Hallo
das ging schnell-muss das nochmals laufen lassen...hab sonst nichts mehr vor...bitte ein wenig Geduld..
FRST Logfile:
FRST Logfile:
Code:
Alles auswählen Aufklappen ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by PC (administrator) on KISTLER on 28-03-2014 21:30:42
Running from C:\Users\PC\Desktop
Windows 8 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool
Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials
==================== Processes (Whitelisted) =================
(IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe
(Apache Software Foundation) C:\Program Files (x86)\xampp\apache\bin\apache.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe
(Broadcom Corp.) C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
() C:\Program Files (x86)\xampp\FileZillaFTP\FileZillaServer.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(Apache Software Foundation) C:\Program Files (x86)\xampp\apache\bin\apache.exe
() C:\Program Files\MySQL\MySQL Server 5.6\bin\mysqld.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Tenable Network Security, Inc) C:\Program Files (x86)\Tenable\Nessus\nessus-service.exe
(Tenable Network Security, Inc) C:\Program Files (x86)\Tenable\Nessus\nessusd.exe
(VMLite, Inc.) C:\Program Files\VMLite\VMLite Workstation\VMLiteService.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe
(Intel Corporation) C:\Windows\system32\igfxext.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
() C:\Program Files (x86)\Opera\20.0.1387.82_0\opera_crashreporter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe
(Dritek System Inc.) C:\Program Files (x86)\RadioController\RfBtnHelper.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\20.0.1387.82_0\opera.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2873744 2012-11-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [3933496 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [RadioController] - C:\Program Files (x86)\RadioController\RfBtnHelper.exe [111216 2013-05-21] (Dritek System Inc.)
HKLM-x32\...\Run: [SSDMonitor] - C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe [105120 2012-08-21] (PC Tools)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications))
HKU\S-1-5-21-3751542578-3293368922-2753858418-1001\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-11-30] (Google Inc.)
HKU\S-1-5-21-3751542578-3293368922-2753858418-1001\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3751542578-3293368922-2753858418-1001\...\RunOnce: [Application Restart #1] - C:\Users\PC\AppData\Local\Pokki\Engine\pokki.exe --disable-internal-flash --noerrdialogs --no-message-box --disable-extensions --disable-web-security --disable-web-resources --disable-client-side-phishing-detection --enable-file-cookies --disable-sync --disable-breakpad --disable-bundled-ppapi-flash --disable-sync-tabs --disable-speech-input --disable-custom-jumplist --process-per-tab --debug-devtools-frontend="C:\Users\PC\AppData\Local\Pokki\Engine\inspector" --no-first-run --lang=en-US --disable-component-update --disable-prompt-on-repost --no-startup-window --disable-translate --disable-logging --disable-desktop-notifications --disable-gpu-process-prelaunch --flag-switches-begin --flag-switches-end --restore-last-session
HKU\S-1-5-21-3751542578-3293368922-2753858418-1001\...\MountPoints2: E - "E:\LaunchU3.exe" -a
HKU\S-1-5-21-3751542578-3293368922-2753858418-1001\...\MountPoints2: {27f172d8-ac2b-11e3-bed4-ff8fd3873c86} - "G:\LaunchU3.exe" -a
HKU\S-1-5-21-3751542578-3293368922-2753858418-1001\...\MountPoints2: {70ff6613-a514-11e3-becf-24fd52199e86} - "E:\LaunchU3.exe" -a
HKU\S-1-5-21-3751542578-3293368922-2753858418-1001\...\MountPoints2: {8f908f8c-5399-11e3-beac-20898483e6bc} - "E:\LaunchU3.exe" -a
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login.
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://ch.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM - {AC251AE8-941D-4772-8042-2B930CB6ECE3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAPBJS
SearchScopes: HKLM-x32 - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://ch.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 - {AC251AE8-941D-4772-8042-2B930CB6ECE3} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAPBJS
SearchScopes: HKCU - URL hxxp://www.trovigo.com/Results.aspx?gd=&ctid=CT3324416&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=5&UP=SP9F6479D8-98BB-4B36-975E-B0811D346762&q={searchTerms}&SSPV=
SearchScopes: HKCU - SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
SearchScopes: HKCU - {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://ch.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKCU - {AC251AE8-941D-4772-8042-2B930CB6ECE3} URL =
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_64.dll (IvoSoft)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: ClassicIE9BHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIE9DLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - No Name - {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
Tcpip\Parameters: [DhcpNameServer] 62.2.24.162 62.2.17.61 62.2.24.158 62.2.17.60
Tcpip\..\Interfaces\{52D9687F-A6D2-4457-A7C6-70F448192C7B}: [NameServer]8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
Tcpip\..\Interfaces\{9B073C18-34FF-4FB1-B731-7BB2C6F0BD57}: [NameServer]8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
Chrome:
=======
CHR Extension: (Kaspersky Protection) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blbkdnmdcafmfhinpmnlhhddbepgkeaa [2014-03-27]
CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-10-31]
CHR Extension: (Modul zum Sperren von gefährlichen Webseiten) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2013-10-31]
CHR Extension: (Virtual Keyboard) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2013-10-31]
CHR Extension: (Google Wallet) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-31]
CHR HKLM-x32\...\Chrome\Extension: [blbkdnmdcafmfhinpmnlhhddbepgkeaa] - https://chrome.google.com/webstore/detail/blbkdnmdcafmfhinpmnlhhddbepgkeaa [2013-10-31]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\urladvisor.crx [2013-06-28]
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\content_blocker_chrome.crx [2013-06-28]
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\virtkbd.crx [2014-03-21]
==================== Services (Whitelisted) =================
R2 Apache2; C:\Program Files (x86)\xampp\apache\bin\apache.exe [20537 2005-12-01] (Apache Software Foundation)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations)
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe [214512 2013-10-01] (Kaspersky Lab ZAO)
R2 BrcmCardReader; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [176640 2012-08-21] (Broadcom Corp.)
R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2013-06-29] (IvoSoft)
S3 DeviceFastLaneService; C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe [469648 2012-11-16] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [662088 2013-03-15] (Acer Incorporated)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [100752 2012-11-20] (ELAN Microelectronics Corp.)
R2 FileZilla Server; C:\Program Files (x86)\xampp\FileZillaFTP\FileZillaServer.exe [529408 2005-11-13] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-03-05] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [857912 2014-03-05] (Malwarebytes Corporation)
R2 MySQL56; C:\ProgramData\MySQL\MySQL Server 5.6\my.ini [14244 2013-10-09] ()
R2 PCToolsSSDMonitorSvc; C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe [794272 2012-08-21] (PC Tools)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
S2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [96880 2013-05-21] (Dritek System INC.)
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 Tenable Nessus; C:\Program Files (x86)\Tenable\Nessus\nessus-service.exe [10240 2010-02-17] (Tenable Network Security, Inc)
R2 VMLiteService; C:\Program Files\VMLite\VMLite Workstation\VMLiteService.exe [426600 2010-08-21] (VMLite, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-10-25] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-03-06] (Disc Soft Ltd)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-11-09] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29792 2013-12-19] (Kaspersky Lab)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-03-21] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2014-03-21] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-10-01] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2014-02-17] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-01] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\system32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [65120 2014-03-21] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178272 2013-12-19] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-03-05] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-03-28] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63192 2014-03-05] (Malwarebytes Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2013-05-21] (Dritek System Inc.)
R1 VBoxDrv; C:\Windows\System32\drivers\VBoxDrv.sys [204328 2010-08-11] (VMLite, Inc.)
R3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [146216 2010-08-11] (VMLite, Inc.)
R3 VBoxNetFlt; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys [165800 2010-08-11] (VMLite, Inc.)
R3 vmkbd2; C:\Windows\system32\drivers\VMkbd.sys [33360 2013-02-26] (VMware, Inc.)
R1 vmlitedrv; C:\Windows\System32\drivers\vmlitedrv.sys [14952 2010-08-03] (VMLite, Inc.)
R3 vmlitestor; C:\Windows\system32\DRIVERS\vmlitestor.sys [177768 2010-08-11] (VMLite, Inc.)
