|
Log-Analyse und Auswertung: Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
29.05.2014, 17:22 | #1 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Hallo liebe Mitglieder des Trojanerboards, ich suche Hilfe, um einen Trojaner in meinem System loszuwerden. Mein Betriebssystem ist Windows Vista. AVIRA (Free Antivirus Personal) findet bei mir seit einigen Tagen immer wieder den Trojaner TR/Patched.Ren.Gen [trojan] im C:/Windows/Temp Verzeichnis - in unterschiedlichen und immer wieder neuen Dateien (siehe Logfiles unten). Ein Entfernen über die Option im Echtzeitscanner von Avira funktioniert nicht. Auch nachdem nach einem ausführlichen Scan eine gefundene Datei in die Quarantäne verschoben und gelöscht wurde, findet Avira immer wieder neue, angeblich infizierte Dateien im Temp Verzeichnis. Über Tipps/Unterstützung zur Beseitigung des Trojaners würde ich mich sehr freuen und möchte Euch im Voraus für Eure Hilfe danken! Anbei die Logfiles, die ich bereits erstellt habe (Avira Funde, defogger) (FRST und Addition als Anhang im Archiv, da zu groß) GMER ist bei mir leider nicht richtig durchgelaufen, auch nicht im abgesicherten Modus. AVIRA Code:
ATTFilter Exportierte Ereignisse: 29.05.2014 12:08 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\e3ac9abd-02ab-42c5-8078-70e345faca5c\tmp000025d1\tmp000085ce' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 29.05.2014 12:08 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\e3ac9abd-02ab-42c5-8078-70e345faca5c\tmp000025d1\tmp000084d4' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 28.05.2014 12:09 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\8f388b7f-cbfd-44f0-9405-dc8ed582bdea\tmp00003290\tmp0000850f' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 28.05.2014 12:09 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\8f388b7f-cbfd-44f0-9405-dc8ed582bdea\tmp00003290\tmp00008425' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 28.05.2014 12:06 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\8f388b7f-cbfd-44f0-9405-dc8ed582bdea\tmp00003290\tmp00006a12' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff erlauben 28.05.2014 12:06 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\8f388b7f-cbfd-44f0-9405-dc8ed582bdea\tmp00003290\tmp00006a12' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 21:41 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\$RECYCLE.BIN\S-1-5-21-12024964-3179225816-4108263994-1000\$RN10LHY' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 21:25 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\$RECYCLE.BIN\S-1-5-21-12024964-3179225816-4108263994-1000\$RN10LHY' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 21:23 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\$RECYCLE.BIN\S-1-5-21-12024964-3179225816-4108263994-1000\$RN10LHY' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Übergeben an Scanner 27.05.2014 21:21 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp0000ad7c' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 16:30 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\4b426e7a-7159-4509-b655-845b0d5d461e\tmp0000609b\tmp0000955c' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 15:20 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp0000ad7c' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 12:10 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\4b426e7a-7159-4509-b655-845b0d5d461e\tmp0000609b\tmp0000a9f3' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 12:10 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\4b426e7a-7159-4509-b655-845b0d5d461e\tmp0000609b\tmp0000a8bd' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 12:08 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\4b426e7a-7159-4509-b655-845b0d5d461e\tmp0000609b\tmp0000955c' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 12:07 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\4b426e7a-7159-4509-b655-845b0d5d461e\tmp0000609b\tmp00008ebb' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 27.05.2014 12:07 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\4b426e7a-7159-4509-b655-845b0d5d461e\tmp0000609b\tmp00008ebb' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 26.05.2014 12:11 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp0000ad7c' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 26.05.2014 12:11 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp0000ad27' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 26.05.2014 12:11 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp0000ad27' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 26.05.2014 12:10 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp0000ab4d' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 26.05.2014 12:10 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp0000aa37' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 26.05.2014 12:07 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp00009082' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 26.05.2014 12:07 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\64dafda0-6e60-43a6-9192-a5588f6cbb2e\tmp000055c7\tmp00009082' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 25.05.2014 17:59 [System-Scanner] Malware gefunden Die Datei 'C:\Windows\Temp\eb927f30-d2a3-487f-89da-7b17af529041\tmp000013c9\tmp0000b679' enthielt einen Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan]. Durchgeführte Aktion(en): Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '5676b24a.qua' verschoben! 23.05.2014 15:14 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 23.05.2014 12:07 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\8655748a-2f63-4b12-b759-c30706ec55d7\tmp000077d3\tmp00008ff2' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 23.05.2014 12:07 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\8655748a-2f63-4b12-b759-c30706ec55d7\tmp000077d3\tmp00008ff2' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 21.05.2014 21:58 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 21.05.2014 16:51 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 21.05.2014 14:42 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\eb927f30-d2a3-487f-89da-7b17af529041\tmp000013c9\tmp0000b679' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 21.05.2014 14:42 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\eb927f30-d2a3-487f-89da-7b17af529041\tmp000013c9\tmp0000b65b' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 21.05.2014 14:41 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\eb927f30-d2a3-487f-89da-7b17af529041\tmp000013c9\tmp0000b433' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 21.05.2014 14:38 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\eb927f30-d2a3-487f-89da-7b17af529041\tmp000013c9\tmp00009bd5' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 21.05.2014 14:10 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 20.05.2014 19:21 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 20.05.2014 03:09 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 18.05.2014 21:26 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 18.05.2014 16:44 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp0000ab01' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 18.05.2014 16:41 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp00008cfe' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern 18.05.2014 16:41 [Echtzeit-Scanner] Malware gefunden In der Datei 'C:\Windows\Temp\89759ab4-743c-4e33-a912-d51fbfbd505e\tmp0000638d\tmp00008cfe' wurde ein Virus oder unerwünschtes Programm 'TR/Patched.Ren.Gen' [trojan] gefunden. Ausgeführte Aktion: Zugriff verweigern Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 15:22 on 29/05/2014 (Tamara) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- |
29.05.2014, 19:29 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Hi und
__________________Logs bitte nicht anhängen, notfalls splitten und über mehrere Postings verteilt posten Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
29.05.2014, 19:58 | #3 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Hallo cosinus,
__________________sorry, ich dachte, wenn ich gleich zu Beginn mehrere Beiträge poste, würde es so aussehen, als ob der Beitrag schon in Bearbeitung wäre. Anbei also nochmal der Logfile von FRST und die Addition dazu Danke! und viele Grüße Tamara FRST.txt - Teil 1 Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-05-2014 02 Ran by Tamara (administrator) on TAMARA-PC on 29-05-2014 15:37:26 Running from C:\Users\Tamara\Desktop Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Windows\System32\audiodg.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe () C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe () C:\Program Files\ATKGFNEX\GFNEXSrv.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Cisco Systems, Inc.) C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe (ASUS) C:\Program Files\ASUS\ASUS CopyProtect\ASPG.exe (ASUS) C:\Program Files\ASUS\SmartLogon\sensorsrv.exe () C:\Program Files\ASUS\ASUS Live Update\ALU.exe (ATK) C:\Program Files\P4G\BatteryLife.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe () C:\Program Files\ASUS\Wireless Console 3\wcourier.exe (ATK) C:\Program Files\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe (ASUSTeK) C:\Windows\System32\ACEngSvr.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe (CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe (ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe (VIA) C:\Program Files\VIA\VIAudioi\VDeck\VDECK.EXE (Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ASUS) C:\Program Files\ASUS\ATK Media\DMedia.exe (ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe (ASUS) C:\Windows\AsScrPro.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files\DivX\DivX Update\DivXUpdate.exe (Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe (Lavasoft) C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Lavasoft) C:\ProgramData\Search Protection\SearchProtection.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe () C:\Users\Tamara\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe (SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (InterVideo Inc.) C:\Program Files\Sandisk\Common\Bin\WinCinemaMgr.exe (Dropbox, Inc.) C:\Users\Tamara\AppData\Roaming\Dropbox\bin\Dropbox.exe (ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe () C:\Users\Tamara\Desktop\Defogger.exe (Microsoft Corporation) C:\Windows\System32\conime.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation) HKLM\...\Run: [DisableS3S4] => c:\DisableS3S4.cmd HKLM\...\Run: [UpdateLBPShortCut] => C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.) HKLM\...\Run: [CLMLServer] => C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [104936 2008-07-19] (CyberLink) HKLM\...\Run: [UpdateP2GoShortCut] => C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [218408 2008-12-04] (CyberLink Corp.) HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [98304 2008-08-18] (ASUS) HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [8105984 2008-09-03] (ASUS) HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2009-03-19] (Advanced Micro Devices, Inc.) HKLM\...\Run: [HDAudDeck] => C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [1392640 2009-04-30] (VIA) HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [540576 2009-04-21] (ELAN Microelectronic Corp.) HKLM\...\Run: [Wireless Console 3] => C:\Program Files\ASUS\Wireless Console 3\wcourier.exe [1593344 2009-02-07] () HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMedia.exe [159744 2008-08-19] (ASUS) HKLM\...\Run: [ADSMTray] => C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [266240 2008-04-01] (ASUSTek Computer Inc.) HKLM\...\Run: [ACMON] => C:\Program Files\ASUS\Splendid\ACMON.exe [851968 2008-10-01] (ATK) HKLM\...\Run: [ASUS Camera ScreenSaver] => C:\Windows\AsScrProlog.exe [47672 2009-08-20] () HKLM\...\Run: [ASUS Screen Saver Protector] => C:\Windows\AsScrPro.exe [3054136 2009-08-20] (ASUS) HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-27] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [DivXMediaServer] => C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-20] (DivX, LLC) HKLM\...\Run: [DivXUpdate] => C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1263952 2013-02-13] () HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH) HKLM\...\Run: [Ad-Aware Browsing Protection] => C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [559696 2013-09-27] (Lavasoft) HKLM\...\Run: [Search Protection] => C:\ProgramData\Search Protection\SearchProtection.exe [949512 2014-02-17] (Lavasoft) HKLM\...\Run: [] => [X] HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe [3643224 2014-01-23] () HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-21-12024964-3179225816-4108263994-1000\...\Run: [SRS Premium Sound] => C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe [3405048 2009-04-07] (SRS Labs, Inc.) HKU\S-1-5-21-12024964-3179225816-4108263994-1000\...\Run: [Amazon Cloud Player] => C:\Users\Tamara\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3139072 2013-11-24] () HKU\S-1-5-21-12024964-3179225816-4108263994-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.) HKU\S-1-5-21-12024964-3179225816-4108263994-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [5625624 2014-01-06] (SUPERAntiSpyware) Lsa: [Notification Packages] scecli C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ WinCinema Manager.lnk ShortcutTarget: WinCinema Manager.lnk -> C:\Program Files\Sandisk\Common\Bin\WinCinemaMgr.exe (InterVideo Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{567C654B-7FE9-4970-8323-56E8191D1941}\_71A97E24F422AA49EDBF39.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VPN Client.lnk ShortcutTarget: VPN Client.lnk -> C:\Windows\Installer\{1CE60928-8325-49A8-8B06-633E48DD2B67}\Icon3E5562ED7.ico () Startup: C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Tamara\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) |
29.05.2014, 20:02 | #4 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen FRST.txt - Teil 2 Code:
ATTFilter ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-05-18&ent=hp&u=B0099D56A7B243F7FCD5B85378C0A739 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.asus.com URLSearchHook: HKCU - Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll () SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-05-18&hsimp=yhs-lavasoft&ent=ch&q={searchTerms} SearchScopes: HKCU - {D98D1022-928E-4EF2-A332-E7504173CA10} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-4&o=APN10261&src=crm&q={searchTerms}&locale=de_DE&apn_ptnrs=^AGS&apn_dtid=^YYYYYY^YY^DE&apn_uid=7383bc1f-c53b-45c8-ba44-ef72ecfbaf0a&apn_sauid=098E62C3-39E1-4A94-98DE-1AA4DC1E09A5 BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO: Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll () BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Ad-Aware Security Add-on - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\Lavasoft\AdAware SecureSearch Toolbar\adawareDx.dll () Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [115440 2013-05-08] (SuperAdBlocker.com) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default FF SearchEngineOrder.1: Ask.com Search FF Homepage: hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-05-18&ent=hp&u=B0099D56A7B243F7FCD5B85378C0A739 FF Keyword.URL: hxxp://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_8&idate=__installtime__&hsimp=yhs-lavasoft&ent=bs&q= FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @citrixonline.com/appdetectorplugin - C:\Users\Tamara\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\searchplugins\askcom.xml FF SearchPlugin: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\searchplugins\askcomsearch.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\adawaretb.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Microsoft .NET Framework Assistant - C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2011-02-18] FF Extension: Ad-Aware Security Add-on - C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\Extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c} [2014-05-18] FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-05-10] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA} [2014-05-10] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-05-10] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013-06-26] ========================== Services (Whitelisted) ================= R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [120088 2013-10-11] (SUPERAntiSpyware.com) R2 ADSMService; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [225280 2008-03-31] (ASUSTek Computer Inc.) R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1039440 2014-05-27] (Avira Operations GmbH & Co. KG) R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [100920 2008-08-14] () R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () R2 CVPND; C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe [1528616 2010-09-27] (Cisco Systems, Inc.) R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe [651232 2014-01-23] () R2 SRS_VolSync_Service; C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe [70880 2009-04-07] (SRS Labs, Inc.) S2 Norton Internet Security; "C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe" /s "Norton Internet Security" /m "C:\Program Files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll" /prefetch:1 ==================== Drivers (Whitelisted) ==================== R0 ahcix86s; C:\Windows\System32\DRIVERS\ahcix86s.sys [173576 2008-05-27] (AMD Technologies Inc.) R3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [4386304 2009-03-19] (ATI Technologies Inc.) R0 AsDsm; C:\Windows\system32\Drivers\AsDsm.sys [30264 2009-08-20] (ASUSTek Computer Inc) R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [93528 2014-05-27] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2014-05-27] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-10-01] (Avira Operations GmbH & Co. KG) S3 CVirtA; C:\Windows\System32\DRIVERS\CVirtA.sys [5275 2007-01-18] (Cisco Systems, Inc.) R2 CVPNDRVA; C:\Windows\system32\Drivers\CVPNDRVA.sys [308859 2010-09-27] (Cisco Systems, Inc.) R3 DNE; C:\Windows\System32\DRIVERS\dne2000.sys [131984 2008-11-16] (Deterministic Networks, Inc.) R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [90112 2009-04-21] (ELAN Microelectronic Corp.) R3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-09-20] (InterVideo, Inc.) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2008-11-03] ( ) R0 lullaby; C:\Windows\System32\DRIVERS\lullaby.sys [15416 2008-05-29] (Windows (R) Codename Longhorn DDK provider) R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2008-12-24] (ATK0100) R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1752704 2008-08-11] () R3 SRS_PremiumSound_Service; C:\Windows\System32\drivers\srs_PremiumSound_i386.sys [233128 2009-04-01] () R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [340624 2013-07-17] (BitDefender S.R.L.) R3 VIAHdAudAddService; C:\Windows\System32\drivers\viahduaa.sys [1019392 2009-04-28] (VIA Technologies, Inc.) S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVENG.SYS [X] S3 NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVEX15.SYS [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S1 SRTSP; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSP.SYS [X] S1 SRTSPX; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSPX.SYS [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-29 15:31 - 2014-05-29 15:37 - 00021077 _____ () C:\Users\Tamara\Desktop\FRST.txt 2014-05-29 15:27 - 2014-05-29 15:27 - 01056256 _____ (Farbar) C:\Users\Tamara\Desktop\FRST.exe 2014-05-29 15:22 - 2014-05-29 15:22 - 00000474 _____ () C:\Users\Tamara\Desktop\defogger_disable.log 2014-05-29 15:22 - 2014-05-29 15:22 - 00000000 _____ () C:\Users\Tamara\defogger_reenable 2014-05-27 22:15 - 2014-05-27 22:15 - 00050477 _____ () C:\Users\Tamara\Desktop\Defogger.exe 2014-05-27 21:35 - 2014-05-29 15:37 - 00000000 ____D () C:\FRST 2014-05-26 19:57 - 2014-05-26 19:57 - 00001807 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\SUPERAntiSpyware.com 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware 2014-05-26 19:55 - 2014-05-26 19:55 - 29393568 _____ (SUPERAntiSpyware) C:\Users\Tamara\Downloads\SUPERAntiSpyware_5.7.0.1018.exe 2014-05-25 19:24 - 2014-05-25 19:24 - 00448512 _____ (OldTimer Tools) C:\Users\Tamara\Downloads\TFC.exe 2014-05-25 15:08 - 2014-05-25 15:08 - 00000180 _____ () C:\Users\Tamara\Documents\Ad-Aware_Report_Full_Manual_2014-05-25T15-06-44.201783.xml 2014-05-24 15:56 - 2014-05-24 15:56 - 00000000 ____D () C:\Program Files\Common Files\Skype 2014-05-20 14:30 - 2014-05-06 01:32 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-20 14:30 - 2014-05-06 01:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-20 14:30 - 2014-05-06 01:14 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-05-20 13:58 - 2013-08-27 03:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-05-20 13:58 - 2013-08-27 03:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-05-20 13:58 - 2013-08-27 03:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-05-20 13:58 - 2013-08-27 03:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-05-20 13:58 - 2013-08-27 03:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-05-20 12:41 - 2014-05-20 12:41 - 00000000 ____D () C:\bb9d7fe4b01b2dbb08478a86 2014-05-20 12:39 - 2014-03-25 15:26 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-20 12:39 - 2014-02-07 12:38 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-05-20 12:39 - 2013-08-01 05:16 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-05-20 12:39 - 2013-08-01 04:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-05-20 12:39 - 2013-06-15 15:22 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2014-05-20 12:39 - 2013-06-15 13:23 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-05-20 12:39 - 2012-05-11 17:57 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-05-20 12:39 - 2011-10-14 18:03 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2014-05-20 12:39 - 2011-10-14 18:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll 2014-05-20 12:39 - 2011-07-29 18:01 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-05-20 12:39 - 2011-07-29 18:01 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-05-20 12:39 - 2011-07-29 18:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax 2014-05-20 12:39 - 2011-07-29 18:00 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax 2014-05-20 12:38 - 2013-07-20 12:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 12:37 - 2013-07-05 06:53 - 00905664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-05-20 12:37 - 2012-09-25 18:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-05-20 12:35 - 2012-11-02 12:18 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-05-20 12:35 - 2012-11-02 10:26 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2014-05-20 12:35 - 2012-03-21 01:28 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-05-20 12:35 - 2011-10-14 18:02 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-05-20 12:34 - 2013-10-30 03:43 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-05-20 12:34 - 2013-10-30 02:43 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-05-20 12:34 - 2013-07-10 11:47 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-05-20 12:34 - 2012-08-21 13:47 - 00224640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2014-05-20 12:34 - 2012-06-29 18:01 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-05-20 12:33 - 2014-02-03 12:37 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-05-20 03:40 - 2013-12-05 04:12 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-05-20 03:39 - 2011-11-18 19:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-05-20 03:37 - 2014-05-20 03:37 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-20 03:37 - 2014-05-20 03:37 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00434176 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-05-20 03:37 - 2014-05-20 03:37 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00353584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-05-20 03:37 - 2014-05-20 03:37 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-05-20 03:37 - 2013-06-29 04:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-05-20 03:37 - 2013-06-29 04:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-05-20 03:37 - 2013-06-29 04:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-05-20 03:37 - 2013-06-29 04:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-05-20 03:37 - 2013-03-03 21:07 - 01082232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-05-20 03:37 - 2012-11-20 06:22 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-05-20 03:37 - 2011-12-14 18:17 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-05-20 03:37 - 2011-05-05 15:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-05-20 03:37 - 2011-05-05 15:54 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-05-20 03:35 - 2014-05-20 03:35 - 02873344 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01554432 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01075712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00979456 _____ (Microsoft Corporation) C:\Windows\system32\MFH264Dec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00847360 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe 2014-05-20 03:35 - 2014-05-20 03:35 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\MFHEAACdec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4src.