension: (Audio Cutter) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\plimnkafgoiilijmlbnfoafihjjijbfp [2013-11-25] CHR Extension: (Type Fu) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pofoighmmpljaikjiidkkfhldjndfdbk [2013-11-18] CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\danij_000\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-11-15] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2013-11-15] CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\Exts\Chrome.crx [2013-12-14] CHR HKLM-x32\...\Chrome\Extension: [nhogbcndagiknbfomjgdeghehkljalhi] - C:\Program Files (x86)\GreyGray\nhogbcndagiknbfomjgdeghehkljalhi.crx [2013-12-14] ==================== Services (Whitelisted) ================= R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1544192 2012-08-02] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-07-10] (IVT Corporation) R2 ENAgent; C:\WINDOWS\SysWOW64\ENAgent.exe [4209856 2012-10-24] (SEIKO EPSON CORPORATION) S4 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [653888 2013-09-05] (SEIKO EPSON CORPORATION) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 ftpsvc; C:\Windows\system32\inetsrv\ftpsvc.dll [372224 2013-11-24] (Microsoft Corporation) R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [137024 2013-07-11] () R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [197632 2013-05-02] () R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [16896 2013-11-24] (Microsoft Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2013-11-15] (IObit) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.) R2 MsDepSvc; C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe [84624 2013-06-10] (Microsoft Corporation) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) S4 TlntSvr; C:\Windows\System32\tlntsvr.exe [146944 2014-01-29] (Microsoft Corporation) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-11-24] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2013-11-24] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) R2 WMSVC; C:\Windows\system32\inetsrv\wmsvc.exe [10752 2013-11-24] (Microsoft Corporation) R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [627992 2013-12-17] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R3 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\BASHDefs\20140110.001\BHDrvx64.sys [1526488 2013-12-18] (Symantec Corporation) R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation) U4 BthAvrcpTg; U4 BthHFEnum; U4 bthhfhid; R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-08] (Ralink Corporation) R3 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-11-27] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-11-21] (Symantec Corporation) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R3 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\IPSDefs\20140115.001\IDSvia64.sys [521944 2013-12-13] (Symantec Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\VirusDefs\20140116.003\ENG64.SYS [126040 2014-01-01] (Symantec Corporation) S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\VirusDefs\20140116.003\EX64.SYS [2099288 2014-01-01] (Symantec Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [269968 2012-07-04] (Realtek Semiconductor Corp.) R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.) S3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-24] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-11-27] (Synaptics Incorporated) S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R3 SRTSPX; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) R3 SymDS; C:\Windows\system32\drivers\NISx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R3 SymEFA; C:\Windows\system32\drivers\NISx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) S4 SymELAM; C:\Windows\system32\drivers\NISx64\1404000.028\SymELAM.sys [23448 2012-06-20] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-11-15] (Symantec Corporation) R1 SymIM; C:\Windows\system32\DRIVERS\SymIMv.sys [43680 2013-03-05] (Symantec Corporation) R3 SymIRON; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-09-18] (TuneUp Software) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) S3 clwvd6; \SystemRoot\system32\DRIVERS\clwvd6.sys [X] U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2011-10-24] (Huawei Technologies Co., Ltd.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-17 13:27 - 2014-02-17 13:27 - 00042637 _____ () C:\Users\danij_000\Desktop\FRST.txt 2014-02-17 13:23 - 2014-02-17 13:23 - 00019221 _____ () C:\Users\danij_000\Desktop\FRST.rar 2014-02-17 13:15 - 2014-02-17 13:15 - 02152448 _____ (Farbar) C:\Users\danij_000\Desktop\FRST64.exe 2014-02-17 13:12 - 2014-02-17 13:12 - 00000000 ____D () C:\Users\danij_000\Documents\Listen 2014-02-17 13:10 - 2014-02-17 13:10 - 00001081 _____ () C:\Users\danij_000\Documents\Docs keine Ahnung wohin damit - Verknüpfung.lnk 2014-02-17 11:42 - 2014-02-17 11:47 - 548011982 _____ () C:\Users\danij_000\Desktop\Notfall-CD-2.2.zip 2014-02-17 10:52 - 2014-02-17 10:52 - 00127080 _____ (Spotify Ltd) C:\Users\danij_000\Desktop\SpotifySetup.exe 2014-02-17 10:16 - 2014-02-17 10:16 - 15634184 _____ ( ) C:\Users\danij_000\Desktop\setup.exe 2014-02-17 03:31 - 2014-02-17 03:31 - 00005850 _____ () C:\WINDOWS\PFRO.log 2014-02-17 03:27 - 2014-02-17 03:27 - 00056230 _____ () C:\Users\danij_000\Desktop\verkaufsartikelinfos.odt 2014-02-17 03:09 - 2014-02-17 03:09 - 00048254 _____ () C:\Users\danij_000\Desktop\amazon.odt 2014-02-17 01:27 - 2014-02-17 01:27 - 02976072 _____ (Google Inc.) C:\Users\danij_000\Desktop\gpautobackup_setup.exe 2014-02-17 00:24 - 2014-02-17 00:24 - 00002723 _____ () C:\Users\danij_000\Desktop\images (2).jpeg 2014-02-17 00:23 - 2014-02-17 00:23 - 00006271 _____ () C:\Users\danij_000\Desktop\images (1).jpeg 2014-02-17 00:22 - 2014-02-17 00:22 - 00004340 _____ () C:\Users\danij_000\Desktop\Download.jpeg 2014-02-17 00:22 - 2014-02-17 00:22 - 00004003 _____ () C:\Users\danij_000\Desktop\Download (1).jpeg 2014-02-16 20:56 - 2014-02-16 20:56 - 00000308 _____ () C:\Users\danij_000\Desktop\31344722044.csv 2014-02-14 18:57 - 2014-02-14 18:58 - 00000000 ____D () C:\Users\danij_000\Documents\typentest ergebnis u infos 2014-02-13 07:57 - 2014-02-17 12:51 - 00000000 ____D () C:\AdwCleaner 2014-02-13 07:57 - 2014-02-13 07:57 - 01166132 _____ () C:\Users\danij_000\Desktop\adwcleaner.exe 2014-02-13 07:52 - 2014-02-13 07:59 - 00003074 _____ () C:\Users\danij_000\Desktop\SystemLook.txt 2014-02-13 07:50 - 2014-02-13 07:50 - 00139264 _____ () C:\Users\danij_000\Desktop\SystemLook.exe 2014-02-12 22:00 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll 2014-02-12 22:00 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll 2014-02-12 21:59 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-12 21:59 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-12 21:59 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-12 21:59 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-12 21:59 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-12 21:59 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-12 21:59 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-12 21:59 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-12 21:59 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-12 21:59 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-12 21:59 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-12 21:59 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-12 21:59 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-12 21:59 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-12 21:59 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-12 21:59 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-12 21:59 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-12 21:59 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-12 21:59 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-12 21:59 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-12 21:59 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-12 21:59 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-12 21:59 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-12 21:59 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-12 21:59 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-12 21:59 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-12 21:59 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-12 21:59 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-12 21:59 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-12 21:59 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-12 21:59 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-12 21:59 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-12 21:59 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-12 21:59 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-12 21:59 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-12 21:59 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-12 21:59 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-12 21:59 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2014-02-12 21:59 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-02-12 21:59 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-02-12 21:59 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-02-12 21:59 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2014-02-12 21:59 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2014-02-12 21:58 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2014-02-12 21:58 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2014-02-12 21:58 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2014-02-12 21:58 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-02-12 21:58 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-02-12 21:58 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2014-02-12 21:58 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-02-12 21:58 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-02-12 21:58 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-02-12 21:58 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-02-12 21:58 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2014-02-12 21:58 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2014-02-12 21:58 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-02-12 21:58 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-02-12 21:58 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-02-12 21:58 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-02-12 21:58 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-02-12 21:58 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-02-12 21:58 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-02-12 21:58 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-02-12 21:58 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms 2014-02-12 21:58 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms 2014-02-12 21:58 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-02-12 21:58 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-02-12 21:58 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2014-02-12 21:58 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2014-02-11 12:04 - 2014-02-17 12:50 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.PASSWORDS.odt# 2014-02-08 03:33 - 2014-02-08 03:33 - 00001994 _____ () C:\Users\danij_000\Desktop\images.jpeg 2014-02-08 03:32 - 2014-02-08 03:32 - 00033053 _____ () C:\Users\danij_000\Desktop\p-640-480-d28d5f5e-592e-4a83-b288-3627604b4ad6.jpeg 2014-02-07 23:29 - 2014-02-07 23:35 - 882900992 _____ () C:\Users\danij_000\Downloads\xubuntu-13.10-desktop-amd64.iso 2014-02-07 23:18 - 2014-02-07 23:18 - 00000979 _____ () C:\Users\Public\Desktop\Shoot'n Save.lnk 2014-02-07 23:18 - 2014-02-07 23:18 - 00000000 ____D () C:\Program Files (x86)\ShootnSave 2014-02-07 23:17 - 2014-02-07 23:17 - 00509342 _____ () C:\Users\danij_000\Desktop\ShootnSave.zip 2014-02-07 01:25 - 2014-02-08 02:04 - 00000000 ____D () C:\Program Files (x86)\AntiTwin 2014-02-07 01:25 - 2014-02-07 01:25 - 00001025 _____ () C:\Users\Public\Desktop\Anti-Twin.lnk 2014-02-07 01:24 - 2014-02-07 01:24 - 00911295 _____ () C:\Users\danij_000\Desktop\AntiTwin_Setup.exe 2014-02-04 22:15 - 2011-05-30 14:42 - 00255488 _____ () C:\WINDOWS\system32\xvidvfw.dll 2014-02-04 22:15 - 2011-05-30 14:42 - 00240640 _____ () C:\WINDOWS\SysWOW64\xvidvfw.dll 2014-02-04 22:15 - 2011-05-23 10:52 - 00153088 _____ () C:\WINDOWS\SysWOW64\xvid.ax 2014-02-04 22:15 - 2011-05-23 08:49 - 00173568 _____ () C:\WINDOWS\system32\xvid.ax 2014-02-04 22:15 - 2011-05-23 08:46 - 00645632 _____ () C:\WINDOWS\SysWOW64\xvidcore.dll 2014-02-04 22:15 - 2011-05-23 08:45 - 00696832 _____ () C:\WINDOWS\system32\xvidcore.dll 2014-02-04 22:14 - 2014-02-17 13:15 - 00000328 _____ () C:\WINDOWS\Tasks\Digital Sites.job 2014-02-04 22:14 - 2014-02-14 19:15 - 00002666 _____ () C:\WINDOWS\System32\Tasks\Digital Sites 2014-02-04 22:14 - 2014-02-04 22:14 - 00715038 _____ () C:\WINDOWS\unins000.exe 2014-02-04 16:35 - 2014-02-04 09:53 - 00063086 _____ () C:\Users\danij_000\Documents\untitled_2odt 2014-02-04 14:10 - 2014-02-04 14:10 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.sing15-30-36.doc# 2014-02-04 14:09 - 2014-02-03 20:36 - 00062575 _____ () C:\Users\danij_000\Documents\untitled_1odt 2014-02-04 13:47 - 2014-02-17 03:32 - 00000423 _____ () C:\WINDOWS\SysWOW64\ÁÂÃÄÅÆÇÈÉÊËÌÍÎÏÐÑÒÓÔÕÖ÷ØÙÚÛÜÝÞ 2014-02-04 13:47 - 2012-10-24 06:42 - 04209856 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\ENAgent.exe 2014-02-04 13:39 - 2014-01-19 08:38 - 00270496 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-02-04 12:37 - 2011-08-13 16:11 - 00000000 ____D () C:\Users\danij_000\Desktop\SOUP_inst 2014-02-03 15:18 - 2014-02-03 15:18 - 00312744 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00108968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2014-02-03 15:18 - 2014-02-03 15:18 - 00000000 ____D () C:\Program Files\Java 2014-02-03 13:09 - 2014-02-03 13:09 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-02-03 13:05 - 2014-02-03 13:05 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Intel_Corporation 2014-02-03 13:04 - 2014-02-03 13:04 - 00405504 _____ () C:\Users\danij_000\Desktop\intel_srldetect_4.5.13.0.msi 2014-02-03 11:33 - 2014-02-17 10:29 - 01388754 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-03 11:33 - 2014-02-15 18:18 - 00000797 _____ () C:\WINDOWS\setupact.log 2014-02-03 11:33 - 2014-02-03 11:33 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-02 06:12 - 2014-02-02 06:12 - 00001536 _____ () C:\Users\danij_000\PaceKeyChain 2014-02-02 03:39 - 2014-02-02 03:39 - 00000000 ____D () C:\Users\danij_000\AppData\Local\PaceAP 2014-02-02 02:41 - 2014-02-02 02:41 - 00000000 ____D () C:\ProgramData\PACE 2014-02-02 00:25 - 2014-02-12 00:35 - 00000000 ____D () C:\Program Files (x86)\UVISoundBanks 2014-02-02 00:25 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\Propellerhead 2014-02-02 00:25 - 2013-04-17 17:37 - 02275328 _____ () C:\WINDOWS\SysWOW64\libsndfile-1.dll 2014-02-02 00:11 - 2014-02-02 00:11 - 00000000 ____D () C:\Users\danij_000\Documents\Ohm Force 2014-02-02 00:01 - 2014-02-02 07:45 - 00000000 ____D () C:\Users\danij_000\Desktop\OhmPlug 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\ProgramData\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Program Files (x86)\Ohm Force 2014-02-01 00:25 - 2014-02-14 19:15 - 00000218 _____ () C:\Users\danij_000\AppData\Roaming\WB.CFG 2014-02-01 00:25 - 2014-02-01 00:25 - 00000005 _____ () C:\Users\danij_000\AppData\Roaming\WBPU-TTL.DAT 2014-02-01 00:23 - 2014-02-01 00:23 - 00003738 _____ () C:\WINDOWS\System32\Tasks\DivX-Online-Aktualisierungsprogramm 2014-01-31 14:38 - 2014-01-29 03:05 - 00000862 _____ () C:\WINDOWS\system32\termcap 2014-01-31 09:14 - 2014-01-31 09:14 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.profF.htm# 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DivX 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files\DivX 2014-01-30 16:51 - 2014-02-17 03:29 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DigitalSites 2014-01-30 16:51 - 2014-02-04 22:14 - 00004900 _____ () C:\WINDOWS\unins000.dat 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\ProgramData\DivX 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\Xvid 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\Lame For Audacity 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\ffdshow 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\DirectVobSub 2014-01-30 16:51 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\LavFilters 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\CDXReader 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\OpenSource Flash Video Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Haali 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DSP-worx 2014-01-30 16:51 - 2012-02-26 16:47 - 00079360 _____ () C:\WINDOWS\SysWOW64\ff_vfw.dll 2014-01-30 16:51 - 2012-01-09 20:45 - 00178688 _____ () C:\WINDOWS\SysWOW64\unrar.dll 2014-01-30 16:51 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2014-01-30 16:51 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2014-01-30 12:31 - 2013-10-23 12:29 - 00044936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll 2014-01-30 12:31 - 2013-10-23 12:13 - 00171864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll 2014-01-30 12:31 - 2013-10-22 09:18 - 01287064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-01-30 12:31 - 2013-10-22 08:55 - 02328872 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-01-30 12:31 - 2013-10-22 07:03 - 02065448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-01-30 12:31 - 2013-10-22 06:15 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2014-01-30 12:31 - 2013-10-22 05:04 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2014-01-30 12:31 - 2013-10-22 05:02 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-01-30 12:31 - 2013-10-22 04:44 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-01-30 12:31 - 2013-10-22 03:38 - 01362944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2014-01-30 12:31 - 2013-10-22 03:22 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-01-30 12:31 - 2013-10-22 02:53 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-01-30 12:31 - 2013-10-19 09:51 - 00481392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-01-30 12:31 - 2013-10-19 08:12 - 00380656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-01-30 12:31 - 2013-10-19 05:48 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2014-01-30 12:31 - 2013-10-19 05:03 - 00531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2014-01-30 12:31 - 2013-10-19 04:26 - 01231360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-01-30 12:31 - 2013-10-19 04:14 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-01-30 12:31 - 2013-10-16 10:34 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2014-01-30 12:31 - 2013-10-16 10:33 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2014-01-30 12:31 - 2013-10-13 04:06 - 00258904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys 2014-01-30 12:31 - 2013-10-13 03:43 - 00708616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2014-01-30 12:31 - 2013-10-10 17:26 - 00317616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-01-30 12:31 - 2013-10-10 17:26 - 00104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2014-01-30 12:31 - 2013-10-10 15:53 - 00235960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2014-01-30 12:31 - 2013-10-10 15:53 - 00088272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2014-01-30 12:31 - 2013-10-10 12:38 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-01-30 12:31 - 2013-10-10 11:34 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-01-30 12:31 - 2013-10-10 11:27 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-01-30 12:31 - 2013-10-08 11:28 - 00523096 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2014-01-30 12:31 - 2013-10-08 07:46 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll 2014-01-30 12:31 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll 2014-01-30 12:31 - 2013-10-08 06:50 - 00656384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-01-30 12:31 - 2013-10-08 06:48 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-01-30 12:31 - 2013-10-08 06:15 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-01-30 12:31 - 2013-10-08 06:09 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2014-01-30 12:31 - 2013-10-08 05:50 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2014-01-30 12:31 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2014-01-30 12:31 - 2013-10-07 08:21 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-01-30 12:31 - 2013-10-07 03:13 - 03532288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-01-30 12:31 - 2013-10-05 16:25 - 00057176 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2014-01-30 12:31 - 2013-10-05 15:21 - 00699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2014-01-30 12:31 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2014-01-30 12:31 - 2013-10-05 12:01 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2014-01-30 12:31 - 2013-10-05 12:01 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2014-01-30 12:31 - 2013-10-05 12:00 - 01200640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-01-30 12:31 - 2013-10-05 10:36 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe 2014-01-30 12:31 - 2013-10-05 10:18 - 01011712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2014-01-30 12:31 - 2013-10-05 10:07 - 00830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2014-01-30 12:31 - 2013-10-05 09:56 - 01147904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2014-01-30 12:31 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2014-01-30 12:31 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2014-01-30 12:31 - 2013-10-05 09:15 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll 2014-01-30 12:31 - 2013-10-05 08:43 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2014-01-30 12:31 - 2013-10-05 08:39 - 06639616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-01-30 12:31 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2014-01-30 12:31 - 2013-10-05 08:32 - 05769728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-01-30 12:31 - 2013-10-04 09:10 - 00533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2014-01-30 12:31 - 2013-09-17 10:06 - 01067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2014-01-30 12:31 - 2013-09-17 08:01 - 00270848 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2014-01-30 12:31 - 2013-09-17 07:31 - 00883184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2014-01-30 12:31 - 2013-09-17 05:37 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2014-01-30 12:31 - 2013-09-14 15:07 - 02134120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-01-30 12:31 - 2013-09-14 15:00 - 00391512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2014-01-30 12:31 - 2013-09-14 13:39 - 01799944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2014-01-30 12:31 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2014-01-30 12:31 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ftp.exe 2014-01-30 12:31 - 2013-09-12 09:45 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2014-01-30 12:31 - 2013-09-12 09:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2014-01-30 12:31 - 2013-09-12 09:08 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2014-01-30 12:31 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2014-01-30 12:31 - 2013-09-12 08:44 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2014-01-30 12:31 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2014-01-30 12:31 - 2013-09-12 08:37 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-01-30 12:31 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2014-01-30 12:31 - 2013-09-12 08:16 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2014-01-30 12:31 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2014-01-30 12:31 - 2013-09-10 05:52 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll 2014-01-30 12:30 - 2013-10-22 04:56 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-01-30 12:30 - 2013-10-22 03:13 - 01704448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-01-30 12:30 - 2013-10-05 09:55 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll 2014-01-30 12:30 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll 2014-01-30 12:30 - 2013-09-14 11:05 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2014-01-30 12:30 - 2013-09-13 09:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe 2014-01-29 11:27 - 2014-01-29 11:27 - 00000000 ____D () C:\Users\danij_000\Documents\DVDVideoSoft 2014-01-29 03:10 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-01-29 03:10 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2014-01-29 03:10 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2014-01-29 03:10 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2014-01-29 03:10 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-01-29 03:10 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2014-01-29 03:10 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys 2014-01-29 03:10 - 2013-11-27 11:54 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-01-29 03:10 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll 2014-01-29 03:10 - 2013-11-27 11:08 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-01-29 03:10 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll 2014-01-29 03:10 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2014-01-29 03:10 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2014-01-29 03:10 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll 2014-01-29 03:10 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-01-29 03:10 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll 2014-01-29 03:10 - 2013-11-27 05:01 - 00385614 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-01-29 03:10 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2014-01-29 03:10 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-01-29 03:10 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-01-29 03:10 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-01-29 03:10 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2014-01-29 03:10 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2014-01-29 03:10 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2014-01-29 03:10 - 2013-11-26 11:13 - 04191232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-01-29 03:10 - 2013-11-26 10:21 - 18577920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-01-29 03:10 - 2013-11-26 09:28 - 13925888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-01-29 03:10 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2014-01-29 03:10 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2014-01-29 03:10 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2014-01-29 03:10 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2014-01-29 03:10 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-01-29 03:10 - 2013-11-23 12:49 - 21196664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-01-29 03:10 - 2013-11-23 09:19 - 18642504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-01-29 03:10 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll 2014-01-29 03:10 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys 2014-01-29 03:10 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-01-29 03:10 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2014-01-29 03:10 - 2013-11-23 04:57 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2014-01-29 03:10 - 2013-11-23 04:48 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2014-01-29 03:10 - 2013-11-23 04:25 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2014-01-29 03:10 - 2013-11-23 04:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2014-01-29 03:10 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-01-29 03:10 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-01-29 03:10 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll 2014-01-29 03:10 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-01-29 03:10 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-01-29 03:10 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-01-29 03:10 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2014-01-29 03:10 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2014-01-29 03:10 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-01-29 03:10 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-01-29 03:10 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-01-29 03:10 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2014-01-29 03:10 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2014-01-29 03:10 - 2013-09-17 10:06 - 00465960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-01-29 03:10 - 2013-09-17 07:31 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-01-29 03:10 - 2013-09-14 10:11 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2014-01-29 03:05 - 2014-01-29 03:05 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsvr.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsess.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntadmn.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\TFTP.EXE 2014-01-29 03:05 - 2014-01-29 03:05 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\simptcp.dll 2014-01-29 02:57 - 2014-01-30 20:35 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Google 2014-01-29 02:57 - 2014-01-29 02:57 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\HewlettPackard 2014-01-29 00:40 - 2014-01-29 00:40 - 00001795 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-01-29 00:39 - 2014-01-29 00:40 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-01-29 00:39 - 2014-01-29 00:40 - 00000000 ____D () C:\Program Files\iTunes 2014-01-29 00:39 - 2014-01-29 00:39 - 00000000 ____D () C:\Program Files\iPod 2014-01-23 14:25 - 2014-01-23 14:27 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2012 2014-01-23 14:25 - 2014-01-23 14:27 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2012 2014-01-23 02:08 - 2014-01-23 02:08 - 00000834 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\ProgramData\Google 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\Program Files\Google 2014-01-22 22:16 - 2014-01-22 22:16 - 03211264 _____ () C:\Users\danij_000\DevelopmentStorageDb22.mdf 2014-01-22 22:16 - 2014-01-22 22:16 - 00851968 _____ () C:\Users\danij_000\DevelopmentStorageDb22_log.ldf 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Users\danij_000\AppData\Local\DevelopmentStorage 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Program Files (x86)\Windows Azure Tools 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files\VS2010Schemas 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-01-22 22:10 - 2014-01-22 22:10 - 00000000 ____D () C:\Program Files\Microsoft SDKs 2014-01-22 22:08 - 2014-01-22 22:08 - 00000026 _____ () C:\WINDOWS\system32\HostingLog-012214220843.log 2014-01-22 22:06 - 2014-01-22 22:06 - 00000000 ____D () C:\Program Files (x86)\Windows Kits 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1031 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1031 2014-01-22 22:04 - 2014-01-22 22:07 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server 2014-01-22 22:04 - 2014-01-22 22:07 - 00000000 ____D () C:\Program Files (x86)\Microsoft SDKs 2014-01-22 22:04 - 2014-01-22 22:06 - 00000000 ____D () C:\Program Files\Microsoft SQL Server 2014-01-22 22:02 - 2014-01-22 22:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft ASP.NET 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files\IIS Express 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\IIS Express 2014-01-22 22:01 - 2014-01-22 22:09 - 00000000 ____D () C:\Program Files\IIS 2014-01-22 22:01 - 2014-01-22 22:09 - 00000000 ____D () C:\Program Files (x86)\IIS 2014-01-22 22:01 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\Microsoft Web Tools 2014-01-22 21:59 - 2014-01-22 21:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Help Viewer 2014-01-22 21:58 - 2014-01-22 21:58 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2014-01-22 21:56 - 2014-02-05 03:05 - 00000000 ____D () C:\ProgramData\Package Cache 2014-01-22 21:56 - 2014-02-05 03:05 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 11.0 2014-01-22 21:56 - 2014-01-22 21:56 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-22 21:53 - 2014-01-22 21:53 - 05994312 _____ (Microsoft Corporation) C:\Users\danij_000\Documents\WindowsAzureTools.vs110.exe 2014-01-22 21:20 - 2014-01-22 21:20 - 00000000 ____D () C:\Users\danij_000\Downloads\dir600b_v2.01 2014-01-22 19:32 - 2014-01-22 19:32 - 00819136 _____ (Google Inc.) C:\Users\danij_000\Documents\googledrivesync.exe 2014-01-22 19:32 - 2014-01-22 19:32 - 00000000 ____D () C:\Users\danij_000\Downloads\DIR-600_GPL_code_revb12 2014-01-21 00:54 - 2014-01-21 00:54 - 00451584 ____H () C:\Users\danij_000\Downloads\photothumb.db 2014-01-19 18:51 - 2014-01-14 10:40 - 00180784 _____ () C:\Users\danij_000\Documents\Tracklists.odt_1odt 2014-01-19 11:35 - 2014-01-17 19:52 - 00008425 _____ () C:\Users\danij_000\Documents\fof.odt_0.odt 2014-01-18 22:21 - 2014-01-18 22:21 - 00001125 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-18 22:21 - 2014-01-18 22:21 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-18 22:21 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys ==================== One Month Modified Files and Folders ======= 2014-02-17 13:27 - 2014-02-17 13:27 - 00042637 _____ () C:\Users\danij_000\Desktop\FRST.txt 2014-02-17 13:27 - 2013-11-10 17:25 - 00000000 ____D () C:\FRST 2014-02-17 13:23 - 2014-02-17 13:23 - 00019221 _____ () C:\Users\danij_000\Desktop\FRST.rar 2014-02-17 13:19 - 2013-12-16 11:22 - 00000940 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-02-17 13:19 - 2013-10-05 22:39 - 02883584 ___SH () C:\Users\danij_000\Desktop\Thumbs.db 2014-02-17 13:15 - 2014-02-17 13:15 - 02152448 _____ (Farbar) C:\Users\danij_000\Desktop\FRST64.exe 2014-02-17 13:15 - 2014-02-04 22:14 - 00000328 _____ () C:\WINDOWS\Tasks\Digital Sites.job 2014-02-17 13:12 - 2014-02-17 13:12 - 00000000 ____D () C:\Users\danij_000\Documents\Listen 2014-02-17 13:11 - 2013-12-21 15:03 - 00000000 ___RD () C:\Users\danij_000\Desktop\mypersonalDOCS 2014-02-17 13:10 - 2014-02-17 13:10 - 00001081 _____ () C:\Users\danij_000\Documents\Docs keine Ahnung wohin damit - Verknüpfung.lnk 2014-02-17 12:51 - 2014-02-13 07:57 - 00000000 ____D () C:\AdwCleaner 2014-02-17 12:50 - 2014-02-11 12:04 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.PASSWORDS.odt# 2014-02-17 12:50 - 2014-01-07 01:18 - 00039914 _____ () C:\Users\danij_000\Desktop\PASSWORDS.odt 2014-02-17 12:19 - 2013-11-14 20:42 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3524602474-1062247959-1074854460-1005 2014-02-17 11:47 - 2014-02-17 11:42 - 548011982 _____ () C:\Users\danij_000\Desktop\Notfall-CD-2.2.zip 2014-02-17 11:20 - 2013-11-17 03:30 - 00114664 _____ () C:\Users\danij_000\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-17 11:18 - 2013-12-09 13:53 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Wacom 2014-02-17 10:52 - 2014-02-17 10:52 - 00127080 _____ (Spotify Ltd) C:\Users\danij_000\Desktop\SpotifySetup.exe 2014-02-17 10:29 - 2014-02-03 11:33 - 01388754 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-17 10:22 - 2013-11-27 23:14 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Deployment 2014-02-17 10:19 - 2013-05-18 01:39 - 00000000 ____D () C:\Users\danij_000\AnwendungenundSetups 2014-02-17 10:16 - 2014-02-17 10:16 - 15634184 _____ ( ) C:\Users\danij_000\Desktop\setup.exe 2014-02-17 10:16 - 2013-11-14 20:51 - 00004112 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-17 10:16 - 2013-11-14 20:51 - 00003876 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-17 10:16 - 2013-11-14 20:51 - 00001138 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-17 10:16 - 2013-11-14 20:51 - 00001134 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-17 10:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-02-17 09:53 - 2014-01-02 21:51 - 00000000 __RDO () C:\Users\danij_000\SkyDrive 2014-02-17 09:53 - 2012-12-12 20:36 - 00004524 _____ () C:\WINDOWS\SysWOW64\LOCALSERVICE.INI 2014-02-17 03:35 - 2012-08-10 17:45 - 00000821 _____ () C:\WINDOWS\SysWOW64\bscs.ini 2014-02-17 03:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\inetsrv 2014-02-17 03:32 - 2014-02-04 13:47 - 00000423 _____ () C:\WINDOWS\SysWOW64\ÁÂÃÄÅÆÇÈÉÊËÌÍÎÏÐÑÒÓÔÕÖ÷ØÙÚÛÜÝÞ 2014-02-17 03:32 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-02-17 03:32 - 2012-12-12 20:36 - 00000043 _____ () C:\WINDOWS\SysWOW64\LOCALDEVICE.INI 2014-02-17 03:31 - 2014-02-17 03:31 - 00005850 _____ () C:\WINDOWS\PFRO.log 2014-02-17 03:31 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2014-02-17 03:29 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DigitalSites 2014-02-17 03:29 - 2013-11-24 17:17 - 00003954 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{D4537034-D7A6-4244-A6BD-E291D308EB1F} 2014-02-17 03:27 - 2014-02-17 03:27 - 00056230 _____ () C:\Users\danij_000\Desktop\verkaufsartikelinfos.odt 2014-02-17 03:09 - 2014-02-17 03:09 - 00048254 _____ () C:\Users\danij_000\Desktop\amazon.odt 2014-02-17 01:27 - 2014-02-17 01:27 - 02976072 _____ (Google Inc.) C:\Users\danij_000\Desktop\gpautobackup_setup.exe 2014-02-17 00:25 - 2013-11-15 07:14 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Paint.NET 2014-02-17 00:24 - 2014-02-17 00:24 - 00002723 _____ () C:\Users\danij_000\Desktop\images (2).jpeg 2014-02-17 00:23 - 2014-02-17 00:23 - 00006271 _____ () C:\Users\danij_000\Desktop\images (1).jpeg 2014-02-17 00:22 - 2014-02-17 00:22 - 00004340 _____ () C:\Users\danij_000\Desktop\Download.jpeg 2014-02-17 00:22 - 2014-02-17 00:22 - 00004003 _____ () C:\Users\danij_000\Desktop\Download (1).jpeg 2014-02-16 20:56 - 2014-02-16 20:56 - 00000308 _____ () C:\Users\danij_000\Desktop\31344722044.csv 2014-02-16 03:56 - 2013-09-24 23:53 - 00000000 ____D () C:\Users\danij_000\icons 2014-02-15 23:06 - 2013-11-19 23:22 - 00003192 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleFordanij_000 2014-02-15 23:06 - 2013-11-19 23:22 - 00000370 _____ () C:\WINDOWS\Tasks\HPCeeScheduleFordanij_000.job 2014-02-15 21:37 - 2013-11-15 01:13 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-02-15 21:36 - 2013-11-15 01:13 - 88567024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-02-15 18:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-02-15 18:20 - 2013-09-30 05:15 - 03448354 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-02-15 18:20 - 2013-09-30 04:59 - 00929128 _____ () C:\WINDOWS\system32\perfh013.dat 2014-02-15 18:20 - 2013-09-30 04:59 - 00211096 _____ () C:\WINDOWS\system32\perfc013.dat 2014-02-15 18:20 - 2012-09-02 01:55 - 01055820 _____ () C:\WINDOWS\system32\perfh007.dat 2014-02-15 18:20 - 2012-09-02 01:55 - 00249990 _____ () C:\WINDOWS\system32\perfc007.dat 2014-02-15 18:18 - 2014-02-03 11:33 - 00000797 _____ () C:\WINDOWS\setupact.log 2014-02-15 03:43 - 2013-11-24 14:04 - 00000000 ____D () C:\Users\danij_000 2014-02-14 20:49 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-02-14 19:15 - 2014-02-04 22:14 - 00002666 _____ () C:\WINDOWS\System32\Tasks\Digital Sites 2014-02-14 19:15 - 2014-02-01 00:25 - 00000218 _____ () C:\Users\danij_000\AppData\Roaming\WB.CFG 2014-02-14 18:58 - 2014-02-14 18:57 - 00000000 ____D () C:\Users\danij_000\Documents\typentest ergebnis u infos 2014-02-14 18:50 - 2013-11-15 13:30 - 00000000 ____D () C:\ProgramData\ProductData 2014-02-14 18:50 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-02-13 07:59 - 2014-02-13 07:52 - 00003074 _____ () C:\Users\danij_000\Desktop\SystemLook.txt 2014-02-13 07:57 - 2014-02-13 07:57 - 01166132 _____ () C:\Users\danij_000\Desktop\adwcleaner.exe 2014-02-13 07:50 - 2014-02-13 07:50 - 00139264 _____ () C:\Users\danij_000\Desktop\SystemLook.exe 2014-02-13 07:40 - 2013-11-16 16:23 - 00000000 ___RD () C:\Users\danij_000\Documents\Docs keine Ahnung wohin damit 2014-02-13 07:37 - 2013-09-22 00:55 - 00000000 ____D () C:\Users\danij_000\Documents\Youcam 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-02-13 01:39 - 2013-11-27 18:55 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log 2014-02-13 00:27 - 2013-11-09 23:00 - 00000000 ____D () C:\Users\danij_000\Downloads\Cloud Downloader 2.0 2014-02-12 23:12 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\LiveKernelReports 2014-02-12 01:28 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-02-12 00:40 - 2012-09-01 16:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-12 00:35 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\UVISoundBanks 2014-02-12 00:35 - 2013-12-01 06:19 - 00000000 ____D () C:\Program Files (x86)\Steinberg 2014-02-11 12:25 - 2013-09-10 17:39 - 00000000 ___RD () C:\Users\danij_000\Google Drive 2014-02-10 03:03 - 2013-11-15 13:30 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Greenshot 2014-02-08 03:33 - 2014-02-08 03:33 - 00001994 _____ () C:\Users\danij_000\Desktop\images.jpeg 2014-02-08 03:32 - 2014-02-08 03:32 - 00033053 _____ () C:\Users\danij_000\Desktop\p-640-480-d28d5f5e-592e-4a83-b288-3627604b4ad6.jpeg 2014-02-08 02:04 - 2014-02-07 01:25 - 00000000 ____D () C:\Program Files (x86)\AntiTwin 2014-02-07 23:35 - 2014-02-07 23:29 - 882900992 _____ () C:\Users\danij_000\Downloads\xubuntu-13.10-desktop-amd64.iso 2014-02-07 23:18 - 2014-02-07 23:18 - 00000979 _____ () C:\Users\Public\Desktop\Shoot'n Save.lnk 2014-02-07 23:18 - 2014-02-07 23:18 - 00000000 ____D () C:\Program Files (x86)\ShootnSave 2014-02-07 23:17 - 2014-02-07 23:17 - 00509342 _____ () C:\Users\danij_000\Desktop\ShootnSave.zip 2014-02-07 01:25 - 2014-02-07 01:25 - 00001025 _____ () C:\Users\Public\Desktop\Anti-Twin.lnk 2014-02-07 01:24 - 2014-02-07 01:24 - 00911295 _____ () C:\Users\danij_000\Desktop\AntiTwin_Setup.exe 2014-02-07 00:10 - 2012-09-01 16:30 - 00000000 ____D () C:\ProgramData\install_clap 2014-02-06 23:36 - 2013-11-27 19:35 - 00000000 ____D () C:\Program Files (x86)\Mobogenie 2014-02-06 23:11 - 2013-05-18 05:16 - 00000000 ___RD () C:\Users\danij_000\Desktop\flyin'dogsDATAS 2014-02-06 13:16 - 2014-02-12 21:59 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-12 21:59 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-12 21:59 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-12 21:59 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-12 21:59 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-12 21:59 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-12 21:59 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-12 21:59 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-06 11:49 - 2014-02-12 21:59 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-12 21:59 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-12 21:59 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-12 21:59 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-12 21:59 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-12 21:59 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-12 21:59 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-06 11:11 - 2014-02-12 21:59 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-12 21:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-12 21:59 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-12 21:59 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-12 21:59 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-06 10:53 - 2013-12-12 14:02 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-06 10:52 - 2014-02-12 21:59 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-12 21:59 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-12 21:59 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-06 10:47 - 2014-02-12 21:59 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-12 21:59 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-12 21:59 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-12 21:59 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-12 21:59 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-06 10:22 - 2014-02-12 21:59 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-12 21:59 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-12 21:59 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-12 21:59 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-12 21:59 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-12 21:59 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-12 21:59 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-12 21:59 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-12 21:59 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-05 03:05 - 2014-01-22 21:56 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-05 03:05 - 2014-01-22 21:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 11.0 2014-02-05 03:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-02-05 03:03 - 2013-11-24 13:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-02-04 23:41 - 2013-12-08 20:30 - 00000000 ____D () C:\Users\danij_000\löschdateien 2014-02-04 22:14 - 2014-02-04 22:14 - 00715038 _____ () C:\WINDOWS\unins000.exe 2014-02-04 22:14 - 2014-01-30 16:51 - 00004900 _____ () C:\WINDOWS\unins000.dat 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\ProgramData\DivX 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Xvid 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Lame For Audacity 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\ffdshow 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DirectVobSub 2014-02-04 20:19 - 2013-12-16 11:22 - 00003828 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-02-04 16:35 - 2014-01-12 01:24 - 00000000 ___RD () C:\Users\danij_000\Desktop\docs dies&&das 2014-02-04 14:10 - 2014-02-04 14:10 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.sing15-30-36.doc# 2014-02-04 10:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\FxsTmp 2014-02-04 09:53 - 2014-02-04 16:35 - 00063086 _____ () C:\Users\danij_000\Documents\untitled_2odt 2014-02-03 20:36 - 2014-02-04 14:09 - 00062575 _____ () C:\Users\danij_000\Documents\untitled_1odt 2014-02-03 17:04 - 2013-10-16 23:29 - 00114176 ___SH () C:\Users\danij_000\Documents\Thumbs.db 2014-02-03 15:18 - 2014-02-03 15:18 - 00312744 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00108968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2014-02-03 15:18 - 2014-02-03 15:18 - 00000000 ____D () C:\Program Files\Java 2014-02-03 14:08 - 2013-10-05 22:39 - 00090112 ___SH () C:\Users\danij_000\Thumbs.db 2014-02-03 13:09 - 2014-02-03 13:09 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-02-03 13:05 - 2014-02-03 13:05 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Intel_Corporation 2014-02-03 13:04 - 2014-02-03 13:04 - 00405504 _____ () C:\Users\danij_000\Desktop\intel_srldetect_4.5.13.0.msi 2014-02-03 11:33 - 2014-02-03 11:33 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-02 07:45 - 2014-02-02 00:01 - 00000000 ____D () C:\Users\danij_000\Desktop\OhmPlug 2014-02-02 06:12 - 2014-02-02 06:12 - 00001536 _____ () C:\Users\danij_000\PaceKeyChain 2014-02-02 03:39 - 2014-02-02 03:39 - 00000000 ____D () C:\Users\danij_000\AppData\Local\PaceAP 2014-02-02 02:41 - 2014-02-02 02:41 - 00000000 ____D () C:\ProgramData\PACE 2014-02-02 00:25 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\Propellerhead 2014-02-02 00:11 - 2014-02-02 00:11 - 00000000 ____D () C:\Users\danij_000\Documents\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\ProgramData\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Program Files (x86)\Ohm Force 2014-02-01 00:25 - 2014-02-01 00:25 - 00000005 _____ () C:\Users\danij_000\AppData\Roaming\WBPU-TTL.DAT 2014-02-01 00:23 - 2014-02-01 00:23 - 00003738 _____ () C:\WINDOWS\System32\Tasks\DivX-Online-Aktualisierungsprogramm 2014-01-31 19:40 - 2013-11-14 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Packages 2014-01-31 19:10 - 2013-11-14 20:35 - 00000000 ___RD () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-31 19:10 - 2013-11-14 20:35 - 00000000 ___RD () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-31 15:12 - 2013-08-22 15:44 - 00471504 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-01-31 14:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz 2014-01-31 14:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions 2014-01-31 14:38 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 2014-01-31 14:38 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism 2014-01-31 09:20 - 2013-11-14 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\VirtualStore 2014-01-31 09:14 - 2014-01-31 09:14 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.profF.htm# 2014-01-30 21:47 - 2013-12-14 17:35 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-01-30 21:47 - 2013-12-14 17:35 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-30 20:35 - 2014-01-29 02:57 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Google 2014-01-30 20:24 - 2012-12-12 20:35 - 00000000 ____D () C:\WINDOWS\Hewlett-Packard 2014-01-30 20:24 - 2012-08-04 01:02 - 00000000 ____D () C:\SWSetup 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DivX 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files\DivX 2014-01-30 16:52 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\LavFilters 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\CDXReader 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\OpenSource Flash Video Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Haali 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DSP-worx 2014-01-29 11:27 - 2014-01-29 11:27 - 00000000 ____D () C:\Users\danij_000\Documents\DVDVideoSoft 2014-01-29 03:14 - 2012-12-12 20:31 - 00009684 _____ () C:\WINDOWS\system32\RaCoInst.log 2014-01-29 03:05 - 2014-01-31 14:38 - 00000862 _____ () C:\WINDOWS\system32\termcap 2014-01-29 03:05 - 2014-01-29 03:05 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsvr.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsess.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntadmn.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\TFTP.EXE 2014-01-29 03:05 - 2014-01-29 03:05 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\simptcp.dll 2014-01-29 02:57 - 2014-01-29 02:57 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\HewlettPackard 2014-01-29 02:57 - 2013-11-14 20:51 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Google 2014-01-29 00:43 - 2012-09-01 16:31 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-29 00:40 - 2014-01-29 00:40 - 00001795 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-01-29 00:40 - 2014-01-29 00:39 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-01-29 00:40 - 2014-01-29 00:39 - 00000000 ____D () C:\Program Files\iTunes 2014-01-29 00:40 - 2013-12-03 19:48 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-01-29 00:39 - 2014-01-29 00:39 - 00000000 ____D () C:\Program Files\iPod 2014-01-29 00:35 - 2012-12-12 20:31 - 00000000 ____D () C:\ProgramData\Apple 2014-01-29 00:23 - 2013-11-09 20:51 - 00000000 ___RD () C:\Users\danij_000\Desktop\cv 2014-01-23 14:27 - 2014-01-23 14:25 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2012 2014-01-23 14:27 - 2014-01-23 14:25 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2012 2014-01-23 02:08 - 2014-01-23 02:08 - 00000834 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\ProgramData\Google 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\Program Files\Google 2014-01-23 02:08 - 2013-11-14 20:51 - 00000000 ____D () C:\Program Files (x86)\Google 2014-01-23 01:58 - 2014-01-06 21:00 - 00000000 ___RD () C:\Users\danij_000\Dropbox 2014-01-23 01:58 - 2014-01-06 20:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Dropbox 2014-01-23 01:58 - 2014-01-03 13:16 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Skitch 2014-01-22 22:16 - 2014-01-22 22:16 - 03211264 _____ () C:\Users\danij_000\DevelopmentStorageDb22.mdf 2014-01-22 22:16 - 2014-01-22 22:16 - 00851968 _____ () C:\Users\danij_000\DevelopmentStorageDb22_log.ldf 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Users\danij_000\AppData\Local\DevelopmentStorage 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Program Files (x86)\Windows Azure Tools 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files\VS2010Schemas 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-01-22 22:10 - 2014-01-22 22:10 - 00000000 ____D () C:\Program Files\Microsoft SDKs 2014-01-22 22:09 - 2014-01-22 22:01 - 00000000 ____D () C:\Program Files\IIS 2014-01-22 22:09 - 2014-01-22 22:01 - 00000000 ____D () C:\Program Files (x86)\IIS 2014-01-22 22:08 - 2014-01-22 22:08 - 00000026 _____ () C:\WINDOWS\system32\HostingLog-012214220843.log 2014-01-22 22:08 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\inetsrv 2014-01-22 22:07 - 2014-01-22 22:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server 2014-01-22 22:07 - 2014-01-22 22:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft SDKs 2014-01-22 22:06 - 2014-01-22 22:06 - 00000000 ____D () C:\Program Files (x86)\Windows Kits 2014-01-22 22:06 - 2014-01-22 22:04 - 00000000 ____D () C:\Program Files\Microsoft SQL Server 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1031 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1031 2014-01-22 22:03 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\Microsoft ASP.NET 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files\IIS Express 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\IIS Express 2014-01-22 22:02 - 2014-01-22 22:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Web Tools 2014-01-22 21:59 - 2014-01-22 21:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Help Viewer 2014-01-22 21:58 - 2014-01-22 21:58 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2014-01-22 21:56 - 2014-01-22 21:56 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-22 21:56 - 2012-09-01 16:42 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-01-22 21:53 - 2014-01-22 21:53 - 05994312 _____ (Microsoft Corporation) C:\Users\danij_000\Documents\WindowsAzureTools.vs110.exe 2014-01-22 21:20 - 2014-01-22 21:20 - 00000000 ____D () C:\Users\danij_000\Downloads\dir600b_v2.01 2014-01-22 19:32 - 2014-01-22 19:32 - 00819136 _____ (Google Inc.) C:\Users\danij_000\Documents\googledrivesync.exe 2014-01-22 19:32 - 2014-01-22 19:32 - 00000000 ____D () C:\Users\danij_000\Downloads\DIR-600_GPL_code_revb12 2014-01-22 19:32 - 2013-11-27 18:01 - 115515525 _____ () C:\Users\danij_000\Downloads\DIR-600_GPL_code_revb12.tar.gz 2014-01-21 01:00 - 2014-01-12 08:11 - 00011264 ____H () C:\Users\danij_000\Desktop\photothumb.db 2014-01-21 00:55 - 2014-01-07 17:47 - 00006144 ____H () C:\Users\danij_000\Documents\photothumb.db 2014-01-21 00:54 - 2014-01-21 00:54 - 00451584 ____H () C:\Users\danij_000\Downloads\photothumb.db 2014-01-21 00:54 - 2013-11-27 18:43 - 00000000 ___RD () C:\Users\danij_000\Downloads\201301150941135219 2014-01-21 00:53 - 2013-04-20 13:18 - 00000000 ___RD () C:\Users\danij_000\Desktop\bildschoner 2014-01-20 13:01 - 2014-01-12 01:28 - 00000000 ___RD () C:\Users\danij_000\Desktop\Bank&Financials 2014-01-20 12:50 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\tracing 2014-01-19 09:04 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-01-19 08:38 - 2014-02-04 13:39 - 00270496 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-01-18 22:21 - 2014-01-18 22:21 - 00001125 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-01-18 22:21 - 2014-01-18 22:21 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware Some content of TEMP: ==================== C:\Users\danij_000\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-17 03:43 ==================== End Of Log ============================ --- --- --- |
19.02.2014, 03:25 | #7 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren?Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-02-2014 Ran by danij_000 at 2014-02-17 13:29:13 Running from C:\Users\danij_000\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Norton Internet Security (Disabled - Out of date) {63DF5164-9100-186D-2187-8DC619EFD8BF} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Internet Security (Disabled - Out of date) {D8BEB080-B73A-17E3-1B37-B6B462689202} FW: Norton Internet Security (Disabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} ==================== Installed Programs ====================== 1.0 (x32 Version: 1.0.0.0 - ) 7-Zip 9.20 (x32 Version: - ) Adobe AIR (x32 Version: 3.9.0.1380 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.9.0.1380 - Adobe Systems Incorporated) Hidden Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (x32 Version: 11.6.5.635 - Adobe Systems, Inc.) Anti-Twin (Installation 07.02.2014) (x32 Version: - Joerg Rosenthal, Germany) Apple Application Support (x32 Version: 3.0 - Apple Inc.) Apple Mobile Device Support (Version: 7.1.0.32 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) ArtRage 2 (x32 Version: 2.6.0 - Ambient Design) Bonjour (Version: 3.0.0.10 - Apple Inc.) CCleaner (Version: 4.09 - Piriform) Codec Pack Packages (HKCU Version: - ) <==== ATTENTION CyberLink LabelPrint (x32 Version: 2.5.5.6902 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.5.6902 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (x32 Version: 8.0.1.1926 - CyberLink Corp.) CyberLink Power2Go 8 (x32 Version: 8.0.1.1926 - CyberLink Corp.) Hidden CyberLink PowerDVD (x32 Version: 10.0.6.4319 - CyberLink Corp.) CyberLink PowerDVD (x32 Version: 10.0.6.4319 - CyberLink Corp.) Hidden CyberLink YouCam (x32 Version: 3.5.4.5527 - CyberLink Corp.) CyberLink YouCam (x32 Version: 3.5.4.5527 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DC-Bass Source 1.3.0 (x32 Version: - ) Deluge 1.3.6 (x32 Version: - ) DirectVobSub 2.40.4209 (x32 Version: 2.40.4209 - MPC-HC Team) DivX-Setup (x32 Version: 2.6.1.8 - DivX, LLC) Dropbox (HKCU Version: 2.4.11 - Dropbox, Inc.) Energy Star (Version: 1.0.8 - Hewlett-Packard) Entity Framework Designer für Visual Studio 2012 - DEU (x32 Version: 11.1.20702.00 - Microsoft Corporation) Epson Connect Printer Setup (x32 Version: 1.1.1 - SEIKO EPSON CORPORATION) Epson Customer Research Participation (Version: 1.61.0000 - EPSON) EPSON Printer Finder (x32 Version: 1.0.0 - SEIKO EPSON CORPORATION) EPSON Scan (x32 Version: - Seiko Epson Corporation) EPSON XP-402 403 405 406 Series Printer Uninstall (Version: - SEIKO EPSON Corporation) Erforderliche Komponenten für SSDT (x32 Version: 11.0.2100.60 - Microsoft Corporation) Fences (Version: 1.0 - Stardock Corporation) Hidden ffdshow v1.1.4399 [2012-03-22] (x32 Version: 1.1.4399.0 - ) Finalizer deinstallieren (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden Free Audio Converter version 5.0.31.1125 (x32 Version: 5.0.31.1125 - DVDVideoSoft Ltd.) Free PDF to Word Doc Converter v1.1 (x32 Version: 1.1 - www.hellopdf.com) Free Studio version 2013 (x32 Version: 6.2.0.1029 - DVDVideoSoft Ltd.) Free Video to JPG Converter version 5.0.31.1125 (x32 Version: 5.0.31.1125 - DVDVideoSoft Ltd.) Free YouTube to MP3 Converter version 3.12.20.1230 (x32 Version: 3.12.20.1230 - DVDVideoSoft Ltd.) Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.) Google Drive (x32 Version: 1.14.6059.644 - Google, Inc.) Google Earth Plug-in (x32 Version: 7.1.2.2041 - Google) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Toolbar for Internet Explorer (x32 Version: 7.5.4805.320 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Greenshot 1.1.7.17 (Version: 1.1.7.17 - Greenshot) Haali Media Splitter (x32 Version: - ) Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HiSuite (x32 Version: 32.610.20.00.06 - Huawei Technologies Co.,Ltd) HP 3D DriveGuard (Version: 4.2.5.1 - Hewlett-Packard Company) HP CoolSense (x32 Version: 2.10.62 - Hewlett-Packard Company) HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Documentation (x32 Version: 1.1.0.0 - Hewlett-Packard) HP Postscript Converter (Version: 3.1.3554 - Hewlett-Packard) Hidden HP Quick Launch (x32 Version: 3.0.3 - Hewlett-Packard Company) HP Recovery Manager (x32 Version: 7.00 - Hewlett-Packard) Hidden HP Registration Service (Version: 1.0.5976.4186 - Hewlett-Packard) HP Software Framework (x32 Version: 4.6.8.1 - Hewlett-Packard Company) HP Support Assistant (x32 Version: 7.0.39.15 - Hewlett-Packard Company) HP USB Disk Storage Format Tool (x32 Version: - ) HP Utility Center (x32 Version: 1.0.7 - Hewlett-Packard) HP Wireless Button Driver (x32 Version: 1.1.2.1 - Hewlett-Packard Company) HPDetect (x32 Version: 1.0.0.0 - HP) iCloud (Version: 3.1.0.40 - Apple Inc.) IDT Audio (x32 Version: 1.0.6425.0 - IDT) IIS 8.0 Express (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (Version: - ) IIS Express Application Compatibility Database for x86 (Version: - ) IIS-URL-Rewrite-Modul 2 (Version: 7.2.2 - Microsoft Corporation) Install Finalizer (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden Intel(R) Management Engine Components (x32 Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (x32 Version: 10.18.10.3379 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden IObit Uninstaller (x32 Version: 3.0.4.922 - IObit) iTunes (Version: 11.1.4.62 - Apple Inc.) Java 7 Update 45 (x32 Version: 7.0.450 - Oracle) Java 7 Update 51 (64-bit) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Lagarith Lossless Codec (1.3.27) (x32 Version: - ) LAME v3.99.3 (for Windows) (x32 Version: - ) Language Pack (DEU) für freigegebene Windows Azure-Komponenten für Microsoft Visual Studio 2012 - v1.0 (x32 Version: 1.0.10930.1602 - Microsoft Corporation) Hidden LibreOffice 4.1 Help Pack (German) (x32 Version: 4.1.4.2 - The Document Foundation) LibreOffice 4.2 Help Pack (Dutch) (x32 Version: 4.2.0.1 - The Document Foundation) LibreOffice 4.2.0.1 (x32 Version: 4.2.0.1 - The Document Foundation) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) McAfee Security Scan Plus (Version: 3.8.130.10 - McAfee, Inc.) Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (x32 Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (x32 Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (x32 Version: 4.5.50709 - Microsoft Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Application Request Routing 3.0 (Version: 3.0.1750 - Microsoft Corporation) Microsoft ASP.NET and Web Frameworks 2012.2 - DEU (x32 Version: 2.1.20219.0 - Microsoft Corporation) Microsoft ASP.NET and Web Frameworks 2012.2 (x32 Version: 2.1.20219.0 - Microsoft Corporation) Microsoft ASP.NET and Web Tools 2012.3 - Visual Studio Express 2012 for Web - deu (x32 Version: 1.4.41009.0 - Microsoft Corporation) Microsoft ASP.NET and Web Tools 2012.3 - Visual Studio Express 2012 for Web (x32 Version: 1.4.41009.