Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Virus(E- Mail Hacker)?

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 06.05.2014, 10:35   #31
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Hallo Didu,
nachdem du die Fixlist erstellt hast und in dem gleichen Ordner gespeichert hast und dann auch FRST gestartet hast, musst du auf den Fixbutton drücken, dann sollte das eigenlich funktionieren.

Alt 06.05.2014, 11:29   #32
Didu
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Ich hab Ja auf den Fix Button gedrückt oder darf da bei Additon.txt kein Häkchen sein?
Zeigt dann an New update found und Frst ready to use und dann passiert minutenlang nichts.
__________________


Alt 06.05.2014, 21:33   #33
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Zitat:
Ich hab Ja auf den Fix Button gedrückt oder darf da bei Additon.txt kein Häkchen sein?
Nein, das dürfte keinen Unterschied machen, lösche die FRST.exe mal lade dir FRST erneut runter und probiere es dann nochmal.
__________________
__________________

Alt 06.05.2014, 22:51   #34
Didu
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Der findet keine Fixlist und C:/User /Andreas/ Downloads kennt er nicht.
Hab es unter Andreas Downloads.
Ach das geht einfach nicht. Mit den Draufspielen der CD und hab jetzt alte Dateien drauf. Keine Ahnung ich kenn mich nicht mehr aus. War fast fertig und dann stürzt alles ab. Keine Ahnung sorry Gut Nacht!

Alt 06.05.2014, 23:28   #35
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Zitat:
Der findet keine Fixlist und C:/User /Andreas/ Downloads kennt er nicht.
Hab es unter Andreas Downloads.
Ja, das ist ja der gleiche Ordner, wenn dort FRST.exe liegt, musst du dort auch die fixlist.txt hinspeichern, dann FRST starten und auf Fix drücken. Versuche es bitte noch einmal.


Alt 07.05.2014, 09:39   #36
Didu
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



[CODE][Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:04-05-2014
Ran by Andreas (administrator) on ANDREAS-PC on 05-05-2014 09:55:42
Running from C:\Users\Andreas\Downloads
Microsoft® Windows Vista™ Home Premium Service Pack 1 (X86) OS Language: German Standard
Internet Explorer Version 7
Boot Mode: Normal


==================== Processes (Whitelisted) =================

(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
(Acer Incorporated) C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(CyberLink Corp.) C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
(CyberLink) C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Google) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
() C:\Windows\PLFSetI.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe
(EgisTec Inc.) C:\Program Files\EgisTec\MyWinLocker 3\x86\MWLService.exe
(NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LManager.exe
(NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
(EgisTec Inc.) C:\Program Files\EgisTec Egis Software Update\EgisUpdate.exe
(EgisTec Inc.) C:\Program Files\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
(Acer Corp.) C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Acer Incorporated) C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Acer Incorporated) C:\Program Files\Acer\Acer PowerSmart Manager\ePowerEvent.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Windows\System32\wsqmcons.exe
(Microsoft Corporation) C:\Windows\System32\conime.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [ArcadeDeluxeAgent] => C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [156968 2009-01-21] (CyberLink Corp.)
HKLM\...\Run: [CLMLServer] => C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe [202024 2009-01-21] (CyberLink)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2009-01-27] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Google Desktop Search] => C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2014-05-01] (Google)
HKLM\...\Run: [AmIcoSinglun] => C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [237568 2008-10-24] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2008-07-29] ()
HKLM\...\Run: [LManager] => C:\Program Files\Launch Manager\LManager.exe [870920 2009-02-24] (Dritek System Inc.)
HKLM\...\Run: [BackupManagerTray] => C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [249600 2009-04-11] (NewTech Infosystems, Inc.)
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe [440864 2009-04-15] (Acer Incorporated)
HKLM\...\Run: [EgisTecLiveUpdate] => C:\Program Files\EgisTec Egis Software Update\EgisUpdate.exe [199464 2008-10-27] (EgisTec Inc.)
HKLM\...\Run: [mwlDaemon] => C:\Program Files\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [346672 2008-10-27] (EgisTec Inc.)
HKLM\...\Run: [PlayMovie] => C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [173288 2008-12-26] (Acer Corp.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3873704 2014-05-02] (AVAST Software)
HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter
AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL => C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [119296 2014-05-01] (Google)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yahoo.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&s=2&o=vp32&d=0514&m=aspire_7735
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://global.acer.com
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&s=2&o=vp32&d=0514&m=aspire_7735
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0407&s=2&o=vp32&d=0514&m=aspire_7735
URLSearchHook: HKCU - (No Name) - {5bcf818d-78c8-41b8-ba89-65c5fdac4fc4} - C:\Program Files\Allin1Convert_8h\bar\1.bin\8hSrcAs.dll No File
SearchScopes: HKLM - DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKLM - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKLM - {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm070^YYA^de&si=flvrunner&ptb=4EFA316D-238B-4E04-8FE7-E58EFD781597&ind=2014050114&n=780bf742&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKCU - DefaultScope {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm070^YYA^de&si=flvrunner&ptb=4EFA316D-238B-4E04-8FE7-E58EFD781597&ind=2014050114&n=780bf742&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKCU - {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm070^YYA^de&si=flvrunner&ptb=4EFA316D-238B-4E04-8FE7-E58EFD781597&ind=2014050114&n=780bf742&psa=&st=sb&searchfor={searchTerms}
BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\partner.dll (Google Inc.)
BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Andreas\AppData\Roaming\Mozilla\Firefox\Profiles\diwras17.default
FF Homepage: https://de.yahoo.com/
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: NoScript - C:\Users\Andreas\AppData\Roaming\Mozilla\Firefox\Profiles\diwras17.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-05-02]
FF Extension: Adblock Plus - C:\Users\Andreas\AppData\Roaming\Mozilla\Firefox\Profiles\diwras17.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-02]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []

========================== Services (Whitelisted) =================

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-02] (AVAST Software)
R2 CLHNService; C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [75048 2008-12-18] ()
R2 ePowerSvc; C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [703008 2009-04-15] (Acer Incorporated)
S3 GoogleDesktopManager-092308-165331; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2014-05-01] (Google)
R2 MBAMScheduler; C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-04-03] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe [857912 2014-04-03] (Malwarebytes Corporation)
R2 MWLService; C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe [306736 2008-10-27] (EgisTec Inc.)
R2 NTI IScheduleSvc; C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [61184 2009-04-11] (NewTech Infosystems, Inc.)
S3 Partner Service; C:\ProgramData\Partner\partner.exe [110576 2014-05-01] (Google Inc.)