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2014-05-20 03:35 - 2014-05-20 03:35 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll 2014-05-20 03:34 - 2012-05-01 16:03 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-05-20 03:33 - 2013-10-11 04:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-05-20 03:33 - 2013-10-11 04:08 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-05-20 03:33 - 2013-10-11 04:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll 2014-05-20 03:33 - 2013-10-11 02:35 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-05-20 03:33 - 2013-10-11 02:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-05-20 03:33 - 2013-10-03 14:45 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-05-20 03:33 - 2013-08-02 06:09 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-05-20 03:33 - 2013-05-02 06:04 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-05-20 03:33 - 2013-05-02 06:03 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\printcom.dll 2014-05-20 03:33 - 2013-04-24 06:00 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-05-20 03:33 - 2013-04-24 03:46 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-05-20 03:33 - 2012-11-08 05:48 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00974848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe 2014-05-20 03:32 - 2014-05-20 03:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00189440 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-05-20 03:32 - 2013-10-03 14:45 - 00993792 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-05-20 03:31 - 2014-02-06 03:56 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-20 03:31 - 2013-10-11 04:08 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-05-20 03:31 - 2013-10-11 04:07 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-05-20 03:31 - 2013-10-11 02:39 - 00218228 _____ () C:\Windows\system32\WFP.TMF 2014-05-20 03:31 - 2013-06-27 01:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-05-20 03:31 - 2013-06-27 01:01 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-05-20 03:31 - 2013-06-27 01:01 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-05-20 03:31 - 2012-11-02 12:19 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-05-20 03:30 - 2013-10-22 09:19 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-05-20 03:30 - 2013-07-16 06:35 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2014-05-20 03:30 - 2013-07-09 14:10 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-05-20 03:30 - 2013-07-08 06:55 - 03603904 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2014-05-20 03:30 - 2013-07-08 06:55 - 03551680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-20 03:30 - 2013-06-04 06:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-05-20 03:30 - 2013-06-04 03:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-05-20 03:30 - 2013-03-09 05:45 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-05-20 03:30 - 2013-03-09 03:28 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-05-20 03:30 - 2012-02-29 17:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-05-20 03:30 - 2012-02-29 15:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-05-20 03:30 - 2011-11-16 18:23 - 00377344 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2014-05-20 03:30 - 2011-10-25 17:58 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-05-20 03:30 - 2011-08-25 18:15 - 00555520 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll 2014-05-20 03:30 - 2011-08-25 18:14 - 00563712 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-05-20 03:30 - 2011-08-25 18:14 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-05-20 03:30 - 2011-08-25 15:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\oleaccrc.dll 2014-05-20 03:29 - 2014-05-20 03:38 - 00004446 _____ () C:\Windows\IE9_main.log 2014-05-20 03:28 - 2013-07-04 06:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-05-20 03:28 - 2013-07-03 04:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-05-20 03:28 - 2013-03-08 05:53 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-05-20 03:28 - 2013-03-08 05:52 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-05-20 03:26 - 2013-02-12 03:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-05-20 03:26 - 2012-06-04 17:26 - 00440704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-20 03:26 - 2012-06-02 02:04 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-20 03:26 - 2011-11-16 18:23 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-20 03:26 - 2011-11-16 18:21 - 01259008 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-20 03:26 - 2011-11-16 16:12 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-20 03:25 - 2014-01-30 09:46 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-05-20 03:25 - 2013-11-13 02:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-05-20 03:25 - 2010-05-04 21:13 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\msshsq.dll 2014-05-19 11:40 - 2013-07-08 06:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-05-19 11:40 - 2013-07-08 06:16 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-05-19 11:40 - 2013-07-08 06:16 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-05-19 11:31 - 2012-01-09 17:54 - 00613376 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2014-05-19 11:09 - 2012-06-03 00:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-05-19 11:09 - 2012-06-03 00:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-05-19 11:09 - 2012-06-03 00:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-05-19 11:09 - 2012-06-03 00:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-05-19 11:08 - 2012-06-03 00:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-05-19 11:08 - 2012-06-03 00:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-05-19 11:08 - 2012-06-03 00:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-05-19 11:07 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-05-19 11:07 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-05-18 16:44 - 2014-05-18 16:44 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\LavasoftStatistics 2014-05-18 16:17 - 2014-05-29 10:21 - 00002211 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk 2014-05-18 16:17 - 2014-05-18 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus 2014-05-18 16:16 - 2014-05-29 10:23 - 00000000 ____D () C:\ProgramData\Ad-Aware Browsing Protection 2014-05-18 16:16 - 2014-05-27 14:43 - 00000000 ____D () C:\ProgramData\Search Protection 2014-05-18 16:16 - 2014-05-18 16:16 - 00000000 ____D () C:\Users\Tamara\AppData\Local\adawarebp 2014-05-18 16:16 - 2014-05-18 16:16 - 00000000 ____D () C:\Program Files\Toolbar Cleaner 2014-05-18 16:16 - 2014-05-18 16:16 - 00000000 ____D () C:\Program Files\Lavasoft 2014-05-18 16:15 - 2014-05-18 16:15 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Lavasoft 2014-05-18 16:12 - 2014-05-18 16:12 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft 2014-05-18 16:11 - 2014-05-18 16:11 - 01727624 _____ () C:\Users\Tamara\Downloads\Adaware_Installer_11.1.5354(1).exe 2014-05-18 15:14 - 2014-05-18 15:16 - 00000000 ____D () C:\Windows\system32\ca-ES 2014-05-18 15:14 - 2014-05-18 15:15 - 00000000 ____D () C:\Windows\system32\vi-VN 2014-05-18 15:14 - 2014-05-18 15:15 - 00000000 ____D () C:\Windows\system32\eu-ES 2014-05-18 15:07 - 2014-05-18 15:07 - 00000000 ____D () C:\Windows\system32\SPReview 2014-05-18 14:51 - 2009-04-10 23:28 - 00928768 _____ (Microsoft Corporation) C:\Windows\system32\scavenge.dll 2014-05-18 14:51 - 2009-04-10 23:27 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\compcln.exe 2014-05-18 14:50 - 2009-04-10 23:32 - 00149480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2014-05-18 14:50 - 2009-04-10 23:32 - 00141288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ecache.sys 2014-05-18 14:50 - 2009-04-10 23:32 - 00053736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys 2014-05-18 14:50 - 2009-04-10 23:32 - 00050664 _____ (Microsoft Corporation) C:\Windows\system32\PSHED.DLL 2014-05-18 14:50 - 2009-04-10 23:32 - 00027624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys 2014-05-18 14:50 - 2009-04-10 23:28 - 02153472 _____ (Microsoft Corporation) C:\Windows\system32\oobefldr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01823744 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01591296 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01541120 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01459200 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01381376 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01107968 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00978432 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00869888 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00825856 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00644608 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\emdmgmt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00550400 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\pnpui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00466944 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\dsound.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00441344 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00378368 _____ (Microsoft Corporation) C:\Windows\system32\devmgr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\rasplap.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\RelMon.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\sdohlp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL 2014-05-18 14:50 - 2009-04-10 23:28 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\es.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\offfilt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\pnpsetup.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceTypes.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\rasmontr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\dsprop.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\nlhtml.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\ntmarta.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00117248 _____ () C:\Windows\system32\EhStorAuthn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\EhStorShell.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\regsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\dmsynth.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\dmusic.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\powrprof.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceClassExtension.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\propdefs.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\iashlpr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssoc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\iasads.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\iasdatastore.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\rtffilt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\EhStorPwdMgr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2014-05-18 14:50 - 2009-04-10 23:27 - 02926592 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 02092544 _____ (Microsoft Corporation) C:\Windows\system32\dfsr.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2014-05-18 14:50 - 2009-04-10 23:27 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\dpapimig.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00241128 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2014-05-18 14:50 - 2009-04-10 23:27 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\gpresult.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\reg.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\rekeywiz.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\PnPutil.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\rasdial.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\gpupdate.exe 2014-05-18 14:50 - 2009-04-10 23:23 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2014-05-18 14:50 - 2009-04-10 23:23 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2014-05-18 14:50 - 2009-04-10 23:23 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2014-05-18 14:50 - 2009-04-10 23:23 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2014-05-18 14:50 - 2009-04-10 23:22 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\f3ahvoas.dll 2014-05-18 14:50 - 2009-04-10 22:03 - 12240896 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0007.dll 2014-05-18 14:50 - 2009-04-10 22:03 - 02644480 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0009.dll 2014-05-18 14:50 - 2009-04-10 21:48 - 00344698 _____ () C:\Windows\system32\eaphost.tmf 2014-05-18 14:50 - 2009-04-10 21:46 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys 2014-05-18 14:50 - 2009-04-10 21:46 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys 2014-05-18 14:50 - 2009-04-10 21:46 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-05-18 14:50 - 2009-04-10 21:45 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2014-05-18 14:50 - 2009-04-10 21:45 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys 2014-05-18 14:50 - 2009-04-10 21:43 - 00442788 _____ () C:\Windows\system32\dot3.tmf 2014-05-18 14:50 - 2009-04-10 21:43 - 00392170 _____ () C:\Windows\system32\onex.tmf 2014-05-18 14:50 - 2009-04-10 21:43 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2014-05-18 14:50 - 2009-04-10 21:42 - 00561152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2014-05-18 14:50 - 2009-04-10 21:39 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-05-18 14:50 - 2009-04-10 21:23 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxg.sys 2014-05-18 14:50 - 2009-04-10 21:14 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys 2014-05-18 14:50 - 2009-04-10 21:14 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys 2014-05-18 14:50 - 2009-04-10 21:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys 2014-05-18 14:50 - 2009-02-19 17:20 - 00009212 _____ () C:\Windows\system32\RacUR.xml 2014-05-18 14:50 - 2009-02-18 11:39 - 00779136 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2014-05-18 14:49 - 2009-04-10 23:33 - 00614376 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2014-05-18 14:49 - 2009-04-10 23:33 - 00292840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00527848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00438744 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2014-05-18 14:49 - 2009-04-10 23:32 - 00265688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00245736 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00223208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00190424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00180712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00161752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00125928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00109032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00099816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-05-18 14:49 - 2009-04-10 23:32 - 00048104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00035304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00019944 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-05-18 14:49 - 2009-04-10 23:32 - 00019944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00017896 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-05-18 14:49 - 2009-04-10 23:32 - 00017384 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 06103040 _____ (Microsoft Corporation) C:\Windows\system32\chtbrkr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 03174400 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 03072000 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02515968 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02226688 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02225664 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02167808 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02134528 _____ (Microsoft Corporation) C:\Windows\system32\FunctionDiscoveryFolder.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02012160 _____ (Microsoft Corporation) C:\Windows\system32\milcore.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01985024 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01856512 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01788416 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01730560 _____ (Microsoft Corporation) C:\Windows\system32\apds.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01671680 _____ (Microsoft Corporation) C:\Windows\system32\chsbrkr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01645568 _____ (Microsoft Corporation) C:\Windows\system32\connect.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01589248 _____ (Microsoft Corporation) C:\Windows\system32\msjet40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01575936 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 01544704 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01533440 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01524736 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01502720 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01480704 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01382912 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 01342464 _____ (Microsoft Corporation) C:\Windows\system32\brcpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01324032 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01209856 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\wercon.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01112064 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01086464 _____ (Microsoft Corporation) C:\Windows\system32\NetProjW.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01055232 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 01053696 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01020928 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01017856 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00968192 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz2.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00856064 _____ (Microsoft Corporation) C:\Windows\system32\mswdat10.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00852992 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00807424 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00759296 _____ (Microsoft Corporation) C:\Windows\system32\ipsecsnp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00757248 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00670720 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00657408 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00643072 _____ (Microsoft Corporation) C:\Windows\system32\msrepl40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\Utilman.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollUI.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00618496 _____ (Microsoft Corporation) C:\Windows\system32\mswstr10.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2VDEC.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\comuid.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\wiaaut.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00542720 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00516608 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00507904 _____ (Microsoft Corporation) C:\Windows\system32\vdsdyn.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00481792 _____ (Microsoft Corporation) C:\Windows\system32\cmdial32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00469504 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\IasMigReader.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\msxbde40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00454144 _____ (Microsoft) C:\Windows\system32\IasMigPlugin.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00450560 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\msexch40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\msvcp60.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00378368 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\mspbde40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00368640 _____ () C:\Windows\system32\msjetoledb40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00364032 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00351744 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\msrd3x40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\msexcl40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00334848 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\msrd2x40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\WscEapPr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\msjtes40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\modemui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\mstext40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\wow32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\iassdo.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\msltus40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\wscntfy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\mscandui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\adsldpc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\iassam.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\wevtutil.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\fundisc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\korwbrkr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayDriverLib.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\imapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\msctfui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mstlsapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\msctfp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\iassvcs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\mpr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\msjter40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingProxy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\feclient.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\mmci.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\l2nacp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msstrc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\networkitemfactory.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\msscb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\bitsigd.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\whealogr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\msimtf.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\ifmon.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\uxsms.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\hidserv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\msjint40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\version.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\NcdProp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\MsCtfMonitor.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wscisvif.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\vdmdbg.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\midimap.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\mmcico.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\CHxReadingStringIME.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\fdBthProxy.dll 2014-05-18 14:49 - 2009-04-10 23:27 - 01792512 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 01122304 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 01102848 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00643072 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00408064 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\certreq.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv 2014-05-18 14:49 - 2009-04-10 23:27 - 00130024 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll 2014-05-18 14:49 - 2009-04-10 23:27 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax 2014-05-18 14:49 - 2009-04-10 23:27 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax 2014-05-18 14:49 - 2009-04-10 23:27 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\newdev.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\conime.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingWizard.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\cipher.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\cmmon32.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\csrstub.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cbsra.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ipconfig.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEject.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.drv 2014-05-18 14:49 - 2009-04-10 23:27 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\fc.exe 2014-05-18 14:49 - 2009-04-10 23:23 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2014-05-18 14:49 - 2009-04-10 23:22 - 00883712 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2014-05-18 14:49 - 2009-04-10 23:22 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2014-05-18 14:49 - 2009-04-10 23:22 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2014-05-18 14:49 - 2009-04-10 22:42 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2014-05-18 14:49 - 2009-04-10 21:46 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys 2014-05-18 14:49 - 2009-04-10 21:45 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2014-05-18 14:49 - 2009-04-10 21:42 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2014-05-18 14:49 - 2009-04-10 21:42 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-05-18 14:49 - 2009-04-10 21:42 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2014-05-18 14:49 - 2009-04-10 21:39 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys 2014-05-18 14:49 - 2009-04-10 21:39 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll 2014-05-18 14:49 - 2009-04-10 21:38 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2014-05-18 14:49 - 2009-04-10 21:38 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys 2014-05-18 14:49 - 2009-04-10 21:27 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2014-05-18 14:49 - 2009-04-10 21:22 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys 2014-05-18 14:49 - 2009-04-10 21:14 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-05-18 14:49 - 2009-04-10 21:13 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys 2014-05-18 14:49 - 2009-04-10 21:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-05-18 14:49 - 2009-04-10 18:54 - 03662128 _____ () C:\Windows\system32\locale.nls 2014-05-18 14:49 - 2009-03-29 21:42 - 00155456 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2014-05-18 14:49 - 2009-03-29 21:42 - 00080720 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2014-05-18 14:49 - 2009-02-18 11:38 - 00619864 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-05-18 14:49 - 2009-02-18 11:38 - 00099680 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-05-18 14:49 - 2009-02-18 11:38 - 00035168 _____ (Microsoft Corporation) C:\Windows\system32\infocardcpl.cpl 2014-05-18 14:49 - 2009-02-18 11:38 - 00009048 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-05-18 14:48 - 2009-04-10 23:33 - 00986600 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-05-18 14:48 - 2009-04-10 23:33 - 00926184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-05-18 14:48 - 2009-04-10 23:32 - 00122344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Storport.sys 2014-05-18 14:48 - 2009-04-10 23:32 - 00053224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys 2014-05-18 14:48 - 2009-04-10 23:28 - 03217408 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 02205184 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01671680 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01580544 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01576960 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01224192 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01152000 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01081344 _____ (Microsoft Corporation) C:\Windows\system32\SLCExt.