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 - DEU (x32 Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 (x32 Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 - Visual Studio Express 2012 for Web - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio Express 2012 for Web - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Visual Studio 2012 Finalizer (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Visual Studio 2012 Uninstall Finalizer (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - DEU (x32 Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages (x32 Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages 2 - Visual Studio Express 2012 for Web - DEU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio Express 2012 for Web - ENU (x32 Version: 4.1.20219.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime (x32 Version: 2.0.20715.0 - Microsoft Corporation) Hidden Microsoft Expression Encoder 4 (x32 Version: 4.0.4276.0 - Microsoft Corporation) Microsoft Expression Encoder 4 (x32 Version: 4.0.4276.0 - Microsoft Corporation) Hidden Microsoft Expression Encoder 4 Screen Capture Codec (x32 Version: 4.0.4276.0 - Microsoft Corporation) Microsoft External Cache Version 1 for IIS 7 (Version: 1.1.0490 - Microsoft Corporation) Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Office (x32 Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (Version: 11.1.2807.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x32 Version: 11.1.2807.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (Version: 11.0.2318.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x32 Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL Compiler Service (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (x32 Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (11.1.20905.0) (x32 Version: 11.1.20905.0 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20905.0) (x32 Version: 11.1.20905.0 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x32 Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation) Microsoft Web Deploy 3.5 (Version: 3.1237.1762 - Microsoft Corporation) Microsoft Web Deploy dbSqlPackage Provider - DEU (x32 Version: 10.3.20225.0 - Microsoft Corporation) Microsoft Web Farm Framework (Version: 1.1.1292 - Microsoft Corporation) Microsoft Web Platform Installer 4.6 (Version: 4.0.40719.0 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x32 Version: 11.1.3000.0 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (Version: 11.1.3000.0 - Microsoft Corporation) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MULTIWEB FinMail Client (x32 Version: - ) Norton Internet Security (x32 Version: 20.4.0.40 - Symantec Corporation) OpenOffice 4.0.1 (x32 Version: 4.01.9714 - Apache Software Foundation) OpenSource Flash Video Splitter 1.0.0.5 (x32 Version: 1.0.0.5 - ) Pagealicious (x32 Version: - Pagealicious) Paint.NET v3.5.10 (Version: 3.60.0 - dotPDN LLC) PhotoScape (x32 Version: - ) Ralink Bluetooth Stack64 (Version: 9.0.715.0 - Ralink Corporation) Ralink RT3290 802.11bgn Wi-Fi Adapter (x32 Version: 5.0.2.0 - Ralink) Realtek Ethernet Controller Driver (x32 Version: 8.3.730.2012 - Realtek) Realtek PCIE Card Reader (x32 Version: 6.2.8400.29029 - Realtek Semiconductor Corp.) Shoot'n Save (Installation 07.02.2014) (x32 Version: - Rosenthal Software, Germany) Software Updater (x32 Version: 4.1.7 - SEIKO EPSON CORPORATION) Steinberg Cubase 7 (x32 Version: 7.0.2 - Steinberg Media Technologies GmbH) Steinberg Cubase LE AI Elements 7 64bit (Version: 7.0.6 - Steinberg Media Technologies GmbH) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (Version: 16.5.3.3 - Synaptics Incorporated) System Requirements Lab for Intel (x32 Version: 4.5.13.0 - Husdawg, LLC) TreeSize Free V2.7 (x32 Version: 2.7 - JAM Software) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden Uninstall Finalizer (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden Update for (KB2504637) (x32 Version: 1 - Microsoft Corporation) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VLC media player 2.0.1 (x32 Version: 2.0.1 - VideoLAN) VoiceOver Kit (x32 Version: 1.42.128.0 - Apple Inc.) Wacom (Version: 5.3.3-2 - Wacom Technology Corp.) WebTablet FB Plugin 32 bit (x32 Version: 2.1.0.3 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (Version: 2.1.0.3 - Wacom Technology Corp.) Windows Azure Authoring Tools - v2.2 (Version: 2.2.6492.2 - Microsoft Corporation) Windows Azure Emulator - v2.2 (Version: 2.2.6492.2 - Microsoft Corporation) Windows Azure Emulator - v2.2 (Version: 2.2.6492.2 - Microsoft Corporation) Hidden Windows Azure Libraries for .NET – v2.2 (Version: 2.2.0924.200 - Microsoft Corporation) Windows Azure Shared Components for Microsoft Visual Studio 2012 - v1.0 (x32 Version: 1.0.10930.1602 - Microsoft Corporation) Hidden Windows Azure Storage Tools - v2.2 (x32 Version: 2.2.0.0 - Microsoft Corporation) Windows Azure Tools for Microsoft Visual Studio 2012 - v2.2 (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden Windows Azure Tools for Microsoft Visual Studio 2012 Core (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden Windows Azure Tools für Microsoft Visual Studio 2012 Core Language Pack (DEU) (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden Windows Azure Tools für Microsoft Visual Studio 2012 Language Pack (DEU) - v2.2 (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Windows Azure Tools für Microsoft Visual Studio 2012 Language Pack (DEU) - v2.2 (x32 Version: 2.2.11003.1601 - Microsoft Corporation) Hidden Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden WinRAR 5.01 (64-Bit) (Version: 5.01.0 - win.rar GmbH) Xvid Video Codec (x32 Version: 1.3.2 - Xvid Team) ==================== Restore Points ========================= ==================== Hosts content: ========================== 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {1164B00D-B168-4A25-93A6-DA7B108791C9} - System32\Tasks\SomotoUpdateCheckerAutoStart => C:\Users\danij_000\AppData\Local\FilesFrog Update Checker\update_checker.exe <==== ATTENTION Task: {121ADEAD-EF96-4D3C-8DC2-18F15F94E325} - System32\Tasks\HPCeeScheduleFordanij_000 => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {141240B9-9255-4F89-9EC1-3D2B1885FCCA} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink) Task: {19E8A665-68BA-4FC0-89AE-C2B9063EE345} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {25095B43-8245-4559-B7FB-95300C8BA568} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2013-06-07] (Hewlett-Packard Development Company, L.P.) Task: {2C9AEDA0-C8F1-4650-8564-AE46A742A115} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2013-11-20] (Apple Inc.) Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {2FE55A7E-13B1-443A-991D-579DDF64773A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-14] (Google Inc.) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {44DF68B7-F36C-49B2-824E-1CDF3164F6E1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-14] (Google Inc.) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {57F50318-9A0F-4593-9115-A658F728D1ED} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {5888DCA5-4A45-41CE-90D9-5CCA76D05955} - System32\Tasks\Microsoft\Windows\SysResetLogSuccess => Rundll32.exe ResetEng.dll,RjvLogSuccessEntryPoint Task: {5DEAA1C3-CC4F-47F7-94B6-BA799710E391} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {6533B7F0-A1F9-4A83-ABAA-B197AB6B1A92} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {71CD832A-2EAD-4A2B-A2C1-231AD0EBDCE6} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {732C4E57-3C73-4E7D-B25B-FA54A377BD33} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-02-15] (Microsoft Corporation) Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {7C9B744C-B892-4D82-8B04-3F9F9CA3A451} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {88775521-431F-454B-901C-541C75798FB1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {A0BE55B6-5CEF-4EDF-A1DD-2BD3FADA0CFB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd) Task: {A11843EC-11A1-4068-BCAB-50EFC9F7A081} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\WSCStub.exe [2013-06-04] (Symantec Corporation) Task: {B7C933F8-1679-4BA2-94B3-BBEE45081CF3} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-04] (Adobe Systems Incorporated) Task: {C21D1CCD-C2D2-4174-B2B5-DD5FEE5B2DB5} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {CA0FA5CD-53CC-484C-B26E-1FCA068A8AB0} - \Express FilesUpdate No Task File Task: {CD137EEF-DEAC-4CAC-8E92-09B8F0B60B3B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-11-22] (Hewlett-Packard) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D21A4B25-11E4-4607-8581-7B18EC0D49A4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2013-04-01] (Hewlett-Packard Company) Task: {D83896CE-4032-430F-82CC-2AF3B2D6AA52} - \GoforFilesUpdate No Task File Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DC978CA3-7659-442C-871D-CEFE146241AE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {DD717246-93A0-46A4-8BFD-638BECB89201} - System32\Tasks\Digital Sites => C:\Users\DANIJ_~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {DDE2A874-D9E0-4DE7-8A61-54D0F35949E1} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-12-18] (TuneUp Software) Task: {E3373576-1A6F-4F4B-BA30-48EA7F0C67B6} - System32\Tasks\DivX-Online-Aktualisierungsprogramm => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2013-11-15] () Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\Digital Sites.job => C:\Users\DANIJ_~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleFordanij_000.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (whitelisted) ============= 2012-07-10 18:09 - 2012-07-10 18:09 - 00022528 _____ () C:\Windows\system32\BsTrace.dll 2012-07-27 14:51 - 2012-07-27 14:51 - 00346112 _____ () C:\Windows\system32\BsExtendFunc.dll 2012-07-10 18:11 - 2012-07-10 18:11 - 00009728 _____ () C:\Windows\system32\BsHelpCSps.dll 2012-07-10 18:11 - 2012-07-10 18:11 - 00052736 _____ () C:\Windows\system32\BlueSoleilCSps.dll 2013-12-09 13:52 - 2013-12-17 02:17 - 01356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll 2013-10-03 23:42 - 2013-10-03 23:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-01-20 13:16 - 2014-01-20 13:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-07-10 18:09 - 2012-07-10 18:09 - 00022528 _____ () C:\WINDOWS\SYSTEM32\BsTrace.dll 2012-08-10 10:55 - 2012-08-10 10:55 - 00323648 _____ () C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\USB\tl_filter.dll 2012-05-02 17:28 - 2012-05-02 17:28 - 00012800 _____ () C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\AMP\IVTAMPRL.dll 2012-07-10 18:11 - 2012-07-10 18:11 - 00009728 _____ () C:\Windows\SYSTEM32\BsHelpCSps.dll 2012-07-10 18:11 - 2012-07-10 18:11 - 00052736 _____ () C:\Windows\SYSTEM32\BlueSoleilCSps.dll 2012-07-10 18:09 - 2012-07-10 18:09 - 00022528 _____ () C:\Windows\SYSTEM32\BsTrace.dll 2012-12-12 20:27 - 2012-06-25 19:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-11-15 03:55 - 2012-05-30 07:51 - 00699280 ____R () C:\PROGRAM FILES (X86)\NORTON INTERNET SECURITY\ENGINE\20.4.0.40\wincfi39.dll 2012-07-10 18:14 - 2012-07-10 18:14 - 00072192 _____ () C:\WINDOWS\SYSTEM32\BsProfilefunc.dll 2012-07-27 14:51 - 2012-07-27 14:51 - 00346112 _____ () C:\WINDOWS\SYSTEM32\BsExtendFunc.dll 2012-12-12 20:46 - 2012-06-08 04:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2014-02-04 20:07 - 2014-02-02 00:41 - 00715592 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libglesv2.dll 2014-02-04 20:07 - 2014-02-02 00:41 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\libegl.dll 2014-02-04 20:07 - 2014-02-02 00:42 - 04055368 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll 2014-02-04 20:07 - 2014-02-02 00:42 - 00399688 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll 2014-02-04 20:07 - 2014-02-02 00:41 - 01634632 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ffmpegsumo.dll 2014-02-04 20:07 - 2014-02-02 00:42 - 13616456 _____ () C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll 2013-12-18 09:58 - 2013-12-18 09:58 - 00611128 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUKernel.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00152888 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUBasic.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00819000 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\MainControls.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00066360 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUTransl.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00129336 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\SchedAgent_2007.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00271672 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\AppInitialization.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00493368 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\Html.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00449848 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\GR32_D6.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00335672 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUCompression.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00307000 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\ntrtl60.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00307000 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\DEC.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00210744 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\XMLComponents.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00456504 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\PowerManager.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00154424 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\cefcomponent.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00425784 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\VisControls.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00143672 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUIcoEngineerDirTree.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00076600 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUShell.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00069944 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxGDIPlusD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00044856 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxCoreD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00469816 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\SysInfo.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00629560 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUDiskCleanerClass.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00656184 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\MSI_D6.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00091960 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUApps.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00213304 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\ProgramRating.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00954168 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TuningWizard.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00067896 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\SysControls.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00047928 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUApplications.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00082744 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUOperaClass.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00106296 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\Internet.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00489272 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\Traces.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00042808 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUSafariClass.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 01145144 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxBarD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00852280 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\cxLibraryD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00055608 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxThemeD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00033080 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUBase.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00598328 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\VirtualTreesR.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00207672 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxBarExtItemsD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00809272 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxSkinsCoreD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00329016 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxDockingD12.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00928056 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxRibbonD12.bpl 2013-12-18 09:59 - 2013-12-18 09:59 - 00139576 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\CommonForms.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00161080 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\PerlRegEx.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00106808 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUShredder.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00065848 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUIECacheClass.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00042808 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TURar.bpl 2013-12-18 09:58 - 2013-12-18 09:58 - 00016184 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\dxComnD12.bpl 2013-12-16 14:34 - 2013-12-16 14:34 - 13417496 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\libcef.dll 2013-12-18 09:59 - 2013-12-18 09:59 - 00617272 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\TUHTMLTabbedNavPkg.bpl 2013-12-18 10:38 - 2013-12-18 10:38 - 01041936 _____ () C:\Program Files (x86)\LibreOffice 4\program\libxml2.dll 2013-12-18 10:39 - 2013-12-18 10:39 - 00080400 _____ () C:\Program Files (x86)\LibreOffice 4\program\python3.dll 2013-12-18 02:04 - 2013-12-18 02:04 - 00049152 _____ () C:\Program Files (x86)\LibreOffice 4\program\python-core-3.3.0\lib\_socket.pyd 2013-12-18 10:38 - 2013-12-18 10:38 - 00182800 _____ () C:\Program Files (x86)\LibreOffice 4\program\libxslt.dll 2013-11-15 13:30 - 2013-11-15 13:30 - 00517440 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\sqlite3.dll 2013-11-15 13:30 - 2013-11-15 13:30 - 00599872 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\danij_000\SkyDrive:ms-properties AlternateDataStreams: C:\Users\danij_000\SkyDrive (2).old:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/17/2014 01:29:16 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (02/17/2014 01:29:16 PM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (02/17/2014 01:07:04 PM) (Source: Application Hang) (User: ) Description: Programm wwahost.exe, Version 6.3.9600.16431 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 22c0 Startzeit: 01cf2bd810983d72 Endzeit: 4294967295 Anwendungspfad: C:\WINDOWS\syswow64\wwahost.exe Berichts-ID: 02ff89ec-97cc-11e3-beab-a41731888ca6 Vollständiger Name des fehlerhaften Pakets: Microsoft.SkypeApp_2.5.0.1005_x86__kzf8qxf38zg5c Anwendungs-ID, die relativ zum fehlerhaften Paket ist: App Error: (02/17/2014 00:22:10 PM) (Source: Application Hang) (User: ) Description: Programm wwahost.exe, Version 6.3.9600.16431 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 2390 Startzeit: 01cf2bd1c84daf2a Endzeit: 4294967295 Anwendungspfad: C:\WINDOWS\syswow64\wwahost.exe Berichts-ID: b9edde77-97c5-11e3-beab-a41731888ca6 Vollständiger Name des fehlerhaften Pakets: Microsoft.SkypeApp_2.5.0.1005_x86__kzf8qxf38zg5c Anwendungs-ID, die relativ zum fehlerhaften Paket ist: App Error: (02/17/2014 11:21:42 AM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\WINDOWS\System32\msiexec.exe /V; Beschreibung = Removed PDF Architect; Fehler = 0x8004230f). Error: (02/17/2014 11:21:37 AM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 4194317 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d9dbf5-9a3d-47fb-a239-83227184b151}\ Ausführungskontext: Coordinator Error: (02/17/2014 11:21:37 AM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 4194317 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d9dbf5-9a3d-47fb-a239-83227184b151}\ Ausführungskontext: Coordinator Error: (02/17/2014 11:21:32 AM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. . Error: (02/17/2014 11:21:32 AM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (02/17/2014 11:21:32 AM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} System errors: ============= Error: (02/17/2014 00:19:40 PM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 00:19:40 PM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 00:19:34 PM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 00:19:34 PM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 00:19:32 PM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 00:19:32 PM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 10:33:04 AM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 10:31:58 AM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 10:31:58 AM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (02/17/2014 10:31:58 AM) (Source: DCOM) (User: NIGHTSHINE) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}NIGHTSHINEdanij_000S-1-5-21-3524602474-1062247959-1074854460-1005LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Microsoft Office Sessions: ========================= Error: (02/17/2014 01:29:16 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (02/17/2014 01:29:16 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (02/17/2014 01:07:04 PM) (Source: Application Hang)(User: ) Description: wwahost.exe6.3.9600.1643122c001cf2bd810983d724294967295C:\WINDOWS\syswow64\wwahost.exe02ff89ec-97cc-11e3-beab-a41731888ca6Microsoft.SkypeApp_2.5.0.1005_x86__kzf8qxf38zg5cApp Error: (02/17/2014 00:22:10 PM) (Source: Application Hang)(User: ) Description: wwahost.exe6.3.9600.16431239001cf2bd1c84daf2a4294967295C:\WINDOWS\syswow64\wwahost.exeb9edde77-97c5-11e3-beab-a41731888ca6Microsoft.SkypeApp_2.5.0.1005_x86__kzf8qxf38zg5cApp Error: (02/17/2014 11:21:42 AM) (Source: System Restore)(User: ) Description: C:\WINDOWS\System32\msiexec.exe /VRemoved PDF Architect0x8004230f Error: (02/17/2014 11:21:37 AM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 4194317 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d9dbf5-9a3d-47fb-a239-83227184b151}\ Ausführungskontext: Coordinator Error: (02/17/2014 11:21:37 AM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 4194317 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d9dbf5-9a3d-47fb-a239-83227184b151}\ Ausführungskontext: Coordinator Error: (02/17/2014 11:21:32 AM) (Source: VSS)(User: ) Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. Error: (02/17/2014 11:21:32 AM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (02/17/2014 11:21:32 AM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} CodeIntegrity Errors: =================================== Date: 2014-02-17 13:25:45.219 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-17 13:25:45.174 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-17 10:52:27.554 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-17 10:52:27.528 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-13 07:58:06.739 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-13 07:58:06.704 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-13 07:50:38.438 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-13 07:50:38.410 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-07 01:26:02.228 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-02-07 01:26:02.190 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Percentage of memory in use: 55% Total physical RAM: 8084.27 MB Available physical RAM: 3590.29 MB Total Pagefile: 9364.27 MB Available Pagefile: 4491.84 MB Total Virtual: 131072 MB Available Virtual: 131071.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:912.67 GB) (Free:471.83 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:17.73 GB) (Free:2.17 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 932 GB) (Disk ID: 0A108135) Partition: GPT Partition Type ==================== End Of Log ============================ |
19.02.2014, 16:40 | #8 |
/// the machine /// TB-Ausbilder | trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.02.2014, 01:24 | #9 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? Hallo und vielen Dank für die Geduld Junkware Removal Tool lasse ich im Anschluss laufen. Datenpost dann in nächster Nachricht. Hier der Inhalt vom Adawarescan: Code:
ATTFilter # AdwCleaner v3.019 - Report created 21/02/2014 at 00:44:27 # Updated 17/02/2014 by Xplode # Operating System : Windows 8.1 (64 bits) # Username : danij_000 - NIGHTSHINE # Running from : C:\Users\danij_000\Desktop\adwcleaner.exe # Option : Scan ***** [ Services ] ***** ***** [ Files / Folders ] ***** File Found : C:\WINDOWS\System32\Tasks\NCH Software Folder Found C:\Program Files (x86)\Mobogenie Folder Found C:\Program Files (x86)\NCH Software Folder Found C:\ProgramData\NCH Software Folder Found C:\Users\danij_000\AppData\Local\Mobogenie Folder Found C:\Users\danij_000\AppData\Roaming\DigitalSites Folder Found C:\Users\danij_000\AppData\Roaming\NCH Software ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Found : HKCU\Software\AppDataLow\Software\Show-Password Key Found : HKCU\Software\Conduit Key Found : HKCU\Software\GoforFiles Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} Key Found : HKCU\Software\NCH Software Key Found : [x64] HKCU\Software\Conduit Key Found : [x64] HKCU\Software\GoforFiles Key Found : [x64] HKCU\Software\NCH Software Key Found : HKLM\Software\caphyon Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323} Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777} Key Found : HKLM\SOFTWARE\Classes\CLSID\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} Key Found : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534} Key Found : HKLM\Software\Conduit Key Found : HKLM\Software\GoforFiles Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\nhogbcndagiknbfomjgdeghehkljalhi Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsemngr.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsermngr.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bundlesweetimsetup.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta babylon.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta tb.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\delta2.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltainstaller.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltasetup.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\deltatb_2501-c733154b.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iminentsetup.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sweetimsetup.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tbdelta.exetoolbar783881609.exe Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284} Key Found : HKLM\Software\NCH Software Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534} Key Found : [x64] HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar ***** [ Browsers ] ***** -\\ Internet Explorer v11.0.9600.16518 -\\ Google Chrome v32.0.1700.107 [ File : C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [6723 octets] - [13/02/2014 07:57:56] AdwCleaner[R1].txt - [958 octets] - [15/02/2014 18:39:43] AdwCleaner[R2].txt - [4519 octets] - [21/02/2014 00:44:27] AdwCleaner[S0].txt - [6435 octets] - [13/02/2014 08:06:38] AdwCleaner[S1].txt - [973 octets] - [15/02/2014 18:40:41] ########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [4698 octets] ########## Geändert von bandalino (21.02.2014 um 01:38 Uhr) |
21.02.2014, 01:41 | #10 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren?Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.2 (02.20.2014:1) OS: Windows 8.1 x64 Ran by danij_000 on 21.02.2014 at 1:24:49,07 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{ED07E9FF-1A2E-4FDA-ACE2-205357BD056D} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{F9D1C772-F749-4CC5-89E4-622CD4B9C98D} Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{F9D1C772-F749-4CC5-89E4-622CD4B9C98D} Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\microsoft\Internet Explorer\SearchScopes\{F9D1C772-F749-4CC5-89E4-622CD4B9C98D} Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{F9D1C772-F749-4CC5-89E4-622CD4B9C98D} ~~~ Files Successfully deleted: [File] "C:\Users\danij_000\appdata\locallow\SkwConfig.bin" ~~~ Folders Successfully deleted: [Folder] "C:\Users\danij_000\appdata\locallow\datamngr" Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{0CE71F0A-3A7D-4379-B424-6A2759F46EBE} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{11BB04A8-BA88-4EB0-9DBD-E05E083AE827} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{2E08C6D0-9E1A-42F6-BE65-68715E613075} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{343D6502-9960-4269-AF95-E21A8569D545} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{3DB41919-CDE7-4660-95A8-5DB7B3DD204B} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{72B98579-5B68-4704-8424-611312B3271D} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{7676D517-F8DA-4437-BF84-9B05279BB042} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{82DF1E60-41DB-454E-A5A2-DDEE9EF610ED} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{98868EF9-68CD-4AAC-8AB5-AB930803A3C8} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{992641E1-E1B6-454D-8737-B264D1DE77CB} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{9C42AEDD-CEBD-46DD-947C-8FF996976FE1} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{A2BE4852-9805-4158-9F46-11154FBF4389} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{C376EEE7-09E9-477E-BC7C-F3BA344FEC00} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{DEFB2A3E-8F56-4070-AD5C-C2ACE6C7C2EB} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{E9C7A379-A4D0-4ECB-BAFA-0095D30F995C} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{EDECCBC2-158B-4335-8110-F822B58080CD} Successfully deleted: [Empty Folder] C:\Users\danij_000\appdata\local\{FF46A32C-1470-4C9B-96E0-216FC9CF4489} ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 21.02.2014 at 1:33:05,19 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
