![]() |
|
Log-Analyse und Auswertung: Windows 7 64 Bit Trojaner! Problem beim Starten von: wgsdgsdgdsgsd.exe Das angegebene Modul wurde nicht gefunden.Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Windows 7 64 Bit Trojaner! Problem beim Starten von: wgsdgsdgdsgsd.exe Das angegebene Modul wurde nicht gefunden. Hallo liebes Trojaner Board, Ich habe das gleiche Problem wie schon andere User hier: jedes mal wenn ich meinen Computer hochfahre, erscheint folgende Meldung: " Fehlermeldung: Problem beim Starten von: wgsdgsdgdsgsd.exe Das angegebene Modul wurde nicht gefunden. " Technische Daten sind: Windows 7 64 Bit, alle Updates jetzt gemacht. Der Link zu dem Thread ist folgender: http://www.trojaner-board.de/147767-...-gefunden.html Allerdings vermute ich, dass das Problem nur mit einem Log File und der Benutzung von Combofix lösen kann, weshalb ich mich an euch wende, da ich kein Log File auslesen kann und vor der alleinigen Benutzung von Combofix gewarnt wurde. Deshalb würde ich mich sehr über eure Hilfe freuen und bin jetzt schon sehr dankbar für eure Hilfe. Als erstes schicke ich mal mit FRST meinen Scan Log File FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Felix (administrator) on TEST-PC on 16-03-2014 19:37:25 Running from C:\Users\Felix\Desktop\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal == Processes (Whitelisted) == Nvidia Dateien habe ich glöscht, weil es zu viele Zeichen waren. (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Ralink Technology, Corp.) C:\Program Files (x86)\Logilink\Common\RaRegistry.exe (Ralink Technology, Corp.) C:\Program Files (x86)\Logilink\Common\RaRegistry64.exe (RapidSolution Software AG) C:\Program Files (x86)\Audials\Audials 10\VCDWriter\64\VCDAudioService.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe () C:\Program Files\Rainlendar2\Rainlendar2.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Akamai Technologies, Inc.) C:\Users\Felix\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\Felix\AppData\Local\Akamai\netsession_win.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Dropbox, Inc.) C:\Users\Felix\AppData\Roaming\Dropbox\bin\Dropbox.exe (Aeria Games & Entertainment) C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\system32\msiexec.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe == Registry (Whitelisted) == HKLM\...\Run: [itype] - C:\Program Files\Microsoft IntelliType Pro\itype.exe [1873256 2011-08-10] (Microsoft Corporation) HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM-x32\...\Run: [HDAudDeck] - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2489456 2010-12-17] (VIA) HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation) HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM-x32\...\Run: [] - [X] HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3524536 2012-08-07] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [EaseUS EPM tray] - C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe HKLM-x32\...\Run: [Aeria Ignite] - C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-25] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKU\S-1-5-21-3081490788-154942970-162676441-1002\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3481408 2012-02-13] (DT Soft Ltd) HKU\S-1-5-21-3081490788-154942970-162676441-1002\...\Run: [Rainlendar2] - C:\Program Files\Rainlendar2\Rainlendar2.exe [3820032 2011-08-12] () HKU\S-1-5-21-3081490788-154942970-162676441-1002\...\Run: [SpybotSD TeaTimer] - C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.) HKU\S-1-5-21-3081490788-154942970-162676441-1002\...\Run: [Akamai NetSession Interface] - C:\Users\Felix\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.) HKU\S-1-5-21-3081490788-154942970-162676441-1002\...\MountPoints2: {e7022ec5-6e12-11e1-a11e-14dae9ed2dd9} - F:\Start.exe Startup: C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon.lnk ShortcutTarget: ctfmon.lnk -> C:\ProgramData\lsass.exe (Microsoft Corporation) Startup: C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Felix\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==== Internet (Whitelisted) === HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x4472AB920C06CF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\shhym2q5.default FF Homepage: https://accounts.google.com/ServiceLogin?service=mail&passive=true&rm=false&continue=hxxp://mail.google.com/mail/&scc=1<mpl=googlemail#inbox FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @idsoftware.com/QuakeLive - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @phonostar.de/phonostar - C:\Program Files (x86)\phonostar-Player\npphonostarDetectNP.dll No File FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Felix\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Garmin Communicator - C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\shhym2q5.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2013-11-20] FF Extension: DownloadHelper - C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\shhym2q5.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2013-12-31] FF Extension: Flash and Video Download - C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\shhym2q5.default\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2014-03-09] FF Extension: Flash Video Downloader - Youtube Downloader - C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\shhym2q5.default\Extensions\artur.dubovoy@gmail.com.xpi [2013-05-16] FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\shhym2q5.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi [2012-11-21] FF Extension: Adblock Plus - C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\shhym2q5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2012-08-08] FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ [] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-04-24] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-01-23] FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ [] FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-04-24] === Services (Whitelisted) === R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-25] (AVAST Software) S3 FirebirdServerMAGIXInstance; C:\Common\Database\bin\fbserver.exe [1527900 2005-08-10] (The Firebird Project) R2 RalinkRegistryWriter; C:\Program Files (x86)\Logilink\Common\RaRegistry.exe [193888 2010-06-28] (Ralink Technology, Corp.) R2 RalinkRegistryWriter64; C:\Program Files (x86)\Logilink\Common\RaRegistry64.exe [211808 2010-06-28] (Ralink Technology, Corp.) R2 Virtual CDAudio Service; C:\Program Files (x86)\Audials\Audials 10\VCDWriter\64\VCDAudioService.exe [179464 2013-08-19] (RapidSolution Software AG) S4 HP LaserJet