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00996352 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00777216 _____ (Microsoft Corporation) C:\Windows\system32\slcc.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00582144 _____ (Microsoft Corporation) C:\Windows\system32\SLCommDlg.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00532992 _____ (Microsoft Corporation) C:\Windows\system32\wpcao.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00425472 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00399360 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00378368 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00361984 _____ (Microsoft Corporation) C:\Windows\system32\SLUI.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\thawbrkr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\SnippingTool.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\SLC.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\sperror.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\SLLUA.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\spoolss.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wpcsvc.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\softkbd.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\ulib.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\wshext.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00083456 _____ (Microsoft) C:\Windows\system32\SMBHelperClass.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\wlgpclnt.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\slwmi.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\SLUINotify.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\xmlfilter.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Storprop.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\slcinst.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\TSTheme.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\wsepno.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\winrnr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\spcmsg.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll 2014-05-18 14:48 - 2009-04-10 23:27 - 03408896 _____ (Microsoft Corporation) C:\Windows\system32\SLsvc.exe 2014-05-18 14:48 - 2009-04-10 23:27 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx 2014-05-18 14:48 - 2009-04-10 23:27 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp 2014-05-18 14:48 - 2009-04-10 23:23 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2014-05-18 14:48 - 2009-04-10 21:45 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2014-05-18 14:48 - 2009-04-10 21:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smb.sys 2014-05-18 14:48 - 2009-04-10 21:42 - 00052992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys 2014-05-18 14:48 - 2009-04-10 21:42 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys 2014-05-18 14:48 - 2009-04-10 21:42 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD.sys 2014-05-18 14:48 - 2009-04-10 21:14 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2014-05-18 14:48 - 2009-04-10 19:52 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spsys.sys 2014-05-18 14:48 - 2009-04-10 18:59 - 00107612 _____ () C:\Windows\system32\StructuredQuerySchema.bin 2014-05-18 14:48 - 2009-03-06 18:11 - 00130008 _____ () C:\Windows\system32\systemsf.ebd 2014-05-18 14:48 - 2009-02-19 17:20 - 00009239 _____ () C:\Windows\system32\spcinstrumentation.man 2014-05-18 14:48 - 2009-02-18 11:39 - 00092918 _____ () C:\Windows\system32\slmgr.vbs 2014-05-18 14:48 - 2009-02-18 11:39 - 00035680 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-05-18 14:35 - 2014-05-18 14:39 - 365230920 _____ (Microsoft Corporation) C:\Users\Tamara\Downloads\Windows6.0-KB948465-X86.exe 2014-05-16 12:12 - 2014-05-29 10:24 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\DropboxMaster 2014-05-15 21:04 - 2014-05-15 21:04 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-05-10 17:24 - 2014-05-10 17:24 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-04-29 17:18 - 2014-04-29 17:18 - 00000000 ____D () C:\Users\Tamara\AppData\Local\PDF24 2014-04-29 17:15 - 2014-04-29 17:15 - 00001665 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk 2014-04-29 17:15 - 2014-04-29 17:15 - 00001645 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk 2014-04-29 17:15 - 2014-04-29 17:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2014-04-29 17:15 - 2014-04-29 17:15 - 00000000 ____D () C:\Program Files\PDF24 2014-04-29 17:11 - 2014-04-29 17:11 - 16204160 _____ (Geek Software GmbH ) C:\Users\Tamara\Downloads\pdf24-creator-6.3.2.exe 2014-04-29 17:07 - 2014-04-29 17:08 - 01376768 _____ () C:\Users\Tamara\Downloads\7z920-x64.msi ==================== One Month Modified Files and Folders ======= 2014-05-29 15:37 - 2014-05-29 15:31 - 00021077 _____ () C:\Users\Tamara\Desktop\FRST.txt 2014-05-29 15:37 - 2014-05-27 21:35 - 00000000 ____D () C:\FRST 2014-05-29 15:27 - 2014-05-29 15:27 - 01056256 _____ (Farbar) C:\Users\Tamara\Desktop\FRST.exe 2014-05-29 15:22 - 2014-05-29 15:22 - 00000474 _____ () C:\Users\Tamara\Desktop\defogger_disable.log 2014-05-29 15:22 - 2014-05-29 15:22 - 00000000 _____ () C:\Users\Tamara\defogger_reenable 2014-05-29 15:22 - 2011-02-14 16:15 - 00000000 ____D () C:\Users\Tamara 2014-05-29 14:38 - 2012-04-22 13:58 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-29 14:37 - 2011-09-01 21:16 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Skype 2014-05-29 14:19 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-29 14:19 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-29 14:02 - 2009-08-20 22:19 - 01526153 _____ () C:\Windows\WindowsUpdate.log 2014-05-29 10:24 - 2014-05-16 12:12 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\DropboxMaster 2014-05-29 10:24 - 2012-07-15 15:18 - 00000000 ___RD () C:\Users\Tamara\Dropbox 2014-05-29 10:24 - 2012-07-15 15:13 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Dropbox 2014-05-29 10:23 - 2014-05-18 16:16 - 00000000 ____D () C:\ProgramData\Ad-Aware Browsing Protection 2014-05-29 10:21 - 2014-05-18 16:17 - 00002211 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk 2014-05-29 10:20 - 2009-08-20 23:34 - 00045056 _____ () C:\Windows\system32\acovcnt.exe 2014-05-29 10:19 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-29 00:44 - 2006-11-02 15:01 - 00032582 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-28 09:49 - 2009-08-20 22:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-05-28 09:49 - 2009-08-20 22:28 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-05-27 22:15 - 2014-05-27 22:15 - 00050477 _____ () C:\Users\Tamara\Desktop\Defogger.exe 2014-05-27 22:11 - 2013-08-15 10:26 - 00000000 ____D () C:\ProgramData\Corel 2014-05-27 21:19 - 2006-11-02 12:33 - 00005548 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-27 15:56 - 2012-11-17 10:12 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-05-27 15:56 - 2012-11-17 10:12 - 00093528 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-05-27 14:43 - 2014-05-18 16:16 - 00000000 ____D () C:\ProgramData\Search Protection 2014-05-27 09:26 - 2008-01-21 04:47 - 00366400 _____ () C:\Windows\PFRO.log 2014-05-26 19:57 - 2014-05-26 19:57 - 00001807 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\SUPERAntiSpyware.com 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware 2014-05-26 19:55 - 2014-05-26 19:55 - 29393568 _____ (SUPERAntiSpyware) C:\Users\Tamara\Downloads\SUPERAntiSpyware_5.7.0.1018.exe 2014-05-26 10:55 - 2006-11-02 14:52 - 00302945 _____ () C:\Windows\setupact.log 2014-05-25 19:24 - 2014-05-25 19:24 - 00448512 _____ (OldTimer Tools) C:\Users\Tamara\Downloads\TFC.exe 2014-05-25 18:32 - 2006-11-02 14:47 - 00418320 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-25 15:08 - 2014-05-25 15:08 - 00000180 _____ () C:\Users\Tamara\Documents\Ad-Aware_Report_Full_Manual_2014-05-25T15-06-44.201783.xml 2014-05-24 15:58 - 2012-07-15 15:18 - 00000929 _____ () C:\Users\Tamara\Desktop\Dropbox.lnk 2014-05-24 15:58 - 2012-07-15 15:14 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-05-24 15:56 - 2014-05-24 15:56 - 00000000 ____D () C:\Program Files\Common Files\Skype 2014-05-24 15:56 - 2011-09-01 21:16 - 00000000 ___RD () C:\Program Files\Skype 2014-05-24 15:56 - 2011-09-01 21:16 - 00000000 ____D () C:\ProgramData\Skype 2014-05-20 18:20 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-20 13:59 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\rescache 2014-05-20 13:39 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\system32\XPSViewer 2014-05-20 13:39 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\de-DE 2014-05-20 13:38 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 13:38 - 2006-11-02 13:18 - 00000000 ____D () C:\Program Files\Common Files\System 2014-05-20 12:53 - 2011-02-14 16:29 - 00000956 _____ () C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 12:44 - 2008-04-16 13:11 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE 2014-05-20 12:44 - 2006-11-02 13:18 - 00000000 ___RD () C:\Windows\Offline Web Pages 2014-05-20 12:41 - 2014-05-20 12:41 - 00000000 ____D () C:\bb9d7fe4b01b2dbb08478a86 2014-05-20 03:38 - 2014-05-20 03:29 - 00004446 _____ () C:\Windows\IE9_main.log 2014-05-20 03:37 - 2014-05-20 03:37 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-05-20 03:37 - 2014-05-20 03:37 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-20 03:37 - 2014-05-20 03:37 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00434176 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-05-20 03:37 - 2014-05-20 03:37 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00353584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-05-20 03:37 - 2014-05-20 03:37 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-05-20 03:37 - 2006-11-02 08:32 - 00008798 _____ () C:\Windows\system32\icrav03.rat 2014-05-20 03:37 - 2006-11-02 08:32 - 00001988 _____ () C:\Windows\system32\ticrf.rat 2014-05-20 03:35 - 2014-05-20 03:35 - 02873344 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01554432 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01075712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00979456 _____ (Microsoft Corporation) C:\Windows\system32\MFH264Dec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00847360 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe 2014-05-20 03:35 - 2014-05-20 03:35 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\MFHEAACdec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4src.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2014-05-20 03:35 - 2014-05-20 03:35 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00974848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe 2014-05-20 03:32 - 2014-05-20 03:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00189440 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-05-18 16:44 - 2014-05-18 16:44 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\LavasoftStatistics 2014-05-18 16:17 - 2014-05-18 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus 2014-05-18 16:16 - 2014-05-18 16:16 - 00000000 ____D () C:\Users\Tamara\AppData\Local\adawarebp 2014-05-18 16:16 - 2014-05-18 16:16 - 00000000 ____D () C:\Program Files\Toolbar Cleaner 2014-05-18 16:16 - 2014-05-18 16:16 - 00000000 ____D () C:\Program Files\Lavasoft 2014-05-18 16:15 - 2014-05-18 16:15 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Lavasoft 2014-05-18 16:12 - 2014-05-18 16:12 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft 2014-05-18 16:11 - 2014-05-18 16:11 - 01727624 _____ () C:\Users\Tamara\Downloads\Adaware_Installer_11.1.5354(1).exe 2014-05-18 15:36 - 2011-02-14 16:28 - 00000922 _____ () C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2014-05-18 15:16 - 2014-05-18 15:14 - 00000000 ____D () C:\Windows\system32\ca-ES 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Photo Gallery 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Collaboration 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Calendar 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Movie Maker 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sk-SK 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\lv-LV 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ko-KR 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\hr-HR 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\et-EE 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\IME 2014-05-18 15:15 - 2014-05-18 15:14 - 00000000 ____D () C:\Windows\system32\vi-VN 2014-05-18 15:15 - 2014-05-18 15:14 - 00000000 ____D () C:\Windows\system32\eu-ES 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\zh-TW 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\zh-CN 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\uk-UA 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\th-TH 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sv-SE 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\SLUI 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sl-SI 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ru-RU 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ro-RO 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pt-PT 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pt-BR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pl-PL 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\nl-NL 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\nb-NO 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\lt-LT 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ja-JP 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\it-IT 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\hu-HU 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\he-IL 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\fr-FR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\fi-FI 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\el-GR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\bg-BG 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ar-SA 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers 2014-05-18 15:07 - 2014-05-18 15:07 - 00000000 ____D () C:\Windows\system32\SPReview 2014-05-18 14:39 - 2014-05-18 14:35 - 365230920 _____ (Microsoft Corporation) C:\Users\Tamara\Downloads\Windows6.0-KB948465-X86.exe 2014-05-18 14:02 - 2009-08-20 22:35 - 00000000 ____D () C:\Program Files\Microsoft.NET 2014-05-15 21:08 - 2013-07-18 00:11 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-15 21:05 - 2006-11-02 12:24 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2014-05-15 21:04 - 2014-05-15 21:04 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-05-14 09:38 - 2012-04-22 13:58 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-05-14 09:38 - 2011-05-16 19:17 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-05-12 09:35 - 2012-05-24 20:20 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-10 17:24 - 2014-05-10 17:24 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-06 01:32 - 2014-05-20 14:30 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 01:14 - 2014-05-20 14:30 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 01:14 - 2014-05-20 14:30 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-03 12:11 - 2013-08-15 10:31 - 00000000 ____D () C:\Users\Tamara\Documents\Corel 2014-04-29 17:18 - 2014-04-29 17:18 - 00000000 ____D () C:\Users\Tamara\AppData\Local\PDF24 2014-04-29 17:15 - 2014-04-29 17:15 - 00001665 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk 2014-04-29 17:15 - 2014-04-29 17:15 - 00001645 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk 2014-04-29 17:15 - 2014-04-29 17:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2014-04-29 17:15 - 2014-04-29 17:15 - 00000000 ____D () C:\Program Files\PDF24 2014-04-29 17:11 - 2014-04-29 17:11 - 16204160 _____ (Geek Software GmbH ) C:\Users\Tamara\Downloads\pdf24-creator-6.3.2.exe 2014-04-29 17:08 - 2014-04-29 17:07 - 01376768 _____ () C:\Users\Tamara\Downloads\7z920-x64.msi Some content of TEMP: ==================== C:\Users\Tamara\AppData\Local\Temp\avgnt.exe C:\Users\Tamara\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpz2zdax.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-29 10:27 ==================== End Of Log ============================ |
29.05.2014, 20:06 | #5 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen und hier die Addition.. Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:25-05-2014 02 Ran by Tamara at 2014-05-29 15:38:06 Running from C:\Users\Tamara\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Ad-Aware Antivirus (Disabled - Out of date) {D87B6541-12A1-DAEA-0033-9B8057AAB996} AS: Ad-Aware Antivirus (Disabled - Out of date) {631A84A5-349B-D564-3A83-A0F22C2DF32B} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Ad-Aware Firewall (Disabled) {E040E464-58CE-DBB2-2B6C-32B5A979FEED} ==================== Installed Programs ====================== Sansa Media Converter (HKLM\...\{FC053571-8507-44E4-8B6D-AACEAB8CA57C}) (Version: 1.0-B4.112 - ) Update for Microsoft Office 2007 (KB2508958) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft) 2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation) 7-Zip 4.65 (HKLM\...\7-Zip) (Version: - ) AC3Filter 1.63b (HKLM\...\AC3Filter_is1) (Version: 1.63b - Alexander Vigovsky) Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version: - Microsoft Corporation) Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden Ad-Aware Antivirus (HKLM\...\{17E73768-9F21-4334-ABE6-CD131031564C}_AdAwareUpdater) (Version: 11.1.5354.0 - Lavasoft) Ad-Aware Security Add-on (HKLM\...\adawaretb) (Version: 3.8.0.11 - Lavasoft) AdAwareInstaller (Version: 11.1.5354.0 - Lavasoft) Hidden AdAwareUpdater (Version: 11.1.5354.0 - Lavasoft) Hidden Adobe Flash Player 13 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 9 ActiveX (HKLM\...\ShockwaveFlash) (Version: 9 - Adobe Systems) Adobe Reader 9.5.5 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated) Amazon Cloud Player (HKCU\...\Amazon Amazon Cloud Player) (Version: 2.1.0.381 - Amazon Services LLC) AMD USB Audio Driver Filter (HKLM\...\{A3AB35FA-943E-4799-99DC-46EFD59E998F}) (Version: 1.0.7.0031 - Advanced Micro Devices, Inc.) AntimalwareEngine (Version: 2.6.0.0 - Lavasoft) Hidden ASUS CopyProtect (HKLM\...\{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}) (Version: 1.0.0009 - ASUS) ASUS Data Security Manager (HKLM\...\{FA2092C5-7979-412D-A962-6485274AE1EE}) (Version: 1.00.0011 - ASUS) ASUS FancyStart (HKLM\...\{567C654B-7FE9-4970-8323-56E8191D1941}) (Version: 1.0.2 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS) ASUS Live Update (HKLM\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.6 - ASUS) ASUS MultiFrame (HKLM\...\{9D48531D-2135-49FC-BC29-ACCDA5396A76}) (Version: 1.0.0018 - ) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.10 - ASUS) ASUS SmartLogon (HKLM\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0006 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0023 - ASUS) ASUS Virtual Camera (HKLM\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.13 - ASUS) Asus_Camera_ScreenSaver (HKLM\...\Asus_Camera_ScreenSaver) (Version: 2.0.0008 - ASUS) Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.0 - Atheros) ATI Catalyst Install Manager (HKLM\...\{DBE1E170-3EF6-AAA5-32C4-A78D98DF86A1}) (Version: 3.0.715.0 - ATI Technologies, Inc.) ATK Generic Function Service (HKLM\...\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}) (Version: 1.00.0008 - ATK) ATK Hotkey (HKLM\...\{7C05592D-424B-46CB-B505-E0013E8E75C9}) (Version: 1.0.0049 - ASUS) ATK Media (HKLM\...\{D1E5870E-E3E5-4475-98A6-ADD614524ADF}) (Version: 2.0.0001 - ASUS) ATKOSD2 (HKLM\...\{3B05F2FB-745B-4012-ADF2-439F36B2E70B}) (Version: 7.0.0002 - ASUS) Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.4.642 - Avira) Bass Audio Decoder (remove only) (HKLM\...\Bass Audio Decoder) (Version: - ) Catalyst Control Center - Branding (Version: 1.00.0000 - ATI) Hidden Catalyst Control Center Core Implementation (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Full Existing (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Full New (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Light (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Previews Vista (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center InstallProxy (Version: 2009.0318.2141.37097 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization All (Version: 2009.0318.2141.37097 - ATI) Hidden CCC Help Chinese Standard (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Chinese Traditional (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Czech (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Danish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Dutch (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help English (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Finnish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help French (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help German (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Greek (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Hungarian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Italian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Japanese (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Korean (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Norwegian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Polish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Portuguese (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Russian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Spanish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Swedish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Thai (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Turkish (Version: 2009.0318.2140.37097 - ATI) Hidden ccc-core-static (Version: 2009.0318.2141.37097 - ATI) Hidden ccc-utility (Version: 2009.0318.2141.37097 - ATI) Hidden CD Audio Reader Filter (remove only) (HKLM\...\CD Audio Reader Filter) (Version: - ) Choice Guard (Version: 1.2.87.0 - Microsoft Corporation) Hidden Cisco EAP-FAST Module (HKLM\...\{3F4BA3A2-7BE0-48EA-B4BC-CA4D842A409A}) (Version: 2.2.9 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{934B3B19-8193-467A-B356-E73F82647D38}) (Version: 1.0.15 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{BAD1449B-DF0C-4118-B76D-68C54009576C}) (Version: 1.1.2 - Cisco Systems, Inc.) Cisco Systems VPN Client 5.0.07.0410 (HKLM\...\{1CE60928-8325-49A8-8B06-633E48DD2B67}) (Version: 5.0.7 - Cisco Systems, Inc.) Citrix Online Launcher (HKLM\...\{AC7E7905-8C59-4806-A96D-30936A2B1FC5}) (Version: 1.0.168 - Citrix) CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1720 - CyberLink Corp.) CyberLink LabelPrint (Version: 2.5.1720 - CyberLink Corp.) Hidden CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.2713 - CyberLink Corp.) CyberLink Power2Go (Version: 6.1.2713 - CyberLink Corp.) Hidden DCoder Image Source (remove only) (HKLM\...\DCoder Image Source) (Version: - ) DirectVobSub (remove only) (HKLM\...\DirectVobSub) (Version: - ) DivX Setup (HKLM\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC) Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.) DScaler 5 Mpeg Decoders (HKLM\...\DScaler 5 Mpeg Decoders_is1) (Version: - ) ETDWare PS/2-x86 7.0.5.3 WHQL (HKLM\...\Elantech) (Version: - ) ffdshow [rev 3124] [2009-11-03] (HKLM\...\ffdshow_is1) (Version: 1.0 - ) FFMPEG Core Files (remove only) (HKLM\...\FFMPEG Core Files) (Version: - ) Gabest MPEG Splitter (remove only) (HKLM\...\Gabest MPEG Splitter) (Version: - ) GoToMeeting 6.0.0.1259 (HKCU\...\GoToMeeting) (Version: 6.0.0.1259 - CitrixOnline) GraphPad Prism 5 (HKLM\...\{35B73650-6899-11DA-6784-00232A9018BE}) (Version: 5.01 - GraphPad Software) Haali Media Splitter (HKLM\...\HaaliMkx) (Version: - ) Java 7 Update 17 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217017FF}) (Version: 7.0.170 - Oracle) Java Auto Updater (Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Kukuxumusu Kosmos Screensaver (HKLM\...\Kukuxumusu Kosmos Screensaver) (Version: - ) Mendeley Desktop 1.9.2 (HKLM\...\Mendeley Desktop) (Version: 1.9.2 - Mendeley Ltd.) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0409-0000-0000000FF1CE}_OMUI.en-us_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Access MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel 2007 Help - Aggiornamento (KB963678) (HKLM\...