==================== Drivers (Whitelisted) ====================

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-05-02] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-05-02] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [54832 2014-05-02] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-05-02] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [776976 2014-05-02] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [411552 2014-05-02] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [57672 2014-05-02] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [180632 2014-05-02] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-04-03] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [107736 2014-05-05] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51416 2014-04-03] (Malwarebytes Corporation)
R2 mwlPSDFilter; C:\Windows\System32\DRIVERS\mwlPSDFilter.sys [19504 2008-10-09] (Egis Incorporated.)
R2 mwlPSDNServ; C:\Windows\System32\DRIVERS\mwlPSDNServ.sys [16432 2008-10-09] (Egis Incorporated.)
R2 mwlPSDVDisk; C:\Windows\System32\DRIVERS\mwlPSDVDisk.sys [59952 2008-10-09] (Egis Incorporated.)
S3 IntcAzAudAddService; system32\drivers\RTKVHDA.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 k57nd60x; system32\DRIVERS\k57nd60x.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 RTHDMIAzAudService; system32\drivers\RtHDMIV.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-05-05 09:54 - 2014-05-05 09:55 - 00013929 _____ () C:\Users\Andreas\Downloads\FRST.txt
2014-05-05 09:53 - 2014-05-05 09:54 - 01051648 _____ (Farbar) C:\Users\Andreas\Downloads\FRST.exe
2014-05-04 11:55 - 2014-05-04 11:55 - 00001155 _____ () C:\mbam.txt
2014-05-03 22:56 - 2014-05-03 22:56 - 00000000 ____D () C:\Users\Andreas\Documents\Wiesn Fotos
2014-05-03 22:56 - 2014-05-03 22:56 - 00000000 ____D () C:\Users\Andreas\Documents\Mittenwald
2014-05-03 22:56 - 2014-05-03 22:56 - 00000000 ____D () C:\Users\Andreas\Documents\Geburtstagsfeier 20.02.010
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\Frühlingsfest2010+altes foto
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\Frühlingsfest
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\biathlon bei Stadler in Regensburg
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\2009-07-18 Gran Canaria2008
2014-05-03 22:54 - 2014-05-03 22:54 - 00000000 ____D () C:\Users\Andreas\Documents\2009-03-18 001
2014-05-03 22:52 - 2014-05-03 22:52 - 00000000 ___RD () C:\Users\Andreas\Documents\Notes
2014-05-03 18:14 - 2014-05-03 18:14 - 00001189 _____ () C:\Malwarebytes Bedrohungs Suchlauf 03.05.txt
2014-05-03 17:17 - 2014-05-03 17:17 - 00004664 _____ () C:\Malwarebytes Schutzprotokoll 03.05.14.txt
2014-05-03 17:16 - 2014-05-03 17:16 - 00097998 _____ () C:\Malwarebytes Suchlauf 03.05.14.txt
2014-05-03 16:45 - 2014-05-05 09:43 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-03 16:44 - 2014-05-03 16:44 - 00000903 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-05-03 16:44 - 2014-05-03 16:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware
2014-05-03 16:44 - 2014-05-03 16:44 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-03 16:44 - 2014-05-03 16:44 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware
2014-05-03 16:44 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-03 16:44 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-03 16:44 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-03 16:43 - 2014-05-03 16:44 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Andreas\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-03 07:10 - 2014-05-03 07:12 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-03 06:58 - 2014-05-03 06:58 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-05-02 22:06 - 2014-05-02 22:06 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\QuickScan
2014-05-02 21:50 - 2014-05-02 21:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-02 21:50 - 2014-05-02 21:50 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-02 21:48 - 2014-05-02 21:48 - 05484256 _____ (Speedchecker Limited ) C:\Users\Andreas\Downloads\pcbeschleunigen_b39555d87a4746588c157659aa250764_.exe
2014-05-02 21:37 - 2014-05-02 21:37 - 00448512 _____ (OldTimer Tools) C:\Users\Andreas\Downloads\TFC.exe
2014-05-02 21:36 - 2014-05-02 21:36 - 00700980 _____ () C:\Users\Andreas\Downloads\adblock_edge-2.0.7-sm+an+tb+fx-windows.xpi
2014-05-02 20:47 - 2010-09-06 18:24 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2014-05-02 20:47 - 2010-09-06 18:23 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2014-05-02 20:47 - 2009-08-24 14:16 - 00378368 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2014-05-02 19:34 - 2010-04-14 19:47 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-05-02 19:34 - 2010-04-14 19:47 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-05-02 19:34 - 2010-04-14 19:46 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2014-05-02 19:29 - 2009-11-08 10:55 - 01130824 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-05-02 19:29 - 2009-11-08 10:55 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2014-05-02 19:29 - 2009-11-08 10:55 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2014-05-02 19:29 - 2009-11-08 10:55 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2014-05-02 19:29 - 2009-11-08 10:55 - 00049472 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2014-05-02 18:36 - 2014-05-02 18:42 - 00005086 _____ () C:\Users\Andreas\AppData\Local\MyWinLockerInstaller.txt-20140502.log
2014-05-02 18:29 - 2014-05-02 18:29 - 00000469 _____ () C:\Windows\SynInst.log
2014-05-02 18:20 - 2014-05-02 18:20 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_00_00.Wdf
2014-05-02 18:10 - 2014-05-02 18:10 - 00000813 _____ () C:\Users\Andreas\Desktop\IMG_4042_02 - Verknüpfung.lnk
2014-05-02 18:10 - 2014-05-02 18:10 - 00000813 _____ () C:\Users\Andreas\Desktop\IMG_4042_02 - Verknüpfung (2).lnk
2014-05-02 18:10 - 2014-05-02 18:10 - 00000798 _____ () C:\Users\Andreas\Desktop\IMG_4931 - Verknüpfung.lnk
2014-05-02 17:56 - 2014-05-02 17:56 - 00001195 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2014-05-02 17:56 - 2014-05-02 17:56 - 00001036 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-05-02 17:55 - 2014-05-02 17:56 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\DVDVideoSoft
2014-05-02 17:55 - 2014-05-02 17:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-05-02 17:55 - 2014-05-02 17:56 - 00000000 ____D () C:\Program Files\DVDVideoSoft
2014-05-02 17:55 - 2014-05-02 17:55 - 00000000 ____D () C:\Program Files\Common Files\DVDVideoSoft
2014-05-02 16:37 - 2014-05-02 18:11 - 00006144 _____ () C:\Users\Andreas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-02 16:07 - 2014-05-02 16:07 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Adobe
2014-05-02 15:59 - 2014-05-02 15:59 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Apps\2.0
2014-05-02 15:34 - 2010-02-12 12:48 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2014-05-02 15:29 - 2014-05-02 15:29 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\AVAST Software
2014-05-02 15:28 - 2014-05-02 15:28 - 00001877 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-05-02 15:28 - 2014-05-02 15:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-05-02 15:26 - 2014-05-02 15:25 - 00776976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-05-02 15:26 - 2014-05-02 15:25 - 00411552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-05-02 15:26 - 2014-05-02 15:25 - 00271264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-05-02 15:26 - 2014-05-02 15:25 - 00180632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-05-02 15:26 - 2014-05-02 15:25 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-05-02 15:26 - 2014-05-02 15:25 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-05-02 15:26 - 2014-05-02 15:25 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-05-02 15:26 - 2014-05-02 15:25 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-05-02 15:26 - 2014-05-02 15:25 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-02 15:25 - 2014-05-02 15:25 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-02 15:23 - 2014-05-02 15:23 - 00000000 ____D () C:\Program Files\AVAST Software
2014-05-02 15:19 - 2014-05-02 15:19 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-05-02 15:16 - 2014-05-02 15:18 - 88882192 _____ (AVAST Software) C:\Users\Andreas\Downloads\avast_free_antivirus_setup_9_0_2018.exe
2014-05-02 05:00 - 2008-07-17 22:27 - 00380928 _____ (Acer Incorporated) C:\Windows\AcerStore.exe
2014-05-02 05:00 - 2008-05-09 15:58 - 00049152 _____ ( ) C:\Windows\Interop.IWshRuntimeLibrary.dll
2014-05-02 04:53 - 2014-05-02 04:53 - 02927104 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\zh-TW
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\zh-HK
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\zh-CN
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\uk-UA
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\tr-TR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\th-TH
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sv-SE
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sr-Latn-CS
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sl-SI
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sk-SK
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ru-RU
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ro-RO
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\pt-PT
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\pt-BR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\pl-PL
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\nl-NL
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\nb-NO
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\lv-LV
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\lt-LT
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ko-KR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ja-JP
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\it-IT
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\hu-HU
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\hr-HR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\he-IL
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\fr-FR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\fi-FI
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\et-EE
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\el-GR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\bg-BG
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ar-SA
2014-05-02 04:50 - 2014-05-02 04:49 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-05-02 04:50 - 2014-05-02 04:49 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-05-02 04:50 - 2014-05-02 04:49 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2014-05-02 04:49 - 2014-05-02 04:49 - 02134528 _____ (Microsoft Corporation) C:\Windows\system32\FunctionDiscoveryFolder.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00968192 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz2.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2014-05-02 04:49 - 2014-05-02 04:49 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\WscEapPr.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\fundisc.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingWizard.exe
2014-05-02 04:49 - 2014-05-02 04:49 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingProxy.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe
2014-05-02 04:49 - 2014-05-02 04:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\fdBthProxy.dll
2014-05-02 04:43 - 2014-05-02 05:00 - 00183573 _____ () C:\Windows\CapsuleDll.log
2014-05-02 04:43 - 2014-05-02 04:43 - 00000000 ____D () C:\Windows\Lan
2014-05-02 04:43 - 2014-05-01 20:04 - 00000193 _____ () C:\Windows\USER.XML
2014-05-02 04:43 - 2008-04-03 21:19 - 00020480 _____ (Wistron Corp.) C:\Windows\PATCHFUL.EXE
2014-05-02 03:45 - 2014-05-02 03:45 - 00000000 ____D () C:\Backup
2014-05-01 23:03 - 2014-05-02 18:31 - 00006836 _____ () C:\Users\Andreas\AppData\Local\d3d9caps.dat
2014-05-01 23:03 - 2014-05-01 23:03 - 00000000 ____D () C:\Users\Public\Documents\Acer
2014-05-01 21:51 - 2014-05-01 21:51 - 00000000 ____D () C:\Windows\system32\WindowsPowerShell
2014-05-01 21:40 - 2008-06-20 03:14 - 00781344 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2014-05-01 21:40 - 2008-06-20 03:14 - 00622080 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-05-01 21:40 - 2008-06-20 03:14 - 00105016 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-05-01 21:40 - 2008-06-20 03:14 - 00097800 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-05-01 21:40 - 2008-06-20 03:14 - 00037384 _____ (Microsoft Corporation) C:\Windows\system32\infocardcpl.cpl
2014-05-01 21:40 - 2008-06-20 03:14 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-05-01 21:34 - 2008-07-27 20:03 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-05-01 21:33 - 2008-07-27 20:03 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-05-01 21:30 - 2010-02-21 01:39 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\nshhttp.dll