Service; "C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe" [X] ==================== Drivers (Whitelisted) ==================== R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-30] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-25] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-25] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-25] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-01-25] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-01-25] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-01-25] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-12-19] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-25] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-14] (DT Soft Ltd) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] () S3 RRNetCap; C:\Windows\System32\DRIVERS\rrnetcap.sys [37480 2013-08-19] (RapidSolution Software AG) R3 RRNetCapMP; C:\Windows\System32\DRIVERS\rrnetcap.sys [37480 2013-08-19] (RapidSolution Software AG) R3 rsvcdwdr; C:\Windows\System32\DRIVERS\rsvcdwdr.sys [45192 2013-01-14] (RapidSolution Software AG) S3 MSICDSetup; \??\E:\CDriver64.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-16 19:22 - 2014-03-16 19:37 - 00000000 ____D () C:\FRST 2014-03-16 12:48 - 2014-03-16 12:48 - 00001113 _____ () C:\Users\Public\Desktop\phase-6 desktop.lnk 2014-03-16 12:48 - 2014-03-16 12:48 - 00000000 ____D () C:\Program Files (x86)\phase-6 2014-03-16 10:26 - 2013-12-21 10:39 - 00600064 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-03-16 10:26 - 2013-12-21 08:56 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-03-16 10:23 - 2014-02-23 09:13 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-16 10:23 - 2014-02-23 09:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-16 10:23 - 2014-02-23 09:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-16 10:23 - 2014-02-23 09:12 - 19273216 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-16 10:23 - 2014-02-23 09:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-16 10:23 - 2014-02-23 09:12 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 03960320 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-16 10:23 - 2014-02-23 09:11 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-16 10:23 - 2014-02-23 07:54 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-16 10:23 - 2014-02-23 07:54 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 14358016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-16 10:23 - 2014-02-23 07:53 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-16 10:23 - 2014-02-23 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-16 10:23 - 2014-02-23 07:31 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-16 10:23 - 2014-02-23 06:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-03-16 10:23 - 2014-02-23 06:35 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-03-16 10:23 - 2014-02-07 02:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-16 10:23 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-16 10:23 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-16 10:23 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-16 10:23 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-03-16 10:23 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-03-16 10:23 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-03-16 10:23 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-03-16 10:23 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-03-16 10:23 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-03-16 10:22 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-16 10:22 - 2014-02-04 03:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-16 10:22 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-16 10:22 - 2014-02-04 03:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-10 08:54 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-03-10 08:54 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-03-10 08:54 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-03-10 08:54 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-03-09 20:18 - 2014-03-16 10:25 - 00000000 ____D () C:\Windows\system32\MRT 2014-03-09 19:43 - 2014-03-09 19:43 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-09 19:43 - 2014-03-09 19:43 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-09 19:43 - 2014-03-09 19:43 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-03-09 19:43 - 2014-03-09 19:43 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-03-09 19:43 - 2014-03-09 19:43 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-03-09 19:43 - 2014-03-09 19:43 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-03-09 19:43 - 2014-03-09 19:43 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-03-09 19:43 - 2014-03-09 19:43 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-03-09 19:43 - 2014-03-09 19:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-03-09 19:23 - 2014-03-09 19:23 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-03-09 19:21 - 2014-03-09 19:49 - 00011150 _____ () C:\Windows\IE10_main.log 2014-03-09 18:38 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-03-09 18:38 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-03-09 18:38 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-03-09 18:38 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-03-09 18:38 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-03-09 18:38 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-03-09 18:38 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-03-09 18:38 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-03-09 18:38 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-03-09 18:38 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-03-09 18:38 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-03-09 18:38 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-03-09 18:38 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-03-09 18:38 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-03-09 18:38 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-03-09 18:38 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-03-09 18:38 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-03-09 18:38 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-03-09 18:38 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-03-09 18:38 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-03-09 18:38 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-03-09 18:38 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-03-09 18:38 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-03-09 18:38 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-03-09 18:38 