21.02.2014, 02:20 | #11 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-02-2014 Ran by danij_000 (administrator) on NIGHTSHINE on 21-02-2014 02:13:13 Running from C:\Users\danij_000\Desktop Windows 8.1 (X64) OS Language: Dutch Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\WINDOWS\system32\Hpservice.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\ENAgent.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE () C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe (Microsoft Corporation) C:\WINDOWS\system32\inetsrv\inetinfo.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Microsoft Corporation) C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe (Microsoft Corporation) C:\WINDOWS\System32\tcpsvcs.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corporation) C:\WINDOWS\system32\inetsrv\wmsvc.exe (Seiko Epson Corporation) C:\WINDOWS\system32\EscSvc64.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Windows\System32\skydrive.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Greenshot) C:\Program Files\Greenshot\Greenshot.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Google Inc.) C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\swriter.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Symantec Corporation) C:\Program Files\WindowsApps\SymantecCorporation.NortonStudio_1.4.0.21_x86__v68kp9n051hdp\mmamain.exe (Thisisu) C:\Users\danij_000\Desktop\JRT.exe (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\WINDOWS\system32\prevhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Alexander Roshal) C:\Program Files\WinRAR\WinRAR.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3053808 2013-11-27] (Synaptics Incorporated) HKLM\...\Run: [Greenshot] - C:\Program Files\Greenshot\Greenshot.exe [495616 2013-12-12] (Greenshot) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-11-27] (IDT, Inc.) HKLM-x32\...\Run: [BtTray] - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [363520 2012-08-02] (IVT Corporation) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491320 2012-07-26] (CyberLink Corp.) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-09] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-12-23] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4962320 2014-01-22] (AVG Technologies CZ, s.r.o.) HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-01-28] (Hewlett-Packard) HKLM\...\Winlogon: [Shell] explorer.exe /select,explorer.exe Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21822128 2014-01-30] (Google) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [EPLTarget\P0000000000000000] - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-10-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [Mobile Partner] - C:\Program Files (x86)\HiSuite\HiSuite.exe [583488 2013-07-11] () HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [GoogleChromeAutoLaunch_17DC5D510F8BA736D59FAEB6E526DC7E] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [866632 2014-02-02] (Google Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2014-01-23] (Google Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [EPLTarget\P0000000000000001] - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-10-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Policies\Explorer: [NoDrives] 0x00000000 IFEO\bpsvc.exe: [Debugger] tasklist.exe IFEO\browsersafeguard.exe: [Debugger] tasklist.exe IFEO\icloud.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\icloudweb.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\protectedsearch.exe: [Debugger] tasklist.exe IFEO\rjatydimofu.exe: [Debugger] tasklist.exe IFEO\shellstreamsshortcut.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\snapdo.exe: [Debugger] tasklist.exe IFEO\stinst32.exe: [Debugger] tasklist.exe IFEO\stinst64.exe: [Debugger] tasklist.exe Startup: C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\danij_000\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/2 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/2 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCON13/2 SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1553-29906-12136-18/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM - {F9D1C772-F749-4CC5-89E4-622CD4B9C98D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1553-29906-12136-18/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 - {F9D1C772-F749-4CC5-89E4-622CD4B9C98D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKCU - {7F102906-92D3-4C2D-86EE-EA1550FD9CE5} URL = hxxp://partners.webmasterplan.com/click.asp?ref=383932&site=3357&type=text&ent=25&hnb=12&prd=yes&q={searchTerms}&subid=si SearchScopes: HKCU - {8841A440-41EC-471C-93D0-8F5042620070} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-37276-23097-0/4?satitle={searchTerms} BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) BHO-x32: Pagealicious - {60C07B56-542E-4054-A503-4E9E08DF2F84} - C:\Program Files (x86)\Pagealicious\Pagealicious.dll (TODO: <Company name>) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Chrome: ======= CHR HomePage: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Free Studio) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.3.0.0_1\np_dvs_plugin.dll (DVDVideoSoft Ltd.) CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll No File CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java Deployment Toolkit 7.0.450.18) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Java(TM) Platform SE 7 U45) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll No File CHR Extension: (Google Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2013-11-18] CHR Extension: (PDFzen PDF Viewer & Editor) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\adgncicbhbjfpijkdmbijninnhnmiblj [2013-11-18] CHR Extension: (Calorie Secrets) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkakkeppcemmggcopmjncnlpdefcmcj [2013-11-18] CHR Extension: (Theme Creator) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2013-11-18] CHR Extension: (Fabulous) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambjmeohlajelahhhniggkkceagdlcgj [2013-11-18] CHR Extension: (Google Drive) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-15] CHR Extension: (UJAM - Make your music.) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci [2013-11-18] CHR Extension: (Loupe Collage) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhaonknplhhecdgjpphnooeomecgipkc [2013-11-25] CHR Extension: (Send to Google Maps) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhggankplfegmjjngfmhfajedmiikolo [2013-11-28] CHR Extension: (Twitter Symbols) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjbolaacbpibnnbfnebejhonbdbmpifa [2013-11-18] CHR Extension: (Audiotool) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk [2013-11-29] CHR Extension: (YouTube) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-18] CHR Extension: (Strawberry Pal Regelkalender) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmeafmbadejchdjffdbdjdkcgfmlhjmh [2013-11-18] CHR Extension: (HelloFax: 50 Free Fax Pages) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bocmleclimfnadgmcdgecijlblfcmfnm [2013-11-25] CHR Extension: (Cash Organizer) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bppdehaogjdmkkiaiokmjdjmjnjicddk [2013-11-18] CHR Extension: (QR Code and Barcode Label Generator (FREE)) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciaehkhoafedeehacfjbiajaffodgdcn [2013-11-18] CHR Extension: (Auf den Amazon-Wunschzettel) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciagpekplgpbepdgggflgmahnjgiaced [2014-01-06] CHR Extension: (TypingWeb Typing Tutor) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\clcgempicojkfhpnepfecmklndooebjk [2013-11-18] CHR Extension: (Image Downloader) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnpniohnfphhjihaiiggeabnkjhpaldj [2013-11-18] CHR Extension: (HTML5 Video für YouTube™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\dolajcekhnohkpncmhgledbmndjpblei [2013-12-19] CHR Extension: (Erste Schritte) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ececjiojgdjnkaclcjanmhekfiddedfa [2013-11-18] CHR Extension: (Box - 10GB of FREE storage) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl [2013-11-18] CHR Extension: (Anwendungen iPhone en Förderung) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekckfmbgohljpbplohgkeoepmieffaef [2013-11-18] CHR Extension: (ZenMate for Google Chrome™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2013-11-18] CHR Extension: (Type Scout) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fedokkaolmkkoeedicihicdeppjjeamj [2013-11-18] CHR Extension: (Google Tabellen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2013-11-18] CHR Extension: (Make Passport/Visa/ID Photo) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjecobcbiglolnookbboflgeecppnolh [2013-11-25] CHR Extension: (Wunderlist) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjliknjliaohjgjajlgolhijphojjdkc [2013-11-18] CHR Extension: (Rechtschreibprüfung) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gehceilhofkogkifpjmgdhciddpbcboo [2013-11-18] CHR Extension: (In Google Drive speichern) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2013-11-18] CHR Extension: (Send to Evernote) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnilckpgiopfcokcijkhpghppekcoafm [2013-11-18] CHR Extension: (DocuSign) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\goblijolcnempeilmnkmfbhohlpngemd [2013-11-18] CHR Extension: (i2Symbol - Emoticons, Smileys, Symbols) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gponajbpomilcmbmfoipobkikeopjjhp [2013-11-18] CHR Extension: (SearchPreview) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjdanpjacpeeppdjkppebobilhaglfo [2013-12-19] CHR Extension: (CloudConvert) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpmbfgodkfcebpgheiedaddoikmljkk [2013-11-18] CHR Extension: (PDF Mergy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgecghmkcdefnknohcimkoemhaofpoha [2013-11-18] CHR Extension: (Google Keep) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2013-11-18] CHR Extension: (Snipping Tool for Evernote™ ) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmhpjbejpnnaffkpmebeagdiidibjfa [2013-11-18] CHR Extension: (Pixlr Express) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmjpdlmjopaeginhldhiokeidchjid [2013-11-18] CHR Extension: (Hojoki) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjcgdcbhobdcojhnabjlholpbdmnpaa [2013-11-25] CHR Extension: (instant translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihmgiclibbndffejedjimfjmfoabpcke [2013-11-18] CHR Extension: (Dropbox) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2013-11-18] CHR Extension: (Clearly) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2013-11-18] CHR Extension: (Online PDF Tools) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jddfpnmfhodaljeelokfceepbeapgbdn [2013-11-18] CHR Extension: (Zoho Writer) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgaeidloagadfcohacebhbkkapgpiddj [2013-11-25] CHR Extension: (Google Formulare) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg [2013-11-18] CHR Extension: (Pro Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhoogcgekgpljafaadaohobjcdccpick [2013-11-18] CHR Extension: (HelloSign: Online signatures made easy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kajjckmbclbffbpecfbiecehkfgopppd [2013-11-25] CHR Extension: (Diigo Web) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kipfakkakbicobflnnminhjjdkglgbmf [2013-11-18] CHR Extension: (Little Alchemy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2013-11-25] CHR Extension: (Evernote Web) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2013-11-18] CHR Extension: (Webcam Toy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfbgimoladefibpklnfmkpknadbklade [2013-12-19] CHR Extension: (Babbel) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmkbolconpmgdcpjcmhiiegjjopiofkn [2013-11-18] CHR Extension: (Google Maps) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2013-11-18] CHR Extension: (Google Input Tools) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2013-11-18] CHR Extension: (Until AM for Chrome) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjafmkicbmhcbapadecadciafbkecofl [2013-11-18] CHR Extension: (Uhr) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjocghlclkpgheifflemilcnblodjohg [2013-11-18] CHR Extension: (Google Zeichnungen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkaakpdehdafacodkgkpghoibnmamcme [2013-11-18] CHR Extension: (Norton Identity Protection) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2013-11-14] CHR Extension: (FastestFox – Schneller browsen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmffncokckfccddfenhkhnllmlobdahm [2013-11-18] CHR Extension: (SkyDrive) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2013-11-25] CHR Extension: (Highlight Keywords for Google Search) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhahncknpppipmgjchbbhehkfglelepf [2013-11-18] CHR Extension: (DVDVideoSoft) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2013-11-15] CHR Extension: (Button Generator) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\njphjoojdldjpogfhbncccnkldebgbnd [2013-11-18] CHR Extension: (dict-cc) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknonnojlmhnmjhpeokdbeineeajcemh [2013-11-18] CHR Extension: (Google Wallet) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-14] CHR Extension: (ImTranslator: Google Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2013-11-18] CHR Extension: (Any.do) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocgddccilgpeepgglnlpchkpgamkgmld [2013-11-25] CHR Extension: (Robot Theme, inspired by Android™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeljdmeofcikjblcoehpmdnooimalbmj [2013-12-19] CHR Extension: (WeVideo - Videos bearbeiten & erstellen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb [2013-11-25] CHR Extension: (Readability) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oknpjjbmpnndlpmnhmekjpocelpnlfdi [2013-11-18] CHR Extension: (Picasa) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2013-11-18] CHR Extension: (Diigo Web Collector - Capture and Annotate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oojbgadfejifecebmdnhhkbhdjaphole [2013-11-18] CHR Extension: (Lingualia) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\opbhiklafbmnhlmghmdmgcpbiejldino [2013-11-18] CHR Extension: (Cacoo - Diagramming & Real-Time Collaboration) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcflmbddgcmomcfngehfhlajjapabojh [2013-11-25] CHR Extension: (Windows 8 App Store) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcofehgfaeaakklkbahafjoifnaagecj [2013-11-18] CHR Extension: (Evernote Web Clipper) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2013-11-18] CHR Extension: (italki) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjoaokldacegpfbklgdphngdhejlkinb [2013-11-18] CHR Extension: (Audio Cutter) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\plimnkafgoiilijmlbnfoafihjjijbfp [2013-11-25] CHR Extension: (Type Fu) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pofoighmmpljaikjiidkkfhldjndfdbk [2013-11-18] CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\danij_000\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-11-15] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2013-11-15] CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\Exts\Chrome.crx [2013-12-14] ==================== Services (Whitelisted) ================= S2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1358944 2013-09-24] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3788816 2014-01-22] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1544192 2012-08-02] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-07-10] (IVT Corporation) R2 ENAgent; C:\WINDOWS\SysWOW64\ENAgent.exe [4209856 2012-10-24] (SEIKO EPSON CORPORATION) S4 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [653888 2013-09-05] (SEIKO EPSON CORPORATION) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 ftpsvc; C:\Windows\system32\inetsrv\ftpsvc.dll [372224 2013-11-24] (Microsoft Corporation) R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [137024 2013-07-11] () R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [197632 2013-05-02] () R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [16896 2013-11-24] (Microsoft Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2014-02-21] (IObit) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.) R2 MsDepSvc; C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe [84624 2013-06-10] (Microsoft Corporation) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) S4 TlntSvr; C:\Windows\System32\tlntsvr.exe [146944 2014-01-29] (Microsoft Corporation) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-11-24] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2013-11-24] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) R2 WMSVC; C:\Windows\system32\inetsrv\wmsvc.exe [10752 2013-11-24] (Microsoft Corporation) R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [627992 2013-12-17] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [20496 2013-09-04] (AVG Technologies CZ, s.r.o.) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\system32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [243480 2013-11-25] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [196376 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [252728 2013-10-21] (AVG Technologies CZ, s.r.o.) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R3 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\BASHDefs\20140110.001\BHDrvx64.sys [1526488 2013-12-18] (Symantec Corporation) R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation) U4 BthAvrcpTg; U4 BthHFEnum; U4 bthhfhid; R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-08] (Ralink Corporation) R3 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-11-27] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-11-21] (Symantec Corporation) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R3 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\IPSDefs\20140115.001\IDSvia64.sys [521944 2013-12-13] (Symantec Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\VirusDefs\20140116.003\ENG64.SYS [126040 2014-01-01] (Symantec Corporation) S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\VirusDefs\20140116.003\EX64.SYS [2099288 2014-01-01] (Symantec Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [269968 2012-07-04] (Realtek Semiconductor Corp.) R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-24] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-11-27] (Synaptics Incorporated) S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R3 SRTSPX; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R3 stdriver; C:\Windows\system32\DRIVERS\stdriverx64.sys [33488 2014-02-19] () S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) R3 SymDS; C:\Windows\system32\drivers\NISx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R3 SymEFA; C:\Windows\system32\drivers\NISx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) S4 SymELAM; C:\Windows\system32\drivers\NISx64\1404000.028\SymELAM.sys [23448 2012-06-20] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-11-15] (Symantec Corporation) R1 SymIM; C:\Windows\system32\DRIVERS\SymIMv.sys [43680 2013-03-05] (Symantec Corporation) R3 SymIRON; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-09-18] (TuneUp Software) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) R3 voxaldriver; C:\Windows\system32\DRIVERS\voxaldriverx64.sys [34512 2014-02-19] () S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) S3 clwvd6; \SystemRoot\system32\DRIVERS\clwvd6.sys [X] U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2011-10-24] (Huawei Technologies Co., Ltd.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-21 02:12 - 2014-02-21 02:12 - 00001384 _____ () C:\Users\danij_000\Desktop\Die Installation von Real Desktop fortsetzen.lnk 2014-02-21 02:09 - 2014-02-21 02:09 - 03033598 _____ (Schillergames ) C:\Users\danij_000\Downloads\RDeskFree2.0-setup.exe 2014-02-21 02:09 - 2014-02-21 02:09 - 00001150 _____ () C:\Users\Public\Desktop\Real Desktop Webpage.lnk 2014-02-21 02:09 - 2014-02-21 02:09 - 00001148 _____ () C:\Users\Public\Desktop\Facebook.lnk 2014-02-21 02:09 - 2014-02-21 02:09 - 00001142 _____ () C:\Users\Public\Desktop\Twitter.lnk 2014-02-21 02:09 - 2014-02-21 02:09 - 00001032 _____ () C:\Users\Public\Desktop\Real Desktop.lnk 2014-02-21 02:08 - 2014-02-21 02:08 - 02153984 _____ (Farbar) C:\Users\danij_000\Desktop\FRST64.exe 2014-02-21 02:08 - 2014-02-21 02:08 - 00002416 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Administrator 2014-02-21 02:08 - 2014-02-21 02:08 - 00001248 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk 2014-02-21 02:08 - 2014-02-21 02:08 - 00000308 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job 2014-02-21 02:08 - 2014-02-21 02:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\ProductData 2014-02-21 01:58 - 2014-02-21 01:58 - 00797972 _____ () C:\Users\danij_000\Downloads\famfamfam_silk_icons_v013.zip 2014-02-21 01:58 - 2014-02-21 01:58 - 00001035 _____ () C:\Users\Public\Desktop\Folderico.lnk 2014-02-21 01:58 - 2014-02-21 01:58 - 00000000 ____D () C:\ProgramData\Folderico 2014-02-21 01:58 - 2014-02-21 01:58 - 00000000 ____D () C:\Program Files (x86)\Folderico 2014-02-21 01:57 - 2014-02-21 01:57 - 04351610 _____ (Shedko ( www.softq.org )) C:\Users\danij_000\Downloads\Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:53 - 2014-02-21 01:53 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:50 - 2014-02-21 01:50 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_RDeskFree2.0-setup.exe 2014-02-21 01:33 - 2014-02-21 01:33 - 00003663 _____ () C:\Users\danij_000\Desktop\JRT.txt 2014-02-21 01:24 - 2014-02-21 01:24 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-02-21 01:16 - 2014-02-21 01:16 - 01037734 _____ (Thisisu) C:\Users\danij_000\Desktop\JRT.exe 2014-02-21 00:40 - 2014-02-21 00:40 - 01241834 _____ () C:\Users\danij_000\Desktop\adwcleaner.exe 2014-02-20 21:20 - 2014-02-20 21:20 - 00001642 _____ () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 - Verknüpfung.lnk 2014-02-20 18:48 - 2014-02-20 18:48 - 00092961 _____ () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen.htm 2014-02-20 18:48 - 2014-02-20 18:48 - 00000000 ____D () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen_files 2014-02-20 18:34 - 2014-02-20 18:34 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\WTablet 2014-02-20 10:21 - 2014-02-20 10:21 - 00476664 _____ () C:\Users\danij_000\Desktop\Audacity_RocketFuelInstaller.exe 2014-02-20 10:16 - 2014-02-20 10:16 - 00476664 _____ () C:\Users\danij_000\Desktop\PDFCreator_RocketFuelInstaller.exe 2014-02-20 10:14 - 2014-02-20 21:34 - 02294977 _____ () C:\Users\danij_000\Desktop\Google Play Store hack Installer Setup.rar 2014-02-20 10:10 - 2014-02-20 10:11 - 06270896 _____ () C:\Users\danij_000\Desktop\Hack.rar 2014-02-20 00:13 - 2014-02-20 01:12 - 00000000 ___RD () C:\Users\danij_000\Desktop\onlineverkaufsfotos 2014-02-20 00:11 - 2014-02-20 00:11 - 00000000 ____D () C:\Users\danij_000\Desktop\Notfall-CD-2.2 2014-02-20 00:03 - 2014-02-20 00:03 - 00000000 ____D () C:\newsnipp-it 2014-02-20 00:02 - 2014-02-20 21:20 - 00000000 ____D () C:\Users\danij_000\AppData\Local\www.rene-zeidler.de 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\www.rene-zeidler.de 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\ProgramData\www.rene-zeidler.de 2014-02-19 03:20 - 2014-02-19 03:20 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\AVG2014 2014-02-19 03:18 - 2014-02-19 03:20 - 00000000 ____D () C:\ProgramData\AVG2014 2014-02-19 03:16 - 2014-02-19 03:16 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-02-19 03:13 - 2014-02-19 03:13 - 00034512 _____ () C:\WINDOWS\system32\Drivers\voxaldriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00033488 _____ () C:\WINDOWS\system32\Drivers\stdriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.1.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00000000 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2014-02-19 03:08 - 2014-02-19 03:07 - 00107910 _____ () C:\Users\danij_000\Desktop\cvFEB2014.odt 2014-02-19 02:45 - 2014-02-21 01:00 - 00000000 ____D () C:\WINDOWS\System32\Tasks\NCH Software 2014-02-19 02:45 - 2014-02-19 02:45 - 00000000 ____D () C:\Users\danij_000\Documents\Mixpad Projects 2014-02-19 02:44 - 2014-02-19 03:12 - 00001138 _____ () C:\Users\Public\Desktop\WavePad Sound Editor.lnk 2014-02-18 13:27 - 2014-02-18 13:27 - 00000000 ____D () C:\Users\danij_000\Documents\virtualdjdatas 2014-02-18 12:33 - 2014-02-20 23:48 - 00000000 ____D () C:\ProgramData\MFAData 2014-02-18 12:33 - 2014-02-18 12:33 - 00000000 ____D () C:\Users\danij_000\AppData\Local\MFAData 2014-02-18 01:30 - 2014-02-18 13:52 - 00072356 _____ () C:\Users\danij_000\Desktop\KopievonCVoctober2013new2014.odt 2014-02-17 22:00 - 2014-02-17 21:58 - 00042097 _____ () C:\Users\danij_000\Desktop\cv FEB2014.odt 2014-02-17 19:08 - 2014-02-17 19:08 - 00000000 ____D () C:\Users\danij_000\Desktop\snip-it 2014-02-17 13:29 - 2014-02-17 13:29 - 00055973 _____ () C:\Users\danij_000\Desktop\Addition.txt 2014-02-17 13:27 - 2014-02-21 02:13 - 00042066 _____ () C:\Users\danij_000\Desktop\FRST.txt 2014-02-17 13:12 - 2014-02-17 13:12 - 00000000 ____D () C:\Users\danij_000\Documents\Listen 2014-02-17 13:10 - 2014-02-17 13:10 - 00001081 _____ () C:\Users\danij_000\Documents\Docs keine Ahnung wohin damit - Verknüpfung.lnk 2014-02-17 11:42 - 2014-02-17 11:47 - 548011982 _____ () C:\Users\danij_000\Desktop\Notfall-CD-2.2.zip 2014-02-17 10:16 - 2014-02-17 10:16 - 15634184 _____ ( ) C:\Users\danij_000\Desktop\setup.exe 2014-02-17 03:31 - 2014-02-21 01:02 - 00006244 _____ () C:\WINDOWS\PFRO.log 2014-02-17 03:27 - 2014-02-17 03:27 - 00056230 _____ () C:\Users\danij_000\Desktop\verkaufsartikelinfos.odt 2014-02-17 03:09 - 2014-02-17 03:09 - 00048254 _____ () C:\Users\danij_000\Desktop\amazon.odt 2014-02-17 01:27 - 2014-02-17 01:27 - 02976072 _____ (Google Inc.) C:\Users\danij_000\Desktop\gpautobackup_setup.exe 2014-02-16 20:56 - 2014-02-16 20:56 - 00000308 _____ () C:\Users\danij_000\Desktop\31344722044.csv 2014-02-14 18:57 - 2014-02-21 02:05 - 00000000 ____D () C:\Users\danij_000\Documents\typentest ergebnis u infos 2014-02-13 07:57 - 2014-02-21 01:38 - 00000000 ____D () C:\AdwCleaner 2014-02-13 07:52 - 2014-02-13 07:59 - 00003074 _____ () C:\Users\danij_000\Desktop\SystemLook.txt 2014-02-12 22:00 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll 2014-02-12 22:00 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll 2014-02-12 21:59 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-12 21:59 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-12 21:59 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-12 21:59 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-12 21:59 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-12 21:59 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-12 21:59 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-12 21:59 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-12 21:59 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-12 21:59 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-12 21:59 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-12 21:59 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-12 21:59 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-12 21:59 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-12 21:59 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-12 21:59 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-12 21:59 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-12 21:59 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-12 21:59 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-12 21:59 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-12 21:59 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-12 21:59 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-12 21:59 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-12 21:59 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-12 21:59 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-12 21:59 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-12 21:59 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-12 21:59 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-12 21:59 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-12 21:59 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-12 21:59 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-12 21:59 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-12 21:59 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-12 21:59 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-12 21:59 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-12 21:59 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-12 21:59 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-12 21:59 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2014-02-12 21:59 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-02-12 21:59 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-02-12 21:59 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-02-12 21:59 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2014-02-12 21:59 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2014-02-12 21:58 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2014-02-12 21:58 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2014-02-12 21:58 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2014-02-12 21:58 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-02-12 21:58 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-02-12 21:58 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2014-02-12 21:58 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-02-12 21:58 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-02-12 21:58 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-02-12 21:58 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-02-12 21:58 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2014-02-12 21:58 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2014-02-12 21:58 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-02-12 21:58 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-02-12 21:58 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-02-12 21:58 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-02-12 21:58 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-02-12 21:58 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-02-12 21:58 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-02-12 21:58 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-02-12 21:58 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms 2014-02-12 21:58 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms 2014-02-12 21:58 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-02-12 21:58 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-02-12 21:58 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2014-02-12 21:58 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2014-02-07 23:29 - 2014-02-07 23:35 - 882900992 _____ () C:\Users\danij_000\Downloads\xubuntu-13.10-desktop-amd64.iso 2014-02-07 23:18 - 2014-02-07 23:18 - 00000979 _____ () C:\Users\Public\Desktop\Shoot'n Save.lnk 2014-02-07 23:18 - 2014-02-07 23:18 - 00000000 ____D () C:\Program Files (x86)\ShootnSave 2014-02-07 23:17 - 2014-02-07 23:17 - 00509342 _____ () C:\Users\danij_000\Desktop\ShootnSave.zip 2014-02-07 01:25 - 2014-02-08 02:04 - 00000000 ____D () C:\Program Files (x86)\AntiTwin 2014-02-07 01:25 - 2014-02-07 01:25 - 00001025 _____ () C:\Users\Public\Desktop\Anti-Twin.lnk 2014-02-04 22:15 - 2011-05-30 14:42 - 00255488 _____ () C:\WINDOWS\system32\xvidvfw.dll 2014-02-04 22:15 - 2011-05-30 14:42 - 00240640 _____ () C:\WINDOWS\SysWOW64\xvidvfw.dll 2014-02-04 22:15 - 2011-05-23 10:52 - 00153088 _____ () C:\WINDOWS\SysWOW64\xvid.ax 2014-02-04 22:15 - 2011-05-23 08:49 - 00173568 _____ () C:\WINDOWS\system32\xvid.ax 2014-02-04 22:15 - 2011-05-23 08:46 - 00645632 _____ () C:\WINDOWS\SysWOW64\xvidcore.dll 2014-02-04 22:15 - 2011-05-23 08:45 - 00696832 _____ () C:\WINDOWS\system32\xvidcore.dll 2014-02-04 22:14 - 2014-02-21 01:15 - 00000328 _____ () C:\WINDOWS\Tasks\Digital Sites.job 2014-02-04 22:14 - 