2014-05-01 21:30 - 2010-02-21 01:37 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2014-05-01 21:30 - 2010-02-20 23:18 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2014-05-01 21:29 - 2010-09-20 11:25 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\msshsq.dll
2014-05-01 21:28 - 2014-05-01 21:29 - 00288496 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-05-01 21:25 - 2009-10-09 23:56 - 01181696 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-05-01 21:25 - 2009-10-09 23:56 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-05-01 21:25 - 2009-10-09 23:56 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\winrscmd.dll
2014-05-01 21:25 - 2009-10-09 23:56 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-05-01 21:25 - 2009-10-09 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-05-01 21:25 - 2009-10-09 23:56 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll
2014-05-01 21:25 - 2009-10-09 23:56 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\winrs.exe
2014-05-01 21:25 - 2009-10-09 23:56 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\winrshost.exe
2014-05-01 21:25 - 2009-10-09 23:56 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2014-05-01 21:25 - 2009-10-09 23:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2014-05-01 21:25 - 2009-10-09 23:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\winrssrv.dll
2014-05-01 21:25 - 2009-10-09 23:56 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\winrsmgr.dll
2014-05-01 21:25 - 2009-10-09 23:55 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-05-01 21:25 - 2009-10-09 23:55 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\wecsvc.dll
2014-05-01 21:25 - 2009-10-09 23:55 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\wevtfwd.dll
2014-05-01 21:25 - 2009-10-09 23:55 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\wecutil.exe
2014-05-01 21:25 - 2009-10-09 23:55 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wecapi.dll
2014-05-01 21:25 - 2009-10-09 23:55 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2014-05-01 21:25 - 2009-08-01 08:27 - 00201184 _____ () C:\Windows\system32\winrm.vbs
2014-05-01 21:25 - 2009-07-16 19:30 - 00004675 _____ () C:\Windows\system32\wsmanconfig_schema.xml
2014-05-01 21:25 - 2009-07-16 19:30 - 00002426 _____ () C:\Windows\system32\WsmTxt.xsl
2014-05-01 21:23 - 2011-02-16 17:29 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-05-01 21:23 - 2011-02-16 15:24 - 00292864 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-05-01 21:23 - 2010-06-16 17:12 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-05-01 21:23 - 2010-04-05 18:07 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2014-05-01 21:23 - 2009-08-14 18:29 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2014-05-01 21:23 - 2009-08-14 16:16 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\NETSTAT.EXE
2014-05-01 21:23 - 2009-08-14 16:16 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\ARP.EXE
2014-05-01 21:23 - 2009-08-14 16:16 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\ROUTE.EXE
2014-05-01 21:23 - 2009-08-14 16:16 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\MRINFO.EXE
2014-05-01 21:23 - 2009-08-14 16:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\finger.exe
2014-05-01 21:23 - 2009-08-14 16:16 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\TCPSVCS.EXE
2014-05-01 21:23 - 2009-08-14 16:16 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\HOSTNAME.EXE
2014-05-01 21:23 - 2009-06-15 17:20 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-05-01 21:22 - 2011-03-03 16:56 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\Apphlpdm.dll
2014-05-01 21:22 - 2011-03-03 15:01 - 04240384 _____ (Microsoft) C:\Windows\system32\GameUXLegacyGDFs.dll
2014-05-01 21:21 - 2011-02-22 14:51 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-05-01 21:21 - 2011-02-18 15:31 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-05-01 21:21 - 2010-12-28 16:57 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2014-05-01 21:21 - 2010-10-15 16:08 - 03600272 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-05-01 21:21 - 2010-10-15 16:08 - 03548048 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-01 21:21 - 2010-10-15 15:48 - 01205080 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-05-01 21:21 - 2009-09-10 19:30 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-01 21:21 - 2009-07-11 21:32 - 00513024 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2014-05-01 21:21 - 2009-07-11 21:32 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2014-05-01 21:21 - 2009-07-11 21:32 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2014-05-01 21:21 - 2009-07-11 21:29 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\L2SecHC.dll
2014-05-01 21:21 - 2009-07-11 19:18 - 02501921 _____ () C:\Windows\system32\wlan.tmf
2014-05-01 21:21 - 2009-06-10 14:12 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2014-05-01 21:20 - 2011-04-29 14:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-05-01 21:20 - 2011-04-29 14:49 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-05-01 21:20 - 2011-03-10 18:12 - 01161728 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2014-05-01 21:20 - 2011-03-10 18:12 - 01136640 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2014-05-01 21:20 - 2010-04-16 18:10 - 00501760 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-05-01 21:20 - 2010-04-05 18:08 - 00317952 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2014-05-01 21:20 - 2009-08-10 13:01 - 01399296 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-05-01 21:20 - 2009-07-10 14:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2014-05-01 21:19 - 2011-06-02 14:59 - 02042368 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-05-01 21:19 - 2011-04-14 16:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2014-05-01 21:19 - 2010-12-14 17:49 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2014-05-01 21:19 - 2010-08-26 18:07 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2014-05-01 21:19 - 2009-10-23 19:42 - 00714240 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2014-05-01 21:19 - 2009-07-17 16:35 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\atl.dll
2014-05-01 21:19 - 2008-06-06 05:27 - 00562176 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2014-05-01 21:19 - 2008-06-06 05:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll
2014-05-01 21:18 - 2011-04-21 15:16 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-05-01 21:18 - 2010-11-06 13:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2014-05-01 21:18 - 2010-11-06 13:10 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2014-05-01 21:18 - 2010-11-06 13:10 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2014-05-01 21:18 - 2010-11-06 13:09 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2014-05-01 21:18 - 2010-11-05 02:53 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2014-05-01 21:18 - 2010-09-10 20:18 - 10626560 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-05-01 21:18 - 2010-09-10 18:37 - 08147456 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-05-01 21:18 - 2009-06-15 20:20 - 00439896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-01 21:18 - 2009-06-15 17:24 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-01 21:18 - 2009-06-15 17:24 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-01 21:18 - 2009-06-15 17:23 - 01256448 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-01 21:18 - 2009-06-15 17:21 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-01 21:18 - 2009-06-15 14:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-01 21:18 - 2009-06-10 14:11 - 02868224 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-05-01 21:18 - 2009-06-10 14:11 - 02386944 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2014-05-01 21:17 - 2010-02-26 06:03 - 02452872 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-05-01 21:17 - 2010-01-25 14:48 - 00472576 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-05-01 21:17 - 2010-01-25 14:48 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-05-01 21:17 - 2010-01-25 14:48 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-05-01 21:17 - 2010-01-25 14:48 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-05-01 21:17 - 2010-01-25 14:45 - 00329216 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-05-01 21:17 - 2010-01-25 10:35 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-05-01 21:17 - 2010-01-25 10:35 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-05-01 21:17 - 2010-01-25 10:34 - 00511488 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-05-01 21:17 - 2010-01-25 10:34 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-05-01 21:16 - 2011-01-21 17:46 - 11582464 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-01 21:16 - 2011-01-21 17:46 - 00351744 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2014-05-01 21:16 - 2010-12-20 17:39 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-05-01 21:16 - 2010-09-08 19:26 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-01 21:16 - 2010-09-08 19:26 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-01 21:16 - 2010-09-08 19:25 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-05-01 21:16 - 2010-09-08 19:24 - 03587584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-01 21:16 - 2010-09-08 19:24 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2014-05-01 21:16 - 2010-09-08 19:24 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-01 21:16 - 2010-09-08 19:24 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 06078464 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\ieencode.dll
2014-05-01 21:16 - 2010-09-08 19:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-01 21:16 - 2010-09-08 17:53 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-05-01 21:16 - 2010-09-08 17:28 - 01383424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-01 21:16 - 2010-08-31 17:41 - 00954752 _____ (Microsoft Corporation) C:\Windows\system32\mfc40.dll
2014-05-01 21:16 - 2010-08-31 17:41 - 00954288 _____ (Microsoft Corporation) C:\Windows\system32\mfc40u.dll
2014-05-01 21:16 - 2010-06-28 18:15 - 01315840 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2014-05-01 21:16 - 2010-05-04 18:53 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-01 21:16 - 2010-02-18 16:11 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2014-05-01 21:16 - 2010-02-18 13:52 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2014-05-01 21:16 - 2009-09-04 14:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2014-05-01 21:16 - 2009-03-17 05:38 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\amxread.dll
2014-05-01 21:16 - 2009-03-17 05:38 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\apilogen.dll
2014-05-01 21:16 - 2009-03-03 06:39 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2014-05-01 21:16 - 2009-03-03 06:39 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\sdohlp.dll
2014-05-01 21:16 - 2009-03-03 06:39 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll
2014-05-01 21:16 - 2009-03-03 06:37 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2014-05-01 21:16 - 2009-03-03 06:37 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\iasads.dll
2014-05-01 21:16 - 2009-03-03 06:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\iasdatastore.dll
2014-05-01 21:16 - 2009-03-03 05:04 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2014-05-01 21:16 - 2009-03-03 04:38 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\iashost.exe
2014-05-01 21:15 - 2011-07-06 16:56 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-05-01 21:15 - 2011-05-02 17:58 - 00738816 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-05-01 21:15 - 2011-04-29 14:49 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-05-01 21:15 - 2011-04-29 14:49 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-05-01 21:15 - 2010-12-17 18:43 - 02067456 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-05-01 21:15 - 2010-12-17 17:06 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-05-01 21:15 - 2010-10-18 16:01 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-05-01 21:15 - 2010-06-16 17:59 - 00898952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-05-01 21:15 - 2009-10-07 14:41 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2014-05-01 21:15 - 2009-10-07 14:41 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-05-01 21:15 - 2009-08-10 15:05 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2014-05-01 21:15 - 2009-07-14 15:00 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2014-05-01 21:15 - 2009-07-14 10:30 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.tlb
2014-05-01 21:15 - 2009-07-14 10:30 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\amcompat.tlb