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-03-09 18:38 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-03-09 18:38 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-03-09 18:38 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-03-09 18:38 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-03-09 18:38 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-03-09 18:38 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-03-09 18:38 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-03-09 18:38 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-03-09 18:38 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-03-09 18:38 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-03-09 18:38 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-03-09 18:38 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-03-09 18:38 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-03-09 18:38 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-03-09 18:38 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-03-09 18:38 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-03-09 18:38 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-03-09 18:38 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-03-09 18:38 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-03-09 18:38 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-03-09 18:38 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-03-09 18:38 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-03-09 18:38 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-03-09 18:38 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-03-09 18:38 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-03-09 18:38 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-03-09 18:38 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-03-09 18:38 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-03-09 18:38 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-03-09 18:38 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-03-09 18:38 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-03-09 18:38 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-03-09 18:38 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-03-09 18:38 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-03-09 18:38 - 2013-04-26 00:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2014-03-09 18:38 - 2013-04-12 15:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-03-09 18:38 - 2013-03-31 23:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-03-09 18:38 - 2013-02-27 07:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-03-09 18:38 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-03-09 18:38 - 2013-02-15 07:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-03-09 18:38 - 2013-02-15 07:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-03-09 18:38 - 2013-02-15 07:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-03-09 18:38 - 2013-02-15 05:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-03-09 18:38 - 2013-02-15 05:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-03-09 18:38 - 2013-02-15 04:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-03-09 18:37 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-03-09 18:37 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-03-09 18:37 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-03-09 18:37 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-03-09 18:37 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-03-09 18:37 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-03-09 18:37 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-03-09 18:37 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-03-09 18:37 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-03-09 18:37 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-03-09 18:37 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-03-09 18:37 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-03-09 18:37 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-03-09 18:37 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-03-09 18:37 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-03-09 18:37 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-03-09 18:37 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-03-09 18:37 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-03-09 18:37 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-03-09 18:37 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-03-09 18:37 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-03-09 18:37 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-03-09 18:37 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-03-09 18:37 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-03-09 18:37 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-03-09 18:37 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-03-09 18:37 - 2013-07-03 05:40 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys 2014-03-09 18:37 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-03-09 18:37 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-03-09 18:37 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-03-09 18:37 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-03-09 18:37 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-03-09 18:37 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-03-09 18:37 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-03-09 18:37 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-03-09 18:37 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-03-09 18:37 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-03-09 18:37 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-03-09 18:37 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-03-09 18:37 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-03-09 18:37 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-03-09 18:37 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-03-09 18:37 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-03-09 18:36 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-03-09 18:36 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-03-09 18:36 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-03-09 18:36 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-03-09 18:36 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-03-09 18:36 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-03-09 18:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-03-09 18:36 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-03-09 18:36 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-03-09 18:36 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-03-09 