S3 VMLiteUSB; C:\Windows\System32\Drivers\VMLiteUSB.sys [150120 2010-08-11] (VMLite, Inc.)
R1 VMLiteUSBMon; C:\Windows\System32\drivers\vmliteusbmon.sys [135272 2010-08-18] (VMLite, Inc.)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [70296 2012-10-24] (VMware, Inc.)
S3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)
S3 cleanhlp; \??\C:\Program Files (x86)\Emsisoft Anti-Malware\cleanhlp64.sys [X]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-28 21:30 - 2014-03-28 21:30 - 00022838 _____ () C:\Users\PC\Desktop\FRST.txt
2014-03-28 20:55 - 2014-03-28 20:56 - 00054887 _____ () C:\Users\PC\Desktop\Addition.txt
2014-03-28 20:24 - 2014-03-28 20:20 - 00050477 _____ () C:\Users\PC\Desktop\Defogger (1).exe
2014-03-28 20:20 - 2014-03-28 20:20 - 00050477 _____ () C:\Users\PC\Downloads\Defogger.exe
2014-03-28 20:20 - 2014-03-28 20:20 - 00050477 _____ () C:\Users\PC\Downloads\Defogger (1).exe
2014-03-28 20:20 - 2014-03-28 20:20 - 00000536 _____ () C:\Users\PC\Downloads\defogger_disable.log
2014-03-28 20:20 - 2014-03-28 20:20 - 00000338 _____ () C:\Users\PC\Downloads\defogger_enable.log
2014-03-28 19:49 - 2014-03-26 15:58 - 01950720 _____ () C:\Users\PC\Desktop\adwcleaner_3.022 (3).exe
2014-03-28 19:21 - 2014-03-28 19:53 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\36710840.sys
2014-03-28 19:20 - 2014-03-28 19:20 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\15E8686E.sys
2014-03-28 19:13 - 2014-03-28 19:07 - 02157056 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2014-03-28 19:07 - 2014-03-28 20:56 - 00000000 ____D () C:\FRST
2014-03-28 19:07 - 2014-03-28 19:07 - 02157056 _____ (Farbar) C:\Users\PC\Downloads\FRST64.exe
2014-03-28 19:00 - 2014-03-28 19:00 - 00058082 _____ () C:\Windows\SysWOW64\AppLog.log
2014-03-28 16:24 - 2014-03-28 16:24 - 00000968 _____ () C:\Windows\PFRO.log
2014-03-28 11:34 - 2014-03-28 11:34 - 00000017 _____ () C:\Users\PC\AppData\Local\resmon.resmoncfg
2014-03-28 10:58 - 2014-03-28 10:58 - 00002120 _____ () C:\Users\PC\Documents\bookmark.htm
2014-03-27 20:35 - 2014-03-28 18:52 - 00294481 _____ () C:\Windows\WindowsUpdate.log
2014-03-27 20:35 - 2014-03-27 20:35 - 76353536 _____ () C:\Windows\system32\config\software.rrr
2014-03-27 20:35 - 2014-03-27 20:35 - 03690496 _____ () C:\Users\PC\s-1-5-21-3751542578-3293368922-2753858418-1001.rrr
2014-03-27 20:35 - 2014-03-27 20:35 - 00221184 _____ () C:\Windows\system32\config\default.rrr
2014-03-27 20:35 - 2014-03-27 20:35 - 00008192 _____ () C:\Users\Gast\s-1-5-21-3751542578-3293368922-2753858418-501.rrr
2014-03-27 20:05 - 2014-03-27 20:05 - 00000000 ____D () C:\Windows\ERUNT
2014-03-27 20:02 - 2014-03-27 20:02 - 01037734 _____ (Thisisu) C:\Users\PC\Downloads\JRT_6.1.2.exe
2014-03-27 20:02 - 2014-03-23 22:41 - 01038974 _____ (Thisisu) C:\Users\PC\Desktop\JRT_NEW.exe
2014-03-27 19:51 - 2014-03-27 19:51 - 00001145 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-03-27 19:50 - 2014-03-27 19:51 - 34734328 _____ (Opera Software ASA) C:\Users\PC\Downloads\Opera_20.0.1387.82_Setup.exe
2014-03-27 19:30 - 2014-03-27 20:27 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys
2014-03-27 14:03 - 2014-03-27 14:03 - 00000000 ____D () C:\Users\PC\Downloads\SpybotPortable
2014-03-27 14:02 - 2014-03-27 14:03 - 57330680 _____ (PortableApps.com) C:\Users\PC\Downloads\SpybotPortable_2.2.paf.exe
2014-03-27 09:45 - 2014-03-27 09:45 - 00000000 ____D () C:\Program Files (x86)\ENIGMA
2014-03-27 09:45 - 1997-01-16 00:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\ST5UNST.EXE
2014-03-27 09:43 - 2014-03-27 09:44 - 00005685 _____ () C:\ST5UNST.LOG
2014-03-27 09:43 - 2005-05-13 17:18 - 00042914 _____ () C:\Enigma.hlp
2014-03-27 09:43 - 2005-05-13 17:16 - 01893888 _____ () C:\ENIGMA.exe
2014-03-27 09:43 - 2005-05-13 16:48 - 00003935 _____ () C:\Readme.txt
2014-03-27 09:43 - 2000-05-22 00:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX
2014-03-27 09:43 - 1998-06-05 23:32 - 01355776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVBVM50.dll
2014-03-27 09:43 - 1997-01-16 00:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB5StKit.dll
2014-03-27 08:52 - 2014-03-27 11:04 - 00000000 ____D () C:\Program Files (x86)\CrypTool
2014-03-27 08:52 - 2014-03-27 08:52 - 00000000 ____D () C:\Users\PC\AppData\Roaming\CrypTool
2014-03-27 08:50 - 2014-03-27 08:51 - 67554681 _____ () C:\Users\PC\Downloads\SetupCrypTool_1_4_31_Beta6b_r3670_VS2008_de.exe
2014-03-26 19:24 - 2014-03-26 19:24 - 00316092 _____ () C:\Users\PC\Downloads\WG Physik.zip
2014-03-26 15:57 - 2014-03-26 15:58 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022 (3).exe
2014-03-26 15:49 - 2014-03-26 15:49 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022 (2).exe
2014-03-26 15:12 - 2014-03-26 15:33 - 00000000 ____D () C:\Users\PC\AppData\Roaming\Nico Mak Computing
2014-03-26 15:12 - 2014-03-26 15:12 - 04892480 _____ (WinZip International LLC ) C:\Users\PC\Downloads\wzmp_8 (1).exe
2014-03-26 15:10 - 2014-03-26 15:10 - 00001134 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-03-26 15:10 - 2014-03-26 15:10 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware
2014-03-26 15:10 - 2014-03-05 09:26 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-03-26 15:10 - 2014-03-05 09:26 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-03-26 15:10 - 2014-03-05 09:26 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-03-26 15:09 - 2014-03-26 15:09 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000 (3).exe
2014-03-26 15:09 - 2014-03-26 15:09 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000 (2).exe
2014-03-26 13:47 - 2014-03-26 13:47 - 00000000 _____ () C:\autoexec.bat
2014-03-26 13:46 - 2014-03-26 14:33 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-03-26 13:46 - 2014-03-26 13:46 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-03-26 13:46 - 2012-06-22 11:01 - 00022704 ____N () C:\Windows\system32\Drivers\EsgScanner.sys
2014-03-26 13:32 - 2014-03-26 13:32 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022 (1).exe
2014-03-26 12:58 - 2014-03-28 20:22 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-03-26 12:58 - 2014-03-26 12:58 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000.exe
2014-03-26 12:58 - 2014-03-26 12:58 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000 (1).exe