\{90120000-0016-0410-0000-0000000FF1CE}_PROHYBRIDR_{9F57BDED-B51B-4D2F-B360-5B4EFAAF0F1A}) (Version: - Microsoft) Microsoft Office Excel MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Groove MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Groove Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Language Pack 2007 - English (HKLM\...\OMUI.en-us) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office O MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook 2007 Help - Aggiornamento (KB963677) (HKLM\...\{90120000-001A-0410-0000-0000000FF1CE}_PROHYBRIDR_{2278E02A-AB15-4BF7-B2B4-5C0EEB4B7EEB}) (Version: - Microsoft) Microsoft Office Outlook Connector (HKLM\...\{95120000-0120-0407-0000-0000000FF1CE}) (Version: 12.0.6414.1000 - Microsoft Corporation) Microsoft Office Outlook MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Powerpoint 2007 Help - Aggiornamento (KB963669) (HKLM\...\{90120000-0018-0410-0000-0000000FF1CE}_PROHYBRIDR_{C76C02F1-B07F-4974-876A-A18DEC9887C8}) (Version: - Microsoft) Microsoft Office PowerPoint MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Hybrid 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Arabic) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (Dutch) 2007 (Version: 12.0.4518.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing (French) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing (Italian) 2007 (Version: 12.0.4518.1018 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Publisher MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office SharePoint Designer MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word 2007 Help - Aggiornamento (KB963665) (HKLM\...\{90120000-001B-0410-0000-0000000FF1CE}_PROHYBRIDR_{E5B82DB3-DD7D-4C45-BC5E-09864B26F9BC}) (Version: - Microsoft) Microsoft Office Word MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office X MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Sync Framework Services Native v1.0 (x86) (HKLM\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-040C-0000-0000000FF1CE}_PROHYBRIDR_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-040C-0000-0000000FF1CE}_PROHYBRIDR_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-040C-0000-0000000FF1CE}_PROHYBRIDR_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-040C-0000-0000000FF1CE}_PROHYBRIDR_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) MONOGRAM AMR Splitter/Decoder (remove only) (HKLM\...\MONOGRAM AMR Splitter/Decoder) (Version: - ) Mozilla Firefox 29.0.1 (x86 de) (HKLM\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden Multimedia Card Reader (HKLM\...\USB Mass Storage Filter Driver) (Version: 1.01.0000.00 - ) Multimedia Card Reader (Version: 1.01.0000.00 - ) Hidden Norton Internet Security (Version: 16.0.0.125 - Symantec Corporation) Hidden OpenOffice.org 3.3 (HKLM\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org) OpenSource AVI Splitter (remove only) (HKLM\...\OpenSource AVI Splitter) (Version: - ) OpenSource DTS/AC3/DD+ Source Filter (remove only) (HKLM\...\OpenSource DTS/AC3/DD+ Source Filter) (Version: - ) OpenSource Flash Video Splitter (remove only) (HKLM\...\OpenSource Flash Video Splitter) (Version: - ) PDF24 Creator 6.3.2 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Platform (Version: 1.34 - VIA Technologies, Inc.) Hidden RealMedia (remove only) (HKLM\...\RealMedia) (Version: - ) Realtek 8169 8168 8101E 8102E Ethernet Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0000 - Realtek) Sansa Media Converter (HKLM\...\{7D9B77E1-0078-0001-4447-ADD4C0A93D1D}) (Version: - ) SHOUTcast Source (remove only) (HKLM\...\SHOUTcast Source) (Version: - ) Skins (Version: 2009.0318.2141.37097 - ATI) Hidden Skype Click to Call (HKLM\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.) Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated) SRS Premium Sound (HKLM\...\{4B6B024F-F6D4-4A7B-8ADA-F9F8370320CC}) (Version: 1.09.0300 - SRS Labs, Inc.) SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1018 - SUPERAntiSpyware.com) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2836939v3) (Version: 3 - Microsoft Corporation) Update for Microsoft Office 2007 Help for Common Features (KB963673) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_OMUI.en-us_{AB365889-0395-4FAD-B702-CA5985D53D42}) (Version: - Microsoft) Update for Microsoft Office 2007 Help for Common Features (KB963673) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_PROHYBRIDR_{AB365889-0395-4FAD-B702-CA5985D53D42}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{90120000-0100-0409-0000-0000000FF1CE}_OMUI.en-us_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Access 2007 Help (KB963663) (HKLM\...\{90120000-0015-0409-0000-0000000FF1CE}_OMUI.en-us_{6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}) (Version: - Microsoft) Update for Microsoft Office Access 2007 Help (KB963663) (HKLM\...\{90120000-0015-0409-0000-0000000FF1CE}_PROHYBRIDR_{6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}) (Version: - Microsoft) Update for Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0409-0000-0000000FF1CE}_OMUI.en-us_{199DF7B6-169C-448C-B511-1054101BE9C9}) (Version: - Microsoft) Update for Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0409-0000-0000000FF1CE}_PROHYBRIDR_{199DF7B6-169C-448C-B511-1054101BE9C9}) (Version: - Microsoft) Update for Microsoft Office Infopath 2007 Help (KB963662) (HKLM\...\{90120000-0044-0409-0000-0000000FF1CE}_OMUI.en-us_{716B81B8-B13C-41DF-8EAC-7A2F656CAB63}) (Version: - Microsoft) Update for Microsoft Office OneNote 2007 Help (KB963670) (HKLM\...\{90120000-00A1-0409-0000-0000000FF1CE}_OMUI.en-us_{2744EF05-38E1-4D5D-B333-E021EDAEA245}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROPLUS_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_OMUI.en-us_{ED38F8A3-4F61-494E-8BCA-E3AC7760C924}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_PROHYBRIDR_{ED38F8A3-4F61-494E-8BCA-E3AC7760C924}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-040C-0000-0000000FF1CE}_PROHYBRIDR_{B83A8864-A85D-437E-9D4C-27350765BF46}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0410-0000-0000000FF1CE}_PROHYBRIDR_{9D702FFD-3C2B-44D0-9B8B-CA1A30CA555B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0413-0000-0000000FF1CE}_PROHYBRIDR_{F8564AF8-30AE-4427-ACF3-69714E1BB656}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_OMUI.en-us_{0451F231-E3E3-4943-AB9F-58EB96171784}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_PROHYBRIDR_{0451F231-E3E3-4943-AB9F-58EB96171784}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2880505) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{2720451F-5D04-43EC-AB1F-26D948FD971B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2880505) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{2720451F-5D04-43EC-AB1F-26D948FD971B}) (Version: - Microsoft) Update for Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0409-0000-0000000FF1CE}_OMUI.en-us_{397B1D4F-ED7B-4ACA-A637-43B670843876}) (Version: - Microsoft) Update for Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0409-0000-0000000FF1CE}_PROHYBRIDR_{397B1D4F-ED7B-4ACA-A637-43B670843876}) (Version: - Microsoft) Update for Microsoft Office Publisher 2007 Help (KB963667) (HKLM\...\{90120000-0019-0409-0000-0000000FF1CE}_OMUI.en-us_{2E40DE55-B289-4C8B-8901-5D369B16814F}) (Version: - Microsoft) Update for Microsoft Office Publisher 2007 Help (KB963667) (HKLM\...\{90120000-0019-0409-0000-0000000FF1CE}_PROHYBRIDR_{2E40DE55-B289-4C8B-8901-5D369B16814F}) (Version: - Microsoft) Update for Microsoft Office Script Editor Help (KB963671) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_OMUI.en-us_{CD11C6A2-FFC6-4271-8EAB-79C3582F505C}) (Version: - Microsoft) Update for Microsoft Office Script Editor Help (KB963671) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_PROHYBRIDR_{CD11C6A2-FFC6-4271-8EAB-79C3582F505C}) (Version: - Microsoft) Update for Microsoft Office Sharepoint Designer 2007 Help (KB963675) (HKLM\...\{90120000-0017-0409-0000-0000000FF1CE}_OMUI.en-us_{9A9DF47B-DB4B-485D-8211-7430ABEC5259}) (Version: - Microsoft) Update for Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0409-0000-0000000FF1CE}_OMUI.en-us_{80E762AA-C921-4839-9D7D-DB62A72C0726}) (Version: - Microsoft) Update for Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0409-0000-0000000FF1CE}_PROHYBRIDR_{80E762AA-C921-4839-9D7D-DB62A72C0726}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_PROHYBRIDR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_PROPLUS_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROPLUS_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_PROHYBRIDR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_PROPLUS_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_PROHYBRIDR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_PROPLUS_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Update voor Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0413-0000-0000000FF1CE}_PROHYBRIDR_{5CF7002F-6F49-4482-9564-5614FBE560FA}) (Version: - Microsoft) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0413-0000-0000000FF1CE}_PROHYBRIDR_{15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}) (Version: - Microsoft) Update voor Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0413-0000-0000000FF1CE}_PROHYBRIDR_{A66AE6A1-8D8C-4102-BC18-38CBDE40F809}) (Version: - Microsoft) USB 2.0 1.3M UVC WebCam (HKLM\...\USB 2.0 1.3M UVC WebCam) (Version: - ) VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0 - DivX, Inc) Hidden VIA Platform Device Manager (HKLM\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation) Windows Live Call (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Communications Platform (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8050.1202 - Microsoft Corporation) Windows Live Essentials (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 14.0.8052.1208 - Microsoft Corporation) Hidden Windows Live Fotogalerie (Version: 14.0.8051.1204 - Microsoft Corporation) Hidden Windows Live Mail (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Messenger (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Movie Maker-Betaversion (Version: 14.0.8051.1204 - Microsoft Corporation) Hidden Windows Live Sync (HKLM\...\{8C1E2925-14F8-45AA-B999-1E2A74BF5607}) (Version: 14.0.8050.1202 - Microsoft Corporation) Windows Live Writer (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) WinFlash (HKLM\...\{DE10AB76-4756-4913-BE25-55D1C1051F9A}) (Version: - ) Wireless Console 3 (HKLM\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.6 - ASUS) Xvid 1.2.2 final uninstall (HKLM\...\Xvid_is1) (Version: 1.2 - Xvid team (Koepi)) ==================== Restore Points ========================= 26-05-2014 07:13:34 Geplanter Prüfpunkt 27-05-2014 11:11:46 Geplanter Prüfpunkt 27-05-2014 20:01:13 Removed Corel Graphics - Windows Shell Extension. 28-05-2014 10:38:56 Geplanter Prüfpunkt 29-05-2014 12:04:14 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2006-11-02 12:23 - 2006-09-18 23:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {2B1E5620-59E5-4548-8055-56B01FD49C2D} - System32\Tasks\{1E42C67F-D90A-40CF-A05A-558CE2308112} => C:\Program Files\Skype\\Phone\Skype.exe [2014-05-08] (Skype Technologies S.A.) Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-21] (Microsoft Corporation) Task: {5B399791-E52C-41CA-BCE6-8225C4814BF0} - System32\Tasks\ASPG => C:\Program Files\ASUS\ASUS CopyProtect\aspg.exe [2008-10-15] (ASUS) Task: {AFC1997D-CD43-46F5-B8A5-1E8764722873} - System32\Tasks\ASUS Live Update => C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2007-11-30] () Task: {C0255243-D98B-4AB3-8AFA-E4C5F082BA36} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files\ASUS\SmartLogon\sensorsrv.exe [2008-12-10] (ASUS) Task: {D02FDF68-5EEE-4674-879C-16CA309DA916} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation) Task: {E2C0C905-E53B-453E-A9E6-07D1B980E59A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated) Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-21] () Task: {F08CFEAC-082A-44B4-8FB1-6F49E0BF1FBA} - System32\Tasks\ASUS P4G => C:\Program files\P4G\BatteryLife.exe [2008-11-27] (ATK) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2008-08-14 05:59 - 2008-08-14 05:59 - 00100920 _____ () C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe 2009-08-20 22:53 - 2007-08-08 09:08 - 00094208 _____ () C:\Program Files\ATKGFNEX\GFNEXSrv.exe 2010-09-27 13:03 - 2010-09-27 13:03 - 00201512 _____ () C:\Windows\system32\vpnapi.dll 2014-01-23 16:26 - 2014-01-23 16:26 - 00651232 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe 2014-01-23 16:33 - 2014-01-23 16:33 - 00087928 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_thread-vc100-mt-1_55.dll 2014-01-23 16:33 - 2014-01-23 16:33 - 00022392 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_system-vc100-mt-1_55.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00030072 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_chrono-vc100-mt-1_55.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00048512 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_date_time-vc100-mt-1_55.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00107904 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_filesystem-vc100-mt-1_55.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 03053416 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareServiceKernel.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00541008 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\SQLite.dll 2014-01-23 16:33 - 2014-01-23 16:33 - 00131920 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\pugixml.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 01928008 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\RCF.dll 2014-01-23 16:33 - 2014-01-23 16:33 - 00638328 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_regex-vc100-mt-1_55.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00477544 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareActivation.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00244088 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareApplicationUpdater.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00119656 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareGamingMode.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00087384 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareReset.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00105304 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTime.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00228728 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareDefinitionsUpdater.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00170376 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareDefinitionsUpdaterScheduler.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00342376 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareIgnoreList.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00210280 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareQuarantine.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00244592 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiMalwareEngine.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00174960 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiRootkitEngine.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00367472 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareScannerHistory.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00502112 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareScanner.dll 2014-01-23 16:33 - 2014-01-23 16:33 - 00030584 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_timer-vc100-mt-1_55.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00268656 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareScannerScheduler.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00274808 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareRealTimeProtection.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00190824 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareIncompatibles.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00181600 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiSpam.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00105320 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiPhishing.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00472944 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareParentalControl.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 01858408 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareWebProtection.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00223088 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareEmailProtection.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00513392 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareNetworkProtection.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00422752 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareInstaller.dll 2014-01-23 16:33 - 2014-01-23 16:33 - 00148808 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\zlib.dll 2014-01-23 16:33 - 2014-01-23 16:33 - 00122704 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\libssh2.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00298840 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwarePromo.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00241504 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareFeedback.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00123744 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\SecurityCenter.dll 2013-07-17 17:10 - 2013-07-17 17:10 - 00565640 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\2.6.0.0\BDSmartDB.dll 2009-03-19 04:16 - 2009-03-19 04:16 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll 2007-06-15 19:28 - 2007-06-15 19:28 - 00147456 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll 2007-06-02 02:08 - 2007-06-02 02:08 - 00143360 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 02084720 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareShellExtension.dll 2009-08-20 23:24 - 2007-11-30 20:20 - 00051768 _____ () C:\Program Files\ASUS\ASUS Live Update\ALU.exe 2008-08-21 00:49 - 2008-08-21 00:49 - 00016384 _____ () C:\Program files\P4G\DevMng.dll 2008-10-31 00:37 - 2008-10-31 00:37 - 00015360 _____ () C:\Program files\P4G\OvrClk.dll 2009-08-20 22:53 - 2007-03-10 01:16 - 00106496 _____ () C:\Program Files\ATKGFNEX\AGFNEX.dll 2009-02-07 01:13 - 2009-02-07 01:13 - 01593344 _____ () C:\Program Files\ASUS\Wireless Console 3\wcourier.exe 2008-10-01 08:02 - 2008-10-01 08:02 - 00009216 _____ () C:\Program Files\ASUS\Splendid\GLCDdll.dll 2008-08-28 01:32 - 2008-08-28 01:32 - 00619816 _____ () C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll 2008-06-09 18:55 - 2008-06-09 18:55 - 00013096 _____ () C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll 2007-11-13 00:41 - 2007-11-13 00:41 - 00106496 _____ () C:\Program Files\ASUS\ATK Hotkey\MsgTran.dll 2009-08-20 23:13 - 2008-03-17 11:49 - 00069632 _____ () C:\Program Files\VIA\VIAudioi\VDeck\QsApoApi.dll 2009-08-20 23:13 - 2009-04-02 03:26 - 00102400 _____ () C:\Program Files\VIA\VIAudioi\VDeck\Dts2ApoApi.dll 2009-08-20 23:13 - 2008-02-14 07:56 - 00094208 _____ () C:\Program Files\VIA\VIAudioi\VDeck\VMicApi.dll 2009-08-20 23:13 - 2009-04-30 09:23 - 47607808 _____ () C:\Program Files\VIA\VIAudioi\VDeck\Skin.dll 2013-02-13 04:37 - 2013-02-13 04:37 - 01263952 _____ () C:\Program Files\DivX\DivX Update\DivXUpdate.exe 2013-02-13 04:38 - 2013-02-13 04:38 - 00100688 _____ () C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 03643224 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe 2014-01-23 16:33 - 2014-01-23 16:33 - 00405880 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_locale-vc100-mt-1_55.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00308064 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\HtmlFramework.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00056664 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\DllStorage.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00789360 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTrayDefaultSkin.dll 2014-01-23 16:32 - 2014-01-23 16:32 - 00118104 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\Localization.dll 2013-12-07 16:37 - 2013-11-24 19:56 - 03139072 _____ () C:\Users\Tamara\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe 2014-05-29 10:24 - 2014-05-29 10:24 - 00043008 _____ () c:\users\tamara\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpz2zdax.dll 2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Tamara\AppData\Roaming\Dropbox\bin\libcef.dll 2009-08-20 23:05 - 2009-08-20 23:05 - 00014848 _____ () C:\Windows\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll 2008-10-24 20:29 - 2008-10-24 20:29 - 00016384 ____R () C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll 2014-05-10 17:24 - 2014-05-10 17:24 - 03839088 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll 2014-05-27 22:15 - 2014-05-27 22:15 - 00050477 _____ () C:\Users\Tamara\Desktop\Defogger.exe ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: Cisco Systems VPN Adapter Description: Cisco Systems VPN Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: CVirtA Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (05/29/2014 11:00:07 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\C> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:07 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\C> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:05 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\B> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:05 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\B> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:05 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\A> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:05 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\A> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:04 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\9> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:04 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\9> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:04 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\8> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) Error: (05/29/2014 11:00:04 AM) (Source: Windows Search Service) (EventID: 3013) (User: ) Description: Eintrag <C:\USERS\TAMARA\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\HOUS0WTE.DEFAULT\CACHE\8> in der Hash-Zuordnung kann nicht aktualisiert werden. Kontext: Anwendung, SystemIndex Katalog Details: Ein an das System angeschlossenes Gerät funktioniert nicht. (0x8007001f) System errors: ============= Error: (12/18/2013 11:08:06 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 18.12.2013 um 06:08:16 unerwartet heruntergefahren. Error: (12/18/2013 05:55:19 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1001) (User: NT-AUTORITÄT) Description: 0x80070032 Error: (12/18/2013 05:53:16 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: SRTSP SRTSPX Error: (12/18/2013 05:53:03 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Norton Internet Security%%3 Error: (12/18/2013 05:51:27 AM) (Source: HTTP) (EventID: 15016) (User: ) Description: \Device\Http\ReqQueueKerberos Error: (12/17/2013 04:08:54 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (12/17/2013 04:08:46 PM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0. Error: (12/17/2013 02:46:59 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1001) (User: NT-AUTORITÄT) Description: 0x80070032 Error: (12/17/2013 02:46:36 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: SRTSP SRTSPX Error: (12/17/2013 02:46:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Norton Internet Security%%3 Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-05-18 14:45:24.968 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.759 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.558 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.360 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.151 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 61% Total physical RAM: 3070.18 MB Available physical RAM: 1171.99 MB Total Pagefile: 6350.88 MB Available Pagefile: 4482.21 MB Total Virtual: 2047.88 MB Available Virtual: 1918.27 MB ==================== Drives ================================ Drive c: (VistaOS) (Fixed) (Total:149.04 GB) (Free:93.48 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (DATA) (Fixed) (Total:137.32 GB) (Free:96.4 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 298 GB) (Disk ID: 97646C29) Partition 1: (Not Active) - (Size=12 GB) - (Type=1C) Partition 2: (Active) - (Size=149 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=137 GB) - (Type=OF Extended) ==================== End Of Log ============================ |
29.05.2014, 20:20 | #6 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernenZitat:
Einer davon muss sofort runter! Da ich weder Avira noch Ad-Aware empfehlen kann, schlage ich vor, du deinstallierst beide. Wenn wir fertig sind kannst du auf einen anderen Scanner umsteigen.
__________________ --> Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen |
29.05.2014, 20:46 | #7 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Alles klar. Ich habe gerade Ad Aware deinstalliert und den Laptop neu gestarted. Soll ich Avira auch gleich deinstallieren? Dann wäre mein System aber erstmal komplett ungeschützt.. |
30.05.2014, 13:01 | #8 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernenZitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
30.05.2014, 18:47 | #9 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Ok. Avira ist auch deinstalliert und ein Neustart durchgeführt. |
30.05.2014, 22:49 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Dann bitte jetzt Combofix ausführen: Scan mit Combofix