2014-05-01 21:15 - 2009-04-23 14:43 - 00784896 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-05-01 21:15 - 2009-04-23 14:42 - 00636928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-05-01 21:14 - 2011-04-20 16:47 - 00375808 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-05-01 21:14 - 2011-04-20 16:44 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-05-01 21:14 - 2010-10-28 14:56 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-05-01 21:14 - 2010-08-20 17:21 - 00866816 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2014-05-01 21:14 - 2010-06-11 17:30 - 01257472 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-05-01 21:14 - 2010-01-21 17:59 - 00062464 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\system32\l3codeca.acm
2014-05-01 21:13 - 2011-04-12 16:53 - 00890368 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-05-01 21:13 - 2011-03-02 16:49 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-05-01 21:13 - 2011-03-02 16:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-05-01 21:13 - 2011-02-16 17:35 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-01 21:13 - 2011-02-16 17:32 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-05-01 21:13 - 2010-12-29 19:41 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-05-01 21:13 - 2010-12-29 19:41 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-05-01 21:13 - 2010-12-29 19:41 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\sbeio.dll
2014-05-01 21:13 - 2010-12-29 19:39 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-05-01 21:13 - 2010-08-31 17:40 - 00531968 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-05-01 21:13 - 2010-08-17 15:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-05-01 21:13 - 2010-06-18 18:43 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2014-05-01 21:13 - 2010-05-27 21:16 - 00081920 _____ (Radius Inc.) C:\Windows\system32\iccvid.dll
2014-05-01 21:13 - 2010-04-16 18:10 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-05-01 21:13 - 2010-01-15 02:04 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2014-05-01 21:13 - 2009-12-23 14:43 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-05-01 21:13 - 2009-05-04 12:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2014-05-01 21:12 - 2009-09-10 17:21 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\unregmp2.exe
2014-05-01 21:12 - 2009-07-14 14:59 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2014-05-01 21:12 - 2009-07-14 14:59 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2014-05-01 21:12 - 2009-07-14 14:58 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2014-05-01 21:10 - 2011-04-29 16:54 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-01 21:10 - 2009-12-28 14:35 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2014-05-01 21:10 - 2009-12-28 14:32 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll
2014-05-01 21:10 - 2009-12-28 14:32 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2014-05-01 21:10 - 2009-12-28 14:32 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2014-05-01 21:10 - 2009-12-28 14:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2014-05-01 21:10 - 2009-12-28 14:31 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2014-05-01 21:10 - 2009-12-28 14:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2014-05-01 21:10 - 2009-12-28 14:28 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2014-05-01 21:10 - 2009-12-28 14:28 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\avicap32.dll
2014-05-01 21:06 - 2009-04-02 14:37 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2014-05-01 21:04 - 2014-05-01 21:05 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Mozilla
2014-05-01 21:04 - 2014-05-01 21:04 - 00000862 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-01 21:04 - 2014-05-01 21:04 - 00000850 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-01 21:04 - 2014-05-01 21:04 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Mozilla
2014-05-01 21:04 - 2014-05-01 21:04 - 00000000 ____D () C:\ProgramData\Mozilla
2014-05-01 21:04 - 2014-05-01 21:04 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-05-01 21:03 - 2014-05-01 21:03 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-05-01 20:42 - 2014-05-01 20:42 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Adobe
2014-05-01 20:21 - 2014-05-01 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2014-05-01 20:20 - 2014-05-01 20:20 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-05-01 20:19 - 2014-05-01 20:22 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-05-01 20:19 - 2014-05-01 20:19 - 00000000 ____D () C:\Program Files\ATI
2014-05-01 20:18 - 2014-05-01 20:18 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Intel
2014-05-01 20:18 - 2014-05-01 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2014-05-01 20:17 - 2014-05-01 20:17 - 00000000 ____D () C:\ProgramData\Intel
2014-05-01 20:17 - 2014-05-01 20:17 - 00000000 ____D () C:\Program Files\Common Files\Intel
2014-05-01 20:17 - 2014-05-01 20:17 - 00000000 ____D () C:\Program Files\Cisco
2014-05-01 20:14 - 2014-05-05 09:46 - 01803919 _____ () C:\Windows\WindowsUpdate.log
2014-05-01 20:14 - 2014-05-01 20:14 - 00000000 ____D () C:\Windows\Options
2014-05-01 20:14 - 2014-05-01 20:14 - 00000000 ____D () C:\Program Files\Atheros
2014-05-01 20:14 - 2009-04-19 12:54 - 00045846 _____ () C:\Windows\system32\athrext.cat
2014-05-01 20:14 - 2009-03-29 19:43 - 01124864 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athr.sys
2014-05-01 20:14 - 2009-03-29 19:43 - 01124864 _____ (Atheros Communications, Inc.) C:\Windows\system32\athr.sys
2014-05-01 20:13 - 2014-05-01 20:13 - 00000000 ____D () C:\ProgramData\Atheros
2014-05-01 20:11 - 2014-05-01 20:11 - 00000000 ____D () C:\Windows\Driver Cache
2014-05-01 20:11 - 2014-05-01 20:11 - 00000000 ____D () C:\Program Files\AVerMedia
2014-05-01 20:10 - 2014-05-01 20:23 - 00002334 _____ () C:\Windows\WisAutorun.log
2014-05-01 20:04 - 2008-03-01 02:19 - 00114688 _____ (Abstract Software) C:\Users\Public\Desktop\Internet-Erlebniswelt.exe
2014-05-01 20:02 - 2014-05-01 20:02 - 00000594 _____ () C:\Users\Public\Desktop\Acer Store.lnk
2014-05-01 20:02 - 2014-05-01 20:02 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-05-01 20:02 - 2014-05-01 20:02 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-05-01 20:00 - 2014-05-01 20:00 - 00000000 ____D () C:\Users\Andreas\AppData\Local\EgisTec
2014-05-01 20:00 - 2014-05-01 20:00 - 00000000 ____D () C:\ProgramData\EgisTec
2014-05-01 19:59 - 2014-05-01 20:46 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Google
2014-05-01 19:54 - 2014-05-01 19:54 - 00000092 _____ () C:\Windows\GridV.UNI
2014-05-01 19:54 - 2014-05-01 19:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GridVista
2014-05-01 19:54 - 2014-05-01 19:54 - 00000000 ____D () C:\Program Files\Acer Inc
2014-05-01 19:54 - 2014-05-01 19:54 - 00000000 _____ () C:\Windows\setup.INI
2014-05-01 19:53 - 2014-05-01 19:53 - 00000000 ____D () C:\ProgramData\eSobi
2014-05-01 19:52 - 2014-05-02 15:19 - 00000000 ____D () C:\Program Files\eSobi
2014-05-01 19:51 - 2014-05-01 19:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2014-05-01 19:50 - 2014-05-01 19:50 - 00003070 _____ () C:\Users\Andreas\AppData\Local\MyWinLockerInstaller.txt-20140501.log
2014-05-01 19:50 - 2014-05-01 19:50 - 00001994 _____ () C:\Users\Public\Desktop\MyWinLocker.lnk
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\Program Files\EgisTec Egis Software Update
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\Program Files\EgisTec
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\Program Files\Common Files\EgisTec
2014-05-01 19:49 - 2014-05-02 20:35 - 00000000 ____D () C:\Program Files\Acer
2014-05-01 19:49 - 2014-05-01 19:49 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Acer ePower Management V4
2014-05-01 19:48 - 2014-05-01 19:48 - 00000855 _____ () C:\Windows\regfile_I.cmd
2014-05-01 19:48 - 2014-05-01 19:48 - 00000256 _____ () C:\Windows\regfile_E.cmd
2014-05-01 19:48 - 2014-05-01 19:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Backup Manager
2014-05-01 19:47 - 2008-09-20 06:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll
2014-05-01 19:45 - 2014-05-01 19:45 - 00000083 _____ () C:\Windows\LManager.UNI
2014-05-01 19:45 - 2014-05-01 19:45 - 00000000 ____D () C:\Windows\Screensavers
2014-05-01 19:45 - 2014-05-01 19:45 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Macromedia
2014-05-01 19:45 - 2014-05-01 19:45 - 00000000 ____D () C:\Program Files\Launch Manager
2014-05-01 19:44 - 2014-05-01 19:44 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01007.Wdf
2014-05-01 19:43 - 2014-05-01 20:18 - 00013994 _____ () C:\Windows\DPINST.LOG
2014-05-01 19:43 - 2009-03-19 09:57 - 01380352 _____ (SuYin) C:\Windows\Acer Crystal Eye webcam.EXE
2014-05-01 19:43 - 2009-02-20 16:20 - 00008082 _____ () C:\Windows\Suyin.reg
2014-05-01 19:43 - 2008-12-30 13:42 - 00626688 _____ () C:\Windows\Image.dll
2014-05-01 19:43 - 2008-07-29 19:29 - 00200704 _____ () C:\Windows\PLFSetI.exe
2014-05-01 19:43 - 2008-06-25 14:22 - 00020480 _____ () C:\Windows\USB_VIDEO_REG.exe
2014-05-01 19:43 - 2007-10-29 13:35 - 00000036 _____ () C:\Windows\PidList.ini
2014-05-01 19:42 - 2014-05-01 19:42 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\InstallShield
2014-05-01 19:39 - 2014-05-01 19:39 - 00000000 ____D () C:\Program Files\AmIcoSingLun
2014-05-01 19:38 - 2014-05-01 20:15 - 00319456 _____ (Microsoft Corporation) C:\Windows\DIFxAPI.dll
2014-05-01 19:38 - 2009-03-11 02:48 - 02523680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO.dll
2014-05-01 19:38 - 2009-02-10 21:21 - 00090772 _____ () C:\Windows\system32\Drivers\RtConvEQ.DAT
2014-05-01 19:38 - 2009-02-10 21:21 - 00000536 _____ () C:\Windows\system32\Drivers\RtHdatEx.dat
2014-05-01 19:38 - 2008-08-21 23:43 - 00000520 _____ () C:\Windows\system32\Drivers\RTEQEX2.dat
2014-05-01 19:38 - 2007-07-14 00:11 - 00000008 _____ () C:\Windows\system32\Drivers\rtkhdaud.dat
2014-05-01 19:38 - 2005-06-27 15:29 - 00000520 _____ () C:\Windows\system32\Drivers\RTEQEX1.dat
2014-05-01 19:38 - 2005-06-27 15:29 - 00000520 _____ () C:\Windows\system32\Drivers\RTEQEX0.dat
2014-05-01 19:37 - 2014-05-02 17:19 - 00069912 _____ () C:\Users\Andreas\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-01 19:37 - 2014-05-01 19:59 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Google
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\Documents\Eigene Google Gadgets
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\PowerCinema
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\ATI
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\AppData\Local\ATI
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\ProgramData\ATI
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Program Files\Realtek
2014-05-01 19:37 - 2009-02-13 02:52 - 00159232 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\FMAPO.dll
2014-05-01 19:36 - 2014-05-02 16:36 - 00000948 _____ () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-05-01 19:36 - 2014-05-01 19:36 - 00000953 _____ () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-01 19:36 - 2014-05-01 19:36 - 00000000 ____D () C:\Program Files\Convesoft
2014-05-01 19:35 - 2014-05-02 20:39 - 00000000 ____D () C:\Users\Andreas\AppData\Local\VirtualStore
2014-05-01 19:35 - 2014-05-01 21:51 - 00000000 ____D () C:\Program Files\Google
2014-05-01 19:35 - 2014-05-01 20:42 - 00000000 ____D () C:\ProgramData\Google
2014-05-01 19:35 - 2014-05-01 19:35 - 00000919 _____ () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2014-05-01 19:35 - 2014-05-01 19:35 - 00000000 ____D () C:\ProgramData\Partner
2014-05-01 19:34 - 2014-05-01 19:34 - 00000063 _____ () C:\Windows\system32\SETAFR_Temp_DiskPart.txt
2014-05-01 19:34 - 2014-05-01 19:34 - 00000020 ___SH () C:\Users\Andreas\ntuser.ini
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Startmenü
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Netzwerkumgebung
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Druckumgebung
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Documents\Eigene Musik
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Documents\Eigene Bilder
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\AppData\Local\Verlauf
2014-05-01 19:33 - 2014-05-01 20:18 - 00000000 ____D () C:\Users\Andreas
2014-05-01 19:33 - 2009-03-12 17:12 - 00000000 ___RD () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-05-01 19:33 - 2009-03-12 17:12 - 00000000 ___RD () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-01 19:33 - 2009-03-12 05:07 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Acer GameZone Console
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-04-28 16:34 - 2014-04-29 04:53 - 00000000 ____D () C:\AdwCleaner
2014-04-28 16:18 - 2014-04-28 16:18 - 00003930 _____ () C:\Malwarebytes 20.04 Schutz.txt
2014-04-27 16:01 - 2014-05-05 09:55 - 00000000 ____D () C:\FRST
2014-04-27 15:26 - 2014-04-27 15:26 - 00003930 _____ () C:\Malwarebytes 20.04.txt
2014-04-27 15:25 - 2014-04-27 15:25 - 00002490 _____ () C:\Malwarebytes Suchlauf 21.04.txt