2014-03-25 20:14 - 2014-03-25 20:14 - 00000500 _____ () C:\EamClean.log
2014-03-25 17:02 - 2014-03-26 12:36 - 00000000 ____D () C:\Users\PC\Documents\Anti-Malware
2014-03-25 17:02 - 2014-03-26 12:36 - 00000000 ____D () C:\Program Files (x86)\Emsisoft Anti-Malware
2014-03-25 15:55 - 2014-03-25 15:55 - 00000000 ____D () C:\Users\PC\AppData\Local\Norman Malware Cleaner
2014-03-25 15:50 - 2014-03-25 15:52 - 312761032 _____ (Norman Shark AS) C:\Users\PC\Downloads\Norman_Malware208_Cleaner.exe
2014-03-24 15:39 - 2014-03-24 15:39 - 00000000 ____D () C:\Users\Public\Documents\sun
2014-03-24 15:22 - 2014-03-24 15:22 - 04892480 _____ (WinZip International LLC ) C:\Users\PC\Downloads\wzmp_8.exe
2014-03-24 11:18 - 2014-03-24 11:18 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_deu.exe
2014-03-24 11:18 - 2014-03-24 11:18 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_deu (1).exe
2014-03-24 10:55 - 2014-03-28 19:54 - 00000000 ____D () C:\AdwCleaner
2014-03-24 10:55 - 2014-03-24 10:55 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022.exe
2014-03-24 09:35 - 2014-03-24 09:35 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_enu (1).exe
2014-03-22 18:16 - 2014-03-22 18:16 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_enu.exe
2014-03-22 18:16 - 2014-03-22 18:16 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-03-22 17:25 - 2014-03-26 12:38 - 00000000 ____D () C:\Program Files (x86)\Advanced Disk Recovery
2014-03-21 23:58 - 2014-03-21 23:58 - 00000000 ____D () C:\Users\PC\AppData\Local\PDFCreator
2014-03-21 20:18 - 2014-03-21 20:17 - 00625760 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-03-21 20:18 - 2014-03-21 20:17 - 00115296 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-03-21 20:18 - 2014-03-21 20:17 - 00065120 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klwfp.sys
2014-03-21 20:12 - 2014-03-21 20:12 - 01330072 _____ (CodecPerformer) C:\Users\PC\Downloads\CodecPerformerSetup (1).exe
2014-03-21 20:11 - 2014-03-21 20:11 - 01330072 _____ (CodecPerformer) C:\Users\PC\Downloads\CodecPerformerSetup.exe
2014-03-21 13:42 - 2014-03-21 19:53 - 00000000 ___DC () C:\Users\PC\AppData\Local\MigWiz
2014-03-21 11:23 - 2014-03-21 11:28 - 00000000 ____D () C:\Neuer Ordner (2)
2014-03-21 11:08 - 2014-03-27 20:35 - 00000000 ____D () C:\Users\Gast
2014-03-21 11:08 - 2014-03-21 11:08 - 00000000 ____D () C:\Program Files\Wireshark
2014-03-21 11:07 - 2014-03-21 11:07 - 00001112 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2014-03-21 10:44 - 2014-03-21 10:44 - 00450986 _____ () C:\Users\PC\Downloads\Zeugnis.zip
2014-03-21 10:41 - 2014-03-21 10:41 - 00254976 _____ () C:\Users\PC\Downloads\M124 Teil C HandOut (1).ppt
2014-03-21 10:41 - 2014-03-21 10:41 - 00236032 _____ () C:\Users\PC\Downloads\M124 Teil C HandOut.ppt
2014-03-21 10:38 - 2014-03-21 10:38 - 00410898 _____ () C:\Users\PC\Downloads\TB124_pdfs_11_15.rar
2014-03-20 11:27 - 2014-03-20 11:27 - 00695648 _____ () C:\Users\PC\Downloads\lmc-1.2.35-win32-Downloader (2).exe
2014-03-20 11:27 - 2014-03-20 11:27 - 00695648 _____ () C:\Users\PC\Downloads\lmc-1.2.35-win32-Downloader (1).exe
2014-03-20 11:25 - 2014-03-20 11:25 - 00695648 _____ () C:\Users\PC\Downloads\lmc-1.2.35-win32-Downloader.exe
2014-03-19 11:43 - 2014-03-19 11:43 - 01955184 _____ (Acro Software Inc. ) C:\Users\PC\Downloads\CuteWriter.exe
2014-03-19 11:43 - 2014-03-19 11:43 - 01955184 _____ (Acro Software Inc. ) C:\Users\PC\Downloads\CuteWriter (1).exe
2014-03-19 11:33 - 2014-03-19 11:33 - 00001017 _____ () C:\Users\PC\Desktop\PDF Architect.lnk
2014-03-19 11:32 - 2014-03-19 11:32 - 00000852 _____ () C:\Users\Public\Desktop\PDFCreator.lnk
2014-03-19 11:32 - 2014-03-19 11:32 - 00000000 ____D () C:\Users\PC\Documents\PDF Architect Files
2014-03-19 11:32 - 2014-03-19 11:32 - 00000000 ____D () C:\Program Files\PDFCreator
2014-03-19 11:32 - 2014-03-19 11:32 - 00000000 ____D () C:\Program Files (x86)\PDF Architect
2014-03-19 11:32 - 2014-01-31 12:22 - 00110776 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll
2014-03-19 11:31 - 2014-03-19 11:31 - 00000000 ____D () C:\Users\PC\AppData\Roaming\PCSpeed
2014-03-19 11:31 - 2014-03-19 11:31 - 00000000 ____D () C:\ProgramData\PCSpeed
2014-03-19 11:20 - 2014-03-19 11:20 - 00450404 _____ () C:\Users\PC\Downloads\Scann (1).zip
2014-03-18 17:48 - 2014-03-18 17:49 - 06294991 _____ () C:\Users\PC\Downloads\News from France (1).zip
2014-03-18 17:48 - 2014-03-18 17:48 - 06294991 _____ () C:\Users\PC\Downloads\News from France.zip
2014-03-17 16:49 - 2014-03-17 16:49 - 00162220 _____ () C:\Users\PC\Documents\loos.rns
2014-03-15 22:12 - 2013-10-25 08:34 - 00035856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-03-15 22:12 - 2013-10-24 23:34 - 00248240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-03-15 20:19 - 2014-01-31 01:48 - 01339392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-03-15 20:19 - 2014-01-31 01:06 - 01628160 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-03-14 21:37 - 2014-02-23 09:13 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-03-14 21:37 - 2014-02-23 09:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-03-14 21:37 - 2014-02-23 09:13 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2014-03-14 21:37 - 2014-02-23 09:13 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2014-03-14 21:37 - 2014-02-23 09:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-14 21:37 - 2014-02-23 09:12 - 19273216 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-14 21:37 - 2014-02-23 09:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-03-14 21:37 - 2014-02-23 09:12 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 03960320 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-03-14 21:37 - 2014-02-23 09:11 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-03-14 21:37 - 2014-02-23 07:54 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-14 21:37 - 2014-02-23 07:54 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-14 21:37 - 2014-02-23 07:54 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 14358016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-14 21:37 - 2014-02-23 07:53 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-14 21:37 - 2014-02-23 07:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-14 21:37 - 2014-02-23 07:31 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-14 21:37 - 2014-02-23 05:06 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2014-03-14 13:56 - 2014-03-14 13:57 - 107806720 _____ () C:\Users\PC\Downloads\ipfire-2.13.i586-full-core75 (1).iso