2014-02-14 19:15 - 00002666 _____ () C:\WINDOWS\System32\Tasks\Digital Sites 2014-02-04 22:14 - 2014-02-04 22:14 - 00715038 _____ () C:\WINDOWS\unins000.exe 2014-02-04 16:35 - 2014-02-04 09:53 - 00063086 _____ () C:\Users\danij_000\Documents\untitled_2odt 2014-02-04 14:10 - 2014-02-04 14:10 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.sing15-30-36.doc# 2014-02-04 14:09 - 2014-02-03 20:36 - 00062575 _____ () C:\Users\danij_000\Documents\untitled_1odt 2014-02-04 13:47 - 2014-02-21 01:03 - 00000470 _____ () C:\WINDOWS\SysWOW64\ÁÂÃÄÅÆÇÈÉÊËÌÍÎÏÐÑÒÓÔÕÖ÷ØÙÚÛÜÝÞ 2014-02-04 13:47 - 2012-10-24 06:42 - 04209856 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\ENAgent.exe 2014-02-04 13:39 - 2014-01-19 08:38 - 00270496 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00312744 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00108968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2014-02-03 15:18 - 2014-02-03 15:18 - 00000000 ____D () C:\Program Files\Java 2014-02-03 13:09 - 2014-02-03 13:09 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-02-03 13:05 - 2014-02-03 13:05 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Intel_Corporation 2014-02-03 13:04 - 2014-02-03 13:04 - 00405504 _____ () C:\Users\danij_000\Desktop\intel_srldetect_4.5.13.0.msi 2014-02-03 11:33 - 2014-02-21 01:24 - 02080975 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-03 11:33 - 2014-02-21 01:04 - 00001594 _____ () C:\WINDOWS\setupact.log 2014-02-03 11:33 - 2014-02-03 11:33 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-02 06:12 - 2014-02-02 06:12 - 00001536 _____ () C:\Users\danij_000\PaceKeyChain 2014-02-02 03:39 - 2014-02-02 03:39 - 00000000 ____D () C:\Users\danij_000\AppData\Local\PaceAP 2014-02-02 02:41 - 2014-02-02 02:41 - 00000000 ____D () C:\ProgramData\PACE 2014-02-02 00:25 - 2014-02-12 00:35 - 00000000 ____D () C:\Program Files (x86)\UVISoundBanks 2014-02-02 00:25 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\Propellerhead 2014-02-02 00:25 - 2013-04-17 17:37 - 02275328 _____ () C:\WINDOWS\SysWOW64\libsndfile-1.dll 2014-02-02 00:11 - 2014-02-02 00:11 - 00000000 ____D () C:\Users\danij_000\Documents\Ohm Force 2014-02-02 00:01 - 2014-02-02 07:45 - 00000000 ____D () C:\Users\danij_000\Desktop\OhmPlug 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\ProgramData\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Program Files (x86)\Ohm Force 2014-02-01 00:25 - 2014-02-14 19:15 - 00000218 _____ () C:\Users\danij_000\AppData\Roaming\WB.CFG 2014-02-01 00:25 - 2014-02-01 00:25 - 00000005 _____ () C:\Users\danij_000\AppData\Roaming\WBPU-TTL.DAT 2014-02-01 00:23 - 2014-02-01 00:23 - 00003738 _____ () C:\WINDOWS\System32\Tasks\DivX-Online-Aktualisierungsprogramm 2014-01-31 14:38 - 2014-01-29 03:05 - 00000862 _____ () C:\WINDOWS\system32\termcap 2014-01-31 09:14 - 2014-01-31 09:14 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.profF.htm# 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DivX 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files\DivX 2014-01-30 16:51 - 2014-02-04 22:14 - 00004900 _____ () C:\WINDOWS\unins000.dat 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\ProgramData\DivX 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\Xvid 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\Lame For Audacity 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\ffdshow 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\DirectVobSub 2014-01-30 16:51 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\LavFilters 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\CDXReader 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\OpenSource Flash Video Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Haali 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DSP-worx 2014-01-30 16:51 - 2012-02-26 16:47 - 00079360 _____ () C:\WINDOWS\SysWOW64\ff_vfw.dll 2014-01-30 16:51 - 2012-01-09 20:45 - 00178688 _____ () C:\WINDOWS\SysWOW64\unrar.dll 2014-01-30 16:51 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2014-01-30 16:51 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2014-01-30 12:31 - 2013-10-23 12:29 - 00044936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll 2014-01-30 12:31 - 2013-10-23 12:13 - 00171864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll 2014-01-30 12:31 - 2013-10-22 09:18 - 01287064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-01-30 12:31 - 2013-10-22 08:55 - 02328872 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-01-30 12:31 - 2013-10-22 07:03 - 02065448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-01-30 12:31 - 2013-10-22 06:15 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2014-01-30 12:31 - 2013-10-22 05:04 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2014-01-30 12:31 - 2013-10-22 05:02 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-01-30 12:31 - 2013-10-22 04:44 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-01-30 12:31 - 2013-10-22 03:38 - 01362944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2014-01-30 12:31 - 2013-10-22 03:22 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-01-30 12:31 - 2013-10-22 02:53 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-01-30 12:31 - 2013-10-19 09:51 - 00481392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-01-30 12:31 - 2013-10-19 08:12 - 00380656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-01-30 12:31 - 2013-10-19 05:48 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2014-01-30 12:31 - 2013-10-19 05:03 - 00531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2014-01-30 12:31 - 2013-10-19 04:26 - 01231360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-01-30 12:31 - 2013-10-19 04:14 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-01-30 12:31 - 2013-10-16 10:34 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2014-01-30 12:31 - 2013-10-16 10:33 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2014-01-30 12:31 - 2013-10-13 04:06 - 00258904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys 2014-01-30 12:31 - 2013-10-13 03:43 - 00708616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2014-01-30 12:31 - 2013-10-10 17:26 - 00317616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-01-30 12:31 - 2013-10-10 17:26 - 00104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2014-01-30 12:31 - 2013-10-10 15:53 - 00235960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2014-01-30 12:31 - 2013-10-10 15:53 - 00088272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2014-01-30 12:31 - 2013-10-10 12:38 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-01-30 12:31 - 2013-10-10 11:34 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-01-30 12:31 - 2013-10-10 11:27 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-01-30 12:31 - 2013-10-08 11:28 - 00523096 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2014-01-30 12:31 - 2013-10-08 07:46 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll 2014-01-30 12:31 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll 2014-01-30 12:31 - 2013-10-08 06:50 - 00656384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-01-30 12:31 - 2013-10-08 06:48 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-01-30 12:31 - 2013-10-08 06:15 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-01-30 12:31 - 2013-10-08 06:09 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2014-01-30 12:31 - 2013-10-08 05:50 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2014-01-30 12:31 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2014-01-30 12:31 - 2013-10-07 08:21 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-01-30 12:31 - 2013-10-07 03:13 - 03532288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-01-30 12:31 - 2013-10-05 16:25 - 00057176 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2014-01-30 12:31 - 2013-10-05 15:21 - 00699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2014-01-30 12:31 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2014-01-30 12:31 - 2013-10-05 12:01 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2014-01-30 12:31 - 2013-10-05 12:01 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2014-01-30 12:31 - 2013-10-05 12:00 - 01200640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-01-30 12:31 - 2013-10-05 10:36 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe 2014-01-30 12:31 - 2013-10-05 10:18 - 01011712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2014-01-30 12:31 - 2013-10-05 10:07 - 00830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2014-01-30 12:31 - 2013-10-05 09:56 - 01147904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2014-01-30 12:31 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2014-01-30 12:31 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2014-01-30 12:31 - 2013-10-05 09:15 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll 2014-01-30 12:31 - 2013-10-05 08:43 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2014-01-30 12:31 - 2013-10-05 08:39 - 06639616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-01-30 12:31 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2014-01-30 12:31 - 2013-10-05 08:32 - 05769728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-01-30 12:31 - 2013-10-04 09:10 - 00533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2014-01-30 12:31 - 2013-09-17 10:06 - 01067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2014-01-30 12:31 - 2013-09-17 08:01 - 00270848 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2014-01-30 12:31 - 2013-09-17 07:31 - 00883184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2014-01-30 12:31 - 2013-09-17 05:37 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2014-01-30 12:31 - 2013-09-14 15:07 - 02134120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-01-30 12:31 - 2013-09-14 15:00 - 00391512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2014-01-30 12:31 - 2013-09-14 13:39 - 01799944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2014-01-30 12:31 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2014-01-30 12:31 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ftp.exe 2014-01-30 12:31 - 2013-09-12 09:45 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2014-01-30 12:31 - 2013-09-12 09:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2014-01-30 12:31 - 2013-09-12 09:08 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2014-01-30 12:31 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2014-01-30 12:31 - 2013-09-12 08:44 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2014-01-30 12:31 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2014-01-30 12:31 - 2013-09-12 08:37 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-01-30 12:31 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2014-01-30 12:31 - 2013-09-12 08:16 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2014-01-30 12:31 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2014-01-30 12:31 - 2013-09-10 05:52 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll 2014-01-30 12:30 - 2013-10-22 04:56 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-01-30 12:30 - 2013-10-22 03:13 - 01704448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-01-30 12:30 - 2013-10-05 09:55 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll 2014-01-30 12:30 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll 2014-01-30 12:30 - 2013-09-14 11:05 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2014-01-30 12:30 - 2013-09-13 09:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe 2014-01-29 11:27 - 2014-01-29 11:27 - 00000000 ____D () C:\Users\danij_000\Documents\DVDVideoSoft 2014-01-29 03:10 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-01-29 03:10 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2014-01-29 03:10 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2014-01-29 03:10 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2014-01-29 03:10 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2014-01-29 03:10 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2014-01-29 03:10 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ipnat.sys 2014-01-29 03:10 - 2013-11-27 11:54 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-01-29 03:10 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll 2014-01-29 03:10 - 2013-11-27 11:08 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-01-29 03:10 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll 2014-01-29 03:10 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2014-01-29 03:10 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2014-01-29 03:10 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll 2014-01-29 03:10 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-01-29 03:10 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll 2014-01-29 03:10 - 2013-11-27 05:01 - 00385614 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-01-29 03:10 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2014-01-29 03:10 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-01-29 03:10 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-01-29 03:10 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-01-29 03:10 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2014-01-29 03:10 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2014-01-29 03:10 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2014-01-29 03:10 - 2013-11-26 11:13 - 04191232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-01-29 03:10 - 2013-11-26 10:21 - 18577920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-01-29 03:10 - 2013-11-26 09:28 - 13925888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-01-29 03:10 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2014-01-29 03:10 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2014-01-29 03:10 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2014-01-29 03:10 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2014-01-29 03:10 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-01-29 03:10 - 2013-11-23 12:49 - 21196664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-01-29 03:10 - 2013-11-23 09:19 - 18642504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-01-29 03:10 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll 2014-01-29 03:10 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys 2014-01-29 03:10 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-01-29 03:10 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2014-01-29 03:10 - 2013-11-23 04:57 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2014-01-29 03:10 - 2013-11-23 04:48 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2014-01-29 03:10 - 2013-11-23 04:25 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2014-01-29 03:10 - 2013-11-23 04:25 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2014-01-29 03:10 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-01-29 03:10 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-01-29 03:10 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll 2014-01-29 03:10 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-01-29 03:10 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-01-29 03:10 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-01-29 03:10 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2014-01-29 03:10 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2014-01-29 03:10 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-01-29 03:10 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-01-29 03:10 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-01-29 03:10 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2014-01-29 03:10 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2014-01-29 03:10 - 2013-09-17 10:06 - 00465960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-01-29 03:10 - 2013-09-17 07:31 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-01-29 03:10 - 2013-09-14 10:11 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2014-01-29 03:05 - 2014-01-29 03:05 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsvr.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsess.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntadmn.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\TFTP.EXE 2014-01-29 03:05 - 2014-01-29 03:05 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\simptcp.dll 2014-01-29 02:57 - 2014-01-30 20:35 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Google 2014-01-29 02:57 - 2014-01-29 02:57 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\HewlettPackard 2014-01-29 00:40 - 2014-01-29 00:40 - 00001795 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-01-29 00:39 - 2014-01-29 00:40 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-01-29 00:39 - 2014-01-29 00:40 - 00000000 ____D () C:\Program Files\iTunes 2014-01-29 00:39 - 2014-01-29 00:39 - 00000000 ____D () C:\Program Files\iPod 2014-01-23 14:25 - 2014-01-23 14:27 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2012 2014-01-23 14:25 - 2014-01-23 14:27 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2012 2014-01-23 02:08 - 2014-02-19 23:54 - 00001003 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\ProgramData\Google 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\Program Files\Google 2014-01-22 22:16 - 2014-01-22 22:16 - 03211264 _____ () C:\Users\danij_000\DevelopmentStorageDb22.mdf 2014-01-22 22:16 - 2014-01-22 22:16 - 00851968 _____ () C:\Users\danij_000\DevelopmentStorageDb22_log.ldf 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Users\danij_000\AppData\Local\DevelopmentStorage 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Program Files (x86)\Windows Azure Tools 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files\VS2010Schemas 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-01-22 22:10 - 2014-01-22 22:10 - 00000000 ____D () C:\Program Files\Microsoft SDKs 2014-01-22 22:08 - 2014-01-22 22:08 - 00000026 _____ () C:\WINDOWS\system32\HostingLog-012214220843.log 2014-01-22 22:06 - 2014-01-22 22:06 - 00000000 ____D () C:\Program Files (x86)\Windows Kits 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1031 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1031 2014-01-22 22:04 - 2014-01-22 22:07 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server 2014-01-22 22:04 - 2014-01-22 22:07 - 00000000 ____D () C:\Program Files (x86)\Microsoft SDKs 2014-01-22 22:04 - 2014-01-22 22:06 - 00000000 ____D () C:\Program Files\Microsoft SQL Server 2014-01-22 22:02 - 2014-01-22 22:03 - 00000000 ____D () C:\Program Files (x86)\Microsoft ASP.NET 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files\IIS Express 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\IIS Express 2014-01-22 22:01 - 2014-01-22 22:09 - 00000000 ____D () C:\Program Files\IIS 2014-01-22 22:01 - 2014-01-22 22:09 - 00000000 ____D () C:\Program Files (x86)\IIS 2014-01-22 22:01 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\Microsoft Web Tools 2014-01-22 21:59 - 2014-01-22 21:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Help Viewer 2014-01-22 21:58 - 2014-01-22 21:58 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2014-01-22 21:56 - 2014-02-05 03:05 - 00000000 ____D () C:\ProgramData\Package Cache 2014-01-22 21:56 - 2014-02-05 03:05 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 11.0 2014-01-22 21:56 - 2014-01-22 21:56 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-22 21:53 - 2014-01-22 21:53 - 05994312 _____ (Microsoft Corporation) C:\Users\danij_000\Documents\WindowsAzureTools.vs110.exe 2014-01-22 21:20 - 2014-01-22 21:20 - 00000000 ____D () C:\Users\danij_000\Downloads\dir600b_v2.01 2014-01-22 19:32 - 2014-01-22 19:32 - 00819136 _____ (Google Inc.) C:\Users\danij_000\Documents\googledrivesync.exe 2014-01-22 19:32 - 2014-01-22 19:32 - 00000000 ____D () C:\Users\danij_000\Downloads\DIR-600_GPL_code_revb12 ==================== One Month Modified Files and Folders ======= 2014-02-21 02:13 - 2014-02-17 13:27 - 00042066 _____ () C:\Users\danij_000\Desktop\FRST.txt 2014-02-21 02:13 - 2013-11-10 17:25 - 00000000 ____D () C:\FRST 2014-02-21 02:12 - 2014-02-21 02:12 - 00001384 _____ () C:\Users\danij_000\Desktop\Die Installation von Real Desktop fortsetzen.lnk 2014-02-21 02:11 - 2013-11-14 20:51 - 00001138 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-21 02:09 - 2014-02-21 02:09 - 03033598 _____ (Schillergames ) C:\Users\danij_000\Downloads\RDeskFree2.0-setup.exe 2014-02-21 02:09 - 2014-02-21 02:09 - 00001150 _____ () C:\Users\Public\Desktop\Real Desktop Webpage.lnk 2014-02-21 02:09 - 2014-02-21 02:09 - 00001148 _____ () C:\Users\Public\Desktop\Facebook.lnk 2014-02-21 02:09 - 2014-02-21 02:09 - 00001142 _____ () C:\Users\Public\Desktop\Twitter.lnk 2014-02-21 02:09 - 2014-02-21 02:09 - 00001032 _____ () C:\Users\Public\Desktop\Real Desktop.lnk 2014-02-21 02:08 - 2014-02-21 02:08 - 02153984 _____ (Farbar) C:\Users\danij_000\Desktop\FRST64.exe 2014-02-21 02:08 - 2014-02-21 02:08 - 00002416 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Administrator 2014-02-21 02:08 - 2014-02-21 02:08 - 00001248 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk 2014-02-21 02:08 - 2014-02-21 02:08 - 00000308 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job 2014-02-21 02:08 - 2014-02-21 02:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\ProductData 2014-02-21 02:08 - 2013-11-15 13:30 - 00001272 _____ () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk 2014-02-21 02:07 - 2013-09-24 23:53 - 00000000 ____D () C:\Users\danij_000\icons 2014-02-21 02:05 - 2014-02-14 18:57 - 00000000 ____D () C:\Users\danij_000\Documents\typentest ergebnis u infos 2014-02-21 02:04 - 2013-12-31 02:06 - 00000000 ____D () C:\Users\danij_000\Documents\Rechnungen 2014-02-21 02:04 - 2013-05-18 01:39 - 00000000 ____D () C:\Users\danij_000\AnwendungenundSetups 2014-02-21 02:03 - 2013-11-14 20:42 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3524602474-1062247959-1074854460-1005 2014-02-21 02:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-02-21 01:58 - 2014-02-21 01:58 - 00797972 _____ () C:\Users\danij_000\Downloads\famfamfam_silk_icons_v013.zip 2014-02-21 01:58 - 2014-02-21 01:58 - 00001035 _____ () C:\Users\Public\Desktop\Folderico.lnk 2014-02-21 01:58 - 2014-02-21 01:58 - 00000000 ____D () C:\ProgramData\Folderico 2014-02-21 01:58 - 2014-02-21 01:58 - 00000000 ____D () C:\Program Files (x86)\Folderico 2014-02-21 01:57 - 2014-02-21 01:57 - 04351610 _____ (Shedko ( www.softq.org )) C:\Users\danij_000\Downloads\Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:53 - 2014-02-21 01:53 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:50 - 2014-02-21 01:50 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_RDeskFree2.0-setup.exe 2014-02-21 01:40 - 2013-10-05 22:39 - 02937856 ___SH () C:\Users\danij_000\Desktop\Thumbs.db 2014-02-21 01:38 - 2014-02-13 07:57 - 00000000 ____D () C:\AdwCleaner 2014-02-21 01:33 - 2014-02-21 01:33 - 00003663 _____ () C:\Users\danij_000\Desktop\JRT.txt 2014-02-21 01:24 - 2014-02-21 01:24 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-02-21 01:24 - 2014-02-03 11:33 - 02080975 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-21 01:19 - 2013-12-16 11:22 - 00000940 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-02-21 01:17 - 2013-11-14 20:51 - 00001134 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-21 01:16 - 2014-02-21 01:16 - 01037734 _____ (Thisisu) C:\Users\danij_000\Desktop\JRT.exe 2014-02-21 01:15 - 2014-02-04 22:14 - 00000328 _____ () C:\WINDOWS\Tasks\Digital Sites.job 2014-02-21 01:11 - 2013-11-24 17:17 - 00003954 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{D4537034-D7A6-4244-A6BD-E291D308EB1F} 2014-02-21 01:07 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-02-21 01:06 - 2014-01-02 21:51 - 00000000 __RDO () C:\Users\danij_000\SkyDrive 2014-02-21 01:06 - 2012-08-10 17:45 - 00000821 _____ () C:\WINDOWS\SysWOW64\bscs.ini 2014-02-21 01:05 - 2013-11-15 13:30 - 00000000 ____D () C:\ProgramData\ProductData 2014-02-21 01:05 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\inetsrv 2014-02-21 01:05 - 2012-12-12 20:36 - 00004524 _____ () C:\WINDOWS\SysWOW64\LOCALSERVICE.INI 2014-02-21 01:04 - 2014-02-03 11:33 - 00001594 _____ () C:\WINDOWS\setupact.log 2014-02-21 01:03 - 2014-02-04 13:47 - 00000470 _____ () C:\WINDOWS\SysWOW64\ÁÂÃÄÅÆÇÈÉÊËÌÍÎÏÐÑÒÓÔÕÖ÷ØÙÚÛÜÝÞ 2014-02-21 01:03 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-02-21 01:03 - 2012-12-12 20:36 - 00000043 _____ () C:\WINDOWS\SysWOW64\LOCALDEVICE.INI 2014-02-21 01:02 - 2014-02-17 03:31 - 00006244 _____ () C:\WINDOWS\PFRO.log 2014-02-21 01:02 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2014-02-21 01:01 - 2013-11-14 20:51 - 00004110 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-21 01:01 - 2013-11-14 20:51 - 00003874 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-21 01:00 - 2014-02-19 02:45 - 00000000 ____D () C:\WINDOWS\System32\Tasks\NCH Software 2014-02-21 00:40 - 2014-02-21 00:40 - 01241834 _____ () C:\Users\danij_000\Desktop\adwcleaner.exe 2014-02-20 23:48 - 2014-02-18 12:33 - 00000000 ____D () C:\ProgramData\MFAData 2014-02-20 21:34 - 2014-02-20 10:14 - 02294977 _____ () C:\Users\danij_000\Desktop\Google Play Store hack Installer Setup.rar 2014-02-20 21:20 - 2014-02-20 21:20 - 00001642 _____ () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 - Verknüpfung.lnk 2014-02-20 21:20 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\AppData\Local\www.rene-zeidler.de 2014-02-20 20:19 - 2013-12-16 11:22 - 00003828 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-02-20 19:09 - 2013-11-15 07:14 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Paint.NET 2014-02-20 18:48 - 2014-02-20 18:48 - 00092961 _____ () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen.htm 2014-02-20 18:48 - 2014-02-20 18:48 - 00000000 ____D () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen_files 2014-02-20 18:47 - 2014-01-07 01:18 - 00040862 _____ () C:\Users\danij_000\Desktop\PASSWORDS.odt 2014-02-20 18:34 - 2014-02-20 18:34 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\WTablet 2014-02-20 16:00 - 2013-11-14 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Packages 2014-02-20 16:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-02-20 10:21 - 2014-02-20 10:21 - 00476664 _____ () C:\Users\danij_000\Desktop\Audacity_RocketFuelInstaller.exe 2014-02-20 10:16 - 2014-02-20 10:16 - 00476664 _____ () C:\Users\danij_000\Desktop\PDFCreator_RocketFuelInstaller.exe 2014-02-20 10:11 - 2014-02-20 10:10 - 06270896 _____ () C:\Users\danij_000\Desktop\Hack.rar 2014-02-20 01:12 - 2014-02-20 00:13 - 00000000 ___RD () C:\Users\danij_000\Desktop\onlineverkaufsfotos 2014-02-20 00:11 - 2014-02-20 00:11 - 00000000 ____D () C:\Users\danij_000\Desktop\Notfall-CD-2.2 2014-02-20 00:03 - 2014-02-20 00:03 - 00000000 ____D () C:\newsnipp-it 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\www.rene-zeidler.de 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\ProgramData\www.rene-zeidler.de 2014-02-20 00:00 - 2013-08-15 18:16 - 00000000 ___RD () C:\Users\danij_000\Documents\Lohnsteuer 2014-02-19 23:54 - 2014-01-23 02:08 - 00001003 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-02-19 23:06 - 2013-11-19 23:22 - 00003192 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleFordanij_000 2014-02-19 23:06 - 2013-11-19 23:22 - 00000370 _____ () C:\WINDOWS\Tasks\HPCeeScheduleFordanij_000.job 2014-02-19 22:49 - 2014-01-05 04:09 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Avg2014 2014-02-19 03:27 - 2013-12-21 15:03 - 00000000 ___RD () C:\Users\danij_000\Desktop\mypersonalDOCS 2014-02-19 03:20 - 2014-02-19 03:20 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\AVG2014 2014-02-19 03:20 - 2014-02-19 03:18 - 00000000 ____D () C:\ProgramData\AVG2014 2014-02-19 03:19 - 2013-11-27 19:26 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\TuneUp Software 2014-02-19 03:19 - 2012-07-26 09:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-02-19 03:16 - 2014-02-19 03:16 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-02-19 03:13 - 2014-02-19 03:13 - 00034512 _____ () C:\WINDOWS\system32\Drivers\voxaldriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00033488 _____ () C:\WINDOWS\system32\Drivers\stdriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.1.