18:36 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-03-09 18:36 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-03-09 18:36 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-03-09 18:36 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-03-09 18:36 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-03-09 18:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-03-09 18:36 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-03-09 18:36 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-03-09 18:36 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-03-09 18:36 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-03-09 18:36 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-03-09 18:36 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-03-09 18:36 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-03-09 18:36 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-03-09 18:36 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-03-09 18:36 - 2013-01-03 07:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-03-09 18:35 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-03-09 18:35 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-03-09 18:35 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-03-09 18:35 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-03-09 18:35 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2014-03-09 18:35 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-03-09 18:35 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-03-09 18:35 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-03-09 18:35 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-03-09 18:35 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-03-09 18:35 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-03-09 18:35 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-03-09 18:35 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-03-09 18:35 - 2013-02-12 05:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-03-09 18:35 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-03-09 18:32 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-03-09 18:32 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-03-09 18:32 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-03-09 18:32 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-03-09 18:32 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-03-09 18:32 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-03-09 18:32 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-03-09 18:32 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-03-09 18:32 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-03-09 18:32 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-03-09 18:32 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-03-09 18:32 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-03-09 18:32 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-03-09 18:32 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-03-09 18:32 - 2013-04-10 07:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-03-09 18:32 - 2011-02-03 12:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-02-25 16:59 - 2014-02-25 16:59 - 00000000 ____D () C:\ProgramData\Oracle 2014-02-25 16:57 - 2014-02-25 16:57 - 00005933 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-02-25 16:57 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-02-25 16:57 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-02-25 16:57 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-02-25 16:57 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe == One Month Modified Files and Folders = 2014-03-16 19:37 - 2014-03-16 19:22 - 00000000 ____D () C:\FRST 2014-03-16 19:26 - 2009-07-14 05:45 - 00015136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-16 19:26 - 2009-07-14 05:45 - 00015136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-16 19:24 - 2009-07-14 18:58 - 00696848 _____ () C:\Windows\system32\perfh007.dat 2014-03-16 19:24 - 2009-07-14 18:58 - 00148144 _____ () C:\Windows\system32\perfc007.dat 2014-03-16 19:24 - 2009-07-14 06:13 - 01613412 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-03-16 19:23 - 2012-01-03 21:28 - 01072763 _____ () C:\Windows\WindowsUpdate.log 2014-03-16 19:20 - 2014-01-12 20:47 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-16 19:20 - 2012-10-01 22:03 - 00000000 ___RD () C:\Users\Felix\Dropbox 2014-03-16 19:20 - 2012-10-01 21:58 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Dropbox 2014-03-16 19:20 - 2012-04-28 08:11 - 00000000 ____D () C:\Users\Felix\.rainlendar2 2014-03-16 19:19 - 2012-01-03 21:50 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-03-16 19:19 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-03-16 19:19 - 2009-07-14 05:51 - 00094810 _____ () C:\Windows\setupact.log 2014-03-16 13:04 - 2014-01-12 20:47 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-16 12:48 - 2014-03-16 12:48 - 00001113 _____ () C:\Users\Public\Desktop\phase-6 desktop.lnk 2014-03-16 12:48 - 2014-03-16 12:48 - 00000000 ____D () C:\Program Files (x86)\phase-6 2014-03-16 11:08 - 2009-07-14 05:45 - 00408808 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-03-16 10:25 - 2014-03-09 20:18 - 00000000 ____D () C:\Windows\system32\MRT 2014-03-16 10:24 - 2012-01-24 15:06 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-14 08:49 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-03-13 22:49 - 2012-03-22 22:59 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\vlc 2014-03-12 21:52 - 2012-09-12 09:26 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-03-11 18:00 - 2012-10-23 17:18 - 00000000 ____D () C:\ProgramData\Sonos,_Inc 2014-03-10 16:05 - 2013-05-02 19:03 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Spotify 2014-03-10 16:01 - 2013-05-02 19:03 - 00000000 ____D () C:\Users\Felix\AppData\Local\Spotify 2014-03-10 08:59 - 2013-10-11 18:45 - 01590370 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-03-10 08:41 - 2012-01-25 18:29 - 00001421 _____ () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-03-10 08:41 - 2012-01-25 18:29 - 00000000 ___RD () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-10 08:41 - 2012-01-25 18:29 - 00000000 ___RD () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-03-10 08:36 - 2009-07-14 19:18 - 00000000 ____D () C:\Program Files\Windows Journal 2014-03-10 08:36 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-03-10 08:36 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-03-10 08:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-03-10 08:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-03-10 08:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-03-10 08:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-03-10 08:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-03-09 19:49 - 2014-03-09 19:21 - 00011150 _____ () C:\Windows\IE10_main.log 2014-03-09 19:43 - 2014-03-09 19:43 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-09 19:43 - 2014-03-09 19:43 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-09 19:43 - 2014-03-09 19:43 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-03-09 19:43 - 2014-03-09 19:43 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-03-09 19:43 - 2014-03-09 19:43 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-03-09 19:43 - 2014-03-09 19:43 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-03-09 19:43 - 2014-03-09 19:43 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-03-09 19:43 - 2014-03-09 19:43 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-03-09 19:43 - 2014-03-09 19:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-03-09 19:43 - 2014-03-09 19:43 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-03-09 19:43 - 2014-03-09 19:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-03-09 19:23 - 2014-03-09 19:23 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-03-09 19:23 - 2014-03-09 19:23 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-03-08 19:21 - 2012-01-27 13:13 - 00000000 ____D () C:\Program Files (x86)\CDBurnerXP 2014-02-28 22:30 - 2013-01-06 15:51 - 00000000 ____D () C:\Users\Felix\AppData\Local\Audible 2014-02-28 22:30 - 2012-01-27 13:13 - 00001949 _____ () C:\Users\Public\Desktop\CDBurnerXP.lnk 2014-02-25 16:59 - 2014-02-25 16:59 - 00000000 ____D () C:\ProgramData\Oracle 2014-02-25 16:57 - 2014-02-25 16:57 - 00005933 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_51-b13.log 2014-02-25 16:57 - 2013-07-02 11:14 - 00000000 ____D () C:\Program Files (x86)\Java 2014-02-23 09:13 - 2014-03-16 10:23 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-23 09:13 - 2014-03-16 10:23 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-23 09:13 - 2014-03-16 10:23 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-23 09:12 - 2014-03-16 10:23 - 19273216 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-23 09:12 - 2014-03-16 10:23 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-23 09:12 - 2014-03-16 10:23 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 03960320 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-23 09:11 - 2014-03-16 10:23 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-23 07:54 - 2014-03-16 10:23 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-23 07:54 - 2014-03-16 10:23 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 14358016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-23 07:53 - 2014-03-16 10:23 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-23 07:35 - 2014-03-16 10:23 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-23 07:31 - 2014-03-16 10:23 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-23 06:39 - 2014-03-16 10:23 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-02-23 06:35 - 2014-03-16 10:23 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-02-21 23:25 - 2012-09-18 15:50 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Skype 2014-02-19 17:59 - 2014-01-12 20:47 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-19 17:59 - 2014-01-12 20:47 - 00003852 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-19 00:29 - 2012-01-23 22:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox Files to move or delete: C:\ProgramData\dsgsdgdsgdsgw.pad C:\ProgramData\lsass.exe C:\Windows\Tasks\At1.job Some content of TEMP: C:\Users\Arbeit\AppData\Local\Temp\SpotifyUninstall.exe == Bamital & volsnap Check === C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-03-10 00:17 ==== End Of Log ===== Addition Log File Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014 Ran by Felix at 2014-03-16 19:37:54 Running from C:\Users\Felix\Desktop\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 11 ActiveX 64-bit (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.1.102.55 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.7.700.224 - Adobe Systems Incorporated) Adobe Reader X (10.1.9) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.9 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.2.122 - Adobe Systems, Inc.) Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.13.3296) (Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.13.3296 - Aeria Games & Entertainment) Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden AIO_CDB_Software (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden Akamai NetSession Interface (HKCU\...\Akamai) (Version: - Akamai Technologies, Inc) Alliance of Valiant Arms DE (HKLM-x32\...\Alliance of Valiant Arms DE) (Version: - ) Amazon MP3-Downloader 1.0.9 (HKLM-x32\...\Amazon MP3-Downloader) (Version: - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ATI Catalyst Install Manager (HKLM\...\{62140B07-129A-2BD0-81D2-2A1A7408ADC8}) (Version: 3.0.762.0 - ATI Technologies, Inc.) Audials (HKLM-x32\...\{0E9EBAF3-67F8-430A-9852-D02E5F20031A}) (Version: 10.2.30900.0 - Audials AG) AudibleManager (HKLM-x32\...\AudibleManager) (Version: 2010725614.48.56.2886890 - Audible, Inc.) avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2013 - Avast Software) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4478 - CDBurnerXP) CdCoverCreator 2.5.3 (HKLM-x32\...\CdCoverCreator) (Version: 2.5.3 - thyanté Software) Chemie_Aber_Sicher Version 1.0 (HKLM-x32\...\{0A64BFD0-0511-4C67-A3BF-D4C0C1055255}_is1) (Version: 1.0 - Marco Korn) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation) Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.45.3.0297 - DT Soft Ltd) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden DeviceManagementQFolder (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Dropbox (HKCU\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.) DVD Shrink 3.2 (HKLM-x32\...\DVD Shrink_is1) (Version: - DVD Shrink) Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden Firebird SQL Server (D) (HKLM-x32\...\Firebird SQL Server D) (Version: 1.5.2.4732 - ) Free M4a to MP3 Converter 7.0 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com) Free Studio version 5.9.0.1212 (HKLM-x32\...\Free Studio_is1) (Version: 5.9.0.1212 - DVDVideoSoft Ltd.) Free YouTube Download version 3.1.42.1212 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.1.42.1212 - DVDVideoSoft Ltd.) FreeFileSync v5.0 (HKLM-x32\...\FreeFileSync) (Version: 5.0 - ZenJu) Freemake Video Downloader (HKLM-x32\...