2014-03-14 13:44 - 2014-03-27 20:56 - 00000000 ____D () C:\Users\PC\Desktop\TB124XP
2014-03-14 13:41 - 2014-03-21 11:34 - 00453056 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-14 13:21 - 2014-03-04 23:52 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-14 13:21 - 2014-03-04 23:52 - 00078304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-14 12:26 - 2014-02-08 05:34 - 04036608 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-03-14 12:25 - 2013-12-07 07:36 - 19751936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-03-14 12:25 - 2013-12-07 06:15 - 17560576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-03-14 12:24 - 2014-02-06 00:41 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-03-14 12:24 - 2014-02-06 00:37 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-03-14 12:23 - 2014-03-14 12:23 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-03-14 12:23 - 2014-03-14 12:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-03-14 11:50 - 2014-03-14 11:50 - 107806720 _____ () C:\Users\PC\Downloads\ipfire-2.13.i586-full-core75.iso
2014-03-14 10:51 - 2014-03-14 10:51 - 00376953 _____ () C:\Users\PC\Downloads\TB124_pdfs_06_10 (1).rar
2014-03-14 10:41 - 2014-03-14 10:41 - 00376953 _____ () C:\Users\PC\Downloads\TB124_pdfs_06_10.rar
2014-03-14 08:52 - 2014-03-14 08:52 - 00450404 _____ () C:\Users\PC\Downloads\Scann.zip
2014-03-13 11:54 - 2014-03-13 11:54 - 00000000 ____D () C:\unzipped
2014-03-08 10:52 - 2014-03-08 10:54 - 22892386 _____ () C:\Users\PC\Downloads\torbrowser-install-3.5.2.1_en-US.exe
2014-03-07 11:30 - 2014-03-07 11:30 - 00468685 _____ () C:\Users\PC\Downloads\TB124_pdfs_00_05.rar
2014-03-06 14:10 - 2014-03-24 16:41 - 00000000 ____D () C:\Program Files (x86)\South Park The Stick of Truth
2014-03-06 14:08 - 2014-03-06 14:08 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-03-06 14:08 - 2014-03-06 14:08 - 00001974 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-03-06 14:08 - 2014-03-06 14:08 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-03-06 14:07 - 2014-03-06 14:09 - 00000000 ____D () C:\Users\PC\AppData\Roaming\DAEMON Tools Lite
2014-03-06 14:05 - 2014-03-06 14:09 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-03-04 19:46 - 2014-03-04 19:46 - 00000000 ____D () C:\Users\PC\Desktop\MP_2.Sem
2014-03-04 19:45 - 2014-03-04 19:45 - 00434129 _____ () C:\Users\PC\Downloads\MP_2.Sem.rar
2014-02-28 12:59 - 2014-02-28 12:59 - 04845384 _____ (Piriform Ltd) C:\Users\PC\Downloads\spsetup125.exe
2014-02-28 12:59 - 2014-02-28 12:59 - 00000808 _____ () C:\Users\Public\Desktop\Speccy.lnk
2014-02-28 12:59 - 2014-02-28 12:59 - 00000000 ____D () C:\Program Files\Speccy
2014-02-28 11:46 - 2013-12-13 14:51 - 00993304 _____ (NCH Software) C:\Users\PC\Desktop\wpsetup - Kopie.exe
2014-02-28 11:46 - 2013-11-22 12:00 - 27973080 _____ (Wireshark development team) C:\Users\PC\Desktop\Wireshark-win64-1.10.3 - Kopie.exe
2014-02-28 11:46 - 2013-11-09 18:09 - 04208536 _____ (2013 Gaijin Entertainment Corporation ) C:\Users\PC\Desktop\wt_launcher_1.0.1.278 (1) - Kopie.exe
2014-02-28 11:46 - 2013-11-09 18:02 - 04208536 _____ (2013 Gaijin Entertainment Corporation ) C:\Users\PC\Desktop\wt_launcher_1.0.1.278 - Kopie.exe
2014-02-28 11:46 - 2013-10-05 07:37 - 02074056 _____ () C:\Users\PC\Desktop\winrar-x64-500d - Kopie.exe
2014-02-28 11:45 - 2014-02-16 12:36 - 00047506 _____ () C:\Users\PC\Desktop\SYSU-324-013 (3) - Kopie.ics
2014-02-28 11:45 - 2014-02-16 12:35 - 00047636 _____ () C:\Users\PC\Desktop\Vor lauter... (1) - Kopie.zip
2014-02-28 11:45 - 2014-02-13 11:51 - 00047636 _____ () C:\Users\PC\Desktop\Vor lauter... - Kopie.zip
2014-02-28 11:45 - 2014-02-13 11:50 - 00047506 _____ () C:\Users\PC\Desktop\SYSU-324-013 (2) - Kopie.ics
2014-02-28 11:45 - 2014-02-13 11:50 - 00047506 _____ () C:\Users\PC\Desktop\SYSU-324-013 (1) - Kopie.ics
2014-02-28 11:45 - 2014-02-13 11:43 - 00047506 _____ () C:\Users\PC\Desktop\SYSU-324-013 - Kopie.ics
2014-02-28 11:45 - 2014-01-30 10:49 - 24394803 _____ () C:\Users\PC\Desktop\torbrowser-install-3.5.1_de - Kopie.exe
2014-02-28 11:45 - 2014-01-24 08:43 - 00004080 _____ () C:\Users\PC\Desktop\VirtualHost (2) - Kopie.zip
2014-02-28 11:45 - 2014-01-23 22:02 - 00004080 _____ () C:\Users\PC\Desktop\VirtualHost (1) - Kopie.zip
2014-02-28 11:45 - 2014-01-23 09:39 - 00004080 _____ () C:\Users\PC\Desktop\VirtualHost - Kopie.zip
2014-02-28 11:45 - 2014-01-16 09:20 - 00915128 _____ (Riverbed Technology, Inc.) C:\Users\PC\Desktop\WinPcap_4_1_3 (4) - Kopie.exe
2014-02-28 11:45 - 2014-01-16 09:20 - 00915128 _____ (Riverbed Technology, Inc.) C:\Users\PC\Desktop\WinPcap_4_1_3 (3) - Kopie.exe
2014-02-28 11:45 - 2014-01-16 09:14 - 00915128 _____ (Riverbed Technology, Inc.) C:\Users\PC\Desktop\WinPcap_4_1_3 (2) - Kopie.exe
2014-02-28 11:45 - 2014-01-16 09:14 - 00915128 _____ (Riverbed Technology, Inc.) C:\Users\PC\Desktop\WinPcap_4_1_3 (1) - Kopie.exe
2014-02-28 11:45 - 2014-01-16 09:14 - 00915128 _____ (Riverbed Technology, Inc.) C:\Users\PC\Desktop\WinPcap_4_1_3 - Kopie.exe
2014-02-28 11:45 - 2014-01-15 20:08 - 00209689 _____ () C:\Users\PC\Desktop\WG testmuster (1) - Kopie.zip
2014-02-28 11:45 - 2014-01-15 20:05 - 00209689 _____ () C:\Users\PC\Desktop\WG testmuster - Kopie.zip
2014-02-28 11:45 - 2014-01-04 21:07 - 04538368 _____ () C:\Users\PC\Desktop\SkypeWebPlugin-2.2.12059.16911 (2) - Kopie.msi
2014-02-28 11:45 - 2013-12-15 14:57 - 04538368 _____ () C:\Users\PC\Desktop\SkypeWebPlugin-2.2.12059.16911 (1) - Kopie.msi
2014-02-28 11:45 - 2013-12-15 14:55 - 04538368 _____ () C:\Users\PC\Desktop\SkypeWebPlugin-2.2.12059.16911 - Kopie.msi
2014-02-28 11:45 - 2013-12-14 11:34 - 06951048 _____ (Microsoft Corporation) C:\Users\PC\Desktop\Silverlight - Kopie.exe
2014-02-28 11:45 - 2013-11-30 08:50 - 68253288 _____ (VMLite, Inc.) C:\Users\PC\Desktop\VMLiteWorkstationSetup326 (1) - Kopie.exe
2014-02-28 11:45 - 2013-11-30 08:50 - 68253288 _____ (VMLite, Inc.) C:\Users\PC\Desktop\VMLiteWorkstationSetup326 - Kopie.exe
2014-02-28 11:45 - 2013-11-30 08:47 - 486678800 _____ (Microsoft Corporation) C:\Users\PC\Desktop\WindowsXPMode_de-de - Kopie.exe