==================== One Month Modified Files and Folders =======

2014-05-05 09:55 - 2014-05-05 09:54 - 00013929 _____ () C:\Users\Andreas\Downloads\FRST.txt
2014-05-05 09:55 - 2014-04-27 16:01 - 00000000 ____D () C:\FRST
2014-05-05 09:54 - 2014-05-05 09:53 - 01051648 _____ (Farbar) C:\Users\Andreas\Downloads\FRST.exe
2014-05-05 09:46 - 2014-05-01 20:14 - 01803919 _____ () C:\Windows\WindowsUpdate.log
2014-05-05 09:43 - 2014-05-03 16:45 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-05 09:41 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-05 09:41 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-05 09:41 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-04 20:57 - 2006-11-02 15:01 - 00022320 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-05-04 11:55 - 2014-05-04 11:55 - 00001155 _____ () C:\mbam.txt
2014-05-03 22:56 - 2014-05-03 22:56 - 00000000 ____D () C:\Users\Andreas\Documents\Wiesn Fotos
2014-05-03 22:56 - 2014-05-03 22:56 - 00000000 ____D () C:\Users\Andreas\Documents\Mittenwald
2014-05-03 22:56 - 2014-05-03 22:56 - 00000000 ____D () C:\Users\Andreas\Documents\Geburtstagsfeier 20.02.010
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\Frühlingsfest2010+altes foto
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\Frühlingsfest
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\biathlon bei Stadler in Regensburg
2014-05-03 22:55 - 2014-05-03 22:55 - 00000000 ____D () C:\Users\Andreas\Documents\2009-07-18 Gran Canaria2008
2014-05-03 22:54 - 2014-05-03 22:54 - 00000000 ____D () C:\Users\Andreas\Documents\2009-03-18 001
2014-05-03 22:52 - 2014-05-03 22:52 - 00000000 ___RD () C:\Users\Andreas\Documents\Notes
2014-05-03 18:36 - 2006-11-02 12:33 - 01468726 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-03 18:35 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-05-03 18:14 - 2014-05-03 18:14 - 00001189 _____ () C:\Malwarebytes Bedrohungs Suchlauf 03.05.txt
2014-05-03 17:17 - 2014-05-03 17:17 - 00004664 _____ () C:\Malwarebytes Schutzprotokoll 03.05.14.txt
2014-05-03 17:16 - 2014-05-03 17:16 - 00097998 _____ () C:\Malwarebytes Suchlauf 03.05.14.txt
2014-05-03 17:11 - 2008-01-21 04:47 - 00873954 _____ () C:\Windows\PFRO.log
2014-05-03 16:44 - 2014-05-03 16:44 - 00000903 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-05-03 16:44 - 2014-05-03 16:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware
2014-05-03 16:44 - 2014-05-03 16:44 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-03 16:44 - 2014-05-03 16:44 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware
2014-05-03 16:44 - 2014-05-03 16:43 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Andreas\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-03 07:12 - 2014-05-03 07:10 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-03 07:06 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\rescache
2014-05-03 07:02 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\de-DE
2014-05-03 06:58 - 2014-05-03 06:58 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-05-02 22:23 - 2009-03-12 12:47 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE
2014-05-02 22:06 - 2014-05-02 22:06 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\QuickScan
2014-05-02 21:50 - 2014-05-02 21:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-02 21:50 - 2014-05-02 21:50 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-02 21:48 - 2014-05-02 21:48 - 05484256 _____ (Speedchecker Limited ) C:\Users\Andreas\Downloads\pcbeschleunigen_b39555d87a4746588c157659aa250764_.exe
2014-05-02 21:37 - 2014-05-02 21:37 - 00448512 _____ (OldTimer Tools) C:\Users\Andreas\Downloads\TFC.exe
2014-05-02 21:36 - 2014-05-02 21:36 - 00700980 _____ () C:\Users\Andreas\Downloads\adblock_edge-2.0.7-sm+an+tb+fx-windows.xpi
2014-05-02 20:52 - 2009-03-12 05:07 - 00000000 ____D () C:\Program Files\NewTech Infosystems
2014-05-02 20:52 - 2009-02-11 22:16 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-05-02 20:48 - 2009-03-12 04:59 - 00000000 ____D () C:\Program Files\Acer GameZone
2014-05-02 20:39 - 2014-05-01 19:35 - 00000000 ____D () C:\Users\Andreas\AppData\Local\VirtualStore
2014-05-02 20:35 - 2014-05-01 19:49 - 00000000 ____D () C:\Program Files\Acer
2014-05-02 20:16 - 2006-11-02 14:47 - 00295752 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-05-02 20:12 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Movie Maker
2014-05-02 18:42 - 2014-05-02 18:36 - 00005086 _____ () C:\Users\Andreas\AppData\Local\MyWinLockerInstaller.txt-20140502.log
2014-05-02 18:31 - 2014-05-01 23:03 - 00006836 _____ () C:\Users\Andreas\AppData\Local\d3d9caps.dat
2014-05-02 18:29 - 2014-05-02 18:29 - 00000469 _____ () C:\Windows\SynInst.log
2014-05-02 18:22 - 2009-02-11 22:17 - 00000000 ____D () C:\Windows\system32\Macromed
2014-05-02 18:21 - 2006-11-02 14:52 - 00131291 _____ () C:\Windows\setupact.log
2014-05-02 18:20 - 2014-05-02 18:20 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_00_00.Wdf
2014-05-02 18:19 - 2009-03-12 04:46 - 00000000 ____D () C:\ProgramData\McAfee
2014-05-02 18:15 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Public
2014-05-02 18:11 - 2014-05-02 16:37 - 00006144 _____ () C:\Users\Andreas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-02 18:10 - 2014-05-02 18:10 - 00000813 _____ () C:\Users\Andreas\Desktop\IMG_4042_02 - Verknüpfung.lnk
2014-05-02 18:10 - 2014-05-02 18:10 - 00000813 _____ () C:\Users\Andreas\Desktop\IMG_4042_02 - Verknüpfung (2).lnk
2014-05-02 18:10 - 2014-05-02 18:10 - 00000798 _____ () C:\Users\Andreas\Desktop\IMG_4931 - Verknüpfung.lnk
2014-05-02 17:56 - 2014-05-02 17:56 - 00001195 _____ () C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2014-05-02 17:56 - 2014-05-02 17:56 - 00001036 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2014-05-02 17:56 - 2014-05-02 17:55 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\DVDVideoSoft
2014-05-02 17:56 - 2014-05-02 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-05-02 17:56 - 2014-05-02 17:55 - 00000000 ____D () C:\Program Files\DVDVideoSoft
2014-05-02 17:55 - 2014-05-02 17:55 - 00000000 ____D () C:\Program Files\Common Files\DVDVideoSoft
2014-05-02 17:19 - 2014-05-01 19:37 - 00069912 _____ () C:\Users\Andreas\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-02 16:44 - 2009-03-12 05:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone
2014-05-02 16:43 - 2009-03-12 05:13 - 00000000 ____D () C:\Program Files\Microsoft Works
2014-05-02 16:43 - 2009-03-12 05:11 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-02 16:43 - 2009-03-12 05:11 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-05-02 16:43 - 2009-03-12 05:10 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-05-02 16:43 - 2006-11-02 13:18 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-05-02 16:41 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\ShellNew
2014-05-02 16:36 - 2014-05-01 19:36 - 00000948 _____ () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-05-02 16:07 - 2014-05-02 16:07 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Adobe
2014-05-02 16:07 - 2009-03-12 05:26 - 00000000 ____D () C:\ProgramData\Adobe
2014-05-02 15:59 - 2014-05-02 15:59 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Apps\2.0
2014-05-02 15:29 - 2014-05-02 15:29 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\AVAST Software
2014-05-02 15:28 - 2014-05-02 15:28 - 00001877 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-05-02 15:28 - 2014-05-02 15:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-05-02 15:25 - 2014-05-02 15:26 - 00776976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-05-02 15:25 - 2014-05-02 15:26 - 00411552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-05-02 15:25 - 2014-05-02 15:26 - 00271264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-05-02 15:25 - 2014-05-02 15:26 - 00180632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-05-02 15:25 - 2014-05-02 15:26 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-05-02 15:25 - 2014-05-02 15:26 - 00057672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-05-02 15:25 - 2014-05-02 15:26 - 00054832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-05-02 15:25 - 2014-05-02 15:26 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-05-02 15:25 - 2014-05-02 15:26 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-05-02 15:25 - 2014-05-02 15:25 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-05-02 15:23 - 2014-05-02 15:23 - 00000000 ____D () C:\Program Files\AVAST Software
2014-05-02 15:19 - 2014-05-02 15:19 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-05-02 15:19 - 2014-05-01 19:52 - 00000000 ____D () C:\Program Files\eSobi
2014-05-02 15:18 - 2014-05-02 15:16 - 88882192 _____ (AVAST Software) C:\Users\Andreas\Downloads\avast_free_antivirus_setup_9_0_2018.exe
2014-05-02 05:00 - 2014-05-02 04:43 - 00183573 _____ () C:\Windows\CapsuleDll.log
2014-05-02 05:00 - 2009-02-11 22:03 - 00000171 __RSH () C:\Preload.rev
2014-05-02 04:53 - 2014-05-02 04:53 - 02927104 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\zh-TW
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\zh-HK
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\zh-CN
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\uk-UA
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\tr-TR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\th-TH
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sv-SE
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sr-Latn-CS
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sl-SI
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\sk-SK
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ru-RU
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ro-RO
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\pt-PT
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\pt-BR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\pl-PL
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\nl-NL
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\nb-NO
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\lv-LV
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\lt-LT
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ko-KR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ja-JP
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\it-IT
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\hu-HU
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\hr-HR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\he-IL
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\fr-FR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\fi-FI
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\et-EE
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\el-GR
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\bg-BG
2014-05-02 04:50 - 2014-05-02 04:50 - 00000000 ____D () C:\Windows\system32\Drivers\ar-SA
2014-05-02 04:50 - 2006-11-02 14:42 - 00000000 ____D () C:\Windows\system32\WCN
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\zh-TW
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\zh-CN
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\uk-UA
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\th-TH
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sv-SE
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sl-SI
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ru-RU
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ro-RO
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pt-PT
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pt-BR
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pl-PL
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\nl-NL