\Freemake Video Downloader_is1) (Version: 3.0.0 - Ellora Assets Corporation) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden HP Basic Color Match (HKLM-x32\...\{1F8C6532-34B4-4425-BB1B-0D6B617E94D3}) (Version: 1.0.0 - Hewlett-Packard) HP Color LaserJet CM1312 MFP Series 5.0 (HKLM\...\{8EEDB90E-6ABC-42bb-AD4C-39DEE05E3EEA}) (Version: 5.0 - HP) HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP) HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (HKLM\...\{B61ED343-0B14-4241-999C-490CB1A20DA4}) (Version: 13.0 - HP) HP Print View Software (HKLM\...\{1E95102E-27A4-416F-A9D1-308C9603F14A}) (Version: 3.0.0.0 - Hewlett-Packard) HP Print View Software (HKLM-x32\...\HP Marketing Resources) (Version: - Hewlett-Packard Co.) HP Product Detection (HKLM-x32\...\{A436F67F-687E-4736-BD2B-537121A804CF}) (Version: 11.14.0001 - HP) HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP) HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP) HP Update (HKLM-x32\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.001.001 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden hppCLJCM1312 (x32 Version: 001.000.00131 - Hewlett-Packard) Hidden hppFaxDrvCM1312 (x32 Version: 005.000.00001 - Hewlett-Packard) Hidden hppFaxUtilityCM1312 (x32 Version: 001.000.00130 - Ihr Firmenname) Hidden hppFonts (x32 Version: 001.001.00061 - Hewlett-Packard) Hidden HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden hppLaserJetService (x32 Version: 001.001.0.0 - Hewlett-Packard) Hidden hppManualsCM1312 (x32 Version: 001.000.00135 - Ihr Firmenname) Hidden hppQFolderCM1312 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden hppscanCM1312 (x32 Version: 001.000.00131 - Hewlett-Packard) Hidden hppScanToCM1312 (x32 Version: 001.000.00128 - Ihr Firmenname) Hidden hppSendFaxCM1312 (x32 Version: 005.000.00001 - Ihr Firmenname) Hidden iTunes (HKLM\...\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}) (Version: 11.1.3.8 - Apple Inc.) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden LibreOffice 3.4 (HKLM-x32\...\{03CEFC42-378E-4467-9909-DCBAFD38CA9F}) (Version: 3.4.502 - LibreOffice) MAGIX Audio Cleaning Lab 17 deluxe (HKLM-x32\...\MAGIX_MSI_mclab_17dlx) (Version: 17.0.0.2 - MAGIX AG) MAGIX Audio Cleaning Lab 17 deluxe (x32 Version: 17.0.0.2 - MAGIX AG) Hidden MAGIX Burn routines (64-Bit) (HKLM\...\{49146694-5F5F-4B1F-AD15-6587F47A0FD7}) (Version: 9.0.0.212 - MAGIX AG) MAGIX Low Latency Driver (64-Bit) (HKLM\...\{42976FDB-5756-4077-A491-095F228E99E2}) (Version: 2.10.2011.0 - MAGIX AG) MAGIX Music Cleaning Lab 2006 deluxe (D) (HKLM-x32\...\MAGIX Music Cleaning Lab 2006 deluxe D) (Version: 7.0.0.0 - MAGIX AG) MAGIX Speed 2 (MSI) (HKLM-x32\...\{FF34AF1C-705B-424A-A850-1A1F61D6EB71}) (Version: 6.0.1.4 - MAGIX AG) MAGIX Speed burnR (MSI) (HKLM-x32\...\{29F291A9-F1FB-4DD3-A72D-CF15A486CD90}) (Version: 7.0.1.27 - MAGIX AG) MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30320 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30320 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30320 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft IntelliPoint 8.2 (HKLM\...\Microsoft IntelliPoint 8.2) (Version: 8.20.468.0 - Microsoft Corporation) Microsoft IntelliPoint 8.2 (Version: 8.20.468.0 - Microsoft Corporation) Hidden Microsoft IntelliType Pro 8.2 (HKLM\...\Microsoft IntelliType Pro 8.2) (Version: 8.20.469.0 - Microsoft Corporation) Microsoft IntelliType Pro 8.2 (Version: 8.20.469.0 - Microsoft Corporation) Hidden Microsoft Office 2003 German User Interface Pack (HKLM-x32\...\{901E0407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.60831.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual J# 2.0 Redistributable Package (HKLM-x32\...\Microsoft Visual J# 2.0 Redistributable Package) (Version: - Microsoft Corporation) Microsoft Visual J# 2.0 Redistributable Package (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft XML Parser (x32 Version: 8.0.7820.0 - Microsoft Corporation) Hidden Mozilla Firefox 10.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 10.0.2 (x86 de)) (Version: 10.0.2 - Mozilla) MSI Afterburner 2.1.0 (HKLM-x32\...\Afterburner) (Version: 2.1.0 - MSI Co., LTD) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) MyFreeCodec (HKCU\...\MyFreeCodec) (Version: - ) Natura Lehrerband 5-6 (HKLM-x32\...\Natura Lehrerband 5-6) (Version: - ) Network64 (Version: 130.0.572.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden NotenManager Heimversion 3.2 (HKLM-x32\...\NotenManager Heimversion) (Version: 3.2 - beSoft) Notenmanager Korrekturschema (HKLM-x32\...\{00694340-26B4-49F8-86DD-04FC7A392371}_is1) (Version: 0.9 - beSoft) NVIDIA 3D Vision Treiber 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 306.97 - NVIDIA Corporation) NVIDIA Grafiktreiber 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.1.13.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.1.13.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.85.551 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.10.0514 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.0697 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.3 - Frank Heindörfer, Philip Chinery) PDF-XChange Viewer (HKLM\...\{9ED333F8-3E6C-4A38-BAFA-728454121CDA}) (Version: 2.5.201.0 - Tracker Software Products Ltd.) phase-6 2.3.4 (HKLM-x32\...\phase-6) (Version: 2.3.4 - phase-6) Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden QLandkarte GT (remove only) (HKCU\...\QLandkarte GT) (Version: - ) Quake Live Mozilla Plugin (HKLM-x32\...\{FA66CFD7-0977-4C45-AACD-A8BB994B1A05}) (Version: 1.0.520 - id Software) Rainlendar2 (remove only) (HKLM-x32\...\Rainlendar2) (Version: - ) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden Roadkil's Unstoppable Copier Version 5.2 (HKLM-x32\...\{A306FD29-7D3A-4287-91AC-9A0180931395}_is1) (Version: - Roadkil.Net) Samplitude Pro X Download Version (HKLM-x32\...\MAGIX_MSI_SamProX) (Version: 12.0.0.59 - MAGIX AG) Samplitude Pro X Download Version (x32 Version: 12.0.0.59 - MAGIX AG) Hidden Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.3.2.12054_20 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.3.2.12054_20 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.6.0 - SAMSUNG Electronics Co., Ltd.) Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden SketchUp 2013 (HKLM-x32\...\{2C0777B8-E91F-45AA-976B-7EB6B40E5400}) (Version: 13.0.4812 - Trimble Navigation Limited) Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Sonos Controller (HKLM-x32\...\{7BBA9BF8-05DF-47D8-8880-82A9B99505B9}) (Version: 22.0.64240 - Sonos, Inc.) Spotify (HKCU\...\Spotify) (Version: 0.9.7.16.g4b197456 - Spotify AB) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited) Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Symyx Draw 4.0.100 (HKLM-x32\...