2014-02-28 11:45 - 2013-11-25 19:51 - 05831344 _____ (TeamViewer GmbH) C:\Users\PC\Desktop\TeamViewer_Setup_de-eof - Kopie.exe
2014-02-28 11:45 - 2013-11-15 09:32 - 00719360 _____ () C:\Users\PC\Desktop\SDM_DE (1) - Kopie.msi
2014-02-28 11:45 - 2013-11-15 09:32 - 00719360 _____ () C:\Users\PC\Desktop\SDM_DE - Kopie.msi
2014-02-28 11:45 - 2013-10-10 12:08 - 00000288 _____ () C:\Users\PC\Desktop\Tabelle_erstellen - Kopie.rar
2014-02-28 11:44 - 2013-08-21 13:41 - 542212452 _____ () C:\Users\PC\Desktop\ronny - Kopie.zip
2014-02-28 11:43 - 2014-02-12 16:19 - 00733013 _____ () C:\Users\PC\Desktop\Outlook (1) - Kopie.zip
2014-02-28 11:43 - 2014-01-31 18:52 - 01158016 _____ () C:\Users\PC\Desktop\Modul 307_Präsentation - Kopie.pptx
2014-02-28 11:43 - 2014-01-23 22:02 - 00074377 _____ () C:\Users\PC\Desktop\Lösung der 1 Woche - Kopie.zip
2014-02-28 11:43 - 2014-01-23 09:40 - 01256210 _____ () C:\Users\PC\Desktop\Einstellung Netzwerkkarte - Kopie.zip
2014-02-28 11:43 - 2014-01-23 09:39 - 00318486 _____ () C:\Users\PC\Desktop\Installationsdokumentation neu - Kopie.zip
2014-02-28 11:43 - 2014-01-15 20:04 - 00004305 _____ () C:\Users\PC\Desktop\image001 - Kopie.emz
2014-02-28 11:43 - 2013-12-21 13:29 - 107773952 _____ () C:\Users\PC\Desktop\ipfire-2.13.i586-full-core73 (1) - Kopie.iso
2014-02-28 11:43 - 2013-12-21 09:55 - 107773952 _____ () C:\Users\PC\Desktop\ipfire-2.13.i586-full-core73 - Kopie.iso
2014-02-28 11:43 - 2013-12-19 19:58 - 04010464 _____ () C:\Users\PC\Desktop\LOTROProgressive_de_1.368 (1) - Kopie.exe
2014-02-28 11:43 - 2013-12-19 19:58 - 04010464 _____ () C:\Users\PC\Desktop\LOTROProgressive_de_1.368 - Kopie.exe
2014-02-28 11:43 - 2013-12-19 19:54 - 08711768 _____ () C:\Users\PC\Desktop\LOTROProgressive_de_4.28 (2) - Kopie.exe
2014-02-28 11:43 - 2013-12-19 19:53 - 08711768 _____ () C:\Users\PC\Desktop\LOTROProgressive_de_4.28 (1) - Kopie.exe
2014-02-28 11:43 - 2013-12-19 19:50 - 08711768 _____ () C:\Users\PC\Desktop\LOTROProgressive_de_4.28 - Kopie.exe
2014-02-28 11:43 - 2013-12-14 11:34 - 00265752 _____ (Secure By Design Inc.) C:\Users\PC\Desktop\Ninite CutePDF Installer (1) - Kopie.exe
2014-02-28 11:43 - 2013-12-14 10:59 - 00265752 _____ (Secure By Design Inc.) C:\Users\PC\Desktop\Ninite CutePDF Installer - Kopie.exe
2014-02-28 11:43 - 2013-12-13 17:23 - 00031992 _____ () C:\Users\PC\Desktop\einsatzkompetenz08-12sys - Kopie.ashx
2014-02-28 11:43 - 2013-12-13 14:54 - 01628578 _____ () C:\Users\PC\Desktop\Portscanner3.0.0.0 - Kopie.zip
2014-02-28 11:43 - 2013-12-06 09:38 - 05249448 _____ (ParetoLogic Inc.) C:\Users\PC\Desktop\ParetoLogic PC Health Advisor_de - Kopie.exe
2014-02-28 11:43 - 2013-12-05 08:55 - 00013304 _____ () C:\Users\PC\Desktop\Prüfungsresultate - Kopie.xlsx
2014-02-28 11:43 - 2013-11-21 09:07 - 15220658 _____ () C:\Users\PC\Desktop\pdfsam-2.2.2-out - Kopie.zip
2014-02-28 11:43 - 2013-11-18 18:19 - 06640543 _____ () C:\Users\PC\Desktop\mein erstes Programm - Kopie.exe
2014-02-28 11:43 - 2013-11-18 18:16 - 00011944 _____ () C:\Users\PC\Desktop\mein erstes Programm - Kopie.cpp
2014-02-28 11:43 - 2013-11-18 17:52 - 16198832 _____ (Geek Software GmbH ) C:\Users\PC\Desktop\pdf24-creator-6.0.1 - Kopie.exe
2014-02-28 11:43 - 2013-11-16 19:15 - 00258961 _____ () C:\Users\PC\Desktop\Outlook - Kopie.zip
2014-02-28 11:43 - 2013-09-05 09:33 - 00044138 _____ () C:\Users\PC\Desktop\m100 Übungen Kapitel 1 - Kopie.zip
2014-02-28 11:43 - 2013-09-05 09:33 - 00043600 _____ () C:\Users\PC\Desktop\m100 Übungen Kapitel 2 - Kopie.zip
2014-02-28 11:42 - 2014-02-28 10:36 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen (1) - Kopie.rar
2014-02-28 11:42 - 2014-02-28 09:59 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen - Kopie.rar
2014-02-28 11:42 - 2014-02-17 14:22 - 00031992 _____ () C:\Users\PC\Desktop\einsatzkompetenz08-12sys (6) - Kopie.ashx
2014-02-28 11:42 - 2014-02-11 10:43 - 00921000 _____ (Oracle Corporation) C:\Users\PC\Desktop\chromeinstall-7u51 - Kopie.exe
2014-02-28 11:42 - 2014-01-25 19:05 - 00499619 _____ () C:\Users\PC\Desktop\bewerbung - Kopie.zip
2014-02-28 11:42 - 2014-01-23 22:00 - 00831705 _____ () C:\Users\PC\Desktop\DNS-Einrichten mit Yast einrichten - Kopie.zip
2014-02-28 11:42 - 2014-01-10 11:10 - 00031992 _____ () C:\Users\PC\Desktop\einsatzkompetenz08-12sys (5) - Kopie.ashx
2014-02-28 11:42 - 2013-12-13 17:23 - 00031992 _____ () C:\Users\PC\Desktop\einsatzkompetenz08-12sys (4) - Kopie.ashx
2014-02-28 11:42 - 2013-12-13 17:23 - 00031992 _____ () C:\Users\PC\Desktop\einsatzkompetenz08-12sys (3) - Kopie.ashx
2014-02-28 11:42 - 2013-12-13 17:23 - 00031992 _____ () C:\Users\PC\Desktop\einsatzkompetenz08-12sys (2) - Kopie.ashx
2014-02-28 11:42 - 2013-12-13 17:23 - 00031992 _____ () C:\Users\PC\Desktop\einsatzkompetenz08-12sys (1) - Kopie.ashx
2014-02-28 11:42 - 2013-12-05 14:05 - 00123035 _____ () C:\Users\PC\Desktop\Die naechste Pruefung - Kopie.zip
2014-02-28 11:42 - 2013-11-22 19:40 - 03372904 _____ (Best Removal Tool - Uninstall Tool,Uninstall Software and Remove Software with Software Uninstall tool ) C:\Users\PC\Desktop\BestRemovalTool_Setup - Kopie.exe
2014-02-28 11:42 - 2013-11-14 08:59 - 67670658 _____ () C:\Users\PC\Desktop\Altes Modulbuch 101 (1) - Kopie.zip
2014-02-28 11:42 - 2013-11-14 08:49 - 67670658 _____ () C:\Users\PC\Desktop\Altes Modulbuch 101 - Kopie.zip
2014-02-28 11:42 - 2013-11-14 08:45 - 00242734 _____ () C:\Users\PC\Desktop\ZP001 - Kopie.zip
2014-02-28 11:42 - 2013-11-14 08:41 - 03327721 _____ () C:\Users\PC\Desktop\Aufgaben 2.1%2C 2.2 - Kopie.rar
2014-02-28 11:42 - 2013-11-14 08:41 - 00068162 _____ () C:\Users\PC\Desktop\Aufgaben - Kopie.rar
2014-02-28 11:42 - 2013-11-14 08:36 - 00040232 _____ () C:\Users\PC\Desktop\Aufgaben 4.4-4.6 (1) - Kopie.zip
2014-02-28 11:42 - 2013-11-14 08:33 - 00040232 _____ () C:\Users\PC\Desktop\Aufgaben 4.4-4.6 - Kopie.zip
2014-02-28 11:42 - 2013-10-31 12:13 - 00819184 _____ (Google Inc.) C:\Users\PC\Desktop\ChromeSetup - Kopie.exe
2014-02-28 11:42 - 2013-09-21 12:35 - 06083952 _____ (Systweak Software ) C:\Users\PC\Desktop\advancedfileoptimizersetup_stg - Kopie.exe
2014-02-28 11:42 - 2013-09-20 16:11 - 06083952 _____ (Systweak Software ) C:\Users\PC\Desktop\advancedfileoptimizersetup_RAR (1) - Kopie.exe