__________________ Logfiles bitte immer in CODE-Tags posten |
31.05.2014, 09:43 | #11 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Hier die Combofix.txt Code:
ATTFilter ComboFix 14-05-29.01 - Tamara 31.05.2014 10:20:07.1.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.49.1031.18.3070.1954 [GMT 2:00] ausgeführt von:: c:\users\Tamara\Desktop\ComboFix.exe SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files\Common Files\ASPG_icon.ico C:\WindowsLive_A.TXT . . ((((((((((((((((((((((( Dateien erstellt von 2014-04-28 bis 2014-05-31 )))))))))))))))))))))))))))))) . . 2014-05-31 08:29 . 2014-05-31 08:29 -------- d-----w- c:\users\Tamara\AppData\Local\temp 2014-05-31 08:29 . 2014-05-31 08:29 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-05-30 17:36 . 2014-05-19 23:18 8073384 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{09DAD93B-4D08-4896-B90B-FEED9C298034}\mpengine.dll 2014-05-27 19:35 . 2014-05-29 13:39 -------- d-----w- C:\FRST 2014-05-26 17:57 . 2014-05-26 17:57 -------- d-----w- c:\users\Tamara\AppData\Roaming\SUPERAntiSpyware.com 2014-05-24 13:56 . 2014-05-24 13:56 -------- d-----w- c:\program files\Common Files\Skype 2014-05-20 12:30 . 2014-05-05 23:14 2382848 ----a-w- c:\windows\system32\mshtml.tlb 2014-05-20 11:58 . 2013-08-27 01:52 1172480 ----a-w- c:\windows\system32\d3d10warp.dll 2014-05-20 11:58 . 2013-08-27 01:32 683008 ----a-w- c:\windows\system32\d2d1.dll 2014-05-20 11:58 . 2013-08-27 01:28 1069056 ----a-w- c:\windows\system32\DWrite.dll 2014-05-20 11:58 . 2013-08-27 01:28 798208 ----a-w- c:\windows\system32\FntCache.dll 2014-05-20 11:58 . 2013-08-27 02:47 219648 ----a-w- c:\windows\system32\d3d10_1core.dll 2014-05-20 11:58 . 2013-08-27 02:47 189952 ----a-w- c:\windows\system32\d3d10core.dll 2014-05-20 11:58 . 2013-08-27 02:47 160768 ----a-w- c:\windows\system32\d3d10_1.dll 2014-05-20 11:58 . 2013-08-27 02:47 1029120 ----a-w- c:\windows\system32\d3d10.dll 2014-05-20 11:58 . 2013-08-27 01:50 486400 ----a-w- c:\windows\system32\d3d10level9.dll 2014-05-20 10:41 . 2014-05-20 10:41 -------- d-----w- C:\bb9d7fe4b01b2dbb08478a86 2014-05-20 10:38 . 2013-07-20 10:44 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 10:37 . 2012-09-25 16:19 75776 ----a-w- c:\windows\system32\synceng.dll 2014-05-20 10:37 . 2013-07-05 04:53 905664 ----a-w- c:\windows\system32\drivers\tcpip.sys 2014-05-20 10:35 . 2011-10-14 16:02 429056 ----a-w- c:\windows\system32\EncDec.dll 2014-05-20 10:35 . 2012-11-02 10:18 376320 ----a-w- c:\windows\system32\dpnet.dll 2014-05-20 10:35 . 2012-11-02 08:26 23040 ----a-w- c:\windows\system32\dpnsvr.exe 2014-05-20 10:35 . 2012-03-20 23:28 53120 ----a-w- c:\windows\system32\drivers\partmgr.sys 2014-05-20 10:34 . 2013-10-30 00:43 167936 ----a-w- c:\windows\system32\drivers\portcls.sys 2014-05-20 10:34 . 2013-10-30 01:43 130048 ----a-w- c:\windows\system32\drivers\drmk.sys 2014-05-20 10:34 . 2012-08-21 11:47 224640 ----a-w- c:\windows\system32\drivers\volsnap.sys 2014-05-20 10:34 . 2013-07-10 09:47 783360 ----a-w- c:\windows\system32\rpcrt4.dll 2014-05-20 10:33 . 2014-02-03 10:37 505344 ----a-w- c:\windows\system32\qedit.dll 2014-05-20 01:40 . 2013-12-05 02:12 1248768 ----a-w- c:\windows\system32\msxml3.dll 2014-05-20 01:39 . 2011-11-18 17:47 66560 ----a-w- c:\windows\system32\packager.dll 2014-05-20 01:35 . 2014-05-20 01:35 979456 ----a-w- c:\windows\system32\MFH264Dec.dll 2014-05-20 01:34 . 2012-05-01 14:03 180736 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2014-05-20 01:32 . 2014-05-20 01:32 369664 ----a-w- c:\windows\system32\WMPhoto.dll 2014-05-20 01:32 . 2014-05-20 01:32 252928 ----a-w- c:\windows\system32\dxdiag.exe 2014-05-20 01:32 . 2014-05-20 01:32 195584 ----a-w- c:\windows\system32\dxdiagn.dll 2014-05-20 01:32 . 2014-05-20 01:32 974848 ----a-w- c:\windows\system32\WindowsCodecs.dll 2014-05-20 01:32 . 2014-05-20 01:32 519680 ----a-w- c:\windows\system32\d3d11.dll 2014-05-20 01:32 . 2014-05-20 01:32 321024 ----a-w- c:\windows\system32\PhotoMetadataHandler.dll 2014-05-20 01:32 . 2014-05-20 01:32 189440 ----a-w- c:\windows\system32\WindowsCodecsExt.dll 2014-05-20 01:32 . 2013-10-03 12:45 993792 ----a-w- c:\windows\system32\crypt32.dll 2014-05-20 01:31 . 2012-11-02 10:19 1400832 ----a-w- c:\windows\system32\msxml6.dll 2014-05-20 01:31 . 2013-06-26 23:01 9728 ----a-w- c:\windows\system32\Wdfres.dll 2014-05-20 01:31 . 2013-06-26 23:01 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys 2014-05-20 01:31 . 2013-06-26 23:01 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys 2014-05-20 01:31 . 2013-10-11 02:08 444928 ----a-w- c:\windows\system32\IKEEXT.DLL 2014-05-20 01:31 . 2013-10-11 02:07 596480 ----a-w- c:\windows\system32\FWPUCLNT.DLL 2014-05-20 01:28 . 2013-03-08 03:52 2067968 ----a-w- c:\windows\system32\mstscax.dll 2014-05-20 01:28 . 2013-07-04 04:21 532480 ----a-w- c:\windows\system32\comctl32.dll 2014-05-20 01:28 . 2013-03-08 03:53 376320 ----a-w- c:\windows\system32\winsrv.dll 2014-05-20 01:28 . 2013-07-03 02:10 25472 ----a-w- c:\windows\system32\drivers\hidparse.sys 2014-05-20 01:28 . 2011-09-30 15:57 707584 ----a-w- c:\program files\Common Files\System\wab32.dll 2014-05-20 01:26 . 2012-06-04 15:26 440704 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2014-05-20 01:26 . 2012-06-02 00:04 278528 ----a-w- c:\windows\system32\schannel.dll 2014-05-20 01:26 . 2011-11-16 16:21 1259008 ----a-w- c:\windows\system32\lsasrv.dll 2014-05-20 01:26 . 2011-11-16 16:23 72704 ----a-w- c:\windows\system32\secur32.dll 2014-05-20 01:26 . 2011-11-16 14:12 9728 ----a-w- c:\windows\system32\lsass.exe 2014-05-20 01:26 . 2013-02-12 01:57 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys 2014-05-20 01:25 . 2010-05-04 19:13 231424 ----a-w- c:\windows\system32\msshsq.dll 2014-05-20 01:25 . 2013-04-09 03:52 1218048 ----a-w- c:\program files\Windows Journal\NBDoc.DLL 2014-05-20 01:25 . 2012-02-01 15:10 1404928 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\InkObj.dll 2014-05-20 01:25 . 2013-04-09 03:51 964608 ----a-w- c:\program files\Windows Journal\JNWDRV.dll 2014-05-20 01:25 . 2013-04-09 03:51 983552 ----a-w- c:\program files\Windows Journal\JNTFiltr.dll 2014-05-20 01:25 . 2013-04-09 03:51 936960 ----a-w- c:\program files\Common Files\Microsoft Shared\ink\journal.dll 2014-05-20 01:25 . 2012-02-01 13:58 47104 ----a-w- c:\program files\Windows Journal\PDIALOG.exe 2014-05-20 01:25 . 2014-01-30 07:46 876032 ----a-w- c:\windows\system32\wer.dll 2014-05-20 01:25 . 2013-11-13 00:30 2048 ----a-w- c:\windows\system32\tzres.dll 2014-05-19 09:40 . 2013-07-08 04:20 172544 ----a-w- c:\windows\system32\wintrust.dll 2014-05-19 09:40 . 2013-07-08 04:16 98304 ----a-w- c:\windows\system32\cryptnet.dll 2014-05-19 09:40 . 2013-07-08 04:16 133120 ----a-w- c:\windows\system32\cryptsvc.dll 2014-05-19 09:31 . 2012-01-09 15:54 613376 ----a-w- c:\windows\system32\rdpencom.dll 2014-05-19 09:09 . 2012-06-02 22:19 53784 ----a-w- c:\windows\system32\wuauclt.exe 2014-05-19 09:09 . 2012-06-02 22:19 45080 ----a-w- c:\windows\system32\wups2.dll 2014-05-19 09:09 . 2012-06-02 22:19 1933848 ----a-w- c:\windows\system32\wuaueng.dll 2014-05-19 09:09 . 2012-06-02 22:12 2422272 ----a-w- c:\windows\system32\wucltux.dll 2014-05-19 09:08 . 2012-06-02 22:19 35864 ----a-w- c:\windows\system32\wups.dll 2014-05-19 09:08 . 2012-06-02 22:19 577048 ----a-w- c:\windows\system32\wuapi.dll 2014-05-19 09:08 . 2012-06-02 22:12 88576 ----a-w- c:\windows\system32\wudriver.dll 2014-05-19 09:07 . 2012-06-02 13:19 171904 ----a-w- c:\windows\system32\wuwebv.dll 2014-05-19 09:07 . 2012-06-02 13:12 33792 ----a-w- c:\windows\system32\wuapp.exe 2014-05-18 14:44 . 2014-05-18 14:44 -------- d-----w- c:\users\Tamara\AppData\Roaming\LavasoftStatistics 2014-05-18 14:16 . 2014-05-29 19:35 -------- d-----w- c:\program files\Lavasoft 2014-05-18 13:14 . 2014-05-18 13:16 -------- d-----w- c:\windows\system32\ca-ES 2014-05-18 13:14 . 2014-05-18 13:15 -------- d-----w- c:\windows\system32\eu-ES 2014-05-18 13:14 . 2014-05-18 13:15 -------- d-----w- c:\windows\system32\vi-VN 2014-05-18 13:07 . 2014-05-18 13:07 -------- d-----w- c:\windows\system32\SPReview 2014-05-18 12:51 . 2009-04-10 21:28 928768 ----a-w- c:\windows\system32\scavenge.dll 2014-05-18 12:51 . 2009-04-10 21:27 57856 ----a-w- c:\windows\system32\compcln.exe 2014-05-18 12:49 . 2009-04-10 21:28 454144 ----a-w- c:\windows\system32\IasMigPlugin.dll 2014-05-18 12:48 . 2009-04-10 21:28 56320 ----a-w- c:\windows\system32\xmlfilter.dll 2014-05-18 12:11 . 2014-05-18 12:11 -------- d-----w- C:\history 2014-05-16 10:12 . 2014-05-31 07:50 -------- d-----w- c:\users\Tamara\AppData\Roaming\DropboxMaster . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-05-31 07:48 . 2009-08-20 21:34 45056 ----a-w- c:\windows\system32\acovcnt.exe 2014-05-20 01:32 . 2014-05-20 01:32 4096 ----a-w- c:\windows\system32\drivers\de-DE\dxgkrnl.sys.mui 2014-05-14 07:38 . 2012-04-22 11:58 692400 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2014-05-14 07:38 . 2011-05-16 17:17 70832 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2014-03-31 20:46 . 2014-03-31 20:46 130712 ----a-w- c:\windows\system32\MSSTDFMT.DLL 2014-03-31 20:46 . 2014-03-31 20:46 1070232 ----a-w- c:\windows\system32\MSCOMCTL.OCX 2014-03-31 07:35 . 2011-02-14 15:13 231584 ------w- c:\windows\system32\MpSigStub.exe 2008-10-14 21:57 . 2008-10-14 21:57 106496 ----a-w- c:\program files\Common Files\CPInstallAction.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ADSMOverlayIcon1] @="{A8D448F4-0431-45AC-9F5E-E1B434AB2249}" [HKEY_CLASSES_ROOT\CLSID\{A8D448F4-0431-45AC-9F5E-E1B434AB2249}] 2007-06-02 00:08 143360 ----a-w- c:\program files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Tamara\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Tamara\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-09-10 23:54 131248 ----a-w- c:\users\Tamara\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-10 1233920] "SRS Premium Sound"="c:\program files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe" [2009-04-07 3405048] "Amazon Cloud Player"="c:\users\Tamara\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe" [2013-11-24 3139072] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2014-05-08 21444224] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "UpdateLBPShortCut"="c:\program files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" [2009-05-20 222504] "CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2008-07-19 104936] "UpdateP2GoShortCut"="c:\program files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" [2008-12-04 218408] "HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2008-08-18 98304] "ATKOSD2"="c:\program files\ASUS\ATKOSD2\ATKOSD2.exe" [2008-09-03 8105984] "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-03-19 61440] "HDAudDeck"="c:\program files\VIA\VIAudioi\VDeck\VDeck.exe" [2009-04-30 1392640] "ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-04-21 540576] "Wireless Console 3"="c:\program files\ASUS\Wireless Console 3\wcourier.exe" [2009-02-06 1593344] "ATKMEDIA"="c:\program files\ASUS\ATK Media\DMedia.exe" [2008-08-19 159744] "ADSMTray"="c:\program files\ASUS\ASUS Data Security Manager\ADSMTray.exe" [2008-04-01 266240] "ACMON"="c:\program files\ASUS\Splendid\ACMON.exe" [2008-10-01 851968] "ASUS Camera ScreenSaver"="c:\windows\AsScrProlog.exe" [2009-08-20 47672] "ASUS Screen Saver Protector"="c:\windows\AsScrPro.exe" [2009-08-20 3054136] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2013-05-08 41056] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576] "DivXMediaServer"="c:\program files\DivX\DivX Media Server\DivXMediaServer.exe" [2013-05-20 450560] "DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2013-02-13 1263952] "PDFPrint"="c:\program files\PDF24\pdf24.exe" [2014-02-06 189480] . c:\users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Dropbox.lnk - c:\users\Tamara\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-5-20 33322312] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ WinCinema Manager.lnk - c:\program files\Sandisk\Common\Bin\WinCinemaMgr.exe [2011-2-21 303104] FancyStart daemon.lnk - c:\windows\Installer\{567C654B-7FE9-4970-8323-56E8191D1941}\_71A97E24F422AA49EDBF39.exe -d [2009-8-20 12862] VPN Client.lnk - c:\windows\Installer\{1CE60928-8325-49A8-8B06-633E48DD2B67}\Icon3E5562ED7.ico -user_logon [2012-12-7 6144] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa] Notification Packages REG_MULTI_SZ scecli c:\program files\ASUS\ASUS Data Security Manager\ASPWDFLT . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache . Inhalt des "geplante Tasks" Ordners . 2014-05-30 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-22 07:38] . . ------- Zusätzlicher Suchlauf ------- . uStart Page = hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-05-18&ent=hp&u=B0099D56A7B243F7FCD5B85378C0A739 IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 192.168.178.1 FF - ProfilePath - c:\users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\ FF - prefs.js: browser.startup.homepage - hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-05-18&ent=hp&u=B0099D56A7B243F7FCD5B85378C0A739 FF - prefs.js: keyword.URL - hxxp://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_8&idate=__installtime__&hsimp=yhs-lavasoft&ent=bs&q= FF - prefs.js: network.proxy.type - 0 FF - ExtSQL: !HIDDEN! 2011-02-16 22:21; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension . - - - - Entfernte verwaiste Registrierungseinträge - - - - . HKLM-Run-DisableS3S4 - c:\DisableS3S4.cmd HKLM-Run-Search Protection - c:\programdata\Search Protection\SearchProtection.exe ShellExecuteHooks-{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - c:\program files\SUPERAntiSpyware\SASSEH.DLL . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net Rootkit scan 2014-05-31 10:29 Windows 6.0.6002 Service Pack 2 NTFS . Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . HKLM\Software\Microsoft\Windows\CurrentVersion\Run HDAudDeck = c:\program files\VIA\VIAudioi\VDeck\VDeck.exe -r??????????????????????????????????????????????? . Scanne versteckte Dateien... . . C:\ADSM_PData_0150 . Scan erfolgreich abgeschlossen versteckte Dateien: 1 . ************************************************************************** . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Norton Internet Security] "ImagePath"="\"c:\program files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe\" /s \"Norton Internet Security\" /m \"c:\program files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll\" /prefetch:1" . --------------------- Durch laufende Prozesse gestartete DLLs --------------------- . - - - - - - - > 'lsass.exe'(676) c:\program files\ASUS\ASUS Data Security Manager\ASPWDFLT.dll . Zeit der Fertigstellung: 2014-05-31 10:31:58 ComboFix-quarantined-files.txt 2014-05-31 08:31 . Vor Suchlauf: 9 Verzeichnis(se), 96.373.174.272 Bytes frei Nach Suchlauf: 15 Verzeichnis(se), 96.485.261.312 Bytes frei . - - End Of File - - 5FC484F2733B7C79FEC97FF8B59F35E8 64B1E91C5C6C2157642651010728F90F |
01.06.2014, 11:53 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
01.06.2014, 20:37 | #13 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Hier die Logdatei von AdwCleaner. Und zwischendurch ein großes Dankeschön für Deine Hilfe!! JRT und FRST folgt. Code:
ATTFilter # AdwCleaner v3.211 - Bericht erstellt am 01/06/2014 um 20:24:09 # Aktualisiert 26/05/2014 von Xplode # Betriebssystem : Windows Vista (TM) Home Premium Service Pack 2 (32 bits) # Benutzername : Tamara - TAMARA-PC # Gestartet von : C:\Users\Tamara\Desktop\adwcleaner_3.211.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Ask Datei Gelöscht : C:\END Datei Gelöscht : C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\invalidprefs.js Datei Gelöscht : C:\Program Files\Mozilla Firefox\browser\searchplugins\adawaretb.xml Datei Gelöscht : C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\searchplugins\Askcom.xml Datei Gelöscht : C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\searchplugins\askcomsearch.xml ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} Schlüssel Gelöscht : HKCU\Software\Conduit Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software Schlüssel Gelöscht : HKLM\Software\DivX\Install\Setup\WizardLayout\ConduitToolbar Schlüssel Gelöscht : HKLM\Software\InstallIQ Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Toolbar Cleaner Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1AE46C09-2AB8-4EE5-88FB-08CD0FF7F2DF} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE} Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4 ***** [ Browser ] ***** -\\ Internet Explorer v9.0.8112.16545 -\\ Mozilla Firefox v29.0.1 (de) [ Datei : C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\prefs.js ] Zeile gelöscht : user_pref("browser.search.defaultengine", "Ask.com Search"); Zeile gelöscht : user_pref("browser.search.order.1", "Ask.com Search"); ************************* AdwCleaner[R0].txt - [2657 octets] - [01/06/2014 20:20:14] AdwCleaner[S0].txt - [2578 octets] - [01/06/2014 20:24:09] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2638 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows Vista (TM) Home Premium x86 Ran by Tamara on 01.06.2014 at 20:45:19,02 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-12024964-3179225816-4108263994-1000\Software\Microsoft\Internet Explorer\Main\\Start Page ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{D98D1022-928E-4EF2-A332-E7504173CA10} ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\Tamara\appdata\locallow\boost_interprocess" ~~~ FireFox Successfully deleted the following from C:\Users\Tamara\AppData\Roaming\mozilla\firefox\profiles\hous0wte.default\prefs.js user_pref("browser.startup.homepage", "hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_8&idate=2014-05-18&ent=hp&u=B0099D56A7B243F7FCD5B85378C0A739"); user_pref("keyword.URL", "hxxp://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_8&idate=__installtime__&hsimp=yhs-lavasoft&ent=bs&q="); Emptied folder: C:\Users\Tamara\AppData\Roaming\mozilla\firefox\profiles\hous0wte.default\minidumps [118 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 01.06.2014 at 20:50:22,58 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:01-06-2014 01 Ran by Tamara (administrator) on TAMARA-PC on 01-06-2014 21:03:56 Running from C:\Users\Tamara\Desktop Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: German Standard Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (Microsoft Corporation) C:\Windows\System32\audiodg.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (ASUS) C:\Program Files\ASUS\SmartLogon\smartlogon.exe (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe () C:\Program Files\ASUS\ATK Hotkey\AsLdrSrv.exe () C:\Program Files\ATKGFNEX\GFNEXSrv.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Cisco Systems, Inc.) C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe (ASUS) C:\Program Files\ASUS\ASUS CopyProtect\ASPG.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\HControl.exe () C:\Program Files\ASUS\Wireless Console 3\wcourier.exe (ATK) C:\Program Files\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe (ASUSTeK) C:\Windows\System32\ACEngSvr.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\WDC.exe () C:\Program Files\ASUS\ASUS Live Update\ALU.exe (ASUS) C:\Program Files\ASUS\SmartLogon\sensorsrv.exe (ATK) C:\Program Files\P4G\BatteryLife.exe (CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (ASUS) C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe (ASUS) C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe (VIA) C:\Program Files\VIA\VIAudioi\VDeck\VDECK.EXE (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ASUS) C:\Program Files\ASUS\ATK Media\DMedia.exe (ASUSTek Computer Inc.) C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe (ASUS) C:\Windows\AsScrPro.exe () C:\Program Files\DivX\DivX Update\DivXUpdate.exe (Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe () C:\Users\Tamara\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe (InterVideo Inc.) C:\Program Files\Sandisk\Common\Bin\WinCinemaMgr.exe (Dropbox, Inc.) C:\Users\Tamara\AppData\Roaming\Dropbox\bin\Dropbox.exe (Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\System32\conime.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [UpdateLBPShortCut] => C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.) HKLM\...\Run: [CLMLServer] => C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [104936 2008-07-19] (CyberLink) HKLM\...\Run: [UpdateP2GoShortCut] => C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [218408 2008-12-04] (CyberLink Corp.) HKLM\...\Run: [HControlUser] => C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe [98304 2008-08-18] (ASUS) HKLM\...\Run: [ATKOSD2] => C:\Program Files\ASUS\ATKOSD2\ATKOSD2.exe [8105984 2008-09-03] (ASUS) HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2009-03-19] (Advanced Micro Devices, Inc.) HKLM\...\Run: [HDAudDeck] => C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [1392640 2009-04-30] (VIA) HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [540576 2009-04-21] (ELAN Microelectronic Corp.) HKLM\...\Run: [Wireless Console 3] => C:\Program Files\ASUS\Wireless Console 3\wcourier.exe [1593344 2009-02-07] () HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMedia.exe [159744 2008-08-19] (ASUS) HKLM\...\Run: [ADSMTray] => C:\Program Files\ASUS\ASUS Data Security Manager\ADSMTray.exe [266240 2008-04-01] (ASUSTek Computer Inc.) HKLM\...\Run: [ACMON] => C:\Program Files\ASUS\Splendid\ACMON.exe [851968 2008-10-01] (ATK) HKLM\...\Run: [ASUS Camera ScreenSaver] => C:\Windows\AsScrProlog.exe [47672 2009-08-20] () HKLM\...\Run: [ASUS Screen Saver Protector] => C:\Windows\AsScrPro.exe [3054136 2009-08-20] (ASUS) HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [DivXMediaServer] => C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-20] (DivX, LLC) HKLM\...\Run: [DivXUpdate] => C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1263952 2013-02-13] () HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH) HKU\S-1-5-21-12024964-3179225816-4108263994-1000\...\Run: [SRS Premium Sound] => C:\Program Files\SRS Labs\SRS Premium Sound\SRSPremiumSoundBig_Small.exe [3405048 2009-04-07] (SRS Labs, Inc.) HKU\S-1-5-21-12024964-3179225816-4108263994-1000\...\Run: [Amazon Cloud Player] => C:\Users\Tamara\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe [3139072 2013-11-24] () HKU\S-1-5-21-12024964-3179225816-4108263994-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.) Lsa: [Notification Packages] scecli C:\Program Files\ASUS\ASUS Data Security Manager\ASPWDFLT Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ WinCinema Manager.lnk ShortcutTarget: WinCinema Manager.lnk -> C:\Program Files\Sandisk\Common\Bin\WinCinemaMgr.exe (InterVideo Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{567C654B-7FE9-4970-8323-56E8191D1941}\_71A97E24F422AA49EDBF39.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VPN Client.lnk ShortcutTarget: VPN Client.lnk -> C:\Windows\Installer\{1CE60928-8325-49A8-8B06-633E48DD2B67}\Icon3E5562ED7.ico () Startup: C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Tamara\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM - DefaultScope value is missing. BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=14.0.8051.1204 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @citrixonline.com/appdetectorplugin - C:\Users\Tamara\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Microsoft .NET Framework Assistant - C:\Users\Tamara\AppData\Roaming\Mozilla\Firefox\Profiles\hous0wte.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2011-02-18] FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-05-10] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA} [2014-05-10] FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-05-10] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013-06-26] |
01.06.2014, 20:39 | #14 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen FRST.txt - Teil 2 Code:
ATTFilter ========================== Services (Whitelisted) ================= R2 ADSMService; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [225280 2008-03-31] (ASUSTek Computer Inc.) R2 ASLDRService; C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe [100920 2008-08-14] () R2 ATKGFNEXSrv; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [94208 2007-08-08] () R2 CVPND; C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe [1528616 2010-09-27] (Cisco Systems, Inc.) R2 SRS_VolSync_Service; C:\Program Files\SRS Labs\SRS Premium Sound\SRS_VolSync.exe [70880 2009-04-07] (SRS Labs, Inc.) S2 AntiVirWebService; "C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE" [X] S2 Norton Internet Security; "C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe" /s "Norton Internet Security" /m "C:\Program Files\Norton Internet Security\Engine\16.0.0.125\diMaster.dll" /prefetch:1 ==================== Drivers (Whitelisted) ==================== R0 ahcix86s; C:\Windows\System32\DRIVERS\ahcix86s.sys [173576 2008-05-27] (AMD Technologies Inc.) R3 amdkmdag; C:\Windows\System32\DRIVERS\atipmdag.sys [4386304 2009-03-19] (ATI Technologies Inc.) R0 AsDsm; C:\Windows\system32\Drivers\AsDsm.sys [30264 2009-08-20] (ASUSTek Computer Inc) R2 ASMMAP; C:\Program Files\ATKGFNEX\ASMMAP.sys [13880 2007-07-24] () S3 CVirtA; C:\Windows\System32\DRIVERS\CVirtA.sys [5275 2007-01-18] (Cisco Systems, Inc.) R2 CVPNDRVA; C:\Windows\system32\Drivers\CVPNDRVA.sys [308859 2010-09-27] (Cisco Systems, Inc.) R3 DNE; C:\Windows\System32\DRIVERS\dne2000.sys [131984 2008-11-16] (Deterministic Networks, Inc.) R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [90112 2009-04-21] (ELAN Microelectronic Corp.) R3 Iviaspi; C:\Windows\System32\drivers\iviaspi.sys [10368 2005-09-20] (InterVideo, Inc.) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2008-11-03] ( ) R0 lullaby; C:\Windows\System32\DRIVERS\lullaby.sys [15416 2008-05-29] (Windows (R) Codename Longhorn DDK provider) R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2008-12-24] (ATK0100) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1752704 2008-08-11] () R3 SRS_PremiumSound_Service; C:\Windows\System32\drivers\srs_PremiumSound_i386.sys [233128 2009-04-01] () R3 VIAHdAudAddService; C:\Windows\System32\drivers\viahduaa.sys [1019392 2009-04-28] (VIA Technologies, Inc.) U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation) S3 catchme; \??\C:\Users\Tamara\AppData\Local\Temp\catchme.sys [X] S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVENG.SYS [X] S3 NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20080829.024\NAVEX15.SYS [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S1 SRTSP; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSP.SYS [X] S1 SRTSPX; \??\C:\Windows\system32\drivers\NIS\1000000.07D\SRTSPX.SYS [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-01 21:03 - 2014-06-01 21:04 - 00015635 _____ () C:\Users\Tamara\Desktop\FRST.txt 2014-06-01 21:03 - 2014-06-01 21:03 - 00000000 ____D () C:\Users\Tamara\Desktop\FRST-OlderVersion 2014-06-01 20:50 - 2014-06-01 20:50 - 00002183 _____ () C:\Users\Tamara\Desktop\JRT.txt 2014-06-01 20:45 - 2014-06-01 20:45 - 00000000 ____D () C:\Windows\ERUNT 2014-06-01 20:20 - 2014-06-01 20:56 - 00000000 ____D () C:\AdwCleaner 2014-06-01 13:27 - 2014-06-01 13:27 - 01016261 _____ (Thisisu) C:\Users\Tamara\Desktop\JRT.exe 2014-06-01 13:25 - 2014-06-01 13:25 - 01327971 _____ () C:\Users\Tamara\Desktop\adwcleaner_3.211.exe 2014-05-31 10:32 - 2014-06-01 21:04 - 00000000 ____D () C:\Users\Tamara\AppData\Local\temp 2014-05-31 10:32 - 2014-05-31 10:32 - 00000000 ____D () C:\Users\Public\AppData\Local\temp 2014-05-31 10:32 - 2014-05-31 10:32 - 00000000 ____D () C:\Users\Default\AppData\Local\temp 2014-05-31 10:32 - 2014-05-31 10:32 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp 2014-05-31 10:31 - 2014-05-31 10:31 - 00017300 _____ () C:\ComboFix.txt 2014-05-31 10:17 - 2014-05-31 10:32 - 00000000 ____D () C:\ComboFix 2014-05-31 10:17 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-05-31 10:17 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-05-31 10:17 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-05-31 10:17 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-05-31 10:17 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-05-31 10:17 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-05-31 10:17 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-05-31 10:17 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-05-31 10:16 - 2014-05-31 10:32 - 00000000 ____D () C:\Qoobox 2014-05-31 10:16 - 2014-05-31 10:30 - 00000000 ____D () C:\Windows\erdnt 2014-05-31 09:53 - 2014-05-31 09:53 - 05203398 ____R (Swearware) C:\Users\Tamara\Desktop\ComboFix.exe 2014-05-29 16:52 - 2014-05-29 16:52 - 00025410 _____ () C:\Users\Tamara\Desktop\Ereignisse.txt 2014-05-29 16:00 - 2014-05-29 16:00 - 00380416 _____ () C:\Users\Tamara\Desktop\Gmer-19357.exe 2014-05-29 15:27 - 2014-06-01 21:03 - 01058304 _____ (Farbar) C:\Users\Tamara\Desktop\FRST.exe 2014-05-29 15:22 - 2014-05-29 15:22 - 00000474 _____ () C:\Users\Tamara\Desktop\defogger_disable.log 2014-05-29 15:22 - 2014-05-29 15:22 - 00000000 _____ () C:\Users\Tamara\defogger_reenable 2014-05-27 22:15 - 2014-05-27 22:15 - 00050477 _____ () C:\Users\Tamara\Desktop\Defogger.exe 2014-05-27 21:35 - 2014-06-01 21:04 - 00000000 ____D () C:\FRST 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\SUPERAntiSpyware.com 2014-05-26 19:55 - 2014-05-26 19:55 - 29393568 _____ (SUPERAntiSpyware) C:\Users\Tamara\Downloads\SUPERAntiSpyware_5.7.0.1018.exe 2014-05-25 19:24 - 2014-05-25 19:24 - 00448512 _____ (OldTimer Tools) C:\Users\Tamara\Downloads\TFC.exe 2014-05-25 15:08 - 2014-05-25 15:08 - 00000180 _____ () C:\Users\Tamara\Documents\Ad-Aware_Report_Full_Manual_2014-05-25T15-06-44.201783.xml 2014-05-24 15:56 - 2014-05-24 15:56 - 00000000 ____D () C:\Program Files\Common Files\Skype 2014-05-20 14:30 - 2014-05-06 01:32 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-20 14:30 - 2014-05-06 01:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-20 14:30 - 2014-05-06 01:14 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-05-20 13:58 - 2013-08-27 04:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-05-20 13:58 - 2013-08-27 03:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-05-20 13:58 - 2013-08-27 03:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-05-20 13:58 - 2013-08-27 03:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-05-20 13:58 - 2013-08-27 03:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-05-20 13:58 - 2013-08-27 03:28 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-05-20 12:41 - 2014-05-20 12:41 - 00000000 ____D () C:\bb9d7fe4b01b2dbb08478a86 2014-05-20 12:39 - 2014-03-25 15:26 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-20 12:39 - 2014-02-07 12:38 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-05-20 12:39 - 2013-08-01 05:16 - 00638400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-05-20 12:39 - 2013-08-01 04:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-05-20 12:39 - 2013-06-15 15:22 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2014-05-20 12:39 - 2013-06-15 13:23 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-05-20 12:39 - 2012-05-11 17:57 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-05-20 12:39 - 2011-10-14 18:03 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2014-05-20 12:39 - 2011-10-14 18:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll 2014-05-20 12:39 - 2011-07-29 18:01 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-05-20 12:39 - 2011-07-29 18:01 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-05-20 12:39 - 2011-07-29 18:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax 2014-05-20 12:39 - 2011-07-29 18:00 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax 2014-05-20 12:38 - 2013-07-20 12:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 12:37 - 2013-07-05 06:53 - 00905664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-05-20 12:37 - 2012-09-25 18:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-05-20 12:35 - 2012-11-02 12:18 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-05-20 12:35 - 2012-11-02 10:26 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe 2014-05-20 12:35 - 2012-03-21 01:28 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-05-20 12:35 - 2011-10-14 18:02 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-05-20 12:34 - 2013-10-30 03:43 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-05-20 12:34 - 2013-10-30 02:43 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-05-20 12:34 - 2013-07-10 11:47 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-05-20 12:34 - 2012-08-21 13:47 - 00224640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2014-05-20 12:34 - 2012-06-29 18:01 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-05-20 12:33 - 2014-02-03 12:37 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-05-20 03:40 - 2013-12-05 04:12 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-05-20 03:39 - 2011-11-18 19:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-05-20 03:37 - 2014-05-20 03:37 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-20 03:37 - 2014-05-20 03:37 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00434176 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-05-20 03:37 - 2014-05-20 03:37 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00353584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-05-20 03:37 - 2014-05-20 03:37 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-05-20 03:37 - 2013-06-29 04:07 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-05-20 03:37 - 2013-06-29 04:07 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-05-20 03:37 - 2013-06-29 04:07 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-05-20 03:37 - 2013-06-29 04:06 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-05-20 03:37 - 2013-03-03 21:07 - 01082232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-05-20 03:37 - 2012-11-20 06:22 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-05-20 03:37 - 2011-12-14 18:17 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-05-20 03:37 - 2011-05-05 15:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-05-20 03:37 - 2011-05-05 15:54 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-05-20 03:35 - 2014-05-20 03:35 - 02873344 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01554432 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01075712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00979456 _____ (Microsoft Corporation) C:\Windows\system32\MFH264Dec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00847360 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe 2014-05-20 03:35 - 2014-05-20 03:35 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\MFHEAACdec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4src.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2014-05-20 03:35 - 2014-05-20 03:35 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll 2014-05-20 03:34 - 2012-05-01 16:03 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-05-20 03:33 - 2013-10-11 04:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-05-20 03:33 - 2013-10-11 04:08 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-05-20 03:33 - 2013-10-11 04:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll 2014-05-20 03:33 - 2013-10-11 02:35 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-05-20 03:33 - 2013-10-11 02:35 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-05-20 03:33 - 2013-10-03 14:45 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-05-20 03:33 - 2013-08-02 06:09 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-05-20 03:33 - 2013-05-02 06:04 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-05-20 03:33 - 2013-05-02 06:03 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\printcom.dll 2014-05-20 03:33 - 2013-04-24 06:00 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-05-20 03:33 - 2013-04-24 03:46 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-05-20 03:33 - 2012-11-08 05:48 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00974848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe 2014-05-20 03:32 - 2014-05-20 03:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00189440 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-05-20 03:32 - 2013-10-03 14:45 - 00993792 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-05-20 03:31 - 2014-02-06 03:56 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-20 03:31 - 2013-10-11 04:08 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-05-20 03:31 - 2013-10-11 04:07 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-05-20 03:31 - 2013-10-11 02:39 - 00218228 _____ () C:\Windows\system32\WFP.TMF 2014-05-20 03:31 - 2013-06-27 01:01 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-05-20 03:31 - 2013-06-27 01:01 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-05-20 03:31 - 2013-06-27 01:01 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-05-20 03:31 - 2012-11-02 12:19 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-05-20 03:30 - 2013-10-22 09:19 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-05-20 03:30 - 2013-07-16 06:35 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2014-05-20 03:30 - 2013-07-09 14:10 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-05-20 03:30 - 2013-07-08 06:55 - 03603904 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2014-05-20 03:30 - 2013-07-08 06:55 - 03551680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-20 03:30 - 2013-06-04 06:16 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-05-20 03:30 - 2013-06-04 03:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-05-20 03:30 - 2013-03-09 05:45 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-05-20 03:30 - 2013-03-09 03:28 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-05-20 03:30 - 2012-02-29 17:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-05-20 03:30 - 2012-02-29 15:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-05-20 03:30 - 2011-11-16 18:23 - 00377344 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2014-05-20 03:30 - 2011-10-25 17:58 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-05-20 03:30 - 2011-08-25 18:15 - 00555520 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll 2014-05-20 03:30 - 2011-08-25 18:14 - 00563712 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-05-20 03:30 - 2011-08-25 18:14 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-05-20 03:30 - 2011-08-25 15:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\oleaccrc.dll 2014-05-20 03:29 - 2014-05-20 03:38 - 00004446 _____ () C:\Windows\IE9_main.log 2014-05-20 03:28 - 2013-07-04 06:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-05-20 03:28 - 2013-07-03 04:10 - 00025472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-05-20 03:28 - 2013-03-08 05:53 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-05-20 03:28 - 2013-03-08 05:52 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-05-20 03:26 - 2013-02-12 03:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-05-20 03:26 - 2012-06-04 17:26 - 00440704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-20 03:26 - 2012-06-02 02:04 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-20 03:26 - 2011-11-16 18:23 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-20 03:26 - 2011-11-16 18:21 - 01259008 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-20 03:26 - 2011-11-16 16:12 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-20 03:25 - 2014-01-30 09:46 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-05-20 03:25 - 2013-11-13 02:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-05-20 03:25 - 2010-05-04 21:13 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\msshsq.dll 2014-05-19 11:40 - 2013-07-08 06:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-05-19 11:40 - 2013-07-08 06:16 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-05-19 11:40 - 2013-07-08 06:16 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-05-19 11:31 - 2012-01-09 17:54 - 00613376 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2014-05-19 11:09 - 2012-06-03 00:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-05-19 11:09 - 2012-06-03 00:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-05-19 11:09 - 2012-06-03 00:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-05-19 11:09 - 2012-06-03 00:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-05-19 11:08 - 2012-06-03 00:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-05-19 11:08 - 2012-06-03 00:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-05-19 11:08 - 2012-06-03 00:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-05-19 11:07 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-05-19 11:07 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-05-18 16:44 - 2014-05-18 16:44 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\LavasoftStatistics 2014-05-18 16:16 - 2014-05-29 21:35 - 00000000 ____D () C:\Program Files\Lavasoft 2014-05-18 16:11 - 2014-05-18 16:11 - 01727624 _____ () C:\Users\Tamara\Downloads\Adaware_Installer_11.1.5354(1).exe 2014-05-18 15:14 - 2014-05-18 15:16 - 00000000 ____D () C:\Windows\system32\ca-ES 2014-05-18 15:14 - 2014-05-18 15:15 - 00000000 ____D () C:\Windows\system32\vi-VN 2014-05-18 15:14 - 2014-05-18 15:15 - 00000000 ____D () C:\Windows\system32\eu-ES 2014-05-18 15:07 - 2014-05-18 15:07 - 00000000 ____D () C:\Windows\system32\SPReview 2014-05-18 14:51 - 2009-04-10 23:28 - 00928768 _____ (Microsoft Corporation) C:\Windows\system32\scavenge.dll 2014-05-18 14:51 - 2009-04-10 23:27 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\compcln.exe 2014-05-18 14:50 - 2009-04-10 23:32 - 00149480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2014-05-18 14:50 - 2009-04-10 23:32 - 00141288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ecache.sys 2014-05-18 14:50 - 2009-04-10 23:32 - 00053736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys 2014-05-18 14:50 - 2009-04-10 23:32 - 00050664 _____ (Microsoft Corporation) C:\Windows\system32\PSHED.DLL 2014-05-18 14:50 - 2009-04-10 23:32 - 00027624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys 2014-05-18 14:50 - 2009-04-10 23:28 - 02153472 _____ (Microsoft Corporation) C:\Windows\system32\oobefldr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01823744 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01591296 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01541120 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01459200 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01381376 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01107968 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00978432 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00869888 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00825856 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00644608 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\emdmgmt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00550400 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\pnpui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00466944 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\dsound.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00441344 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00378368 _____ (Microsoft Corporation) C:\Windows\system32\devmgr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\rasplap.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\RelMon.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\sdohlp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL 2014-05-18 14:50 - 2009-04-10 23:28 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\es.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\offfilt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\pnpsetup.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceTypes.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\rasmontr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\dsprop.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\nlhtml.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\ntmarta.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00117248 _____ () C:\Windows\system32\EhStorAuthn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\EhStorShell.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\regsvc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\dmsynth.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\dmusic.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\powrprof.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceClassExtension.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-05-18 14:50 - 2009-04-10 23:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\propdefs.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\iashlpr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssoc.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\iasads.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\iasdatastore.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\rtffilt.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\EhStorPwdMgr.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll 2014-05-18 14:50 - 2009-04-10 23:28 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2014-05-18 14:50 - 2009-04-10 23:27 - 02926592 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 02092544 _____ (Microsoft Corporation) C:\Windows\system32\dfsr.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2014-05-18 14:50 - 2009-04-10 23:27 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\dpapimig.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00241128 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2014-05-18 14:50 - 2009-04-10 23:27 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\gpresult.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\reg.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\rekeywiz.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\PnPutil.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\rasdial.exe 2014-05-18 14:50 - 2009-04-10 23:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\gpupdate.exe 2014-05-18 14:50 - 2009-04-10 23:23 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2014-05-18 14:50 - 2009-04-10 23:23 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2014-05-18 14:50 - 2009-04-10 23:23 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2014-05-18 14:50 - 2009-04-10 23:23 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2014-05-18 14:50 - 2009-04-10 23:22 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\f3ahvoas.dll 2014-05-18 14:50 - 2009-04-10 22:03 - 12240896 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0007.dll 2014-05-18 14:50 - 2009-04-10 22:03 - 02644480 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0009.dll 2014-05-18 14:50 - 2009-04-10 21:48 - 00344698 _____ () C:\Windows\system32\eaphost.tmf 2014-05-18 14:50 - 2009-04-10 21:46 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys 2014-05-18 14:50 - 2009-04-10 21:46 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys 2014-05-18 14:50 - 2009-04-10 21:46 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-05-18 14:50 - 2009-04-10 21:45 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2014-05-18 14:50 - 2009-04-10 21:45 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys 2014-05-18 14:50 - 2009-04-10 21:43 - 00442788 _____ () C:\Windows\system32\dot3.tmf 2014-05-18 14:50 - 2009-04-10 21:43 - 00392170 _____ () C:\Windows\system32\onex.tmf 2014-05-18 14:50 - 2009-04-10 21:43 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2014-05-18 14:50 - 2009-04-10 21:42 - 00561152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2014-05-18 14:50 - 2009-04-10 21:39 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-05-18 14:50 - 2009-04-10 21:23 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxg.sys 2014-05-18 14:50 - 2009-04-10 21:14 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys 2014-05-18 14:50 - 2009-04-10 21:14 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys 2014-05-18 14:50 - 2009-04-10 21:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys 2014-05-18 14:50 - 2009-02-19 17:20 - 00009212 _____ () C:\Windows\system32\RacUR.xml 2014-05-18 14:50 - 2009-02-18 11:39 - 00779136 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2014-05-18 14:49 - 2009-04-10 23:33 - 00614376 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2014-05-18 14:49 - 2009-04-10 23:33 - 00292840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00527848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00438744 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2014-05-18 14:49 - 2009-04-10 23:32 - 00265688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00245736 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00223208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00190424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00180712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00161752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00125928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00109032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00099816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-05-18 14:49 - 2009-04-10 23:32 - 00048104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00035304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00019944 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-05-18 14:49 - 2009-04-10 23:32 - 00019944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys 2014-05-18 14:49 - 2009-04-10 23:32 - 00017896 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-05-18 14:49 - 2009-04-10 23:32 - 00017384 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 06103040 _____ (Microsoft Corporation) C:\Windows\system32\chtbrkr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 03174400 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 03072000 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02515968 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02226688 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02225664 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02167808 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02134528 _____ (Microsoft Corporation) C:\Windows\system32\FunctionDiscoveryFolder.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 02012160 _____ (Microsoft Corporation) C:\Windows\system32\milcore.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01985024 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01856512 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01788416 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01730560 _____ (Microsoft Corporation) C:\Windows\system32\apds.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01671680 _____ (Microsoft Corporation) C:\Windows\system32\chsbrkr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01645568 _____ (Microsoft Corporation) C:\Windows\system32\connect.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01589248 _____ (Microsoft Corporation) C:\Windows\system32\msjet40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01575936 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 01544704 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01533440 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01524736 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01502720 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01480704 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01382912 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 01342464 _____ (Microsoft Corporation) C:\Windows\system32\brcpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01324032 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01209856 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\wercon.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01112064 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01086464 _____ (Microsoft Corporation) C:\Windows\system32\NetProjW.