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\nb-NO
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\lv-LV
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\lt-LT
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ko-KR
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ja-JP
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\it-IT
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\hu-HU
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\hr-HR
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\he-IL
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\fr-FR
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\fi-FI
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\et-EE
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\el-GR
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\bg-BG
2014-05-02 04:50 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ar-SA
2014-05-02 04:49 - 2014-05-02 04:50 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-05-02 04:49 - 2014-05-02 04:50 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-05-02 04:49 - 2014-05-02 04:50 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2014-05-02 04:49 - 2014-05-02 04:49 - 02134528 _____ (Microsoft Corporation) C:\Windows\system32\FunctionDiscoveryFolder.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00968192 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz2.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2014-05-02 04:49 - 2014-05-02 04:49 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\WscEapPr.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\fundisc.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingWizard.exe
2014-05-02 04:49 - 2014-05-02 04:49 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingProxy.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe
2014-05-02 04:49 - 2014-05-02 04:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2014-05-02 04:49 - 2014-05-02 04:49 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\fdBthProxy.dll
2014-05-02 04:43 - 2014-05-02 04:43 - 00000000 ____D () C:\Windows\Lan
2014-05-02 04:43 - 2006-11-02 14:42 - 00000000 ____D () C:\Windows\WindowsMobile
2014-05-02 04:43 - 2006-11-02 14:42 - 00000000 ____D () C:\Windows\system32\winrm
2014-05-02 04:43 - 2006-11-02 14:42 - 00000000 ____D () C:\Windows\system32\slmgr
2014-05-02 04:43 - 2006-11-02 14:42 - 00000000 ____D () C:\Windows\system32\Branding
2014-05-02 04:43 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\DigitalLocker
2014-05-02 04:43 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Calendar
2014-05-02 04:43 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\MUI
2014-05-02 03:45 - 2014-05-02 03:45 - 00000000 ____D () C:\Backup
2014-05-01 23:03 - 2014-05-01 23:03 - 00000000 ____D () C:\Users\Public\Documents\Acer
2014-05-01 21:52 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\system32\XPSViewer
2014-05-01 21:51 - 2014-05-01 21:51 - 00000000 ____D () C:\Windows\system32\WindowsPowerShell
2014-05-01 21:51 - 2014-05-01 19:35 - 00000000 ____D () C:\Program Files\Google
2014-05-01 21:51 - 2006-11-02 13:18 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-01 21:29 - 2014-05-01 21:28 - 00288496 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-05-01 21:05 - 2014-05-01 21:04 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Mozilla
2014-05-01 21:04 - 2014-05-01 21:04 - 00000862 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-01 21:04 - 2014-05-01 21:04 - 00000850 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-01 21:04 - 2014-05-01 21:04 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Mozilla
2014-05-01 21:04 - 2014-05-01 21:04 - 00000000 ____D () C:\ProgramData\Mozilla
2014-05-01 21:04 - 2014-05-01 21:04 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-05-01 21:03 - 2014-05-01 21:03 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-05-01 20:46 - 2014-05-01 19:59 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Google
2014-05-01 20:42 - 2014-05-01 20:42 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Adobe
2014-05-01 20:42 - 2014-05-01 19:35 - 00000000 ____D () C:\ProgramData\Google
2014-05-01 20:24 - 2008-02-06 01:25 - 00000000 ____D () C:\Windows\Panther
2014-05-01 20:24 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\NDF
2014-05-01 20:23 - 2014-05-01 20:10 - 00002334 _____ () C:\Windows\WisAutorun.log
2014-05-01 20:22 - 2014-05-01 20:19 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-05-01 20:21 - 2014-05-01 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2014-05-01 20:20 - 2014-05-01 20:20 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-05-01 20:19 - 2014-05-01 20:19 - 00000000 ____D () C:\Program Files\ATI
2014-05-01 20:18 - 2014-05-01 20:18 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Intel
2014-05-01 20:18 - 2014-05-01 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2014-05-01 20:18 - 2014-05-01 19:43 - 00013994 _____ () C:\Windows\DPINST.LOG
2014-05-01 20:18 - 2014-05-01 19:33 - 00000000 ____D () C:\Users\Andreas
2014-05-01 20:18 - 2006-11-02 13:18 - 00000000 __RHD () C:\Users\Default
2014-05-01 20:17 - 2014-05-01 20:17 - 00000000 ____D () C:\ProgramData\Intel
2014-05-01 20:17 - 2014-05-01 20:17 - 00000000 ____D () C:\Program Files\Common Files\Intel
2014-05-01 20:17 - 2014-05-01 20:17 - 00000000 ____D () C:\Program Files\Cisco
2014-05-01 20:17 - 2009-02-11 22:12 - 00000000 ____D () C:\Program Files\Intel
2014-05-01 20:15 - 2014-05-01 19:38 - 00319456 _____ (Microsoft Corporation) C:\Windows\DIFxAPI.dll
2014-05-01 20:15 - 2008-02-06 01:29 - 00005949 _____ () C:\Windows\TSSysprep.log
2014-05-01 20:14 - 2014-05-01 20:14 - 00000000 ____D () C:\Windows\Options
2014-05-01 20:14 - 2014-05-01 20:14 - 00000000 ____D () C:\Program Files\Atheros
2014-05-01 20:13 - 2014-05-01 20:13 - 00000000 ____D () C:\ProgramData\Atheros
2014-05-01 20:11 - 2014-05-01 20:11 - 00000000 ____D () C:\Windows\Driver Cache
2014-05-01 20:11 - 2014-05-01 20:11 - 00000000 ____D () C:\Program Files\AVerMedia
2014-05-01 20:11 - 2006-11-02 14:48 - 00005506 _____ () C:\Windows\DtcInstall.log
2014-05-01 20:04 - 2014-05-02 04:43 - 00000193 _____ () C:\Windows\USER.XML
2014-05-01 20:04 - 2009-02-11 22:11 - 01082834 _____ () C:\Windows\launApp.log
2014-05-01 20:04 - 2008-02-06 01:39 - 00000000 ____D () C:\Elements
2014-05-01 20:02 - 2014-05-01 20:02 - 00000594 _____ () C:\Users\Public\Desktop\Acer Store.lnk
2014-05-01 20:02 - 2014-05-01 20:02 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-05-01 20:02 - 2014-05-01 20:02 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-05-01 20:00 - 2014-05-01 20:00 - 00000000 ____D () C:\Users\Andreas\AppData\Local\EgisTec
2014-05-01 20:00 - 2014-05-01 20:00 - 00000000 ____D () C:\ProgramData\EgisTec
2014-05-01 20:00 - 2009-02-11 22:03 - 00083660 _____ () C:\Windows\PLaunch.log
2014-05-01 19:59 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Google
2014-05-01 19:55 - 2009-02-11 22:03 - 00000206 _____ () C:\Windows\Factory.xml
2014-05-01 19:54 - 2014-05-01 19:54 - 00000092 _____ () C:\Windows\GridV.UNI
2014-05-01 19:54 - 2014-05-01 19:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GridVista
2014-05-01 19:54 - 2014-05-01 19:54 - 00000000 ____D () C:\Program Files\Acer Inc
2014-05-01 19:54 - 2014-05-01 19:54 - 00000000 _____ () C:\Windows\setup.INI
2014-05-01 19:54 - 2009-03-12 05:26 - 00004535 _____ () C:\ProgramData\ArcadeDeluxe2.log
2014-05-01 19:54 - 2009-03-12 05:26 - 00000000 ____D () C:\Program Files\Acer Arcade Deluxe
2014-05-01 19:53 - 2014-05-01 19:53 - 00000000 ____D () C:\ProgramData\eSobi
2014-05-01 19:53 - 2009-03-12 05:26 - 00000000 ____D () C:\ProgramData\CyberLink
2014-05-01 19:51 - 2014-05-01 19:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2014-05-01 19:50 - 2014-05-01 19:50 - 00003070 _____ () C:\Users\Andreas\AppData\Local\MyWinLockerInstaller.txt-20140501.log
2014-05-01 19:50 - 2014-05-01 19:50 - 00001994 _____ () C:\Users\Public\Desktop\MyWinLocker.lnk
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\Program Files\EgisTec Egis Software Update
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\Program Files\EgisTec
2014-05-01 19:50 - 2014-05-01 19:50 - 00000000 ____D () C:\Program Files\Common Files\EgisTec
2014-05-01 19:49 - 2014-05-01 19:49 - 00000000 ____D () C:\Users\Andreas\AppData\Local\Acer ePower Management V4
2014-05-01 19:48 - 2014-05-01 19:48 - 00000855 _____ () C:\Windows\regfile_I.cmd
2014-05-01 19:48 - 2014-05-01 19:48 - 00000256 _____ () C:\Windows\regfile_E.cmd
2014-05-01 19:48 - 2014-05-01 19:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Backup Manager
2014-05-01 19:45 - 2014-05-01 19:45 - 00000083 _____ () C:\Windows\LManager.UNI
2014-05-01 19:45 - 2014-05-01 19:45 - 00000000 ____D () C:\Windows\Screensavers
2014-05-01 19:45 - 2014-05-01 19:45 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\Macromedia
2014-05-01 19:45 - 2014-05-01 19:45 - 00000000 ____D () C:\Program Files\Launch Manager
2014-05-01 19:44 - 2014-05-01 19:44 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01007.Wdf
2014-05-01 19:42 - 2014-05-01 19:42 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\InstallShield
2014-05-01 19:42 - 2009-06-13 12:14 - 00002851 _____ () C:\RHDSetup.log
2014-05-01 19:39 - 2014-05-01 19:39 - 00000000 ____D () C:\Program Files\AmIcoSingLun
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\Documents\Eigene Google Gadgets
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\PowerCinema
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\AppData\Roaming\ATI
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Users\Andreas\AppData\Local\ATI
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\ProgramData\ATI
2014-05-01 19:37 - 2014-05-01 19:37 - 00000000 ____D () C:\Program Files\Realtek
2014-05-01 19:37 - 2009-03-12 05:28 - 00000000 ____D () C:\Program Files\Common Files\InstallShield
2014-05-01 19:37 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\system32\restore
2014-05-01 19:36 - 2014-05-01 19:36 - 00000953 _____ () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-01 19:36 - 2014-05-01 19:36 - 00000000 ____D () C:\Program Files\Convesoft
2014-05-01 19:35 - 2014-05-01 19:35 - 00000919 _____ () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2014-05-01 19:35 - 2014-05-01 19:35 - 00000000 ____D () C:\ProgramData\Partner
2014-05-01 19:35 - 2009-02-11 22:03 - 00000000 ____D () C:\Acer
2014-05-01 19:34 - 2014-05-01 19:34 - 00000063 _____ () C:\Windows\system32\SETAFR_Temp_DiskPart.txt
2014-05-01 19:34 - 2014-05-01 19:34 - 00000020 ___SH () C:\Users\Andreas\ntuser.ini
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Startmenü
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Netzwerkumgebung
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Druckumgebung
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Documents\Eigene Musik
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\Documents\Eigene Bilder
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:34 - 2014-05-01 19:34 - 00000000 _SHDL () C:\Users\Andreas\AppData\Local\Verlauf
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-05-01 19:29 - 2014-05-01 19:29 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-05-01 19:29 - 2006-11-02 13:18 - 00000000 ____D () C:\Program Files\Windows NT
2014-04-29 04:53 - 2014-04-28 16:34 - 00000000 ____D () C:\AdwCleaner
2014-04-28 16:18 - 2014-04-28 16:18 - 00003930 _____ () C:\Malwarebytes 20.04 Schutz.txt
2014-04-27 15:26 - 2014-04-27 15:26 - 00003930 _____ () C:\Malwarebytes 20.04.txt
2014-04-27 15:25 - 2014-04-27 15:25 - 00002490 _____ () C:\Malwarebytes Suchlauf 21.04.txt