2014-02-28 11:42 - 2013-09-12 09:35 - 06529865 _____ () C:\Users\PC\Desktop\dict-en - Kopie.oxt
2014-02-28 11:42 - 2013-08-23 08:06 - 162401424 _____ () C:\Users\PC\Desktop\Apache_OpenOffice_4.0.0_Win_x86_install_de - Kopie.exe
2014-02-28 11:17 - 2014-02-28 11:17 - 00000000 ____D () C:\Users\PC\Desktop\TB124W7InstDirs
2014-02-28 10:36 - 2014-02-28 10:36 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen (1).rar
2014-02-28 09:59 - 2014-02-28 09:59 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen.rar
2014-02-27 09:28 - 2014-02-27 09:28 - 00001106 _____ () C:\Users\Public\Desktop\TeamViewer 8.lnk
==================== One Month Modified Files and Folders =======
2014-03-28 21:30 - 2014-03-28 21:30 - 00022838 _____ () C:\Users\PC\Desktop\FRST.txt
2014-03-28 21:30 - 2014-03-28 19:07 - 00000000 ____D () C:\FRST
2014-03-28 21:29 - 2013-10-31 12:13 - 00001118 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-28 21:09 - 2013-09-25 10:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-28 21:02 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\sru
2014-03-28 20:58 - 2013-09-03 16:42 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-03-28 20:56 - 2014-03-28 20:55 - 00054887 _____ () C:\Users\PC\Desktop\Addition.txt
2014-03-28 20:48 - 2014-01-16 10:40 - 00005114 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Kistler-PC Kistler
2014-03-28 20:29 - 2013-10-31 12:13 - 00001114 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-28 20:26 - 2013-08-08 16:08 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3751542578-3293368922-2753858418-1001
2014-03-28 20:22 - 2014-03-26 12:58 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-03-28 20:22 - 2013-08-17 22:15 - 00000312 _____ () C:\Windows\Tasks\RMAutoUpdate.job
2014-03-28 20:21 - 2014-02-13 13:07 - 00001024 _____ () C:\.rnd
2014-03-28 20:21 - 2013-08-23 10:15 - 00000000 ____D () C:\ProgramData\VMware
2014-03-28 20:21 - 2012-07-26 08:22 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-28 20:21 - 2012-07-26 06:26 - 00524288 ___SH () C:\Windows\system32\config\BBI
2014-03-28 20:20 - 2014-03-28 20:24 - 00050477 _____ () C:\Users\PC\Desktop\Defogger (1).exe
2014-03-28 20:20 - 2014-03-28 20:20 - 00050477 _____ () C:\Users\PC\Downloads\Defogger.exe
2014-03-28 20:20 - 2014-03-28 20:20 - 00050477 _____ () C:\Users\PC\Downloads\Defogger (1).exe
2014-03-28 20:20 - 2014-03-28 20:20 - 00000536 _____ () C:\Users\PC\Downloads\defogger_disable.log
2014-03-28 20:20 - 2014-03-28 20:20 - 00000338 _____ () C:\Users\PC\Downloads\defogger_enable.log
2014-03-28 20:20 - 2013-06-27 15:00 - 00000000 ____D () C:\Users\PC
2014-03-28 19:54 - 2014-03-24 10:55 - 00000000 ____D () C:\AdwCleaner
2014-03-28 19:53 - 2014-03-28 19:21 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\36710840.sys
2014-03-28 19:20 - 2014-03-28 19:20 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\15E8686E.sys
2014-03-28 19:07 - 2014-03-28 19:13 - 02157056 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe
2014-03-28 19:07 - 2014-03-28 19:07 - 02157056 _____ (Farbar) C:\Users\PC\Downloads\FRST64.exe
2014-03-28 19:00 - 2014-03-28 19:00 - 00058082 _____ () C:\Windows\SysWOW64\AppLog.log
2014-03-28 19:00 - 2013-08-17 22:15 - 00000314 _____ () C:\Windows\Tasks\RMSchedule.job
2014-03-28 18:52 - 2014-03-27 20:35 - 00294481 _____ () C:\Windows\WindowsUpdate.log
2014-03-28 18:52 - 2013-05-21 21:04 - 00756280 _____ () C:\Windows\system32\perfh007.dat
2014-03-28 18:52 - 2013-05-21 21:04 - 00157208 _____ () C:\Windows\system32\perfc007.dat
2014-03-28 18:52 - 2012-07-26 08:28 - 01755112 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-28 17:17 - 2013-08-12 20:44 - 00000000 ____D () C:\Users\PC\AppData\Local\CrashDumps
2014-03-28 16:24 - 2014-03-28 16:24 - 00000968 _____ () C:\Windows\PFRO.log
2014-03-28 15:53 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\NDF
2014-03-28 11:34 - 2014-03-28 11:34 - 00000017 _____ () C:\Users\PC\AppData\Local\resmon.resmoncfg
2014-03-28 10:58 - 2014-03-28 10:58 - 00002120 _____ () C:\Users\PC\Documents\bookmark.htm
2014-03-28 08:29 - 2013-09-04 11:37 - 00000000 ____D () C:\Users\PC\AppData\Local\Adobe
2014-03-27 20:56 - 2014-03-14 13:44 - 00000000 ____D () C:\Users\PC\Desktop\TB124XP
2014-03-27 20:56 - 2013-08-30 10:56 - 00000000 ____D () C:\Users\PC\AppData\Local\VMware
2014-03-27 20:55 - 2013-08-30 10:43 - 00000000 ____D () C:\Users\PC\AppData\Roaming\VMware
2014-03-27 20:48 - 2013-11-30 08:52 - 00000000 ____D () C:\Users\PC\VMLites
2014-03-27 20:35 - 2014-03-27 20:35 - 76353536 _____ () C:\Windows\system32\config\software.rrr
2014-03-27 20:35 - 2014-03-27 20:35 - 03690496 _____ () C:\Users\PC\s-1-5-21-3751542578-3293368922-2753858418-1001.rrr
2014-03-27 20:35 - 2014-03-27 20:35 - 00221184 _____ () C:\Windows\system32\config\default.rrr
2014-03-27 20:35 - 2014-03-27 20:35 - 00008192 _____ () C:\Users\Gast\s-1-5-21-3751542578-3293368922-2753858418-501.rrr
2014-03-27 20:35 - 2014-03-21 11:08 - 00000000 ____D () C:\Users\Gast
2014-03-27 20:27 - 2014-03-27 19:30 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys
2014-03-27 20:05 - 2014-03-27 20:05 - 00000000 ____D () C:\Windows\ERUNT
2014-03-27 20:02 - 2014-03-27 20:02 - 01037734 _____ (Thisisu) C:\Users\PC\Downloads\JRT_6.1.2.exe
2014-03-27 19:51 - 2014-03-27 19:51 - 00001145 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-03-27 19:51 - 2014-03-27 19:50 - 34734328 _____ (Opera Software ASA) C:\Users\PC\Downloads\Opera_20.0.1387.82_Setup.exe
2014-03-27 19:51 - 2013-08-29 18:58 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-03-27 14:53 - 2013-09-06 10:06 - 00286720 ___SH () C:\Users\PC\Desktop\Thumbs.db
2014-03-27 14:37 - 2013-08-30 09:24 - 00064512 ___SH () C:\Users\PC\Downloads\Thumbs.db
2014-03-27 14:03 - 2014-03-27 14:03 - 00000000 ____D () C:\Users\PC\Downloads\SpybotPortable
2014-03-27 14:03 - 2014-03-27 14:02 - 57330680 _____ (PortableApps.com) C:\Users\PC\Downloads\SpybotPortable_2.2.paf.exe
2014-03-27 11:04 - 2014-03-27 08:52 - 00000000 ____D () C:\Program Files (x86)\CrypTool
2014-03-27 09:45 - 2014-03-27 09:45 - 00000000 ____D () C:\Program Files (x86)\ENIGMA
2014-03-27 09:45 - 2013-06-27 15:03 - 00000000 ___RD () C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-27 09:44 - 2014-03-27 09:43 - 00005685 _____ () C:\ST5UNST.LOG