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01055232 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 01053696 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01020928 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 01017856 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00968192 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz2.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00856064 _____ (Microsoft Corporation) C:\Windows\system32\mswdat10.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00852992 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00807424 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00759296 _____ (Microsoft Corporation) C:\Windows\system32\ipsecsnp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00757248 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00670720 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00657408 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00643072 _____ (Microsoft Corporation) C:\Windows\system32\msrepl40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\Utilman.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollUI.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00618496 _____ (Microsoft Corporation) C:\Windows\system32\mswstr10.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2VDEC.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\comuid.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\wiaaut.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00542720 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00516608 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00507904 _____ (Microsoft Corporation) C:\Windows\system32\vdsdyn.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00481792 _____ (Microsoft Corporation) C:\Windows\system32\cmdial32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00469504 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\IasMigReader.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\msxbde40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00454144 _____ (Microsoft) C:\Windows\system32\IasMigPlugin.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00450560 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\msexch40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\msvcp60.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00385536 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00378368 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\mspbde40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00368640 _____ () C:\Windows\system32\msjetoledb40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00364032 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00351744 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\msrd3x40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\msexcl40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00334848 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\msrd2x40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\WscEapPr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\msjtes40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\modemui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\mstext40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\wow32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\iassdo.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\msltus40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\wscntfy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\mscandui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\adsldpc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\iassam.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\wevtutil.exe 2014-05-18 14:49 - 2009-04-10 23:28 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\fundisc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\korwbrkr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayDriverLib.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\imapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL 2014-05-18 14:49 - 2009-04-10 23:28 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\msctfui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mstlsapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\msctfp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\iassvcs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\mpr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\msjter40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingProxy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\feclient.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\mmci.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\l2nacp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msstrc.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\networkitemfactory.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\msscb.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\bitsigd.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\whealogr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\msimtf.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\ifmon.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\uxsms.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\hidserv.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\msjint40.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\version.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\NcdProp.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\MsCtfMonitor.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wscisvif.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\vdmdbg.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\midimap.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\mmcico.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\CHxReadingStringIME.dll 2014-05-18 14:49 - 2009-04-10 23:28 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\fdBthProxy.dll 2014-05-18 14:49 - 2009-04-10 23:27 - 01792512 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 01122304 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 01102848 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 00950272 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00643072 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl 2014-05-18 14:49 - 2009-04-10 23:27 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00408064 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\certreq.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv 2014-05-18 14:49 - 2009-04-10 23:27 - 00130024 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll 2014-05-18 14:49 - 2009-04-10 23:27 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax 2014-05-18 14:49 - 2009-04-10 23:27 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax 2014-05-18 14:49 - 2009-04-10 23:27 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\newdev.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\conime.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingWizard.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\cipher.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\cmmon32.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\csrstub.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cbsra.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\ipconfig.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEject.exe 2014-05-18 14:49 - 2009-04-10 23:27 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.drv 2014-05-18 14:49 - 2009-04-10 23:27 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\fc.exe 2014-05-18 14:49 - 2009-04-10 23:23 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2014-05-18 14:49 - 2009-04-10 23:22 - 00883712 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2014-05-18 14:49 - 2009-04-10 23:22 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2014-05-18 14:49 - 2009-04-10 23:22 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2014-05-18 14:49 - 2009-04-10 22:42 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2014-05-18 14:49 - 2009-04-10 21:46 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys 2014-05-18 14:49 - 2009-04-10 21:45 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2014-05-18 14:49 - 2009-04-10 21:42 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2014-05-18 14:49 - 2009-04-10 21:42 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-05-18 14:49 - 2009-04-10 21:42 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2014-05-18 14:49 - 2009-04-10 21:39 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys 2014-05-18 14:49 - 2009-04-10 21:39 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll 2014-05-18 14:49 - 2009-04-10 21:38 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2014-05-18 14:49 - 2009-04-10 21:38 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys 2014-05-18 14:49 - 2009-04-10 21:27 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2014-05-18 14:49 - 2009-04-10 21:22 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys 2014-05-18 14:49 - 2009-04-10 21:14 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-05-18 14:49 - 2009-04-10 21:13 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys 2014-05-18 14:49 - 2009-04-10 21:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-05-18 14:49 - 2009-04-10 18:54 - 03662128 _____ () C:\Windows\system32\locale.nls 2014-05-18 14:49 - 2009-03-29 21:42 - 00155456 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2014-05-18 14:49 - 2009-03-29 21:42 - 00080720 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2014-05-18 14:49 - 2009-02-18 11:38 - 00619864 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-05-18 14:49 - 2009-02-18 11:38 - 00099680 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-05-18 14:49 - 2009-02-18 11:38 - 00035168 _____ (Microsoft Corporation) C:\Windows\system32\infocardcpl.cpl 2014-05-18 14:49 - 2009-02-18 11:38 - 00009048 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-05-18 14:48 - 2009-04-10 23:33 - 00986600 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-05-18 14:48 - 2009-04-10 23:33 - 00926184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-05-18 14:48 - 2009-04-10 23:32 - 00122344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Storport.sys 2014-05-18 14:48 - 2009-04-10 23:32 - 00053224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys 2014-05-18 14:48 - 2009-04-10 23:28 - 03217408 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 02205184 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01671680 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01580544 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01576960 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01224192 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01152000 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 01081344 _____ (Microsoft Corporation) C:\Windows\system32\SLCExt.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00996352 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00777216 _____ (Microsoft Corporation) C:\Windows\system32\slcc.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00582144 _____ (Microsoft Corporation) C:\Windows\system32\SLCommDlg.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00532992 _____ (Microsoft Corporation) C:\Windows\system32\wpcao.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00425472 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00399360 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00378368 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00361984 _____ (Microsoft Corporation) C:\Windows\system32\SLUI.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\thawbrkr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\SnippingTool.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\SLC.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\sperror.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\SLLUA.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\spoolss.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wpcsvc.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\softkbd.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\ulib.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\wshext.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00083456 _____ (Microsoft) C:\Windows\system32\SMBHelperClass.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\wlgpclnt.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\slwmi.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\SLUINotify.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\xmlfilter.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Storprop.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\slcinst.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\TSTheme.exe 2014-05-18 14:48 - 2009-04-10 23:28 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\wsepno.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\winrnr.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\spcmsg.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll 2014-05-18 14:48 - 2009-04-10 23:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll 2014-05-18 14:48 - 2009-04-10 23:27 - 03408896 _____ (Microsoft Corporation) C:\Windows\system32\SLsvc.exe 2014-05-18 14:48 - 2009-04-10 23:27 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx 2014-05-18 14:48 - 2009-04-10 23:27 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp 2014-05-18 14:48 - 2009-04-10 23:23 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2014-05-18 14:48 - 2009-04-10 21:45 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2014-05-18 14:48 - 2009-04-10 21:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smb.sys 2014-05-18 14:48 - 2009-04-10 21:42 - 00052992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys 2014-05-18 14:48 - 2009-04-10 21:42 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys 2014-05-18 14:48 - 2009-04-10 21:42 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD.sys 2014-05-18 14:48 - 2009-04-10 21:14 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2014-05-18 14:48 - 2009-04-10 19:52 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spsys.sys 2014-05-18 14:48 - 2009-04-10 18:59 - 00107612 _____ () C:\Windows\system32\StructuredQuerySchema.bin 2014-05-18 14:48 - 2009-03-06 18:11 - 00130008 _____ () C:\Windows\system32\systemsf.ebd 2014-05-18 14:48 - 2009-02-19 17:20 - 00009239 _____ () C:\Windows\system32\spcinstrumentation.man 2014-05-18 14:48 - 2009-02-18 11:39 - 00092918 _____ () C:\Windows\system32\slmgr.vbs 2014-05-18 14:48 - 2009-02-18 11:39 - 00035680 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-05-18 14:35 - 2014-05-18 14:39 - 365230920 _____ (Microsoft Corporation) C:\Users\Tamara\Downloads\Windows6.0-KB948465-X86.exe 2014-05-16 12:12 - 2014-06-01 20:32 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\DropboxMaster 2014-05-15 21:04 - 2014-05-15 21:04 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-05-10 17:24 - 2014-05-10 17:24 - 00000000 ____D () C:\Program Files\Mozilla Firefox ==================== One Month Modified Files and Folders ======= 2014-06-01 21:04 - 2014-06-01 21:03 - 00015635 _____ () C:\Users\Tamara\Desktop\FRST.txt 2014-06-01 21:04 - 2014-05-31 10:32 - 00000000 ____D () C:\Users\Tamara\AppData\Local\temp 2014-06-01 21:04 - 2014-05-27 21:35 - 00000000 ____D () C:\FRST 2014-06-01 21:03 - 2014-06-01 21:03 - 00000000 ____D () C:\Users\Tamara\Desktop\FRST-OlderVersion 2014-06-01 21:03 - 2014-05-29 15:27 - 01058304 _____ (Farbar) C:\Users\Tamara\Desktop\FRST.exe 2014-06-01 20:56 - 2014-06-01 20:20 - 00000000 ____D () C:\AdwCleaner 2014-06-01 20:50 - 2014-06-01 20:50 - 00002183 _____ () C:\Users\Tamara\Desktop\JRT.txt 2014-06-01 20:45 - 2014-06-01 20:45 - 00000000 ____D () C:\Windows\ERUNT 2014-06-01 20:38 - 2012-04-22 13:58 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-06-01 20:35 - 2009-08-20 22:19 - 01644964 _____ () C:\Windows\WindowsUpdate.log 2014-06-01 20:32 - 2014-05-16 12:12 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\DropboxMaster 2014-06-01 20:32 - 2012-07-15 15:18 - 00000000 ___RD () C:\Users\Tamara\Dropbox 2014-06-01 20:32 - 2012-07-15 15:13 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Dropbox 2014-06-01 20:30 - 2009-08-20 23:34 - 00045056 _____ () C:\Windows\system32\acovcnt.exe 2014-06-01 20:29 - 2008-01-21 04:47 - 00368384 _____ () C:\Windows\PFRO.log 2014-06-01 20:29 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-01 20:29 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-01 20:29 - 2006-11-02 14:47 - 00003616 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-01 20:28 - 2006-11-02 15:01 - 00032558 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-06-01 20:16 - 2011-09-01 21:16 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Skype 2014-06-01 13:27 - 2014-06-01 13:27 - 01016261 _____ (Thisisu) C:\Users\Tamara\Desktop\JRT.exe 2014-06-01 13:25 - 2014-06-01 13:25 - 01327971 _____ () C:\Users\Tamara\Desktop\adwcleaner_3.211.exe 2014-06-01 11:27 - 2006-11-02 12:33 - 00005548 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-31 10:32 - 2014-05-31 10:32 - 00000000 ____D () C:\Users\Public\AppData\Local\temp 2014-05-31 10:32 - 2014-05-31 10:32 - 00000000 ____D () C:\Users\Default\AppData\Local\temp 2014-05-31 10:32 - 2014-05-31 10:32 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp 2014-05-31 10:32 - 2014-05-31 10:17 - 00000000 ____D () C:\ComboFix 2014-05-31 10:32 - 2014-05-31 10:16 - 00000000 ____D () C:\Qoobox 2014-05-31 10:32 - 2006-11-02 13:18 - 00000000 __RHD () C:\Users\Default 2014-05-31 10:32 - 2006-11-02 13:18 - 00000000 ___RD () C:\Users\Public 2014-05-31 10:31 - 2014-05-31 10:31 - 00017300 _____ () C:\ComboFix.txt 2014-05-31 10:30 - 2014-05-31 10:16 - 00000000 ____D () C:\Windows\erdnt 2014-05-31 10:29 - 2006-11-02 12:23 - 00000215 _____ () C:\Windows\system.ini 2014-05-31 09:53 - 2014-05-31 09:53 - 05203398 ____R (Swearware) C:\Users\Tamara\Desktop\ComboFix.exe 2014-05-30 19:25 - 2012-07-03 23:13 - 00000000 ____D () C:\ProgramData\Avira 2014-05-30 14:43 - 2011-03-11 21:58 - 00180224 _____ () C:\Users\Tamara\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-05-29 21:35 - 2014-05-18 16:16 - 00000000 ____D () C:\Program Files\Lavasoft 2014-05-29 16:52 - 2014-05-29 16:52 - 00025410 _____ () C:\Users\Tamara\Desktop\Ereignisse.txt 2014-05-29 16:00 - 2014-05-29 16:00 - 00380416 _____ () C:\Users\Tamara\Desktop\Gmer-19357.exe 2014-05-29 15:22 - 2014-05-29 15:22 - 00000474 _____ () C:\Users\Tamara\Desktop\defogger_disable.log 2014-05-29 15:22 - 2014-05-29 15:22 - 00000000 _____ () C:\Users\Tamara\defogger_reenable 2014-05-29 15:22 - 2011-02-14 16:15 - 00000000 ____D () C:\Users\Tamara 2014-05-28 09:49 - 2009-08-20 22:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-05-28 09:49 - 2009-08-20 22:28 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-05-27 22:15 - 2014-05-27 22:15 - 00050477 _____ () C:\Users\Tamara\Desktop\Defogger.exe 2014-05-27 22:11 - 2013-08-15 10:26 - 00000000 ____D () C:\ProgramData\Corel 2014-05-26 19:57 - 2014-05-26 19:57 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\SUPERAntiSpyware.com 2014-05-26 19:55 - 2014-05-26 19:55 - 29393568 _____ (SUPERAntiSpyware) C:\Users\Tamara\Downloads\SUPERAntiSpyware_5.7.0.1018.exe 2014-05-26 10:55 - 2006-11-02 14:52 - 00302945 _____ () C:\Windows\setupact.log 2014-05-25 19:24 - 2014-05-25 19:24 - 00448512 _____ (OldTimer Tools) C:\Users\Tamara\Downloads\TFC.exe 2014-05-25 18:32 - 2006-11-02 14:47 - 00418320 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-25 15:08 - 2014-05-25 15:08 - 00000180 _____ () C:\Users\Tamara\Documents\Ad-Aware_Report_Full_Manual_2014-05-25T15-06-44.201783.xml 2014-05-24 15:58 - 2012-07-15 15:18 - 00000929 _____ () C:\Users\Tamara\Desktop\Dropbox.lnk 2014-05-24 15:58 - 2012-07-15 15:14 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-05-24 15:56 - 2014-05-24 15:56 - 00000000 ____D () C:\Program Files\Common Files\Skype 2014-05-24 15:56 - 2011-09-01 21:16 - 00000000 ___RD () C:\Program Files\Skype 2014-05-24 15:56 - 2011-09-01 21:16 - 00000000 ____D () C:\ProgramData\Skype 2014-05-20 18:20 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-20 13:59 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\rescache 2014-05-20 13:39 - 2006-11-02 14:37 - 00000000 ____D () C:\Windows\system32\XPSViewer 2014-05-20 13:39 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\de-DE 2014-05-20 13:38 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 13:38 - 2006-11-02 13:18 - 00000000 ____D () C:\Program Files\Common Files\System 2014-05-20 12:53 - 2011-02-14 16:29 - 00000956 _____ () C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 12:44 - 2008-04-16 13:11 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE 2014-05-20 12:44 - 2006-11-02 13:18 - 00000000 ___RD () C:\Windows\Offline Web Pages 2014-05-20 12:41 - 2014-05-20 12:41 - 00000000 ____D () C:\bb9d7fe4b01b2dbb08478a86 2014-05-20 03:38 - 2014-05-20 03:29 - 00004446 _____ () C:\Windows\IE9_main.log 2014-05-20 03:37 - 2014-05-20 03:37 - 09739264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-05-20 03:37 - 2014-05-20 03:37 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-20 03:37 - 2014-05-20 03:37 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00434176 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-05-20 03:37 - 2014-05-20 03:37 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00353584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-05-20 03:37 - 2014-05-20 03:37 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-05-20 03:37 - 2014-05-20 03:37 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-05-20 03:37 - 2014-05-20 03:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-05-20 03:37 - 2006-11-02 08:32 - 00008798 _____ () C:\Windows\system32\icrav03.rat 2014-05-20 03:37 - 2006-11-02 08:32 - 00001988 _____ () C:\Windows\system32\ticrf.rat 2014-05-20 03:35 - 2014-05-20 03:35 - 02873344 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01554432 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 01075712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00979456 _____ (Microsoft Corporation) C:\Windows\system32\MFH264Dec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00876032 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00847360 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe 2014-05-20 03:35 - 2014-05-20 03:35 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\MFHEAACdec.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4src.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2014-05-20 03:35 - 2014-05-20 03:35 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2014-05-20 03:35 - 2014-05-20 03:35 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00974848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe 2014-05-20 03:32 - 2014-05-20 03:32 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll 2014-05-20 03:32 - 2014-05-20 03:32 - 00189440 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-05-18 16:44 - 2014-05-18 16:44 - 00000000 ____D () C:\Users\Tamara\AppData\Roaming\LavasoftStatistics 2014-05-18 16:11 - 2014-05-18 16:11 - 01727624 _____ () C:\Users\Tamara\Downloads\Adaware_Installer_11.1.5354(1).exe 2014-05-18 15:36 - 2011-02-14 16:28 - 00000922 _____ () C:\Users\Tamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk 2014-05-18 15:16 - 2014-05-18 15:14 - 00000000 ____D () C:\Windows\system32\ca-ES 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Photo Gallery 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Collaboration 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Windows Calendar 2014-05-18 15:16 - 2006-11-02 14:37 - 00000000 ____D () C:\Program Files\Movie Maker 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sk-SK 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\lv-LV 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ko-KR 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\hr-HR 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\et-EE 2014-05-18 15:16 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\IME 2014-05-18 15:15 - 2014-05-18 15:14 - 00000000 ____D () C:\Windows\system32\vi-VN 2014-05-18 15:15 - 2014-05-18 15:14 - 00000000 ____D () C:\Windows\system32\eu-ES 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\zh-TW 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\zh-CN 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\uk-UA 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\th-TH 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sv-SE 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\SLUI 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\sl-SI 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ru-RU 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ro-RO 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pt-PT 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pt-BR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\pl-PL 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\nl-NL 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\nb-NO 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\lt-LT 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ja-JP 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\it-IT 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\hu-HU 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\he-IL 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\fr-FR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\fi-FI 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\el-GR 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\bg-BG 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\ar-SA 2014-05-18 15:15 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers 2014-05-18 15:07 - 2014-05-18 15:07 - 00000000 ____D () C:\Windows\system32\SPReview 2014-05-18 14:39 - 2014-05-18 14:35 - 365230920 _____ (Microsoft Corporation) C:\Users\Tamara\Downloads\Windows6.0-KB948465-X86.exe 2014-05-18 14:02 - 2009-08-20 22:35 - 00000000 ____D () C:\Program Files\Microsoft.NET 2014-05-15 21:08 - 2013-07-18 00:11 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-15 21:05 - 2006-11-02 12:24 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2014-05-15 21:04 - 2014-05-15 21:04 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-05-14 09:38 - 2012-04-22 13:58 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-05-14 09:38 - 2011-05-16 19:17 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-05-12 09:35 - 2012-05-24 20:20 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-10 17:24 - 2014-05-10 17:24 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-06 01:32 - 2014-05-20 14:30 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 01:14 - 2014-05-20 14:30 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 01:14 - 2014-05-20 14:30 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-03 12:11 - 2013-08-15 10:31 - 00000000 ____D () C:\Users\Tamara\Documents\Corel Some content of TEMP: ==================== C:\Users\Tamara\AppData\Local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpgafok0.dll C:\Users\Tamara\AppData\Local\temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-06-01 20:36 ==================== End Of Log ============================ |