\{44653096-3E44-402E-B68E-37D77240BFA8}) (Version: 4.0.100 - Symyx Technologies, Inc.) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939v3) (Version: 3 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2468871) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2468871) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2533523) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2533523) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2600217) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2600217) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939v3) (Version: 3 - Microsoft Corporation) VIA Plattform-Geräte-Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) Visual C++ 9.0 CRT (x86) WinSXS MSM (x32 Version: 9.0 - Microsoft Corporation) Hidden VLC media player 2.0.1 (HKLM\...\VLC media player) (Version: 2.0.1 - VideoLAN) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.63 - Nullsoft, Inc) WinNot 4 (HKLM-x32\...\WinNot_is1) (Version: - Arno Au) WL0088 Wireless N 150Mbps PCI Card (HKLM-x32\...\{EA9063A5-61F8-471E-A6A0-DD90906E8064}) (Version: 1.0.0.0 - Logilink) ==================== Restore Points ========================= 10-03-2014 07:54:38 Windows Update 16-03-2014 09:23:13 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-02-02 15:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {14D15389-F5F8-4302-8752-2F9A5E78A433} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12] (Google Inc.) Task: {1D211512-02FE-460B-AAF3-0142FF4C2C5E} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation) Task: {40C9B23A-7D44-4D5A-991D-80DBC58B7D06} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => C:\Program Files\Microsoft IntelliType Pro\IType.exe [2011-08-10] (Microsoft Corporation) Task: {484B0B12-7566-4ABB-AA59-73A027A94513} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-12] (Google Inc.) Task: {8673D170-36A3-45F4-A3BB-181752FC2469} - System32\Tasks\At1 => shutdown Task: {EC1F9975-7881-4468-A5B0-6ECE96165547} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-25] (AVAST Software) Task: C:\Windows\Tasks\At1.job => ? Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-01-24 18:25 - 2012-10-02 20:51 - 00086888 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2012-01-25 20:08 - 2005-03-12 01:07 - 00087040 _____ () C:\Windows\System32\pdfcmnnt.dll 2011-08-12 06:47 - 2011-08-12 06:47 - 03820032 _____ () C:\Program Files\Rainlendar2\Rainlendar2.exe 2010-05-23 18:30 - 2010-05-23 18:30 - 00160768 _____ () C:\Program Files\Rainlendar2\lua51.dll 2011-08-12 06:47 - 2011-08-12 06:47 - 00312832 _____ () C:\Program Files\Rainlendar2\plugins\iCalendarPlugin.dll 2010-05-23 18:30 - 2010-05-23 18:30 - 00013824 _____ () C:\Program Files\Rainlendar2\lfs.dll 2012-01-03 21:36 - 2010-12-17 13:25 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2012-01-03 21:36 - 2010-12-17 13:25 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2012-01-03 21:36 - 2010-12-17 13:25 - 00105584 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\VMicApi.dll 2012-01-03 21:36 - 2010-12-17 13:25 - 64643696 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll 2014-03-16 12:44 - 2014-03-16 10:14 - 02186752 _____ () C:\Program Files\AVAST Software\Avast\defs\14031600\algo.dll 2012-11-28 14:13 - 2012-11-28 14:13 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2012-11-28 14:13 - 2012-11-28 14:13 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\Felix\AppData\Roaming\Dropbox\bin\libcef.dll 2014-01-25 18:56 - 2014-01-25 18:56 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2012-01-23 22:36 - 2014-02-19 00:29 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-07-02 12:12 - 2013-07-02 12:12 - 16033160 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Event log errors: ========================= Application errors: ================== Error: (03/12/2014 10:03:10 PM) (Source: MsiInstaller) (User: test-PC) Description: Product: Microsoft Office Professional Edition 2003 -- Error 1706. Setup cannot find the required files. Check your connection to the network, or CD-ROM drive. For other potential solutions to this problem, see C:\Program Files (x86)\Microsoft Office\OFFICE11\1033\SETUP.CHM. Error: (03/11/2014 06:57:58 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Sonos.exe, Version: 6.0.0.34230, Zeitstempel: 0x453d4bd8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb1116 Ausnahmecode: 0xc0020001 Fehleroffset: 0x0000c41f ID des fehlerhaften Prozesses: 0x1284 Startzeit der fehlerhaften Anwendung: 0xSonos.exe0 Pfad der fehlerhaften Anwendung: Sonos.exe1 Pfad des fehlerhaften Moduls: Sonos.exe2 Berichtskennung: Sonos.exe3 Error: (03/11/2014 05:33:58 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Sonos.exe, Version: 6.0.0.34230, Zeitstempel: 0x453d4bd8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18229, Zeitstempel: 0x51fb1116 Ausnahmecode: 0xc0020001 Fehleroffset: 0x0000c41f ID des fehlerhaften Prozesses: 0x1150 Startzeit der fehlerhaften Anwendung: 0xSonos.exe0 Pfad der fehlerhaften Anwendung: Sonos.exe1 Pfad des fehlerhaften Moduls: Sonos.exe2 Berichtskennung: Sonos.exe3 Error: (03/10/2014 08:41:45 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: ipoint.exe, Version: 8.20.468.0, Zeitstempel: 0x4e320bb3 Name des fehlerhaften Moduls: ipoint.exe, Version: 8.20.468.0, Zeitstempel: 0x4e320bb3 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000e29b6 ID des fehlerhaften Prozesses: 0x824 Startzeit der fehlerhaften Anwendung: 0xipoint.exe0 Pfad der fehlerhaften Anwendung: ipoint.exe1 Pfad des fehlerhaften Moduls: ipoint.exe2 Berichtskennung: ipoint.exe3 Error: (03/09/2014 08:20:17 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: TrustedInstaller.exe, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7989b Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec4aa8e Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000005324e ID des fehlerhaften Prozesses: 0x1138 Startzeit der fehlerhaften Anwendung: 0xTrustedInstaller.exe0 Pfad der fehlerhaften Anwendung: TrustedInstaller.exe1 Pfad des fehlerhaften Moduls: TrustedInstaller.exe2 Berichtskennung: TrustedInstaller.exe3 Error: (03/09/2014 06:59:37 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 27.0.1.5156, Zeitstempel: 0x52fc0fcf Name des fehlerhaften Moduls: NPSWF32_11_7_700_224.dll, Version: 11.7.700.224, Zeitstempel: 0x51a6761e Ausnahmecode: 0x80000003 Fehleroffset: 0x0034599d ID des fehlerhaften Prozesses: 0x17bc Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0 Pfad der fehlerhaften Anwendung: plugin-container.exe1 Pfad des fehlerhaften Moduls: plugin-container.exe2 Berichtskennung: plugin-container.exe3 Error: (03/08/2014 07:45:56 