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit
/CODE]

Alt 08.05.2014, 09:25   #37
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Hallo Didu,

das ist jetzt ein Scan von FRST, nun speicherst du die Fixlist.txt unter C:\Users\Andreas\Downloads (Wahrscheinlich steht bei dir C:\Benutzer\Andreas\Downloads) aus meinem Post hier
in den oben genannten Verzeichnis ab startest FRST und drückst auf Fix

Alt 08.05.2014, 10:58   #38
Didu
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:06-05-2014
Ran by Andreas at 2014-05-08 11:54:39 Run:1
Running from C:\Users\Andreas\Downloads
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
SearchScopes: HKLM - {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm070^YYA^de&si=flvrunner&ptb=4EFA316D-238B-4E04-8FE7-E58EFD781597&ind=2014050114&n=780bf742&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKCU - DefaultScope {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm070^YYA^de&si=flvrunner&ptb=4EFA316D-238B-4E04-8FE7-E58EFD781597&ind=2014050114&n=780bf742&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKCU - {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = hxxp://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm070^YYA^de&si=flvrunner&ptb=4EFA316D-238B-4E04-8FE7-E58EFD781597&ind=2014050114&n=780bf742&psa=&st=sb&searchfor={searchTerms}
         
*****************

HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key not found.

==== End of Fixlog ====
         
Bin Jetzt unten auf Order durchsuchen und dann auf Andreas>Download und auf Speichern. Jetzt müsste es passen oder? Sorry hab soviel versucht und probiert.

Alt 08.05.2014, 21:05   #39
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Hallo Didu,

ja, das sieht sehr gut aus.
Wenn du keine Fragen mehr hast, dann wären wir jetzt fertig .

Alt 08.05.2014, 22:35   #40
Didu
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Erstmal Danke das du soviel Geduld mit mir hattest.
Jetzt bin ich virenfrei oder? Darf ich die alten Daten Andreas C Backup dann löschen. Weil wie gesagt hab das nur überspielt. Ansonsten hab ich Malwarebytes, Avast, No Skript, Adblock. Hab das jetzt schon kapiert mit No Skript. Man kann auch Seiten erlauben. Darum ging die Funktion mit Raute und so nicht. Da Ich Firefox nehme würde ich den Internet Explorer gerne Deinstallieren. Geht der komplett weg wenn ich unter Programme gehe. Den Pc Beschleuniger hab ich wieder deinstalliert. Und die Ganzen Frst und Fixlist auch löschen? Der My Winlocker zeigt öfter an ihr will inatilisiert werden mit Kennwort und Yo Safe. Für was ist der? Bin echt froh das du so geduldig warst.

Alt 08.05.2014, 23:32   #41
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Hallo Didu,

Zitat:
Erstmal Danke das du soviel Geduld mit mir hattest.
Bitte sehr.