2014-03-27 08:52 - 2014-03-27 08:52 - 00000000 ____D () C:\Users\PC\AppData\Roaming\CrypTool
2014-03-27 08:51 - 2014-03-27 08:50 - 67554681 _____ () C:\Users\PC\Downloads\SetupCrypTool_1_4_31_Beta6b_r3670_VS2008_de.exe
2014-03-27 08:38 - 2013-06-27 15:00 - 00000000 ____D () C:\Users\PC\AppData\Local\Packages
2014-03-26 19:24 - 2014-03-26 19:24 - 00316092 _____ () C:\Users\PC\Downloads\WG Physik.zip
2014-03-26 15:58 - 2014-03-28 19:49 - 01950720 _____ () C:\Users\PC\Desktop\adwcleaner_3.022 (3).exe
2014-03-26 15:58 - 2014-03-26 15:57 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022 (3).exe
2014-03-26 15:49 - 2014-03-26 15:49 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022 (2).exe
2014-03-26 15:33 - 2014-03-26 15:12 - 00000000 ____D () C:\Users\PC\AppData\Roaming\Nico Mak Computing
2014-03-26 15:12 - 2014-03-26 15:12 - 04892480 _____ (WinZip International LLC ) C:\Users\PC\Downloads\wzmp_8 (1).exe
2014-03-26 15:10 - 2014-03-26 15:10 - 00001134 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-03-26 15:10 - 2014-03-26 15:10 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware
2014-03-26 15:09 - 2014-03-26 15:09 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000 (3).exe
2014-03-26 15:09 - 2014-03-26 15:09 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000 (2).exe
2014-03-26 14:33 - 2014-03-26 13:46 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-03-26 13:47 - 2014-03-26 13:47 - 00000000 _____ () C:\autoexec.bat
2014-03-26 13:46 - 2014-03-26 13:46 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-03-26 13:32 - 2014-03-26 13:32 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022 (1).exe
2014-03-26 12:58 - 2014-03-26 12:58 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000.exe
2014-03-26 12:58 - 2014-03-26 12:58 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\PC\Downloads\mbam-setup-2.0.0.1000 (1).exe
2014-03-26 12:58 - 2013-08-17 21:48 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-26 12:51 - 2013-12-09 00:06 - 00000000 ____D () C:\Users\PC\Desktop\Programme
2014-03-26 12:38 - 2014-03-22 17:25 - 00000000 ____D () C:\Program Files (x86)\Advanced Disk Recovery
2014-03-26 12:36 - 2014-03-25 17:02 - 00000000 ____D () C:\Users\PC\Documents\Anti-Malware
2014-03-26 12:36 - 2014-03-25 17:02 - 00000000 ____D () C:\Program Files (x86)\Emsisoft Anti-Malware
2014-03-25 20:14 - 2014-03-25 20:14 - 00000500 _____ () C:\EamClean.log
2014-03-25 15:55 - 2014-03-25 15:55 - 00000000 ____D () C:\Users\PC\AppData\Local\Norman Malware Cleaner
2014-03-25 15:52 - 2014-03-25 15:50 - 312761032 _____ (Norman Shark AS) C:\Users\PC\Downloads\Norman_Malware208_Cleaner.exe
2014-03-25 12:11 - 2013-12-14 11:03 - 00000000 ____D () C:\Users\PC\AppData\Local\CutePDF Writer
2014-03-25 11:30 - 2013-12-13 14:51 - 00000000 ____D () C:\Users\PC\AppData\Roaming\NCH Software
2014-03-24 16:41 - 2014-03-06 14:10 - 00000000 ____D () C:\Program Files (x86)\South Park The Stick of Truth
2014-03-24 15:39 - 2014-03-24 15:39 - 00000000 ____D () C:\Users\Public\Documents\sun
2014-03-24 15:22 - 2014-03-24 15:22 - 04892480 _____ (WinZip International LLC ) C:\Users\PC\Downloads\wzmp_8.exe
2014-03-24 11:18 - 2014-03-24 11:18 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_deu.exe
2014-03-24 11:18 - 2014-03-24 11:18 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_deu (1).exe
2014-03-24 10:55 - 2014-03-24 10:55 - 01950720 _____ () C:\Users\PC\Downloads\adwcleaner_3.022.exe
2014-03-24 09:48 - 2013-11-16 19:07 - 00000000 ____D () C:\Users\PC\Bewerbungm
2014-03-24 09:35 - 2014-03-24 09:35 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_enu (1).exe
2014-03-23 22:41 - 2014-03-27 20:02 - 01038974 _____ (Thisisu) C:\Users\PC\Desktop\JRT_NEW.exe
2014-03-22 18:16 - 2014-03-22 18:16 - 02347384 _____ (ESET) C:\Users\PC\Downloads\esetsmartinstaller_enu.exe
2014-03-22 18:16 - 2014-03-22 18:16 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-03-21 23:58 - 2014-03-21 23:58 - 00000000 ____D () C:\Users\PC\AppData\Local\PDFCreator
2014-03-21 20:17 - 2014-03-21 20:18 - 00625760 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-03-21 20:17 - 2014-03-21 20:18 - 00115296 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-03-21 20:17 - 2014-03-21 20:18 - 00065120 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klwfp.sys
2014-03-21 20:12 - 2014-03-21 20:12 - 01330072 _____ (CodecPerformer) C:\Users\PC\Downloads\CodecPerformerSetup (1).exe
2014-03-21 20:11 - 2014-03-21 20:11 - 01330072 _____ (CodecPerformer) C:\Users\PC\Downloads\CodecPerformerSetup.exe
2014-03-21 19:53 - 2014-03-21 13:42 - 00000000 ___DC () C:\Users\PC\AppData\Local\MigWiz
2014-03-21 11:38 - 2012-07-26 06:26 - 00000367 _____ () C:\Windows\win.ini
2014-03-21 11:34 - 2014-03-14 13:41 - 00453056 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-21 11:34 - 2013-10-05 07:39 - 00000000 ____D () C:\Program Files\WinRAR
2014-03-21 11:28 - 2014-03-21 11:23 - 00000000 ____D () C:\Neuer Ordner (2)
2014-03-21 11:08 - 2014-03-21 11:08 - 00000000 ____D () C:\Program Files\Wireshark
2014-03-21 11:08 - 2013-08-23 08:09 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4
2014-03-21 11:07 - 2014-03-21 11:07 - 00001112 _____ () C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2014-03-21 11:03 - 2013-10-05 07:39 - 00000000 ____D () C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-03-21 11:03 - 2013-08-24 08:33 - 00000000 ____D () C:\Users\PC\AppData\Roaming\Notepad++
2014-03-21 11:03 - 2013-08-24 08:33 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2014-03-21 11:01 - 2013-09-06 06:10 - 00000000 ____D () C:\Windows\Minidump
2014-03-21 11:01 - 2013-03-06 05:20 - 00000000 ____D () C:\Windows\Panther
2014-03-21 10:44 - 2014-03-21 10:44 - 00450986 _____ () C:\Users\PC\Downloads\Zeugnis.zip
2014-03-21 10:41 - 2014-03-21 10:41 - 00254976 _____ () C:\Users\PC\Downloads\M124 Teil C HandOut (1).ppt
2014-03-21 10:41 - 2014-03-21 10:41 - 00236032 _____ () C:\Users\PC\Downloads\M124 Teil C HandOut.ppt
2014-03-21 10:38 - 2014-03-21 10:38 - 00410898 _____ () C:\Users\PC\Downloads\TB124_pdfs_11_15.rar
2014-03-20 11:27 - 2014-03-20 11:27 - 00695648 _____ () C:\Users\PC\Downloads\lmc-1.2.35-win32-Downloader (2).exe
2014-03-20 11:27 - 2014-03-20 11:27 - 00695648 _____ () C:\Users\PC\Downloads\lmc-1.2.35-win32-Downloader (1).exe