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00000000 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2014-02-19 03:12 - 2014-02-19 02:44 - 00001138 _____ () C:\Users\Public\Desktop\WavePad Sound Editor.lnk 2014-02-19 03:07 - 2014-02-19 03:08 - 00107910 _____ () C:\Users\danij_000\Desktop\cvFEB2014.odt 2014-02-19 02:45 - 2014-02-19 02:45 - 00000000 ____D () C:\Users\danij_000\Documents\Mixpad Projects 2014-02-18 13:52 - 2014-02-18 01:30 - 00072356 _____ () C:\Users\danij_000\Desktop\KopievonCVoctober2013new2014.odt 2014-02-18 13:27 - 2014-02-18 13:27 - 00000000 ____D () C:\Users\danij_000\Documents\virtualdjdatas 2014-02-18 13:27 - 2013-09-30 05:15 - 03448354 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-02-18 13:27 - 2013-09-30 04:59 - 00929128 _____ () C:\WINDOWS\system32\perfh013.dat 2014-02-18 13:27 - 2013-09-30 04:59 - 00211096 _____ () C:\WINDOWS\system32\perfc013.dat 2014-02-18 13:27 - 2012-09-02 01:55 - 01055820 _____ () C:\WINDOWS\system32\perfh007.dat 2014-02-18 13:27 - 2012-09-02 01:55 - 00249990 _____ () C:\WINDOWS\system32\perfc007.dat 2014-02-18 12:33 - 2014-02-18 12:33 - 00000000 ____D () C:\Users\danij_000\AppData\Local\MFAData 2014-02-18 01:32 - 2014-01-12 01:24 - 00000000 ___RD () C:\Users\danij_000\Desktop\docs dies&&das 2014-02-18 01:32 - 2013-11-09 20:51 - 00000000 ___RD () C:\Users\danij_000\Desktop\cv 2014-02-17 21:58 - 2014-02-17 22:00 - 00042097 _____ () C:\Users\danij_000\Desktop\cv FEB2014.odt 2014-02-17 19:08 - 2014-02-17 19:08 - 00000000 ____D () C:\Users\danij_000\Desktop\snip-it 2014-02-17 13:29 - 2014-02-17 13:29 - 00055973 _____ () C:\Users\danij_000\Desktop\Addition.txt 2014-02-17 13:12 - 2014-02-17 13:12 - 00000000 ____D () C:\Users\danij_000\Documents\Listen 2014-02-17 13:10 - 2014-02-17 13:10 - 00001081 _____ () C:\Users\danij_000\Documents\Docs keine Ahnung wohin damit - Verknüpfung.lnk 2014-02-17 11:47 - 2014-02-17 11:42 - 548011982 _____ () C:\Users\danij_000\Desktop\Notfall-CD-2.2.zip 2014-02-17 11:20 - 2013-11-17 03:30 - 00114664 _____ () C:\Users\danij_000\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-17 11:18 - 2013-12-09 13:53 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Wacom 2014-02-17 10:22 - 2013-11-27 23:14 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Deployment 2014-02-17 10:16 - 2014-02-17 10:16 - 15634184 _____ ( ) C:\Users\danij_000\Desktop\setup.exe 2014-02-17 03:27 - 2014-02-17 03:27 - 00056230 _____ () C:\Users\danij_000\Desktop\verkaufsartikelinfos.odt 2014-02-17 03:09 - 2014-02-17 03:09 - 00048254 _____ () C:\Users\danij_000\Desktop\amazon.odt 2014-02-17 01:27 - 2014-02-17 01:27 - 02976072 _____ (Google Inc.) C:\Users\danij_000\Desktop\gpautobackup_setup.exe 2014-02-16 20:56 - 2014-02-16 20:56 - 00000308 _____ () C:\Users\danij_000\Desktop\31344722044.csv 2014-02-15 21:37 - 2013-11-15 01:13 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-02-15 21:36 - 2013-11-15 01:13 - 88567024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-02-15 18:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-02-15 03:43 - 2013-11-24 14:04 - 00000000 ____D () C:\Users\danij_000 2014-02-14 20:49 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-02-14 19:15 - 2014-02-04 22:14 - 00002666 _____ () C:\WINDOWS\System32\Tasks\Digital Sites 2014-02-14 19:15 - 2014-02-01 00:25 - 00000218 _____ () C:\Users\danij_000\AppData\Roaming\WB.CFG 2014-02-13 07:59 - 2014-02-13 07:52 - 00003074 _____ () C:\Users\danij_000\Desktop\SystemLook.txt 2014-02-13 07:40 - 2013-11-16 16:23 - 00000000 ___RD () C:\Users\danij_000\Documents\Docs keine Ahnung wohin damit 2014-02-13 07:37 - 2013-09-22 00:55 - 00000000 ____D () C:\Users\danij_000\Documents\Youcam 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-02-13 01:39 - 2013-11-27 18:55 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log 2014-02-13 00:27 - 2013-11-09 23:00 - 00000000 ____D () C:\Users\danij_000\Downloads\Cloud Downloader 2.0 2014-02-12 23:12 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\LiveKernelReports 2014-02-12 00:40 - 2012-09-01 16:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-12 00:35 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\UVISoundBanks 2014-02-12 00:35 - 2013-12-01 06:19 - 00000000 ____D () C:\Program Files (x86)\Steinberg 2014-02-11 12:25 - 2013-09-10 17:39 - 00000000 ___RD () C:\Users\danij_000\Google Drive 2014-02-10 03:03 - 2013-11-15 13:30 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Greenshot 2014-02-08 02:04 - 2014-02-07 01:25 - 00000000 ____D () C:\Program Files (x86)\AntiTwin 2014-02-07 23:35 - 2014-02-07 23:29 - 882900992 _____ () C:\Users\danij_000\Downloads\xubuntu-13.10-desktop-amd64.iso 2014-02-07 23:18 - 2014-02-07 23:18 - 00000979 _____ () C:\Users\Public\Desktop\Shoot'n Save.lnk 2014-02-07 23:18 - 2014-02-07 23:18 - 00000000 ____D () C:\Program Files (x86)\ShootnSave 2014-02-07 23:17 - 2014-02-07 23:17 - 00509342 _____ () C:\Users\danij_000\Desktop\ShootnSave.zip 2014-02-07 01:25 - 2014-02-07 01:25 - 00001025 _____ () C:\Users\Public\Desktop\Anti-Twin.lnk 2014-02-07 00:10 - 2012-09-01 16:30 - 00000000 ____D () C:\ProgramData\install_clap 2014-02-06 23:11 - 2013-05-18 05:16 - 00000000 ___RD () C:\Users\danij_000\Desktop\flyin'dogsDATAS 2014-02-06 13:16 - 2014-02-12 21:59 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-12 21:59 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-12 21:59 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-12 21:59 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-12 21:59 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-12 21:59 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-12 21:59 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-12 21:59 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-06 11:49 - 2014-02-12 21:59 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-12 21:59 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-12 21:59 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-12 21:59 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-12 21:59 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-12 21:59 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-12 21:59 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-06 11:11 - 2014-02-12 21:59 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-12 21:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-12 21:59 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-12 21:59 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-12 21:59 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-06 10:53 - 2013-12-12 14:02 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-06 10:52 - 2014-02-12 21:59 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-12 21:59 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-12 21:59 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-06 10:47 - 2014-02-12 21:59 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-12 21:59 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-12 21:59 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-12 21:59 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-12 21:59 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-06 10:22 - 2014-02-12 21:59 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-12 21:59 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-12 21:59 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-12 21:59 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-12 21:59 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-12 21:59 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-12 21:59 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-12 21:59 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-12 21:59 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-05 03:05 - 2014-01-22 21:56 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-05 03:05 - 2014-01-22 21:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 11.0 2014-02-05 03:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-02-05 03:03 - 2013-11-24 13:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-02-04 23:41 - 2013-12-08 20:30 - 00000000 ____D () C:\Users\danij_000\löschdateien 2014-02-04 22:14 - 2014-02-04 22:14 - 00715038 _____ () C:\WINDOWS\unins000.exe 2014-02-04 22:14 - 2014-01-30 16:51 - 00004900 _____ () C:\WINDOWS\unins000.dat 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\ProgramData\DivX 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Xvid 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Lame For Audacity 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\ffdshow 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DirectVobSub 2014-02-04 14:10 - 2014-02-04 14:10 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.sing15-30-36.doc# 2014-02-04 10:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\FxsTmp 2014-02-04 09:53 - 2014-02-04 16:35 - 00063086 _____ () C:\Users\danij_000\Documents\untitled_2odt 2014-02-03 20:36 - 2014-02-04 14:09 - 00062575 _____ () C:\Users\danij_000\Documents\untitled_1odt 2014-02-03 17:04 - 2013-10-16 23:29 - 00114176 ___SH () C:\Users\danij_000\Documents\Thumbs.db 2014-02-03 15:18 - 2014-02-03 15:18 - 00312744 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00108968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2014-02-03 15:18 - 2014-02-03 15:18 - 00000000 ____D () C:\Program Files\Java 2014-02-03 14:08 - 2013-10-05 22:39 - 00090112 ___SH () C:\Users\danij_000\Thumbs.db 2014-02-03 13:09 - 2014-02-03 13:09 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-02-03 13:05 - 2014-02-03 13:05 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Intel_Corporation 2014-02-03 13:04 - 2014-02-03 13:04 - 00405504 _____ () C:\Users\danij_000\Desktop\intel_srldetect_4.5.13.0.msi 2014-02-03 11:33 - 2014-02-03 11:33 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-02 07:45 - 2014-02-02 00:01 - 00000000 ____D () C:\Users\danij_000\Desktop\OhmPlug 2014-02-02 06:12 - 2014-02-02 06:12 - 00001536 _____ () C:\Users\danij_000\PaceKeyChain 2014-02-02 03:39 - 2014-02-02 03:39 - 00000000 ____D () C:\Users\danij_000\AppData\Local\PaceAP 2014-02-02 02:41 - 2014-02-02 02:41 - 00000000 ____D () C:\ProgramData\PACE 2014-02-02 00:25 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\Propellerhead 2014-02-02 00:11 - 2014-02-02 00:11 - 00000000 ____D () C:\Users\danij_000\Documents\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\ProgramData\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Program Files (x86)\Ohm Force 2014-02-01 00:25 - 2014-02-01 00:25 - 00000005 _____ () C:\Users\danij_000\AppData\Roaming\WBPU-TTL.DAT 2014-02-01 00:23 - 2014-02-01 00:23 - 00003738 _____ () C:\WINDOWS\System32\Tasks\DivX-Online-Aktualisierungsprogramm 2014-01-31 19:10 - 2013-11-14 20:35 - 00000000 ___RD () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-01-31 19:10 - 2013-11-14 20:35 - 00000000 ___RD () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-31 15:12 - 2013-08-22 15:44 - 00471504 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-01-31 14:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz 2014-01-31 14:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions 2014-01-31 14:38 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 2014-01-31 14:38 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism 2014-01-31 09:20 - 2013-11-14 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\VirtualStore 2014-01-31 09:14 - 2014-01-31 09:14 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.profF.htm# 2014-01-30 21:47 - 2013-12-14 17:35 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-01-30 21:47 - 2013-12-14 17:35 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-30 20:35 - 2014-01-29 02:57 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Google 2014-01-30 20:24 - 2012-12-12 20:35 - 00000000 ____D () C:\WINDOWS\Hewlett-Packard 2014-01-30 20:24 - 2012-08-04 01:02 - 00000000 ____D () C:\SWSetup 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DivX 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files\DivX 2014-01-30 16:52 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\LavFilters 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\CDXReader 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\OpenSource Flash Video Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Haali 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DSP-worx 2014-01-29 11:27 - 2014-01-29 11:27 - 00000000 ____D () C:\Users\danij_000\Documents\DVDVideoSoft 2014-01-29 03:14 - 2012-12-12 20:31 - 00009684 _____ () C:\WINDOWS\system32\RaCoInst.log 2014-01-29 03:05 - 2014-01-31 14:38 - 00000862 _____ () C:\WINDOWS\system32\termcap 2014-01-29 03:05 - 2014-01-29 03:05 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsvr.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntsess.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlntadmn.exe 2014-01-29 03:05 - 2014-01-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\TFTP.EXE 2014-01-29 03:05 - 2014-01-29 03:05 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\simptcp.dll 2014-01-29 02:57 - 2014-01-29 02:57 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\HewlettPackard 2014-01-29 02:57 - 2013-11-14 20:51 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Google 2014-01-29 00:43 - 2012-09-01 16:31 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-01-29 00:40 - 2014-01-29 00:40 - 00001795 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-01-29 00:40 - 2014-01-29 00:39 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-01-29 00:40 - 2014-01-29 00:39 - 00000000 ____D () C:\Program Files\iTunes 2014-01-29 00:40 - 2013-12-03 19:48 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-01-29 00:39 - 2014-01-29 00:39 - 00000000 ____D () C:\Program Files\iPod 2014-01-29 00:35 - 2012-12-12 20:31 - 00000000 ____D () C:\ProgramData\Apple 2014-01-23 14:27 - 2014-01-23 14:25 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2012 2014-01-23 14:27 - 2014-01-23 14:25 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2012 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\ProgramData\Google 2014-01-23 02:08 - 2014-01-23 02:08 - 00000000 ____D () C:\Program Files\Google 2014-01-23 02:08 - 2013-11-14 20:51 - 00000000 ____D () C:\Program Files (x86)\Google 2014-01-23 01:58 - 2014-01-06 21:00 - 00000000 ___RD () C:\Users\danij_000\Dropbox 2014-01-23 01:58 - 2014-01-06 20:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Dropbox 2014-01-23 01:58 - 2014-01-03 13:16 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Skitch 2014-01-22 22:16 - 2014-01-22 22:16 - 03211264 _____ () C:\Users\danij_000\DevelopmentStorageDb22.mdf 2014-01-22 22:16 - 2014-01-22 22:16 - 00851968 _____ () C:\Users\danij_000\DevelopmentStorageDb22_log.ldf 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Users\danij_000\AppData\Local\DevelopmentStorage 2014-01-22 22:16 - 2014-01-22 22:16 - 00000000 ____D () C:\Program Files (x86)\Windows Azure Tools 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files\VS2010Schemas 2014-01-22 22:13 - 2014-01-22 22:13 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-01-22 22:10 - 2014-01-22 22:10 - 00000000 ____D () C:\Program Files\Microsoft SDKs 2014-01-22 22:09 - 2014-01-22 22:01 - 00000000 ____D () C:\Program Files\IIS 2014-01-22 22:09 - 2014-01-22 22:01 - 00000000 ____D () C:\Program Files (x86)\IIS 2014-01-22 22:08 - 2014-01-22 22:08 - 00000026 _____ () C:\WINDOWS\system32\HostingLog-012214220843.log 2014-01-22 22:08 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\inetsrv 2014-01-22 22:07 - 2014-01-22 22:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server 2014-01-22 22:07 - 2014-01-22 22:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft SDKs 2014-01-22 22:06 - 2014-01-22 22:06 - 00000000 ____D () C:\Program Files (x86)\Windows Kits 2014-01-22 22:06 - 2014-01-22 22:04 - 00000000 ____D () C:\Program Files\Microsoft SQL Server 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\SysWOW64\1031 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1033 2014-01-22 22:05 - 2014-01-22 22:05 - 00000000 ____D () C:\WINDOWS\system32\1031 2014-01-22 22:03 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\Microsoft ASP.NET 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files\IIS Express 2014-01-22 22:02 - 2014-01-22 22:02 - 00000000 ____D () C:\Program Files (x86)\IIS Express 2014-01-22 22:02 - 2014-01-22 22:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Web Tools 2014-01-22 21:59 - 2014-01-22 21:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Help Viewer 2014-01-22 21:58 - 2014-01-22 21:58 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2014-01-22 21:56 - 2014-01-22 21:56 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2014-01-22 21:56 - 2012-09-01 16:42 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-01-22 21:53 - 2014-01-22 21:53 - 05994312 _____ (Microsoft Corporation) C:\Users\danij_000\Documents\WindowsAzureTools.vs110.exe 2014-01-22 21:20 - 2014-01-22 21:20 - 00000000 ____D () C:\Users\danij_000\Downloads\dir600b_v2.01 2014-01-22 19:32 - 2014-01-22 19:32 - 00819136 _____ (Google Inc.) C:\Users\danij_000\Documents\googledrivesync.exe 2014-01-22 19:32 - 2014-01-22 19:32 - 00000000 ____D () C:\Users\danij_000\Downloads\DIR-600_GPL_code_revb12 2014-01-22 19:32 - 2013-11-27 18:01 - 115515525 _____ () C:\Users\danij_000\Downloads\DIR-600_GPL_code_revb12.tar.gz Some content of TEMP: ==================== C:\Users\danij_000\AppData\Local\Temp\ICReinstall_COMPUTER_BILD-Download-Manager_fuer_RDeskFree2.0-setup.exe C:\Users\danij_000\AppData\Local\Temp\Quarantine.exe C:\Users\danij_000\AppData\Local\Temp\ripsetup.exe C:\Users\danij_000\AppData\Local\Temp\stsetup.exe C:\Users\danij_000\AppData\Local\Temp\vpsetup.exe C:\Users\danij_000\AppData\Local\Temp\vxlsetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-17 03:43 ==================== End Of Log ============================ --- --- --- |
21.02.2014, 02:27 | #12 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? und die Addition im Anhang Soll ich das First dann einfach schliessen oder auch "fix" en lassen?? Gute Nacht aber für heut erstmal |
22.02.2014, 12:56 | #13 |
/// the machine /// TB-Ausbilder | trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? Fixen nur wenn ich es sage ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
01.03.2014, 05:23 | #14 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? Hallo Schrauber1 Ich sag immer, gut Ding will Weile haben*LACH*... neee, ich hatte es einfach nicht geschafft. Zumal Eset STuuuunden dauerte. Ich hoffe die Tage dazwischen machen die Handlungen noch wirksam?? Die Logs: 1. Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=7b5cde2b3c6e814eb14fbd67aba00a0a # engine=17256 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-02-28 04:35:06 # local_time=2014-02-28 05:35:06 (+0100, Mitteleuropäische Zeit ) # country="Germany" # lang=1033 # osver=6.2.9200 NT # compatibility_mode=3591 16777213 100 91 6380488 156158691 0 0 # compatibility_mode=5893 16776574 100 88 863658 16395808 0 0 # scanned=476623 # found=3 # cleaned=0 # scan_time=23688 sh=2726808B750CCC934CC6BA413B9E8727FB0BC3B7 ft=0 fh=0000000000000000 vn="a variant of Android/Adware.Startapp.A application" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\danij_000\AppData\Local\Mobogenie\Download\Apk\Smooth Camera.apk.vir" sh=F5DA0179A9CDCCA3157BC7E739C3D95D07D491C1 ft=1 fh=c71c0011e230f937 vn="a variant of Win32/Kryptik.BWAM trojan" ac=I fn="C:\Users\danij_000\AppData\Local\Temp\ICReinstall_installer_vlc_English.exe" sh=F5DA0179A9CDCCA3157BC7E739C3D95D07D491C1 ft=1 fh=c71c0011e230f937 vn="a variant of Win32/Kryptik.BWAM trojan" ac=I fn="C:\Users\danij_000\Desktop\installer_vlc_English.exe" Code:
ATTFilter Results of screen317's Security Check version 0.99.79 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` AVG Internet Security 2014 Windows Defender Norton Internet Security Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 TuneUp Utilities 2014 TuneUp Utilities 2014 (de-DE) TuneUp Utilities 2014 Java 7 Update 45 Java version out of Date! Adobe Flash Player 12.0.0.70 Adobe Reader XI Google Chrome 32.0.1700.107 Google Chrome 33.0.1750.117 ````````Process Check: objlist.exe by Laurent```````` Norton ccSvcHst.exe Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe AVG avgwdsvc.exe Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` |
01.03.2014, 05:32 | #15 |
| trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren?FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-02-2014 02 Ran by danij_000 (administrator) on NIGHTSHINE on 01-03-2014 05:26:48 Running from C:\Users\danij_000\Desktop Windows 8.1 (X64) OS Language: Dutch Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\WINDOWS\system32\Hpservice.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Microsoft Corporation) C:\WINDOWS\system32\dashost.exe (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\ENAgent.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE () C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe (Microsoft Corporation) C:\WINDOWS\system32\inetsrv\inetinfo.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Microsoft Corporation) C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe (Microsoft Corporation) C:\WINDOWS\System32\tcpsvcs.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Microsoft Corporation) C:\WINDOWS\system32\inetsrv\wmsvc.exe (Seiko Epson Corporation) C:\WINDOWS\system32\EscSvc64.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (COMPANYVERS_NAME) C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbarsvc.exe () C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe (AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe (Microsoft Corporation) C:\Windows\System32\skydrive.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Greenshot) C:\Program Files\Greenshot\Greenshot.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe ( ) C:\Program Files (x86)\RadioRage_4j\bar\1.bin\AppIntegrator64.exe (Google Inc.) C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (Schillergames) C:\Program Files (x86)\Real Desktop\rdesc.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (VER_COMPANY_NAME) C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbrmon.exe (VER_COMPANY_NAME) C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbrmon64.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe () C:\Program Files (x86)\FindRight\updateFindRight.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe () C:\Program Files (x86)\FindRight\bin\utilFindRight.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IARNIJE.EXE (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe (Microsoft Corporation) C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\af_proxy_cmd.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe () C:\Program Files (x86)\Hotspot Shield\bin\openvpn.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Users\danij_000\Desktop\SecurityCheck (1).exe (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3053808 2013-11-27] (Synaptics Incorporated) HKLM\...\Run: [Greenshot] - C:\Program Files\Greenshot\Greenshot.exe [495616 2013-12-12] (Greenshot) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1664000 2013-11-27] (IDT, Inc.) HKLM\...\Run: [RadioRage Home Page Guard 64 bit] - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\AppIntegrator64.exe [485448 2014-02-24] ( ) HKLM-x32\...\Run: [BtTray] - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [363520 2012-08-02] (IVT Corporation) HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491320 2012-07-26] (CyberLink Corp.) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-09] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-12-23] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4962320 2014-01-22] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [RadioRage EPM Support] - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jmedint.exe [12872 2014-02-24] (Mindspark Interactive Network, Inc.) HKLM-x32\...\Run: [RadioRage Search Scope Monitor] - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jSrchMn.exe [55368 2014-02-24] (Mindspark) HKLM-x32\...\Run: [RadioRage_4j Browser Plugin Loader] - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbrmon.exe [61512 2014-02-24] (VER_COMPANY_NAME) HKLM-x32\...\Run: [RadioRage_4j Browser Plugin Loader 64] - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbrmon64.exe [71752 2014-02-24] (VER_COMPANY_NAME) HKLM\...\RunOnce: [NCPluginUpdater] - "c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe" Update [21720 2014-02-25] (Hewlett-Packard) HKLM\...\Winlogon: [Shell] explorer.exe /select,explorer.exe Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21822128 2014-01-30] (Google) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [EPLTarget\P0000000000000000] - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-10-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [Mobile Partner] - C:\Program Files (x86)\HiSuite\HiSuite.exe [583488 2013-07-11] () HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [GoogleChromeAutoLaunch_17DC5D510F8BA736D59FAEB6E526DC7E] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [859464 2014-02-20] (Google Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2014-01-23] (Google Inc.) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [EPLTarget\P0000000000000001] - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-10-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Run: [Real Desktop] - C:\Program Files (x86)\Real Desktop\rdesc.exe [4751360 2014-02-25] (Schillergames) HKU\S-1-5-21-3524602474-1062247959-1074854460-1005\...\Policies\Explorer: [NoDrives] 0x00000000 IFEO\bpsvc.exe: [Debugger] tasklist.exe IFEO\browsersafeguard.exe: [Debugger] tasklist.exe IFEO\icloud.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\icloudweb.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\protectedsearch.exe: [Debugger] tasklist.exe IFEO\rjatydimofu.exe: [Debugger] tasklist.exe IFEO\shellstreamsshortcut.exe: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" IFEO\snapdo.exe: [Debugger] tasklist.exe IFEO\stinst32.exe: [Debugger] tasklist.exe IFEO\stinst64.exe: [Debugger] tasklist.exe Startup: C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\danij_000\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Real Desktop.lnk ShortcutTarget: Real Desktop.lnk -> C:\Program Files (x86)\Real Desktop\rdesc.exe (Schillergames) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/2 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCON13/2 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCON13/2 URLSearchHook: HKCU - (No Name) - {3c35ad63-af1d-4e21-b484-b6651a8efcf9} - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jSrcAs.dll (Mindspark) SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1553-29906-12136-18/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM - {F9D1C772-F749-4CC5-89E4-622CD4B9C98D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/1553-29906-12136-18/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 - {F9D1C772-F749-4CC5-89E4-622CD4B9C98D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS SearchScopes: HKCU - {7F102906-92D3-4C2D-86EE-EA1550FD9CE5} URL = hxxp://partners.webmasterplan.com/click.asp?ref=383932&site=3357&type=text&ent=25&hnb=12&prd=yes&q={searchTerms}&subid=si SearchScopes: HKCU - {8841A440-41EC-471C-93D0-8F5042620070} URL = hxxp://www.google.de/search?q={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-37276-23097-0/4?satitle={searchTerms} BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: FindRight - {2c774641-5504-46a8-b63f-6715ae3fe376} - C:\Program Files (x86)\FindRight\FindRightBHO.dll (FindRight) BHO-x32: Toolbar BHO - {48909954-14fb-4971-a7b3-47e7af10b38a} - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbar.dll (Mindspark) BHO-x32: Search Assistant BHO - {5848763c-2668-44ca-adbe-2999a6ee2858} - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jSrcAs.dll (Mindspark) BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) BHO-x32: Pagealicious - {60C07B56-542E-4054-A503-4E9E08DF2F84} - C:\Program Files (x86)\Pagealicious\Pagealicious.dll (TODO: <Company name>) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll (Symantec Corporation) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKLM-x32 - RadioRage - {78ba36c9-6036-482b-b48d-ecca6f964b84} - C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbar.dll (Mindspark) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 Chrome: ======= CHR HomePage: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.117\pdf.dll () CHR Plugin: (Free Studio) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp\1.3.0.0_1\np_dvs_plugin.dll (DVDVideoSoft Ltd.) CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll No File CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java Deployment Toolkit 7.0.450.18) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Java(TM) Platform SE 7 U45) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll No File CHR Extension: (Google Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2013-11-18] CHR Extension: (PDFzen PDF Viewer & Editor) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\adgncicbhbjfpijkdmbijninnhnmiblj [2013-11-18] CHR Extension: (Calorie Secrets) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkakkeppcemmggcopmjncnlpdefcmcj [2013-11-18] CHR Extension: (Theme Creator) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc [2013-11-18] CHR Extension: (Fabulous) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambjmeohlajelahhhniggkkceagdlcgj [2013-11-18] CHR Extension: (Google Drive) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-15] CHR Extension: (UJAM - Make your music.) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdiogojbmdncjdpljocafnigiokgmci [2013-11-18] CHR Extension: (Loupe Collage) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhaonknplhhecdgjpphnooeomecgipkc [2013-11-25] CHR Extension: (Send to Google Maps) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhggankplfegmjjngfmhfajedmiikolo [2013-11-28] CHR Extension: (Twitter Symbols) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjbolaacbpibnnbfnebejhonbdbmpifa [2013-11-18] CHR Extension: (Audiotool) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkgoccjhfjgjedhkiefaclppgbmoobnk [2013-11-29] CHR Extension: (YouTube) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-18] CHR Extension: (Strawberry Pal Regelkalender) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmeafmbadejchdjffdbdjdkcgfmlhjmh [2013-11-18] CHR Extension: (HelloFax: 50 Free Fax Pages) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bocmleclimfnadgmcdgecijlblfcmfnm [2013-11-25] CHR Extension: (Cash Organizer) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bppdehaogjdmkkiaiokmjdjmjnjicddk [2013-11-18] CHR Extension: (QR Code and Barcode Label Generator (FREE)) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciaehkhoafedeehacfjbiajaffodgdcn [2013-11-18] CHR Extension: (Auf den Amazon-Wunschzettel) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciagpekplgpbepdgggflgmahnjgiaced [2014-01-06] CHR Extension: (TypingWeb Typing Tutor) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\clcgempicojkfhpnepfecmklndooebjk [2013-11-18] CHR Extension: (Image Downloader) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnpniohnfphhjihaiiggeabnkjhpaldj [2013-11-18] CHR Extension: (HTML5 Video für YouTube™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\dolajcekhnohkpncmhgledbmndjpblei [2013-12-19] CHR Extension: (Erste Schritte) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ececjiojgdjnkaclcjanmhekfiddedfa [2013-11-18] CHR Extension: (Box - 10GB of FREE storage) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl [2013-11-18] CHR Extension: (Anwendungen iPhone en Förderung) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekckfmbgohljpbplohgkeoepmieffaef [2013-11-18] CHR Extension: (ZenMate for Google Chrome™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2013-11-18] CHR Extension: (Type Scout) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fedokkaolmkkoeedicihicdeppjjeamj [2013-11-18] CHR Extension: (Google Tabellen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2013-11-18] CHR Extension: (Make Passport/Visa/ID Photo) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjecobcbiglolnookbboflgeecppnolh [2013-11-25] CHR Extension: (Wunderlist - To-do and Task list) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjliknjliaohjgjajlgolhijphojjdkc [2013-11-18] CHR Extension: (Rechtschreibprüfung) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gehceilhofkogkifpjmgdhciddpbcboo [2013-11-18] CHR Extension: (In Google Drive speichern) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2013-11-18] CHR Extension: (Send to Evernote) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnilckpgiopfcokcijkhpghppekcoafm [2013-11-18] CHR Extension: (DocuSign) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\goblijolcnempeilmnkmfbhohlpngemd [2013-11-18] CHR Extension: (i2Symbol - Emoticons, Smileys, Symbols) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gponajbpomilcmbmfoipobkikeopjjhp [2013-11-18] CHR Extension: (SearchPreview) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcjdanpjacpeeppdjkppebobilhaglfo [2013-12-19] CHR Extension: (CloudConvert) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfpmbfgodkfcebpgheiedaddoikmljkk [2013-11-18] CHR Extension: (PDF Mergy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgecghmkcdefnknohcimkoemhaofpoha [2013-11-18] CHR Extension: (Google Keep) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2013-11-18] CHR Extension: (Snipping Tool for Evernote™ ) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmhpjbejpnnaffkpmebeagdiidibjfa [2013-11-18] CHR Extension: (Pixlr Express) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmjpdlmjopaeginhldhiokeidchjid [2013-11-18] CHR Extension: (Hojoki) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifjcgdcbhobdcojhnabjlholpbdmnpaa [2013-11-25] CHR Extension: (instant translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihmgiclibbndffejedjimfjmfoabpcke [2013-11-18] CHR Extension: (Dropbox) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2013-11-18] CHR Extension: (Clearly) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2013-11-18] CHR Extension: (Online PDF Tools) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jddfpnmfhodaljeelokfceepbeapgbdn [2013-11-18] CHR Extension: (Zoho Writer) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgaeidloagadfcohacebhbkkapgpiddj [2013-11-25] CHR Extension: (Google Formulare) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg [2013-11-18] CHR Extension: (Pro Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhoogcgekgpljafaadaohobjcdccpick [2013-11-18] CHR Extension: (HelloSign: Online signatures made easy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kajjckmbclbffbpecfbiecehkfgopppd [2013-11-25] CHR Extension: (Diigo Web) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kipfakkakbicobflnnminhjjdkglgbmf [2013-11-18] CHR Extension: (Little Alchemy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2013-11-25] CHR Extension: (Evernote Web) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2013-11-18] CHR Extension: (Webcam Toy) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfbgimoladefibpklnfmkpknadbklade [2013-12-19] CHR Extension: (Babbel) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmkbolconpmgdcpjcmhiiegjjopiofkn [2013-11-18] CHR Extension: (Google Maps) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2013-11-18] CHR Extension: (Google Input Tools) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mclkkofklkfljcocdinagocijmpgbhab [2013-11-18] CHR Extension: (Until AM for Chrome) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjafmkicbmhcbapadecadciafbkecofl [2013-11-18] CHR Extension: (Uhr) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjocghlclkpgheifflemilcnblodjohg [2013-11-18] CHR Extension: (Google Zeichnungen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkaakpdehdafacodkgkpghoibnmamcme [2013-11-18] CHR Extension: (Norton Identity Protection) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2013-11-14] CHR Extension: (FastestFox – Schneller browsen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmffncokckfccddfenhkhnllmlobdahm [2013-11-18] CHR Extension: (SkyDrive) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2013-11-25] CHR Extension: (Highlight Keywords for Google Search) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhahncknpppipmgjchbbhehkfglelepf [2013-11-18] CHR Extension: (DVDVideoSoft) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp [2013-11-15] CHR Extension: (Button Generator) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\njphjoojdldjpogfhbncccnkldebgbnd [2013-11-18] CHR Extension: (dict-cc) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nknonnojlmhnmjhpeokdbeineeajcemh [2013-11-18] CHR Extension: (Google Wallet) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-14] CHR Extension: (ImTranslator: Google Translate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2013-11-18] CHR Extension: (Any.do) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocgddccilgpeepgglnlpchkpgamkgmld [2013-11-25] CHR Extension: (Robot Theme, inspired by Android™) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeljdmeofcikjblcoehpmdnooimalbmj [2013-12-19] CHR Extension: (WeVideo - Videos bearbeiten & erstellen) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb [2013-11-25] CHR Extension: (Readability) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oknpjjbmpnndlpmnhmekjpocelpnlfdi [2013-11-18] CHR Extension: (Picasa) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2013-11-18] CHR Extension: (Diigo Web Collector - Capture and Annotate) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\oojbgadfejifecebmdnhhkbhdjaphole [2013-11-18] CHR Extension: (Lingualia) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\opbhiklafbmnhlmghmdmgcpbiejldino [2013-11-18] CHR Extension: (Cacoo - Diagramming & Real-Time Collaboration) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcflmbddgcmomcfngehfhlajjapabojh [2013-11-25] CHR Extension: (Windows 8 App Store) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcofehgfaeaakklkbahafjoifnaagecj [2013-11-18] CHR Extension: (Evernote Web Clipper) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2013-11-18] CHR Extension: (italki) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjoaokldacegpfbklgdphngdhejlkinb [2013-11-18] CHR Extension: (Audio Cutter) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\plimnkafgoiilijmlbnfoafihjjijbfp [2013-11-25] CHR Extension: (Type Fu) - C:\Users\danij_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pofoighmmpljaikjiidkkfhldjndfdbk [2013-11-18] CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\danij_000\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-11-15] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2013-11-15] CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\Exts\Chrome.crx [2013-12-14] ==================== Services (Whitelisted) ================= R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1358944 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3788816 2014-01-22] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1544192 2012-08-02] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-07-10] (IVT Corporation) R2 ENAgent; C:\WINDOWS\SysWOW64\ENAgent.exe [4209856 2012-10-24] (SEIKO EPSON CORPORATION) S4 EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [653888 2013-09-05] (SEIKO EPSON CORPORATION) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 ftpsvc; C:\Windows\system32\inetsrv\ftpsvc.dll [372224 2013-11-24] (Microsoft Corporation) R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [137024 2013-07-11] () R2 hshld; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [944424 2014-01-15] (AnchorFree Inc.) S3 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [78512 2014-01-14] () R2 HssWd; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [555304 2014-01-15] () R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [197632 2013-05-02] () R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [16896 2013-11-24] (Microsoft Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2014-02-21] (IObit) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.) R2 MsDepSvc; C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe [84624 2013-06-10] (Microsoft Corporation) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-21] (Symantec Corporation) R2 RadioRage_4jService; C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbarsvc.exe [88648 2014-02-24] (COMPANYVERS_NAME) S4 TlntSvr; C:\Windows\System32\tlntsvr.exe [146944 2014-01-29] (Microsoft Corporation) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) R2 Update FindRight; C:\Program Files (x86)\FindRight\updateFindRight.exe [111904 2014-02-25] () R2 Util FindRight; C:\Program Files (x86)\FindRight\bin\utilFindRight.exe [111904 2014-02-25] () S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-11-24] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2013-11-24] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) R2 WMSVC; C:\Windows\system32\inetsrv\wmsvc.exe [10752 2013-11-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [20496 2013-09-04] (AVG Technologies CZ, s.r.o.) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\system32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [243480 2013-11-25] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [196376 2013-11-25] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [252728 2013-10-21] (AVG Technologies CZ, s.r.o.) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R3 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\BASHDefs\20140110.001\BHDrvx64.sys [1526488 2013-12-18] (Symantec Corporation) R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation) U4 BthAvrcpTg; U4 BthHFEnum; U4 bthhfhid; R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation) R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-08] (Ralink Corporation) R3 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1404000.028\ccSetx64.sys [169048 2013-04-16] (Symantec Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-11-27] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-11-21] (Symantec Corporation) R1 HssDRV6; C:\Windows\system32\DRIVERS\hssdrv6.sys [44744 2014-01-14] (AnchorFree Inc.) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R3 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\IPSDefs\20140115.001\IDSvia64.sys [521944 2013-12-13] (Symantec Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\VirusDefs\20140116.003\ENG64.SYS [126040 2014-01-01] (Symantec Corporation) S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.0.0.136\Definitions\VirusDefs\20140116.003\EX64.SYS [2099288 2014-01-01] (Symantec Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [269968 2012-07-04] (Realtek Semiconductor Corp.) R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-24] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-11-27] (Synaptics Incorporated) S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1404000.028\SRTSP64.SYS [796760 2013-05-16] (Symantec Corporation) R3 SRTSPX; C:\Windows\system32\drivers\NISx64\1404000.028\SRTSPX64.SYS [36952 2013-03-05] (Symantec Corporation) R3 stdriver; C:\Windows\system32\DRIVERS\stdriverx64.sys [33488 2014-02-19] () S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) R3 SymDS; C:\Windows\system32\drivers\NISx64\1404000.028\SYMDS64.SYS [493656 2013-05-21] (Symantec Corporation) R3 SymEFA; C:\Windows\system32\drivers\NISx64\1404000.028\SYMEFA64.SYS [1139800 2013-05-23] (Symantec Corporation) S4 SymELAM; C:\Windows\system32\drivers\NISx64\1404000.028\SymELAM.sys [23448 2012-06-20] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177312 2013-11-15] (Symantec Corporation) R1 SymIM; C:\Windows\system32\DRIVERS\SymIMv.sys [43680 2013-03-05] (Symantec Corporation) R3 SymIRON; C:\Windows\system32\drivers\NISx64\1404000.028\Ironx64.SYS [224416 2013-03-05] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1404000.028\SYMNETS.SYS [433752 2013-04-25] (Symantec Corporation) R3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-01-14] (Anchorfree Inc.) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-09-18] (TuneUp Software) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) R3 voxaldriver; C:\Windows\system32\DRIVERS\voxaldriverx64.sys [34512 2014-02-19] () S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.) S3 clwvd6; \SystemRoot\system32\DRIVERS\clwvd6.sys [X] U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2011-10-24] (Huawei Technologies Co., Ltd.) S3 WacHidRouter; \SystemRoot\System32\drivers\wachidrouter.sys [X] S3 wacomrouterfilter; \SystemRoot\System32\drivers\wacomrouterfilter.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-01 05:26 - 2014-03-01 05:26 - 00000000 ____D () C:\Users\danij_000\Desktop\FRST-OlderVersion 2014-03-01 05:02 - 2014-03-01 05:02 - 36896984 _____ (Google Inc.) C:\Users\danij_000\Desktop\35.0.1862.2_chrome_installer.exe 2014-03-01 04:38 - 2014-03-01 04:38 - 00987425 _____ () C:\Users\danij_000\Desktop\SecurityCheck (1).exe 2014-03-01 03:51 - 2014-03-01 03:51 - 00001221 _____ () C:\Users\danij_000\Desktop\AVS Audio Editor.lnk 2014-03-01 02:06 - 2014-03-01 03:54 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Folderico 2014-02-28 22:11 - 2014-03-01 03:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2014-02-28 22:11 - 2014-02-28 22:11 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\AVS4YOU 2014-02-28 22:11 - 2014-02-28 22:11 - 00000000 ____D () C:\ProgramData\AVS4YOU 2014-02-28 22:10 - 2014-03-01 03:52 - 00000000 ____D () C:\Program Files (x86)\AVS4YOU 2014-02-28 22:10 - 2014-02-28 22:10 - 00001257 _____ () C:\Users\danij_000\Desktop\AVS Audio Converter.lnk 2014-02-26 12:29 - 2014-02-26 12:29 - 00001276 _____ () C:\Users\danij_000\Desktop\Docs keine Ahnung wohin damit - Verknüpfung.lnk 2014-02-26 12:29 - 2014-02-26 12:29 - 00001135 _____ () C:\Users\danij_000\Desktop\snip-it - Verknüpfung.lnk 2014-02-25 04:15 - 2014-02-25 04:16 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\GoforFiles 2014-02-25 04:15 - 2014-02-25 04:15 - 00003086 _____ () C:\WINDOWS\System32\Tasks\GoforFilesUpdate 2014-02-25 04:14 - 2014-02-25 04:14 - 09055112 _____ (hxxp://www.goforfiles.com/) C:\Users\danij_000\Desktop\cubase_downloader.exe 2014-02-25 01:40 - 2014-02-25 01:40 - 00001150 _____ () C:\Users\Public\Desktop\Real Desktop Webpage.lnk 2014-02-25 01:35 - 2014-02-27 20:20 - 00000000 ____D () C:\Program Files (x86)\FindRight 2014-02-25 01:35 - 2014-02-25 01:35 - 24489269 _____ () C:\Users\danij_000\Downloads\36434-673563-vlc-media-player.exe 2014-02-25 01:35 - 2014-02-25 01:35 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\0V1L2Z2Z1T1I1L1T 2014-02-25 01:06 - 2014-02-25 01:06 - 00000000 ____D () C:\Users\danij_000\Desktop\Neuer Ordner 2014-02-24 21:04 - 2014-02-24 21:04 - 00018404 _____ () C:\Users\danij_000\Desktop\professional-elegant-combination-resume.ott 2014-02-24 21:04 - 2014-02-24 21:04 - 00000000 ____D () C:\Users\danij_000\Desktop\OpenOffice 4.0.0 (en-US) Installation Files 2014-02-24 21:03 - 2014-02-24 21:03 - 00045990 _____ () C:\Users\danij_000\Desktop\basic-resume.ott 2014-02-24 20:32 - 2014-02-24 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\RadioRage_4j 2014-02-24 20:32 - 2014-02-24 20:32 - 00000000 ____D () C:\Program Files (x86)\RadioRage_4j 2014-02-24 20:27 - 2014-02-24 20:33 - 00001140 _____ () C:\Users\Public\Desktop\Hotspot Shield.lnk 2014-02-24 20:27 - 2014-02-24 20:33 - 00000000 ____D () C:\Program Files (x86)\Hotspot Shield 2014-02-24 20:27 - 2014-02-24 20:27 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Hotspot Shield 2014-02-24 20:27 - 2014-02-24 20:27 - 00000000 ____D () C:\ProgramData\Hotspot Shield 2014-02-24 20:27 - 2014-01-14 23:47 - 00044744 _____ (AnchorFree Inc.) C:\WINDOWS\system32\Drivers\hssdrv6.sys 2014-02-24 02:23 - 2014-02-24 02:23 - 00678552 _____ ( ) C:\Users\danij_000\Desktop\installer_vlc_English.exe 2014-02-23 20:08 - 2014-02-23 20:08 - 00652240 _____ () C:\Users\danij_000\Desktop\Hotspot-Shield-649.exe 2014-02-21 03:11 - 2014-02-21 03:11 - 04259840 _____ () C:\Users\danij_000\Desktop\Flat.File.InventoryLoader.de.xls 2014-02-21 02:09 - 2014-02-25 01:40 - 00001148 _____ () C:\Users\Public\Desktop\Facebook.lnk 2014-02-21 02:09 - 2014-02-25 01:40 - 00001142 _____ () C:\Users\Public\Desktop\Twitter.lnk 2014-02-21 02:09 - 2014-02-25 01:38 - 03033598 _____ (Schillergames ) C:\Users\danij_000\Downloads\RDeskFree2.0-setup.exe 2014-02-21 02:08 - 2014-03-01 05:26 - 02155520 _____ (Farbar) C:\Users\danij_000\Desktop\FRST64.exe 2014-02-21 02:08 - 2014-03-01 04:33 - 00000308 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job 2014-02-21 02:08 - 2014-02-21 02:08 - 00002416 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Administrator 2014-02-21 02:08 - 2014-02-21 02:08 - 00001248 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk 2014-02-21 02:08 - 2014-02-21 02:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\ProductData 2014-02-21 01:58 - 2014-03-01 02:06 - 00000000 ____D () C:\ProgramData\Folderico 2014-02-21 01:58 - 2014-02-21 01:58 - 00797972 _____ () C:\Users\danij_000\Downloads\famfamfam_silk_icons_v013.zip 2014-02-21 01:58 - 2014-02-21 01:58 - 00001035 _____ () C:\Users\Public\Desktop\Folderico.lnk 2014-02-21 01:58 - 2014-02-21 01:58 - 00000000 ____D () C:\Program Files (x86)\Folderico 2014-02-21 01:57 - 2014-02-21 01:57 - 04351610 _____ (Shedko ( www.softq.org )) C:\Users\danij_000\Downloads\Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:53 - 2014-02-21 01:53 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:50 - 2014-02-21 01:50 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_RDeskFree2.0-setup.exe 2014-02-21 01:33 - 2014-02-21 01:33 - 00003663 _____ () C:\Users\danij_000\Desktop\JRT.txt 2014-02-21 01:24 - 2014-02-21 01:24 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-02-21 01:16 - 2014-02-21 01:16 - 01037734 _____ (Thisisu) C:\Users\danij_000\Desktop\JRT.exe 2014-02-21 00:40 - 2014-02-21 00:40 - 01241834 _____ () C:\Users\danij_000\Desktop\adwcleaner.exe 2014-02-20 21:20 - 2014-02-20 21:20 - 00001642 _____ () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 - Verknüpfung.lnk 2014-02-20 18:48 - 2014-02-20 18:48 - 00092961 _____ () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen.htm 2014-02-20 18:48 - 2014-02-20 18:48 - 00000000 ____D () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen_files 2014-02-20 10:14 - 2014-02-20 21:34 - 02294977 _____ () C:\Users\danij_000\Desktop\Google Play Store hack Installer Setup.rar 2014-02-20 10:10 - 2014-02-20 10:11 - 06270896 _____ () C:\Users\danij_000\Desktop\Hack.rar 2014-02-20 00:13 - 2014-02-20 01:12 - 00000000 ___RD () C:\Users\danij_000\Desktop\onlineverkaufsfotos 2014-02-20 00:11 - 2014-02-20 00:11 - 00000000 ____D () C:\Users\danij_000\Desktop\Notfall-CD-2.2 2014-02-20 00:02 - 2014-02-20 21:20 - 00000000 ____D () C:\Users\danij_000\AppData\Local\www.rene-zeidler.de 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\www.rene-zeidler.de 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\ProgramData\www.rene-zeidler.de 2014-02-19 03:20 - 2014-02-19 03:20 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\AVG2014 2014-02-19 03:18 - 2014-02-19 03:20 - 00000000 ____D () C:\ProgramData\AVG2014 2014-02-19 03:16 - 2014-02-19 03:16 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-02-19 03:13 - 2014-02-19 03:13 - 00034512 _____ () C:\WINDOWS\system32\Drivers\voxaldriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00033488 _____ () C:\WINDOWS\system32\Drivers\stdriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.1.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00000000 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2014-02-19 03:08 - 2014-02-19 03:07 - 00107910 _____ () C:\Users\danij_000\Desktop\cvFEB2014.odt 2014-02-19 02:45 - 2014-02-21 01:00 - 00000000 ____D () C:\WINDOWS\System32\Tasks\NCH Software 2014-02-19 02:45 - 2014-02-19 02:45 - 00000000 ____D () C:\Users\danij_000\Documents\Mixpad Projects 2014-02-19 02:44 - 2014-02-19 03:12 - 00001138 _____ () C:\Users\Public\Desktop\WavePad Sound Editor.lnk 2014-02-18 13:27 - 2014-02-18 13:27 - 00000000 ____D () C:\Users\danij_000\Documents\virtualdjdatas 2014-02-18 12:33 - 2014-03-01 04:12 - 00000000 ____D () C:\ProgramData\MFAData 2014-02-18 12:33 - 2014-02-18 12:33 - 00000000 ____D () C:\Users\danij_000\AppData\Local\MFAData 2014-02-18 01:30 - 2014-02-18 13:52 - 00072356 _____ () C:\Users\danij_000\Desktop\KopievonCVoctober2013new2014.odt 2014-02-17 22:00 - 2014-02-17 21:58 - 00042097 _____ () C:\Users\danij_000\Desktop\cv FEB2014.odt 2014-02-17 19:08 - 2014-02-17 19:08 - 00000000 ____D () C:\Users\danij_000\Desktop\snip-it 2014-02-17 13:29 - 2014-02-21 02:22 - 00051577 _____ () C:\Users\danij_000\Desktop\Addition.txt 2014-02-17 13:27 - 2014-03-01 05:26 - 00045452 _____ () C:\Users\danij_000\Desktop\FRST.txt 2014-02-17 13:12 - 2014-02-17 13:12 - 00000000 ____D () C:\Users\danij_000\Documents\Listen 2014-02-17 11:42 - 2014-02-17 11:47 - 548011982 _____ () C:\Users\danij_000\Desktop\Notfall-CD-2.2.zip 2014-02-17 10:16 - 2014-02-17 10:16 - 15634184 _____ ( ) C:\Users\danij_000\Desktop\setup.exe 2014-02-17 03:31 - 2014-02-21 01:02 - 00006244 _____ () C:\WINDOWS\PFRO.log 2014-02-17 03:27 - 2014-02-17 03:27 - 00056230 _____ () C:\Users\danij_000\Desktop\verkaufsartikelinfos.odt 2014-02-17 03:09 - 2014-02-17 03:09 - 00048254 _____ () C:\Users\danij_000\Desktop\amazon.odt 2014-02-17 01:27 - 2014-02-17 01:27 - 02976072 _____ (Google Inc.) C:\Users\danij_000\Desktop\gpautobackup_setup.exe 2014-02-16 20:56 - 2014-02-16 20:56 - 00000308 _____ () C:\Users\danij_000\Desktop\31344722044.csv 2014-02-14 18:57 - 2014-02-26 12:27 - 00000000 ____D () C:\Users\danij_000\Documents\typentest ergebnis u infos 2014-02-13 07:57 - 2014-02-21 02:21 - 00000000 ____D () C:\AdwCleaner 2014-02-13 07:52 - 2014-02-13 07:59 - 00003074 _____ () C:\Users\danij_000\Desktop\SystemLook.txt 2014-02-12 22:00 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll 2014-02-12 22:00 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll 2014-02-12 21:59 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-12 21:59 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-12 21:59 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-12 21:59 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-12 21:59 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-12 21:59 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-12 21:59 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-12 21:59 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-12 21:59 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-12 21:59 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-12 21:59 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-12 21:59 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-12 21:59 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-12 21:59 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-12 21:59 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-12 21:59 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-12 21:59 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-12 21:59 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-12 21:59 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-12 21:59 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-12 21:59 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-12 21:59 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-12 21:59 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-12 21:59 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-12 21:59 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-12 21:59 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-12 21:59 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-12 21:59 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-12 21:59 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-12 21:59 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-12 21:59 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-12 21:59 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-12 21:59 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-12 21:59 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-12 21:59 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-12 21:59 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-12 21:59 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-12 21:59 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2014-02-12 21:59 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-02-12 21:59 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-02-12 21:59 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-02-12 21:59 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2014-02-12 21:59 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2014-02-12 21:58 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2014-02-12 21:58 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2014-02-12 21:58 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2014-02-12 21:58 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-02-12 21:58 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-02-12 21:58 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2014-02-12 21:58 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2014-02-12 21:58 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-02-12 21:58 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-02-12 21:58 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-02-12 21:58 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2014-02-12 21:58 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2014-02-12 21:58 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-02-12 21:58 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-02-12 21:58 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-02-12 21:58 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-02-12 21:58 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-02-12 21:58 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-02-12 21:58 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-02-12 21:58 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-02-12 21:58 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms 2014-02-12 21:58 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms 2014-02-12 21:58 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-02-12 21:58 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-02-12 21:58 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2014-02-12 21:58 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2014-02-07 23:29 - 2014-02-07 23:35 - 882900992 _____ () C:\Users\danij_000\Downloads\xubuntu-13.10-desktop-amd64.iso 2014-02-07 23:18 - 2014-02-25 01:19 - 00001867 _____ () C:\Users\Public\Desktop\Shoot'n Save.lnk 2014-02-07 23:18 - 2014-02-07 23:18 - 00000000 ____D () C:\Program Files (x86)\ShootnSave 2014-02-07 23:17 - 2014-02-07 23:17 - 00509342 _____ () C:\Users\danij_000\Desktop\ShootnSave.zip 2014-02-07 01:25 - 2014-02-08 02:04 - 00000000 ____D () C:\Program Files (x86)\AntiTwin 2014-02-07 01:25 - 2014-02-07 01:25 - 00001025 _____ () C:\Users\Public\Desktop\Anti-Twin.lnk 2014-02-04 22:15 - 2011-05-30 14:42 - 00255488 _____ () C:\WINDOWS\system32\xvidvfw.dll 2014-02-04 22:15 - 2011-05-30 14:42 - 00240640 _____ () C:\WINDOWS\SysWOW64\xvidvfw.dll 2014-02-04 22:15 - 2011-05-23 10:52 - 00153088 _____ () C:\WINDOWS\SysWOW64\xvid.ax 2014-02-04 22:15 - 2011-05-23 08:49 - 00173568 _____ () C:\WINDOWS\system32\xvid.ax 2014-02-04 22:15 - 2011-05-23 08:46 - 00645632 _____ () C:\WINDOWS\SysWOW64\xvidcore.dll 2014-02-04 22:15 - 2011-05-23 08:45 - 00696832 _____ () C:\WINDOWS\system32\xvidcore.dll 2014-02-04 22:14 - 2014-02-04 22:14 - 00715038 _____ () C:\WINDOWS\unins000.exe 2014-02-04 16:35 - 2014-02-04 09:53 - 00063086 _____ () C:\Users\danij_000\Documents\untitled_2odt 2014-02-04 14:10 - 2014-02-04 14:10 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.sing15-30-36.doc# 2014-02-04 14:09 - 2014-02-03 20:36 - 00062575 _____ () C:\Users\danij_000\Documents\untitled_1odt 2014-02-04 13:47 - 2014-02-21 01:03 - 00000470 _____ () C:\WINDOWS\SysWOW64\ÁÂÃÄÅÆÇÈÉÊËÌÍÎÏÐÑÒÓÔÕÖ÷ØÙÚÛÜÝÞ 2014-02-04 13:47 - 2012-10-24 06:42 - 04209856 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\ENAgent.exe 2014-02-04 13:39 - 2014-01-19 08:38 - 00270496 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00312744 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00108968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2014-02-03 15:18 - 2014-02-03 15:18 - 00000000 ____D () C:\Program Files\Java 2014-02-03 13:09 - 2014-02-03 13:09 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-02-03 13:05 - 2014-02-03 13:05 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Intel_Corporation 2014-02-03 13:04 - 2014-02-03 13:04 - 00405504 _____ () C:\Users\danij_000\Desktop\intel_srldetect_4.5.13.0.msi 2014-02-03 11:33 - 2014-02-28 22:14 - 01395844 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-03 11:33 - 2014-02-28 01:25 - 00002389 _____ () C:\WINDOWS\setupact.log 2014-02-03 11:33 - 2014-02-03 11:33 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-02 06:12 - 2014-02-02 06:12 - 00001536 _____ () C:\Users\danij_000\PaceKeyChain 2014-02-02 03:39 - 2014-02-02 03:39 - 00000000 ____D () C:\Users\danij_000\AppData\Local\PaceAP 2014-02-02 02:41 - 2014-02-02 02:41 - 00000000 ____D () C:\ProgramData\PACE 2014-02-02 00:25 - 2014-02-12 00:35 - 00000000 ____D () C:\Program Files (x86)\UVISoundBanks 2014-02-02 00:25 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\Propellerhead 2014-02-02 00:25 - 2013-04-17 17:37 - 02275328 _____ () C:\WINDOWS\SysWOW64\libsndfile-1.dll 2014-02-02 00:11 - 2014-02-02 00:11 - 00000000 ____D () C:\Users\danij_000\Documents\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\ProgramData\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Program Files (x86)\Ohm Force 2014-02-01 00:25 - 2014-02-14 19:15 - 00000218 _____ () C:\Users\danij_000\AppData\Roaming\WB.CFG 2014-02-01 00:25 - 2014-02-01 00:25 - 00000005 _____ () C:\Users\danij_000\AppData\Roaming\WBPU-TTL.DAT 2014-02-01 00:23 - 2014-02-01 00:23 - 00003738 _____ () C:\WINDOWS\System32\Tasks\DivX-Online-Aktualisierungsprogramm 2014-01-31 14:38 - 2014-01-29 03:05 - 00000862 _____ () C:\WINDOWS\system32\termcap 2014-01-31 09:14 - 2014-01-31 09:14 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.profF.htm# 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DivX 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files\DivX 2014-01-30 16:51 - 2014-02-04 22:14 - 00004900 _____ () C:\WINDOWS\unins000.dat 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\ProgramData\DivX 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\Xvid 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\Lame For Audacity 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\ffdshow 2014-01-30 16:51 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\DirectVobSub 2014-01-30 16:51 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\LavFilters 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\CDXReader 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\OpenSource Flash Video Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Haali 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DSP-worx 2014-01-30 16:51 - 2012-02-26 16:47 - 00079360 _____ () C:\WINDOWS\SysWOW64\ff_vfw.dll 2014-01-30 16:51 - 2012-01-09 20:45 - 00178688 _____ () C:\WINDOWS\SysWOW64\unrar.dll 2014-01-30 16:51 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2014-01-30 16:51 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2014-01-30 12:31 - 2013-10-23 12:29 - 00044936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll 2014-01-30 12:31 - 2013-10-23 12:13 - 00171864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll 2014-01-30 12:31 - 2013-10-22 09:18 - 01287064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-01-30 12:31 - 2013-10-22 08:55 - 02328872 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-01-30 12:31 - 2013-10-22 07:03 - 02065448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-01-30 12:31 - 2013-10-22 06:15 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2014-01-30 12:31 - 2013-10-22 05:04 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2014-01-30 12:31 - 2013-10-22 05:02 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-01-30 12:31 - 2013-10-22 04:44 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-01-30 12:31 - 2013-10-22 03:38 - 01362944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2014-01-30 12:31 - 2013-10-22 03:22 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-01-30 12:31 - 2013-10-22 02:53 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-01-30 12:31 - 2013-10-19 09:51 - 00481392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-01-30 12:31 - 2013-10-19 08:12 - 00380656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-01-30 12:31 - 2013-10-19 05:48 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2014-01-30 12:31 - 2013-10-19 05:03 - 00531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2014-01-30 12:31 - 2013-10-19 04:26 - 01231360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-01-30 12:31 - 2013-10-19 04:14 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-01-30 12:31 - 2013-10-16 10:34 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2014-01-30 12:31 - 2013-10-16 10:33 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2014-01-30 12:31 - 2013-10-13 04:06 - 00258904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys 2014-01-30 12:31 - 2013-10-13 03:43 - 00708616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2014-01-30 12:31 - 2013-10-10 17:26 - 00317616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-01-30 12:31 - 2013-10-10 17:26 - 00104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2014-01-30 12:31 - 2013-10-10 15:53 - 00235960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2014-01-30 12:31 - 2013-10-10 15:53 - 00088272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2014-01-30 12:31 - 2013-10-10 12:38 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-01-30 12:31 - 2013-10-10 11:34 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-01-30 12:31 - 2013-10-10 11:27 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-01-30 12:31 - 2013-10-08 11:28 - 00523096 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2014-01-30 12:31 - 2013-10-08 07:46 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll 2014-01-30 12:31 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll 2014-01-30 12:31 - 2013-10-08 06:50 - 00656384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-01-30 12:31 - 2013-10-08 06:48 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-01-30 12:31 - 2013-10-08 06:15 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-01-30 12:31 - 2013-10-08 06:09 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2014-01-30 12:31 - 2013-10-08 05:50 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2014-01-30 12:31 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2014-01-30 12:31 - 2013-10-07 08:21 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-01-30 12:31 - 2013-10-07 03:13 - 03532288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-01-30 12:31 - 2013-10-05 16:25 - 00057176 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2014-01-30 12:31 - 2013-10-05 15:21 - 00699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2014-01-30 12:31 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2014-01-30 12:31 - 2013-10-05 12:01 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2014-01-30 12:31 - 2013-10-05 12:01 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2014-01-30 12:31 - 2013-10-05 12:00 - 01200640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-01-30 12:31 - 2013-10-05 10:36 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe 2014-01-30 12:31 - 2013-10-05 10:18 - 01011712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2014-01-30 12:31 - 2013-10-05 10:07 - 00830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2014-01-30 12:31 - 2013-10-05 09:56 - 01147904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2014-01-30 12:31 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2014-01-30 12:31 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2014-01-30 12:31 - 2013-10-05 09:15 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll 2014-01-30 12:31 - 2013-10-05 08:43 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2014-01-30 12:31 - 2013-10-05 08:39 - 06639616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-01-30 12:31 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2014-01-30 12:31 - 2013-10-05 08:32 - 05769728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-01-30 12:31 - 2013-10-04 09:10 - 00533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2014-01-30 12:31 - 2013-09-17 10:06 - 01067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2014-01-30 12:31 - 2013-09-17 08:01 - 00270848 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2014-01-30 12:31 - 2013-09-17 07:31 - 00883184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2014-01-30 12:31 - 2013-09-17 05:37 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2014-01-30 12:31 - 2013-09-14 15:07 - 02134120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-01-30 12:31 - 2013-09-14 15:00 - 00391512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2014-01-30 12:31 - 2013-09-14 13:39 - 01799944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2014-01-30 12:31 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2014-01-30 12:31 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ftp.exe 2014-01-30 12:31 - 2013-09-12 09:45 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2014-01-30 12:31 - 2013-09-12 09:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2014-01-30 12:31 - 2013-09-12 09:08 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2014-01-30 12:31 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2014-01-30 12:31 - 2013-09-12 08:44 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2014-01-30 12:31 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2014-01-30 12:31 - 2013-09-12 08:37 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-01-30 12:31 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2014-01-30 12:31 - 2013-09-12 08:16 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2014-01-30 12:31 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2014-01-30 12:31 - 2013-09-10 05:52 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll 2014-01-30 12:30 - 2013-10-22 04:56 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-01-30 12:30 - 2013-10-22 03:13 - 01704448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-01-30 12:30 - 2013-10-05 09:55 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll 2014-01-30 12:30 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll 2014-01-30 12:30 - 2013-09-14 11:05 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2014-01-30 12:30 - 2013-09-13 09:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe ==================== One Month Modified Files and Folders ======= 2014-03-01 05:27 - 2014-02-17 13:27 - 00045452 _____ () C:\Users\danij_000\Desktop\FRST.txt 2014-03-01 05:26 - 2014-03-01 05:26 - 00000000 ____D () C:\Users\danij_000\Desktop\FRST-OlderVersion 2014-03-01 05:26 - 2014-02-21 02:08 - 02155520 _____ (Farbar) C:\Users\danij_000\Desktop\FRST64.exe 2014-03-01 05:26 - 2013-11-10 17:25 - 00000000 ____D () C:\FRST 2014-03-01 05:19 - 2013-12-16 11:22 - 00000940 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-03-01 05:18 - 2013-11-24 17:17 - 00003954 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{D4537034-D7A6-4244-A6BD-E291D308EB1F} 2014-03-01 05:11 - 2013-11-14 20:51 - 00001138 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-01 05:02 - 2014-03-01 05:02 - 36896984 _____ (Google Inc.) C:\Users\danij_000\Desktop\35.0.1862.2_chrome_installer.exe 2014-03-01 05:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-03-01 04:41 - 2013-11-14 20:42 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3524602474-1062247959-1074854460-1005 2014-03-01 04:38 - 2014-03-01 04:38 - 00987425 _____ () C:\Users\danij_000\Desktop\SecurityCheck (1).exe 2014-03-01 04:33 - 2014-02-21 02:08 - 00000308 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job 2014-03-01 04:33 - 2013-11-15 13:30 - 00000000 ____D () C:\ProgramData\IObit 2014-03-01 04:12 - 2014-02-18 12:33 - 00000000 ____D () C:\ProgramData\MFAData 2014-03-01 04:10 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-03-01 04:10 - 2013-04-01 18:46 - 00000000 ___RD () C:\Users\danij_000\Desktop\My Box Files 2014-03-01 03:54 - 2014-03-01 02:06 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Folderico 2014-03-01 03:52 - 2014-02-28 22:11 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2014-03-01 03:52 - 2014-02-28 22:10 - 00000000 ____D () C:\Program Files (x86)\AVS4YOU 2014-03-01 03:51 - 2014-03-01 03:51 - 00001221 _____ () C:\Users\danij_000\Desktop\AVS Audio Editor.lnk 2014-03-01 02:06 - 2014-02-21 01:58 - 00000000 ____D () C:\ProgramData\Folderico 2014-03-01 01:45 - 2012-08-10 17:45 - 00000821 _____ () C:\WINDOWS\SysWOW64\bscs.ini 2014-03-01 01:42 - 2012-12-12 20:36 - 00004524 _____ () C:\WINDOWS\SysWOW64\LOCALSERVICE.INI 2014-03-01 01:42 - 2012-12-12 20:36 - 00000043 _____ () C:\WINDOWS\SysWOW64\LOCALDEVICE.INI 2014-02-28 23:41 - 2013-11-15 07:14 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Paint.NET 2014-02-28 22:14 - 2014-02-03 11:33 - 01395844 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-28 22:11 - 2014-02-28 22:11 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\AVS4YOU 2014-02-28 22:11 - 2014-02-28 22:11 - 00000000 ____D () C:\ProgramData\AVS4YOU 2014-02-28 22:10 - 2014-02-28 22:10 - 00001257 _____ () C:\Users\danij_000\Desktop\AVS Audio Converter.lnk 2014-02-28 22:02 - 2013-09-30 05:15 - 03448354 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-02-28 22:02 - 2013-09-30 04:59 - 00929128 _____ () C:\WINDOWS\system32\perfh013.dat 2014-02-28 22:02 - 2013-09-30 04:59 - 00211096 _____ () C:\WINDOWS\system32\perfc013.dat 2014-02-28 22:02 - 2012-09-02 01:55 - 01055820 _____ () C:\WINDOWS\system32\perfh007.dat 2014-02-28 22:02 - 2012-09-02 01:55 - 00249990 _____ () C:\WINDOWS\system32\perfc007.dat 2014-02-28 18:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-02-28 01:43 - 2013-07-30 02:51 - 00000000 ____D () C:\Users\danij_000\Downloads\schriften 2014-02-28 01:42 - 2013-05-18 01:39 - 00000000 ____D () C:\Users\danij_000\AnwendungenundSetups 2014-02-28 01:25 - 2014-02-03 11:33 - 00002389 _____ () C:\WINDOWS\setupact.log 2014-02-28 01:15 - 2013-12-21 15:03 - 00000000 ___RD () C:\Users\danij_000\Desktop\mypersonalDOCS 2014-02-28 00:31 - 2013-06-22 03:47 - 00000000 ___RD () C:\Users\danij_000\SkyDrive.old 2014-02-28 00:24 - 2013-10-05 22:39 - 03036160 ___SH () C:\Users\danij_000\Desktop\Thumbs.db 2014-02-27 23:06 - 2013-11-19 23:22 - 00003192 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleFordanij_000 2014-02-27 23:06 - 2013-11-19 23:22 - 00000370 _____ () C:\WINDOWS\Tasks\HPCeeScheduleFordanij_000.job 2014-02-27 22:50 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-02-27 20:20 - 2014-02-25 01:35 - 00000000 ____D () C:\Program Files (x86)\FindRight 2014-02-27 01:44 - 2013-11-27 18:55 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log 2014-02-26 12:29 - 2014-02-26 12:29 - 00001276 _____ () C:\Users\danij_000\Desktop\Docs keine Ahnung wohin damit - Verknüpfung.lnk 2014-02-26 12:29 - 2014-02-26 12:29 - 00001135 _____ () C:\Users\danij_000\Desktop\snip-it - Verknüpfung.lnk 2014-02-26 12:29 - 2013-10-05 22:39 - 00090112 ___SH () C:\Users\danij_000\Thumbs.db 2014-02-26 12:27 - 2014-02-14 18:57 - 00000000 ____D () C:\Users\danij_000\Documents\typentest ergebnis u infos 2014-02-26 12:27 - 2013-12-31 02:06 - 00000000 ____D () C:\Users\danij_000\Documents\Rechnungen 2014-02-26 12:27 - 2013-09-08 10:46 - 00000000 ____D () C:\Users\danij_000\Documents\Rezepte 2014-02-26 12:27 - 2013-07-06 04:54 - 00000000 ____D () C:\Users\danij_000\Documents\VirtualDJ 2014-02-26 10:11 - 2013-11-14 20:51 - 00001134 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-25 20:25 - 2014-01-02 21:51 - 00000000 __RDO () C:\Users\danij_000\SkyDrive 2014-02-25 04:32 - 2014-01-07 01:18 - 00017739 _____ () C:\Users\danij_000\Desktop\PASSWORDS.odt 2014-02-25 04:32 - 2013-09-10 17:39 - 00000000 ___RD () C:\Users\danij_000\Google Drive 2014-02-25 04:32 - 2013-06-16 17:20 - 00000000 ___RD () C:\Users\danij_000\Desktop\job 2014-02-25 04:16 - 2014-02-25 04:15 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\GoforFiles 2014-02-25 04:15 - 2014-02-25 04:15 - 00003086 _____ () C:\WINDOWS\System32\Tasks\GoforFilesUpdate 2014-02-25 04:14 - 2014-02-25 04:14 - 09055112 _____ (hxxp://www.goforfiles.com/) C:\Users\danij_000\Desktop\cubase_downloader.exe 2014-02-25 01:40 - 2014-02-25 01:40 - 00001150 _____ () C:\Users\Public\Desktop\Real Desktop Webpage.lnk 2014-02-25 01:40 - 2014-02-21 02:09 - 00001148 _____ () C:\Users\Public\Desktop\Facebook.lnk 2014-02-25 01:40 - 2014-02-21 02:09 - 00001142 _____ () C:\Users\Public\Desktop\Twitter.lnk 2014-02-25 01:38 - 2014-02-21 02:09 - 03033598 _____ (Schillergames ) C:\Users\danij_000\Downloads\RDeskFree2.0-setup.exe 2014-02-25 01:38 - 2013-04-20 13:18 - 00000000 ___RD () C:\Users\danij_000\Desktop\bildschoner 2014-02-25 01:35 - 2014-02-25 01:35 - 24489269 _____ () C:\Users\danij_000\Downloads\36434-673563-vlc-media-player.exe 2014-02-25 01:35 - 2014-02-25 01:35 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\0V1L2Z2Z1T1I1L1T 2014-02-25 01:19 - 2014-02-07 23:18 - 00001867 _____ () C:\Users\Public\Desktop\Shoot'n Save.lnk 2014-02-25 01:06 - 2014-02-25 01:06 - 00000000 ____D () C:\Users\danij_000\Desktop\Neuer Ordner 2014-02-25 01:06 - 2013-11-15 12:26 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-02-25 00:51 - 2013-12-09 13:52 - 00000000 ____D () C:\Program Files\Tablet 2014-02-24 21:04 - 2014-02-24 21:04 - 00018404 _____ () C:\Users\danij_000\Desktop\professional-elegant-combination-resume.ott 2014-02-24 21:04 - 2014-02-24 21:04 - 00000000 ____D () C:\Users\danij_000\Desktop\OpenOffice 4.0.0 (en-US) Installation Files 2014-02-24 21:03 - 2014-02-24 21:03 - 00045990 _____ () C:\Users\danij_000\Desktop\basic-resume.ott 2014-02-24 20:33 - 2014-02-24 20:27 - 00001140 _____ () C:\Users\Public\Desktop\Hotspot Shield.lnk 2014-02-24 20:33 - 2014-02-24 20:27 - 00000000 ____D () C:\Program Files (x86)\Hotspot Shield 2014-02-24 20:32 - 2014-02-24 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\RadioRage_4j 2014-02-24 20:32 - 2014-02-24 20:32 - 00000000 ____D () C:\Program Files (x86)\RadioRage_4j 2014-02-24 20:27 - 2014-02-24 20:27 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Hotspot Shield 2014-02-24 20:27 - 2014-02-24 20:27 - 00000000 ____D () C:\ProgramData\Hotspot Shield 2014-02-24 20:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Resources 2014-02-24 02:23 - 2014-02-24 02:23 - 00678552 _____ ( ) C:\Users\danij_000\Desktop\installer_vlc_English.exe 2014-02-23 20:08 - 2014-02-23 20:08 - 00652240 _____ () C:\Users\danij_000\Desktop\Hotspot-Shield-649.exe 2014-02-23 03:54 - 2013-11-14 20:35 - 00000000 ___RD () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-22 15:14 - 2014-01-29 11:27 - 00000000 ____D () C:\Users\danij_000\Documents\DVDVideoSoft 2014-02-21 03:11 - 2014-02-21 03:11 - 04259840 _____ () C:\Users\danij_000\Desktop\Flat.File.InventoryLoader.de.xls 2014-02-21 02:22 - 2014-02-17 13:29 - 00051577 _____ () C:\Users\danij_000\Desktop\Addition.txt 2014-02-21 02:21 - 2014-02-13 07:57 - 00000000 ____D () C:\AdwCleaner 2014-02-21 02:08 - 2014-02-21 02:08 - 00002416 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Administrator 2014-02-21 02:08 - 2014-02-21 02:08 - 00001248 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk 2014-02-21 02:08 - 2014-02-21 02:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\ProductData 2014-02-21 02:08 - 2013-11-15 13:30 - 00001272 _____ () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk 2014-02-21 02:07 - 2013-09-24 23:53 - 00000000 ____D () C:\Users\danij_000\icons 2014-02-21 01:58 - 2014-02-21 01:58 - 00797972 _____ () C:\Users\danij_000\Downloads\famfamfam_silk_icons_v013.zip 2014-02-21 01:58 - 2014-02-21 01:58 - 00001035 _____ () C:\Users\Public\Desktop\Folderico.lnk 2014-02-21 01:58 - 2014-02-21 01:58 - 00000000 ____D () C:\Program Files (x86)\Folderico 2014-02-21 01:57 - 2014-02-21 01:57 - 04351610 _____ (Shedko ( www.softq.org )) C:\Users\danij_000\Downloads\Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:53 - 2014-02-21 01:53 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_Shedko_Folderico_4.0_RC12.exe 2014-02-21 01:50 - 2014-02-21 01:50 - 00710848 _____ ( ) C:\Users\danij_000\Desktop\COMPUTER_BILD-Download-Manager_fuer_RDeskFree2.0-setup.exe 2014-02-21 01:33 - 2014-02-21 01:33 - 00003663 _____ () C:\Users\danij_000\Desktop\JRT.txt 2014-02-21 01:24 - 2014-02-21 01:24 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-02-21 01:16 - 2014-02-21 01:16 - 01037734 _____ (Thisisu) C:\Users\danij_000\Desktop\JRT.exe 2014-02-21 01:05 - 2013-11-15 13:30 - 00000000 ____D () C:\ProgramData\ProductData 2014-02-21 01:05 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\inetsrv 2014-02-21 01:03 - 2014-02-04 13:47 - 00000470 _____ () C:\WINDOWS\SysWOW64\ÁÂÃÄÅÆÇÈÉÊËÌÍÎÏÐÑÒÓÔÕÖ÷ØÙÚÛÜÝÞ 2014-02-21 01:03 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-02-21 01:02 - 2014-02-17 03:31 - 00006244 _____ () C:\WINDOWS\PFRO.log 2014-02-21 01:02 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2014-02-21 01:01 - 2013-11-14 20:51 - 00004110 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-21 01:01 - 2013-11-14 20:51 - 00003874 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-21 01:00 - 2014-02-19 02:45 - 00000000 ____D () C:\WINDOWS\System32\Tasks\NCH Software 2014-02-21 00:40 - 2014-02-21 00:40 - 01241834 _____ () C:\Users\danij_000\Desktop\adwcleaner.exe 2014-02-20 21:34 - 2014-02-20 10:14 - 02294977 _____ () C:\Users\danij_000\Desktop\Google Play Store hack Installer Setup.rar 2014-02-20 21:20 - 2014-02-20 21:20 - 00001642 _____ () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 - Verknüpfung.lnk 2014-02-20 21:20 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\AppData\Local\www.rene-zeidler.de 2014-02-20 20:19 - 2013-12-16 11:22 - 00003828 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-02-20 18:48 - 2014-02-20 18:48 - 00092961 _____ () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen.htm 2014-02-20 18:48 - 2014-02-20 18:48 - 00000000 ____D () C:\Users\danij_000\Desktop\(10) Bilder werkenntwen_files 2014-02-20 16:00 - 2013-11-14 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Packages 2014-02-20 10:11 - 2014-02-20 10:10 - 06270896 _____ () C:\Users\danij_000\Desktop\Hack.rar 2014-02-20 01:12 - 2014-02-20 00:13 - 00000000 ___RD () C:\Users\danij_000\Desktop\onlineverkaufsfotos 2014-02-20 00:11 - 2014-02-20 00:11 - 00000000 ____D () C:\Users\danij_000\Desktop\Notfall-CD-2.2 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\Desktop\SnippingToolPlusv3-4-1-0 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\www.rene-zeidler.de 2014-02-20 00:02 - 2014-02-20 00:02 - 00000000 ____D () C:\ProgramData\www.rene-zeidler.de 2014-02-20 00:00 - 2013-08-15 18:16 - 00000000 ___RD () C:\Users\danij_000\Documents\Lohnsteuer 2014-02-19 23:54 - 2014-01-23 02:08 - 00001003 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-02-19 22:49 - 2014-01-05 04:09 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Avg2014 2014-02-19 03:20 - 2014-02-19 03:20 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\AVG2014 2014-02-19 03:20 - 2014-02-19 03:18 - 00000000 ____D () C:\ProgramData\AVG2014 2014-02-19 03:19 - 2013-11-27 19:26 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\TuneUp Software 2014-02-19 03:19 - 2012-07-26 09:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-02-19 03:16 - 2014-02-19 03:16 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-02-19 03:13 - 2014-02-19 03:13 - 00034512 _____ () C:\WINDOWS\system32\Drivers\voxaldriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00033488 _____ () C:\WINDOWS\system32\Drivers\stdriverx64.sys 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00001167 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.1.txt 2014-02-19 03:13 - 2014-02-19 03:13 - 00000000 _____ () C:\Users\danij_000\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2014-02-19 03:12 - 2014-02-19 02:44 - 00001138 _____ () C:\Users\Public\Desktop\WavePad Sound Editor.lnk 2014-02-19 03:07 - 2014-02-19 03:08 - 00107910 _____ () C:\Users\danij_000\Desktop\cvFEB2014.odt 2014-02-19 02:45 - 2014-02-19 02:45 - 00000000 ____D () C:\Users\danij_000\Documents\Mixpad Projects 2014-02-18 13:52 - 2014-02-18 01:30 - 00072356 _____ () C:\Users\danij_000\Desktop\KopievonCVoctober2013new2014.odt 2014-02-18 13:27 - 2014-02-18 13:27 - 00000000 ____D () C:\Users\danij_000\Documents\virtualdjdatas 2014-02-18 12:33 - 2014-02-18 12:33 - 00000000 ____D () C:\Users\danij_000\AppData\Local\MFAData 2014-02-18 01:32 - 2014-01-12 01:24 - 00000000 ___RD () C:\Users\danij_000\Desktop\docs dies&&das 2014-02-18 01:32 - 2013-11-09 20:51 - 00000000 ___RD () C:\Users\danij_000\Desktop\cv 2014-02-17 22:00 - 2013-12-14 17:35 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-02-17 22:00 - 2013-12-14 17:35 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-17 21:58 - 2014-02-17 22:00 - 00042097 _____ () C:\Users\danij_000\Desktop\cv FEB2014.odt 2014-02-17 19:08 - 2014-02-17 19:08 - 00000000 ____D () C:\Users\danij_000\Desktop\snip-it 2014-02-17 13:12 - 2014-02-17 13:12 - 00000000 ____D () C:\Users\danij_000\Documents\Listen 2014-02-17 11:47 - 2014-02-17 11:42 - 548011982 _____ () C:\Users\danij_000\Desktop\Notfall-CD-2.2.zip 2014-02-17 11:20 - 2013-11-17 03:30 - 00114664 _____ () C:\Users\danij_000\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-17 11:18 - 2013-12-09 13:53 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Wacom 2014-02-17 10:22 - 2013-11-27 23:14 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Deployment 2014-02-17 10:16 - 2014-02-17 10:16 - 15634184 _____ ( ) C:\Users\danij_000\Desktop\setup.exe 2014-02-17 03:27 - 2014-02-17 03:27 - 00056230 _____ () C:\Users\danij_000\Desktop\verkaufsartikelinfos.odt 2014-02-17 03:09 - 2014-02-17 03:09 - 00048254 _____ () C:\Users\danij_000\Desktop\amazon.odt 2014-02-17 01:27 - 2014-02-17 01:27 - 02976072 _____ (Google Inc.) C:\Users\danij_000\Desktop\gpautobackup_setup.exe 2014-02-16 20:56 - 2014-02-16 20:56 - 00000308 _____ () C:\Users\danij_000\Desktop\31344722044.csv 2014-02-15 21:37 - 2013-11-15 01:13 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-02-15 21:36 - 2013-11-15 01:13 - 88567024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-02-15 03:43 - 2013-11-24 14:04 - 00000000 ____D () C:\Users\danij_000 2014-02-14 20:49 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-02-14 19:15 - 2014-02-01 00:25 - 00000218 _____ () C:\Users\danij_000\AppData\Roaming\WB.CFG 2014-02-13 07:59 - 2014-02-13 07:52 - 00003074 _____ () C:\Users\danij_000\Desktop\SystemLook.txt 2014-02-13 07:40 - 2013-11-16 16:23 - 00000000 ___RD () C:\Users\danij_000\Documents\Docs keine Ahnung wohin damit 2014-02-13 07:37 - 2013-09-22 00:55 - 00000000 ____D () C:\Users\danij_000\Documents\Youcam 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager 2014-02-13 01:59 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera 2014-02-13 00:27 - 2013-11-09 23:00 - 00000000 ____D () C:\Users\danij_000\Downloads\Cloud Downloader 2.0 2014-02-12 23:12 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\LiveKernelReports 2014-02-12 00:40 - 2012-09-01 16:30 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-02-12 00:35 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\UVISoundBanks 2014-02-12 00:35 - 2013-12-01 06:19 - 00000000 ____D () C:\Program Files (x86)\Steinberg 2014-02-10 03:03 - 2013-11-15 13:30 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Greenshot 2014-02-08 02:04 - 2014-02-07 01:25 - 00000000 ____D () C:\Program Files (x86)\AntiTwin 2014-02-07 23:35 - 2014-02-07 23:29 - 882900992 _____ () C:\Users\danij_000\Downloads\xubuntu-13.10-desktop-amd64.iso 2014-02-07 23:18 - 2014-02-07 23:18 - 00000000 ____D () C:\Program Files (x86)\ShootnSave 2014-02-07 23:17 - 2014-02-07 23:17 - 00509342 _____ () C:\Users\danij_000\Desktop\ShootnSave.zip 2014-02-07 01:25 - 2014-02-07 01:25 - 00001025 _____ () C:\Users\Public\Desktop\Anti-Twin.lnk 2014-02-07 00:10 - 2012-09-01 16:30 - 00000000 ____D () C:\ProgramData\install_clap 2014-02-06 23:11 - 2013-05-18 05:16 - 00000000 ___RD () C:\Users\danij_000\Desktop\flyin'dogsDATAS 2014-02-06 13:16 - 2014-02-12 21:59 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-12 21:59 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-12 21:59 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-12 21:59 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-12 21:59 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-12 21:59 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-12 21:59 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-12 21:59 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-02-06 11:49 - 2014-02-12 21:59 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-12 21:59 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-12 21:59 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-12 21:59 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-12 21:59 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-12 21:59 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-12 21:59 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-02-06 11:11 - 2014-02-12 21:59 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-12 21:59 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-12 21:59 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-12 21:59 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-12 21:59 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-06 10:53 - 2013-12-12 14:02 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-06 10:52 - 2014-02-12 21:59 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-12 21:59 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-12 21:59 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-06 10:47 - 2014-02-12 21:59 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-12 21:59 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-12 21:59 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-12 21:59 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-12 21:59 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-06 10:22 - 2014-02-12 21:59 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-12 21:59 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-12 21:59 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-12 21:59 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-12 21:59 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-12 21:59 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-12 21:59 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-12 21:59 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-12 21:59 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-02-05 03:05 - 2014-01-22 21:56 - 00000000 ____D () C:\ProgramData\Package Cache 2014-02-05 03:05 - 2014-01-22 21:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 11.0 2014-02-05 03:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-02-05 03:03 - 2013-11-24 13:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-02-04 23:41 - 2013-12-08 20:30 - 00000000 ____D () C:\Users\danij_000\löschdateien 2014-02-04 22:14 - 2014-02-04 22:14 - 00715038 _____ () C:\WINDOWS\unins000.exe 2014-02-04 22:14 - 2014-01-30 16:51 - 00004900 _____ () C:\WINDOWS\unins000.dat 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\ProgramData\DivX 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Xvid 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Lame For Audacity 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\ffdshow 2014-02-04 22:14 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DirectVobSub 2014-02-04 14:10 - 2014-02-04 14:10 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.sing15-30-36.doc# 2014-02-04 10:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\FxsTmp 2014-02-04 09:53 - 2014-02-04 16:35 - 00063086 _____ () C:\Users\danij_000\Documents\untitled_2odt 2014-02-03 20:36 - 2014-02-04 14:09 - 00062575 _____ () C:\Users\danij_000\Documents\untitled_1odt 2014-02-03 17:04 - 2013-10-16 23:29 - 00114176 ___SH () C:\Users\danij_000\Documents\Thumbs.db 2014-02-03 15:18 - 2014-02-03 15:18 - 00312744 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-03 15:18 - 2014-02-03 15:18 - 00108968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2014-02-03 15:18 - 2014-02-03 15:18 - 00000000 ____D () C:\Program Files\Java 2014-02-03 13:09 - 2014-02-03 13:09 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-02-03 13:05 - 2014-02-03 13:05 - 00000000 ____D () C:\Users\danij_000\AppData\Local\Intel_Corporation 2014-02-03 13:04 - 2014-02-03 13:04 - 00405504 _____ () C:\Users\danij_000\Desktop\intel_srldetect_4.5.13.0.msi 2014-02-03 11:33 - 2014-02-03 11:33 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-02-02 06:12 - 2014-02-02 06:12 - 00001536 _____ () C:\Users\danij_000\PaceKeyChain 2014-02-02 03:39 - 2014-02-02 03:39 - 00000000 ____D () C:\Users\danij_000\AppData\Local\PaceAP 2014-02-02 02:41 - 2014-02-02 02:41 - 00000000 ____D () C:\ProgramData\PACE 2014-02-02 00:25 - 2014-02-02 00:25 - 00000000 ____D () C:\Program Files (x86)\Propellerhead 2014-02-02 00:11 - 2014-02-02 00:11 - 00000000 ____D () C:\Users\danij_000\Documents\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\ProgramData\Ohm Force 2014-02-01 22:08 - 2014-02-01 22:08 - 00000000 ____D () C:\Program Files (x86)\Ohm Force 2014-02-01 00:25 - 2014-02-01 00:25 - 00000005 _____ () C:\Users\danij_000\AppData\Roaming\WBPU-TTL.DAT 2014-02-01 00:23 - 2014-02-01 00:23 - 00003738 _____ () C:\WINDOWS\System32\Tasks\DivX-Online-Aktualisierungsprogramm 2014-01-31 19:10 - 2013-11-14 20:35 - 00000000 ___RD () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-01-31 15:12 - 2013-08-22 15:44 - 00471504 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-01-31 14:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz 2014-01-31 14:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions 2014-01-31 14:38 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 2014-01-31 14:38 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism 2014-01-31 09:20 - 2013-11-14 20:32 - 00000000 ____D () C:\Users\danij_000\AppData\Local\VirtualStore 2014-01-31 09:14 - 2014-01-31 09:14 - 00000107 ____H () C:\Users\danij_000\Desktop\.~lock.profF.htm# 2014-01-30 20:35 - 2014-01-29 02:57 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Google 2014-01-30 20:24 - 2012-12-12 20:35 - 00000000 ____D () C:\WINDOWS\Hewlett-Packard 2014-01-30 20:24 - 2012-08-04 01:02 - 00000000 ____D () C:\SWSetup 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\DivX 2014-01-30 16:52 - 2014-01-30 16:52 - 00000000 ____D () C:\Program Files\DivX 2014-01-30 16:52 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\LavFilters 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Users\danij_000\AppData\Roaming\CDXReader 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\OpenSource Flash Video Splitter 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\Haali 2014-01-30 16:51 - 2014-01-30 16:51 - 00000000 ____D () C:\Program Files (x86)\DSP-worx Some content of TEMP: ==================== C:\Users\danij_000\AppData\Local\Temp\htmlayout.dll C:\Users\danij_000\AppData\Local\Temp\ICReinstall_COMPUTER_BILD-Download-Manager_fuer_RDeskFree2.0-setup.exe C:\Users\danij_000\AppData\Local\Temp\ICReinstall_installer_vlc_English.exe C:\Users\danij_000\AppData\Local\Temp\Quarantine.exe C:\Users\danij_000\AppData\Local\Temp\ripsetup.exe C:\Users\danij_000\AppData\Local\Temp\stsetup.exe C:\Users\danij_000\AppData\Local\Temp\toolbar357153078.exe C:\Users\danij_000\AppData\Local\Temp\toolbar357353156.exe C:\Users\danij_000\AppData\Local\Temp\uninstall703970234.exe C:\Users\danij_000\AppData\Local\Temp\uninstall703978937.exe C:\Users\danij_000\AppData\Local\Temp\vpsetup.exe C:\Users\danij_000\AppData\Local\Temp\vxlsetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-21 14:20 ==================== End Of Log ============================ |
Themen zu trojaner-registrierungsschlüssel infiziert-unter Quarantäne gestelltm weitere Malware u/o Viren? |
administrator, autostart, beenden, digital, explorer, file, free, google, langsam, malware, microsoft, mobogenie, mobogenie entfernen, programme, pup.optional.bundleinstaller.a, pup.optional.jumpyapps.a, pup.optional.somoto, pup.optional.updater, software, trojaner, trojaner-windows 8.1-soup share online-updater, viren, windows |