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: rundll32.exe_srrstr.dll, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc9e0 Name des fehlerhaften Moduls: msxml3.dll, Version: 8.110.7601.17988, Zeitstempel: 0x50920c3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001c6f ID des fehlerhaften Prozesses: 0xc64 Startzeit der fehlerhaften Anwendung: 0xrundll32.exe_srrstr.dll0 Pfad der fehlerhaften Anwendung: rundll32.exe_srrstr.dll1 Pfad des fehlerhaften Moduls: rundll32.exe_srrstr.dll2 Berichtskennung: rundll32.exe_srrstr.dll3 Error: (02/28/2014 07:55:40 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 27.0.1.5156, Zeitstempel: 0x52fc0faa Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x2826f6a8 ID des fehlerhaften Prozesses: 0x17a0 Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0 Pfad der fehlerhaften Anwendung: firefox.exe1 Pfad des fehlerhaften Moduls: firefox.exe2 Berichtskennung: firefox.exe3 Error: (02/28/2014 07:38:33 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: iTunes.exe, Version: 11.1.3.8, Zeitstempel: 0x5274a87d Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0x14c0 Startzeit der fehlerhaften Anwendung: 0xiTunes.exe0 Pfad der fehlerhaften Anwendung: iTunes.exe1 Pfad des fehlerhaften Moduls: iTunes.exe2 Berichtskennung: iTunes.exe3 Error: (02/18/2014 11:46:27 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Sonos.exe, Version: 6.0.0.34230, Zeitstempel: 0x453d4bd8 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18015, Zeitstempel: 0x50b83c8a Ausnahmecode: 0xc0020001 Fehleroffset: 0x0000c41f ID des fehlerhaften Prozesses: 0x714 Startzeit der fehlerhaften Anwendung: 0xSonos.exe0 Pfad der fehlerhaften Anwendung: Sonos.exe1 Pfad des fehlerhaften Moduls: Sonos.exe2 Berichtskennung: Sonos.exe3 System errors: ============= Error: (03/16/2014 07:21:57 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (03/16/2014 07:21:57 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (03/16/2014 00:51:55 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (03/16/2014 00:51:55 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (03/16/2014 00:48:33 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (03/16/2014 00:48:33 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (03/16/2014 09:57:52 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (03/16/2014 09:57:52 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (03/16/2014 09:44:07 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (03/16/2014 09:44:07 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Microsoft Office Sessions: ========================= Error: (03/12/2014 10:03:10 PM) (Source: MsiInstaller)(User: test-PC) Description: Product: Microsoft Office Professional Edition 2003 -- Error 1706. Setup cannot find the required files. Check your connection to the network, or CD-ROM drive. For other potential solutions to this problem, see C:\Program Files (x86)\Microsoft Office\OFFICE11\1033\SETUP.CHM.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/11/2014 06:57:58 PM) (Source: Application Error)(User: ) Description: Sonos.exe6.0.0.34230453d4bd8KERNELBASE.dll6.1.7601.1822951fb1116c00200010000c41f128401cf3d4b6ba9285fC:\Program Files (x86)\Sonos\Sonos.exeC:\Windows\syswow64\KERNELBASE.dllad7e3183-a946-11e3-9c49-14dae9ed2dd9 Error: (03/11/2014 05:33:58 PM) (Source: Application Error)(User: ) Description: Sonos.exe6.0.0.34230453d4bd8KERNELBASE.dll6.1.7601.1822951fb1116c00200010000c41f115001cf3d44df7cbbfaC:\Program Files (x86)\Sonos\Sonos.exeC:\Windows\syswow64\KERNELBASE.dllf1737000-a93a-11e3-9c49-14dae9ed2dd9 Error: (03/10/2014 08:41:45 AM) (Source: Application Error)(User: ) Description: ipoint.exe8.20.468.04e320bb3ipoint.exe8.20.468.04e320bb3c000000500000000000e29b682401cf3c342d3f2491C:\Program Files\Microsoft IntelliPoint\ipoint.exeC:\Program Files\Microsoft IntelliPoint\ipoint.exe6db36ae3-a827-11e3-975d-14dae9ed2dd9 Error: (03/09/2014 08:20:17 PM) (Source: Application Error)(User: ) Description: TrustedInstaller.exe6.1.7601.175144ce7989bntdll.dll6.1.7601.177254ec4aa8ec0000005000000000005324e113801cf3bbd31e3c99fC:\Windows\servicing\TrustedInstaller.exeC:\Windows\SYSTEM32\ntdll.dlld8808ec0-a7bf-11e3-aa92-14dae9ed2dd9 Error: (03/09/2014 06:59:37 PM) (Source: Application Error)(User: ) Description: plugin-container.exe27.0.1.515652fc0fcfNPSWF32_11_7_700_224.dll11.7.700.22451a6761e800000030034599d17bc01cf3bc1560ab51dC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll93defc7a-a7b4-11e3-aa92-14dae9ed2dd9 Error: (03/08/2014 07:45:56 PM) (Source: Application Error)(User: ) Description: rundll32.exe_srrstr.dll6.1.7600.163854a5bc9e0msxml3.dll8.110.7601.1798850920c3dc00000050000000000001c6fc6401cf3afea1befbadC:\Windows\system32\rundll32.exeC:\Windows\System32\msxml3.dlle1a6d0cf-a6f1-11e3-bcca-14dae9ed2dd9 Error: (02/28/2014 07:55:40 PM) (Source: Application Error)(User: ) Description: firefox.exe27.0.1.515652fc0faaunknown0.0.0.000000000c00000052826f6a817a001cf34b56eebcb03C:\Program Files (x86)\Mozilla Firefox\firefox.exeunknowneaa996b1-a0a9-11e3-8231-14dae9ed2dd9 Error: (02/28/2014 07:38:33 PM) (Source: Application Error)(User: ) Description: iTunes.exe11.1.3.85274a87dunknown0.0.0.000000000c00000050000000014c001cf34b43d4f8788C:\Program Files (x86)\iTunes\iTunes.exeunknown86a04d3d-a0a7-11e3-8231-14dae9ed2dd9 Error: (02/18/2014 11:46:27 PM) (Source: Application Error)(User: ) Description: Sonos.exe6.0.0.34230453d4bd8KERNELBASE.dll6.1.7601.1801550b83c8ac00200010000c41f71401cf2cecb2534234C:\Program Files (x86)\Sonos\Sonos.exeC:\Windows\syswow64\KERNELBASE.dll7fc99c5a-98ee-11e3-9b18-14dae9ed2dd9 ==================== Memory info =========================== Percentage of memory in use: 24% Total physical RAM: 8190.05 MB Available physical RAM: 6223.61 MB Total Pagefile: 16378.29 MB Available Pagefile: 14286.14 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:14.29 GB) NTFS Drive e: (Volume) (Fixed) (Total:1863.01 GB) (Free:1339.58 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 65E74515) Partition 1: (Not Active) - (Size=-198626508800) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: DEFA1285) Partition: GPT Partition Type. == End Of Log == Viele Grüße Felix |
Themen zu Windows 7 64 Bit Trojaner! Problem beim Starten von: wgsdgsdgdsgsd.exe Das angegebene Modul wurde nicht gefunden. |
64 bit, bonjour, combofix, computer, continue, downloader, dvdvideosoft ltd., exploit.drop.gsa, firefox, flash player, homepage, launch, mp3, officejet, problem, pup.optional.opencandy, required, safer networking, scan, software, starten, startproblem, system, tracker, trojan.delf, trojan.ransom.gen, trojaner, trojaner board, updates, windows, windows 7 |