2014-03-20 11:25 - 2014-03-20 11:25 - 00695648 _____ () C:\Users\PC\Downloads\lmc-1.2.35-win32-Downloader.exe
2014-03-19 23:09 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\AUInstallAgent
2014-03-19 11:43 - 2014-03-19 11:43 - 01955184 _____ (Acro Software Inc. ) C:\Users\PC\Downloads\CuteWriter.exe
2014-03-19 11:43 - 2014-03-19 11:43 - 01955184 _____ (Acro Software Inc. ) C:\Users\PC\Downloads\CuteWriter (1).exe
2014-03-19 11:33 - 2014-03-19 11:33 - 00001017 _____ () C:\Users\PC\Desktop\PDF Architect.lnk
2014-03-19 11:32 - 2014-03-19 11:32 - 00000852 _____ () C:\Users\Public\Desktop\PDFCreator.lnk
2014-03-19 11:32 - 2014-03-19 11:32 - 00000000 ____D () C:\Users\PC\Documents\PDF Architect Files
2014-03-19 11:32 - 2014-03-19 11:32 - 00000000 ____D () C:\Program Files\PDFCreator
2014-03-19 11:32 - 2014-03-19 11:32 - 00000000 ____D () C:\Program Files (x86)\PDF Architect
2014-03-19 11:31 - 2014-03-19 11:31 - 00000000 ____D () C:\Users\PC\AppData\Roaming\PCSpeed
2014-03-19 11:31 - 2014-03-19 11:31 - 00000000 ____D () C:\ProgramData\PCSpeed
2014-03-19 11:20 - 2014-03-19 11:20 - 00450404 _____ () C:\Users\PC\Downloads\Scann (1).zip
2014-03-18 18:32 - 2013-08-14 07:47 - 00000000 ____D () C:\Windows\system32\MRT
2014-03-18 18:29 - 2013-09-14 08:13 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-03-18 18:29 - 2013-06-27 15:54 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-03-18 18:29 - 2012-07-26 06:26 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-03-18 17:49 - 2014-03-18 17:48 - 06294991 _____ () C:\Users\PC\Downloads\News from France (1).zip
2014-03-18 17:48 - 2014-03-18 17:48 - 06294991 _____ () C:\Users\PC\Downloads\News from France.zip
2014-03-17 16:49 - 2014-03-17 16:49 - 00162220 _____ () C:\Users\PC\Documents\loos.rns
2014-03-16 16:58 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\rescache
2014-03-16 16:18 - 2012-07-26 09:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-16 16:18 - 2012-07-26 09:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-03-16 16:18 - 2012-07-26 09:12 - 00000000 ____D () C:\Program Files\Windows Defender
2014-03-16 16:18 - 2012-07-26 09:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-03-15 20:31 - 2013-10-31 12:13 - 00002189 ____H () C:\Users\Public\Desktop\Google Chrome.lnk
2014-03-14 13:57 - 2014-03-14 13:56 - 107806720 _____ () C:\Users\PC\Downloads\ipfire-2.13.i586-full-core75 (1).iso
2014-03-14 13:36 - 2012-07-26 09:12 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-03-14 13:22 - 2013-06-27 15:03 - 00000000 ___RD () C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-03-14 13:17 - 2012-07-26 09:12 - 00000000 ___RD () C:\Windows\ToastData
2014-03-14 12:27 - 2013-11-15 09:35 - 00000039 _____ () C:\Windows\vbaddin.ini
2014-03-14 12:23 - 2014-03-14 12:23 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-03-14 12:23 - 2014-03-14 12:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-03-14 11:57 - 2013-08-30 12:26 - 00000000 ____D () C:\Users\PC\Documents\Virtual Machines
2014-03-14 11:50 - 2014-03-14 11:50 - 107806720 _____ () C:\Users\PC\Downloads\ipfire-2.13.i586-full-core75.iso
2014-03-14 10:51 - 2014-03-14 10:51 - 00376953 _____ () C:\Users\PC\Downloads\TB124_pdfs_06_10 (1).rar
2014-03-14 10:41 - 2014-03-14 10:41 - 00376953 _____ () C:\Users\PC\Downloads\TB124_pdfs_06_10.rar
2014-03-14 08:52 - 2014-03-14 08:52 - 00450404 _____ () C:\Users\PC\Downloads\Scann.zip
2014-03-13 11:54 - 2014-03-13 11:54 - 00000000 ____D () C:\unzipped
2014-03-11 20:09 - 2013-09-25 10:33 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-03-08 10:54 - 2014-03-08 10:52 - 22892386 _____ () C:\Users\PC\Downloads\torbrowser-install-3.5.2.1_en-US.exe
2014-03-07 13:05 - 2013-10-24 08:06 - 00000000 ____D () C:\Users\PC\wiss
2014-03-07 11:30 - 2014-03-07 11:30 - 00468685 _____ () C:\Users\PC\Downloads\TB124_pdfs_00_05.rar
2014-03-06 14:17 - 2013-11-09 18:01 - 00000000 ____D () C:\Users\PC\Documents\My Games
2014-03-06 14:09 - 2014-03-06 14:07 - 00000000 ____D () C:\Users\PC\AppData\Roaming\DAEMON Tools Lite
2014-03-06 14:09 - 2014-03-06 14:05 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-03-06 14:08 - 2014-03-06 14:08 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-03-06 14:08 - 2014-03-06 14:08 - 00001974 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-03-06 14:08 - 2014-03-06 14:08 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-03-05 09:26 - 2014-03-26 15:10 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-03-05 09:26 - 2014-03-26 15:10 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-03-05 09:26 - 2014-03-26 15:10 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-03-04 23:52 - 2014-03-14 13:21 - 00694240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-04 23:52 - 2014-03-14 13:21 - 00078304 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-04 19:46 - 2014-03-04 19:46 - 00000000 ____D () C:\Users\PC\Desktop\MP_2.Sem
2014-03-04 19:45 - 2014-03-04 19:45 - 00434129 _____ () C:\Users\PC\Downloads\MP_2.Sem.rar
2014-02-28 12:59 - 2014-02-28 12:59 - 04845384 _____ (Piriform Ltd) C:\Users\PC\Downloads\spsetup125.exe
2014-02-28 12:59 - 2014-02-28 12:59 - 00000808 _____ () C:\Users\Public\Desktop\Speccy.lnk
2014-02-28 12:59 - 2014-02-28 12:59 - 00000000 ____D () C:\Program Files\Speccy
2014-02-28 11:17 - 2014-02-28 11:17 - 00000000 ____D () C:\Users\PC\Desktop\TB124W7InstDirs
2014-02-28 10:36 - 2014-02-28 11:42 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen (1) - Kopie.rar
2014-02-28 10:36 - 2014-02-28 10:36 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen (1).rar
2014-02-28 09:59 - 2014-02-28 11:42 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen - Kopie.rar
2014-02-28 09:59 - 2014-02-28 09:59 - 02437369 _____ () C:\Users\PC\Desktop\CPU_Typen.rar
2014-02-27 10:35 - 2013-12-07 15:58 - 00000000 ____D () C:\Users\PC\AppData\Roaming\TeamViewer
2014-02-27 09:28 - 2014-02-27 09:28 - 00001106 _____ () C:\Users\Public\Desktop\TeamViewer 8.lnk
Files to move or delete:
====================
C:\Users\PC\setup.exe
C:\Users\PC\siw13-setup.exe
C:\Users\PC\visioviewer_14.0.4750.1000.exe
Some content of TEMP:
====================
C:\Users\PC\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-28 09:35
==================== End Of Log ============================
--- --- ---
--- --- ---