01.06.2014, 20:42 | #15 |
| Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:01-06-2014 01 Ran by Tamara at 2014-06-01 21:05:26 Running from C:\Users\Tamara\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Sansa Media Converter (HKLM\...\{FC053571-8507-44E4-8B6D-AACEAB8CA57C}) (Version: 1.0-B4.112 - ) Update for Microsoft Office 2007 (KB2508958) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft) 2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation) 7-Zip 4.65 (HKLM\...\7-Zip) (Version: - ) AC3Filter 1.63b (HKLM\...\AC3Filter_is1) (Version: 1.63b - Alexander Vigovsky) Activation Assistant for the 2007 Microsoft Office suites (HKLM\...\Activation Assistant for the 2007 Microsoft Office suites) (Version: - Microsoft Corporation) Activation Assistant for the 2007 Microsoft Office suites (Version: 1.0 - Microsoft Corporation) Hidden Adobe Flash Player 13 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Flash Player 9 ActiveX (HKLM\...\ShockwaveFlash) (Version: 9 - Adobe Systems) Adobe Reader 9.5.5 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated) Amazon Cloud Player (HKCU\...\Amazon Amazon Cloud Player) (Version: 2.1.0.381 - Amazon Services LLC) AMD USB Audio Driver Filter (HKLM\...\{A3AB35FA-943E-4799-99DC-46EFD59E998F}) (Version: 1.0.7.0031 - Advanced Micro Devices, Inc.) ASUS CopyProtect (HKLM\...\{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}) (Version: 1.0.0009 - ASUS) ASUS Data Security Manager (HKLM\...\{FA2092C5-7979-412D-A962-6485274AE1EE}) (Version: 1.00.0011 - ASUS) ASUS FancyStart (HKLM\...\{567C654B-7FE9-4970-8323-56E8191D1941}) (Version: 1.0.2 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS) ASUS Live Update (HKLM\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.6 - ASUS) ASUS MultiFrame (HKLM\...\{9D48531D-2135-49FC-BC29-ACCDA5396A76}) (Version: 1.0.0018 - ) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.10 - ASUS) ASUS SmartLogon (HKLM\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0006 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0023 - ASUS) ASUS Virtual Camera (HKLM\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.13 - ASUS) Asus_Camera_ScreenSaver (HKLM\...\Asus_Camera_ScreenSaver) (Version: 2.0.0008 - ASUS) Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 7.0 - Atheros) ATI Catalyst Install Manager (HKLM\...\{DBE1E170-3EF6-AAA5-32C4-A78D98DF86A1}) (Version: 3.0.715.0 - ATI Technologies, Inc.) ATK Generic Function Service (HKLM\...\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}) (Version: 1.00.0008 - ATK) ATK Hotkey (HKLM\...\{7C05592D-424B-46CB-B505-E0013E8E75C9}) (Version: 1.0.0049 - ASUS) ATK Media (HKLM\...\{D1E5870E-E3E5-4475-98A6-ADD614524ADF}) (Version: 2.0.0001 - ASUS) ATKOSD2 (HKLM\...\{3B05F2FB-745B-4012-ADF2-439F36B2E70B}) (Version: 7.0.0002 - ASUS) Bass Audio Decoder (remove only) (HKLM\...\Bass Audio Decoder) (Version: - ) Catalyst Control Center - Branding (Version: 1.00.0000 - ATI) Hidden Catalyst Control Center Core Implementation (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Full Existing (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Full New (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Light (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center Graphics Previews Vista (Version: 2009.0318.2141.37097 - ATI) Hidden Catalyst Control Center InstallProxy (Version: 2009.0318.2141.37097 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization All (Version: 2009.0318.2141.37097 - ATI) Hidden CCC Help Chinese Standard (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Chinese Traditional (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Czech (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Danish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Dutch (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help English (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Finnish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help French (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help German (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Greek (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Hungarian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Italian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Japanese (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Korean (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Norwegian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Polish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Portuguese (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Russian (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Spanish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Swedish (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Thai (Version: 2009.0318.2140.37097 - ATI) Hidden CCC Help Turkish (Version: 2009.0318.2140.37097 - ATI) Hidden ccc-core-static (Version: 2009.0318.2141.37097 - ATI) Hidden ccc-utility (Version: 2009.0318.2141.37097 - ATI) Hidden CD Audio Reader Filter (remove only) (HKLM\...\CD Audio Reader Filter) (Version: - ) Choice Guard (Version: 1.2.87.0 - Microsoft Corporation) Hidden Cisco EAP-FAST Module (HKLM\...\{3F4BA3A2-7BE0-48EA-B4BC-CA4D842A409A}) (Version: 2.2.9 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{934B3B19-8193-467A-B356-E73F82647D38}) (Version: 1.0.15 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{BAD1449B-DF0C-4118-B76D-68C54009576C}) (Version: 1.1.2 - Cisco Systems, Inc.) Cisco Systems VPN Client 5.0.07.0410 (HKLM\...\{1CE60928-8325-49A8-8B06-633E48DD2B67}) (Version: 5.0.7 - Cisco Systems, Inc.) Citrix Online Launcher (HKLM\...\{AC7E7905-8C59-4806-A96D-30936A2B1FC5}) (Version: 1.0.168 - Citrix) CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1720 - CyberLink Corp.) CyberLink LabelPrint (Version: 2.5.1720 - CyberLink Corp.) Hidden CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.2713 - CyberLink Corp.) CyberLink Power2Go (Version: 6.1.2713 - CyberLink Corp.) Hidden DCoder Image Source (remove only) (HKLM\...\DCoder Image Source) (Version: - ) DirectVobSub (remove only) (HKLM\...\DirectVobSub) (Version: - ) DivX Setup (HKLM\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC) Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.) DScaler 5 Mpeg Decoders (HKLM\...\DScaler 5 Mpeg Decoders_is1) (Version: - ) ETDWare PS/2-x86 7.0.5.3 WHQL (HKLM\...\Elantech) (Version: - ) ffdshow [rev 3124] [2009-11-03] (HKLM\...\ffdshow_is1) (Version: 1.0 - ) FFMPEG Core Files (remove only) (HKLM\...\FFMPEG Core Files) (Version: - ) Gabest MPEG Splitter (remove only) (HKLM\...\Gabest MPEG Splitter) (Version: - ) GoToMeeting 6.0.0.1259 (HKCU\...\GoToMeeting) (Version: 6.0.0.1259 - CitrixOnline) GraphPad Prism 5 (HKLM\...\{35B73650-6899-11DA-6784-00232A9018BE}) (Version: 5.01 - GraphPad Software) Haali Media Splitter (HKLM\...\HaaliMkx) (Version: - ) Java 7 Update 17 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217017FF}) (Version: 7.0.170 - Oracle) Java Auto Updater (Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Kukuxumusu Kosmos Screensaver (HKLM\...\Kukuxumusu Kosmos Screensaver) (Version: - ) Mendeley Desktop 1.9.2 (HKLM\...\Mendeley Desktop) (Version: 1.9.2 - Mendeley Ltd.) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0409-0000-0000000FF1CE}_OMUI.en-us_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Access MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel 2007 Help - Aggiornamento (KB963678) (HKLM\...\{90120000-0016-0410-0000-0000000FF1CE}_PROHYBRIDR_{9F57BDED-B51B-4D2F-B360-5B4EFAAF0F1A}) (Version: - Microsoft) Microsoft Office Excel MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Groove MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Groove Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Language Pack 2007 - English (HKLM\...\OMUI.en-us) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office O MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook 2007 Help - Aggiornamento (KB963677) (HKLM\...\{90120000-001A-0410-0000-0000000FF1CE}_PROHYBRIDR_{2278E02A-AB15-4BF7-B2B4-5C0EEB4B7EEB}) (Version: - Microsoft) Microsoft Office Outlook Connector (HKLM\...\{95120000-0120-0407-0000-0000000FF1CE}) (Version: 12.0.6414.1000 - Microsoft Corporation) Microsoft Office Outlook MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Powerpoint 2007 Help - Aggiornamento (KB963669) (HKLM\...\{90120000-0018-0410-0000-0000000FF1CE}_PROHYBRIDR_{C76C02F1-B07F-4974-876A-A18DEC9887C8}) (Version: - Microsoft) Microsoft Office PowerPoint MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Hybrid 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Arabic) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (Dutch) 2007 (Version: 12.0.4518.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing (French) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing (Italian) 2007 (Version: 12.0.4518.1018 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Publisher MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office SharePoint Designer MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word 2007 Help - Aggiornamento (KB963665) (HKLM\...\{90120000-001B-0410-0000-0000000FF1CE}_PROHYBRIDR_{E5B82DB3-DD7D-4C45-BC5E-09864B26F9BC}) (Version: - Microsoft) Microsoft Office Word MUI (Dutch) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (French) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (Italian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office X MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Sync Framework Services Native v1.0 (x86) (HKLM\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-040C-0000-0000000FF1CE}_PROHYBRIDR_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-040C-0000-0000000FF1CE}_PROHYBRIDR_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-040C-0000-0000000FF1CE}_PROHYBRIDR_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-040C-0000-0000000FF1CE}_PROHYBRIDR_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) MONOGRAM AMR Splitter/Decoder (remove only) (HKLM\...\MONOGRAM AMR Splitter/Decoder) (Version: - ) Mozilla Firefox 29.0.1 (x86 de) (HKLM\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden Multimedia Card Reader (HKLM\...\USB Mass Storage Filter Driver) (Version: 1.01.0000.00 - ) Multimedia Card Reader (Version: 1.01.0000.00 - ) Hidden Norton Internet Security (Version: 16.0.0.125 - Symantec Corporation) Hidden OpenOffice.org 3.3 (HKLM\...\{4286716B-1287-48E7-9078-3DC8248DBA96}) (Version: 3.3.9567 - OpenOffice.org) OpenSource AVI Splitter (remove only) (HKLM\...\OpenSource AVI Splitter) (Version: - ) OpenSource DTS/AC3/DD+ Source Filter (remove only) (HKLM\...\OpenSource DTS/AC3/DD+ Source Filter) (Version: - ) OpenSource Flash Video Splitter (remove only) (HKLM\...\OpenSource Flash Video Splitter) (Version: - ) PDF24 Creator 6.3.2 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Platform (Version: 1.34 - VIA Technologies, Inc.) Hidden RealMedia (remove only) (HKLM\...\RealMedia) (Version: - ) Realtek 8169 8168 8101E 8102E Ethernet Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0000 - Realtek) Sansa Media Converter (HKLM\...\{7D9B77E1-0078-0001-4447-ADD4C0A93D1D}) (Version: - ) SHOUTcast Source (remove only) (HKLM\...\SHOUTcast Source) (Version: - ) Skins (Version: 2009.0318.2141.37097 - ATI) Hidden Skype Click to Call (HKLM\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.) Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated) SRS Premium Sound (HKLM\...\{4B6B024F-F6D4-4A7B-8ADA-F9F8370320CC}) (Version: 1.09.0300 - SRS Labs, Inc.) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM\...\{3C3901C5-3455-3E0A-A214-0B093A5070A6}.KB2836939v3) (Version: 3 - Microsoft Corporation) Update for Microsoft Office 2007 Help for Common Features (KB963673) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_OMUI.en-us_{AB365889-0395-4FAD-B702-CA5985D53D42}) (Version: - Microsoft) Update for Microsoft Office 2007 Help for Common Features (KB963673) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_PROHYBRIDR_{AB365889-0395-4FAD-B702-CA5985D53D42}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{90120000-0100-0409-0000-0000000FF1CE}_OMUI.en-us_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Access 2007 Help (KB963663) (HKLM\...\{90120000-0015-0409-0000-0000000FF1CE}_OMUI.en-us_{6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}) (Version: - Microsoft) Update for Microsoft Office Access 2007 Help (KB963663) (HKLM\...\{90120000-0015-0409-0000-0000000FF1CE}_PROHYBRIDR_{6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}) (Version: - Microsoft) Update for Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0409-0000-0000000FF1CE}_OMUI.en-us_{199DF7B6-169C-448C-B511-1054101BE9C9}) (Version: - Microsoft) Update for Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0409-0000-0000000FF1CE}_PROHYBRIDR_{199DF7B6-169C-448C-B511-1054101BE9C9}) (Version: - Microsoft) Update for Microsoft Office Infopath 2007 Help (KB963662) (HKLM\...\{90120000-0044-0409-0000-0000000FF1CE}_OMUI.en-us_{716B81B8-B13C-41DF-8EAC-7A2F656CAB63}) (Version: - Microsoft) Update for Microsoft Office OneNote 2007 Help (KB963670) (HKLM\...\{90120000-00A1-0409-0000-0000000FF1CE}_OMUI.en-us_{2744EF05-38E1-4D5D-B333-E021EDAEA245}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROPLUS_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_OMUI.en-us_{ED38F8A3-4F61-494E-8BCA-E3AC7760C924}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_PROHYBRIDR_{ED38F8A3-4F61-494E-8BCA-E3AC7760C924}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-040C-0000-0000000FF1CE}_PROHYBRIDR_{B83A8864-A85D-437E-9D4C-27350765BF46}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0410-0000-0000000FF1CE}_PROHYBRIDR_{9D702FFD-3C2B-44D0-9B8B-CA1A30CA555B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0413-0000-0000000FF1CE}_PROHYBRIDR_{F8564AF8-30AE-4427-ACF3-69714E1BB656}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_OMUI.en-us_{0451F231-E3E3-4943-AB9F-58EB96171784}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0409-0000-0000000FF1CE}_PROHYBRIDR_{0451F231-E3E3-4943-AB9F-58EB96171784}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2880505) 32-Bit Edition (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{2720451F-5D04-43EC-AB1F-26D948FD971B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2880505) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{2720451F-5D04-43EC-AB1F-26D948FD971B}) (Version: - Microsoft) Update for Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0409-0000-0000000FF1CE}_OMUI.en-us_{397B1D4F-ED7B-4ACA-A637-43B670843876}) (Version: - Microsoft) Update for Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0409-0000-0000000FF1CE}_PROHYBRIDR_{397B1D4F-ED7B-4ACA-A637-43B670843876}) (Version: - Microsoft) Update for Microsoft Office Publisher 2007 Help (KB963667) (HKLM\...\{90120000-0019-0409-0000-0000000FF1CE}_OMUI.en-us_{2E40DE55-B289-4C8B-8901-5D369B16814F}) (Version: - Microsoft) Update for Microsoft Office Publisher 2007 Help (KB963667) (HKLM\...\{90120000-0019-0409-0000-0000000FF1CE}_PROHYBRIDR_{2E40DE55-B289-4C8B-8901-5D369B16814F}) (Version: - Microsoft) Update for Microsoft Office Script Editor Help (KB963671) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_OMUI.en-us_{CD11C6A2-FFC6-4271-8EAB-79C3582F505C}) (Version: - Microsoft) Update for Microsoft Office Script Editor Help (KB963671) (HKLM\...\{90120000-006E-0409-0000-0000000FF1CE}_PROHYBRIDR_{CD11C6A2-FFC6-4271-8EAB-79C3582F505C}) (Version: - Microsoft) Update for Microsoft Office Sharepoint Designer 2007 Help (KB963675) (HKLM\...\{90120000-0017-0409-0000-0000000FF1CE}_OMUI.en-us_{9A9DF47B-DB4B-485D-8211-7430ABEC5259}) (Version: - Microsoft) Update for Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0409-0000-0000000FF1CE}_OMUI.en-us_{80E762AA-C921-4839-9D7D-DB62A72C0726}) (Version: - Microsoft) Update for Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0409-0000-0000000FF1CE}_PROHYBRIDR_{80E762AA-C921-4839-9D7D-DB62A72C0726}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_PROHYBRIDR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_PROPLUS_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_PROPLUS_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_PROHYBRIDR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_PROPLUS_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_PROHYBRIDR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_PROPLUS_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Update voor Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0413-0000-0000000FF1CE}_PROHYBRIDR_{5CF7002F-6F49-4482-9564-5614FBE560FA}) (Version: - Microsoft) Update voor Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0413-0000-0000000FF1CE}_PROHYBRIDR_{15D84E79-1ED7-42C5-B2FD-745C3FBDDDC5}) (Version: - Microsoft) Update voor Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0413-0000-0000000FF1CE}_PROHYBRIDR_{A66AE6A1-8D8C-4102-BC18-38CBDE40F809}) (Version: - Microsoft) USB 2.0 1.3M UVC WebCam (HKLM\...\USB 2.0 1.3M UVC WebCam) (Version: - ) VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0 - DivX, Inc) Hidden VIA Platform Device Manager (HKLM\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) Windows Live Anmelde-Assistent (HKLM\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation) Windows Live Call (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Communications Platform (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8050.1202 - Microsoft Corporation) Windows Live Essentials (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Family Safety (Version: 14.0.8052.1208 - Microsoft Corporation) Hidden Windows Live Fotogalerie (Version: 14.0.8051.1204 - Microsoft Corporation) Hidden Windows Live Mail (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Messenger (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live Movie Maker-Betaversion (Version: 14.0.8051.1204 - Microsoft Corporation) Hidden Windows Live Sync (HKLM\...\{8C1E2925-14F8-45AA-B999-1E2A74BF5607}) (Version: 14.0.8050.1202 - Microsoft Corporation) Windows Live Writer (Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Windows Live-Uploadtool (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) WinFlash (HKLM\...\{DE10AB76-4756-4913-BE25-55D1C1051F9A}) (Version: - ) Wireless Console 3 (HKLM\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.6 - ASUS) Xvid 1.2.2 final uninstall (HKLM\...\Xvid_is1) (Version: 1.2 - Xvid team (Koepi)) ==================== Restore Points ========================= 27-05-2014 11:11:46 Geplanter Prüfpunkt 27-05-2014 20:01:13 Removed Corel Graphics - Windows Shell Extension. 28-05-2014 10:38:56 Geplanter Prüfpunkt 29-05-2014 12:04:14 Geplanter Prüfpunkt 29-05-2014 19:33:52 AA11 30-05-2014 17:35:04 Windows Update 31-05-2014 14:03:01 Geplanter Prüfpunkt 01-06-2014 10:14:03 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2006-11-02 12:23 - 2014-05-31 10:29 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {2B1E5620-59E5-4548-8055-56B01FD49C2D} - System32\Tasks\{1E42C67F-D90A-40CF-A05A-558CE2308112} => C:\Program Files\Skype\\Phone\Skype.exe [2014-05-08] (Skype Technologies S.A.) Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-21] (Microsoft Corporation) Task: {5B399791-E52C-41CA-BCE6-8225C4814BF0} - System32\Tasks\ASPG => C:\Program Files\ASUS\ASUS CopyProtect\aspg.exe [2008-10-15] (ASUS) Task: {AFC1997D-CD43-46F5-B8A5-1E8764722873} - System32\Tasks\ASUS Live Update => C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2007-11-30] () Task: {C0255243-D98B-4AB3-8AFA-E4C5F082BA36} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files\ASUS\SmartLogon\sensorsrv.exe [2008-12-10] (ASUS) Task: {D02FDF68-5EEE-4674-879C-16CA309DA916} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\netsh.exe [2006-11-02] (Microsoft Corporation) Task: {E2C0C905-E53B-453E-A9E6-07D1B980E59A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated) Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-21] () Task: {F08CFEAC-082A-44B4-8FB1-6F49E0BF1FBA} - System32\Tasks\ASUS P4G => C:\Program files\P4G\BatteryLife.exe [2008-11-27] (ATK) Task: {FE189ACF-C7FA-45D4-BF95-9889E7B1F05A} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Signature Update => c:\program files\windows defender\MpCmdRun.exe [2008-01-21] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2008-08-14 05:59 - 2008-08-14 05:59 - 00100920 _____ () C:\Program Files\ASUS\ATK Hotkey\ASLDRSrv.exe 2009-08-20 22:53 - 2007-08-08 09:08 - 00094208 _____ () C:\Program Files\ATKGFNEX\GFNEXSrv.exe 2010-09-27 13:03 - 2010-09-27 13:03 - 00201512 _____ () C:\Windows\system32\vpnapi.dll 2009-03-19 04:16 - 2009-03-19 04:16 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll 2009-02-07 01:13 - 2009-02-07 01:13 - 01593344 _____ () C:\Program Files\ASUS\Wireless Console 3\wcourier.exe 2008-10-01 08:02 - 2008-10-01 08:02 - 00009216 _____ () C:\Program Files\ASUS\Splendid\GLCDdll.dll 2009-08-20 23:24 - 2007-11-30 20:20 - 00051768 _____ () C:\Program Files\ASUS\ASUS Live Update\ALU.exe 2008-08-21 00:49 - 2008-08-21 00:49 - 00016384 _____ () C:\Program files\P4G\DevMng.dll 2008-10-31 00:37 - 2008-10-31 00:37 - 00015360 _____ () C:\Program files\P4G\OvrClk.dll 2009-08-20 22:53 - 2007-03-10 01:16 - 00106496 _____ () C:\Program Files\ATKGFNEX\AGFNEX.dll 2008-08-28 01:32 - 2008-08-28 01:32 - 00619816 _____ () C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll 2008-06-09 18:55 - 2008-06-09 18:55 - 00013096 _____ () C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll 2007-11-13 00:41 - 2007-11-13 00:41 - 00106496 _____ () C:\Program Files\ASUS\ATK Hotkey\MsgTran.dll 2009-08-20 23:13 - 2008-03-17 11:49 - 00069632 _____ () C:\Program Files\VIA\VIAudioi\VDeck\QsApoApi.dll 2009-08-20 23:13 - 2009-04-02 03:26 - 00102400 _____ () C:\Program Files\VIA\VIAudioi\VDeck\Dts2ApoApi.dll 2009-08-20 23:13 - 2008-02-14 07:56 - 00094208 _____ () C:\Program Files\VIA\VIAudioi\VDeck\VMicApi.dll 2009-08-20 23:13 - 2009-04-30 09:23 - 47607808 _____ () C:\Program Files\VIA\VIAudioi\VDeck\Skin.dll 2013-02-13 04:37 - 2013-02-13 04:37 - 01263952 _____ () C:\Program Files\DivX\DivX Update\DivXUpdate.exe 2013-02-13 04:38 - 2013-02-13 04:38 - 00100688 _____ () C:\Program Files\DivX\DivX Update\DivXUpdateCheck.dll 2013-12-07 16:37 - 2013-11-24 19:56 - 03139072 _____ () C:\Users\Tamara\AppData\Local\Amazon Cloud Player\Amazon Music Helper.exe 2008-12-02 02:16 - 2008-12-02 02:16 - 00184320 _____ () C:\Program Files\ASUS\VirtualCamera\virtualCamera.ax 2007-06-15 19:28 - 2007-06-15 19:28 - 00147456 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll 2007-06-02 02:08 - 2007-06-02 02:08 - 00143360 _____ () C:\Program Files\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll 2014-06-01 20:32 - 2014-06-01 20:32 - 00043008 _____ () c:\users\tamara\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpgafok0.dll 2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Tamara\AppData\Roaming\Dropbox\bin\libcef.dll 2009-08-20 23:05 - 2009-08-20 23:05 - 00014848 _____ () C:\Windows\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll 2008-10-24 20:29 - 2008-10-24 20:29 - 00016384 ____R () C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: Cisco Systems VPN Adapter Description: Cisco Systems VPN Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: CVirtA Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-05-18 14:45:24.968 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.759 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.558 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.360 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-05-18 14:45:24.151 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 39% Total physical RAM: 3070.18 MB Available physical RAM: 1865.43 MB Total Pagefile: 6344.88 MB Available Pagefile: 5160.19 MB Total Virtual: 2047.88 MB Available Virtual: 1925.2 MB ==================== Drives ================================ Drive c: (VistaOS) (Fixed) (Total:149.04 GB) (Free:90.69 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (DATA) (Fixed) (Total:137.32 GB) (Free:114.97 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 298 GB) (Disk ID: 97646C29) Partition 1: (Not Active) - (Size=12 GB) - (Type=1C) Partition 2: (Active) - (Size=149 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=137 GB) - (Type=OF Extended) ==================== End Of Log ============================ |
Themen zu Avira findet ständig Trojaner TR/Patched.Ren.Gen und kann ihn nicht entfernen |
antivirus, autostart, avira, beseitigung, betriebssystem, code, dateien, entfernen, free, funktioniert, gelöscht, infizierte, logfiles, malware, namen, neue, programm, scan, suche, system, tmp, tr/patched.ren.gen', tr/patched.ren.gen' [trojan], trojaner, unerwünschtes programm, windows, zugriff |