Zitat:
Jetzt bin ich virenfrei oder?
In deinen Logs ist für mich nichts mehr erkennbar.
Zitat:
Darf ich die alten Daten Andreas C Backup dann löschen. Weil wie gesagt hab das nur überspielt.
Ich weiß nicht genau, was dort alles drin ist, und ob du davon noch irgendwas brauchst. Behalt es noch ein wenig, wenn du genug Kapazitäten hast.
Zitat:
Ansonsten hab ich Malwarebytes, Avast, No Skript, Adblock. Hab das jetzt schon kapiert mit No Skript. Man kann auch Seiten erlauben. Darum ging die Funktion mit Raute und so nicht.
Ja, das hatte ich ja auch geschrieben
Zitat:
Da Ich Firefox nehme würde ich den Internet Explorer gerne Deinstallieren. Geht der komplett weg wenn ich unter Programme gehe.
Da der Explorer gerade in Vista noch sehr mit dem Betriebssystem verschmolzen ist, solltest du den so lassen, wie er ist und ihn auch updaten. Das kannst du, wenn du das noch nicht gemacht hast, gerade gleich nochmal machen
  • Internetexplorer
    Dein InternetExplorer ist nicht mehr aktuell. Besuche diese Microsoftseite und lade dir von dort den neuesten Internetexplorer für dein Betriebssystem herunter
Zitat:
Den Pc Beschleuniger hab ich wieder deinstalliert. Und die Ganzen Frst und Fixlist auch löschen?
Gut Um FRST zu deinstallieren kannst du dir nochmals delfix runterladen.

Schritt 1
Downloade dir bitte delfix auf deinen Desktop.
  • Schließe alle offenen Programme.
  • Starte die delfix.exe mit einem Doppelklick.
  • Setze vor jede Funktion ein Häkchen.
  • Klicke auf Start.
  • DelFix entfernt u. a. alle verwendeten Programme und löscht sich abschließend selbst.


Zitat:
Der My Winlocker zeigt öfter an ihr will inatilisiert werden mit Kennwort und Yo Safe. Für was ist der? Bin echt froh das du so geduldig warst.
MyWinlocker ist ein Dateienverschlüsselungsprogramm, AcerPCs bringen das Programm vorinstalliert mit sich mit
Yo-Safe ist sozusagen der Container in den du diese Dateien verschiebst und mit dem Passwort gelangst du dann in diesen Safe.

Alt 10.05.2014, 10:22   #42
Didu
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Code:
ATTFilter
# DelFix v10.7 - Datei am 10/05/2014 um 11:17:29 erstellt
# Aktualisiert am 27/04/2014 von Xplode
# Benutzer : Andreas - ANDREAS-PC
# Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)

~ Aktiviere die Benutzerkontensteuerung ... OK

~ Entferne die Bereinigungsprogramme ...

Gelöscht : C:\FRST
Gelöscht : C:\AdwCleaner
Gelöscht : C:\Users\Andreas\Downloads\Addition.txt
Gelöscht : C:\Users\Andreas\Downloads\Fixlog.txt
Gelöscht : C:\Users\Andreas\Downloads\FRST.exe
Gelöscht : C:\Users\Andreas\Downloads\FRST.txt
Gelöscht : C:\Users\Andreas\Downloads\TFC.exe
Gelöscht : HKLM\SOFTWARE\OldTimer Tools

~ Erstelle ein Backup der Registrierungsdatenbank ... OK

~ Lösche die Wiederherstellungspunkte ...

Gelöscht : RP #75 [Windows Vista™ Service Pack 2 | 05/06/2014 07:16:04]
Gelöscht : RP #76 [Windows Update | 05/07/2014 08:16:15]
Gelöscht : RP #77 [Windows Update | 05/08/2014 09:27:29]
Gelöscht : RP #78 [Windows Update | 05/08/2014 21:53:20]
Gelöscht : RP #79 [Windows-Modulinstallation | 05/09/2014 18:41:00]
Gelöscht : RP #80 [Windows Update | 05/09/2014 18:50:28]
Gelöscht : RP #81 [Windows Update | 05/10/2014 09:00:26]

Ein neuer Wiederherstellungspunkt wurde erstellt !

~ Stelle die Systemeinstellungen wieder her ... OK

########## - EOF - ##########
         

Alt 10.05.2014, 23:08   #43
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Hallo Didu,

Sehr gut .

Hast du den Internetexplorer auch noch aktualisiert?

Alt 10.05.2014, 23:24   #44
Didu
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



ja hab ich. Ist der my Min Locker jetzt wichtig? soll ich den inatilisieren?
Hab mir jetzt den Adobe Reader geholt und jetzt das Mc Affe Security dazu bekommen?
Soll ich das einschalten? Was ist am besten um den Akku vom Laptop zu schonen? Weil viele meinten Virenprogramme aus? Aber das ist doch Blödsinn meines Erachtens.
Danke bin echt hapopy das du mir so geholfen hast.

Alt 10.05.2014, 23:50   #45
Bootsektor
Ruhe in Frieden
† 2019
 
Virus(E- Mail Hacker)? - Standard

Virus(E- Mail Hacker)?



Hallo Didu,

Zitat:
Ist der my Min Locker jetzt wichtig? soll ich den inatilisieren?
Ich kann nicht beurteilen, ob Daten hast, du du so sichern willst, dass da kein anderer (außer dir mit Passwort) drauf Zugriff hat. Falls du das nicht hast, kannst du das gerne deinstallieren.

Zitat:
Hab mir jetzt den Adobe Reader geholt und jetzt das Mc Affe Security dazu bekommen?
und deswegen schrieb ich extra:
Zitat:
Achte besonders bei der Installation von Programmen darauf, ob sich weitere Software mitinstallieren möchte, wähle wo immer es geht die benutzerdefinierte Installation und wähle alles ab, was nichts mit dem Programm zu tun hat, welches du dir installieren möchtest.
Das kannst du gerne wieder deinstallieren. Ist überflüssig.

Zitat:
Was ist am besten um den Akku vom Laptop zu schonen? Weil viele meinten Virenprogramme aus? Aber das ist doch Blödsinn meines Erachtens.
Ja, da hast du vollkommen recht, das ist wirklich Blödsinn
Um die Akkulaufzeit zu verlängern, sollte der Akku keinen großen Temperaturschwankungen ausgesetzt sein, du solltest den Akku erst dann laden, wenn er eine Restkapazität von 10 - 15 % hat. Wenn dein Laptop länger am Netz ist, solltest du den Akku entfernen.
Um Strom zu sparen, kannst du auch die Helligkeit des Laptopmonitors reduzieren.

Zitat:
Danke bin echt hapopy das du mir so geholfen hast.
Bitte, sehr gerne

Antwort

Themen zu Virus(E- Mail Hacker)?
adresse, anderen, avast, avira, datei, email, freunde, gehackt, installiert, konto, löschen, mails, malwarebytes, meldung, problem, pup.optional.audiotoaudiotoolbar.a, pup.optional.conduit.a, pup.optional.mindspark, pup.optional.mindspark.a, pup.optional.opencandy, registrierung, starten, virus




Ähnliche Themen: Virus(E- Mail Hacker)?


  1. Rent-A-Hacker: Online-Markplatz für Hacker-Jobs
    Nachrichten - 19.01.2015 (0)
  2. Bitcoin-Erfinder Satoshi Nakamoto: Hacker will Mail-Account gekapert haben
    Nachrichten - 09.09.2014 (0)
  3. Kann OTL.exe nicht ausführen; Vorrausgehend Virus/ Hacker- Probleme
    Plagegeister aller Art und deren Bekämpfung - 18.01.2014 (3)
  4. Hacker dringen in E-Mail-Konten an der Ruhr-Universität ein
    Nachrichten - 12.02.2013 (0)
  5. E-Mail Konto (Trojaner oder Hacker) ?
    Plagegeister aller Art und deren Bekämpfung - 27.12.2012 (33)
  6. Mail PW gestohlen, nach Passwortänderung hatte "Hacker" direkt wieder das PW
    Plagegeister aller Art und deren Bekämpfung - 02.11.2012 (8)
  7. lost+found: Hacker-Fehlalarm, Hacker-Sündenbock, Captcha-Hacker, Hacker-Apps
    Nachrichten - 02.11.2012 (0)
  8. Virus oder Hacker?
    Log-Analyse und Auswertung - 19.05.2012 (3)
  9. Windows 7 Virus und Hacker
    Plagegeister aller Art und deren Bekämpfung - 13.12.2011 (8)
  10. Wenn Hacker Hacker hacken
    Nachrichten - 26.07.2010 (0)
  11. Habe ich einen Hacker/Virus/Trojaner?
    Log-Analyse und Auswertung - 01.06.2010 (5)
  12. Hacker ??? Virus ???
    Log-Analyse und Auswertung - 17.06.2009 (0)
  13. Komisch.. Hacker / Virus auf PC?!
    Mülltonne - 25.10.2008 (0)
  14. Hacker ? O.O Msn-virus
    Plagegeister aller Art und deren Bekämpfung - 13.10.2007 (6)
  15. Bekomme städnig Werbeinblendung-virus/hacker?
    Log-Analyse und Auswertung - 31.07.2007 (5)
  16. sp.exe - Trojaner, Virus oder Hacker??? -> Help :(
    Plagegeister aller Art und deren Bekämpfung - 31.05.2007 (58)
  17. Schweres Virus,Trojaner und evtl. hacker problem!!
    Plagegeister aller Art und deren Bekämpfung - 06.05.2007 (28)

Zum Thema Virus(E- Mail Hacker)? - Hallo Didu, nachdem du die Fixlist erstellt hast und in dem gleichen Ordner gespeichert hast und dann auch FRST gestartet hast, musst du auf den Fixbutton drücken, dann sollte das - Virus(E- Mail Hacker)?...
Archiv
Du betrachtest: Virus(E- Mail Hacker)? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.